~ ZHPDiag v2016.4.6.84 By Nicolas Coolman (2016/04/06) ~ Run by DOS (Administrator) (2016/04/18 03:53:57) ~ Web: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version KO ~ Mode: Scan ~ Report: C:\Users\DOS\Desktop\ZHPDiag.txt ~ Report: C:\Users\DOS\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ System startup: Normal (Normal boot) Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) ---\\ Internet Browsers (3) - 0s GCIE: Google Chrome v49.0.2623.110 MFIE: Mozilla Firefox 45.0.2 (x86 ar) MSIE: Internet Explorer v11.0.9600.18097 ---\\ Windows Product Information (4) - 1s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Surveillance software (2) - 17s Adobe Flash Player 21 NPAPI Adobe Acrobat Reader DC ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 15 Model 4 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4193.464 MB (51% free) System Restore: Activé (Enable) System drive C: has 66 GB () free of 119 GB ---\\ Connection to the system mode (3) - 0s ~ Computer Name: YAHYA ~ User Name: DOS ~ Logged in as Administrator ---\\ Enumeration of the disk units (3) - 0s ~ Drive C: has 66 GB free of 119 GB (System) ~ Drive D: has 99 GB free of 178 GB ~ Drive E: has 83 GB free of 178 GB ---\\ State of the Windows Security Center (14) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Search Generic System Files (26) - 2s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 15/07/2013 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2871808] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.033E70DEEE5FED5E9A3E197A2DB1A618] - 31/10/2015 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [2487808] =>.Microsoft Corporation [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 15/07/2013 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 15/07/2013 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.73ADDCC406B86E7DA4416691E8E74BDA] - 20/10/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 24/01/2014 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (6) - 2s O23 - Service: Advanced SystemCare Service 9 (AdvancedSystemCareService9) . (.IObit - Advanced SystemCare Service.) - C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe =>.IObit Information Technology® O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.AMD O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: خدمة Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® O23 - Service: OpenVPN Agent (ovpnagent) . (...) - C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\ovpnagent.exe {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} ---\\ Services not Microsoft (SR=Run, SS=Stop) (14) - 71s SS - Demand [14/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [14/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [05/01/2016] [ 446240] Advanced SystemCare Service 9 (AdvancedSystemCareService9) . (.IObit.) - C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe =>.IObit Information Technology® SR - Auto [02/02/2016] [ 296448] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.AMD SS - Demand [01/10/2013] [ 77944] Autodesk Licensing Service (Autodesk Licensing Service) . (.Autodesk.) - C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe =>.Autodesk, Inc® SR - Auto [25/03/2016] [ 2519904] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® SS - Auto [29/08/2015] [ 144200] خدمة Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/08/2015] [ 144200] خدمة Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [17/12/2015] [ 644880] خدمة iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Auto [14/01/2016] [ 2945312] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® SS - Demand [19/03/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [19/02/2016] [ 1493224] OpenVPN Agent (ovpnagent) . (...) - C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\ovpnagent.exe {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} SS - Demand [05/06/2015] [ 837312] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® ---\\ Task Planned Automatically (28) - 10s [MD5.4EAF6F8F0B3BE33A0E3877EB7FFD48D4] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656] (.Activate.) =>.Adobe Systems, Incorporated® [MD5.28FFB14117CCEDD7D2F124596AA9B785] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated® [MD5.71E7A6272C7B0404416D26BD258BA5E9] [APT] [ASC9_PerformanceMonitor] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [1529632] (.Activate.) =>.IObit Information Technology® [MD5.2464832F559CA6BB34856B5AD8A1C30A] [APT] [ASC9_SkipUac_DOS] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [5037344] (.Activate.) =>.IObit Information Technology® [MD5.EC7BF707FBE2C766A567E47515D7F746] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6667992] (.Activate.) =>.Piriform Ltd® [MD5.F09789E8C16FE61A714D49DA24544DFC] [APT] [Driver Booster Scheduler] (.IObit.) -- C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [1009952] (.Activate.) =>.IObit Information Technology® [MD5.BDFED53F51A736992CA8955A5E24D1FB] [APT] [Driver Booster SkipUAC (DOS)] (.IObit.) -- C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [4794656] (.Activate.) =>.IObit Information Technology® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.5CB18041B972085DCFE8197039E2EDB5] [APT] [SmartDefrag4_Startup] (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe [4603680] (.Activate.) =>.IObit Information Technology® [MD5.39D1D316A4AB402190104C9AA2BE57C7] [APT] [SmartDefrag4_Update] (.IObit.) -- C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe [2400544] (.Activate.) =>.IObit Information Technology® [MD5.93104E6E9CA1963C43FB40EDFF664FC5] [APT] [Uninstaller_SkipUac_DOS] (.IObit.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [5275936] (.Activate.) =>.IObit Information Technology® [MD5.00000000000000000000000000000000] [APT] [{2065AD07-2BCA-4716-9999-3A85016C2451}] (...) -- C:\Windows\iun6002.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [830] =>.Adobe Systems Incorporated® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [838] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [842] =>.Google Inc® O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] =>.Adobe Systems, Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3768] =>.Adobe Systems Incorporated® O39 - APT: ASC9_PerformanceMonitor - (.IObit.) -- C:\Windows\System32\Tasks\ASC9_PerformanceMonitor [3170] =>.IObit Information Technology® O39 - APT: ASC9_SkipUac_DOS - (.IObit.) -- C:\Windows\System32\Tasks\ASC9_SkipUac_DOS [2858] =>.IObit Information Technology® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2780] =>.Piriform Ltd® O39 - APT: Driver Booster Scheduler - (.IObit.) -- C:\Windows\System32\Tasks\Driver Booster Scheduler [3232] =>.IObit Information Technology® O39 - APT: Driver Booster SkipUAC (DOS) - (.IObit.) -- C:\Windows\System32\Tasks\Driver Booster SkipUAC (DOS) [2864] =>.IObit Information Technology® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3586] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3838] =>.Google Inc® O39 - APT: SmartDefrag4_Startup - (.IObit.) -- C:\Windows\System32\Tasks\SmartDefrag4_Startup [3174] =>.IObit Information Technology® O39 - APT: SmartDefrag4_Update - (.IObit.) -- C:\Windows\System32\Tasks\SmartDefrag4_Update [3172] =>.IObit Information Technology® O39 - APT: Uninstaller_SkipUac_DOS - (.IObit.) -- C:\Windows\System32\Tasks\Uninstaller_SkipUac_DOS [2894] =>.IObit Information Technology® ---\\ Process running (33) - 6s [MD5.91C596BE98F65830352B466C19705533] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [446240] [PID.812] =>.IObit Information Technology® [MD5.66F584549EDBA3935632FDB17DBA6184] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2519904] [PID.896] =>.ESET, spol. s r.o.® [MD5.3F6606CD1E96E1D74FFE466BE49F355C] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [296448] [PID.276] =>.AMD [MD5.84D386661D59FB9044148667A21563A9] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [695808] [PID.1284] =>.AMD [MD5.22A257F3E6FC40A384333D0BA8A52781] - (.IObit - IObit Uninstaller 5 UninstallMontior.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe [275744] [PID.2208] =>.IObit Information Technology® [MD5.BA3AB83C9D468655F81FE607A796CD0C] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16408320] [PID.2680] =>.Realtek Semiconductor Corp® [MD5.4AC28B51530D3A93B3F27EB7A72F575F] - (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe [630784] [PID.2852] [MD5.9CD2D6FFEBFE63DFA340C724CE3373A7] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5564576] [PID.2740] =>.ESET, spol. s r.o.® [MD5.A3E33718D1090A1587AC069597EC4FA6] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3907152] [PID.2608] =>.Tonec Inc. [MD5.88B052F686DA7B7E1423F0879E68CF41] - (.IObit - Advanced SystemCare 9.