cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.6.25.107 By Nicolas Coolman (2016/06/25)
~ Run by Bug (Administrator) (2016/06/27 02:57:48)
~ Web: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\Bug\Desktop\ZHPDiag.txt
~ Report: C:\Users\Bug\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ System startup: Normal (Normal boot)
Windows 7 Ultimate, 64-bit (Build 7600)

---\\ Internet Browsers (2) - 0s
MFIE: Mozilla Firefox 47.0 (x86 fr)
MSIE: Internet Explorer v8.0.7600.16385

---\\ Windows Product Information (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Surveillance software (1) - 1s
Adobe Flash Player 22 NPAPI

---\\ Information on the system (6) - 0s
~ Operating System: AMD64 Family 21 Model 2 Stepping 0, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8285.968 MB (67% free)
System Restore: Activé (Enable)
System drive C: has 593 GB () free of 953 GB

---\\ Connection to the system mode (3) - 0s
~ Computer Name: BUG-PC
~ User Name: Bug
~ Logged in as Administrator

---\\ Enumeration of the disk units (1) - 0s
~ Drive C: has 593 GB free of 953 GB (System)

---\\ State of the Windows Security Center (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Search Generic System Files (25) - 1s
[MD5.A185677FE318CA65DBDFAEA938B23E94] - 08/06/2010 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2873344] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.E71DB117DBDA6B33646F37936C17D226] - 21/12/2010 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [1197056] =>.Microsoft Corporation
[MD5.DA3E2A6FA9660CC75B471530CE88453A] - 07/06/2010 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [389632] =>.Microsoft Corporation
[MD5.75341574F21E766748732BDF530C74BD] - 14/07/2009 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [231936] =>.Microsoft Corporation
[MD5.05A2D26ACF0939A4E97160315F1FA12E] - 14/07/2009 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [356352] =>.Microsoft Corporation
[MD5.6D5A49D6479EB753C7879F73A4C35E0F] - 14/07/2009 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\Syswow64\dnsapi.dll [269824] =>.Microsoft Corporation
[MD5.B9384E03479D2506BC924C16A3DB87BC] - 14/07/2009 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [500224] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Corporation
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.83D2D75E1EFB81B3450C18131443F7DB] - 14/07/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.3F1DC527070ACB87E40AFE46EF6DA749] - 14/07/2009 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation
[MD5.0A49913402747A0B67DE940FB42CBDBB] - 14/07/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.767A4C3BCF9410C286CED15A2DB17108] - 07/06/2010 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [157696] =>.Microsoft Corporation
[MD5.9162B273A44AB9DCE5B44362731D062A] - 14/07/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [259072] =>.Microsoft Corporation
[MD5.356698A13C4630D5B31C37378D469196] - 14/07/2009 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1659984] =>.Microsoft Corporation
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.87A6E852A22991580D6D39ADC4790463] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [130048] =>.Microsoft Corporation
[MD5.9706B84DBABFC4B4CA46C5A82B14DFA3] - 14/07/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165376] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - 14/07/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [99840] =>.Microsoft Corporation
[MD5.9E425AC5C9A5A973273D169F43B4F5E1] - 06/09/2012 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [295792] =>.Microsoft Corporation

---\\ Non Microsoft non disabled Windows Services (8) - 0s
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe =>.AMD
O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - AMD Fuel Service.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc.
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe =>.BlueStack Systems, Inc.
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe =>.BlueStack Systems, Inc.
O23 - Service: DTSAudioSvc (DTSAudioSvc) . (.DTS, Inc - DTS Audio Service.) - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe =>.DTS, Inc
O23 - Service: Plays.tv Update Service (PlaysService) . (.Plays.tv, LLC - Plays.tv Service.) - C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe =>.Plays.tv, LLC
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Technologies
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH

---\\ Services not Microsoft (SR=Run, SS=Stop) (15) - 9s

SS - Demand [17/06/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated
SR - Auto [29/04/2016] [ 251392] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.AMD
SR - Auto [11/09/2013] [ 344064] AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc.
SS - Demand [19/01/2016] [ 1314848] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
SS - Demand [30/09/2015] [ 437880] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-Service.exe =>.BlueStack Systems, Inc.
SR - Auto [30/09/2015] [ 417400] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe =>.BlueStack Systems, Inc.
SR - Auto [30/09/2015] [ 855672] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe =>.BlueStack Systems, Inc.
SR - Auto [02/10/2012] [ 240584] DTSAudioSvc (DTSAudioSvc) . (.DTS, Inc.) - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe =>.DTS, Inc
SS - Demand [10/06/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Foundation
SR - Auto [07/06/2016] [ 32528] Plays.tv Update Service (PlaysService) . (.Plays.tv, LLC.) - C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe =>.Plays.tv, LLC
SS - Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Technologies
SS - Demand [14/12/2015] [ 836176] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve Corporation
SR - Auto [11/09/2015] [ 5702416] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH
SS - Demand [22/12/2015] [ 814064] TunngleService (TunngleService) . (.Tunngle.net GmbH.) - C:\Program Files (x86)\Tunngle\TnglCtrl.exe =>.Tunngle.net GmbH

---\\ Task Planned Automatically (7) - 4s
[MD5.00000000000000000000000000000000] [APT] [TaskName] (...) -- Task To Run (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.E324D38B6CCF843ED4F6D521908AEE5B] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [270016] (.Activate.) =>.Adobe Systems Incorporated
[MD5.D096FC1798721DADB88F26371DF50ECD] [APT] [AMD Updater] (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [10335432] (.Activate.) =>.Advanced Micro Devices, Inc.
[MD5.00000000000000000000000000000000] [APT] [Games] (...) -- COM handler (.not file.) [0] (.Activate.) =>.Superfluous.Empty
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [830] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3768] =>.Adobe Systems Incorporated
O39 - APT: AMD Updater - (.Advanced Micro Devices, Inc..) -- C:\Windows\System32\Tasks\AMD Updater [4224] =>.Advanced Micro Devices, Inc.

