~ ZHPDiag v2016.4.18.88 By Nicolas Coolman (2016/04/18) ~ Run by Dany (Administrator) (2016/04/18 12:12:53) ~ Web: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\Dany\Desktop\ZHPDiag.txt ~ Report: C:\Users\Dany\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 10240) ---\\ Internet Browsers (2) - 0s GCIE: Google Chrome v49.0.2623.112 MSIE: Internet Explorer v11.0.10240.16766 ---\\ Windows Product Information (3) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ System protection software (3) - 0s Avira Antivirus v15.0.16.282 Malwarebytes Anti-Malware version 2.2.1.1043 Windows Defender (Deactivate) ---\\ Surveillance software (1) - 1s Adobe Flash Player 21 NPAPI ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8324.58 MB (76% free) System Restore: Activé (Enable) System drive C: has 74 GB () free of 243 GB ---\\ Connection to the system mode (3) - 0s ~ Computer Name: DANY-PC ~ User Name: Dany ~ Logged in as Administrator ---\\ Enumeration of the disk units (1) - 0s ~ Drive C: has 74 GB free of 243 GB (System) ---\\ State of the Windows Security Center (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Search Generic System Files (24) - 0s [MD5.D2EAEC106F183572317AF7D68E381063] - 25/11/2015 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4532304] =>.Microsoft Windows® [MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 05/08/2015 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [290312] =>.Microsoft Windows Publisher® [MD5.71EF55BA035CD459D8230501D067D2F8] - 31/01/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [2849792] =>.Microsoft Corporation [MD5.DA32F9BFA7851AD4247353EA03755DE6] - 05/01/2016 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [578560] =>.Microsoft Corporation [MD5.ECB1943967424DFB96E03F6A098434EF] - 05/08/2015 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation [MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [680256] =>.Microsoft Windows® [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] =>.Microsoft Windows® [MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] =>.Microsoft Windows® [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation [MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation [MD5.55D5C5B0B9F9B65BD452136A384E6EAC] - 23/02/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation [MD5.27E248CD861AFED4DF0C48F4C853E7F0] - 25/11/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] =>.Microsoft Corporation [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] =>.Microsoft Corporation [MD5.F0D791348AD254360CC3C3E501CCB745] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [273408] =>.Microsoft Corporation [MD5.BA8DC96D1DD7785EB0589CB1777208B7] - 01/12/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2115936] =>.Microsoft Windows® [MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation [MD5.2521520142F7853E39028AE6BD66E072] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation [MD5.A32AED8C644734B283A7C9D08D76064D] - 10/07/2015 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] =>.Microsoft Corporation [MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116064] =>.Microsoft Windows® [MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (25) - 1s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe =>.AMD O23 - Service: ACP User Service (amdacpusrsvc) . (.Advanced Micro Devices - AMD ACP Binaries.) - C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe =>.Advanced Micro Devices O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe =>.ASUSTeK Computer Inc.® O23 - Service: Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (...) - C:\Program Files (x86)\BlueStacks\HD-Service.exe (.not file.) O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (...) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (.not file.) O23 - Service: DTSAudioSvc (DTSAudioSvc) . (.DTS, Inc - DTS Audio Service.) - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe =>.DTS, Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (...) - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe (.not file.) O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel(R) Rapid Storage Technology® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: SoftEther VPN Client (SEVPNCLIENT) . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) - C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe =>.SoftEther K.K.® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD® O23 - Service: TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 11.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® O23 - Service: (Update service) . (.Popcorn Time - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time O23 - Service: ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros ---\\ Services not Microsoft (SR=Run, SS=Stop) (28) - 9s SR - Auto [05/04/2016] [ 260112] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.AMD SR - Auto [21/03/2016] [ 121856] ACP User Service (amdacpusrsvc) . (.Advanced Micro Devices.) - C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe =>.Advanced Micro Devices SS - Auto [18/03/2016] [ 955736] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [18/03/2016] [ 466504] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [18/03/2016] [ 466504] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG® SS - Auto [18/03/2016] [ 1424880] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [07/10/2015] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [07/05/2013] [ 936728] ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe =>.ASUSTeK Computer Inc.® SS - Auto [22/10/2014] [ 164656] Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Disabl [21/05/2014] [ 385808] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe =>.Bluestack Systems, Inc.® SR - Auto [07/10/2013] [ 240576] DTSAudioSvc (DTSAudioSvc) . (.DTS, Inc.) - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe =>.DTS, Inc.® SS - Auto [09/04/2016] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [09/04/2016] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Auto [04/11/2015] [ 19440] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel(R) Rapid Storage Technology® SS - Demand [13/05/2014] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service® SS - Auto [10/11/2014] [ 158496] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SS - Auto [10/11/2014] [ 409376] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SS - Disabl [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SS - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [18/01/2016] [ 5250280] SoftEther VPN Client (SEVPNCLIENT) . (.SoftEther VPN Project at University of Tsukuba, Japan.) - C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe =>.SoftEther K.K.® SR - Auto [29/01/2016] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [13/10/2014] [ 743688] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD® SS - Demand [31/03/2016] [ 835664] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SR - Auto [02/03/2016] [ 6942480] TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® SR - Auto [17/07/2015] [ 339968] (Update service) . (.Popcorn Time.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time SR - Auto [28/09/2014] [ 323584] ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros ---\\ Task Planned Automatically (21) - 5s [MD5.00000000000000000000000000000000] [APT] [TaskName] (...) -- Task To Run (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.4B7C7D77FF8863DE05F5B673D0D1BCB5] [APT] [AMD Updater] (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [10334408] (.Activate.) =>.Advanced Micro Devices, Inc.® [MD5.EC7BF707FBE2C766A567E47515D7F746] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6667992] (.Activate.) =>.Piriform Ltd® [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc® [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc® [MD5.C457854F0B883D9C8574B868C1DB4826] [APT] [GyazoUpdateTaskMachine] (.(c) Nota Inc. All rights reserved..) -- C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [4694717] (.Activate.) [MD5.C457854F0B883D9C8574B868C1DB4826] [APT] [GyazoUpdateTaskMachineDaily] (.(c) Nota Inc. All rights reserved..) -- C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [4694717] (.Activate.) [MD5.8A3A1B1D58C43A45517321BC8C650752] [APT] [klcp_update] (...) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1175040] (.Activate.) [MD5.AE8ED86C45C1947E7DB964DA39AE4845] [APT] [SamsungMagician] (.Samsung Electronics..) -- C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [4838816] (.Activate.) =>.Samsung Electronics Co., Ltd.® [MD5.00000000000000000000000000000000] [APT] [{C1399141-95EC-4C58-9A65-2DE484EF7765}] (...) -- C:\Program Files (x86)\Portal\Portal.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.293B50CE76DE28B513B9FF0B58782513] [APT] [UAC pass\] (...) -- C:\Program Files (x86)\VPNetwork LLC\TorGuard\TorGuardDesktopQt.exe [946312] (.Activate.) {00A4658A922A1A96F2F67CEBE86FB42483} O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1076] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1080] =>.Google Inc® O39 - APT: AMD Updater - (.Advanced Micro Devices, Inc..) -- C:\WINDOWS\System32\Tasks\AMD Updater [3764] =>.Advanced Micro Devices, Inc.® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2236] =>.Piriform Ltd® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3368] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3592] =>.Google Inc® O39 - APT: GyazoUpdateTaskMachine - (.(c) Nota Inc. All rights reserved..) -- C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachine [2508] O39 - APT: GyazoUpdateTaskMachineDaily - (.(c) Nota Inc. All rights reserved..) -- C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachineDaily [2648] O39 - APT: klcp_update - (...) -- C:\WINDOWS\System32\Tasks\klcp_update [3008] O39 - APT: SamsungMagician - (.Samsung Electronics..) -- C:\WINDOWS\System32\Tasks\SamsungMagician [2580] =>.Samsung Electronics Co., Ltd.® ---\\ Process running (34) - 1s [MD5.D2AC5BEE06DAD97FBDB9E0D743C800A4] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\System32\atiesrxx.exe [260112] [PID.1312] {330000002D4E7AEC99B0F05F7300000000002D} =>.AMD [MD5.BBF8F831C7720DD5135D8C4C8325187A] - (...) -- C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728] [PID.1536] =>.ASUSTeK Computer Inc.