cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.1.25.20 By Nicolas Coolman (2016/01/25)
~ Run by ZATO (Administrator) (2016/01/25 21:52:10)
~ Web: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\ZATO\Desktop\ZHPDiag.txt
~ Report: C:\Users\ZATO\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10586)

---\\ Internet Browsers (4) - 0s
GCIE: Google Chrome v44.0.2403.89
MFIE: Mozilla Firefox 39.0 (x86 en-US)
OPIE: Opera 26.0.1656.24
MSIE: Internet Explorer v11.20.10586.0

---\\ Windows Product Information (3) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ System protection software (2) - 5s
Kaspersky Internet Security v16.0.0.614
Windows Defender (Deactivate)

---\\ System optimization software (1) - 7s
CCleaner v5.13

---\\ Surveillance software (1) - 7s
Adobe Acrobat Reader DC

---\\ Information on the system (7) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4105.768 MB (24% free)
System Restore: Activé (Enable)
System drive C: has 39 GB () free of 123 GB
Total RAM: 4105.768 MB (27% free)

---\\ Connection to the system mode (3) - 0s
~ Computer Name: ZATO-PC
~ User Name: ZATO
~ Logged in as Administrator

---\\ Enumeration of the disk units (2) - 0s
~ Drive C: has 39 GB free of 123 GB (System)
~ Drive D: has 235 GB free of 331 GB

---\\ State of the Windows Security Center (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (24) - 2s
[MD5.4572EB3DDBD2DFA10DE7A037A6CC6D53] - 30/10/2015 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4502864] =>.Microsoft Windows®
[MD5.0DCB89B1F3689BC6262FF30BBD603171] - 30/10/2015 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation
[MD5.CAD491DD9EC00BB841EA407D9C498C4A] - 30/10/2015 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [290856] =>.Microsoft Windows Publisher®
[MD5.AB4C1A9F37C0B8467AC923ED4AD727D6] - 24/12/2015 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [2647552] =>.Microsoft Corporation
[MD5.46C8E60DEDBDA95C102D1B2E74676578] - 30/10/2015 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [584704] =>.Microsoft Corporation
[MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - 30/10/2015 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation
[MD5.E7B524818100B0FDE2B057C74B0C0DCD] - 30/10/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [686984] =>.Microsoft Windows®
[MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535088] =>.Microsoft Windows®
[MD5.70148EFA9A562E7185B75BBE7D376BF7] - 24/12/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [578912] =>.Microsoft Windows®
[MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows®
[MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation
[MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173568] =>.Microsoft Corporation
[MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [148480] =>.Microsoft Corporation
[MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [79872] =>.Microsoft Corporation
[MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation
[MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation
[MD5.61F9F27A8C3D7BCD287FE98A440421CE] - 30/10/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [430944] =>.Microsoft Windows®
[MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [279552] =>.Microsoft Corporation
[MD5.EFEFC245B884B1BE0401931398DCD707] - 24/12/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2152800] =>.Microsoft Windows®
[MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation
[MD5.381B8F2311A0375676B635EA5E7C8AB0] - 30/10/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation
[MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 30/10/2015 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [173056] =>.Microsoft Corporation
[MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 24/12/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows®
[MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [414560] =>.Microsoft Windows®

---\\ Non Microsoft non disabled Windows Services (18) - 7s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Ask Update Service (APNMCP) . (.APN LLC. - APN Updater.) - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe {76A1FC71CE00683A2B887A2CFA2F5D6B} =>Toolbar.Ask
O23 - Service: Kaspersky Anti-Virus Service 16.0.0 (AVP16.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe =>.Kaspersky Lab®
O23 - Service: DeviceManager (DeviceManager) . (...) - C:\Program Files (x86)\Common Files\DeviceHelper\DeviceManager.exe
O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation®
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Mobile Broadband HL Service (Mobile Broadband HL Service) . (.Copyright (C) 2014 - .) - C:\ProgramData\MobileBrServ\mbbservice.exe =>.Huawei Technologies Co., Ltd.®
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.6.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: PMBDeviceInfoProvider (PMBDeviceInfoProvider) . (.Sony Corporation - Device Information Provider.) - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe =>.Sony Corporation®
O23 - Service: RealPlayer Cloud Service (RealPlayer Cloud Service) . (.RealNetworks, Inc. - RealTimes Desktop Service.) - c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe =>.RealNetworks, Inc.®
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) . (...) - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe =>.RealNetworks, Inc.®
O23 - Service: RealTimes Desktop Service (RealTimes Desktop Service) . (.RealNetworks, Inc. - RealTimes Desktop Service.) - c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe =>.RealNetworks, Inc.®
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: SW Update Service (SWUpdateService) . (.Samsung Electronics CO., LTD. - Samsung Update Agent.) - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe =>.Samsung Electronics CO., LTD.®

---\\ Services not Microsoft (SR=Run, SS=Stop) (25) - 67s

SS - Auto [28/10/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [04/01/2016] [ 198216] Ask Update Service (APNMCP) . (.APN LLC..) - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe {76A1FC71CE00683A2B887A2CFA2F5D6B} =>Toolbar.Ask
SR - Auto [06/01/2016] [ 194000] Kaspersky Anti-Virus Service 16.0.0 (AVP16.0.0) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe =>.Kaspersky Lab®
SS - Demand [01/06/2015] [ 290224] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [17/11/2009] [ 40960] DeviceManager (DeviceManager) . (...) - C:\Program Files (x86)\Common Files\DeviceHelper\DeviceManager.exe
SR - Auto [07/10/2015] [ 131288] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation®
SR - Auto [09/12/2015] [ 1156216] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
SR - Auto [09/06/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [09/06/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [03/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe =>.Macrovision Corporation
SR - Auto [15/02/2014] [ 239184] Mobile Broadband HL Service (Mobile Broadband HL Service) . (.Copyright (C) 2014.) - C:\ProgramData\MobileBrServ\mbbservice.exe =>.Huawei Technologies Co., Ltd.®
SS - Demand [02/10/2015] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [09/12/2015] [ 1872504] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
SR - Demand [09/12/2015] [ 8185464] NVIDIA Streamer Network Service (NvStreamNetworkSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe =>.NVIDIA Corporation®
SR - Auto [09/12/2015] [ 6477432] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
SR - Auto [23/07/2015] [ 937800] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation
SR - Auto [02/11/2015] [ 495800] PMBDeviceInfoProvider (PMBDeviceInfoProvider) . (.Sony Corporation.) - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe =>.Sony Corporation®
SR - Auto [22/11/2015] [ 1095976] RealPlayer Cloud Service (RealPlayer Cloud Service) . (.RealNetworks, Inc..) - c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe =>.RealNetworks, Inc.®
SR - Auto [04/11/2015] [ 33088] RealPlayer Update Service (RealPlayerUpdateSvc) . (...) - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe =>.RealNetworks, Inc.®
SR - Auto [22/11/2015] [ 1095976] RealTimes Desktop Service (RealTimes Desktop Service) . (.RealNetworks, Inc..) - c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe =>.RealNetworks, Inc.®
SR - Auto [30/11/2009] [ 244904] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
SR - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [07/07/2015] [ 3025248] SW Update Service (SWUpdateService) . (.Samsung Electronics CO., LTD..) - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe =>.Samsung Electronics CO., LTD.®
SS - Demand [09/07/2015] [ 144640] vssbrigde64 (vssbrigde64) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe =>.Kaspersky Lab®