---\\ Process running (22) - 1s
[MD5.0CCED3AEACFA19E1A43A1E6E6A60443C] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [251392] [PID.992] =>.AMD
[MD5.BCE51E3881D382428F495DCD46D69BB9] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [564736] [PID.1156] =>.AMD
[MD5.9371A6937E4BA4AE974134E204E17FA8] - (.Advanced Micro Devices, Inc. - AMD Fuel Service.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064] [PID.1660] =>.Advanced Micro Devices, Inc.
[MD5.44CD1445CD451704060ABA6182F49B0F] - (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417400] [PID.1836] =>.BlueStack Systems, Inc.
[MD5.EEC2093160E9BD6E8862EC420AE55442] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [855672] [PID.1984] =>.BlueStack Systems, Inc.
[MD5.EE8684BF88C1B74D47647802281ED085] - (.DTS, Inc - DTS Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [240584] [PID.1816] =>.DTS, Inc
[MD5.4808ACE4B2C161AF2667F6C1AC45B434] - (.Plays.tv, LLC - Plays.tv Service.) -- C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528] [PID.2060] =>.Plays.tv, LLC
[MD5.2AA61246A5B813C1B12BCCFAA6F23DD8] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416] [PID.2200] =>.TeamViewer GmbH
[MD5.357CABBF155AFD1D3926E62539D2A3A7] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480] [PID.2240] =>.Microsoft Corp.
[MD5.D790CAFEFF0291D0AF8C76F5A1EE2E4E] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223488] [PID.2368] =>.Microsoft Corp.
[MD5.81893A5BEE9EFA62874172D6FACECFD2] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7200984] [PID.3428] =>.Realtek Semiconductor
[MD5.2BFBD5FB7B6EFFF59AD79BB8A8796926] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1353432] [PID.3436] =>.Realtek Semiconductor
[MD5.ADB8D21FC136BC4092A7F87DD4426F50] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [2917456] [PID.3608] =>.Valve Corporation
[MD5.984E309A46C615EDDA2B70E4BEF9A4FF] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe [917112] [PID.3944] =>.BlueStack Systems, Inc.
[MD5.6513807FEE68E6C32E67437EE3FFB6C8] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504] [PID.3972] =>.Oracle Corporation
[MD5.4BBE988F3D73EBC6D81993FEC34AEC71] - (.Plays.tv, LLC - Plays.tv Video Recorder by Raptr.) -- C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe [74000] [PID.3084] =>.Plays.tv, LLC
[MD5.C4B2949FA341D398AD312A54DF0FBBEC] - (.Raptr Inc. - Elevation Proxy.) -- C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_ep64.exe [169224] [PID.2424] =>.Raptr Inc.
[MD5.CF320FE13D0BCA3E79A20E99B72E80D4] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [2062416] [PID.4744] =>.Valve Corporation
[MD5.CF320FE13D0BCA3E79A20E99B72E80D4] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [2062416] [PID.6092] =>.Valve Corporation
[MD5.CF320FE13D0BCA3E79A20E99B72E80D4] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [2062416] [PID.5876] =>.Valve Corporation
[MD5.825FB6DE39FE63B3F59B78D760F0619C] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.1508] =>.Mozilla Corporation
[MD5.1F0FD5F97808913DCE17D91E84052308] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Bug\AppData\Roaming\ZHP\ZHPDiag3.exe [2221568] [PID.3872] =>.Nicolas Coolman

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (5) - 0s
P2 - EXT: (.mozilla.org - Default Plug-in.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npnul32.dll =>.mozilla.org
P2 - EXT FILE: (...) -- C:\Users\Bug\AppData\Roaming\Mozilla\Firefox\Profiles\77cczi5z.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Bug\AppData\Roaming\Mozilla\Firefox\Profiles\77cczi5z.default\searchplugins\smod.xml =>PUP.Optional.SearchModule
P2 - EXT: (...) -- C:\Users\Bug\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer Extensions, Start, Search (17) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object (BHO) (1) - 0s
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corp.

---\\ Auto loading programs from Registry and folders (18) - 0s
O4 - HKLM\..\Run: [Welcome Center] . (.Microsoft Corporation - Getting Started.) -- C:\Windows\System32\OobeFldr.dll =>.Microsoft Corporation
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor
O4 - HKLM\..\Run: [RtHDVBg_DTS] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor
O4 - HKLM\..\Run: [StartCN] . (.Advanced Micro Devices, Inc. - Radeon Settings: Host Application.) -- C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc.
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corporation
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKLM\..\Wow6432Node\Run: [Raptr] . (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe =>.Raptr, Inc
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe =>.BlueStack Systems, Inc.
O4 - HKLM\..\Wow6432Node\Run: [PlaysTV] . (.Plays.tv, LLC - Plays.tv Video Recorder by Raptr.) -- C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe =>.Plays.tv, LLC
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2768059949-598486152-1501519168-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2768059949-598486152-1501519168-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corporation
O4 - HKUS\S-1-5-21-2768059949-598486152-1501519168-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.