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [2019616] [PID.3128] =>.IObit Information Technology® [MD5.C9B67BCB8E384064A8C2263740B0C437] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480] [PID.3676] =>.Oracle America, Inc.® [MD5.BAC15D03EFC8249216D1D610F3B1E67F] - (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files (x86)\USB Disk Security\USBGuard.exe [695528] [PID.3700] =>.Lanzhou Itanium Software Technology Co., Ltd.® [MD5.13D47B1FCE71DE8B8B95F6AFC3166852] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe [307400] [PID.3884] =>.Advanced Micro Devices, Inc.® [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [269848] [PID.2224] =>.Tonec Inc.® [MD5.942E02374F3AE65175EF6FAC30C9246E] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe [307912] [PID.780] =>.Advanced Micro Devices, Inc.® [MD5.5CC1C1598E004E9C7C00FC9B04E21FF2] - (...) -- C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\ovpnagent.exe [1493224] [PID.320] {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} [MD5.7B4F911FD74BF0124CF86967669C6610] - (.OpenVPN Technologies - Private Tunnel VPN Client.) -- C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\privatetunnel2.5.5.exe [3616488] [PID.2628] {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} =>.OpenVPN Technologies [MD5.7B4F911FD74BF0124CF86967669C6610] - (.OpenVPN Technologies - Private Tunnel VPN Client.) -- C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\privatetunnel2.5.5.exe [3616488] [PID.3420] {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} =>.OpenVPN Technologies [MD5.7B4F911FD74BF0124CF86967669C6610] - (.OpenVPN Technologies - Private Tunnel VPN Client.) -- C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\privatetunnel2.5.5.exe [3616488] [PID.5104] {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} =>.OpenVPN Technologies [MD5.91AEFD4F90AA3C357D862B985D41B7D5] - (.Beepa P/L - Fraps.) -- C:\Fraps\fraps.exe [2550968] [PID.3756] =>.Beepa P/L [MD5.E83D28317E7BA483CB948B615DC3DDFE] - (.Beepa P/L - Fraps.) -- C:\Fraps\fraps64.dat [68792] [PID.4828] =>.Beepa P/L [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.1080] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3860] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3196] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.4940] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3548] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.4864] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.964] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3940] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.4908] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.1140] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.4756] =>.Google Inc® [MD5.87E06FEE953DAA671BE0CFAD7B927D9C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\DOS\AppData\Roaming\ZHP\ZHPDiag3.exe [2179072] [PID.3816] =>.Nicolas Coolman ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (6) - 5s P2 - EXT FILE: (...) -- C:\Users\DOS\AppData\Roaming\Mozilla\Firefox\Profiles\t0h5x25y.default-1424368493781\extensions\client@anonymox.net.xpi P2 - EXT FILE: (...) -- C:\Users\DOS\AppData\Roaming\Mozilla\Firefox\Profiles\t0h5x25y.default-1424368493781\extensions\firefox@zenmate.com.xpi P2 - EXT: (.Hong Jen Yee (PCMan) - IE Tab 2 (FF 3.6+).) -- C:\Users\DOS\AppData\Roaming\Mozilla\Firefox\Profiles\t0h5x25y.default-1424368493781\extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB} P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.0.5] - (.the VideoLAN Team.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.1.11] - (.the VideoLAN Team.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll ---\\ Internet Explorer Extensions, Start, Search (24) - 2s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer, Proxy Management (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (2) ---\\ Browser Helper Object (BHO) (4) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: ExplorerWnd Helper [64Bits] - {10921475-03CE-4E04-90CE-E2E7EF20C814} (Orphean) O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® ---\\ Auto loading programs from Registry and folders (14) - 2s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKCU\..\Run: [RocketDock] . (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [Advanced SystemCare 9] . (.IObit - Advanced SystemCare 9.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe =>.IObit Information Technology® O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe =>.Advanced Micro Devices, Inc.® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\Wow6432Node\Run: [USB Security] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files (x86)\USB Disk Security\USBGuard.exe =>.Lanzhou Itanium Software Technology Co., Ltd.® O4 - HKUS\S-1-5-21-568589206-187183825-684968512-1000\..\Run: [RocketDock] . (...) -- C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - HKUS\S-1-5-21-568589206-187183825-684968512-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-568589206-187183825-684968512-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-568589206-187183825-684968512-1000\..\Run: [CCleaner] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-568589206-187183825-684968512-1000\..\Run: [Advanced SystemCare 9] . (.IObit - Advanced SystemCare 9.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe =>.IObit Information Technology® ---\\ Global shortcuts Startup (102) - 37s O4 - GS\Desktop [Administrator]: DKZ Studio.lnk . (...) C:\Users\DOS\AppData\Roaming\Microsoft\Installer\{F656DC79-013A-4683-8692-B938FC00B941}\_23282bdc.exe O4 - GS\Desktop [Administrator]: etc - Shortcut.lnk . (...) C:\Windows\System32\drivers\etc O4 - GS\Desktop [Administrator]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Desktop [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrator]: Play Assassin's Creed 3.lnk . (...) D:\Assassin's Creed 3\AC3SP.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [Administrator]: Play COD MW3 nosTEAM.lnk . (.Copyright © 2012 - MW3Launcher.) D:\Call of Duty Modern Warfare3\Call of Duty Modern Warfare 3\MW3 Launcher.exe O4 - GS\Desktop [Administrator]: Play COD4 MultiPlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3mp.exe O4 - GS\Desktop [Administrator]: Play COD4 SinglePlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3sp.exe O4 - GS\Desktop [Administrator]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - GS\Desktop [Administrator]: thumbnails - Shortcut.lnk . (...) C:\Program Files (x86)\Steam\userdata\212991762\760\remote\407250\screenshots\thumbnails O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\DOS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrator]: خلفيات.lnk . (...) C:\Program Files (x86)\RocketDock\خلفيات O4 - GS\Quicklaunch [Administrator]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\Quicklaunch [Administrator]: DS3 Tool.lnk . (.www.motioninjoy.com - DS3_Tool.) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe =>.www.motioninjoy.com O4 - GS\Quicklaunch [Administrator]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Advanced SystemCare 9.lnk . (.IObit - Advanced SystemCare 9.) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe =>.IObit Information Technology® O4 - GS\TaskBar [Administrator]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [ASPNET]: DKZ Studio.lnk . (...) C:\Users\DOS\AppData\Roaming\Microsoft\Installer\{F656DC79-013A-4683-8692-B938FC00B941}\_23282bdc.exe O4 - GS\Desktop [ASPNET]: etc - Shortcut.lnk . (...) C:\Windows\System32\drivers\etc O4 - GS\Desktop [ASPNET]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Desktop [ASPNET]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [ASPNET]: Play Assassin's Creed 3.lnk . (...) D:\Assassin's Creed 3\AC3SP.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [ASPNET]: Play COD MW3 nosTEAM.lnk . (.Copyright © 2012 - MW3Launcher.) D:\Call of Duty Modern Warfare3\Call of Duty Modern Warfare 3\MW3 Launcher.exe O4 - GS\Desktop [ASPNET]: Play COD4 MultiPlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3mp.exe O4 - GS\Desktop [ASPNET]: Play COD4 SinglePlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3sp.exe O4 - GS\Desktop [ASPNET]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - GS\Desktop [ASPNET]: thumbnails - Shortcut.lnk . (...) C:\Program Files (x86)\Steam\userdata\212991762\760\remote\407250\screenshots\thumbnails O4 - GS\Desktop [ASPNET]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\DOS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [ASPNET]: خلفيات.lnk . (...) C:\Program Files (x86)\RocketDock\خلفيات O4 - GS\Quicklaunch [ASPNET]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\Quicklaunch [ASPNET]: DS3 Tool.lnk . (.www.motioninjoy.com - DS3_Tool.) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe =>.www.motioninjoy.com O4 - GS\Quicklaunch [ASPNET]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Quicklaunch [ASPNET]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [ASPNET]: Advanced SystemCare 9.lnk . (.IObit - Advanced SystemCare 9.) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe =>.IObit Information Technology® O4 - GS\TaskBar [ASPNET]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\TaskBar [ASPNET]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [DOS]: DKZ Studio.lnk . (...) C:\Users\DOS\AppData\Roaming\Microsoft\Installer\{F656DC79-013A-4683-8692-B938FC00B941}\_23282bdc.exe O4 - GS\Desktop [DOS]: etc - Shortcut.lnk . (...) C:\Windows\System32\drivers\etc O4 - GS\Desktop [DOS]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Desktop [DOS]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [DOS]: Play Assassin's Creed 3.lnk . (...) D:\Assassin's Creed 3\AC3SP.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [DOS]: Play COD MW3 nosTEAM.lnk . (.Copyright © 2012 - MW3Launcher.) D:\Call of Duty Modern Warfare3\Call of Duty Modern Warfare 3\MW3 Launcher.exe O4 - GS\Desktop [DOS]: Play COD4 MultiPlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3mp.exe O4 - GS\Desktop [DOS]: Play COD4 SinglePlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3sp.exe O4 - GS\Desktop [DOS]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - GS\Desktop [DOS]: thumbnails - Shortcut.lnk . (...) C:\Program Files (x86)\Steam\userdata\212991762\760\remote\407250\screenshots\thumbnails O4 - GS\Desktop [DOS]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\DOS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [DOS]: خلفيات.lnk . (...) C:\Program Files (x86)\RocketDock\خلفيات O4 - GS\Quicklaunch [DOS]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\Quicklaunch [DOS]: DS3 Tool.lnk . (.www.motioninjoy.com - DS3_Tool.) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe =>.www.motioninjoy.com O4 - GS\Quicklaunch [DOS]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Quicklaunch [DOS]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [DOS]: Advanced SystemCare 9.lnk . (.IObit - Advanced SystemCare 9.) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe =>.IObit Information Technology® O4 - GS\TaskBar [DOS]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\TaskBar [DOS]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [Guest]: DKZ Studio.lnk . (...) C:\Users\DOS\AppData\Roaming\Microsoft\Installer\{F656DC79-013A-4683-8692-B938FC00B941}\_23282bdc.exe O4 - GS\Desktop [Guest]: etc - Shortcut.lnk . (...) C:\Windows\System32\drivers\etc O4 - GS\Desktop [Guest]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Desktop [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Guest]: Play Assassin's Creed 3.lnk . (...) D:\Assassin's Creed 3\AC3SP.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [Guest]: Play COD MW3 nosTEAM.lnk . (.Copyright © 2012 - MW3Launcher.) D:\Call of Duty Modern Warfare3\Call of Duty Modern Warfare 3\MW3 Launcher.exe O4 - GS\Desktop [Guest]: Play COD4 MultiPlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3mp.exe O4 - GS\Desktop [Guest]: Play COD4 SinglePlayer.lnk . (...) D:\Call of Duty Modern Warfare\iw3sp.exe O4 - GS\Desktop [Guest]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe O4 - GS\Desktop [Guest]: thumbnails - Shortcut.lnk . (...) C:\Program Files (x86)\Steam\userdata\212991762\760\remote\407250\screenshots\thumbnails O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\DOS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Guest]: خلفيات.lnk . (...) C:\Program Files (x86)\RocketDock\خلفيات O4 - GS\Quicklaunch [Guest]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\Quicklaunch [Guest]: DS3 Tool.lnk . (.www.motioninjoy.com - DS3_Tool.) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe =>.www.motioninjoy.com O4 - GS\Quicklaunch [Guest]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Advanced SystemCare 9.lnk . (.IObit - Advanced SystemCare 9.) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe =>.IObit Information Technology® O4 - GS\TaskBar [Guest]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Advanced SystemCare 9.lnk . (.IObit - Advanced SystemCare 9.) C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe =>.IObit Information Technology® O4 - GS\CommonDesktop [Public]: AutoCAD 2007.lnk . (.Autodesk, Inc. - AutoCAD Application.) C:\Program Files (x86)\AutoCAD 2007\acad.exe {038C44AAA07757419CB39107992A3A73} =>.Autodesk, Inc. O4 - GS\CommonDesktop [Public]: Autodesk DWF Viewer.lnk . (.Autodesk, Inc. - Autodesk DWF Viewer.) C:\Program Files (x86)\Autodesk\Autodesk DWF Viewer\DWFViewer.exe {7660F7D11412C3D4B2B6166C01D29DF0} =>.Autodesk, Inc. O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: COWON Media Center - jetAudio.lnk . (.JetAudio, Inc. - jetAudio.) C:\Program Files (x86)\JetAudio\JetAudio.exe O4 - GS\CommonDesktop [Public]: CyberLink PowerDVD 9.lnk . (.CyberLink Corp. - PDVDLaunchPolicy Application.) C:\Program Files (x86)\CyberLink\PowerDVD9\PDVDLaunchPolicy.exe =>.CyberLink® O4 - GS\CommonDesktop [Public]: Driver Booster 3.lnk . (.IObit - Driver Booster 3.) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe =>.IObit Information Technology® O4 - GS\CommonDesktop [Public]: DS3 Tool.lnk . (.www.motioninjoy.com - .) C:\Program Files (x86)\MotioninJoy\ds3\DS3_Tool.exe =>.www.motioninjoy.com O4 - GS\CommonDesktop [Public]: Embratoria G1.lnk . (.Embratoria - EmbratoriaG1.) C:\Program Files (x86)\Embratoria\EmbratoriaG1\EmbratoriaG1.exe O4 - GS\CommonDesktop [Public]: ESET Banking & Payment protection.lnk . (.ESET - .) C:\Program Files (x86)\ESET\ESET Smart Security\ecmd.exe =>.ESET O4 - GS\CommonDesktop [Public]: Fraps.lnk . (.Beepa P/L - Fraps.) C:\Fraps\fraps.exe =>.Beepa P/L O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Hulk TV.lnk . (.SoloSlayt - TV-4LIVE.) C:\Program Files (x86)\Hulk TV\Hulk TV.exe O4 - GS\CommonDesktop [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe =>.IObit Information Technology® O4 - GS\CommonDesktop [Public]: Media Player Classic.lnk . (.MPC-HC Team - Media Player Classic - Home Cinema.) C:\Program Files (x86)\K-Lite Codec Pack\Media Player Classic\mpc-hc.exe =>.MPC-HC Team O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Private Tunnel.lnk . (.OpenVPN Technologies - Private Tunnel VPN Client.) C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\privatetunnel2.5.5.exe {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} =>.OpenVPN Technologies O4 - GS\CommonDesktop [Public]: Smart Defrag 4.lnk . (.IObit - Smart Defrag v4.) C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe =>.IObit Information Technology® O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - GS\CommonDesktop [Public]: USB Disk Security.lnk . (.Zbshareware Lab - USB Disk Security.) C:\Program Files (x86)\USB Disk Security\USBGuard.exe =>.Lanzhou Itanium Software Technology Co., Ltd.® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (...) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe O4 - GS\CommonDesktop [Public]: Web Navigation.lnk . (...) C:\Program Files (x86)\USB Disk Security\linkzb.exe =>.Lanzhou Itanium Software Technology Co., Ltd.® O4 - GS\Startup [Public]: PrivateTunnel.lnk . (.OpenVPN Technologies - Private Tunnel VPN Client.) C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\privatetunnel2.5.5.exe {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} =>.OpenVPN Technologies O4 - GS\Programs [Public]: GameRanger.lnk . (.GameRanger Technologies - GameRanger.) C:\Users\DOS\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe =>.GameRanger Technologies® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Lop.com/Domain Hijackers (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\..\{D0E9B9D3-51F9-4BE4-8076-B6A698CEF9A4}: NameServer = 10.9.0.