---\\ Task Planned Automatically (41) - 5s
[MD5.00000000000000000000000000000000] [APT] [0915tbUpdateInfo] (...) -- C:\ProgramData\Avg_Update_0915tb\0915tb_{4B41481E-5CB9-4CC7-8888-BE2410A160A1}.exe (.not file.) [0]
[MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] =>.Adobe Systems, Incorporated®
[MD5.00000000000000000000000000000000] [APT] [Adobe Flash Player Updater] (...) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (.not file.) [0]
[MD5.81471CD8F0A6B46DF021C507B56F47C4] [APT] [advSRS5] (.SEC.) -- C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [4471416] =>.Samsung Electronics CO., LTD.®
[MD5.8025F05E5A51FD499584AFD7A688423C] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6602152] =>.Piriform Ltd®
[MD5.00000000000000000000000000000000] [APT] [EasySupportCenter] (...) -- C:\Program Files (x86)\Samsung\Easy Support Center\SamoyedAgent.exe (.not file.) [0]
[MD5.0C03FB91E17987EED93F60007B08DAA0] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.0C03FB91E17987EED93F60007B08DAA0] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.57A2664E14863B90056E0DE510D05AA8] [APT] [HPCustParticipation HP Deskjet 1510 series] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPCustPartic.exe [5745672] =>.Hewlett Packard®
[MD5.00000000000000000000000000000000] [APT] [LaunchApp] (...) -- C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (.not file.) [0] =>PUP.Optional.MyPCBackup
[MD5.5F073E8B4F2456CA0E9C72259B064E29] [APT] [lenovo mobile auto run] (.Lenovo.) -- C:\Program Files (x86)\MagicPlus\MagicPlus_helper.exe [2499240] =>.Lenovo
[MD5.B00F98FF6FE8682FF941BEB2559BF191] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] =>.CyberLink®
[MD5.0CEEBA2861EAE04BCA8672014DC7F429] [APT] [Opera scheduled Autoupdate 1415475186] (.Opera Software.) -- C:\Program Files (x86)\Opera\launcher.exe [696952] =>.Opera Software ASA®
[MD5.AA4B7C499673D6465F6F14186B4711BF] [APT] [RealDownloader Update Check] (.Copyright © RealNetworks, Inc. 1995-2012.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [719632] =>.RealNetworks, Inc.®
[MD5.9E11B23C26500BB7102CFA3A52E98DD5] [APT] [RealDownloaderDownloaderScheduledTaskS-1-5-21-1410874740-605000359-3596859642-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [343336] =>.RealNetworks, Inc.®
[MD5.F2C5B8F00710DF741810DBFB673C2ECB] [APT] [RealDownloaderRealUpgradeLogonTaskS-1-5-21-1410874740-605000359-3596859642-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [128272] =>.RealNetworks, Inc.®
[MD5.F2C5B8F00710DF741810DBFB673C2ECB] [APT] [RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1410874740-605000359-3596859642-1000] (.RealNetworks, Inc..) -- C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe [128272] =>.RealNetworks, Inc.®
[MD5.F0D63994F39C95259B06F70811F41833] [APT] [SAgent] (.Samsung Electronics CO., LTD..) -- C:\Program Files\Samsung\S Agent\CommonAgent.exe [2975056] =>.Samsung Electronics CO., LTD.®
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] =>.Apple Inc.®
O39 - APT: 0915tbUpdateInfo - (...) -- C:\WINDOWS\Tasks\0915tbUpdateInfo.job [368] (.Orphean.)
O39 - APT: Adobe Flash Player Updater - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [830] (.Orphean.)
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1088] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1092] =>.Google Inc.
O39 - APT: 0915tbUpdateInfo - (...) -- C:\WINDOWS\System32\Tasks\0915tbUpdateInfo [2322] (.Orphean.)
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [2954] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player Updater - (...) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3110] (.Orphean.)
O39 - APT: advSRS5 - (.SEC.) -- C:\WINDOWS\System32\Tasks\advSRS5 [2602] =>.SEC
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2234] =>.Piriform Ltd
O39 - APT: EasySupportCenter - (...) -- C:\WINDOWS\System32\Tasks\EasySupportCenter [2406] (.Orphean.)
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3380] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3604] =>.Google Inc.
O39 - APT: HPCustParticipation HP Deskjet 1510 series - (.Hewlett-Packard Co..) -- C:\WINDOWS\System32\Tasks\HPCustParticipation HP Deskjet 1510 series [2662] =>.Hewlett-Packard Co.
O39 - APT: LaunchApp - (...) -- C:\WINDOWS\System32\Tasks\LaunchApp [3274] (.Orphean.) =>PUP.Optional.MyPCBackup
O39 - APT: lenovo mobile auto run - (.Lenovo.) -- C:\WINDOWS\System32\Tasks\lenovo mobile auto run [3046] =>.Lenovo
O39 - APT: MirageAgent - (.CyberLink.) -- C:\WINDOWS\System32\Tasks\MirageAgent [2524] =>.CyberLink
O39 - APT: Opera scheduled Autoupdate 1415475186 - (.Opera Software.) -- C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1415475186 [3954] =>.Opera Software
O39 - APT: RealDownloader Update Check - (.Copyright © RealNetworks, Inc. 1995-2012.) -- C:\WINDOWS\System32\Tasks\RealDownloader Update Check [2494]
O39 - APT: RealDownloaderDownloaderScheduledTaskS-1-5-21-1410874740-605000359-3596859642-1000 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1410874740-605000359-3596859642-1000 [2672] =>.RealNetworks, Inc.
O39 - APT: RealDownloaderRealUpgradeLogonTaskS-1-5-21-1410874740-605000359-3596859642-1000 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1410874740-605000359-3596859642-1000 [2526] =>.RealNetworks, Inc.
O39 - APT: RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1410874740-605000359-3596859642-1000 - (.RealNetworks, Inc..) -- C:\WINDOWS\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1410874740-605000359-3596859642-1000 [2654] =>.RealNetworks, Inc.
O39 - APT: SAgent - (.Samsung Electronics CO., LTD..) -- C:\WINDOWS\System32\Tasks\SAgent [2384] =>.Samsung Electronics Co., Ltd.

---\\ Process running (63) - 8s
[MD5.DFCCA437717EACA8418F47992A41B39A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.6.) -- C:\Windows\System32\nvvsvc.exe [937800] [PID.1092] =>.NVIDIA Corporation®
[MD5.CABA42EC239DC4B607A43FF9AC43C733] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Program Files\Elantech\ETDService.exe [131288] [PID.1588] =>.ELAN Microelectronics Corporation®
[MD5.0B639391B2710A610100490D0CAC3650] - (.APN LLC. - APN Updater.) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [198216] [PID.1704] {76A1FC71CE00683A2B887A2CFA2F5D6B} =>Toolbar.AskBar
[MD5.50C3C62FFE6337E6E4F2F01CB07DF63C] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000] [PID.1912] =>.Kaspersky Lab®
[MD5.97DC871A801DF42AD1008F0BBFD1ED8E] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156216] [PID.2028] =>.NVIDIA Corporation®
[MD5.9C71560AD568AAA68975433782E35942] - (...) -- C:\Program Files (x86)\Common Files\DeviceHelper\DeviceManager.exe [40960] [PID.2132]
[MD5.C36ED33F9AFC5A9772E6C6A9E5B4D183] - (.Copyright (C) 2014 - .) -- C:\ProgramData\MobileBrServ\mbbservice.exe [239184] [PID.2180] =>.Huawei Technologies Co., Ltd.®
[MD5.EDB407D1F55B9AA2FD2A718AF0EA89A3] - (.Sony Corporation - Device Information Provider.) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [495800] [PID.2404] =>.Sony Corporation®
[MD5.3394FAEF5FE401B076FD5DEC295C7919] - (...) -- C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe [33088] [PID.2412] =>.RealNetworks, Inc.®
[MD5.A8FD46F7EA7410847C3EBE84C4B18BB1] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [6477432] [PID.2508] =>.NVIDIA Corporation®
[MD5.FB9407F47E184208E4880FA1DC28B9D4] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504] [PID.2528] =>.NVIDIA Corporation®
[MD5.435685429F72AC4D43BF3A2658F13104] - (.RealNetworks, Inc. - RealTimes Desktop Service.) -- c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe [1095976] [PID.2540] =>.RealNetworks, Inc.®
[MD5.435685429F72AC4D43BF3A2658F13104] - (.RealNetworks, Inc. - RealTimes Desktop Service.) -- c:\program files (x86)\Real\realplayer\RPDS\Bin\rpdsvc.exe [1095976] [PID.2548] =>.RealNetworks, Inc.®
[MD5.F12A68ED55053940CADD59CA5E3468DD] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904] [PID.2560]
[MD5.93A92C6B05B52E736E6194F045A422E7] - (.Samsung Electronics CO., LTD. - Samsung Update Agent.) -- C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3025248] [PID.2616] =>.Samsung Electronics CO., LTD.®
[MD5.2F6ABCFB6B992A4DF5EFD9E6B7BAFF2B] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8185464] [PID.4632] =>.NVIDIA Corporation®
[MD5.0C03FB91E17987EED93F60007B08DAA0] - (.Google Inc. - Google Installer.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [PID.5908] =>.Google Inc®
[MD5.52F7E8603E888E3DB0A8B3D1804098E9] - (.Skype Technologies - Skype Updater Service.) -- C:\Program Files (x86)\Skype\Updater\Updater.exe [327296] [PID.1468] =>.Skype Software Sarl®
[MD5.9B27D30D8B11DF474F1AA958CD6C717E] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1253008] [PID.8940] =>.NVIDIA Corporation®
[MD5.DFCCA437717EACA8418F47992A41B39A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.6.) -- C:\Windows\System32\nvvsvc.exe [937800] [PID.12152] =>.NVIDIA Corporation®
[MD5.932A21CF0DA4E951C7C4A62D27E6D8FB] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe [211712] [PID.8868] =>.Kaspersky Lab®
[MD5.854FF071683933E4941B32B962B5368D] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [3242712] [PID.5288] =>.ELAN Microelectronics Corporation®
[MD5.99A5754FCA1360F5F83AEF06907312FC] - (.ELAN Microelectronics Corp. - ETDTouch.) -- C:\Program Files\Elantech\ETDTouch.exe [132312] [PID.12644] =>.ELAN Microelectronics Corporation®
[MD5.BCD38B6829D070527B869614EB1C1E30] - (.APN - Ask Toolbar Notifier.) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1699400] [PID.13420] {76A1FC71CE00683A2B887A2CFA2F5D6B} =>Toolbar.AskBar
[MD5.DAA195AEF4BF15FE7E37BA4B25E341B0] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2581208] [PID.9244] =>.ELAN Microelectronics Corporation®
[MD5.264B7FD1B9DF0B3B6894AF491B62E90C] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2447504] [PID.3300] =>.NVIDIA Corporation®
[MD5.B00F98FF6FE8682FF941BEB2559BF191] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.12164] =>.CyberLink®
[MD5.59F14B3C78849982699CE34068708308] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2771576] [PID.12692] =>.NVIDIA Corporation®
[MD5.1A6B0C408C1E22AFF132A77E7713B1A5] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [21940344] [PID.10980] =>.NVIDIA Corporation®
[MD5.E4AA3D28753EF9DB333FE40079993B09] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [411056] [PID.12864] =>.Intel Corporation - pGFX®
[MD5.CF40080765D6F66FA93318C0DB6C7D1F] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [453552] [PID.972] =>.Intel Corporation - pGFX®
[MD5.C6992F5730886B6977313918583D13C7] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296] [PID.13672] =>.Realtek Semiconductor Corp®
[MD5.303542C17970F45DC3B4D3F4D54DCF86] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3829328] [PID.6180] =>.Tonec Inc.
[MD5.AA4B7C499673D6465F6F14186B4711BF] - (.Copyright © RealNetworks, Inc. 1995-2012 - RealDownloader.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe [719632] [PID.13316] =>.RealNetworks, Inc.®
[MD5.D6E44C8DE444A344818FFA62285D09AB] - (...) -- C:\Program Files (x86)\HSPA USB MODEM\ModemListener.exe [98304] [PID.4912]
[MD5.4D7A3EEDA99036A273A7A81634FEE960] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe [286992] [PID.3520] =>.RealNetworks, Inc.®
[MD5.9C08A831626DDDDDBE02993127B4595F] - (.Copyright © 2008 - ULHotkey.) -- C:\Program Files (x86)\Ultralingua\Ultralingua 7\ULHotkey.exe [1483264] [PID.6404]
[MD5.F0D63994F39C95259B06F70811F41833] - (.Samsung Electronics CO., LTD. - S Agent.) -- C:\Program Files\Samsung\S Agent\CommonAgent.exe [2975056] [PID.12552] =>.Samsung Electronics CO., LTD.®
[MD5.3FB5416F268723E6B3CB4926EFD31624] - (.Samsung Electronics CO., LTD. - Easy Support Center Agent.) -- C:\Program Files\Samsung\Easy Support Center\SamoyedAgent.exe [5458000] [PID.12096] =>.Samsung Electronics CO., LTD.®
[MD5.A7BFC2C5D570EC93720DABC8B85ADEF9] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_2.12.15004.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.8236]
[MD5.B89A82FB10E98F2FDF51FA82C7366DD3] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] [PID.3748] =>.Adobe Systems, Incorporated®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.11560] =>.Opera Software ASA®
[MD5.164B5AE6885EEA05BAA8B0219209873A] - (.Opera Software - Opera crash-reporter.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera_crashreporter.exe [504952] [PID.12332] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.14300] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.10704] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.2796] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.14292] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.3884] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.12508] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.1980] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.5520] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.12900] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.10312] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.10236] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.9504] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.7624] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.11744] =>.Opera Software ASA®
[MD5.A6D5917AF99172B9E71F3DC1106F394E] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [50615936] [PID.10460] =>.Skype Software Sarl®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.13876] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.13616] =>.Opera Software ASA®
[MD5.41F48ABEFB8407A2A7F9A4F80EA10923] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\34.0.2036.50\opera.exe [630392] [PID.4880] =>.Opera Software ASA®
[MD5.23A60D80D22DE6BDD3A41EF87CB197FD] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\ZATO\Downloads\Programs\ZHPDiag3.exe [2092544] [PID.12908] =>.Nicolas Coolman
[MD5.E10A9F8891C670F7C54A4CAACEF2C19E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.10740] =>.Google Inc®

