~ ZHPDiag v2015.11.12.166 By Nicolas Coolman (2015/11/12) ~ Run by LePetitBeurre (Administrator) (2015/11/12 20:00:37) ~ Web: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\LePetitBeurre\Desktop\ZHPDiag.txt ~ Report: C:\Users\LePetitBeurre\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 10240) ---\\ Internet Browsers (3) - 0s GCIE: Google Chrome v46.0.2490.80 MFIE: Mozilla Firefox 42.0 (x86 fr) v42.0 MSIE: Internet Explorer v11.0.10240.16590 ---\\ Windows Product Information (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ System protection software (2) - 0s Malwarebytes Anti-Malware version 2.2.0.1024 Windows Defender (Deactivate) ---\\ System optimization software (1) - 0s CCleaner v5.05 ---\\ Surveillance software (1) - 0s Adobe Flash Player 17 NPAPI ---\\ Sharing software PeerToPeer (1) - 0s qBittorrent 3.1.12 v3.1.12 ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 94 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 16703.424 MB (70% free) System Restore: Activé (Enable) System drive C: has 18 GB () free of 231 GB =>Alerte espace disque inférieur à 20 Go ---\\ Connection to the system mode (3) - 0s ~ Computer Name: BREQXUS ~ User Name: LePetitBeurre ~ Logged in as Administrator ---\\ Enumeration of the disk units (3) - 0s ~ Drive C: has 18 GB free of 231 GB (System) ~ Drive D: has 470 GB free of 721 GB ~ Drive H: has 0 GB free of 0 GB ---\\ State of the Windows Security Center (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Search Generic System Files (24) - 1s [MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - 10/09/2015 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4532304] © [MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] © [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 10/09/2015 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [290312] © [MD5.E5D86250453B33900666D92ED1A92ABE] - 17/09/2015 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [2740224] © [MD5.A7C48B051A9C5D5054916DE5BEBBCA2D] - 05/11/2015 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [579072] © [MD5.ECB1943967424DFB96E03F6A098434EF] - 10/09/2015 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] © [MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [680256] © [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] © [MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] © [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] © [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] © [MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] © [MD5.25435407D97419627F4B10653433BF2B] - 10/07/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] © [MD5.C277A49F8A8295840DEBC9240B75A282] - 10/07/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] © [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] © [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] © [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] © [MD5.F0D791348AD254360CC3C3E501CCB745] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [273408] © [MD5.466EC5659C02ED53DBD47DC1BC2B8086] - 10/09/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] © [MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] © [MD5.CA60F6C03611AF1710BC903ED9F566FB] - 10/07/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] © [MD5.A32AED8C644734B283A7C9D08D76064D] - 10/09/2015 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] © [MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116064] © [MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] © ---\\ Non Microsoft non disabled Windows Services (22) - 0s O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe © O23 - Service: ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe O23 - Service: ASUS System Control Service (AsSysCtrlService) . (...) - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe O23 - Service: CyberGhost 5 Client Service (CGVPNCliService) . (.CyberGhost S.R.L - CyberGhost VPN Service.) - C:\Program Files\CyberGhost 5\Service.exe © O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\System32\IProsetMonitor.exe © O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe © O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © O23 - Service: Norton PC Checkup Application Launcher (Norton PC Checkup Application Launcher) . (.Symantec Corporation - Norton PC Checkup Launcher Service.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe © O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) - C:\Windows\System32\nvvsvc.exe © O23 - Service: Common Client Job Manager Service (PCCUJobMgr) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe © O23 - Service: Service KMSELDI (Service KMSELDI) . (.@ByELDI - Service_KMS.) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe © O23 - Service: Bitdefender Virus Shield (vsserv) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe © ---\\ Task Planned Automatically (38) - 4s [MD5.B04A4810C6CC205F9DC72DC22E4AB236] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268464] © [MD5.79391331D6F021AF2F1105785C15F648] [APT] [ASC8_PerformanceMonitor] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [3051296] © [MD5.C1906947E76FA87CB5EC2625752DE966] [APT] [ASC8_SkipUac_LePetitBeurre] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [5442336] © [MD5.00000000000000000000000000000000] [APT] [AutoPico Daily Restart] (...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) [0] =>HackTool.KMSpico [MD5.BC14706D68E7F855735369CFEE4028C7] [APT] [Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8] (.Bitdefender.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdproductdata.exe [98208] © [MD5.00000000000000000000000000000000] [APT] [BWUZU1] (...) -- C:\ProgramData\FlashBeat\FlashBeat.exe (.not file.) [0] =>PUP.Optional.FlashBeat [MD5.1F014EA12ECB13C909DA9395E9CD3D18] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6278424] © [MD5.00000000000000000000000000000000] [APT] [EH71Vbm9aPmusN] (...) -- C:\Users\LePetitBeurre\AppData\Roaming\EH71Vbm9aPmusN.exe (.not file.) [0] =>PUP.Optional.CrossRider [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] © [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] © [MD5.00000000000000000000000000000000] [APT] [hzjTE64DMyJJUgq0azwhschq] (...) -- C:\Users\LePetitBeurre\AppData\Roaming\hzjTE64DMyJJUgq0azwhschq.exe (.not file.) [0] =>PUP.Optional.CrossRider [MD5.00000000000000000000000000000000] [APT] [SOIUYZWPNK] (...) -- C:\ProgramData\f68332f424604575b4e9ca42c0c35935\f68332f424604575b4e9ca42c0c35935.exe (.not file.) [0] [MD5.0A6B46C7DF4CC23C106E7494321AE5F3] [APT] [Uninstaller_SkipUac_LePetitBeurre] (.IObit.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [8032544] © [MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{3E28589B-DB4C-4DE5-A920-F462C5A2942E}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [811848] © [MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{783C1425-1C70-446F-8874-D97829860C10}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [811848] © [MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{FE620B3A-0DC4-454C-AC7E-D25F0697AA4F}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [811848] © [MD5.3469A37F336AD1509C0F25FF2A87BE92] [APT] [ASUS\ASUS Product Register Service] (...) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1551520] O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [830] © O39 - APT: ASC8_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\Tasks\ASC8_SkipUac_LePetitBeurre.job [274] © O39 - APT: BWUZU1 - (...) -- C:\WINDOWS\Tasks\BWUZU1.job [362] =>PUP.Optional.FlashBeat O39 - APT: EH71Vbm9aPmusN - (...) -- C:\WINDOWS\Tasks\EH71Vbm9aPmusN.job [1048] =>PUP.Optional.CrossRider O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [918] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [922] © O39 - APT: hzjTE64DMyJJUgq0azwhschq - (...) -- C:\WINDOWS\Tasks\hzjTE64DMyJJUgq0azwhschq.job [1068] =>PUP.Optional.CrossRider O39 - APT: Uninstaller_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\Tasks\Uninstaller_SkipUac_LePetitBeurre.job [310] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3828] © O39 - APT: ASC8_PerformanceMonitor - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASC8_PerformanceMonitor [3322] © O39 - APT: ASC8_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASC8_SkipUac_LePetitBeurre [2478] © O39 - APT: AutoPico Daily Restart - (...) -- C:\WINDOWS\System32\Tasks\AutoPico Daily Restart [3490] =>HackTool.KMSpico O39 - APT: Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 - (.Bitdefender.) -- C:\WINDOWS\System32\Tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 [3628] © O39 - APT: BWUZU1 - (...) -- C:\WINDOWS\System32\Tasks\BWUZU1 [2986] =>PUP.Optional.FlashBeat O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2914] © O39 - APT: EH71Vbm9aPmusN - (...) -- C:\WINDOWS\System32\Tasks\EH71Vbm9aPmusN [4178] =>PUP.Optional.CrossRider O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3768] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4004] © O39 - APT: hzjTE64DMyJJUgq0azwhschq - (...) -- C:\WINDOWS\System32\Tasks\hzjTE64DMyJJUgq0azwhschq [4200] =>PUP.Optional.CrossRider O39 - APT: SOIUYZWPNK - (...) -- C:\WINDOWS\System32\Tasks\SOIUYZWPNK [3698] O39 - APT: Uninstaller_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_LePetitBeurre [2528] © ---\\ Process running (69) - 1s [MD5.964C356C9AEEEE88B8B9B71D94042874] - (.Bitdefender - Bitdefender Security Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1547936] [PID.948] © [MD5.33D7E76F7DE0A73504742765105F178F] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [821024] [PID.1040] © [MD5.1CD8D5BF5E4058A2E12949D74A7E27FD] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) -- C:\Windows\System32\nvvsvc.exe [938616] [PID.1808] © [MD5.337FA50FFDED5E2BC94B36BF625AB681] - (.IObit - Product Updater.) -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472] [PID.2116] © [MD5.03CD3245E52C8A87E3B14832DC8A6A7D] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\System32\IProsetMonitor.exe [271632] [PID.2132] © [MD5.BBF8F831C7720DD5135D8C4C8325187A] - (...) -- C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728] [PID.2172] [MD5.37F7DD839A711B5706B1264F4D8D4BDC] - (...) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016] [PID.2196] [MD5.3BEAC63EBF6E7CA7A8D4ED3C7A2060DC] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156400] [PID.2220] © [MD5.BEB32691FCA0472FF38998DF92AC3B20] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688] [PID.2296] © [MD5.94965D3D5067A190E818161F2A8C093A] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440] [PID.2392] © [MD5.2F86BE1818C2D7AC90478E3323EE7FCB] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392] [PID.2436] © [MD5.150C1970816E7B0668F7459109A2AE23] - (.@ByELDI - Service_KMS.) -- C:\Program Files\KMSpico\Service_KMS.exe [966336] [PID.2444] =>HackTool.KMSpico [MD5.C1C2C9231EBD263DB9C4F34DBB080B32] - (.Bitdefender - Bitdefender Update Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320] [PID.2620] © [MD5.9A39E77C7CB2DFDE76A04A68382F0758] - (.CyberGhost S.R.L - CyberGhost VPN Service.) -- C:\Program Files\CyberGhost 5\Service.exe [63968] [PID.2936] © [MD5.D2E705BA801C4EC383135CB721D88D77] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424] [PID.3400] © [MD5.84BFE21E8F9230F391676843F08BCC10] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1253168] [PID.3624] © [MD5.1CD8D5BF5E4058A2E12949D74A7E27FD] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) -- C:\Windows\System32\nvvsvc.exe [938616] [PID.3632] © [MD5.14E3DB5ADA7E2187A404129F4E5CE336] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856] [PID.1800] © [MD5.026A347CE1CB21E426466114E86186F7] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008] [PID.3944] © [MD5.D18683083B0EDDAC749F5D2720B25C1E] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [411424] [PID.1996] © [MD5.0EF85BD11BD111A0F077707FF8D2AB35] - (.Symantec Corporation - Norton PC Checkup Launcher Service.) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe [123320] [PID.2596] © [MD5.2F86BE1818C2D7AC90478E3323EE7FCB] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392] [PID.3580] © [MD5.326DAA962878F4D3480A66FF7D78EC1B] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [22388016] [PID.688] © [MD5.79391331D6F021AF2F1105785C15F648] - (.IObit - Performance Monitor.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [3051296] [PID.1948] © [MD5.E8A2813CE559BB90B464D6C687E393BB] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2756912] [PID.4228] © [MD5.4DD065EA999BEE96321CD286AB29D313] - (.NVIDIA Corporation - NVIDIA Capture Server.) -- C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe [7551280] [PID.5608] © [MD5.182E915A3E9CBF5857B2E54D17AB1F09] - (.NVIDIA - GeForce Experience Share.) -- C:\Program Files (x86)\NVIDIA Corporation\OSC\nvosc.exe [981296] [PID.5696] [MD5.97D53832299F479892BCD0A506990EA0] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448176] [PID.5704] © [MD5.5F89D934514AFFDBD03097DE7801375D] - (.NVIDIA Corporation - NVIDIA GFE - Notification Bridge.) -- C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe [316168] [PID.5676] © [MD5.6AF0D2491282821C6A66AFFCDC938536] - (.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe [6850864] [PID.3740] © [MD5.8D160919E4300FA945DF49005D71B8FD] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8495320] [PID.6728] © [MD5.51C494FEE2AB2EAEF3EE7D9329098950] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1691112] [PID.7056] © [MD5.44A9229022A519ED45294A1934C05EEC] - (.Flux Software LLC - f.lux.) -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware\Flux\flux.exe [1017224] [PID.6192] [MD5.9D0D72B696B8CDF9AE368E542FD042CE] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912] [PID.3736] © [MD5.C81F59B7D524FB462F73B27757084618] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8204056] [PID.4420] © [MD5.422963B9386FD4052AA766A6575ED8DE] - (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728] [PID.6260] © [MD5.6E28D341B7691A45145C0AA27587D635] - (.Spotify Ltd - SpotifyCrashService.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyCrashService.exe [840512] [PID.5764] © [MD5.53A6B1ED8BE0F7208FB72EF2580F71EC] - (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790880] [PID.7268] © [MD5.FCEC6F664FA7E5FE323165FBC9314470] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040] [PID.7548] © [MD5.91DF13EC831BDCFA36A7A12CD13D66B9] - (.Disc Soft Ltd - Disc Soft Bus Service.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568] [PID.7580] © [MD5.FBA624E414909CCB8BFEE7183B0575A0] - (.Elias Fotinis - DeskPins application.) -- C:\Program Files (x86)\DeskPins\DeskPins.exe [62464] [PID.7720] [MD5.8F9FC35D5BF32D39B26ECAE4052E3D62] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472] [PID.6088] © [MD5.2B15967270AD018024286CBA9DA1E4E7] - (.IObit - .) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe [188192] [PID.5576] © [MD5.50898AA1653E0701A7DA182414CD32DB] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1026.13580.