---\\ Global shortcuts Startup (36) - 5s
O4 - GS\Desktop [Administrator]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe
O4 - GS\Desktop [Administrator]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corporation
O4 - GS\Quicklaunch [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
O4 - GS\Quicklaunch [Administrator]: Tunngle.lnk . (.Tunngle.net GmbH - Tunngle GUI.) C:\Program Files (x86)\Tunngle\Tunngle.exe =>.Tunngle.net GmbH
O4 - GS\sendTo [Administrator]: MediaInfo.lnk . (...) C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe
O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH
O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
O4 - GS\TaskBar [Administrator]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe =>.TeamSpeak Systems GmbH
O4 - GS\Desktop [Bug]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe
O4 - GS\Desktop [Bug]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corporation
O4 - GS\Quicklaunch [Bug]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
O4 - GS\Quicklaunch [Bug]: Tunngle.lnk . (.Tunngle.net GmbH - Tunngle GUI.) C:\Program Files (x86)\Tunngle\Tunngle.exe =>.Tunngle.net GmbH
O4 - GS\sendTo [Bug]: MediaInfo.lnk . (...) C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe
O4 - GS\sendTo [Bug]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\sendTo [Bug]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH
O4 - GS\TaskBar [Bug]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
O4 - GS\TaskBar [Bug]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe =>.TeamSpeak Systems GmbH
O4 - GS\Desktop [Guest]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe
O4 - GS\Desktop [Guest]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corporation
O4 - GS\Quicklaunch [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
O4 - GS\Quicklaunch [Guest]: Tunngle.lnk . (.Tunngle.net GmbH - Tunngle GUI.) C:\Program Files (x86)\Tunngle\Tunngle.exe =>.Tunngle.net GmbH
O4 - GS\sendTo [Guest]: MediaInfo.lnk . (...) C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe
O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - GS\sendTo [Guest]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH
O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
O4 - GS\TaskBar [Guest]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe =>.TeamSpeak Systems GmbH
O4 - GS\CommonDesktop [Public]: League of Legends.lnk . (...) C:\Riot Games\League of Legends\lol.launcher.exe
O4 - GS\CommonDesktop [Public]: Lineage II.lnk . (.NCSOFT Corporation - NCLauncher.) C:\Program Files (x86)\NCWest\NCLauncher\NCLauncher.exe =>.NCSOFT Corporation
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: Start BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks StartLauncher.) C:\Program Files (x86)\BlueStacks\HD-StartLauncher.exe =>.BlueStack Systems, Inc.
O4 - GS\CommonDesktop [Public]: TeamViewer 10.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH
O4 - GS\CommonDesktop [Public]: Tunngle.lnk . (.Tunngle.net GmbH - Tunngle GUI.) C:\Program Files (x86)\Tunngle\Tunngle.exe =>.Tunngle.net GmbH
O4 - GS\CommonDesktop [Public]: Uplauncher Arkalys.lnk . (.ARKALYS - Arkalys Uplauncher.) C:\Program Files (x86)\ArkalysGame\Uplauncher.exe
O4 - GS\CommonDesktop [Public]: World of Warships.lnk . (.Wargaming.net - World of Warships Launcher.) C:\Games\World_of_Warships\WoWSLauncher.exe =>.Wargaming.net
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Lop.com/Domain Hijackers (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{46DFE6F4-B8F1-4542-8888-6240833519CE}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{B4A6FCD9-A133-487A-8C29-6B77504526BD}: DhcpNameServer = 7.254.254.254

---\\ Extra protocols (23) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: deflate [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation

---\\ Software installed (62) - 8s
O42 - Logiciel: 7-Zip 4.65 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0465-000001000000} =>.Igor Pavlov
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {19687AD5-7E54-4C5E-A796-125C95079C1D} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated
O42 - Logiciel: Age of Empires® III: Complete Collection - (.Ensemble Studios.) [HKLM][64Bits] -- Steam App 105450 =>.SteamApp.Game
O42 - Logiciel: AMD Fuel - (.Nom de votre société.) [HKLM][64Bits] -- {C401BE9C-5645-E3C0-3A4D-0F40144EDC0D}
O42 - Logiciel: Asmedia ASM104x USB 3.0 Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} =>.Asmedia Technology
O42 - Logiciel: Asmedia ASM106x SATA Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {61942EF5-2CD8-47D4-869C-2E9A8BB085F1} =>.Asmedia Technology
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {F22E13B7-2C58-4BE6-BA9D-24303403B494} =>.BlueStack Systems, Inc.
O42 - Logiciel: Castle Crashers - (.The Behemoth.) [HKLM][64Bits] -- Steam App 204360 =>.SteamApp.Game
O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 =>.SteamApp.Game
O42 - Logiciel: Counter-Strike: Source - (.Valve.) [HKLM][64Bits] -- Steam App 240 =>.SteamApp.Game
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} =>.Microsoft Corporation
O42 - Logiciel: Gang Beasts Online Beta - (...) [HKLM][64Bits] -- Steam App 459960 =>.SteamApp.Game
O42 - Logiciel: Garry's Mod - (.Facepunch Studios.) [HKLM][64Bits] -- Steam App 4000 =>.SteamApp.Game
O42 - Logiciel: H1Z1 - (.Daybreak Games.) [HKLM][64Bits] -- Steam App 295110 =>.SteamApp.Game
O42 - Logiciel: H1Z1: King of the Kill - (.Daybreak Game Company.) [HKLM][64Bits] -- Steam App 433850 =>.SteamApp.Game
O42 - Logiciel: Heroes and Titans: Online - (.Beijing Locojoy Technology Co., Ltd.) [HKLM][64Bits] -- Steam App 407090 =>.SteamApp.Game
O42 - Logiciel: Java 8 Update 91 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218091F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: K-Lite Codec Pack 5.9.0 (Full) - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {3E75652D-99B1-417E-B163-BEF33CAD3F16} =>.Riot Games
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 3.0.1 =>.Riot Games
O42 - Logiciel: Lineage II - (.NC Interactive, LLC.) [HKLM][64Bits] -- {23664DA8-8872-4CF4-A2F2-327CC539823B} =>.NC Interactive, LLC
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 47.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 47.0 (x86 fr) =>.Mozilla
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft
O42 - Logiciel: NCSOFT Game Launcher - (.NCSOFT.) [HKLM][64Bits] -- NCLauncher_NCWest =>.NCSOFT
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} =>.NVIDIA Corporation
O42 - Logiciel: Open Broadcaster Software - (...) [HKLM][64Bits] -- Open Broadcaster Software
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL
O42 - Logiciel: OpenOffice 4.1.2 - (.Apache Software Foundation.) [HKLM][64Bits] -- {DCB1B348-C94E-4D6D-8CE0-7D9DA5CF663E} =>.Apache Software Foundation
O42 - Logiciel: osu! - (.ppy Pty Ltd.) [HKLM][64Bits] -- {0506b3cc-6bc0-4dcb-97a1-868410cca6ae} =>.ppy Pty Ltd
O42 - Logiciel: PAYDAY 2 - (.OVERKILL - a Starbreeze Studio..) [HKLM][64Bits] -- Steam App 218620 =>.SteamApp.Game
O42 - Logiciel: PlaysTV - (.Plays.tv, LLC.) [HKLM][64Bits] -- PlaysTV =>.Plays.tv, LLC
O42 - Logiciel: Raptr - (.Raptr, Inc.) [HKLM][64Bits] -- Raptr =>.Raptr, Inc
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.
O42 - Logiciel: Reign Of Kings - (.Code}{atch.) [HKLM][64Bits] -- Steam App 344760 =>.SteamApp.Game
O42 - Logiciel: Savage Lands - (.Signal Studios.) [HKLM][64Bits] -- Steam App 307880 =>.SteamApp.Game
O42 - Logiciel: Skype™ 7.24 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Starbound - (...) [HKLM][64Bits] -- Steam App 211820 =>.SteamApp.Game
O42 - Logiciel: Swordsman - (.Perfect World Entertainment.) [HKLM][64Bits] -- Steam App 364110 =>.SteamApp.Game
O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM][64Bits] -- Steam App 440 =>.SteamApp.Game
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer
O42 - Logiciel: The Culling Of The Cows - (.Decaying Logic.) [HKLM][64Bits] -- Steam App 297020 =>.SteamApp.Game
O42 - Logiciel: Titan Quest - (.Iron Lore Entertainment.) [HKLM][64Bits] -- Steam App 4540 =>.SteamApp.Game
O42 - Logiciel: Titan Quest: Immortal Throne - (.Iron Lore Entertainment.) [HKLM][64Bits] -- Steam App 4550 =>.SteamApp.Game
O42 - Logiciel: TrackMania Nations Forever - (.Nadeo.) [HKLM][64Bits] -- Steam App 11020 =>.SteamApp.Game
O42 - Logiciel: Tunngle - (.Tunngle.net GmbH.) [HKLM][64Bits] -- Tunngle_is1 =>.Tunngle.net GmbH
O42 - Logiciel: Unturned - (.Smartly Dressed Games.) [HKLM][64Bits] -- Steam App 304930 =>.SteamApp.Game
O42 - Logiciel: Uplauncher Arkalys version 2.0.0 - (.Arkalys.) [HKLM][64Bits] -- {0186BA6C-FF42-4013-BA2F-0837835471D1}_is1
O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft
O42 - Logiciel: VLC media player 1.0.5 - (.VideoLAN Team.) [HKLM][64Bits] -- VLC media player =>.VideoLAN Team
O42 - Logiciel: World of Warships - (.Wargaming.net.) [HKCU][64Bits] -- {1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1 =>.Wargaming.net

---\\ HKCU & HKLM Software Keys (116) - 8s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AMD
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\Caphyon
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\Codec Tweak Tool
HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\Freemake
HKLM\SOFTWARE\Wow6432Node\Gabest
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\InterVideo
HKLM\SOFTWARE\Wow6432Node\Iron Lore
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\Lavasoft
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MOVAVI
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NC Interactive, LLC
HKLM\SOFTWARE\Wow6432Node\NCWest
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Open Broadcaster Software
HKLM\SOFTWARE\Wow6432Node\OpenAL
HKLM\SOFTWARE\Wow6432Node\OpenOffice
HKLM\SOFTWARE\Wow6432Node\Overwolf
HKLM\SOFTWARE\Wow6432Node\PlaysTV
HKLM\SOFTWARE\Wow6432Node\Raptr
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Riot Games
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\TeamSpeak 3 Client
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\THQ
HKLM\SOFTWARE\Wow6432Node\Tunngle.net
HKLM\SOFTWARE\Wow6432Node\Ubisoft
HKLM\SOFTWARE\Wow6432Node\US Army
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\XAJH
HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo!
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\AMD
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Arktos Entertainment Group
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Boneloaf
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CodeHatch
HKCU\SOFTWARE\Distromatic =>PUP.Optional.AlexaTB
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\Freemake
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\IGA
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\INCAInternet
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\locojoy
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madFlac
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\MONOGRAM
HKCU\SOFTWARE\MOVAVI
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MyComGames
HKCU\SOFTWARE\NewZ
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\osu!
HKCU\SOFTWARE\Perfect World Platform Client
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PlaysTV
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Raptr
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Signal Studios & DigitalDNA Games
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Smartly Dressed Games
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\TeamSpeak 3 Client
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Tunngle.net
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\US Army
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\Wargaming.net
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Yahoo =>.Yahoo!
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Yahoo