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{DDC8C1E7-C3A1-4ACF-8826-760145FD82A2}: NameServer = 192.168.1.1 ---\\ Extra protocols (22) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (61) - 89s O42 - Logiciel: 1.6 - (.The Dark Side.) [HKLM][64Bits] -- Command and Conquer Generals_is1 O42 - Logiciel: Adobe Acrobat Reader DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 12.2 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Advanced SystemCare 9 - (.IObit.) [HKLM][64Bits] -- Advanced SystemCare_is1 =>.IObit Information Technology® O42 - Logiciel: AutoCAD 2007 - English - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-5001-0409-0002-0060B0CE6BBA} =>.Autodesk O42 - Logiciel: Autodesk DWF Viewer - (.Autodesk, Inc..) [HKLM][64Bits] -- Autodesk DWF Viewer {3F8612} =>.Autodesk, Inc. O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: COWON Media Center - jetAudio Plus VX - (.COWON.) [HKLM][64Bits] -- {DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A} =>.COWON O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM][64Bits] -- {A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8} =>.CyberLink® O42 - Logiciel: CyberLink PowerDVD 9 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8} =>.CyberLink® O42 - Logiciel: Dragonball Xenoverse - (...) [HKLM][64Bits] -- Dragonball Xenoverse_is1 O42 - Logiciel: Driver Booster 3.2 - (.IObit.) [HKLM][64Bits] -- Driver Booster_is1 =>.IObit Information Technology® O42 - Logiciel: EmbratoriaG1 - (.Embratoria.) [HKLM][64Bits] -- EmbratoriaG1 O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM][64Bits] -- {11994064-51F2-45DF-A83E-539B4BFE3F5A} =>.ESET, spol. s r.o. O42 - Logiciel: Fraps (remove only) - (...) [HKLM][64Bits] -- Fraps O42 - Logiciel: GameRanger - (.GameRanger Technologies.) [HKCU][64Bits] -- GameRanger =>.GameRanger Technologies® O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Grand Theft Auto: Episodes from Liberty City - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-111000038701} =>.Rockstar Games Inc. O42 - Logiciel: Hulk TV - (...) [HKLM][64Bits] -- Hulk TV O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall =>.IObit Information Technology® O42 - Logiciel: Java 8 Update 77 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218077F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: K-Lite Mega Codec Pack 10.0.0 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Microsoft Age of Empires II - (...) [HKLM][64Bits] -- Age of Empires 2.0 O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F} =>.Microsoft Corporation O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {67F42018-F647-4D3C-BE62-F8CB4FE2FCD5} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: MotioninJoy Gamepad tool 0.7.1001 - (.www.motioninjoy.com.) [HKLM][64Bits] -- {330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1 =>.www.motioninjoy.com O42 - Logiciel: Mozilla Firefox 45.0.2 (x86 ar) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 45.0.2 (x86 ar) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Need For Speed™ World - (.Electronic Arts.) [HKLM][64Bits] -- {7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1 =>.Electronic Arts O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} =>.NVIDIA Corporation O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc® O42 - Logiciel: Operation Flashpoint ®: Red River - (.Codemasters.) [HKLM][64Bits] -- {434D083E-7E9A-4D3A-914B-121000008100} =>.Codemasters O42 - Logiciel: Operation Flashpoint ®: Red River - (.Codemasters.) [HKLM][64Bits] -- GFWL_{434D083E-7E9A-4D3A-914B-121000008100} =>.Codemasters O42 - Logiciel: Patch 2013-2014 FIFA 08 - (.startimes.) [HKLM][64Bits] -- Patch 2013-2014 FIFA 082.0 O42 - Logiciel: PingPlotter 4.12.0 - (.Pingman Tools, LLC.) [HKLM][64Bits] -- {D59AF474-7881-48B7-9120-F23D093BC447} =>.Pingman Tools, LLC O42 - Logiciel: PrivateTunnel - (.OpenVPN Technologies.) [HKLM][64Bits] -- PrivateTunnel =>.OpenVPN Technologies O42 - Logiciel: Pro Evolution Soccer 2016 myClub - (.Konami Digital Entertainment.) [HKLM][64Bits] -- Steam App 407250 =>.Valve® O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc =>.Even Balance, Inc. O42 - Logiciel: Raptr - (.Raptr, Inc.) [HKLM][64Bits] -- Raptr =>.Raptr, Inc O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva =>.Piriform Ltd® O42 - Logiciel: Smart Defrag 4 - (.IObit.) [HKLM][64Bits] -- Smart Defrag 4_is1 =>.IObit Information Technology® O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: System Requirements Lab - (.Husdawg, LLC.) [HKLM][64Bits] -- {F89CDED6-B1F1-489F-BA44-698BF6A737C2} =>.Husdawg, LLC O42 - Logiciel: Tomb Raider: Underworld 1.0 - (...) [HKLM][64Bits] -- Tomb Raider: Underworld O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM][64Bits] -- USB Disk Security_is1 =>.Zbshareware Lab O42 - Logiciel: VLC media player 1.1.11 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinCDEmu - (.Bazis.) [HKLM][64Bits] -- WinCDEmu =>.Bazis O42 - Logiciel: WinRAR 5.00 بيتا 8 (64-بت) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (159) - 89s HKLM\SOFTWARE\Wow6432Node\ACE Compression Software HKLM\SOFTWARE\Wow6432Node\Activision HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AMD HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\Autodesk HKLM\SOFTWARE\Wow6432Node\AVG HKLM\SOFTWARE\Wow6432Node\Codemasters HKLM\SOFTWARE\Wow6432Node\COWON HKLM\SOFTWARE\Wow6432Node\Crystal Dynamics HKLM\SOFTWARE\Wow6432Node\CyberGhost HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Debug HKLM\SOFTWARE\Wow6432Node\DT Soft HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\EA SPORTS HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\ESET HKLM\SOFTWARE\Wow6432Node\FLEXlm License Manager HKLM\SOFTWARE\Wow6432Node\Fraps HKLM\SOFTWARE\Wow6432Node\FreeArc HKLM\SOFTWARE\Wow6432Node\Garena HKLM\SOFTWARE\Wow6432Node\Global IP Solutions HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\KONAMIPES6 HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Origin Games HKLM\SOFTWARE\Wow6432Node\Pingman Tools HKLM\SOFTWARE\Wow6432Node\Pivotal HKLM\SOFTWARE\Wow6432Node\PrivateTunnel HKLM\SOFTWARE\Wow6432Node\Raptr HKLM\SOFTWARE\Wow6432Node\Razer HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Rockstar Games HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Spellbound HKLM\SOFTWARE\Wow6432Node\SRS Labs HKLM\SOFTWARE\Wow6432Node\Sysinternals HKLM\SOFTWARE\Wow6432Node\THQ HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\Ubisoft HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\Windows 3.1 Migration Status HKLM\SOFTWARE\Wow6432Node\yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Activision HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AMD HKCU\SOFTWARE\Ammyy HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Autodesk HKCU\SOFTWARE\AVG HKCU\SOFTWARE\Battlefield Vietnam HKCU\SOFTWARE\Carambis HKCU\SOFTWARE\CD Projekt RED HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\City Interactive HKCU\SOFTWARE\COWON HKCU\SOFTWARE\Crystal Dynamics HKCU\SOFTWARE\Cyberlink HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\DSS HKCU\SOFTWARE\DT Soft HKCU\SOFTWARE\Eidos HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Electronic Arts HKCU\SOFTWARE\ESET HKCU\SOFTWARE\Flight Dream Studio HKCU\SOFTWARE\FLT HKCU\SOFTWARE\Fraps3 HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GameRanger HKCU\SOFTWARE\GameSpy HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GRE HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\INCAInternet HKCU\SOFTWARE\Intel HKCU\SOFTWARE\IO Interactive HKCU\SOFTWARE\IObit HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Lake HKCU\SOFTWARE\LeaderTech HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\Media Research Group HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PCSX2 HKCU\SOFTWARE\Pingman Tools HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Psiphon3 HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Raptr HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Remedy Entertainment HKCU\SOFTWARE\RLZer HKCU\SOFTWARE\RocketDock HKCU\SOFTWARE\SAMP HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SteamPopCap HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\SysProgs HKCU\SOFTWARE\System Requirements Lab HKCU\SOFTWARE\THEGFW HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\yahoo =>.Yahoo! HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contents of the Common Files folders (313) - 83s O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\AMD O43 - CFD: 09/04/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\CyberGhost 5 O43 - CFD: 11/06/2015 - [] D -- C:\Program Files\DkZ Studio O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 02/10/2015 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.® O43 - CFD: 17/06/2014 - [] D -- C:\Program Files\Gaming PC O43 - CFD: 06/12/2015 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation® O43 - CFD: 20/01/2016 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 21/09/2013 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 23/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 27/11/2014 - [] D -- C:\Program Files\MotioninJoy O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild O43 - CFD: 23/10/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 29/06/2015 - [] D -- C:\Program Files\Recuva =>.Piriform Ltd® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 24/09/2015 - [] D -- C:\Program Files\Samsung =>.Samsung Electronics CO., LTD.