® [MD5.549F291D09EC7AFF0170C66E56616EAF] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\System32\atieclxx.exe [573456] [PID.1616] {330000002D4E7AEC99B0F05F7300000000002D} =>.AMD [MD5.98C06275DB53A1E70AB8CB94013B20D4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466504] [PID.2340] =>.Avira Operations GmbH & Co. KG® [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2448] =>.Apple Inc.® [MD5.98C06275DB53A1E70AB8CB94013B20D4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466504] [PID.2456] =>.Avira Operations GmbH & Co. KG® [MD5.6688B6F74C360CBC366B7AF948D9084D] - (.DTS, Inc - DTS Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [240576] [PID.2464] =>.DTS, Inc.® [MD5.2D564BB1C4559A517B390A031955714D] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104] [PID.2476] =>.Apple Inc.® [MD5.BF94CD46764019A080DE9B47C6DDEFED] - (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856] [PID.2548] =>.Advanced Micro Devices [MD5.3E98CE04689597C76B3EF4D3D0323836] - (.Skype Technologies - Skype Updater Service.) -- C:\Program Files (x86)\Skype\Updater\Updater.exe [327296] [PID.2864] =>.Skype Software Sarl® [MD5.E9BDC3C1B67723856895626A192E40B6] - (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe [5250280] [PID.2880] =>.SoftEther K.K.® [MD5.BD93D1A0E0A7A96BEA4585F17C9B3307] - (.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe [339968] [PID.3080] =>.Popcorn Time [MD5.86B8B1F5C1189D68B07666784BE882FE] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584] [PID.3104] =>.Atheros [MD5.9DA3B55B17B54789AFB8C657D4ACE4D7] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688] [PID.3240] =>.DEVGURU CO LTD® [MD5.E9D702580349582413503A28F8329B32] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480] [PID.3296] =>.TeamViewer® [MD5.10578A03586B8727D4B549351CAF4174] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [1036576] [PID.1892] =>.Avira Operations GmbH & Co. KG® [MD5.293B50CE76DE28B513B9FF0B58782513] - (...) -- C:\Program Files (x86)\VPNetwork LLC\TorGuard\TorGuardDesktopQt.exe [946312] [PID.6276] {00A4658A922A1A96F2F67CEBE86FB42483} [MD5.A15FF7FFA54109281D5742D396271DFC] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056] [PID.6960] =>.Realtek Semiconductor Corp® [MD5.813006C133576159EBB6DE770D55267D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] [PID.7108] =>.Realtek Semiconductor Corp® [MD5.66AF3CBBF3C0F747E7BF5ED1B5A61718] - (.The OpenVPN Project - OpenVPN Daemon.) -- C:\Program Files (x86)\VPNetwork LLC\TorGuard\openvpn.exe [695296] [PID.7164] =>.The OpenVPN Project [MD5.FE376432645847404698E64D093597D6] - (.Copyright (C) 2013 - .) -- C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe [817440] [PID.4584] =>.Plantronics® [MD5.E41245791F9B6F4022F8C46154C358E8] - (.Advanced Micro Devices, Inc. - Radeon Settings: Host Application.) -- C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [5006536] [PID.3892] =>.Advanced Micro Devices, Inc.® [MD5.7F8AB0D8E13B8B815F792E3454BE2F32] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3919928] [PID.6128] =>.Tonec Inc. [MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275608] [PID.6460] =>.Tonec Inc.® [MD5.44A9229022A519ED45294A1934C05EEC] - (.Flux Software LLC - f.lux.) -- C:\Users\Dany\AppData\Local\FluxSoftware\Flux\flux.exe [1017224] [PID.6248] =>.Michael Herf® [MD5.1F6661738127C4EE4E7C647914002C0B] - (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe [53430456] [PID.6652] =>.Hammer & Chisel Inc.® [MD5.1F6661738127C4EE4E7C647914002C0B] - (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe [53430456] [PID.6812] =>.Hammer & Chisel Inc.® [MD5.294137F33E5B067786F3C1FFDC1EB229] - (.SteelSeries ApS - SteelSeries Engine 3 Core.) -- C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe [13425904] [PID.7332] =>.SteelSeries ApS® [MD5.1CE11C53E562D5F7EAFCF47E0E696516] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [807392] [PID.7348] =>.Avira Operations GmbH & Co. KG® [MD5.2555A094409BD20DAB7A97A5A539F21C] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216] [PID.7600] =>.Intel Corporation - Software and Firmware Products® [MD5.C9B67BCB8E384064A8C2263740B0C437] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480] [PID.7820] =>.Oracle America, Inc.® [MD5.AE8ED86C45C1947E7DB964DA39AE4845] - (.Samsung Electronics. - Samsung Magician Application.) -- C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [4838816] [PID.7296] =>.Samsung Electronics Co., Ltd.® [MD5.1F6661738127C4EE4E7C647914002C0B] - (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe [53430456] [PID.7492] =>.Hammer & Chisel Inc.® [MD5.E7996990C46DB265792376A8E2695529] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Dany\Downloads\ZHPDiag3.exe [2190336] [PID.6956] =>.Nicolas Coolman ---\\ Google Chrome, Start,Search,Extensions (12) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://plus.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.amazon.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (3) - 0s P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation® P2 - EXT FILE: (...) -- C:\Users\Dany\AppData\Roaming\Mozilla\Firefox\Profiles\nJrzLImL.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer Extensions, Start, Search (18) - 0s R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKEY_USERS\S-1-5-21-2107275447-3332583315-1831846903-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer, Proxy Management (7) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 62.23.15.92:3128 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (126) ---\\ Browser Helper Object (BHO) (2) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® ---\\ Auto loading programs from Registry and folders (25) - 1s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [RtHDVBg_DTS] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [GamecomSound] . (.Copyright (C) 2013 - .) -- C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe =>.Plantronics® O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation O4 - HKLM\..\Run: [StartCN] . (.Advanced Micro Devices, Inc. - Radeon Settings: Host Application.) -- C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc.® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\Dany\AppData\Local\FluxSoftware\Flux\flux.exe =>.Michael Herf® O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Dany\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB® O4 - HKCU\..\Run: [iFunBox] . (.i-Funbox.com - File & App Manager for iPhone/iPad.) -- C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe =>.i-Funbox.com O4 - HKCU\..\Run: [Discord] . (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe =>.Hammer & Chisel Inc.® O4 - HKCU\..\Run: [Viscosity] C:\Program Files\Viscosity\Viscosity.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe =>.Intel Corporation - Software and Firmware Products® O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\policies\Explorer\Run: [BtvStack] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (.not file.) O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\Dany\AppData\Local\FluxSoftware\Flux\flux.exe =>.Michael Herf® O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Dany\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB® O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [iFunBox] . (.i-Funbox.com - File & App Manager for iPhone/iPad.) -- C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe =>.i-Funbox.com O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [Discord] . (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe =>.Hammer & Chisel Inc.® O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [Viscosity] C:\Program Files\Viscosity\Viscosity.exe (.not file.) ---\\ Global shortcuts Startup (78) - 3s O4 - GS\Desktop [Administrator]: Crusader Kings 2.lnk . (.Paradox Interactive - CK2.) C:\Program Files (x86)\Crusader Kings II\CK2game.exe =>.Paradox Interactive O4 - GS\Desktop [Administrator]: Discord.lnk . (.GitHub - Update.) C:\Users\Dany\AppData\Local\Discord\Update.exe =>.Hammer & Chisel Inc.® O4 - GS\Desktop [Administrator]: DroidCamApp.lnk . (...) C:\Program Files (x86)\DroidCam\DroidCamApp.exe =>.DEV47 APPS® O4 - GS\Desktop [Administrator]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe O4 - GS\Desktop [Administrator]: MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7} O4 - GS\Desktop [Administrator]: MSI Afterburner.lnk . (.Copyright © 2009-2015 Alexey Nicolaychuk aka Unwinder - MSIAfterburner.) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.® O4 - GS\Desktop [Administrator]: Multi-MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7} O4 - GS\Desktop [Administrator]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe =>.Open Source Developer, Hugh Bailey® O4 - GS\Desktop [Administrator]: Portal.bat.lnk . (...) C:\Program Files (x86)\Source Unpack 2.2new\Portal.bat O4 - GS\Desktop [Administrator]: RS Somnífero.lnk . (.Rico Software - .) C:\Program Files (x86)\Rico Software\RS Somnífero\somnifero.exe =>.Rico Software O4 - GS\Desktop [Administrator]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Desktop [Administrator]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB® O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Dany\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Gyazo GIF.lnk . (.Nota Inc. - Gyazo GIF.) C:\Program Files (x86)\Gyazo\GyazoGIF.exe =>.Nota Inc.® O4 - GS\Quicklaunch [Administrator]: Gyazo.lnk . (.Nota Inc. - Gyazo: Screen Uploader.) C:\Program Files (x86)\Gyazo\Gyazowin.exe =>.Nota Inc.® O4 - GS\Quicklaunch [Administrator]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Dany]: Crusader Kings 2.lnk . (.Paradox Interactive - CK2.) C:\Program Files (x86)\Crusader Kings II\CK2game.exe =>.Paradox Interactive O4 - GS\Desktop [Dany]: Discord.lnk . (.GitHub - Update.) C:\Users\Dany\AppData\Local\Discord\Update.exe =>.Hammer & Chisel Inc.® O4 - GS\Desktop [Dany]: DroidCamApp.lnk . (...) C:\Program Files (x86)\DroidCam\DroidCamApp.exe =>.DEV47 APPS® O4 - GS\Desktop [Dany]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe O4 - GS\Desktop [Dany]: MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7} O4 - GS\Desktop [Dany]: MSI Afterburner.lnk . (.Copyright © 2009-2015 Alexey Nicolaychuk aka Unwinder - MSIAfterburner.) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.