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [12800] [PID.4528] © [MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.8224] © [MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.2616] © [MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.7832] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.4640] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.3672] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9052] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.6832] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.6228] © [MD5.5353A34090BABE3CD48B70569AF0DD12] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [3011152] [PID.8064] © [MD5.D76CF8C1B21E7192D7F3CD68DCFA274C] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1939536] [PID.8524] © [MD5.D76CF8C1B21E7192D7F3CD68DCFA274C] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1939536] [PID.6204] © [MD5.A53E431775DF91EA016AF5817DF26B41] - (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_65\bin\javaw.exe [191584] [PID.6688] © [MD5.8213094EA736A9C575AB0E22AD09B0BA] - (.Intel Corporation - Intel(R) Security Assist.) -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872] [PID.6592] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5196] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9012] © [MD5.33B4D991772979F92BC87D4D86050731] - (.Copyright (C) 2013-2015 - Open Broadcaster Software.) -- C:\Program Files\OBS\OBS.exe [1425488] [PID.6180] [MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.7532] [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9688] © [MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.9432] [MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.10004] [MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.8044] [MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.5780] [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9488] © [MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.4428] © [MD5.E3ADC8AAF0DB131CB5E6B8A7F586D4B3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\LePetitBeurre\Desktop\ZHPDiag3.exe [1968128] [PID.10200] © ---\\ Google Chrome, Start,Search,Extensions (11) - 0s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com G2 - GCE: Preference [User Data\Default] [afkccfnochoebimhhniekgcegeeiepmi]Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [bepbmhgboaologfdajaanbcjmnhjmhfn]Google Voice Search Hotword (Beta) G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo]Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb]__MSG_name__ G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf]Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [fdpohaocaechififmbbbbbknoalclacl]Full Page Screen Capture G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom]AdBlock G2 - GCE: Preference [User Data\Default] [jmjbgcjbgmcfgbgikmbdioggjlhjegpp]Clipular! Research save & share screenshot G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda]Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [opjonmehjfmkejjifhhknofdnacklmjk]__MSG_themeName__ ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (8) - 1s P2 - EXT FILE: (...) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\betterstop@dagger2-addons.mozilla.org.xpi P2 - EXT FILE: (...) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\jid1-G80Ec8LLEbK5fQ@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\ascsurfingprotection@iobit.com © P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\iobitascsurfingprotection@iobit.com © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll © P2 - FPN: [HKLM] [@baidu.com/BaidusdDetectNPPlugin] - (.Beijing baidu Netcom science and technology co.ltd.) -- C:\Program Files (x86)\Baidu\BaiduSd\3.0.0.4605\explugin\npBaiduSDDetectPlug.dll ---\\ Internet Explorer Extensions, Start, Search (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer, Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet= ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (24) ---\\ Browser Helper Object (BHO) (4) - 0s O2 - BHO: ExplorerWnd Helper [64Bits] - {10921475-03CE-4E04-90CE-E2E7EF20C814} (Orphean) O2 - BHO: Bitdefender Wallet [64Bits] - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll © O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll © O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © ---\\ Auto loading programs from Registry and folders (32) - 0s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe © O4 - HKLM\..\Run: [XboxStat] . (.Microsoft Corporation - XBoxStat.exe.) -- C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe © O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe © O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe © O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe © O4 - HKCU\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware\Flux\flux.exe O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe © O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyWebHelper.exe © O4 - HKCU\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe © O4 - HKCU\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe © O4 - HKCU\..\Run: [EPSON BX610FW Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_IATIFJU.EXE © O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe © O4 - HKCU\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe © O4 - HKCU\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe © O4 - HKCU\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe © O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe © O4 - HKLM\..\Wow6432Node\Run: [bdruninstaller] . (.Bitdefender - Bitdefender Setup Launcher.) -- C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setuplauncher.exe © O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware\Flux\flux.exe O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyWebHelper.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [EPSON BX610FW Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_IATIFJU.EXE © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe © O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe © ---\\ Lop.com/Domain Hijackers (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ---\\ Extra protocols (25) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © ---\\ Software installed (93) - 4s O42 - Logiciel: Adobe Flash Player 17 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Advanced SystemCare 8 - (.IObit.) [HKLM][64Bits] -- Advanced SystemCare 8_is1 © O42 - Logiciel: Arma 2 - (.Bohemia Interactive.) [HKLM][64Bits] -- Steam App 33910 © O42 - Logiciel: Arma 3 - (.Bohemia Interactive.) [HKLM][64Bits] -- Steam App 107410 © O42 - Logiciel: Arma: Cold War Assault - (.Bohemia Interactive.) [HKLM][64Bits] -- Steam App 65790 © O42 - Logiciel: Asmedia USB Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} © O42 - Logiciel: ASUS Product Register Program - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {C0B16F2E-3980-44F8-8CF4-F84696541FF7} © O42 - Logiciel: ASUS Product Register Program - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {C87D79F6-F813-4812-B7A9-CCCAAB8B1188} © O42 - Logiciel: Asus Sonic Suite Plugins - (.ASUSTeKcomputer.Inc.) [HKLM][64Bits] -- {3843fc8e-e352-4238-be32-74ca38dd57a0} © O42 - Logiciel: Bitdefender Total Security 2015 - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender © O42 - Logiciel: Blender - (.Blender Foundation.) [HKLM][64Bits] -- Blender © O42 - Logiciel: CCGLauncher version 0.0.0.9 - (.Custom Combat Gaming.) [HKLM][64Bits] -- {78D51CE5-799C-4FCA-9635-6F61E19EA5E3}_is1 O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: Cheat Engine 6.4 - (.Cheat Engine.) [HKLM][64Bits] -- Cheat Engine 6.4_is1 © O42 - Logiciel: CyberGhost 5 - (.CyberGhost S.R.L..) [HKLM][64Bits] -- CyberGhost 5_is1 © O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite © O42 - Logiciel: Dead Island: Epidemic - (.Stunlock Studios.) [HKLM][64Bits] -- Steam App 222900 © O42 - Logiciel: DeskPins (remove only) - (...) [HKLM][64Bits] -- DeskPins O42 - Logiciel: EasyAntiCheat eSports - (.EasyAntiCheat Ltd.) [HKLM][64Bits] -- Steam App 282660 © O42 - Logiciel: EPSON BX610FW Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON BX610FW Series © O42 - Logiciel: EPSON Scan - (...) [HKLM][64Bits] -- EPSON Scanner O42 - Logiciel: f.lux - (...) [HKCU][64Bits] -- Flux O42 - Logiciel: FFsplit version 0.7 - (.FFsplit Team.) [HKLM][64Bits] -- {82458834-6226-4A34-AE96-6907354F9F36}_is1 O42 - Logiciel: Gamma Control version 3 - (.DesktopNerds.) [HKLM][64Bits] -- {AB451963-CD15-4A27-866C-97B92268BE75}_is1 O42 - Logiciel: GIGABYTE OC_GURU II - (.GIGABYTE Technology Co.,Ltd..) [HKLM][64Bits] -- InstallShield_{5588D686-D23B-4C9D-BDFA-2A7875CD3722} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {8C91A5EB-2C62-4A6D-8802-CC79FD2ED390} © O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] -- {60c073df-e736-4210-9c3a-5fc2b651cef3} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {00118463-4535-4D78-A0CC-965724FE1830} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {18FA6D35-D25E-4039-980C-DCCE98B78BEA} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} © O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {00DAA585-CCB1-4486-91E4-2DEA855E877D} © O42 - Logiciel: Intel(R) Network Connections 20.2.3001.0 - (.Intel.) [HKLM][64Bits] -- {638A518B-0D2E-4143-ACF8-F3D83D822E85} © O42 - Logiciel: Intel(R) Network Connections 20.2.3001.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {205AE40D-8AD7-4F29-A430-DD2168DA562D} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} © O42 - Logiciel: Intel(R) USB 3.0 Host Controller Adaptation Driver - (.Intel Corporation.) [HKLM][64Bits] -- {9472AEE5-5D4D-4329-8BD8-B282FD33B8E0} © O42 - Logiciel: Intel(R) USB 3.0 Host Controller Adaptation Driver - (.Intel Corporation.) [HKLM][64Bits] -- {CF3726D0-BE20-4C47-8524-FFB69504C69D} © O42 - Logiciel: Intel® Security Assist - (.Intel Corporation.) [HKLM][64Bits] -- {4B230374-6475-4A73-BA6E-41015E9C5013} © O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {7D84E343-A23D-451C-B123-0195B2D903A6} © O42 - Logiciel: Interstellar Marines - (.Zero Point Software.) [HKLM][64Bits] -- Steam App 236370 O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall © O42 - Logiciel: Java 8 Update 65 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218065F0} © O42 - Logiciel: Just Cause 2 - (.Avalanche Studios.) [HKLM][64Bits] -- Steam App 8190 © O42 - Logiciel: Just Cause 2: Multiplayer Mod - (.Avalanche Studios.) [HKLM][64Bits] -- Steam App 259080 © O42 - Logiciel: KMSpico - (...) [HKLM][64Bits] -- {8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 =>HackTool.KMSpico O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {D9C50188-12D5-4D3E-8F00-682346C2AA5F} © O42 - Logiciel: Mozilla Firefox 42.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 42.0 (x86 fr) © O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {7DB991C0-CCC3-11E4-9D40-F04DA23A5C58} © O42 - Logiciel: Mutify - (...) [HKLM][64Bits] -- Mutify O42 - Logiciel: Natural Selection 2 - (.Unknown Worlds Entertainment.) [HKLM][64Bits] -- Steam App 4920 O42 - Logiciel: Norton PC Checkup - (.Symantec Corporation.) [HKLM][64Bits] -- NortonPCCheckup © O42 - Logiciel: NVIDIA 3D Vision Controller Driver 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB © O42 - Logiciel: NVIDIA 3D Vision Driver 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision © O42 - Logiciel: NVIDIA GeForce Experience 2.7.3.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience © O42 - Logiciel: NVIDIA Graphics Driver 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: NVIDIA HD Audio Driver 1.3.34.4 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver © O42 - Logiciel: NVIDIA PhysX System Software 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX © O42 - Logiciel: NVIDIA Son virtuel Miracast 358.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio © O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo © O42 - Logiciel: OCCT 4.4.1 - (.Ocbase.com.) [HKLM][64Bits] -- OCCT © O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} © O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} © O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0409-0000-0000000FF1CE} © O42 - Logiciel: Open Broadcaster Software - (...) [HKLM][64Bits] -- Open Broadcaster Software O42 - Logiciel: Planetary Annihilation - (.Uber Entertainment.) [HKLM][64Bits] -- Steam App 233250 © O42 - Logiciel: Play withSIX Windows client - (.SIX Networks GmbH.) [HKCU][64Bits] -- PlaywithSIX O42 - Logiciel: Project CARS - (...) [HKLM][64Bits] -- UHJvamVjdENBUlM=_is1 O42 - Logiciel: qBittorrent 3.1.12 - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Red Orchestra 2: Heroes of Stalingrad - Single Player - (...) [HKLM][64Bits] -- Steam App 236830 O42 - Logiciel: Resident Evil Revelations 2 Repack version 1.0 - (.KONAMI.) [HKLM][64Bits] -- Resident Evil Revelations 2 Repack_is1 © O42 - Logiciel: Rising Storm/Red Orchestra 2 Multiplayer - (.Tripwire Interactive.) [HKLM][64Bits] -- Steam App 35450 © O42 - Logiciel: Rust - (.Facepunch Studios.) [HKLM][64Bits] -- Steam App 252490 © O42 - Logiciel: Skype™ 7.12 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} © O42 - Logiciel: Snaz version 1.9.2.6 - (.JimsApps.) [HKLM][64Bits] -- {70A76031-FDC6-4F9B-BB5C-33776703F45A}_is1 O42 - Logiciel: Sonic Radar II - (.ASUSTeKcomputer.Inc.) [HKLM][64Bits] -- {A70B8D38-273A-4D6A-B7D5-AEBEDEEE5D28} © O42 - Logiciel: Sonic Studio Plugin - (.ASUSTeKcomputer.Inc.) [HKLM][64Bits] -- {F55B1B94-3BFA-49D4-AE45-2ECE776BA815} © O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify © O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam © O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM][64Bits] -- IObit Surfing Protection_is1 © O42 - Logiciel: TAP-Windows 9.9.2 - (...) [HKLM][64Bits] -- TAP-Windows O42 - Logiciel: Team Render Client / CINEMA 4D 15.008 - (.MAXON Computer GmbH.) [HKLM][64Bits] -- MAXONF706BC03 © O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client © O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {7847389E-CCC3-11E4-A1C2-F04DA23A5C58} © O42 - Logiciel: WinRAR 5.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: XSplit Broadcaster - (.SplitmediaLabs.) [HKLM][64Bits] -- {7BC30FB1-9AA6-4B0C-8E5A-574EA5B6CB2F} © O42 - Logiciel: Yahoo Search Set - (.Yahoo Inc..) [HKLM][64Bits] -- Yahoo! SearchSet © ---\\ HKCU & HKLM Software Keys (108) - 4s HKLM\SOFTWARE\Wow6432Node\1043 HKLM\SOFTWARE\Wow6432Node\Activision HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Albin HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\Bitdefender HKLM\SOFTWARE\Wow6432Node\bohemia interactive HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\CyberGhost HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat HKLM\SOFTWARE\Wow6432Node\Elias Fotinis HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Open Broadcaster Software HKLM\SOFTWARE\Wow6432Node\qBittorrent HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Software HKLM\SOFTWARE\Wow6432Node\Sony Creative Software HKLM\SOFTWARE\Wow6432Node\SplitmediaLabs HKLM\SOFTWARE\Wow6432Node\TeamSpeak 3 Client HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Yahoo HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AI_RecycleBin HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\ASUSTeKcomputer.Inc HKCU\SOFTWARE\Beam Team Games HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\Bohemia Interactive HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\Cheat Engine HKCU\SOFTWARE\CyberGhost HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\EasyAntiCheat HKCU\SOFTWARE\EH71Vbm9aPmusN =>PUP.Optional.CrossRider HKCU\SOFTWARE\Elias Fotinis HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\Facepunch Studios HKCU\SOFTWARE\Facepunch Studios LTD HKCU\SOFTWARE\FFSPLIT Overlay Filter HKCU\SOFTWARE\Google