® O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 06/12/2015 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 13/07/2015 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 09/05/2014 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 11/07/2014 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 02/02/2016 - [] D -- C:\Program Files (x86)\AMD O43 - CFD: 01/03/2014 - [] D -- C:\Program Files (x86)\AutoCAD 2007 {038C44AAA07757419CB39107992A3A73} O43 - CFD: 01/10/2013 - [] D -- C:\Program Files (x86)\Autodesk {7660F7D11412C3D4B2B6166C01D29DF0} O43 - CFD: 06/04/2016 - [] D -- C:\Program Files (x86)\BeinConnecTVv2 O43 - CFD: 11/04/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink® O43 - CFD: 25/09/2015 - [] D -- C:\Program Files (x86)\DkZ Studio O43 - CFD: 04/03/2015 - [] D -- C:\Program Files (x86)\DkZ Update O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\Embratoria O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\Flash Player O43 - CFD: 08/04/2016 - [] D -- C:\Program Files (x86)\Garena Plus O43 - CFD: 27/03/2014 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 05/12/2015 - [] D -- C:\Program Files (x86)\Hulk TV O43 - CFD: 08/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 12/08/2014 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 10/12/2015 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 11/04/2016 - [] D -- C:\Program Files (x86)\IObit =>.IObit Information Technology® O43 - CFD: 29/03/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\JetAudio O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 26/09/2015 - [] D -- C:\Program Files (x86)\Microsoft Games O43 - CFD: 25/05/2014 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE =>.Microsoft Corporation® O43 - CFD: 01/03/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 23/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services O43 - CFD: 26/09/2013 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 12/04/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 20/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 02/05/2014 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 07/10/2014 - [] D -- C:\Program Files (x86)\OpenAL =>.Creative Labs Inc® O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\OpenVPN Technologies {0EBD24BDFBD4ADDDD2EDD27E8FB1953C} O43 - CFD: 08/04/2016 - [] D -- C:\Program Files (x86)\PingPlotter O43 - CFD: 31/10/2015 - [] D -- C:\Program Files (x86)\Plants vs Zombies Retro O43 - CFD: 31/12/2014 - [] D -- C:\Program Files (x86)\RadeonPro O43 - CFD: 06/03/2016 - [] D -- C:\Program Files (x86)\Raptr Inc =>.Raptr, Inc® O43 - CFD: 25/09/2015 - [] D -- C:\Program Files (x86)\Razer O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\RocketDock O43 - CFD: 11/04/2016 - [0] D -- C:\Program Files (x86)\Samsung O43 - CFD: 15/04/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve® O43 - CFD: 09/08/2015 - [] D -- C:\Program Files (x86)\SystemRequirementsLab O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\Ubisoft O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\USB Disk Security =>.Lanzhou Itanium Software Technology Co., Ltd.® O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\WinCDEmu O43 - CFD: 09/05/2014 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 09/05/2014 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 13/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 09/05/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 09/05/2014 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 09/02/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 24/09/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 11/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved O43 - CFD: 01/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk O43 - CFD: 09/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codemasters O43 - CFD: 21/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COWON Media Center - jetAudio O43 - CFD: 09/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DkZ Studio O43 - CFD: 11/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3 O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET O43 - CFD: 11/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps O43 - CFD: 04/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 05/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hulk TV O43 - CFD: 09/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller O43 - CFD: 21/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 29/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 21/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 26/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games O43 - CFD: 25/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace O43 - CFD: 09/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 27/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN Technologies O43 - CFD: 24/09/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PES 2016 Patch Tuga Vicio v0.1 O43 - CFD: 31/07/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PESEdit.com 2013 Patch O43 - CFD: 07/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PingPlotter O43 - CFD: 13/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plants vs Zombies Retro O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Revenants O43 - CFD: 28/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva O43 - CFD: 09/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 25/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer O43 - CFD: 11/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4 O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 05/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 12/04/2011 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 21/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 21/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinCDEmu O43 - CFD: 11/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 11/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 15/09/2015 - [] D -- C:\ProgramData\AMMYY O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Apple O43 - CFD: 20/01/2016 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [] SHD -- C:\ProgramData\Application Data O43 - CFD: 02/02/2016 - [] D -- C:\ProgramData\ATI O43 - CFD: 01/03/2014 - [] D -- C:\ProgramData\Autodesk O43 - CFD: 14/06/2014 - [] D -- C:\ProgramData\AVG O43 - CFD: 24/08/2015 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 28/09/2013 - [] D -- C:\ProgramData\Codemasters O43 - CFD: 14/06/2014 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 25/09/2013 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 05/12/2015 - [] D -- C:\ProgramData\DAEMON Tools Pro O43 - CFD: 02/05/2014 - [] D -- C:\ProgramData\DatacardService O43 - CFD: 14/07/2009 - [] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [] SHD -- C:\ProgramData\Documents O43 - CFD: 04/02/2016 - [] D -- C:\ProgramData\Electronic Arts O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\ESET O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 15/10/2015 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 15/10/2015 - [] D -- C:\ProgramData\FNP O43 - CFD: 16/05/2014 - [] D -- C:\ProgramData\Garena O43 - CFD: 15/12/2015 - [] D -- C:\ProgramData\GarenaMessenger O43 - CFD: 10/04/2016 - [0] D -- C:\ProgramData\IDM O43 - CFD: 06/04/2016 - [] D -- C:\ProgramData\IObit O43 - CFD: 13/07/2015 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 05/02/2016 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 12/09/2014 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 22/04/2015 - [] D -- C:\ProgramData\McAfee O43 - CFD: 18/02/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 06/12/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 21/09/2013 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 09/09/2015 - [] D -- C:\ProgramData\Orbit O43 - CFD: 11/04/2016 - [] D -- C:\ProgramData\ProductData O43 - CFD: 25/09/2015 - [] D -- C:\ProgramData\Razer O43 - CFD: 07/09/2015 - [] D -- C:\ProgramData\RELOADED O43 - CFD: 07/04/2016 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Samsung O43 - CFD: 19/01/2015 - [] SHD -- C:\ProgramData\SecuROM O43 - CFD: 02/08/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/07/2009 - [] SHD -- C:\ProgramData\Start Menu O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\Steam O43 - CFD: 01/01/2014 - [] D -- C:\ProgramData\Sun O43 - CFD: 12/12/2014 - [] D -- C:\ProgramData\SystemRequirementsLab O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Ubisoft