® O4 - GS\Desktop [Dany]: Multi-MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7} O4 - GS\Desktop [Dany]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe =>.Open Source Developer, Hugh Bailey® O4 - GS\Desktop [Dany]: Portal.bat.lnk . (...) C:\Program Files (x86)\Source Unpack 2.2new\Portal.bat O4 - GS\Desktop [Dany]: RS Somnífero.lnk . (.Rico Software - .) C:\Program Files (x86)\Rico Software\RS Somnífero\somnifero.exe =>.Rico Software O4 - GS\Desktop [Dany]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Desktop [Dany]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB® O4 - GS\Desktop [Dany]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Dany\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Dany]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Dany]: Gyazo GIF.lnk . (.Nota Inc. - Gyazo GIF.) C:\Program Files (x86)\Gyazo\GyazoGIF.exe =>.Nota Inc.® O4 - GS\Quicklaunch [Dany]: Gyazo.lnk . (.Nota Inc. - Gyazo: Screen Uploader.) C:\Program Files (x86)\Gyazo\Gyazowin.exe =>.Nota Inc.® O4 - GS\Quicklaunch [Dany]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe O4 - GS\sendTo [Dany]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Dany]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [Dany]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Guest]: Crusader Kings 2.lnk . (.Paradox Interactive - CK2.) C:\Program Files (x86)\Crusader Kings II\CK2game.exe =>.Paradox Interactive O4 - GS\Desktop [Guest]: Discord.lnk . (.GitHub - Update.) C:\Users\Dany\AppData\Local\Discord\Update.exe =>.Hammer & Chisel Inc.® O4 - GS\Desktop [Guest]: DroidCamApp.lnk . (...) C:\Program Files (x86)\DroidCam\DroidCamApp.exe =>.DEV47 APPS® O4 - GS\Desktop [Guest]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe O4 - GS\Desktop [Guest]: MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7} O4 - GS\Desktop [Guest]: MSI Afterburner.lnk . (.Copyright © 2009-2015 Alexey Nicolaychuk aka Unwinder - MSIAfterburner.) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.® O4 - GS\Desktop [Guest]: Multi-MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7} O4 - GS\Desktop [Guest]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe =>.Open Source Developer, Hugh Bailey® O4 - GS\Desktop [Guest]: Portal.bat.lnk . (...) C:\Program Files (x86)\Source Unpack 2.2new\Portal.bat O4 - GS\Desktop [Guest]: RS Somnífero.lnk . (.Rico Software - .) C:\Program Files (x86)\Rico Software\RS Somnífero\somnifero.exe =>.Rico Software O4 - GS\Desktop [Guest]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Desktop [Guest]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB® O4 - GS\Desktop [Guest]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Dany\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Gyazo GIF.lnk . (.Nota Inc. - Gyazo GIF.) C:\Program Files (x86)\Gyazo\GyazoGIF.exe =>.Nota Inc.® O4 - GS\Quicklaunch [Guest]: Gyazo.lnk . (.Nota Inc. - Gyazo: Screen Uploader.) C:\Program Files (x86)\Gyazo\Gyazowin.exe =>.Nota Inc.® O4 - GS\Quicklaunch [Guest]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Guest]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - EpicGamesLauncher.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe =>.Epic Games Inc.® O4 - GS\CommonDesktop [Public]: Hand of Fate.lnk . (...) C:\GOG Games\Hand of Fate\Hand of Fate.exe O4 - GS\CommonDesktop [Public]: Hearthstone.lnk . (.Blizzard Entertainment - Hearthstone Beta Launcher.) C:\Program Files (x86)\Hearthstone\Hearthstone Beta Launcher.exe =>.Blizzard Entertainment, Inc.® O4 - GS\CommonDesktop [Public]: iFunbox.lnk . (.i-Funbox.com - File & App Manager for iPhone/iPad.) C:\Program Files (x86)\i-Funbox DevTeam\iFunBox.exe =>.i-Funbox.com O4 - GS\CommonDesktop [Public]: Layers of Fear.lnk . (...) C:\GOG Games\Layers of Fear\Layers Of Fear.exe O4 - GS\CommonDesktop [Public]: ManiaPlanet.lnk . (...) C:\Program Files (x86)\ManiaPlanet\ManiaPlanetLauncher.exe O4 - GS\CommonDesktop [Public]: MultiBit HD.lnk . (...) C:\Program Files (x86)\MultiBit HD\multibit-hd.exe O4 - GS\CommonDesktop [Public]: SoftEther VPN Client Manager.lnk . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) C:\Program Files\SoftEther VPN Client\vpncmgr_x64.exe =>.SoftEther K.K.® O4 - GS\CommonDesktop [Public]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH® O4 - GS\CommonDesktop [Public]: TeamViewer 11.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\CommonDesktop [Public]: TMAC v6.lnk . (.Technitium - Technitium MAC Address Changer.) C:\Program Files (x86)\Technitium\TMACv6.0\TMAC.exe =>.Technitium O4 - GS\Startup [Public]: SteelSeries Engine 3.lnk . (.SteelSeries ApS - SteelSeries Engine 3 Core.) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe =>.SteelSeries ApS® O4 - GS\Programs [Public]: AMD Radeon Settings.lnk . (.Advanced Micro Devices, Inc. - .) C:\Program Files (x86)\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc. O4 - GS\Programs [Public]: CNext.lnk . (...) C:\Program Files (x86)\AMD\CNext\CNext\cnext.exe O4 - GS\Programs [Public]: Livestreamer Twitch GUI.lnk . (...) C:\Users\Dany\Desktop\livestreamer-twitch-gui\livestreamer-twitch-gui.exe O4 - GS\Programs [Public]: lol.launcher.admin.lnk . (...) C:\Riot Games\League of Legends\lol.launcher.admin.exe =>.Riot Games, Inc.® O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® ---\\ Lop.com/Domain Hijackers (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.24.0.1 10.24.0.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{21110b57-acd2-45df-bd40-7c2773110c8d}: NameServer = 4.2.2.2,4.2.2.3 O17 - HKLM\System\CCS\Services\Tcpip\..\{21110b57-acd2-45df-bd40-7c2773110c8d}: DhcpNameServer = 95.85.9.86 185.83.217.248 O17 - HKLM\System\CCS\Services\Tcpip\..\{4df5de9f-bfd0-4c8b-ae4e-af7e1cfa0fff}: DhcpNameServer = 8.8.8.8 8.8.4.4 O17 - HKLM\System\CCS\Services\Tcpip\..\{d02bba65-b738-4474-8d17-fed25e36bdb5}: DhcpNameServer = 10.24.0.1 10.24.0.1 ---\\ Extra protocols (23) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\WINDOWS\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\WINDOWS\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (155) - 11s O42 - Logiciel: .NET Reflector Desktop - (.Red Gate Software Ltd.) [HKLM][64Bits] -- {348E3E12-2F11-4AA4-8694-88222F3440F3} =>.Red Gate Software Ltd O42 - Logiciel: 4K Video Downloader 3.7 - (.Open Media LLC.) [HKLM][64Bits] -- 4K Video Downloader_is1 =>.Open Media LLC O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F} =>.Apple Inc. O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {691F30EB-9009-475A-B8A9-E1BF39598FD5} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {3540181E-340A-4E7A-B409-31663472B2F7} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} =>.Apple Inc. O42 - Logiciel: Asmedia ASM106x SATA Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {DF6C3726-7E53-4772-9763-E9F147769F51} =>.Asmedia Technology O42 - Logiciel: AutoIt v3.3.12.0 - (.AutoIt Team.) [HKLM][64Bits] -- AutoItv3 =>.AutoIt Team O42 - Logiciel: Avira Antivirus v15.0.16.282 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira v1.1.25.25607 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {9480d4af-12b9-4e56-8034-4031ef6ab39d} =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira v1.1.25.25607 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {D2763B4E-5BF4-468B-BB00-9B3B121E0FB2} =>.Avira Operations GmbH & Co. KG O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.® O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks App Player =>.BlueStack Systems, Inc. O42 - Logiciel: BlueStacks App Player 0.9.24.5311 Superuser BSEasy - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {9926ADE0-ABB3-4513-B31A-F1B5EBA14F73} =>.BlueStack Systems, Inc. O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc. O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 =>.Valve® O42 - Logiciel: Discord - (.Hammer & Chisel, Inc..) [HKCU][64Bits] -- Discord =>.Hammer & Chisel Inc.® O42 - Logiciel: DriversCloud.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {B3F21810-C58E-4AE1-BFBA-8327721C9F8A} =>.CybelSoft O42 - Logiciel: Epic Games Launcher - (.Epic Games, Inc..) [HKLM][64Bits] -- {4620A9CA-A0D7-4F15-BA89-4545B5372345} =>.Epic Games, Inc. O42 - Logiciel: Epic Games Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {66C5838F-B854-4A55-89E6-A6138747A4DF} =>.Epic Games, Inc. O42 - Logiciel: f.lux - (...) [HKCU][64Bits] -- Flux O42 - Logiciel: FreeMouseAutoClicker 3.8.1 - (.Advanced Mouse Auto Clicker ltd..) [HKLM][64Bits] -- {292F00C5-25EF-4FBE-9873-13EF1F69DEED}_is1 =>.Advanced Mouse Auto Clicker ltd. O42 - Logiciel: Git version 2.6.4 - (.The Git Development Community.) [HKLM][64Bits] -- Git_is1 =>.The Git Development Community O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Gyazo 3.2.1 - (.Nota Inc..) [HKLM][64Bits] -- {6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1 =>.Nota Inc.® O42 - Logiciel: Hand of Fate - (.GOG.com.) [HKLM][64Bits] -- 1424100574_is1 =>.GOG Limited® O42 - Logiciel: Hand of Fate - Wildcards - (.GOG.com.) [HKLM][64Bits] -- Hand of Fate: Wildcards_is1 =>.GOG Limited® O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone =>.Blizzard Entertainment, Inc.® O42 - Logiciel: HHD Software Hex Editor Neo 6.05 - (.HHD Software, Ltd..) [HKCU][64Bits] -- {8EB85C0E-DE7D-4A53-BD66-708B8F2C80B0} =>.HHD Software Ltd.® O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {C7090522-1436-4FD6-9449-B06A665E2537} =>.Intel Corporation O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] -- {5ae11e9e-c192-4030-97b5-2f83e0edf570} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {5F6F9FDB-4B94-4912-8966-77356C01303C} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {74541060-2DB1-4E8C-B239-3A78EA50F2F6} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {CA07FCB1-DAE9-4F8A-8698-F9C30D1E375F} =>.Intel Corporation O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {43A76F9B-48F1-4E0D-A9B4-8E4F6C42E28C} =>.Intel Corporation O42 - Logiciel: Intel(R) Network Connections 20.7.67.0 - (.Intel.) [HKLM][64Bits] -- {0F2D8891-8089-499F-ACB1-58DB79C63483} =>.Intel O42 - Logiciel: Intel(R) Network Connections 20.7.67.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX =>.Intel O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {B66F70B4-34E5-429A-9F55-7129E0833A45} =>.Intel Corporation O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} =>.Intel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Java 8 Update 77 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218077F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Java SE Development Kit 8 Update 25 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180250} =>.Oracle Corporation O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.