---\\ Google Chrome, Start,Search,Extensions (23) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://gc.kis.scr.kaspersky-labs.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh5.googleusercontent.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://plus.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com
G2 - GCE: Preference [User Data\Default] [aaaaafhgaihilbkellglkpeiegabpjem] Search App by Ask =>PUP.Optional.BrowserTabSearch
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [eahebamiopdhefndnmappcihfajigkka] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (17) - 2s
P2 - EXT FILE: (...) -- C:\Users\ZATO\AppData\Roaming\Mozilla\Firefox\Profiles\33cj0a52.default\extensions\fdm_ffext@freedownloadmanager.org
P2 - EXT FILE: (...) -- C:\Users\ZATO\AppData\Roaming\Mozilla\Firefox\Profiles\33cj0a52.default\extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\ZATO\AppData\Roaming\Mozilla\Firefox\Profiles\33cj0a52.default\extensions\jid1-kps5PrGBNtzSLQ@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\ZATO\AppData\Roaming\Mozilla\Firefox\Profiles\33cj0a52.default\extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi
P2 - EXT FILE: (...) -- C:\Users\ZATO\AppData\Roaming\Mozilla\Firefox\Profiles\33cj0a52.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wtu-secure-search.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - EXT: (.Olivier R. - Dictionnaires français.) -- C:\Users\ZATO\AppData\Roaming\Mozilla\Firefox\Profiles\33cj0a52.default\extensions\fr-dicollecte@dictionaries.addons.mozilla.org =>.Olivier R.
P2 - EXT: (.Qihu 360 Software Co., Ltd. - 360 Web Shield.) -- C:\Users\ZATO\AppData\Roaming\Mozilla\Firefox\Profiles\33cj0a52.default\extensions\webshield@360safe.com

---\\ Opera, Plugins,Start,Search (1) - 0s
B2 - EXT: [Opera Stable] C:\Users\ZATO\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp

---\\ Internet Explorer Extensions, Start, Search (14) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object (BHO) (6) - 0s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer [64Bits] - {3049C3E9-B461-4BC5-8870-4C09146192CA} . (.RealDownloader - RealTimes Video Downloader.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll =>.RealNetworks, Inc.®
O2 - BHO: (no name) [64Bits] - {95B7759C-8C7F-4BF1-B163-73684A933233} (Orphean)
O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {C66D064F-82FE-4E1A-B06A-B2490BA48B18} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll =>.Kaspersky Lab®
O2 - BHO: Adblock Plus for IE Browser Helper Object [64Bits] - {FFCB3198-32F3-4E8B-9539-4324694ED664} . (.Eyeo GmbH - Adblock Plus BHO for Internet Explorer.) -- C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll =>.Eyeo GmbH

---\\ Internet Explorer Toolbars (2) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)
O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA003A050000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.)

---\\ Auto loading programs from Registry and folders (17) - 2s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation - pGFX®
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [ShadowPlay] C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart (.not file.)
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKLM\..\Wow6432Node\Run: [ModemListener] . (...) -- C:\Program Files (x86)\HSPA USB MODEM\ModemListener.exe
O4 - HKLM\..\Wow6432Node\Run: [PMBVolumeWatcher] . (.Sony Corporation - Media Check Tool.) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe =>.Sony Corporation®
O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- c:\program files (x86)\Real\realplayer\Update\realsched.exe =>.RealNetworks, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [RealDownloader] . (.Copyright © RealNetworks, Inc. 1995-2012 - RealDownloader.) -- C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe =>.RealNetworks, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [ApnTBMon] . (.APN - Ask Toolbar Notifier.) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe {76A1FC71CE00683A2B887A2CFA2F5D6B} =>Toolbar.AskBar
O4 - HKLM\..\Wow6432Node\Run: [Ultralingua 7 Hotkey] . (.Copyright © 2008 - ULHotkey.) -- C:\Program Files (x86)\Ultralingua\Ultralingua 7\ULHotkey.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1410874740-605000359-3596859642-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.