---\\ Contents of the Common Files folders (228) - 72s
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files\AMD
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\ATI
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\ATI Technologies
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 07/06/2010 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\OBS
O43 - CFD: 26/06/2016 - [] D -- C:\Program Files\Oileniso
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 26/06/2016 - [] D -- C:\Program Files\Sony
O43 - CFD: 26/06/2016 - [] D -- C:\Program Files\Sound+ =>Adware.Kazy
O43 - CFD: 26/06/2016 - [] D -- C:\Program Files\SpaceSoundPro =>.Superfluous.CSDI
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 07/06/2010 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 07/06/2010 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Photo Viewer
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 21/05/2016 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 02/10/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files (x86)\AMD
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\AMD AVT
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\ArkalysGame
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\ASM104xUSB3
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\ASM106xSATA
O43 - CFD: 25/11/2015 - [0] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files (x86)\BlueStacks
O43 - CFD: 06/06/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 06/06/2016 - [] D -- C:\Program Files (x86)\Freemake
O43 - CFD: 26/06/2016 - [] D -- C:\Program Files (x86)\Hostify =>.Superfluous.CSDI
O43 - CFD: 02/02/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 07/06/2010 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 26/04/2016 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\Microsoft DirectX SDK (June 2010)
O43 - CFD: 31/05/2016 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 10/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 14/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\NCSOFT
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\NCWest
O43 - CFD: 06/06/2016 - [0] D -- C:\Program Files (x86)\Nexon
O43 - CFD: 02/10/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files (x86)\OBS
O43 - CFD: 02/10/2015 - [] D -- C:\Program Files (x86)\OpenAL
O43 - CFD: 26/04/2016 - [] D -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 09/03/2016 - [] D -- C:\Program Files (x86)\Raptr Inc
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 14/06/2016 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 26/06/2016 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 27/06/2016 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 23/06/2016 - [] D -- C:\Program Files (x86)\TeamSpeak 3 Client
O43 - CFD: 20/10/2015 - [] D -- C:\Program Files (x86)\TeamViewer
O43 - CFD: 27/09/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 06/06/2016 - [] D -- C:\Program Files (x86)\TheNewZ
O43 - CFD: 25/04/2016 - [] D -- C:\Program Files (x86)\Tunngle
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files (x86)\Ubisoft
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 31/05/2016 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 07/06/2010 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 07/06/2010 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 26/06/2016 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\Yahoo!
O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 27/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 27/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
O43 - CFD: 25/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings
O43 - CFD: 21/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arkalys Uplauncher
O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
O43 - CFD: 23/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fredaikis AB
O43 - CFD: 27/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 26/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 27/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest
O43 - CFD: 26/04/2016 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2
O43 - CFD: 03/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
O43 - CFD: 25/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle
O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 11/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warships
O43 - CFD: 21/05/2016 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Age of Empires 3
O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\AMD
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\ATI
O43 - CFD: 27/06/2016 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 08/10/2015 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 26/06/2016 - [0] D -- C:\ProgramData\Boxore =>PUP.Optional.Boxore
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 06/06/2016 - [0] D -- C:\ProgramData\Freemake
O43 - CFD: 31/05/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Movavi Video Suite 15
O43 - CFD: 26/04/2016 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 28/10/2015 - [] D -- C:\ProgramData\Origin
O43 - CFD: 15/06/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 14/06/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 05/06/2016 - [] D -- C:\ProgramData\TrackMania
O43 - CFD: 26/04/2016 - [] D -- C:\ProgramData\Tunngle
O43 - CFD: 21/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 15/06/2016 - [] D -- C:\Program Files (x86)\Common Files\BattlEye
O43 - CFD: 27/09/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 26/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 31/05/2016 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 09/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 27/01/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 09/01/2016 - [] D -- C:\Users\Bug\AppData\Roaming\.minecraft
O43 - CFD: 21/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Adobe
O43 - CFD: 21/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\AnkamaCertificates
O43 - CFD: 21/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\app
O43 - CFD: 28/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\ArkalysGame
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Roaming\ATI
O43 - CFD: 18/11/2015 - [] D -- C:\Users\Bug\AppData\Roaming\Awesomium
O43 - CFD: 22/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\DofusTesting
O43 - CFD: 21/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\DofusTesting-2
O43 - CFD: 25/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\DofusTesting-3
O43 - CFD: 30/11/2015 - [0] D -- C:\Users\Bug\AppData\Roaming\Google.Apis.Auth
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Roaming\Identities
O43 - CFD: 08/01/2016 - [] D -- C:\Users\Bug\AppData\Roaming\java
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Roaming\library_dir
O43 - CFD: 23/04/2016 - [] D -- C:\Users\Bug\AppData\Roaming\LolClient
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Bug\AppData\Roaming\Media Center Programs
O43 - CFD: 24/01/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Media Player Classic
O43 - CFD: 26/04/2016 - [] SD -- C:\Users\Bug\AppData\Roaming\Microsoft
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Roaming\Mozilla
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\OBS
O43 - CFD: 26/04/2016 - [] D -- C:\Users\Bug\AppData\Roaming\OpenOffice
O43 - CFD: 03/10/2015 - [] D -- C:\Users\Bug\AppData\Roaming\Origin
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\PlaysTV
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Profiles
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Raptr
O43 - CFD: 21/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Reg
O43 - CFD: 21/05/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1
O43 - CFD: 23/04/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Riot Games
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bug\AppData\Roaming\RPEng =>PUP.Optional.Generic
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Skype
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Sony
O43 - CFD: 26/04/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Sun