® O42 - Logiciel: Layers of Fear - (.GOG.com.) [HKLM][64Bits] -- 1455107123_is1 =>.GOG Limited® O42 - Logiciel: Les héros de la République - (.LucasArts.) [HKLM][64Bits] -- {5612C844-55BC-4B77-82C2-A2E28962418E} =>.LUCASFILM ENTERTAINMENT COMPANY LTD® O42 - Logiciel: Les Sims™ 4 - (.Electronic Arts Inc..) [HKLM][64Bits] -- {48EBEBBF-B9F8-4520-A3CF-89A730721917} =>.Electronic Arts® O42 - Logiciel: MAGIX Common Components 1 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {8E7E3475-C37E-44F5-897F-718AAE0B4827} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Content and Soundpools - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MAGIX_GlobalContent {42A0275C3BFD4807111325C219E0FFE1} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Fonts Package 2 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {E6860DA4-62A8-4E0B-A5C7-CF38404AE094} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {30F841D2-1D8E-4362-A806-7B6189F9BFEA} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{30F841D2-1D8E-4362-A806-7B6189F9BFEA} {42A0275C3BFD4807111325C219E0FFE1} =>.MAGIX Software GmbH O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: MEmu - (.Microvirt.) [HKLM][64Bits] -- MEmu O42 - Logiciel: Microsoft Access MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0117-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM][64Bits] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Exchange Web Services Managed API 2.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {24CA683D-8174-4EBF-AD4D-3F2DD7814716} =>.Microsoft Corporation O42 - Logiciel: Microsoft Games for Windows - LIVE - (.Microsoft Corporation.) [HKLM][64Bits] -- {4AA3D64E-9EC3-4B0F-AB91-5885AC55641F} =>.Microsoft Corporation O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {FD052FB9-FE90-4438-B355-15EDC89D8FB1} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Identity Extensions - (.Microsoft Corporation.) [HKLM][64Bits] -- {F99F24BF-0B90-463E-9658-3FD2EFC3C992} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Server Speech Platform Runtime (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {22CB8ED7-DF57-4864-BD04-F63B9CE4B494} =>.Microsoft Corporation O42 - Logiciel: Microsoft Server Speech Text to Speech Voice (fr-FR, Hortense) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9B9D928F-97D5-4D95-9A71-EE9B1805BADE} =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {070C38AC-05CE-43DF-9A20-141332F6AB2B} =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2012 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {05FF8209-C4F1-4C77-BC28-791653156D20} =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4AEB505C-95E1-4964-9B64-8D27F3186D30} =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C06D6DB-A391-4686-B050-99CC522A7843} =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {45CD67FD-3218-4207-A0A2-BC41245189E3} =>.Microsoft O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2BFC7AA0-544C-4E3A-8796-67F3BE655BE9} =>.Microsoft Corporation O42 - Logiciel: MK LOL - (...) [HKCU][64Bits] -- MK LOL O42 - Logiciel: MSI Afterburner 4.2.0 - (.MSI Co., LTD.) [HKLM][64Bits] -- Afterburner =>.MSI Co., LTD O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation O42 - Logiciel: MultiBit HD 0.2.0 - (.Bitcoin Solutions Ltd.) [HKLM][64Bits] -- 6925-4794-5772-4956 {12A37B0B1D08C0} O42 - Logiciel: Mumble 1.2.3 - (.Thorvald Natvig.) [HKLM][64Bits] -- {E1019541-10A2-464F-A23E-A4F23DA65160} =>.Thorvald Natvig O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B455E95A-B804-439F-B533-336B1635AE97} =>.NVIDIA Corporation O42 - Logiciel: Open Broadcaster Software - (...) [HKLM][64Bits] -- Open Broadcaster Software O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc® O42 - Logiciel: OpenAL 1.1 Core PC SDK (ver 3.05) - (.Creative Labs.) [HKLM][64Bits] -- {1C10D0D6-AF1A-48B8-9BF7-52A2BB014E0C} =>.Creative Labs O42 - Logiciel: OpenAL 1.1 Core PC SDK (ver 3.05) - (.Creative Labs.) [HKLM][64Bits] -- InstallShield_{1C10D0D6-AF1A-48B8-9BF7-52A2BB014E0C} =>.Creative Labs O42 - Logiciel: Oracle VM VirtualBox 4.3.18 - (.Oracle Corporation.) [HKLM][64Bits] -- {74B7E6F9-DCAC-4ADB-B2D0-EEFDD1B5AC25} =>.Oracle Corporation O42 - Logiciel: Plantronics® GameCom 780/788 Software for Dolby® Headphone - (.Plantronics.) [HKLM][64Bits] -- {EB3C9064-9140-4279-9E51-965119402151} =>.Plantronics® O42 - Logiciel: Prerequisites for SSDT - (.Microsoft Corporation.) [HKLM][64Bits] -- {21373064-AD95-48DB-A32E-0D9E08EF7355} =>.Microsoft Corporation O42 - Logiciel: Prerequisites for SSDT - (.Microsoft Corporation.) [HKLM][64Bits] -- {35C1D9D6-87C0-46A3-B1B4-EDBCC063221C} =>.Microsoft Corporation O42 - Logiciel: Python 3.5.1 (32-bit) - (.Python Software Foundation.) [HKCU][64Bits] -- {c39d559b-aa83-4476-ba20-988a35a1199a} =>.Python Software Foundation® O42 - Logiciel: Python 3.5.1 Add to Path (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {C68BE7C0-355D-49B6-B950-A558FAA17451} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Core Interpreter (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {7665C66D-78C4-4B30-B4B9-8DD484403532} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Development Libraries (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {2B2FED36-5D63-411A-A8C4-E311D70BCF33} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Documentation (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {77EEC303-714C-4290-AF63-5252FDB5D7C8} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Executables (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {946BBA68-EDC0-4981-83D3-09592B9A84FA} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Launcher (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {17778F7B-FB5A-4A93-9719-D75BAF673498} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 pip Bootstrap (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {4F29879C-940D-4599-8CEC-407579F73DF7} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Standard Library (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {65A2F7DA-ACD7-4EC1-8A88-665D535D9CE7} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Tcl/Tk Support (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {C387DB53-A25F-49E3-8DF7-94F47E5A7921} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Test Suite (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {FA87440D-634A-4581-AD9C-C6FA859B88DD} =>.Python Software Foundation O42 - Logiciel: Python 3.5.1 Utility Scripts (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {9254A29B-0F60-444C-B5CE-DB7E2505474C} =>.Python Software Foundation O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros Communications O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Rocket League - (.Psyonix.) [HKLM][64Bits] -- Steam App 252950 =>.Valve® O42 - Logiciel: RS Somnífero - (.Rico Software.) [HKLM][64Bits] -- RS Somnífero =>.Rico Software O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.DEVGURU CO LTD® O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation® O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation® O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation® O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {95150002-1163-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {95160001-1163-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {7E4C8063-6644-4580-B27F-6B70B1A51F0E} =>.Skype Technologies S.A. O42 - Logiciel: Skype™ 7.21 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Smartflix - (.Smartflix Inc..) [HKCU][64Bits] -- smartflix O42 - Logiciel: SoftEther VPN Client - (.SoftEther VPN Project.) [HKLM][64Bits] -- softether_sevpnclient =>.SoftEther K.K.® O42 - Logiciel: SpeedFan (remove only) - (...) [HKLM][64Bits] -- SpeedFan O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify =>.Spotify AB® O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: SteelSeries DTS Headphone X - (.SteelSeries.) [HKLM][64Bits] -- SteelSeries DTS Headphone X =>.Conexant Systems, Inc.® O42 - Logiciel: SteelSeries Engine 3.7.1 - (.SteelSeries ApS.) [HKLM][64Bits] -- SteelSeries Engine 3 =>.SteelSeries ApS® O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM][64Bits] -- {83073F33-4211-4948-B737-A3B0D0623143} =>.Husdawg, LLC O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM][64Bits] -- {04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7} =>.Husdawg, LLC O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH O42 - Logiciel: TeamViewer 11 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer® O42 - Logiciel: Technitium MAC Address Changer v6.0 - (.Technitium.) [HKLM][64Bits] -- TMACv6.0 =>.Technitium O42 - Logiciel: Text-To-Speech-Runtime - (.Magix Development GmbH.) [HKLM][64Bits] -- {7B3F0113-E63C-4D6D-AF19-111A3165CCA2} =>.Magix Development GmbH O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {31b49e1e-03f8-4a04-8faa-f6476d8fad02} =>.Epic Games Inc.® O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: Update for (KB2504637) - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637 =>.Microsoft Corporation O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{0FA8AE0C-69AE-4F60-A1AB-F79C6BA5A999} =>.Microsoft Corporation® O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft Entertainment Sweden AB® O42 - Logiciel: VC_CRT_x64 - (.Intel Corporation.) [HKLM][64Bits] -- {54F2237F-018C-483B-8884-9FC0D88840C3} =>.Intel Corporation O42 - Logiciel: Vita 2 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {6B793FAD-8CCC-4746-AC53-3BF5185DACA3} =>.MAGIX Software GmbH O42 - Logiciel: Vita Analog Synths - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {71C3679C-E6DA-4656-82B5-F6C0EE4A9F2C} =>.MAGIX Software GmbH O42 - Logiciel: Vita Celtic Harp - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {C7AC19FD-2547-4D79-BC3D-41A41BA8D48F} =>.MAGIX Software GmbH O42 - Logiciel: Vita Drum Engine - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {5BBD6B03-5E8C-42AD-BFB9-518240CE3D80} =>.MAGIX Software GmbH O42 - Logiciel: Vita Jazz Drums - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {99C2C7FB-682E-415C-B36B-C9BC95A91EC8} =>.MAGIX Software GmbH O42 - Logiciel: Vita Urban Drums - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {F55756AC-18F5-4D95-B0AC-C61F1E56AAB7} =>.MAGIX Software GmbH O42 - Logiciel: Vita World Flutes - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {E04FC0CB-2DC6-4788-94D4-0186262A5F2A} =>.MAGIX Software GmbH O42 - Logiciel: VPNetwork LLC - TorGuard - Online Privacy Protection Services - (."VPNetwork LLC".) [HKLM][64Bits] -- VPNetwork LLC TorGuard O42 - Logiciel: Vulkan Run Time Libraries 1.0.3.