---\\ Global shortcuts Startup (98) - 25s
O4 - GS\Desktop [Administrator]: Disque local.lnk . (...) D:\Disque local
O4 - GS\Desktop [Administrator]: HiJackThis.lnk . (.Trend Micro Inc. - HijackThis.) C:\Users\ZATO\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe =>.Trend Micro Inc.
O4 - GS\Desktop [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrator]: Safe Money.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe =>.Kaspersky Lab®
O4 - GS\Desktop [Administrator]: Ultralingua 7.lnk . (.Ultralingua, Inc. - Ultralingua 7.) C:\Program Files (x86)\Ultralingua\Ultralingua 7\ulwindows.exe =>.Ultralingua, Inc.
O4 - GS\Desktop [Administrator]: XPowder - Shortcut.lnk . (.Casa - .) C:\Users\ZATO\Desktop\XPowder\XPowder.exe
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ZATO\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrator]: Apple Safari.lnk . (...) C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\Quicklaunch [Administrator]: DeepBurner.lnk . (.Astonsoft - CD/DVD recording software.) C:\Program Files (x86)\Astonsoft\DeepBurner\DeepBurner.exe
O4 - GS\Quicklaunch [Administrator]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.2, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Administrator]: FullProf_Suite.lnk . (...) C:\FullProf_Suite\tfp.exe
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrator]: Samsung Kies (Lite).lnk . (...) C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Administrator]: Samsung Kies 3.lnk . (.Samsung - Kies.) C:\Program Files (x86)\Samsung\Kies3\Kies3.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Administrator]: Samsung Kies.lnk . (...) C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Administrator]: XPowder.lnk . (.Casa - .) C:\XPowder\XPowder.exe
O4 - GS\Quicklaunch [Administrator]: XPowder12.lnk . (.Casa - .) C:\XPowder12\XPowder12.exe
O4 - GS\Quicklaunch [Administrator]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe {3D7A9A7D12556AB8688CA048C60F6018} =>.Yahoo! Inc.
O4 - GS\sendTo [Administrator]: Endeavour.lnk . (.Crystal Impact - Endeavour - Structure Solution from Powder.) C:\Program Files (x86)\Endeavour\Endeavour.exe
O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrator]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\Desktop [Guest]: Disque local.lnk . (...) D:\Disque local
O4 - GS\Desktop [Guest]: HiJackThis.lnk . (.Trend Micro Inc. - HijackThis.) C:\Users\ZATO\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe =>.Trend Micro Inc.
O4 - GS\Desktop [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Guest]: Safe Money.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe =>.Kaspersky Lab®
O4 - GS\Desktop [Guest]: Ultralingua 7.lnk . (.Ultralingua, Inc. - Ultralingua 7.) C:\Program Files (x86)\Ultralingua\Ultralingua 7\ulwindows.exe =>.Ultralingua, Inc.
O4 - GS\Desktop [Guest]: XPowder - Shortcut.lnk . (.Casa - .) C:\Users\ZATO\Desktop\XPowder\XPowder.exe
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ZATO\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Guest]: Apple Safari.lnk . (...) C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\Quicklaunch [Guest]: DeepBurner.lnk . (.Astonsoft - CD/DVD recording software.) C:\Program Files (x86)\Astonsoft\DeepBurner\DeepBurner.exe
O4 - GS\Quicklaunch [Guest]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.2, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Guest]: FullProf_Suite.lnk . (...) C:\FullProf_Suite\tfp.exe
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Guest]: Samsung Kies (Lite).lnk . (...) C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Guest]: Samsung Kies 3.lnk . (.Samsung - Kies.) C:\Program Files (x86)\Samsung\Kies3\Kies3.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Guest]: Samsung Kies.lnk . (...) C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Guest]: XPowder.lnk . (.Casa - .) C:\XPowder\XPowder.exe
O4 - GS\Quicklaunch [Guest]: XPowder12.lnk . (.Casa - .) C:\XPowder12\XPowder12.exe
O4 - GS\Quicklaunch [Guest]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe {3D7A9A7D12556AB8688CA048C60F6018} =>.Yahoo! Inc.
O4 - GS\sendTo [Guest]: Endeavour.lnk . (.Crystal Impact - Endeavour - Structure Solution from Powder.) C:\Program Files (x86)\Endeavour\Endeavour.exe
O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Guest]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\Desktop [ZATO]: Disque local.lnk . (...) D:\Disque local
O4 - GS\Desktop [ZATO]: HiJackThis.lnk . (.Trend Micro Inc. - HijackThis.) C:\Users\ZATO\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe =>.Trend Micro Inc.
O4 - GS\Desktop [ZATO]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [ZATO]: Safe Money.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe =>.Kaspersky Lab®
O4 - GS\Desktop [ZATO]: Ultralingua 7.lnk . (.Ultralingua, Inc. - Ultralingua 7.) C:\Program Files (x86)\Ultralingua\Ultralingua 7\ulwindows.exe =>.Ultralingua, Inc.
O4 - GS\Desktop [ZATO]: XPowder - Shortcut.lnk . (.Casa - .) C:\Users\ZATO\Desktop\XPowder\XPowder.exe
O4 - GS\Desktop [ZATO]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ZATO\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ZATO]: Apple Safari.lnk . (...) C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\Quicklaunch [ZATO]: DeepBurner.lnk . (.Astonsoft - CD/DVD recording software.) C:\Program Files (x86)\Astonsoft\DeepBurner\DeepBurner.exe
O4 - GS\Quicklaunch [ZATO]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.2, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [ZATO]: FullProf_Suite.lnk . (...) C:\FullProf_Suite\tfp.exe
O4 - GS\Quicklaunch [ZATO]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [ZATO]: Samsung Kies (Lite).lnk . (...) C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [ZATO]: Samsung Kies 3.lnk . (.Samsung - Kies.) C:\Program Files (x86)\Samsung\Kies3\Kies3.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [ZATO]: Samsung Kies.lnk . (...) C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [ZATO]: XPowder.lnk . (.Casa - .) C:\XPowder\XPowder.exe
O4 - GS\Quicklaunch [ZATO]: XPowder12.lnk . (.Casa - .) C:\XPowder12\XPowder12.exe
O4 - GS\Quicklaunch [ZATO]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe {3D7A9A7D12556AB8688CA048C60F6018} =>.Yahoo! Inc.
O4 - GS\sendTo [ZATO]: Endeavour.lnk . (.Crystal Impact - Endeavour - Structure Solution from Powder.) C:\Program Files (x86)\Endeavour\Endeavour.exe
O4 - GS\sendTo [ZATO]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [ZATO]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [ZATO]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [ZATO]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\CommonDesktop [Public]: Aide PlayMemories Home.lnk . (.Sony Corporation - Browser.) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe =>.Sony Corporation®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Diamond 4.0.lnk . (.Crystal Impact - Diamond Crystal and Molecular Structure Vis.) C:\Program Files (x86)\Diamond 4\Diamond.exe
O4 - GS\CommonDesktop [Public]: Easy Support Center.lnk . (.Samsung Electronics CO., LTD. - .) C:\Program Files (x86)\Samsung\Easy Support Center\SamoyedMain.exe =>.Samsung Electronics Co., Ltd.
O4 - GS\CommonDesktop [Public]: Endeavour.lnk . (.Crystal Impact - Endeavour - Structure Solution from Powder.) C:\Program Files (x86)\Endeavour\Endeavour.exe
O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.2, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\CommonDesktop [Public]: FP_Suite_TB.lnk . (...) C:\FullProf_Suite\tfp.exe
O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - NVIDIA GeForce Experience Launcher Applicat.) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\LaunchGFExperience.exe =>.NVIDIA Corporation®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: HP Deskjet 1510 series.lnk . (.Hewlett-Packard Co. - .) C:\Program Files (x86)\HP\HP Deskjet 1510 series\Bin\HP Deskjet 1510 series.exe =>.Hewlett-Packard Co.
O4 - GS\CommonDesktop [Public]: HP Print and Scan Doctor.lnk . (...) C:\Program Files (x86)\HP\Diagnostics\PSDR\HPPSDr.exe =>.Hewlett Packard®
O4 - GS\CommonDesktop [Public]: Kaspersky Internet Security.lnk . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Lenovo Smart Assistant.lnk . (.TODO: - VibeRomFlash.) C:\Program Files (x86)\Lenovo Smart Assistant\VibeRomFlash.exe
O4 - GS\CommonDesktop [Public]: Match! 2.lnk . (...) C:\Program Files (x86)\Match2\Match!.exe {6C79DF937EDF7E318437D918952BA38F}
O4 - GS\CommonDesktop [Public]: Mobile Assistant.lnk . (.Lenovo - MagicPlus.) C:\Program Files (x86)\MagicPlus\MagicPlus.exe =>.Lenovo
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Multimedia POP.lnk . (.TODO: - TODO: .) C:\Program Files\Samsung\MultimediaPOP\MultimediaPOP.exe
O4 - GS\CommonDesktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\CommonDesktop [Public]: PlayMemories Home.lnk . (.Sony Corporation - Browser.) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe =>.Sony Corporation®
O4 - GS\CommonDesktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe =>.Apple Inc.®
O4 - GS\CommonDesktop [Public]: Safari.lnk . (...) C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\CommonDesktop [Public]: Samsung Kies.lnk . (...) C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\CommonDesktop [Public]: Samsung Recovery Solution 5.lnk . (.SEC - Samsung Recovery Solution 5.) C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\Manager1.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\CommonDesktop [Public]: Samsung Update.lnk . (.Samsung Electronics CO., LTD. - Samsung Update Client.) C:\Program Files (x86)\Samsung\SW Update\sManager.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\WINDOWS\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: Software Launcher.lnk . (.Samsung Electronics CO., LTD. - Software Launcher.) C:\Program Files (x86)\Samsung\Software Launcher\Software Launcher.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe {3D7A9A7D12556AB8688CA048C60F6018} =>.Yahoo! Inc.
O4 - GS\Programs [Public]: S Agent.lnk . (.Samsung Electronics CO., LTD. - .) C:\Program Files (x86)\Samsung\S Agent\CommonAgent.exe =>.Samsung Electronics Co., Ltd.

---\\ Lop.com/Domain Hijackers (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6655FC8E-7294-4593-801D-7292AA87D725}: NameServer = 62.251.229.237 62.251.229.223
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2d69ea78-9436-436f-85d1-e360cac116a1}: DhcpNameServer = 172.16.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{bf8bb044-c8ac-470f-af3b-1b202940d71c}: DhcpNameServer = 192.168.8.1 192.168.8.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{f8d68e79-b2bd-42cf-b224-2a9955701de8}: DhcpNameServer = 192.168.1.1

---\\ Extra protocols (26) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: grooveLocalGWS [64Bits] - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation®
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ AppInit_DLLs Registry value Autorun (1) - 0s
O20 - AppInit_DLLs: . (...) - C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll (.not file.)