O43 - CFD: 26/11/2015 - [] D -- C:\Users\Bug\AppData\Roaming\TeamViewer
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\TS3Client
O43 - CFD: 27/04/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Tunngle
O43 - CFD: 11/12/2015 - [] D -- C:\Users\Bug\AppData\Roaming\vlc
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\WinRAR
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Roaming\Yahoo!
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Roaming\ZHP
O43 - CFD: 21/05/2016 - [] D -- C:\Users\Bug\AppData\Local\Adobe
O43 - CFD: 25/11/2015 - [] D -- C:\Users\Bug\AppData\Local\AMD
O43 - CFD: 27/09/2015 - [0] SHD -- C:\Users\Bug\AppData\Local\Application Data
O43 - CFD: 24/12/2015 - [] D -- C:\Users\Bug\AppData\Local\Arktos
O43 - CFD: 24/12/2015 - [] D -- C:\Users\Bug\AppData\Local\Arktos Entertainment
O43 - CFD: 13/01/2016 - [] D -- C:\Users\Bug\AppData\Local\assembly
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\ATI
O43 - CFD: 08/10/2015 - [] D -- C:\Users\Bug\AppData\Local\Bluestacks
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Local\Boxore =>PUP.Optional.Boxore
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Local\BrowserAir =>PUP.Optional.BrowserAir
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\BuildAGadget Content
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\CEF
O43 - CFD: 24/12/2015 - [] D -- C:\Users\Bug\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Local\csdi_monetize_220160626 =>.Superfluous.CSDI
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\Daybreak Game Company
O43 - CFD: 09/11/2015 - [] D -- C:\Users\Bug\AppData\Local\DunDefLauncher
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Local\ElevatedDiagnostics
O43 - CFD: 27/09/2015 - [0] SHD -- C:\Users\Bug\AppData\Local\History
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\Macromedia
O43 - CFD: 01/06/2016 - [] D -- C:\Users\Bug\AppData\Local\Microsoft
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bug\AppData\Local\Movavi
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\Mozilla
O43 - CFD: 05/06/2016 - [] D -- C:\Users\Bug\AppData\Local\NexonLauncher
O43 - CFD: 28/04/2016 - [] D -- C:\Users\Bug\AppData\Local\osu!
O43 - CFD: 05/06/2016 - [] D -- C:\Users\Bug\AppData\Local\PAYDAY 2
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Local\Profiles
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bug\AppData\Local\Programs
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\SCE
O43 - CFD: 03/01/2016 - [0] D -- C:\Users\Bug\AppData\Local\Skype
O43 - CFD: 26/06/2016 - [] D -- C:\Users\Bug\AppData\Local\Sony
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bug\AppData\Local\SplitMovie
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Bug\AppData\Local\Steam
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bug\AppData\Local\Suite
O43 - CFD: 27/09/2015 - [0] D -- C:\Users\Bug\AppData\Local\TeamSpeak 3 Client
O43 - CFD: 27/06/2016 - [] D -- C:\Users\Bug\AppData\Local\Temp
O43 - CFD: 26/06/2016 - [0] D -- C:\Users\Bug\AppData\Local\Tempfolder
O43 - CFD: 27/09/2015 - [0] SHD -- C:\Users\Bug\AppData\Local\Temporary Internet Files
O43 - CFD: 13/12/2015 - [] D -- C:\Users\Bug\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 25/06/2016 - [] D -- C:\Users\Bug\AppData\Local\Windows Live
O43 - CFD: 30/11/2015 - [0] D -- C:\Users\Bug\AppData\Local\WMTools Downloaded Files
O43 - CFD: 30/11/2015 - [0] D -- C:\Users\Bug\AppData\Local\Programs\Common
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Bug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 27/06/2016 - [] RD -- C:\Users\Bug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Bug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 06/06/2016 - [0] D -- C:\Users\Bug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexon
O43 - CFD: 13/01/2016 - [] D -- C:\Users\Bug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
O43 - CFD: 27/06/2016 - [] RD -- C:\Users\Bug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 13/12/2015 - [] D -- C:\Users\Bug\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
O43 - CFD: 27/06/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ System Drivers List (53) - 4s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Adaptec, Inc.
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Adaptec, Inc.
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Adaptec, Inc.
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Acer Laboratories Inc.
O58 - SDL:2016/04/29 21:45:44 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [296648] =>.Advanced Micro Devices
O58 - SDL:2009/07/14 03:52:21 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [106576] =>.Advanced Micro Devices
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.AMD Technologies Inc.
O58 - SDL:2009/07/14 03:52:21 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [28752] =>.Advanced Micro Devices
O58 - SDL:2012/04/11 03:40:58 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amd_sata.sys [82560] =>.Advanced Micro Devices
O58 - SDL:2012/04/11 03:40:58 A . (.Advanced Micro Devices - Stor Filter Driver.) -- C:\Windows\System32\drivers\amd_xata.sys [42624] =>.Advanced Micro Devices
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Adaptec, Inc.
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Adaptec, Inc.
O58 - SDL:2013/08/16 15:37:12 A . (.ASMedia Technology Inc - ASMedia USB3 Hub Driver.) -- C:\Windows\System32\drivers\asmthub3.sys [140032] =>.ASMedia Technology Inc
O58 - SDL:2013/08/16 15:37:12 A . (.ASMedia Technology Inc - ASMEDIA XHCI Host Controller Driver.) -- C:\Windows\System32\drivers\asmtxhci.sys [424192] =>.ASMedia Technology Inc
O58 - SDL:2014/01/27 17:30:36 A . (.Asmedia Technology - Asmedia 106x SATA Host Controller Driver.) -- C:\Windows\System32\drivers\asstor64.sys [84816] =>.Asmedia Technology
O58 - SDL:2016/04/29 21:00:50 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW76.sys [96256] =>.Advanced Micro Devices
O58 - SDL:2016/04/29 21:42:44 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [26345984] =>.Advanced Micro Devices, Inc.
O58 - SDL:2016/04/29 20:49:22 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [676864] =>.Advanced Micro Devices, Inc.
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.CMD Technology, Inc.
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Emulex
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/07/14 03:47:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [77888] =>.Hewlett-Packard Company
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410688] =>.Intel Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Intel Corp./ICP vortex GmbH
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.LSI Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.LSI Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.LSI Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.LSI Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.LSI Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.LSI Corporation, Inc.
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.IBM Corporation
O58 - SDL:2009/07/14 03:48:27 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [149056] =>.NVIDIA Corporation
O58 - SDL:2009/07/14 03:45:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [167488] =>.NVIDIA Corporation
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.QLogic Corporation
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.QLogic Corporation
O58 - SDL:2012/12/26 19:26:12 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [805088] =>.Realtek
O58 - SDL:2013/10/07 16:02:24 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3680728] =>.Realtek Semiconductor Corp.
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Silicon Integrated Systems Corp.
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Silicon Integrated Systems
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Promise Technology
O58 - SDL:2015/12/21 17:01:36 A . (.Tunngle.net - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901t.sys [47736] =>.Tunngle.net
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.VIA Technologies, Inc.
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.VIA Technologies Inc.,Ltd