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.3.1 =>.LunarG, Inc. O42 - Logiciel: Vulkan Run Time Libraries 1.0.3.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.3.1-2 =>.LunarG, Inc. O42 - Logiciel: WinRAR 5.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (258) - 11s HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AMD HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\AutoIt v3 HKLM\SOFTWARE\Wow6432Node\Avira HKLM\SOFTWARE\Wow6432Node\AviraSpeedup HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment HKLM\SOFTWARE\Wow6432Node\BlueStacks HKLM\SOFTWARE\Wow6432Node\BoL HKLM\SOFTWARE\Wow6432Node\Brothers HKLM\SOFTWARE\Wow6432Node\CounterPath HKLM\SOFTWARE\Wow6432Node\Creative Labs HKLM\SOFTWARE\Wow6432Node\CyberGhost HKLM\SOFTWARE\Wow6432Node\Cygnus Solutions HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\EpicGames HKLM\SOFTWARE\Wow6432Node\F-Secure HKLM\SOFTWARE\Wow6432Node\Fraps HKLM\SOFTWARE\Wow6432Node\Frogwares HKLM\SOFTWARE\Wow6432Node\Gameforge HKLM\SOFTWARE\Wow6432Node\GOG.com HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Havij HKLM\SOFTWARE\Wow6432Node\Icaros HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\LucasArts HKLM\SOFTWARE\Wow6432Node\LucasArts Entertainment Company LLC HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\MAGIX HKLM\SOFTWARE\Wow6432Node\Magix Development HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Maxis HKLM\SOFTWARE\Wow6432Node\Metin2_EN HKLM\SOFTWARE\Wow6432Node\Metin2_FR HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\MSI HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Open Broadcaster Software HKLM\SOFTWARE\Wow6432Node\OpenAL HKLM\SOFTWARE\Wow6432Node\Origin Games HKLM\SOFTWARE\Wow6432Node\Overwolf HKLM\SOFTWARE\Wow6432Node\Plantronics HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Python HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Riot Games HKLM\SOFTWARE\Wow6432Node\Runes of Magic HKLM\SOFTWARE\Wow6432Node\Samsung Magician HKLM\SOFTWARE\Wow6432Node\sega HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SoftEther Project HKLM\SOFTWARE\Wow6432Node\SpeedFan HKLM\SOFTWARE\Wow6432Node\SRS Labs HKLM\SOFTWARE\Wow6432Node\SuppHelpDir HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\Thingamahoochie HKLM\SOFTWARE\Wow6432Node\THQ HKLM\SOFTWARE\Wow6432Node\TrendyEntertainment HKLM\SOFTWARE\Wow6432Node\Tunngle.net HKLM\SOFTWARE\Wow6432Node\Ubisoft HKLM\SOFTWARE\Wow6432Node\Unwinder HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\X-AVCSD HKLM\SOFTWARE\Wow6432Node\Zemi Interactive HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\4kdownload.com HKCU\SOFTWARE\5 Bits Games HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\82 Apps HKCU\SOFTWARE\Aeria Games HKCU\SOFTWARE\Akeo Consulting HKCU\SOFTWARE\AMD HKCU\SOFTWARE\Andy HKCU\SOFTWARE\AnvSoft HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Audacity HKCU\SOFTWARE\AutoIt v3 HKCU\SOFTWARE\Avira HKCU\SOFTWARE\Bankroll Studios HKCU\SOFTWARE\BetaDwarf ApS HKCU\SOFTWARE\Big Robot HKCU\SOFTWARE\Bitcoin HKCU\SOFTWARE\Blazing Griffin HKCU\SOFTWARE\Blizzard Entertainment HKCU\SOFTWARE\Bloober Team HKCU\SOFTWARE\BlooberTeam S.A. HKCU\SOFTWARE\BNE HKCU\SOFTWARE\Bohemia Interactive HKCU\SOFTWARE\Boneloaf HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\CampoSanto HKCU\SOFTWARE\Cheat Engine HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CounterPath HKCU\SOFTWARE\Cryptozoic HKCU\SOFTWARE\Crystal Dynamics HKCU\SOFTWARE\Cygnus Solutions HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\Daniel Mullins Games HKCU\SOFTWARE\DefaultCompany HKCU\SOFTWARE\Defiant Development HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\EMU HKCU\SOFTWARE\Epic Games HKCU\SOFTWARE\Etter Studio HKCU\SOFTWARE\Fireproof Games HKCU\SOFTWARE\FLT HKCU\SOFTWARE\Freejam HKCU\SOFTWARE\Game Swing HKCU\SOFTWARE\Gameforge4d HKCU\SOFTWARE\GOG.com HKCU\SOFTWARE\Google HKCU\SOFTWARE\GuruGames HKCU\SOFTWARE\Gyazo HKCU\SOFTWARE\Heaventools HKCU\SOFTWARE\HEX Entertainment HKCU\SOFTWARE\HHD Software HKCU\SOFTWARE\HWiNFO64 HKCU\SOFTWARE\i-FunBox.com HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Immunity Inc HKCU\SOFTWARE\INCAInternet HKCU\SOFTWARE\Intel HKCU\SOFTWARE\IO Interactive HKCU\SOFTWARE\iZotope HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Jitbit HKCU\SOFTWARE\Joe Williams HKCU\SOFTWARE\Juicy Beast Studio Ltd. HKCU\SOFTWARE\Kyle Seeley HKCU\SOFTWARE\LandFall Games HKCU\SOFTWARE\LANGAGENT HKCU\SOFTWARE\Logic Artists HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\LowRegistry HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\Magix HKCU\SOFTWARE\Magix Development HKCU\SOFTWARE\MAGIX Software GmbH HKCU\SOFTWARE\MAIET entertainment HKCU\SOFTWARE\MD5Checksum HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Michael Herf HKCU\SOFTWARE\MilkyTea HKCU\SOFTWARE\Mindblown Studios HKCU\SOFTWARE\Monomi Park HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\MSI HKCU\SOFTWARE\Mumble HKCU\SOFTWARE\Muse Games HKCU\SOFTWARE\My64K HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nilings HKCU\SOFTWARE\Northcode Inc HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenAutomate HKCU\SOFTWARE\Oracle HKCU\SOFTWARE\osu! HKCU\SOFTWARE\PHL Collective HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Plex, Inc. HKCU\SOFTWARE\Popcorn Time HKCU\SOFTWARE\PopcornTime HKCU\SOFTWARE\Psw HKCU\SOFTWARE\Python HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Raptr HKCU\SOFTWARE\Razer HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RealVNC HKCU\SOFTWARE\Red Gate HKCU\SOFTWARE\Red Gate Software Ltd. HKCU\SOFTWARE\Refract HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Room710Games HKCU\SOFTWARE\RS Somnífero HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\Samurai Punk HKCU\SOFTWARE\Section Studios HKCU\SOFTWARE\Section Studios, Inc. HKCU\SOFTWARE\SKS HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypePlugin HKCU\SOFTWARE\SmallGamesInfo HKCU\SOFTWARE\SoftEther Project HKCU\SOFTWARE\Space Budgie HKCU\SOFTWARE\SpeedFan HKCU\SOFTWARE\Spotify HKCU\SOFTWARE\sqlitebrowser HKCU\SOFTWARE\Squirrels HKCU\SOFTWARE\Steel Crate Games HKCU\SOFTWARE\SUPERHOT beta HKCU\SOFTWARE\SUPERHOT_Team HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\System Requirements Lab HKCU\SOFTWARE\Tasharen Entertainment HKCU\SOFTWARE\TCP Optimizer HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\techPowerUp HKCU\SOFTWARE\Telltale Games HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\THEGFW HKCU\SOFTWARE\Thingamahoochie HKCU\SOFTWARE\Thingummy Software HKCU\SOFTWARE\TightVNC HKCU\SOFTWARE\Tracker Software HKCU\SOFTWARE\Trial-Reset HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Tunngle.net HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Unity HKCU\SOFTWARE\University of Tsukuba HKCU\SOFTWARE\Valve HKCU\SOFTWARE\Vision Thing HKCU\SOFTWARE\VPNetworkLLC HKCU\SOFTWARE\W10Privacy HKCU\SOFTWARE\Warner Bros. Interactive Entertainment HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wireshark HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Yanderu Software HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\MarkAny ---\\ Contents of the Common Files folders (551) - 13s O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\AirParrot 2 O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\AMD O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\ASUS =>.ASUSTeK Computer Inc.® O43 - CFD: 14/10/2014 - [] D -- C:\Program Files\ATI O43 - CFD: 18/02/2016 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.® O43 - CFD: 23/01/2016 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.® O43 - CFD: 18/01/2016 - [] D -- C:\Program Files\CyberGhost 5 O43 - CFD: 07/03/2016 - [] AD -- C:\Program Files\DriversCloud.com =>.CYBELSOFT® O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 08/04/2016 - [] D -- C:\Program Files\Epic Games O43 - CFD: 04/01/2016 - [] AD -- C:\Program Files\Git O43 - CFD: 30/12/2014 - [] D -- C:\Program Files\HHD Software O43 - CFD: 20/03/2016 - [] D -- C:\Program Files\Intel =>.Intel(R) Rapid Storage Technology® O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 17/08/2015 - [] D -- C:\Program Files\ma-config.com O43 - CFD: 07/11/2014 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Microsoft Identity Extensions O43 - CFD: 07/11/2014 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 27/05/2015 - [] AD -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation® O43 - CFD: 27/05/2015 - [] AD -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 14/10/2014 - [] AD -- C:\Program Files\Microsoft Xbox 360 Accessories =>.Microsoft Corporation® O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 16/04/2016 - [] AD -- C:\Program Files\Microvirt {5528D5543296BFE427D43B8DDC0A20C7} O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\MSBuild O43 - CFD: 13/04/2016 - [] AD -- C:\Program Files\MultiBit HD {12A37B0B1D08C0} O43 - CFD: 04/01/2015 - [] D -- C:\Program Files\OBS O43 - CFD: 09/09/2015 - [] D -- C:\Program Files\OpenVPN O43 - CFD: 09/04/2016 - [] D -- C:\Program Files\pia_manager O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\Plantronics =>.Plantronics® O43 - CFD: 18/02/2016 - [] D -- C:\Program Files\QuickSFV O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 13/06/2015 - [] D -- C:\Program Files\Rockstar Games =>.Take-Two Interactive Software, Inc.® O43 - CFD: 30/01/2015 - [] D -- C:\Program Files\SAMSUNG O43 - CFD: 16/04/2016 - [] D -- C:\Program Files\Sandboxie =>.Invincea, Inc.® O43 - CFD: 11/03/2015 - [] AD -- C:\Program Files\SharePoint Client Components O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\SoftEther VPN Client =>.SoftEther K.K.® O43 - CFD: 14/10/2014 - [] D -- C:\Program Files\SteelSeries O43 - CFD: 16/02/2015 - [] D -- C:\Program Files\Steinberg O43 - CFD: 05/04/2016 - [] AD -- C:\Program Files\TeamSpeak 3 Client =>.TeamSpeak Systems GmbH® O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Tracker Software =>.Tracker Software Products Ltd® O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 31/12/2015 - [] D -- C:\Program Files\Unlocker O43 - CFD: 16/02/2015 - [] D -- C:\Program Files\Virtual Audio Cable O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Windows Identity Foundation O43 - CFD: 11/02/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows NT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 17/04/2016 - [] SHD -- C:\Program Files\Windows Sidebar O43 - CFD: 17/04/2016 - [] HD -- C:\Program Files\WindowsApps O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files\WindowsPowerShell O43 - CFD: 14/10/2014 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 10/01/2016 - [] D -- C:\Program Files (x86)\4KDownload O43 - CFD: 18/03/2016 - [] D -- C:\Program Files (x86)\AdwCleaner O43 - CFD: 20/07/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 18/04/2016 - [] AD -- C:\Program Files (x86)\AMD O43 - CFD: 18/02/2016 - [] AD -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.