HKCU\SOFTWARE\HmelyoffLabs HKCU\SOFTWARE\hzjTE64DMyJJUgq0azwhschq =>PUP.Optional.CrossRider HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Masekales HKCU\SOFTWARE\MC4D HKCU\SOFTWARE\Michael Herf HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Norton HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SIX Networks HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\SplitMediaLabs HKCU\SOFTWARE\Spotify HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\SyncEngines HKCU\SOFTWARE\TCP Optimizer HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contents of the Common Files folders (249) - 3s O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\ASM104xUSB3 O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 29/10/2015 - [] D -- C:\Program Files (x86)\Cheat Engine 6.4 O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 14/10/2015 - [] D -- C:\Program Files (x86)\DeskPins O43 - CFD: 24/10/2015 - [] D -- C:\Program Files (x86)\DesktopNerds O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\epson O43 - CFD: 07/05/2015 - [] D -- C:\Program Files (x86)\FFsplit O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\GIGABYTE O43 - CFD: 05/05/2015 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 04/05/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 10/09/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\IObit O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 03/06/2015 - [] D -- C:\Program Files (x86)\JimsApps O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 31/10/2015 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 07/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Mutify O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Norton PC Checkup O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\NortonInstaller O43 - CFD: 05/11/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\OBS O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\OCCTPT O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\qBittorrent O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 13/10/2015 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 05/05/2015 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore O43 - CFD: 14/05/2015 - [] D -- C:\Program Files (x86)\Sony O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\SplitmediaLabs O43 - CFD: 12/11/2015 - [] D -- C:\Program Files (x86)\Steam O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\TeamSpeak 3 Client O43 - CFD: 13/10/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 10/09/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 30/07/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 30/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Yahoo! O43 - CFD: 03/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 10/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 10/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015 O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCGLauncher O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4 O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeskPins O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DesktopNerds O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FFsplit O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 01/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAXON O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton PC Checkup O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OCCT O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snaz O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonic Radar II O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 01/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 30/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/09/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\3c9fc34af925438d90c9a3b90321f01f O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Bitdefender O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Bohemia Interactive O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 30/07/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\DAEMON Tools Ultra O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 27/10/2015 - [] D -- C:\ProgramData\EPSON O43 - CFD: 05/05/2015 - [0] D -- C:\ProgramData\f68332f424604575b4e9ca42c0c35935 O43 - CFD: 01/11/2015 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Intel O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\IObit O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 01/11/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 10/09/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Norton O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 11/11/2015 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 21/10/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\ProductData =>PUP.Optional.Generic O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 31/10/2015 - [] D -- C:\ProgramData\Riot Games O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 30/07/2015 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Sony O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\SplitMediaLabs O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Steam O43 - CFD: 30/05/2015 - [] D -- C:\ProgramData\Sun O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} =>PUP.Optional.BundleInstaller O43 - CFD: 04/05/2015 - [0] D -- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690} O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Common Files\BattlEye O43 - CFD: 05/05/2015 - [] D -- C:\Program Files (x86)\Common Files\Bitdefender O43 - CFD: 31/10/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\IObit O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 15/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 11/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Adobe O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Apple Computer O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Bitdefender O43 - CFD: 20/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Blender Foundation O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 08/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\DAEMON Tools Ultra O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\EPSON O43 - CFD: 08/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Exanima O43 - CFD: 07/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\FFsplit O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\InstallShield O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Intel Corporation O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\IObit O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Macromedia O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\MAXON O43 - CFD: 01/11/2015 - [] SD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla O43 - CFD: 29/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\OBS O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\ProductData O43 - CFD: 14/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\Publish Providers O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\qBittorrent O43 - CFD: 05/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\QuickScan O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\SIX Networks O43 - CFD: 11/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Skype O43 - CFD: 14/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Sony O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\SplitMediaLabs O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Steam O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Sun O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\TS3Client O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\WinRAR O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\ZHP