---\\ Software installed (131) - 43s
O42 - Logiciel: Adblock Plus pour IE (32-bits et 64-bits) - (.Eyeo GmbH.) [HKLM][64Bits] -- {92E167CC-3D19-47EB-AE7F-A135427C3220} =>.Eyeo GmbH
O42 - Logiciel: Adobe Acrobat Reader DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824161310} =>.Adobe Systems Incorporated
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {553255F3-78FD-40F1-A6F8-6882140265FE} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc.
O42 - Logiciel: Atheros Client Installation Program - (.Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Atheros
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: CloneDVD2 - (.Elaborate Bytes.) [HKLM][64Bits] -- CloneDVD2 =>.Elaborate Bytes
O42 - Logiciel: CorelDRAW Graphics Suite 12 - (.Corel Corporation.) [HKLM][64Bits] -- {505AFDC0-5E72-4928-8368-5DEA385E3647} =>.Corel Corporation
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink®
O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink®
O42 - Logiciel: CyberLink Media+ Player10 - (.CyberLink Corp..) [HKLM][64Bits] -- {34FBC7C4-CD31-4D93-A428-0E524EAC4586} =>.CyberLink®
O42 - Logiciel: CyberLink Media+ Player10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586} =>.CyberLink®
O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- {80E158EA-7181-40FE-A701-301CE6BE64AB} =>.CyberLink®
O42 - Logiciel: CyberLink MediaShow - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB} =>.CyberLink®
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink®
O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink®
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink®
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink®
O42 - Logiciel: Diamond 4.0 - (.Crystal Impact.) [HKLM][64Bits] -- {1F148DAB-BC6B-4048-802F-BB2130A63401}
O42 - Logiciel: Easy Support Center - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {0738F5F1-8E70-49A6-8692-F5722E1E5A4D} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Endeavour - (.Crystal Impact GbR, Bonn, Germany.) [HKLM][64Bits] -- {ECEBB6B8-C47F-4A78-86FC-141973A16F58}
O42 - Logiciel: ETDWare X64 15.7.0.1_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronic Corp.
O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM][64Bits] -- Foxit Reader_is1 =>.Foxit Software Incorporated®
O42 - Logiciel: Foxit Reader Packages - (...) [HKCU][64Bits] -- Foxit Reader Packages
O42 - Logiciel: Free Download Manager 3.9.4 - (.FreeDownloadManager.ORG.) [HKLM][64Bits] -- Free Download Manager_is1 =>.FreeDownloadManager.ORG
O42 - Logiciel: FullProf_Suite - (...) [HKLM][64Bits] -- FullProf_Suite
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc.
O42 - Logiciel: HiJackThis - (.Trend Micro.) [HKLM][64Bits] -- {45A66726-69BC-466B-A7A4-12FCBA4883D7} =>.Trend Micro
O42 - Logiciel: HP Deskjet 1510 series Basic Device Software - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {D17E60E8-478A-4D4A-8147-21D481B5CA55} =>.Hewlett-Packard Co.
O42 - Logiciel: HP Deskjet 1510 series Help - (.Hewlett Packard.) [HKLM][64Bits] -- {2E25FCEB-EFCB-4696-AA01-D3CBAC721831} =>.Hewlett Packard
O42 - Logiciel: HP FWUpdateEDO2 - (.Hewlett-Packard.) [HKLM][64Bits] -- {415FA9AD-DA10-4ABE-97B6-5051D4795C90} =>.Hewlett-Packard
O42 - Logiciel: HP LaserJet P1000 series - (...) [HKLM][64Bits] -- HP LaserJet P1000 series
O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations =>.Visan Industries®
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard
O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D} =>.Microsoft
O42 - Logiciel: hppMSRedist - (.Hewlett-Packard.) [HKLM][64Bits] -- {58ECE031-9AAD-4011-B34A-BC78E77527E2} =>.Hewlett-Packard
O42 - Logiciel: hppusgP1000 - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1AC923B-2A52-4C5D-8011-5FC83CD58CF4} =>.Hewlett-Packard
O42 - Logiciel: HPSSupply - (.Nom de votre société.) [HKLM][64Bits] -- {7902E313-FF0F-4493-ACB1-A8147B78DCD0}
O42 - Logiciel: HSPA USB MODEM - (.Alcatel.) [HKLM][64Bits] -- HSPA USB MODEM ALCATEL_is1 =>.ALCATEL
O42 - Logiciel: Intel PROSet Wireless - (...) [HKLM][64Bits] -- ProInst
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Internet Mobile+ - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Internet Mobile+ =>.Huawei Technologies Co.,Ltd
O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {77E7AE5C-181C-4CAF-ADBF-946F11C1CE26} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26} =>.Kaspersky Lab
O42 - Logiciel: Lenovo Smart Assistant 1.03 - (.Lenovo.) [HKLM][64Bits] -- VibeRomFlash =>.Lenovo
O42 - Logiciel: LG PC Suite - (.LG Electronics.) [HKLM][64Bits] -- LG PC Suite =>.LG Electronics
O42 - Logiciel: LG United Mobile Driver - (.LG Electronics.) [HKLM][64Bits] -- {2A3A4BD6-6CE0-4e2a-80D2-1D0FF6ACBFBA} =>.LG Electronics
O42 - Logiciel: LG USB WML Modem Driver - (.LG Electronics.) [HKLM][64Bits] -- {FBA0CA60-8BF2-4381-B819-74F020E165A9} =>.LG Electronics
O42 - Logiciel: Logiciel Intel® PROSet/Wireless WiFi - (.Intel Corporation.) [HKLM][64Bits] -- {ECE5B218-A086-4E18-A362-D11181681457} =>.Intel Corporation
O42 - Logiciel: MarketResearch - (.Hewlett-Packard.) [HKLM][64Bits] -- {D2E0F0CC-6BE0-490b-B08B-9267083E34C9} =>.Hewlett-Packard
O42 - Logiciel: Match! 2 - (.Crystal Impact.) [HKLM][64Bits] -- Match! 2 2
O42 - Logiciel: MergeModule_x86 - (.Sony Corporation.) [HKLM][64Bits] -- {DD7721BB-CF1C-4DC9-AD87-8D5FB75413B7} =>.Sony Corporation
O42 - Logiciel: Microsoft Network Monitor 3.4 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C5B5A11-CBF8-451B-B201-77FAB0D0B77D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Network Monitor: NetworkMonitor Parsers 3.4 - (.Microsoft Corporation.) [HKLM][64Bits] -- {963E5FEB-1367-46B9-851D-A957F1A3747F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mobile Assistant - (.Lenovo.) [HKLM][64Bits] -- {7D677372-E516-4A79-BE04-B4D2C068CD3D} =>.Lenovo
O42 - Logiciel: Mobile Broadband HL Service - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Mobile Broadband HL Service =>.Huawei Technologies Co., Ltd.®
O42 - Logiciel: Mozilla Firefox 39.0 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 en-US) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MrvlUsgTracking - (.Marvell.) [HKLM][64Bits] -- {A82D052A-0806-42DF-80CD-1730A1AC0ED3} =>.Marvell
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: Multimedia POP - (...) [HKLM][64Bits] -- {331ECF61-69AF-4F57-AC35-AFED610231C3}
O42 - Logiciel: MyFreeCodec - (...) [HKCU][64Bits] -- MyFreeCodec
O42 - Logiciel: Nikon File Uploader 2 - (.Nikon.) [HKLM][64Bits] -- {D1E7142C-6BC3-49EB-A71A-E5D7ADAC7599} =>.Nikon
O42 - Logiciel: Nikon Message Center 2 - (.Nikon.) [HKLM][64Bits] -- {B014EE44-9197-4513-9613-71E6EB1B514E} =>.Nikon
O42 - Logiciel: NVIDIA Control Panel 353.62 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience 2.8.1.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Optimus Update 2.8.1.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA PhysX System Software 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 2.8.1.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update 2.8.1.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 1.2.31 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: Opera Stable 26.0.1656.24 - (.Opera Software ASA.) [HKLM][64Bits] -- Opera 26.0.1656.24 =>.Opera Software ASA®
O42 - Logiciel: Opera Stable 34.0.2036.50 - (.Opera Software.) [HKLM][64Bits] -- Opera 34.0.2036.50 =>.Opera Software ASA®
O42 - Logiciel: Origin 6.0 - (...) [HKLM][64Bits] -- Origin 6.0
O42 - Logiciel: Origin8 - (.OriginLab.) [HKLM][64Bits] -- {E55E016B-8254-4A3F-ACEB-FE9988CD880F}
O42 - Logiciel: OriginPro 8 - (.OriginLab Corporation.) [HKLM][64Bits] -- {A912021A-FEDD-4DA3-8DB4-245EBDA84778} =>.Macrovision Corporation®
O42 - Logiciel: Picture Control Utility - (.Nikon.) [HKLM][64Bits] -- {87441A59-5E64-4096-A170-14EFE67200C3} =>.Nikon
O42 - Logiciel: PlayMemories Home - (.Sony Corporation.) [HKLM][64Bits] -- {94F4815B-755A-4FFA-AFDC-EE8FE776981E} =>.Sony Corporation
O42 - Logiciel: PMB_ModeEditor - (.Sony Corporation.) [HKLM][64Bits] -- {D5318740-B088-4B1A-B6A8-1F90A172CCD1} =>.Sony Corporation
O42 - Logiciel: PMB_ServiceUploader - (.Sony Corporation.) [HKLM][64Bits] -- {E7FDF11C-12BB-4D6F-9B6D-F8E488C776DC} =>.Sony Corporation
O42 - Logiciel: Product Improvement Study for HP Deskjet 1510 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {35DB2630-846E-47C5-AF84-9D6AC3629F55} =>.Hewlett-Packard Co.
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD} =>.Apple Inc.
O42 - Logiciel: RealDownloader - (.RealNetworks, Inc..) [HKLM][64Bits] -- {692AC224-5A8F-4F71-B539-5145190C0A60} =>.RealNetworks, Inc.
O42 - Logiciel: RealDownloader - (.RealNetworks.) [HKLM][64Bits] -- {415b7aee-0fe7-4ecc-8dda-324545bb1938} =>.RealNetworks, Inc.®
O42 - Logiciel: RealDownloader - (.RealNetworks.) [HKLM][64Bits] -- {5185C946-9278-48AE-8090-599C0EB13BED} =>.RealNetworks
O42 - Logiciel: RealPlayer (RealTimes) - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 18.1 =>.RealNetworks, Inc.®
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: RealUpgrade 1.1 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {28C2DED6-325B-4CC7-983A-1777C8F7FBAB} =>.RealNetworks, Inc.
O42 - Logiciel: S Agent - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {00692554-EDF4-4514-878F-A1C527EED296} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {C779648B-410E-4BBA-B75B-5815BCEFE71D} =>.Apple Inc.
O42 - Logiciel: SAGEM F@st 800-840 - (.SAGEM.) [HKLM][64Bits] -- {4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F} =>.Macrovision Corporation®
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Samsung Kies3 - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {88547073-C566-4895-9005-EBE98EA3F7C7} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Samsung Kies3 - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Samsung Recovery Solution 5 - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {145DE957-0679-4A2A-BB5C-1D3E9808FAB2} =>.Samsung Electronics CO., LTD.®
O42 - Logiciel: Samsung Update - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {00ABE05F-DB49-4421-AA35-833DD9A9A94D} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.DEVGURU CO LTD®
O42 - Logiciel: Search App by Ask - (.APN, LLC.) [HKLM][64Bits] -- {5245414C-392D-5350-00A7-A758B70C2600} =>PUP.Optional.BrowserTabSearch
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Software Launcher - (.Samsung.) [HKLM][64Bits] -- {B750B5C2-CC17-4967-905B-29F4EB986131} =>.Samsung
O42 - Logiciel: Twiny 2013 - (.CRM2.) [HKLM][64Bits] -- Twiny
O42 - Logiciel: Ultralingua 7.1 - (.Ultralingua, inc..) [HKLM][64Bits] -- {CFEF2383-D0AE-4284-AEFA-AFA63FD81A0A}_is1 =>.Ultralingua, Inc.
O42 - Logiciel: UpdateService - (.RealNetworks, Inc..) [HKLM][64Bits] -- {E3AE96D6-E196-45B4-AF62-2B41998B9E37} =>.RealNetworks, Inc.
O42 - Logiciel: Video Downloader - (.RealNetworks.) [HKLM][64Bits] -- {E60AFF01-6087-47BD-8272-61FA3CFC309D} =>.RealNetworks
O42 - Logiciel: ViewNX 2 - (.Nikon.) [HKLM][64Bits] -- {DDD62492-32A7-412B-8AF1-2CF032AD42E3} =>.Nikon
O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o.
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: WinRAR 5.10 beta 2 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: XPowder 2010.01.10 - (.XPowder Software.) [HKLM][64Bits] -- {A418921C-F157-4B30-9380-11E4A43D6472}_is1
O42 - Logiciel: XPowder12 2004.04.18 - (.XPowder Software.) [HKLM][64Bits] -- {F0B34935-8520-48E2-A23C-C20CACDE00FC}_is1
O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger =>.Yahoo! Inc.