® O43 - CFD: 05/09/2015 - [] AD -- C:\Program Files (x86)\ASM106xSATA O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.® O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\AutoIt3 =>.AutoIt Consulting Ltd® O43 - CFD: 11/11/2014 - [] D -- C:\Program Files (x86)\Avira =>.Avira Operations GmbH & Co. KG® O43 - CFD: 17/04/2016 - [] AD -- C:\Program Files (x86)\Battle.net =>.Blizzard Entertainment, Inc.® O43 - CFD: 15/04/2016 - [] D -- C:\Program Files (x86)\BlueStacks =>.Bluestack Systems, Inc.® O43 - CFD: 04/08/2015 - [] AD -- C:\Program Files (x86)\Bluetooth Suite O43 - CFD: 18/02/2016 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 27/04/2015 - [] D -- C:\Program Files (x86)\Cheat Engine 6.4 =>.Cheat Engine® O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 23/01/2015 - [] D -- C:\Program Files (x86)\Cool Beans NFO Creator O43 - CFD: 23/02/2015 - [] D -- C:\Program Files (x86)\CounterPath O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\Crusader Kings II O43 - CFD: 27/07/2015 - [] D -- C:\Program Files (x86)\DroidCam =>.DEV47 APPS® O43 - CFD: 01/06/2015 - [] D -- C:\Program Files (x86)\Duty Calls O43 - CFD: 03/04/2016 - [] AD -- C:\Program Files (x86)\Epic Games =>.Epic Games Inc.® O43 - CFD: 01/04/2016 - [] AD -- C:\Program Files (x86)\FreeMouseAutoClicker O43 - CFD: 14/02/2016 - [] D -- C:\Program Files (x86)\GameforgeLive O43 - CFD: 09/04/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 10/04/2016 - [] AD -- C:\Program Files (x86)\Gyazo =>.Nota Inc.® O43 - CFD: 17/04/2016 - [] AD -- C:\Program Files (x86)\Hearthstone =>.Blizzard Entertainment, Inc.® O43 - CFD: 05/06/2015 - [] D -- C:\Program Files (x86)\HEX O43 - CFD: 16/09/2015 - [0] D -- C:\Program Files (x86)\HiSuite O43 - CFD: 14/10/2015 - [] D -- C:\Program Files (x86)\i-Funbox DevTeam O43 - CFD: 30/09/2015 - [] D -- C:\Program Files (x86)\iExplorer O43 - CFD: 14/04/2015 - [] D -- C:\Program Files (x86)\Immunity Inc O43 - CFD: 21/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Realtek Semiconductor Corp® O43 - CFD: 14/10/2014 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - Software and Firmware Products® O43 - CFD: 09/04/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\iZotope O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 09/04/2016 - [] AD -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 06/09/2015 - [] D -- C:\Program Files (x86)\ManiaPlanet =>.NADEO® O43 - CFD: 30/01/2015 - [0] D -- C:\Program Files (x86)\MarkAny O43 - CFD: 03/01/2015 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET O43 - CFD: 10/01/2015 - [] D -- C:\Program Files (x86)\Microsoft Chart Controls O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE =>.Microsoft Corporation® O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Help Viewer =>.Microsoft Corporation® O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 17/07/2015 - [] D -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation® O43 - CFD: 27/05/2015 - [] AD -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation® O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 17/07/2015 - [] AD -- C:\Program Files (x86)\Microsoft Visual Studio 12.0 =>.Microsoft Corporation® O43 - CFD: 24/10/2015 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation® O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 16/11/2014 - [] D -- C:\Program Files (x86)\MKJogo =>.Beijing Stone Age Network Technology Limited Company® O43 - CFD: 29/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 20/02/2016 - [] D -- C:\Program Files (x86)\MSI Afterburner =>.MICRO-STAR INTERNATIONAL CO., LTD.® O43 - CFD: 17/07/2015 - [] AD -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 28/07/2015 - [] AD -- C:\Program Files (x86)\Mumble O43 - CFD: 21/12/2015 - [0] D -- C:\Program Files (x86)\NCWest O43 - CFD: 27/01/2016 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 20/07/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\OBS =>.Open Source Developer, Hugh Bailey® O43 - CFD: 01/09/2015 - [0] D -- C:\Program Files (x86)\Omega Force O43 - CFD: 03/01/2015 - [] D -- C:\Program Files (x86)\Open XML SDK O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\OpenAL =>.Creative Labs Inc® O43 - CFD: 07/12/2014 - [] AD -- C:\Program Files (x86)\OpenAL 1.1 SDK O43 - CFD: 23/04/2015 - [] D -- C:\Program Files (x86)\Pidgin O43 - CFD: 19/11/2015 - [] D -- C:\Program Files (x86)\Plantronics =>.Plantronics® O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\Plex O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Popcorn Time O43 - CFD: 06/06/2015 - [] D -- C:\Program Files (x86)\Portal O43 - CFD: 14/10/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 31/12/2014 - [] D -- C:\Program Files (x86)\Red Gate =>.Red Gate Software Ltd® O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 02/10/2015 - [] D -- C:\Program Files (x86)\Rico Software O43 - CFD: 13/06/2015 - [0] D -- C:\Program Files (x86)\Rockstar Games O43 - CFD: 30/01/2015 - [] D -- C:\Program Files (x86)\Samsung =>.DEVGURU CO LTD® O43 - CFD: 06/04/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 08/11/2015 - [] D -- C:\Program Files (x86)\Source Unpack 2.2new =>.Valve® O43 - CFD: 29/05/2015 - [] D -- C:\Program Files (x86)\SpeedFan =>.SOKNO S.R.L.® O43 - CFD: 15/04/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve® O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\Steinberg O43 - CFD: 01/11/2014 - [] D -- C:\Program Files (x86)\Supraball O43 - CFD: 09/11/2015 - [] AD -- C:\Program Files (x86)\SystemRequirementsLab O43 - CFD: 09/04/2016 - [] AD -- C:\Program Files (x86)\TeamViewer =>.TeamViewer® O43 - CFD: 10/09/2015 - [] D -- C:\Program Files (x86)\Technitium O43 - CFD: 04/08/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 12/10/2015 - [] D -- C:\Program Files (x86)\The Talos Principle O43 - CFD: 01/03/2016 - [] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft Entertainment Sweden AB® O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\VODOBOX Flash Server Trial O43 - CFD: 14/04/2016 - [] D -- C:\Program Files (x86)\VPNetwork LLC O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\VulkanRT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 03/01/2015 - [] D -- C:\Program Files (x86)\Windows Identity Foundation O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Windows Kits O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 17/04/2016 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 30/12/2014 - [] D -- C:\Program Files (x86)\WinMerge O43 - CFD: 26/02/2015 - [] D -- C:\Program Files (x86)\WOMic O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K Download O43 - CFD: 01/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3 O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4 O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMouseAutoClicker O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gyazo O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hand of Fate [GOG.com] O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam O43 - CFD: 14/04/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immunity Inc O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Layers of Fear [GOG.com] O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEGO Jurassic World O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManiaPlanet O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEmu O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows - LIVE O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultiBit HD O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble O43 - CFD: 21/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 04/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenAL 1.1 SDK O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plantronics O43 - CFD: 04/06/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Portal O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Gate O43 - CFD: 02/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rico Software O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftEther VPN Client O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Star Wars Racer O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 04/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6 O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VPNetwork LLC O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vulkan 1.0.3.1 O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMerge O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 16/01/2016 - [0] D -- C:\ProgramData\-YNAD7DD O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\.mono O43 - CFD: 13/05/2015 - [] D -- C:\ProgramData\Aeria Games O43 - CFD: 21/06/2015 - [] D -- C:\ProgramData\AirParrot 2 O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Apple O43 - CFD: 09/02/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 06/03/2015 - [] D -- C:\ProgramData\Atheros O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\ATI O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Avira O43 - CFD: 22/02/2016 - [] D -- C:\ProgramData\Battle.net O43 - CFD: 30/07/2015 - [0] D -- C:\ProgramData\Binarysense O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Blizzard Entertainment O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 28/10/2014 - [] D -- C:\ProgramData\Bohemia Interactive O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Conexant O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\CounterPath Corporation O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 07/03/2016 - [] AD -- C:\ProgramData\DriversCloud.com O43 - CFD: 23/02/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 03/04/2016 - [] D -- C:\ProgramData\Epic O43 - CFD: 18/01/2016 - [] D -- C:\ProgramData\F-Secure O43 - CFD: 04/08/2015 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\Git O43 - CFD: 16/09/2015 - [] D -- C:\ProgramData\HiSuiteDataSvc O43 - CFD: 14/10/2014 - [0] D -- C:\ProgramData\IDM