O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 02/02/2016 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies O43 - CFD: 01/03/2014 - [] D -- C:\Program Files (x86)\Common Files\Autodesk Shared O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\Common Files\COWON O43 - CFD: 21/09/2013 - [] D -- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 31/07/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 28/07/2015 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 19/05/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 11/04/2016 - [] D -- C:\Program Files (x86)\Common Files\IObit O43 - CFD: 29/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 19/11/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 24/05/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 09/05/2014 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 24/09/2013 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 26/09/2013 - [] D -- C:\Users\DOS\AppData\Roaming\Adobe O43 - CFD: 28/06/2015 - [] D -- C:\Users\DOS\AppData\Roaming\AMD O43 - CFD: 15/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\AnyDesk O43 - CFD: 20/01/2016 - [] D -- C:\Users\DOS\AppData\Roaming\Apple Computer O43 - CFD: 07/08/2014 - [] D -- C:\Users\DOS\AppData\Roaming\ATI O43 - CFD: 01/10/2013 - [] D -- C:\Users\DOS\AppData\Roaming\Autodesk O43 - CFD: 14/06/2014 - [] D -- C:\Users\DOS\AppData\Roaming\AVG O43 - CFD: 18/03/2015 - [] D -- C:\Users\DOS\AppData\Roaming\BANDISOFT O43 - CFD: 06/10/2014 - [] D -- C:\Users\DOS\AppData\Roaming\Carambis O43 - CFD: 08/07/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Command & Conquer 3 Kane's Wrath O43 - CFD: 08/07/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Command & Conquer 3 Tiberium Wars O43 - CFD: 08/07/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Command and Conquer 4 O43 - CFD: 26/09/2013 - [] D -- C:\Users\DOS\AppData\Roaming\COWON O43 - CFD: 21/09/2013 - [] D -- C:\Users\DOS\AppData\Roaming\CyberLink O43 - CFD: 29/01/2016 - [] D -- C:\Users\DOS\AppData\Roaming\DAEMON Tools Pro O43 - CFD: 17/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\DMCache O43 - CFD: 07/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\Downloaded Installations O43 - CFD: 27/11/2015 - [] D -- C:\Users\DOS\AppData\Roaming\dvdcss O43 - CFD: 13/07/2015 - [] D -- C:\Users\DOS\AppData\Roaming\ESET O43 - CFD: 15/10/2015 - [] D -- C:\Users\DOS\AppData\Roaming\GameRanger O43 - CFD: 16/05/2014 - [] D -- C:\Users\DOS\AppData\Roaming\Garena O43 - CFD: 15/12/2015 - [] D -- C:\Users\DOS\AppData\Roaming\GarenaPlus O43 - CFD: 15/12/2013 - [] D -- C:\Users\DOS\AppData\Roaming\Groove Games O43 - CFD: 09/02/2010 - [] D -- C:\Users\DOS\AppData\Roaming\Identities O43 - CFD: 13/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\IDM O43 - CFD: 06/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\IObit O43 - CFD: 28/06/2015 - [] D -- C:\Users\DOS\AppData\Roaming\library_dir O43 - CFD: 21/09/2013 - [] D -- C:\Users\DOS\AppData\Roaming\Macromedia O43 - CFD: 19/05/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Mael O43 - CFD: 12/04/2011 - [0] D -- C:\Users\DOS\AppData\Roaming\Media Center Programs O43 - CFD: 03/08/2015 - [] SD -- C:\Users\DOS\AppData\Roaming\Microsoft O43 - CFD: 27/11/2014 - [] D -- C:\Users\DOS\AppData\Roaming\MotioninJoy O43 - CFD: 14/08/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Mozilla O43 - CFD: 12/07/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Opera Software O43 - CFD: 11/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\ProductData O43 - CFD: 15/09/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Psiphon3 O43 - CFD: 07/03/2016 - [] D -- C:\Users\DOS\AppData\Roaming\Raptr O43 - CFD: 07/07/2015 - [] RHD -- C:\Users\DOS\AppData\Roaming\SecuROM O43 - CFD: 08/07/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Skype O43 - CFD: 28/08/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Sun O43 - CFD: 13/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\TeamViewer O43 - CFD: 25/06/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Theta O43 - CFD: 20/06/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Ubisoft O43 - CFD: 04/02/2016 - [] D -- C:\Users\DOS\AppData\Roaming\vlc O43 - CFD: 24/09/2013 - [] D -- C:\Users\DOS\AppData\Roaming\WinRAR O43 - CFD: 01/02/2015 - [] D -- C:\Users\DOS\AppData\Roaming\xim O43 - CFD: 30/09/2013 - [] D -- C:\Users\DOS\AppData\Roaming\Yahoo! O43 - CFD: 21/09/2013 - [] D -- C:\Users\DOS\AppData\Roaming\Zbshareware Lab O43 - CFD: 18/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\ZHP O43 - CFD: 22/11/2014 - [] D -- C:\Users\DOS\AppData\Local\AAA_Internet_Publishing,_ O43 - CFD: 30/01/2016 - [] D -- C:\Users\DOS\AppData\Local\Activision O43 - CFD: 19/11/2015 - [] D -- C:\Users\DOS\AppData\Local\Adobe O43 - CFD: 13/02/2016 - [] D -- C:\Users\DOS\AppData\Local\AMD O43 - CFD: 20/01/2016 - [] D -- C:\Users\DOS\AppData\Local\Apple O43 - CFD: 20/01/2016 - [] D -- C:\Users\DOS\AppData\Local\Apple Computer O43 - CFD: 09/02/2010 - [] SHD -- C:\Users\DOS\AppData\Local\Application Data O43 - CFD: 28/03/2014 - [] D -- C:\Users\DOS\AppData\Local\ApplicationHistory O43 - CFD: 07/08/2014 - [] D -- C:\Users\DOS\AppData\Local\ATI O43 - CFD: 01/10/2013 - [] D -- C:\Users\DOS\AppData\Local\Autodesk O43 - CFD: 17/05/2015 - [] D -- C:\Users\DOS\AppData\Local\BANDAI NAMCO Games O43 - CFD: 08/03/2016 - [] D -- C:\Users\DOS\AppData\Local\CallofDuty4MW O43 - CFD: 21/09/2015 - [] D -- C:\Users\DOS\AppData\Local\CEF O43 - CFD: 17/04/2016 - [] D -- C:\Users\DOS\AppData\Local\CrashDumps O43 - CFD: 25/10/2014 - [0] D -- C:\Users\DOS\AppData\Local\Diagnostics O43 - CFD: 14/04/2016 - [] D -- C:\Users\DOS\AppData\Local\ElevatedDiagnostics O43 - CFD: 26/09/2013 - [] D -- C:\Users\DOS\AppData\Local\EMU O43 - CFD: 13/07/2015 - [] D -- C:\Users\DOS\AppData\Local\ESET O43 - CFD: 28/09/2013 - [] D -- C:\Users\DOS\AppData\Local\FLT O43 - CFD: 20/08/2015 - [] D -- C:\Users\DOS\AppData\Local\Geckofx O43 - CFD: 15/09/2015 - [] D -- C:\Users\DOS\AppData\Local\Google O43 - CFD: 29/07/2015 - [] D -- C:\Users\DOS\AppData\Local\GWX O43 - CFD: 09/02/2010 - [] SHD -- C:\Users\DOS\AppData\Local\History O43 - CFD: 31/10/2015 - [] D -- C:\Users\DOS\AppData\Local\HTML Executable O43 - CFD: 14/07/2015 - [] D -- C:\Users\DOS\AppData\Local\Macromedia O43 - CFD: 11/04/2016 - [0] D -- C:\Users\DOS\AppData\Local\Mega Limited O43 - CFD: 20/12/2015 - [] D -- C:\Users\DOS\AppData\Local\Microsoft O43 - CFD: 01/03/2014 - [] D -- C:\Users\DOS\AppData\Local\Microsoft Games O43 - CFD: 21/09/2013 - [0] D -- C:\Users\DOS\AppData\Local\Microsoft Help O43 - CFD: 08/02/2015 - [] D -- C:\Users\DOS\AppData\Local\Mozilla O43 - CFD: 12/07/2015 - [] D -- C:\Users\DOS\AppData\Local\Opera Software O43 - CFD: 19/05/2015 - [] D -- C:\Users\DOS\AppData\Local\Personal_use_only_(Darean O43 - CFD: 05/02/2016 - [] D -- C:\Users\DOS\AppData\Local\PES_2016_Selector_Tool O43 - CFD: 21/09/2013 - [] D -- C:\Users\DOS\AppData\Local\PowerDVDCinema O43 - CFD: 21/09/2013 - [] D -- C:\Users\DOS\AppData\Local\PowerDVDCox O43 - CFD: 18/04/2016 - [] D -- C:\Users\DOS\AppData\Local\PrivateTunnel O43 - CFD: 21/09/2013 - [] D -- C:\Users\DOS\AppData\Local\Programs O43 - CFD: 09/09/2015 - [] D -- C:\Users\DOS\AppData\Local\PunkBuster O43 - CFD: 23/09/2015 - [] D -- C:\Users\DOS\AppData\Local\Razer O43 - CFD: 16/11/2014 - [] D -- C:\Users\DOS\AppData\Local\Razer_Inc O43 - CFD: 23/01/2015 - [] D -- C:\Users\DOS\AppData\Local\Rockstar Games O43 - CFD: 22/11/2015 - [] D -- C:\Users\DOS\AppData\Local\Setup Integrity Check O43 - CFD: 30/01/2016 - [] D -- C:\Users\DOS\AppData\Local\SKIDROW O43 - CFD: 08/07/2015 - [] D -- C:\Users\DOS\AppData\Local\Skype O43 - CFD: 05/02/2016 - [] D -- C:\Users\DOS\AppData\Local\Steam O43 - CFD: 27/12/2015 - [] D -- C:\Users\DOS\AppData\Local\storage O43 - CFD: 17/04/2016 - [] D -- C:\Users\DOS\AppData\Local\TeamViewer O43 - CFD: 09/03/2016 - [] D -- C:\Users\DOS\AppData\Local\TeknoGods O43 - CFD: 18/04/2016 - [] D -- C:\Users\DOS\AppData\Local\Temp O43 - CFD: 09/04/2016 - [] D -- C:\Users\DOS\AppData\Local\Ubisoft Game Launcher O43 - CFD: 03/10/2014 - [] D -- C:\Users\DOS\AppData\Local\VirtualStore O43 - CFD: 30/01/2014 - [] D -- C:\Users\DOS\AppData\Local\WindowsUpdate O43 - CFD: 21/09/2013 - [0] D -- C:\Users\DOS\AppData\Local\Programs\Common O43 - CFD: 23/09/2014 - [] RD -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 04/12/2015 - [] RD -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 13/09/2015 - [0] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike O43 - CFD: 22/11/2014 - [] RD -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 9 O43 - CFD: 08/12/2013 - [0] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eidos O43 - CFD: 05/04/2016 - [] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 29/06/2015 - [0] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life O43 - CFD: 29/06/2015 - [0] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS O43 - CFD: 09/10/2013 - [] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 14/07/2009 - [] RD -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 28/07/2015 - [0] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Patch 2013-2014 FIFA 08 O43 - CFD: 28/06/2015 - [] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recuva O43 - CFD: 05/07/2014 - [0] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer O43 - CFD: 04/12/2015 - [] RD -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 05/02/2016 - [] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 11/07/2014 - [] D -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 2s O106 - SIOI: AcSignIcon [AutoCAD Digital Signatures Icon Overlay Handler] - {36A21736-36C2-4C11-8ACB-D4136F2B57BD}. (.Autodesk - AcSignIcon Module.) -- C:\Windows\SysWOW64\AcSignIcon.dll {038C44AAA07757419CB39107992A3A73} =>.Autodesk O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ ShareTools MSconfig StartupReg (3) - 1s O53 - SMSR:HKLM\...\startupreg\PDVD9LanguageShortcut [Key] . (.CyberLink Corp. - PowerDVD Language Application.) -- C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe =>.CyberLink Corp. O53 - SMSR:HKLM\...\startupreg\RemoteControl9 [Key] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe =>.CyberLink Corp. O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corporation ---\\ System Drivers List (132) - 66s O58 - SDL:2014/10/04 20:50:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\023E3335.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/20 21:38:08 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\05827204.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/01 09:39:07 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\068B00D4.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/08 09:04:30 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\10B2055D.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/17 13:38:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\16020E7E.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/01 17:28:00 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\16FB6BA9.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2015/04/14 16:58:46 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1836539B.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/16 20:00:37 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1B1501BF.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/05 07:40:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\20861DEC.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/08 20:03:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\22896974.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/22 02:04:04 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\254D0B4E.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/19 11:04:45 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\257A1DEF.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/11 13:24:09 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\288625F1.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/05 13:42:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2CA936FC.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/10 13:15:09 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2D8A1DBC.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/19 22:38:05 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\31DC51C5.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/13 07:40:44 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\34E32245.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/11 16:21:43 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\371224B2.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/03 11:11:20 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3AC03C9D.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/27 22:38:05 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4B1A42D5.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/10 17:17:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4EBF05CF.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/16 08:02:41 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4F381940.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/20 16:01:44 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\52AB66AB.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/30 22:02:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\533018E8.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/28 07:46:14 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\56BA09E4.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/05 12:02:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\59A90586.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/12 06:39:57 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5B1C032B.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2015/05/10 19:03:24 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5D492274.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/20 00:11:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5F700534.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/20 22:24:23 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\60A358C2.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/14 13:45:20 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\60CA335A.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2015/01/30 20:29:31 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\65133BE0.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2015/01/10 21:08:33 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6B316248.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/14 13:47:10 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6B3F34C1.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2015/03/21 19:50:19 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6DFC03B6.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/11 01:36:14 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6FB21236.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/01 18:26:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\70F208CA.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/22 01:46:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\71387471.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/11/07 02:13:01 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\75A274AA.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/09/29 21:23:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\77171C5F.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/12 21:18:09 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7D561351.sys [122584] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2014/10/16 23:38:09 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7DCD1558.sys [129752] =>.Malwarebytes Corporation® (.Superfluous.Orphean) O58 - SDL:2009/07/14 04:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2015/08/04 09:25:44 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [297672] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/07/15 10:13:20 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2013/07/15 10:13:20 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2012/11/08 14:41:34 A . (.ASMedia Technology Inc - ASMedia USB3 Hub Driver.) -- C:\Windows\System32\drivers\asmthub3.sys [139592] =>.MCCI Corporation® O58 - SDL:2012/11/08 14:41:34 A . (.ASMedia Technology Inc - ASMEDIA XHCI Host Controller Driver.) -- C:\Windows\System32\drivers\asmtxhci.sys [418632] =>.MCCI Corporation® O58 - SDL:2016/04/14 06:07:23 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW76.sys [104984] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2016/02/02 01:36:59 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [21516800] =>.Advanced Micro Devices, Inc. O58 - SDL:2016/02/02 01:36:59 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [483840] =>.Advanced Micro Devices, Inc. O58 - SDL:2015/12/08 08:54:37 A . (...) -- C:\Windows\System32\drivers\atksgt.sys [310728] {0100000000011053661EF0} O58 - SDL:2009/06/10 23:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2011/08/08 21:13:12 A . (.SysProgs.org - WinCDEmu virtual CDROM bus.) -- C:\Windows\System32\drivers\BazisVirtualCDBus.sys [198480] =>.Sysprogs UG (haftungsbeschraenkt)® O58 - SDL:2009/06/10 23:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 23:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 04:19:07 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 23:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 23:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 23:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2012/03/08 12:09:30 A . (.Broadcom Corporation - Broadcom NetXtreme II Diagnostic Driver.) -- C:\Windows\System32\drivers\bxdiaga.sys [88104] =>.Broadcom Corporation® O58 - SDL:2012/02/22 19:06:00 A . (.Broadcom Corporation - FCoE offload x64 FREE.) -- C:\Windows\System32\drivers\bxfcoe.sys [178216] =>.Broadcom Corporation® O58 - SDL:2012/02/22 19:33:36 A . (.Broadcom Corporation - iSCSI offload x64 FREE.) -- C:\Windows\System32\drivers\bxois.sys [539176] =>.Broadcom Corporation® O58 - SDL:2012/01/24 18:44:00 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [529448] =>.Broadcom Corporation® O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmbox64.sys [27136] =>.Nokia O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmbx64.sys [19968] =>.Nokia O58 - SDL:2009/07/14 04:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2016/03/25 02:03:01 A . (.ESET - Amon monitor.) -- C:\Windows\System32\drivers\eamonm.sys [264552] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/13 07:14:14 A . (.ESET - Devmon monitor.) -- C:\Windows\System32\drivers\edevmon.sys [251632] =>.ESET, spol. s r.o.® O58 - SDL:2016/01/30 03:34:37 A . (.ESET - ESET Helper driver.) -- C:\Windows\System32\drivers\ehdrv.sys [186784] =>.ESET, spol. s r.o.® O58 - SDL:2016/01/30 03:34:37 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\Windows\System32\drivers\ekbdflt.sys [142976] =>.ESET, spol. s r.o.® O58 - SDL:2009/07/14 04:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2016/03/25 02:03:02 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfw.sys [198096] =>.ESET, spol. s r.o.® O58 - SDL:2016/03/25 02:03:02 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [53384] =>.ESET, spol. s r.o.® O58 - SDL:2016/03/25 02:03:02 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfwwfp.sys [84800] =>.ESET, spol. s r.o.® O58 - SDL:2012/07/24 22:58:00 A . (.Etron Technology Inc - Etron eXtensible Hub Driver..) -- C:\Windows\System32\drivers\EtronHub3.sys [65152] =>.Etron Technology Inc O58 - SDL:2012/07/24 22:58:00 A . (.Etron Technology Inc - Etron Enhance USB Mass Storage Driver..) -- C:\Windows\System32\drivers\EtronSTOR.sys [32512] =>.Etron Technology Inc O58 - SDL:2012/07/24 22:58:00 A . (.Etron Technology Inc - Etron eXtensible Host Controller Driver..) -- C:\Windows\System32\drivers\EtronXHCI.sys [88832] =>.Etron Technology Inc O58 - SDL:2012/03/26 07:24:02 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3341904] =>.Broadcom Corporation® O58 - SDL:2015/12/04 06:38:09 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [109568] =>.Huawei Technologies Co., Ltd. O58 - SDL:2016/01/15 02:21:46 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [15744] =>.Huawei Technologies Co., Ltd. O58 - SDL:2009/06/10 23:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2010/11/21 06:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2013/07/15 10:13:20 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2015/06/12 05:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [197616] =>.Tonec Inc.® O58 - SDL:2012/11/15 03:57:04 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [10629408] =>.Intel Corporation O58 - SDL:2009/07/14 04:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2012/12/21 08:44:10 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [366216] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2012/12/21 08:44:10 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [786056] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2015/12/08 08:51:57 A . (...) -- C:\Windows\System32\drivers\lirsgt.sys [43168] =>.Tages SA® O58 - SDL:2009/07/14 04:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2012/05/12 13:31:00 A . (.MotioninJoy - MotioninJoy DS3 driver.) -- C:\Windows\System32\drivers\MijXfilt.sys [121416] =>.MotionInjoy O58 - SDL:2009/07/14 04:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2011/10/25 20:57:38 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\nusb3hub.sys [96768] =>.Renesas Electronics Corporation O58 - SDL:2011/10/25 20:57:38 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [213504] =>.Renesas Electronics Corporation O58 - SDL:2013/07/15 10:13:20 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2013/07/15 10:13:20 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2013/09/30 19:18:55 A . (.ZTE - CDC ACM and OBEX Class Driver.) -- C:\Windows\System32\drivers\orange_zte_cdc_acm.sys [77824] =>.ZTE O58 - SDL:2013/09/30 19:18:55 A . (.ZTE - Configuration Policy Driver.) -- C:\Windows\System32\drivers\orange_zte_cpo.sys [14336] =>.ZTE O58 - SDL:2015/11/10 21:15:14 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\ptun0901.sys [27136] =>.The OpenVPN Project O58 - SDL:2009/11/16 17:45:21 A . (.Intel Corporation - Intel(R) 5000 Series Chipsets Integrated De.) -- C:\Windows\System32\drivers\qd162x64.sys [40144] =>.Intel Corporation® O58 - SDL:2009/11/16 17:45:24 A . (.Intel Corporation - Intel(R) 5000 Series Chipsets Integrated De.) -- C:\Windows\System32\drivers\qd262x64.sys [42192] =>.Intel Corporation® O58 - SDL:2009/07/14 04:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2016/03/18 02:50:47 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [1027840] =>.Realtek Semiconductor Corp® O58 - SDL:2016/04/06 14:34:06 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4803840] =>.Realtek Semiconductor Corp® O58 - SDL:2009/06/10 23:37:19 A . (...) -- C:\Windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2009/07/14 03:00:40 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 04:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2014/06/04 15:17:30 A . (.IObit - SmartDefrag Driver.) -- C:\Windows\System32\drivers\SmartDefragDriver.sys [21184] =>.IObit Information Technology® O58 - SDL:2009/07/14 04:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2013/08/22 15:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [40664] =>.OpenVPN Technologies, Inc.® O58 - SDL:2009/09/16 07:02:42 A . (.Tunngle.net - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901t.sys [31232] =>.Tunngle.net O58 - SDL:2016/04/11 05:21:01 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [24688] =>.Adlice® O58 - SDL:2015/06/17 18:04:24 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerfltjx64.sys [9216] =>.Nokia O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerfltx64.sys [9216] =>.Nokia O58 - SDL:2009/07/14 04:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 04:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2012/02/22 17:27:02 A . (.Bigfoot Networks, Inc. - Bigfoot Networks Killer(TM) PCI-E Gaming Ad.) -- C:\Windows\System32\drivers\Xeno7x64.sys [157288] =>.Bigfoot Networks, Inc.® ---\\ Last modified or created user files (4) - 102s O61 - LFC: 2016/04/15 01:52:06 A . (..) -- C:\Users\DOS\Templates\Temp.exe [0] O61 - LFC: 2016/04/15 01:52:06 A . (..) -- C:\Users\DOS\Application Data\Microsoft\Windows\Templates\Temp.exe [0] O61 - LFC: 2016/04/15 01:52:06 A . (..) -- C:\Users\DOS\AppData\Roaming\Microsoft\Windows\Templates\Temp.exe [0] O61 - LFC: 2016/04/17 18:46:04 A . (..) -- C:\Users\DOS\AppData\Local\ATI\ACE\Manifest.Bin [30042] ---\\ File Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.scr> [HKCU\..\open\Command] (.Microsoft Corporation - Notepad.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation ---\\ Start Menu Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Search Browser Infection (2) - 45s O69 - SBI: SearchScopes [HKCU] {012E1000-F331-11DB-8314-0800200C9A66} [DefaultScope] - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Search Svchost Services (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2608128] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\system32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Firewall Active Exception List (2) - 6s O87 - FAEL: "TCP Query User{B8B8FC0C-D465-4835-8189-16DCF5852A11}E:\downloads\compressed\destv1.7.1\mainplug.ocx" [In-None-P6-TRUE] .(...) -- E:\downloads\compressed\destv1.7.1\mainplug.ocx O87 - FAEL: "UDP Query User{F13E72E7-542C-4DD9-8F99-C4D6F7131A5C}E:\downloads\compressed\destv1.7.1\mainplug.ocx" [In-None-P17-TRUE] .(...) -- E:\downloads\compressed\destv1.7.1\mainplug.ocx ---\\ Additional Scan (O88) (1) - 0s ~ No malicious or unnecessary items found. ---\\ Summary of the elements found (1) - 0s http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Orphean ~ End of the scan, 81096 items in 00h09mn50s (1104)(0)