---\\ HKCU & HKLM Software Keys (158) - 43s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Alcatel
HKLM\SOFTWARE\Wow6432Node\Analog Devices
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Atheros
HKLM\SOFTWARE\Wow6432Node\Avg
HKLM\SOFTWARE\Wow6432Node\Bitstream
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\Corel
HKLM\SOFTWARE\Wow6432Node\Crystal Impact
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\DeviceHelper
HKLM\SOFTWARE\Wow6432Node\Elaborate Bytes
HKLM\SOFTWARE\Wow6432Node\Electric Piano
HKLM\SOFTWARE\Wow6432Node\Equalizer
HKLM\SOFTWARE\Wow6432Node\External Build System
HKLM\SOFTWARE\Wow6432Node\Foxit Software
HKLM\SOFTWARE\Wow6432Node\FreeDownloadManager.ORG
HKLM\SOFTWARE\Wow6432Node\FullProf_Suite
HKLM\SOFTWARE\Wow6432Node\Ginger
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\HP
HKLM\SOFTWARE\Wow6432Node\Huawei technologies
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\LG Electronics
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MagicPlus
HKLM\SOFTWARE\Wow6432Node\Microcal Software Inc.
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Myfree Codec
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Nikon
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Office
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\OriginLab Corporation
HKLM\SOFTWARE\Wow6432Node\ParetoLogic =>.Superfluous.Paretologic
HKLM\SOFTWARE\Wow6432Node\RealNetworks
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Redemption
HKLM\SOFTWARE\Wow6432Node\RocketLife
HKLM\SOFTWARE\Wow6432Node\SAGEM
HKLM\SOFTWARE\Wow6432Node\Samsung
HKLM\SOFTWARE\Wow6432Node\Samsung Electronics Co., Ltd.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sonic
HKLM\SOFTWARE\Wow6432Node\Sony Corporation
HKLM\SOFTWARE\Wow6432Node\SRS Labs
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visan
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\wtu
HKLM\SOFTWARE\Wow6432Node\Xing Technology Corp.
HKLM\SOFTWARE\Wow6432Node\yahoo =>.Yahoo!
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\AdblockPlus
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar
HKCU\SOFTWARE\Astonsoft
HKCU\SOFTWARE\Avg
HKCU\SOFTWARE\Avg Secure Update
HKCU\SOFTWARE\CDDB
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Corel
HKCU\SOFTWARE\Crystal Impact
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Digital Light
HKCU\SOFTWARE\Displays
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\Drum Kits
HKCU\SOFTWARE\Elaborate Bytes
HKCU\SOFTWARE\Elantech
HKCU\SOFTWARE\FastReport
HKCU\SOFTWARE\FileHippo
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\FreeDownloadManager.ORG
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Lenovo
HKCU\SOFTWARE\LG Electronics
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\LowRegistry
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MagicPlus
HKCU\SOFTWARE\MagicPlusMini
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\Microcal Software Inc.
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Myfree Codec
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nikon
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Office
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\OriginLab
HKCU\SOFTWARE\ParetoLogic =>.Superfluous.Paretologic
HKCU\SOFTWARE\PCGUID
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Real
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Redemption
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\Screentime Media
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
HKCU\SOFTWARE\Sony Corporation
HKCU\SOFTWARE\supercoolpim
HKCU\SOFTWARE\Symantec
HKCU\SOFTWARE\SYNCJM
HKCU\SOFTWARE\Tific
HKCU\SOFTWARE\Trend Micro
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Viewer VisionPACS
HKCU\SOFTWARE\Visan
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\yahoo =>.Yahoo!
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\RealNetworks