O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Intel O43 - CFD: 14/04/2015 - [] D -- C:\ProgramData\Isolated Storage O43 - CFD: 04/03/2015 - [] D -- C:\ProgramData\Jabra O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\Licenses O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Logs O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\ma-config.com O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\MAGIX O43 - CFD: 25/05/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 06/03/2016 - [] D -- C:\ProgramData\ManiaPlanet O43 - CFD: 17/04/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 14/04/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 04/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 03/01/2015 - [] D -- C:\ProgramData\Microsoft Visual Studio O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\Nexon O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\Orbit O43 - CFD: 18/10/2015 - [] D -- C:\ProgramData\Origin O43 - CFD: 03/04/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 04/03/2015 - [] D -- C:\ProgramData\Qualcomm Atheros O43 - CFD: 30/03/2015 - [0] D -- C:\ProgramData\RealVNC-Service O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Reflector 2 O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 14/10/2014 - [] D -- C:\ProgramData\Riot Games O43 - CFD: 30/01/2015 - [] D -- C:\ProgramData\Samsung O43 - CFD: 06/04/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 27/05/2015 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Steam O43 - CFD: 14/10/2014 - [] D -- C:\ProgramData\SteelSeries O43 - CFD: 14/10/2014 - [] D -- C:\ProgramData\Sun O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\SWTCWRH O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\TrackmaniaTurbo O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 04/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Atheros O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Blizzard Entertainment O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Digidesign O43 - CFD: 18/10/2015 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 25/12/2015 - [] AD -- C:\Program Files (x86)\Common Files\MAGIX Services O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Shared O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 06/04/2016 - [] AD -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 02/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\Common Files\VST3 O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 01/05/2015 - [0] SHD -- C:\Users\Dany\AppData\Roaming\.# O43 - CFD: 05/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\.madgarden O43 - CFD: 27/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\.minecraft O43 - CFD: 05/06/2015 - [] D -- C:\Users\Dany\AppData\Roaming\.mono O43 - CFD: 23/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\.purple O43 - CFD: 16/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\AdbDriverInstaller O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Adobe O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Aeria Games & Entertainment O43 - CFD: 15/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\AMD O43 - CFD: 10/12/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Andy O43 - CFD: 18/11/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Anvsoft O43 - CFD: 15/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Apple Computer O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Atheros O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\ATI O43 - CFD: 25/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Audacity O43 - CFD: 07/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Avira O43 - CFD: 09/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Awesomium O43 - CFD: 05/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Axolot Games O43 - CFD: 22/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Battle.net O43 - CFD: 04/03/2015 - [] D -- C:\Users\Dany\AppData\Roaming\BluetoothDriverInstaller O43 - CFD: 13/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\BrawlhallaAir O43 - CFD: 05/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\BulletHeaven2 O43 - CFD: 30/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Charles O43 - CFD: 14/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\com.jackboxgames.quiplash O43 - CFD: 02/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Crypto Obfuscator For .Net v2013 R2 O43 - CFD: 30/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Crystal Dynamics O43 - CFD: 25/05/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\dclogs O43 - CFD: 20/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\discord O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\DMCache O43 - CFD: 12/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\FileZilla O43 - CFD: 08/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Frontwing O43 - CFD: 15/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Gui Booter O43 - CFD: 10/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Gyazo O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Identities O43 - CFD: 16/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\IDM O43 - CFD: 14/10/2015 - [] D -- C:\Users\Dany\AppData\Roaming\iFunbox_UserCache O43 - CFD: 14/04/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\Immunity Debugger O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\InstallShield O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Intel Corporation O43 - CFD: 01/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\IO Interactive O43 - CFD: 27/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\java O43 - CFD: 08/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\library_dir O43 - CFD: 04/10/2015 - [] D -- C:\Users\Dany\AppData\Roaming\LolClient O43 - CFD: 01/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\LOVE O43 - CFD: 17/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\LSE5709130 O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Macromedia O43 - CFD: 25/12/2015 - [] D -- C:\Users\Dany\AppData\Roaming\MAGIX O43 - CFD: 12/04/2011 - [0] D -- C:\Users\Dany\AppData\Roaming\Media Center Programs O43 - CFD: 23/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\MediaInfo O43 - CFD: 17/04/2016 - [] SD -- C:\Users\Dany\AppData\Roaming\Microsoft O43 - CFD: 04/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Mirroring360 O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Molura O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Mozilla O43 - CFD: 15/04/2016 - [0] D -- C:\Users\Dany\AppData\Roaming\MPC-HC O43 - CFD: 13/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\MultiBitHD O43 - CFD: 28/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Mumble O43 - CFD: 20/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\mymacro O43 - CFD: 04/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Nidhogg O43 - CFD: 06/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Notepad++ O43 - CFD: 03/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\NuGet O43 - CFD: 04/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\OBS O43 - CFD: 19/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Oracle O43 - CFD: 09/10/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Origin O43 - CFD: 28/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\ParadoxInteractive O43 - CFD: 04/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\PIFreePC O43 - CFD: 17/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\PT O43 - CFD: 20/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\qmacro O43 - CFD: 09/02/2015 - [] D -- C:\Users\Dany\AppData\Roaming\redsn0w O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Resource Tuner 2 O43 - CFD: 30/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Samsung O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Skype O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Smartflix O43 - CFD: 04/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\SmartSteamEmu O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Spotify O43 - CFD: 19/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Steam O43 - CFD: 25/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\steelseries-engine-3-client O43 - CFD: 22/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Subversion O43 - CFD: 27/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Sun O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\SystemRequirementsLab O43 - CFD: 06/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\TeamViewer O43 - CFD: 13/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\TERA O43 - CFD: 03/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\The Witness O43 - CFD: 24/06/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\TightVNC O43 - CFD: 15/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Titanium O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\TS3Client O43 - CFD: 25/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Tunngle O43 - CFD: 09/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Ubisoft O43 - CFD: 08/02/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\uTorrent O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\vlc O43 - CFD: 19/06/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Warner Bros. Interactive Entertainment O43 - CFD: 18/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\WinRAR O43 - CFD: 12/06/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Wireshark O43 - CFD: 13/05/2015 - [] SHD -- C:\Users\Dany\AppData\Roaming\wyUpdate AU O43 - CFD: 15/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\xulrunner O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\YouTubeByClick O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\ZHP O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Local\4kdownload.com O43 - CFD: 09/04/2016 - [0] D -- C:\Users\Dany\AppData\Local\Adobe O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Aeria Games O43 - CFD: 04/04/2015 - [] D -- C:\Users\Dany\AppData\Local\AirMyPC O43 - CFD: 21/06/2015 - [] D -- C:\Users\Dany\AppData\Local\AirParrot 2 O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\AirParrot 2 - Cracked By ThuGie @ warez-bb.org O43 - CFD: 11/03/2016 - [] D -- C:\Users\Dany\AppData\Local\AMD O43 - CFD: 09/02/2015 - [] D -- C:\Users\Dany\AppData\Local\Apple O43 - CFD: 15/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Apple Computer O43 - CFD: 04/08/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\Application Data O43 - CFD: 