O43 - CFD: 11/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Adobe O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\AltisAurore.fr O43 - CFD: 01/11/2015 - [0] SHD -- C:\Users\LePetitBeurre\AppData\Local\Application Data O43 - CFD: 08/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Arma 3 O43 - CFD: 21/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Arma 3 Launcher O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\assembly O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Bohemia_Interactive O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\CAPCOM O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\CEF O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Comms O43 - CFD: 28/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Custom_Combat_Gaming O43 - CFD: 30/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\CyberGhost O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Daybreak Game Company O43 - CFD: 21/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Diagnostics O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Disc_Soft_Ltd O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\ElevatedDiagnostics O43 - CFD: 17/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Eric_Zhang O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware O43 - CFD: 20/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Google O43 - CFD: 01/11/2015 - [0] SHD -- C:\Users\LePetitBeurre\AppData\Local\History O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\IsolatedStorage O43 - CFD: 03/06/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\JimsApps O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Macromedia O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Microsoft O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Mozilla O43 - CFD: 31/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\MSfree Inc O43 - CFD: 05/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA O43 - CFD: 05/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA Corporation O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me O43 - CFD: 08/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Packages O43 - CFD: 04/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Local\PackageStaging O43 - CFD: 02/11/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Local\PeerDistRepub O43 - CFD: 28/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\PlaywithSIX O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Programs O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Publishers O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\qBittorrent O43 - CFD: 20/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SCE O43 - CFD: 21/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SIX Networks O43 - CFD: 07/06/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\skybn O43 - CFD: 13/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Skype O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Software =>PUP.Optional.Boxore O43 - CFD: 14/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Sony O43 - CFD: 08/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SplitMediaLabs O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Spotify O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SquirrelTemp O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SR22.1.25 O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Steam O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Temp O43 - CFD: 01/11/2015 - [0] SHD -- C:\Users\LePetitBeurre\AppData\Local\Temporary Internet Files O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\TileDataLayer O43 - CFD: 30/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\VirtualStore O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\YSearchUtil O43 - CFD: 30/07/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 01/11/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 03/11/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps O43 - CFD: 14/10/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DeskPins O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux O43 - CFD: 30/07/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mutify O43 - CFD: 04/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OCCT O43 - CFD: 06/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SIX Networks O43 - CFD: 03/11/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 30/07/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 30/07/2015 - [] RSD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © ---\\ System Drivers List (69) - 4s O58 - SDL:2015/07/10 06:09:24 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] © O58 - SDL:2015/07/10 06:03:12 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] © O58 - SDL:2015/07/10 06:05:17 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] © O58 - SDL:2015/07/10 06:03:16 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2015/07/10 06:05:17 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] © O58 - SDL:2015/07/10 06:03:12 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] © O58 - SDL:2015/05/05 04:51:32 A . (.BitDefender - Active Virus Control filter driver.) -- C:\WINDOWS\System32\drivers\avc3.sys [1306464] © O58 - SDL:2015/11/03 20:44:20 A . (.BitDefender - BitDefender AntiVirus Active Virus Control.) -- C:\WINDOWS\System32\drivers\avchv.sys [262544] © O58 - SDL:2015/05/05 04:51:25 A . (.BitDefender - Active Virus Control Kernel Filtering drive.) -- C:\WINDOWS\System32\drivers\avckf.sys [677104] © O58 - SDL:2015/06/18 02:04:00 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2013/09/08 20:04:56 A . (.Bitdefender - Bitdefender Early Launch Anti-Malware Drive.) -- C:\WINDOWS\System32\drivers\bdelam.sys [23568] © O58 - SDL:2014/12/16 02:04:17 A . (.BitDefender LLC - BitDefender Firewall NDIS6 Filter Driver.) -- C:\WINDOWS\System32\drivers\bdfndisf6.sys [98768] © O58 - SDL:2015/01/09 11:59:25 A . (.BitDefender SRL - BitDefender SandBox Filter Driver.) -- C:\WINDOWS\System32\drivers\bdsandbox.sys [82824] O58 - SDL:2015/11/03 20:44:19 A . (.BitDefender - FileVault Disk Driver.) -- C:\WINDOWS\System32\drivers\bdvedisk.sys [79192] © O58 - SDL:2015/07/10 05:55:09 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2015/11/01 19:25:58 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] © O58 - SDL:2015/05/08 21:13:43 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30352] © O58 - SDL:2015/05/19 08:34:29 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1d64x64.sys [493024] © O58 - SDL:2015/11/12 19:42:37 A . (...) -- C:\WINDOWS\System32\drivers\EasyAntiCheat.sys [267000] O58 - SDL:2015/07/10 05:55:06 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] © O58 - SDL:2015/02/25 01:52:40 A . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\WINDOWS\System32\drivers\gzflt.sys [160544] © O58 - SDL:2012/07/18 02:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] © O58 - SDL:2015/07/10 06:07:32 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2015/06/18 02:03:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] © O58 - SDL:2015/06/18 02:04:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] © O58 - SDL:2015/02/20 18:26:55 A . (.Intel Corporation - NDIS 6.30 Advanced Networking Services..) -- C:\WINDOWS\System32\drivers\iANSW60e.sys [155192] © O58 - SDL:2012/02/02 01:16:40 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStor.sys [568600] © O58 - SDL:2015/06/23 14:58:58 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [1455552] © O58 - SDL:2015/07/10 06:06:06 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] © O58 - SDL:2015/07/10 06:06:06 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2015/07/10 05:54:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] © O58 - SDL:2014/08/01 21:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296] © O58 - SDL:2012/10/26 23:21:12 A . (.ASUSTeK Computer Inc. - ASUS Kernel Mode Driver for NT.) -- C:\WINDOWS\System32\drivers\IOMap64.sys [23680] © O58 - SDL:2015/05/07 14:00:20 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\WINDOWS\System32\drivers\iqvw64e.sys [37832] © O58 - SDL:2014/08/01 21:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] © O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] © O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] © O58 - SDL:2015/07/10 06:09:24 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] © O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] © O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] © O58 - SDL:2015/11/03 19:15:57 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] © O58 - SDL:2015/07/10 06:09:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] © O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] © O58 - SDL:2015/07/10 05:54:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] © O58 - SDL:2015/07/10 06:03:10 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] © O58 - SDL:2015/10/05 09:50:22 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] © O58 - SDL:2015/07/10 05:54:53 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] © O58 - SDL:2015/11/02 23:49:25 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda64v.sys [205456] © O58 - SDL:2015/11/07 04:19:04 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11227280] © O58 - SDL:2015/07/10 06:07:35 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] © O58 - SDL:2015/07/10 06:07:35 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] © O58 - SDL:2015/08/11 05:52:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [50472] © O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] © O58 - SDL:2015/07/10 06:09:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] © O58 - SDL:2015/04/28 10:14:26 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\WINDOWS\System32\drivers\Rt64win7.sys [977624] © O58 - SDL:2015/06/23 12:26:34 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4500184] © O58 - SDL:2015/07/10 06:03:13 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2015/07/10 06:03:13 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2015/07/10 06:03:16 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] © O58 - SDL:2013/08/22 13:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [40664] © O58 - SDL:2015/05/08 22:26:24 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [178976] © O58 - SDL:2014/10/16 01:14:12 A . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\WINDOWS\System32\drivers\trufos.sys [452040] © O58 - SDL:2015/07/10 04:21:44 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2015/07/10 06:07:40 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] © O58 - SDL:2015/07/10 06:07:40 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] © O58 - SDL:2015/07/10 05:54:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] © O58 - SDL:2015/07/10 05:54:53 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] © O58 - SDL:2014/07/02 19:49:08 A . (.SplitmediaLabs Limited - XSplit Stream Audio.) -- C:\WINDOWS\System32\drivers\xspltspk.sys [26200] ---\\ Last modified or created user files (10) - 5s O61 - LFC: 2015/11/08 01:18:27 A . (..) -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA\GLCache\cb5a8777e289a14fcde53702c95a4089\69f3824d6cc11b2b\dec84da8cd2fd12b.bin [34755] O61 - LFC: 2015/11/11 12:42:43 A . (..) -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA\GLCache\62ff778e2c1501b68e22410795fcbdf9\69f3824d6cc11b2b\2ad2147cf33d62a7.bin [60620] O61 - LFC: 2015/11/11 12:40:31 A . (..) -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA\GLCache\62ff778e2c1501b68e22410795fcbdf9\69f3824d6cc11b2b\f325a1b2bc51eece.bin [4183] O61 - LFC: 2015/11/11 20:28:14 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2015/11/12 18:27:58 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA\NvBackend\Packages\000082a7\DAO.20162679.exe [6826208] O61 - LFC: 2015/11/11 18:26:54 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA\NvBackend\Packages\00008245\DRS update.20141141.exe [354416] O61 - LFC: 2015/11/05 23:34:04 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA\NvBackend\drs\update.bin [1311428] O61 - LFC: 2015/11/12 17:47:13 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] O61 - LFC: 2015/11/06 20:47:39 A . (.Copyright David Reschke © 2013.) -- C:\Users\LePetitBeurre\AppData\Local\assembly\dl3\HXTQCHP5.6HG\HEXL9DBX.D19\bd8d93c6\9bcfa028_55e8ce01\CountdownPlugin.DLL [35328] O61 - LFC: 2015/11/06 20:47:39 A . (.Copyright David Reschke © 2013.) -- C:\Users\LePetitBeurre\AppData\Local\assembly\dl3\HXTQCHP5.6HG\HEXL9DBX.D19\9bbf172c\c3ea6272_58e8ce01\DateTimePlugin.DLL [29696] ---\\ File Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Start Menu Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Search Browser Infection (5) - 1s O69 - SBI: prefs.js [LePetitBeurre - t8il9odi.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [LePetitBeurre - t8il9odi.default] user_pref("browser.search.searchengine.ptid", "fsf"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [LePetitBeurre - t8il9odi.default] user_pref("browser.search.searchengine.uid", "ST1000DM003-1CH162_S1DD9DY2XXXXS1DD9DY2"); =>PUP.Optional.SearchEngine O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {C0043A22-EAF4-4723-9E36-DD3504C65D40} - (Yahoo Search) - http://fr.search.yahoo.com/ ---\\ Search Svchost Services (42) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [192000] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [283136] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [1335296] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [954368] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [954880] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\System32\seclogon.dll [31232] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [93696] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [106496] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [1008640] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [226304] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [133120] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [324608] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [371200] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [95744] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\Windows\System32\wlidsvc.dll [2093056] © O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [196096] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\Windows\System32\NcaSvc.dll [167424] © O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\Windows\System32\NetSetupSvc.dll [187392] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [106496] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [679936] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [497152] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [72192] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [311808] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2236416] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [1168896] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [593920] © O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [63488] © O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1149440] © O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1019392] © O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [343040] © O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [713216] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [27136] © O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] © O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [918016] © O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [1015808] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [359936] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\Windows\System32\DeviceSetupManager.dll [237568] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [58368] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [200192] © ---\\ Firewall Active Exception List (14) - 1s O87 - FAEL: "{82FD800B-4D10-4555-8F61-261181AC9C5D}" [In-None-P17-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe O87 - FAEL: "{7512D9D3-FA03-4618-843B-7128FE362D38}" [In-None-P6-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe O87 - FAEL: "{A7383278-3A55-49A7-A4BC-43A0026C2547}" [In-None-P17-TRUE] .