---\\ Last modified or created user files (3) - 20s
O61 - LFC: 2016/06/21 15:09:29 A . (..) -- C:\Users\Bug\AppData\Roaming\Raptr\data\buggaming\config\certificates\x509\tls_peers\xmpp-server3.raptr.com [1217]
O61 - LFC: 2016/06/23 15:44:57 A . (..) -- C:\Users\Bug\AppData\Roaming\Raptr\data\buggaming\config\certificates\x509\tls_peers\xmpp-server4.raptr.com [1217]
O61 - LFC: 2016/06/27 02:38:19 A . (..) -- C:\Users\Bug\AppData\Roaming\Raptr\data\buggaming\config\certificates\x509\tls_peers\xmpp-server8.raptr.com [1217]

---\\ File Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation

---\\ Start Menu Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Search Browser Infection (5) - 5s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {758B870D-DF78-4A6A-9955-DEDDCACF94DC} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {758B870D-DF78-4A6A-9955-DEDDCACF94DC} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {758B870D-DF78-4A6A-9955-DEDDCACF94DC} - (Google) - http://www.google.com/

---\\ Search Svchost Services (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\system32\srvsvc.dll [235520] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [776192] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\ikeext.dll [845824] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\Audiosrv.dll [676864] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [343552] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316416] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [706560] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2428952] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [848384] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [369664] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [565760] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [104960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [136192] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\system32\schedsvc.dll [1104384] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [208384] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Firewall Active Exception List (47) - 2s
O87 - FAEL: "{A8BC0649-000A-4746-8462-6B398181907A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Savage Lands\SavageLands.exe =>.Steam SteamApps Games
O87 - FAEL: "{49DC5093-AC9C-4C55-8170-E71F09A37F6D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Savage Lands\SavageLands.exe =>.Steam SteamApps Games
O87 - FAEL: "{12EB7FAD-01FC-43A9-A606-A6E25A4450F6}" [In-None-P6-TRUE] .(...) -- C:\Users\Bug\AppData\Local\MyComGames\MyComGames.exe (.not file.)
O87 - FAEL: "{938DEB18-A5A1-468F-A881-618D59BEEDEE}" [In-None-P17-TRUE] .(...) -- C:\Users\Bug\AppData\Local\MyComGames\MyComGames.exe (.not file.)
O87 - FAEL: "{96B324EF-8339-432B-8AE8-6257E383E8FC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Steam SteamApps Games
O87 - FAEL: "{E205E5CF-0152-4F5D-8B0D-F3D84FD4F1E1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe =>.Steam SteamApps Games
O87 - FAEL: "{E3757BA9-3F85-4A6B-B4BC-B91EC2104E02}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe (.not file.)
O87 - FAEL: "{AC1AD5C0-CBD7-4984-9816-2A44A2489738}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe (.not file.)
O87 - FAEL: "{070D805A-445C-478D-8FA7-1E4FBA8C091F}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe (.not file.)
O87 - FAEL: "{EA5809EA-0F65-421A-A06F-7CA8AE9C5685}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe (.not file.)
O87 - FAEL: "{918BF91D-DB50-465F-A9F4-08C492639514}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AALauncher32.exe (.not file.) =>.Steam SteamApps Games
O87 - FAEL: "{E973917D-F2C2-4CD2-8E2F-0B724F1F7CAB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AALauncher32.exe (.not file.) =>.Steam SteamApps Games
O87 - FAEL: "{EB92900E-CD16-4A5A-82F8-E46D6DC234BB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Heroes and Titans Online\HT_Steam.exe =>.Steam SteamApps Games
O87 - FAEL: "{1F648EAF-8F9B-41F9-AE06-02C68CF41FB0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Heroes and Titans Online\HT_Steam.exe =>.Steam SteamApps Games
O87 - FAEL: "{5B07E765-B4B5-4A59-BFAE-32D651825BC4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\CastleCrashers\castle.exe =>.Steam SteamApps Games
O87 - FAEL: "{FDA3AD18-8214-4BA0-AE2B-EADB094416FE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\CastleCrashers\castle.exe =>.Steam SteamApps Games
O87 - FAEL: "TCP Query User{BFDAC19A-0841-4B87-8CBB-B5552F26E0CE}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe =>.Steam SteamApps Games
O87 - FAEL: "UDP Query User{5506A4AA-68BC-4E3B-B65F-4780B915A30D}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe =>.Steam SteamApps Games
O87 - FAEL: "{98A5EFE5-79E1-4E58-ACC6-415000DF302F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr.exe (.not file.)
O87 - FAEL: "{372CBF9F-15FD-4A97-B142-60962161F844}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr.exe (.not file.)
O87 - FAEL: "{44EB8908-DEDC-432D-A6A3-64243385AB69}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr_im.exe (.not file.)
O87 - FAEL: "{9A3634F0-CE79-400E-ACEE-8C4C36A3D2AC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr_im.exe (.not file.)
O87 - FAEL: "{D33FDFD9-D676-4EE6-A4C5-647D5276B3B8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\TheNewZ\TheNewZ.exe
O87 - FAEL: "{109057AD-B22F-42A9-B2A2-CCEAFCE0214B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe =>.Steam SteamApps Games
O87 - FAEL: "{5C9DEE3F-EA08-49FE-BA0A-CB85C1B7DE95}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe =>.Steam SteamApps Games
O87 - FAEL: "{F2DF83F8-BC6E-4F6C-AD91-6A0118B42131}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe =>.Steam SteamApps Games
O87 - FAEL: "{645AC478-15BC-4E2C-8238-AB3587BF60EE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe =>.Steam SteamApps Games
O87 - FAEL: "{6DE5A19D-2EE5-45F2-AE8A-B7AA7ADAA0FB}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe =>.Steam SteamApps Games
O87 - FAEL: "{D8D6B3BA-ED6A-4A9E-8D0F-0648A9605708}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe =>.Steam SteamApps Games
O87 - FAEL: "{12082913-AB99-4D65-8EC0-74F657B1F26E}" [In-None-P6-TRUE] .(.Beijing Perfect World Network Technology Co. - patcher.exe.) -- C:\Program Files (x86)\Steam\steamapps\common\Swordsman\patcher\patcher.exe =>.Steam SteamApps Games
O87 - FAEL: "{993635E6-B99A-4787-8FA2-BA65F84B3423}" [In-None-P17-TRUE] .(.Beijing Perfect World Network Technology Co. - patcher.exe.) -- C:\Program Files (x86)\Steam\steamapps\common\Swordsman\patcher\patcher.exe =>.Steam SteamApps Games
O87 - FAEL: "{D030184F-BAD2-43D9-A75C-4C545D922D32}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe =>.Steam SteamApps Games
O87 - FAEL: "{ABD91AB4-757D-4352-937F-1E2DA01FE6BD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe =>.Steam SteamApps Games
O87 - FAEL: "{30D8B323-601B-4589-B8DA-3D92945533D9}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe =>.Steam SteamApps Games
O87 - FAEL: "{F20BF59D-08E3-408A-9324-5A15162FBE74}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe =>.Steam SteamApps Games
O87 - FAEL: "{34E00F9D-8CC2-4945-B360-EF6525ADAAD0}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Immortal Throne\Tqit.exe =>.Steam SteamApps Games
O87 - FAEL: "{45BF38F5-C29F-492D-B39C-E08A085A3149}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Immortal Throne\Tqit.exe =>.Steam SteamApps Games
O87 - FAEL: "{DC0FFA89-308C-428B-8324-AB65933D32B6}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Titan Quest\Titan Quest.exe =>.Steam SteamApps Games
O87 - FAEL: "{1FC69A2E-13CD-472E-BEBC-A383BAADDEA4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Titan Quest\Titan Quest.exe =>.Steam SteamApps Games
O87 - FAEL: "{CCBC7B23-2183-418C-910F-BF1DAB48A1A4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe =>.Steam SteamApps Games
O87 - FAEL: "{FB7D08E4-05EC-4CCE-91DA-941F26D68EB9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe =>.Steam SteamApps Games
O87 - FAEL: "{7D0F332B-C069-4C23-845E-32BEFFEF81C5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe =>.Steam SteamApps Games
O87 - FAEL: "{C6941A7A-4CA0-44D6-887C-723CE715DD0A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe =>.Steam SteamApps Games
O87 - FAEL: "TCP Query User{7056F280-6874-4827-87B3-FF38032A9476}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe =>.Steam SteamApps Games
O87 - FAEL: "UDP Query User{66F11F99-6D7C-432B-BBE4-584248884BF9}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe =>.Steam SteamApps Games
O87 - FAEL: "{2B4FC686-6DBC-4EA4-BB83-B4E08635EB60}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Gang Beasts Online Beta\Gang Beasts Online Multiplayer Beta.exe =>.Steam SteamApps Games
O87 - FAEL: "{35AE2A46-83CC-49DB-BE68-8E27F1964DC8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Gang Beasts Online Beta\Gang Beasts Online Multiplayer Beta.exe =>.Steam SteamApps Games