---\\ Contents of the Common Files folders (315) - 46s
O43 - CFD: 08/11/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.®
O43 - CFD: 22/11/2015 - [] AD -- C:\Program Files (x86)\AskPartnerNetwork {76A1FC71CE00683A2B887A2CFA2F5D6B} =>Toolbar.AskBar
O43 - CFD: 31/05/2015 - [] D -- C:\Program Files (x86)\Astonsoft
O43 - CFD: 08/11/2014 - [] AD -- C:\Program Files (x86)\Atheros
O43 - CFD: 11/12/2014 - [] HD -- C:\Program Files (x86)\Avago-HP
O43 - CFD: 09/11/2014 - [0] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 09/11/2014 - [] D -- C:\Program Files (x86)\Corel
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink®
O43 - CFD: 08/06/2015 - [] AD -- C:\Program Files (x86)\Diamond 4
O43 - CFD: 10/10/2015 - [] D -- C:\Program Files (x86)\Elaborate Bytes
O43 - CFD: 07/06/2015 - [] AD -- C:\Program Files (x86)\Endeavour
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software Incorporated®
O43 - CFD: 08/11/2014 - [] AD -- C:\Program Files (x86)\Free Download Manager
O43 - CFD: 15/01/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company®
O43 - CFD: 12/05/2015 - [] AD -- C:\Program Files (x86)\HP
O43 - CFD: 17/03/2015 - [] D -- C:\Program Files (x86)\HP Photo Creations =>.Visan Industries®
O43 - CFD: 01/11/2015 - [] AD -- C:\Program Files (x86)\HSPA USB MODEM
O43 - CFD: 07/10/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software Corporation®
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation®
O43 - CFD: 16/12/2014 - [] D -- C:\Program Files (x86)\Internet Download Manager
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 04/06/2015 - [] D -- C:\Program Files (x86)\Internet Mobile+
O43 - CFD: 22/01/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 06/01/2016 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab®
O43 - CFD: 08/08/2015 - [] D -- C:\Program Files (x86)\Lenovo Smart Assistant
O43 - CFD: 14/11/2014 - [] D -- C:\Program Files (x86)\LG Electronics
O43 - CFD: 10/08/2015 - [] AD -- C:\Program Files (x86)\MagicPlus
O43 - CFD: 21/07/2015 - [] AD -- C:\Program Files (x86)\Match2
O43 - CFD: 03/06/2015 - [] D -- C:\Program Files (x86)\Microcal
O43 - CFD: 25/01/2015 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET
O43 - CFD: 17/11/2014 - [] AD -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 14/12/2015 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 08/11/2014 - [] AD -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 17/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 24/01/2016 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 05/10/2015 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 23/12/2015 - [] AD -- C:\Program Files (x86)\MSBuild
O43 - CFD: 09/11/2014 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 23/12/2014 - [] D -- C:\Program Files (x86)\MyFree Codec
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Nikon
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 21/01/2016 - [] AD -- C:\Program Files (x86)\Opera =>.Opera Software ASA®
O43 - CFD: 10/11/2014 - [] D -- C:\Program Files (x86)\OriginLab
O43 - CFD: 15/08/2015 - [] AD -- C:\Program Files (x86)\QuickTime
O43 - CFD: 22/11/2015 - [] D -- C:\Program Files (x86)\Real =>.RealNetworks, Inc.®
O43 - CFD: 22/11/2015 - [] AD -- C:\Program Files (x86)\RealNetworks =>.RealNetworks, Inc.®
O43 - CFD: 28/10/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 24/12/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files (x86)\Safari =>.Apple Inc.®
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\SAGEM {17E885E30185F79AAFDF01CCF61E18D1}
O43 - CFD: 23/12/2014 - [] D -- C:\Program Files (x86)\Samsung =>.DEVGURU CO LTD®
O43 - CFD: 15/01/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Sony =>.Sony Corporation®
O43 - CFD: 27/10/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 05/02/2015 - [] D -- C:\Program Files (x86)\Trend Micro
O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\Twiny
O43 - CFD: 08/12/2015 - [] D -- C:\Program Files (x86)\Ultralingua
O43 - CFD: 23/12/2015 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 28/04/2015 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 23/12/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Yahoo!
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 23/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 23/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
O43 - CFD: 23/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepBurner
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diamond 4
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Endeavour
O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Download Manager
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FullProf_Suite
O43 - CFD: 14/07/2009 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 15/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSPA USB MODEM
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Mobile+
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 06/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Smart Assistant
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG PC Suite
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LGMobile Support Tool
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Match! 2
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microcal Origin 6.0
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Network Monitor 3.4
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobile Assistant
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OriginLab
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMemories Home
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAGEM F@st 800-840
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Suite graphique CorelDRAW 12
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Twiny
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultralingua
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX 2
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPowder
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPowder12
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger
O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\APN =>Toolbar.Ask
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Apple
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 23/12/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\AskPartnerNetwork =>Toolbar.YahooPartner
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 02/11/2015 - [0] D -- C:\ProgramData\Avg
O43 - CFD: 17/02/2015 - [] D -- C:\ProgramData\AVG Security Toolbar =>Toolbar.AVGSearch
O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\AVG2015
O43 - CFD: 26/02/2015 - [] D -- C:\ProgramData\Avg_Update_0215tb
O43 - CFD: 27/07/2015 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 11/10/2015 - [] D -- C:\ProgramData\ColorMode
O43 - CFD: 07/10/2015 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 11/12/2014 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\DatacardService
O43 - CFD: 23/12/2015 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 23/12/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 10/10/2015 - [] D -- C:\ProgramData\Elaborate Bytes
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\EnterNHelp
O43 - CFD: 23/12/2015 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 15/11/2014 - [] D -- C:\ProgramData\FileCure =>PUP.Optional.FileCure
O43 - CFD: 17/12/2014 - [] D -- C:\ProgramData\Free Download Manager
O43 - CFD: 11/11/2014 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 12/05/2015 - [] AD -- C:\ProgramData\HP
O43 - CFD: 17/03/2015 - [] AD -- C:\ProgramData\HP Photo Creations
O43 - CFD: 11/11/2014 - [0] D -- C:\ProgramData\HPSSUPPLY
O43 - CFD: 10/11/2014 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 09/11/2014 - [] D -- C:\ProgramData\Intel
O43 - CFD: 15/11/2014 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 25/01/2016 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 14/11/2014 - [] D -- C:\ProgramData\LGMOBILEAX
O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\MFAData
O43 - CFD: 23/12/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 10/09/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 25/11/2014 - [] D -- C:\ProgramData\MobileBrServ
O43 - CFD: 28/01/2015 - [] D -- C:\ProgramData\Modem HDM EC156
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Nikon
O43 - CFD: 15/02/2015 - [] D -- C:\ProgramData\Norton
O43 - CFD: 05/01/2015 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 22/01/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\Real
O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\RealNetworks
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Roaming
O43 - CFD: 30/12/2014 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 19/01/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Sony Corporation
O43 - CFD: 23/12/2015 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 28/11/2014 - [] D -- C:\ProgramData\Sun
O43 - CFD: 04/12/2014 - [0] D -- C:\ProgramData\Temp
O43 - CFD: 23/12/2015 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Ultima_T15
O43 - CFD: 08/12/2015 - [] D -- C:\ProgramData\Ultralingua7
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 04/03/2015 - [] D -- C:\ProgramData\Visan
O43 - CFD: 04/12/2014 - [] D -- C:\ProgramData\WinClon
O43 - CFD: 08/11/2014 - [] D -- C:\ProgramData\Yahoo!
O43 - CFD: 08/11/2015 - [] AD -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 09/11/2014 - [] D -- C:\Program Files (x86)\Common Files\Corel
O43 - CFD: 08/11/2014 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 17/11/2014 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\DeviceHelper
O43 - CFD: 09/11/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 22/01/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 23/12/2015 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Nikon
O43 - CFD: 22/11/2015 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 18/12/2015 - [] AD -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 15/02/2015 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 22/11/2014 - [] D -- C:\Program Files (x86)\Common Files\xing shared
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\0F1L1I1P0H1L1E1E1F =>Adware.InstallCore
O43 - CFD: 05/12/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Acapela Group
O43 - CFD: 10/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Adobe
O43 - CFD: 13/01/2016 - [] D -- C:\Users\ZATO\AppData\Roaming\Apple Computer
O43 - CFD: 25/10/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\AVG
O43 - CFD: 09/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Corel
O43 - CFD: 29/06/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\CyberLink
O43 - CFD: 31/05/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\DeepBurner
O43 - CFD: 08/06/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Diamond 4
O43 - CFD: 25/01/2016 - [] D -- C:\Users\ZATO\AppData\Roaming\DMCache
O43 - CFD: 22/11/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\dvdcss
O43 - CFD: 13/05/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Foxit Software
O43 - CFD: 16/01/2016 - [] D -- C:\Users\ZATO\AppData\Roaming\Free Download Manager
O43 - CFD: 19/03/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\HpUpdate
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Identities
O43 - CFD: 25/01/2016 - [] D -- C:\Users\ZATO\AppData\Roaming\IDM
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\InstallShield
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Intel
O43 - CFD: 15/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\IsolatedStorage
O43 - CFD: 22/05/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\LaunchPad
O43 - CFD: 10/08/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Lenovo
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Macromedia
O43 - CFD: 23/12/2015 - [] SD -- C:\Users\ZATO\AppData\Roaming\Microsoft
O43 - CFD: 28/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\mopro
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Mozilla
O43 - CFD: 15/08/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Nikon
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Opera Software
O43 - CFD: 30/11/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Real
O43 - CFD: 22/11/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\RealNetworks
O43 - CFD: 23/12/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Samsung
O43 - CFD: 25/01/2016 - [] D -- C:\Users\ZATO\AppData\Roaming\Skype
O43 - CFD: 16/11/2014 - [0] D -- C:\Users\ZATO\AppData\Roaming\Solvusoft
O43 - CFD: 03/11/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Sony Corporation
O43 - CFD: 06/01/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Tific
O43 - CFD: 16/02/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\TuneUp Software
O43 - CFD: 20/12/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\TunnelBear
O43 - CFD: 21/01/2016 - [] D -- C:\Users\ZATO\AppData\Roaming\vlc
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\WinRAR
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Roaming\Yahoo!
O43 - CFD: 25/01/2016 - [] D -- C:\Users\ZATO\AppData\Roaming\ZHP
O43 - CFD: 23/12/2015 - [0] D -- C:\Users\ZATO\AppData\Local\ActiveSync
O43 - CFD: 15/01/2016 - [] D -- C:\Users\ZATO\AppData\Local\Adobe
O43 - CFD: 13/01/2016 - [] D -- C:\Users\ZATO\AppData\Local\Apple
O43 - CFD: 13/01/2016 - [] D -- C:\Users\ZATO\AppData\Local\Apple Computer
O43 - CFD: 23/12/2015 - [0] SHD -- C:\Users\ZATO\AppData\Local\Application Data
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\Apps
O43 - CFD: 02/11/2015 - [] D -- C:\Users\ZATO\AppData\Local\Avg
O43 - CFD: 30/10/2015 - [] D -- C:\Users\ZATO\AppData\Local\AvgSetupLog
O43 - CFD: 08/11/2015 - [] D -- C:\Users\ZATO\AppData\Local\CEF
O43 - CFD: 05/11/2015 - [] D -- C:\Users\ZATO\AppData\Local\Comms
O43 - CFD: 24/01/2016 - [0] D -- C:\Users\ZATO\AppData\Local\CrashDumps
O43 - CFD: 11/09/2015 - [] D -- C:\Users\ZATO\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 21/06/2015 - [] D -- C:\Users\ZATO\AppData\Local\CrystalImpact
O43 - CFD: 09/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\Cyberlink
O43 - CFD: 13/01/2016 - [] D -- C:\Users\ZATO\AppData\Local\Diagnostics
O43 - CFD: 08/06/2015 - [] D -- C:\Users\ZATO\AppData\Local\Downloaded Installations
O43 - CFD: 22/06/2015 - [0] D -- C:\Users\ZATO\AppData\Local\ElevatedDiagnostics
O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\ZATO\AppData\Local\EmieBrowserModeList
O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\ZATO\AppData\Local\EmieSiteList
O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\ZATO\AppData\Local\EmieUserList
O43 - CFD: 03/12/2014 - [] D -- C:\Users\ZATO\AppData\Local\Facebook
O43 - CFD: 15/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\FileViewPro
O43 - CFD: 03/08/2015 - [] D -- C:\Users\ZATO\AppData\Local\Google
O43 - CFD: 09/06/2015 - [] D -- C:\Users\ZATO\AppData\Local\GWX
O43 - CFD: 23/12/2015 - [0] SHD -- C:\Users\ZATO\AppData\Local\History
O43 - CFD: 17/02/2015 - [0] D -- C:\Users\ZATO\AppData\Local\HockeyCrashes
O43 - CFD: 04/03/2015 - [] D -- C:\Users\ZATO\AppData\Local\HP
O43 - CFD: 19/12/2014 - [] D -- C:\Users\ZATO\AppData\Local\IsolatedStorage
O43 - CFD: 14/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\LG Electronics
O43 - CFD: 16/02/2015 - [] D -- C:\Users\ZATO\AppData\Local\MFAData
O43 - CFD: 23/12/2015 - [] D -- C:\Users\ZATO\AppData\Local\Microsoft
O43 - CFD: 08/11/2014 - [0] D -- C:\Users\ZATO\AppData\Local\Microsoft Help
O43 - CFD: 07/10/2015 - [] D -- C:\Users\ZATO\AppData\Local\MicrosoftEdge
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\Mozilla
O43 - CFD: 07/10/2015 - [0] D -- C:\Users\ZATO\AppData\Local\NetworkTiles
O43 - CFD: 15/08/2015 - [] D -- C:\Users\ZATO\AppData\Local\Nikon
O43 - CFD: 23/01/2015 - [] D -- C:\Users\ZATO\AppData\Local\NVIDIA
O43 - CFD: 11/11/2015 - [] D -- C:\Users\ZATO\AppData\Local\NVIDIA Corporation
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\Opera Software
O43 - CFD: 23/12/2015 - [] D -- C:\Users\ZATO\AppData\Local\Packages
O43 - CFD: 09/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\Power2Go
O43 - CFD: 08/11/2014 - [] D -- C:\Users\ZATO\AppData\Local\Programs
O43 - CFD: 07/10/2015 - [] D -- C:\Users\ZATO\AppData\Local\Publishers
O43 - CFD: 11/09/2015 - [] D -- C:\Users\ZATO\AppData\Local\Real
O43 - CFD: 23/12/2014 - [] D -- C:\Users\ZATO\AppData\Local\Samsung
O43 - CFD: 18/12/2015 - [0] D -- C:\Users\ZATO\AppData\Local\Skype
O43 - CFD: 06/01/2015 - [] D -- C:\Users\ZATO\AppData\Local\Symantec
O43 - CFD: 25/01/2016 - [] D -- C:\Users\ZATO\AppData\Local\Temp
O43 - CFD: 23/12/2015 - [0] SHD -- C:\Users\ZATO\AppData\Local\Temporary Internet Files
O43 - CFD: 07/10/2015 - [] D -- C:\Users\ZATO\AppData\Local\TileDataLayer
O43 - CFD: 01/06/2015 - [] D -- C:\Users\ZATO\AppData\Local\VirtualStore
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 23/12/2015 - [] RD -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 23/12/2015 - [] RD -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 23/12/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CMPR & LOGIC
O43 - CFD: 23/12/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiJackThis
O43 - CFD: 23/12/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 30/10/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 23/12/2015 - [] RD -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 28/11/2014 - [0] D -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twiny
O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 23/12/2015 - [] D -- C:\Users\ZATO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (10) - 2s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ZATO\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ZATO\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ZATO\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ZATO\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ZATO\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation®

---\\ ShareTools MSconfig StartupReg (1) - 0s
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd

---\\ System Drivers List (76) - 16s
O58 - SDL:2014/04/29 06:20:58 A . (.Qihu 360 Software Co., Ltd. - 360 Internet Security Proactive Defense.) -- C:\WINDOWS\System32\drivers\360Box64.sys [305744] =>.QIHU 360 SOFTWARE CO. LIMITED®
O58 - SDL:2015/10/30 07:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows®
O58 - SDL:2012/07/18 00:49:00 A . (.Windows (R) Win 7 DDK provider - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\WINDOWS\System32\drivers\AmpPal.sys [198144] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 07:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 07:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2013/10/15 10:42:24 A . (.Motorola Solutions, Inc. - Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\btmhsf.sys [1390904] =>.Motorola Solutions Inc.®
O58 - SDL:2015/10/30 07:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2015/07/06 00:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x64 (Weak).) -- C:\WINDOWS\System32\drivers\cm_km.sys [389816] =>.Kaspersky Lab®
O58 - SDL:2014/05/14 09:40:59 A . (.Qihu 360 Software Co., Ltd. - 360 Internet Security Efimon Driver.) -- C:\WINDOWS\System32\drivers\efimon.sys [22992] =>.QIHU 360 SOFTWARE CO. LIMITED®
O58 - SDL:2014/12/20 22:31:04 A . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) -- C:\WINDOWS\System32\drivers\ElbyCDIO.sys [40344] =>.Elaborate Bytes AG®
O58 - SDL:2015/10/07 16:54:11 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\WINDOWS\System32\drivers\ETD.sys [483400] =>.ELAN MICROELECTRONICS CORPORATION®
O58 - SDL:2015/10/07 16:54:15 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) -- C:\WINDOWS\System32\drivers\ETDSMBus.sys [32328] =>.ELAN MICROELECTRONICS CORPORATION®
O58 - SDL:2015/10/30 07:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows®
O58 - SDL:2010/10/19 22:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation®
O58 - SDL:2015/10/30 07:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation
O58 - SDL:2015/10/30 07:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] =>.Intel Corporation
O58 - SDL:2015/10/30 07:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/10/30 07:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2011/02/18 08:11:54 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStor.sys [439320] =>.Intel Corporation®
O58 - SDL:2015/10/30 07:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows®
O58 - SDL:2013/10/15 10:42:10 A . (.Intel Corporation - Intel(R) Centrino(R) Wireless (Bluetooth Ad.) -- C:\WINDOWS\System32\drivers\iBtFltCoex.sys [69088] =>.Intel Corporation-Mobile Wireless Group®
O58 - SDL:2013/11/28 00:24:18 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [175480] =>.Tonec Inc.®
O58 - SDL:2015/06/01 20:00:18 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5384176] =>.Intel Corporation - pGFX®
O58 - SDL:2015/06/22 20:40:04 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\WINDOWS\System32\drivers\kl1.sys [478392] =>.Kaspersky Lab®
O58 - SDL:2015/06/06 08:48:24 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klbackupdisk.sys [53432] =>.Kaspersky Lab®
O58 - SDL:2015/06/27 01:30:00 A . (.Kaspersky Lab ZAO - Backup File Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klbackupflt.sys [70512] =>.Kaspersky Lab®
O58 - SDL:2015/06/06 08:51:00 A . (.Kaspersky Lab ZAO - Virtual Disk [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kldisk.sys [68280] =>.Kaspersky Lab®
O58 - SDL:2015/06/24 01:28:32 A . (.Kaspersky Lab - Klelam Mini-Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klelam.sys [30328] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2016/01/06 23:59:24 A . (.AO Kaspersky Lab - Filter Core [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klflt.sys [181640] =>.Kaspersky Lab®
O58 - SDL:2016/01/06 23:27:53 A . (.AO Kaspersky Lab - klhk [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klhk.sys [227512] =>.Kaspersky Lab®
O58 - SDL:2016/01/06 23:59:24 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klif.sys [934272] =>.Kaspersky Lab®
O58 - SDL:2015/06/11 19:35:38 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\WINDOWS\System32\drivers\klim6.sys [39608] =>.Kaspersky Lab®
O58 - SDL:2015/06/06 08:31:42 A . (.Kaspersky Lab ZAO - Keyboard Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [41656] =>.Kaspersky Lab®
O58 - SDL:2015/06/07 01:52:56 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [41656] =>.Kaspersky Lab®
O58 - SDL:2016/01/06 23:59:26 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klpd.sys [41352] =>.Kaspersky Lab®
O58 - SDL:2016/01/06 23:59:26 A . (.Kaspersky Lab ZAO - Network filtering component [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klwfp.sys [87944] =>.Kaspersky Lab®
O58 - SDL:2015/06/16 21:56:32 A . (.Kaspersky Lab ZAO - WFP Network Connection Filter Driver [fre_w.) -- C:\WINDOWS\System32\drivers\klwtp.sys [102584] =>.Kaspersky Lab®
O58 - SDL:2015/06/23 18:30:50 A . (.Kaspersky Lab ZAO - Network Processor [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kneps.sys [187056] =>.Kaspersky Lab®
O58 - SDL:2015/10/30 07:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:19 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwsw00.sys [11518976] =>.Intel Corporation
O58 - SDL:2015/07/23 03:02:12 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11142984] =>.NVIDIA Corporation®
O58 - SDL:2015/07/23 03:02:12 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvpciflt.sys [31376] =>.NVIDIA Corporation®
O58 - SDL:2015/10/30 07:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows®
O58 - SDL:2015/08/11 04:52:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [50472] =>.NVIDIA Corporation®
O58 - SDL:2015/10/30 07:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows®
O58 - SDL:2015/10/07 16:55:48 A . (.Windows (R) Win 7 DDK provider - HID Radio Switch mini driver for USB Fx2 De.) -- C:\WINDOWS\System32\drivers\RadioHIDMini.sys [32168] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2015/06/23 09:37:04 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [895256] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/08/28 22:16:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4519144] =>.Realtek Semiconductor Corp®
O58 - SDL:2012/05/07 17:47:14 A . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) -- C:\WINDOWS\System32\drivers\SABI.sys [13824] =>.SAMSUNG Electronics
O58 - SDL:2015/10/30 07:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2014/08/12 09:45:28 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656] =>.TunnelBear, Inc.®
O58 - SDL:2015/10/30 07:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/10/30 07:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows®
O58 - SDL:2011/12/12 19:32:22 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\WINDOWS\System32\athrx.sys [2797056] =>.Atheros Communications, Inc.

---\\ Last modified or created user files (5) - 8s
O61 - LFC: 2016/01/25 11:30:04 A . (..) -- C:\Users\ZATO\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [6128953]
O61 - LFC: 2016/01/25 21:37:56 A . (..) -- C:\Users\ZATO\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148]
O61 - LFC: 2016/01/25 12:25:19 A . (..) -- C:\Users\ZATO\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2016/01/25 10:52:31 A . (..) -- C:\Users\ZATO\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [67769]
O61 - LFC: 2016/01/25 21:41:35 A . (..) -- C:\Users\ZATO\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148]

---\\ File Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA®

---\\ Start Menu Internet (20) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Launcher.exe =>.Opera Software ASA®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe =>.Apple Inc.®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe =>.Apple Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe =>.Apple Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe =>.Apple Inc.

---\\ Search Browser Infection (5) - 12s
O69 - SBI: prefs.js [ZATO - 33cj0a52.default] user_pref("browser.search.selectedEngine", "AVG Secure Search"); =>Toolbar.AVGSearch
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} [DefaultScope] - (Google) - http://www.google.com/

---\\ Search Svchost Services (41) - 1s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\WINDOWS\System32\gpsvc.dll [1338368] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\WINDOWS\System32\ikeext.dll [957952] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\System32\iphlpsvc.dll [958464] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\WINDOWS\System32\appinfo.dll [94720] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\WINDOWS\System32\eapsvc.dll [112640] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\WINDOWS\system32\schedsvc.dll [1012224] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [225280] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [134656] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [372736] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\WINDOWS\System32\wercplsupport.dll [96256] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [186880] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\WINDOWS\system32\wlidsvc.dll [2058240] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\WINDOWS\System32\ncasvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\WINDOWS\System32\NetSetupSvc.dll [203776] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1073152] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [696320] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [507904] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\System32\sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\WINDOWS\System32\ipnathlp.dll [457728] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\system32\wuaueng.dll [2280448] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\WINDOWS\System32\qmgr.dll [1144320] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [608768] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\WINDOWS\System32\bdesvc.dll [360448] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1035776] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [360960] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1130496] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [205824] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [912384] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [948224] =>.Microsoft Corporation

---\\ Product Upgrade Codes (1) - 6s
O90 - PUC: "C4145425D2930535007A7A857BC06200" . (.Search App by Ask.) -- C:\WINDOWS\Installer\{5245414C-392D-5350-00A7-A758B70C2600}\ToolbarIcon.exe =>PUP.Optional.BrowserTabSearch

---\\ Additional Scan (O88) (26) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\APNMCP =>Toolbar.Ask
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.Ask
C:\WINDOWS\System32\Tasks\LaunchApp =>PUP.Optional.MyPCBackup
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe =>Toolbar.AskBar
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe =>Toolbar.AskBar
C:\Users\ZATO\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaafhgaihilbkellglkpeiegabpjem =>PUP.Optional.BrowserTabSearch
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5245414C-392D-5350-00A7-A758B70C2600} =>PUP.Optional.BrowserTabSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5245414C-392D-5350-00A7-A758B70C2600} =>PUP.Optional.BrowserTabSearch
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\ParetoLogic =>.Superfluous.Paretologic
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\ParetoLogic =>.Superfluous.Paretologic
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
C:\Program Files (x86)\AskPartnerNetwork =>Toolbar.AskBar
C:\ProgramData\APN =>Toolbar.Ask
C:\ProgramData\AskPartnerNetwork =>Toolbar.YahooPartner
C:\ProgramData\AVG Security Toolbar =>Toolbar.AVGSearch
C:\ProgramData\FileCure =>PUP.Optional.FileCure
C:\Users\ZATO\AppData\Roaming\0F1L1I1P0H1L1E1E1F =>Adware.InstallCore
C:\Users\ZATO\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\WINDOWS\Installer\{5245414C-392D-5350-00A7-A758B70C2600}\ToolbarIcon.exe =>PUP.Optional.BrowserTabSearch
HKLM\Software\Classes\Installer\Products\C4145425D2930535007A7A857BC06200 =>PUP.Optional.BrowserTabSearch
HKLM\Software\Classes\Installer\Features\C4145425D2930535007A7A857BC06200 =>PUP.Optional.BrowserTabSearch

---\\ Summary of the elements found (13) - 0s
http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AskBar
http://www.nicolascoolman.fr/pup-browsertabsearch/ =>PUP.Optional.BrowserTabSearch
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Paretologic
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.YahooPartner
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.FileCure
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports
http://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BDYahoo
http://www.nicolascoolman.fr/?p=210 =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Softonic
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AVGSearch

~ End of the scan, 78284 items in 00h06mn24s (1274)(0)

Publicité


Signaler le contenu de ce document

Publicité