(.Daybreak Game Company - Daybreak Game Company LaunchPad.) -- D:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe O87 - FAEL: "{F914CE34-4F6E-4F9E-9C9D-3EDAD3DB1BB2}" [In-None-P6-TRUE] .(.Daybreak Game Company - Daybreak Game Company LaunchPad.) -- D:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe O87 - FAEL: "{A59341D3-C78D-4B11-A4ED-34AA6A4E39C1}" [In-None-P17-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe O87 - FAEL: "{72AAF75F-EDAC-4DFB-AB02-9238D2D1C4CB}" [In-None-P6-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe O87 - FAEL: "{C4B3B055-3E37-4A30-8C06-AE03805822B6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe O87 - FAEL: "{F8DC59AB-5683-4BFA-88CE-70F0D72326F7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe O87 - FAEL: "{1E7B3F2E-C217-4114-9C41-BC8ED2068650}" [In-None-P6-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Natural Selection 2\ns2.exe O87 - FAEL: "{F7A2841A-03CC-43D3-8F38-D9193576B360}" [In-None-P17-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Natural Selection 2\ns2.exe O87 - FAEL: "{88C63711-28E3-4C00-94FE-B5A1BCD07232}" [In-None-P6-TRUE] .(.Copyright © BIS 1996-2002 - Cold War Assault.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssault.exe O87 - FAEL: "{4824F306-427B-42FA-A6A9-A68A14E766BB}" [In-None-P17-TRUE] .(.Copyright © BIS 1996-2002 - Cold War Assault.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssault.exe O87 - FAEL: "{5E21152D-011D-4EBA-A8AB-1B4D89527E8B}" [In-None-P6-TRUE] .(.Copyright © 1999 - Operation Flashpoint preferences.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssaultPreferences.exe O87 - FAEL: "{29F1265E-DF47-474E-89BB-3B738D3D4181}" [In-None-P17-TRUE] .(.Copyright © 1999 - Operation Flashpoint preferences.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssaultPreferences.exe ---\\ Services not Microsoft (SR=Run, SS=Stop) (35) - 11s SS - Demand [04/05/2015] [ 268464] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [05/08/2015] [ 821024] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe © SR - Auto [23/07/2014] [ 936728] ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe SR - Auto [23/07/2014] [ 1360016] ASUS System Control Service (AsSysCtrlService) . (...) - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe SS - Demand [09/12/2014] [ 78144] Bitdefender Desktop Parental Control (BdDesktopParental) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe © SS - Demand [13/10/2015] [ 1225216] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe SR - Auto [10/06/2015] [ 63968] CyberGhost 5 Client Service (CGVPNCliService) . (.CyberGhost S.R.L.) - C:\Program Files\CyberGhost 5\Service.exe © SR - Demand [18/06/2015] [ 1268568] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe © SR - Auto [22/10/2015] [ 1156400] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © SS - Demand [05/05/2015] [ 107848] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [05/05/2015] [ 107848] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SR - Auto [23/06/2015] [ 18856] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © SS - Demand [14/11/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe © SS - Demand [22/05/2015] [ 881152] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe © SR - Auto [07/05/2015] [ 271632] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\System32\IProsetMonitor.exe © SR - Demand [19/05/2015] [ 335872] Intel(R) Security Assist (Intel(R) Security Assist) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe © SS - Auto [19/05/2015] [ 7680] Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe SR - Auto [02/06/2015] [ 223008] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SR - Auto [29/07/2015] [ 2909472] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe © SR - Auto [02/06/2015] [ 411424] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Auto [28/10/2015] [ 1080120] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © SR - Auto [13/08/2012] [ 123320] Norton PC Checkup Application Launcher (Norton PC Checkup Application Launcher) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe © SR - Auto [22/10/2015] [ 1872688] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © SR - Demand [22/10/2015] [ 8133424] NVIDIA Streamer Network Service (NvStreamNetworkSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe © SR - Auto [22/10/2015] [ 5915440] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © SR - Auto [05/11/2015] [ 938616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe © SR - Auto [13/08/2012] [ 126392] Common Client Job Manager Service (PCCUJobMgr) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe © SS - Disabled [08/07/2013] [ 94624] SafeBox (SafeBox) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe © SR - Auto [04/12/2014] [ 966336] Service KMSELDI (Service KMSELDI) . (.@ByELDI.) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SS - Demand [14/10/2015] [ 838224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe © SS - Auto [05/11/2015] [ 417400] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © SR - Auto [27/10/2014] [ 67320] Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe © SR - Auto [16/03/2015] [ 1547936] Bitdefender Virus Shield (vsserv) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe © ---\\ Additional Scan (O88) (19) - 0s HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI =>HackTool.KMSpico C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico HKCU\SOFTWARE\EH71Vbm9aPmusN =>PUP.Optional.CrossRider HKCU\SOFTWARE\hzjTE64DMyJJUgq0azwhschq =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\BWUZU1.job =>PUP.Optional.FlashBeat C:\WINDOWS\Tasks\EH71Vbm9aPmusN.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\hzjTE64DMyJJUgq0azwhschq.job =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\AutoPico Daily Restart =>HackTool.KMSpico C:\WINDOWS\System32\Tasks\BWUZU1 =>PUP.Optional.FlashBeat C:\WINDOWS\System32\Tasks\EH71Vbm9aPmusN =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\hzjTE64DMyJJUgq0azwhschq =>PUP.Optional.CrossRider HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 =>HackTool.KMSpico C:\Program Files (x86)\Software =>PUP.Optional.Boxore C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico C:\ProgramData\ProductData =>PUP.Optional.Generic C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} =>PUP.Optional.BundleInstaller C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic C:\Users\LePetitBeurre\AppData\Local\Software =>PUP.Optional.Boxore ---\\ Summary of the elements found (8) - 0s http://www.nicolascoolman.fr/pup-kmspico/ =>HackTool.KMSpico http://www.nicolascoolman.fr/blog =>PUP.Optional.FlashBeat http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/blog =>PUP.Optional.BundleInstaller http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine ~ End of the scan, 22371 items in 90 seconds (1014)(0)