---\\ Search Tracing Registry Key (2) - 2s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AmznSearchProtect_RASAPI32 =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AmznSearchProtect_RASMANCS =>PUP.Optional.SearchProtect

---\\ Additional Scan (O88) (14) - 1s
C:\Users\Bug\AppData\Roaming\Mozilla\Firefox\Profiles\77cczi5z.default\searchplugins\smod.xml =>PUP.Optional.SearchModule
C:\Users\Bug\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam
HKCU\SOFTWARE\Distromatic =>PUP.Optional.AlexaTB
C:\Program Files\Sound+ =>Adware.Kazy
C:\Program Files\SpaceSoundPro =>.Superfluous.CSDI
C:\Program Files (x86)\Hostify =>.Superfluous.CSDI
C:\ProgramData\Boxore =>PUP.Optional.Boxore
C:\Users\Bug\AppData\Roaming\RPEng =>PUP.Optional.Generic
C:\Users\Bug\AppData\Local\Boxore =>PUP.Optional.Boxore
C:\Users\Bug\AppData\Local\BrowserAir =>PUP.Optional.BrowserAir
C:\Users\Bug\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\Users\Bug\AppData\Local\csdi_monetize_220160626 =>.Superfluous.CSDI
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AmznSearchProtect_RASAPI32 =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AmznSearchProtect_RASMANCS =>PUP.Optional.SearchProtect

---\\ Summary of the elements found (10) - 0s
http://www.nicolascoolman.fr/link-660/ =>PUP.Optional.SearchModule
http://www.nicolascoolman.fr/?p=263 =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.AlexaTB
http://www.nicolascoolman.fr/?p=1295 =>Adware.Kazy
https://www.nicolascoolman.info/2016/05/03/superfluous-csdi/ =>.Superfluous.CSDI
https://www.nicolascoolman.info/2016/05/02/pup-optional-boxore/ =>PUP.Optional.Boxore
https://www.nicolascoolman.info/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic
http://www.nicolascoolman.fr/pup-optional-browserair/ =>PUP.Optional.BrowserAir
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports
http://www.nicolascoolman.fr/?p=1633 =>PUP.Optional.SearchProtect

~ End of the scan, 39938 items in 00h05mn11s (846)(0)

Publicité


Signaler le contenu de ce document

Publicité