29/10/2014 - [] D -- C:\Users\Dany\AppData\Local\Apps O43 - CFD: 28/10/2014 - [] D -- C:\Users\Dany\AppData\Local\Arma 3 O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Local\ATI O43 - CFD: 01/05/2015 - [] D -- C:\Users\Dany\AppData\Local\AutoIt v3 O43 - CFD: 01/03/2015 - [] D -- C:\Users\Dany\AppData\Local\BANDAI NAMCO Games O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Battle.net O43 - CFD: 01/03/2015 - [] D -- C:\Users\Dany\AppData\Local\Blizzard O43 - CFD: 07/11/2014 - [] D -- C:\Users\Dany\AppData\Local\Blizzard Entertainment O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Local\BMExplorer O43 - CFD: 25/01/2016 - [] D -- C:\Users\Dany\AppData\Local\CAPCOM O43 - CFD: 23/07/2015 - [] D -- C:\Users\Dany\AppData\Local\CEF O43 - CFD: 13/08/2015 - [] D -- C:\Users\Dany\AppData\Local\Comms O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Local\CounterPath O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Local\CounterPath Corporation O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Local\CrashDumps O43 - CFD: 29/10/2014 - [] D -- C:\Users\Dany\AppData\Local\DayZ O43 - CFD: 10/02/2016 - [] D -- C:\Users\Dany\AppData\Local\DeathTractor O43 - CFD: 15/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Diagnostics O43 - CFD: 09/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Discord O43 - CFD: 23/01/2016 - [] D -- C:\Users\Dany\AppData\Local\DiscordPTB O43 - CFD: 20/03/2016 - [] D -- C:\Users\Dany\AppData\Local\Disp1 O43 - CFD: 24/01/2015 - [] D -- C:\Users\Dany\AppData\Local\DotNet Resolver O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Downloaded Installations O43 - CFD: 26/09/2015 - [] D -- C:\Users\Dany\AppData\Local\DunDefLauncher O43 - CFD: 13/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Email_Account_Creator_Ext O43 - CFD: 20/06/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\EmieBrowserModeList O43 - CFD: 20/06/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\EmieSiteList O43 - CFD: 20/06/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\EmieUserList O43 - CFD: 11/09/2015 - [] D -- C:\Users\Dany\AppData\Local\EMU O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\EnigmaPrison O43 - CFD: 03/04/2016 - [] D -- C:\Users\Dany\AppData\Local\EpicGamesLauncher O43 - CFD: 03/10/2015 - [] D -- C:\Users\Dany\AppData\Local\F-Secure O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Local\fabi.me O43 - CFD: 06/06/2015 - [] D -- C:\Users\Dany\AppData\Local\FLT O43 - CFD: 22/05/2015 - [] D -- C:\Users\Dany\AppData\Local\FluxSoftware O43 - CFD: 13/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Geckofx O43 - CFD: 04/03/2015 - [] D -- C:\Users\Dany\AppData\Local\GN_Netcom_A_S O43 - CFD: 09/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Google O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Grip O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Local\GSoftwareLab O43 - CFD: 01/06/2015 - [] D -- C:\Users\Dany\AppData\Local\GWX O43 - CFD: 30/12/2014 - [] D -- C:\Users\Dany\AppData\Local\HHD Software O43 - CFD: 04/08/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\History O43 - CFD: 16/09/2015 - [] D -- C:\Users\Dany\AppData\Local\HiSuite O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Local\IsolatedStorage O43 - CFD: 17/07/2015 - [] D -- C:\Users\Dany\AppData\Local\LeagueSharp O43 - CFD: 17/08/2015 - [] D -- C:\Users\Dany\AppData\Local\livestreamer-twitch-gui O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Macromedia O43 - CFD: 30/09/2015 - [] D -- C:\Users\Dany\AppData\Local\Macroplant_LLC O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Microsoft O43 - CFD: 07/11/2014 - [0] D -- C:\Users\Dany\AppData\Local\Microsoft Help O43 - CFD: 04/09/2015 - [] D -- C:\Users\Dany\AppData\Local\MicrosoftEdge O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Molura O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Mozilla O43 - CFD: 01/03/2016 - [] D -- C:\Users\Dany\AppData\Local\mullvad O43 - CFD: 28/07/2015 - [] D -- C:\Users\Dany\AppData\Local\Mumble O43 - CFD: 26/08/2015 - [0] D -- C:\Users\Dany\AppData\Local\My Games O43 - CFD: 04/08/2015 - [0] D -- C:\Users\Dany\AppData\Local\NetworkTiles O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Obliteracers O43 - CFD: 17/12/2015 - [] D -- C:\Users\Dany\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\OrionGame O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Package Cache O43 - CFD: 07/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Packages O43 - CFD: 14/10/2015 - [0] D -- C:\Users\Dany\AppData\Local\pangu O43 - CFD: 04/11/2014 - [] D -- C:\Users\Dany\AppData\Local\PAYDAY 2 O43 - CFD: 05/08/2015 - [0] D -- C:\Users\Dany\AppData\Local\PeerDistRepub O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\pip O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Plex Media Server O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Programs O43 - CFD: 04/08/2015 - [] D -- C:\Users\Dany\AppData\Local\Publishers O43 - CFD: 23/08/2015 - [] D -- C:\Users\Dany\AppData\Local\PunkBuster O43 - CFD: 30/03/2015 - [] D -- C:\Users\Dany\AppData\Local\RealVNC O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Local\Red Gate O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Local\Red_Gate_Software_Ltd O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Reflector 2 O43 - CFD: 13/06/2015 - [0] D -- C:\Users\Dany\AppData\Local\Rockstar Games O43 - CFD: 30/01/2015 - [0] D -- C:\Users\Dany\AppData\Local\Samsung O43 - CFD: 24/05/2015 - [] D -- C:\Users\Dany\AppData\Local\SCE O43 - CFD: 10/01/2015 - [] D -- C:\Users\Dany\AppData\Local\SKIDROW O43 - CFD: 02/09/2015 - [] D -- C:\Users\Dany\AppData\Local\SkinSoft O43 - CFD: 01/01/2016 - [0] D -- C:\Users\Dany\AppData\Local\Skype O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\SkypePlugin O43 - CFD: 11/11/2014 - [] D -- C:\Users\Dany\AppData\Local\Skyrim O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Spotify O43 - CFD: 09/04/2016 - [] D -- C:\Users\Dany\AppData\Local\SquirrelTemp O43 - CFD: 31/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Star Citizen O43 - CFD: 23/12/2015 - [] D -- C:\Users\Dany\AppData\Local\Steam O43 - CFD: 13/03/2016 - [] D -- C:\Users\Dany\AppData\Local\SUPERHOT_Sp_z_o.o O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Targem O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Temp O43 - CFD: 04/08/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\Temporary Internet Files O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Local\TileDataLayer O43 - CFD: 09/03/2016 - [] D -- C:\Users\Dany\AppData\Local\Ubisoft O43 - CFD: 01/03/2016 - [] D -- C:\Users\Dany\AppData\Local\Ubisoft Game Launcher O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\UNDERTALE O43 - CFD: 03/04/2016 - [] D -- C:\Users\Dany\AppData\Local\UnrealEngine O43 - CFD: 03/04/2016 - [] D -- C:\Users\Dany\AppData\Local\UnrealEngineLauncher O43 - CFD: 16/09/2015 - [] D -- C:\Users\Dany\AppData\Local\VirtualStore O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\VODOBOX O43 - CFD: 16/02/2016 - [] D -- C:\Users\Dany\AppData\Local\VPNetworkLLC O43 - CFD: 14/02/2016 - [] D -- C:\Users\Dany\AppData\Local\worstenbrood O43 - CFD: 14/10/2014 - [0] D -- C:\Users\Dany\AppData\Local\Programs\Common O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Programs\Python O43 - CFD: 10/07/2015 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 04/08/2015 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 17/04/2016 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 14/05/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames O43 - CFD: 17/04/2016 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crusader Kings II O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DroidCam O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux O43 - CFD: 08/05/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\frontwing O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HHD Hex Editor Neo O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 10/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 04/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MKJogo O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.5 O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Smartflix Inc O43 - CFD: 17/04/2016 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 04/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteelSeries O43 - CFD: 10/07/2015 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 01/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 10/07/2015 - [] RSD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ ShareTools MSconfig StartupReg (8) - 0s O53 - SMSR:HKLM\...\startupreg\Aeria Ignite [Key] . (...) -- C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Akamai NetSession Interface [Key] . (...) -- C:\Users\Dany\AppData\Local\Akamai\netsession_win.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\BlueStacks Agent [Key] . (...) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\CyberGhost [Key] . (...) -- C:\Program Files\CyberGhost 5\CyberGhost.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\IAStorIcon [Key] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\Raptr [Key] . (...) -- C:\PROGRA~2\Raptr\raptrstub.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Spotify Web Helper [Key] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Dany\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify Ltd O53 - SMSR:HKLM\...\startupreg\XboxStat [Key] . (.Microsoft Corporation - XBoxStat.exe.) -- C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe =>.Microsoft Corporation ---\\ System Drivers List (90) - 3s O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2016/04/05 09:33:42 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\WINDOWS\System32\drivers\amdacpksd.sys [305392] =>.Advanced Micro Devices, Inc.® O58 - SDL:2016/03/08 01:24:24 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmafd.sys [23240] =>.Advanced Micro Devices, Inc.® O58 - SDL:2014/10/28 01:46:12 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [62152] =>.Advanced Micro Devices, Inc.® O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2015/11/12 15:33:02 A . (.Asmedia Technology - Asmedia 106x SATA Host Controller Driver.) -- C:\WINDOWS\System32\drivers\asstahci64.sys [89960] =>.ASMedia Technology Inc.® O58 - SDL:2014/10/23 10:41:30 A . (.Asmedia Technology - Asmedia 106x SATA Host Controller Driver.) -- C:\WINDOWS\System32\drivers\asstor64.sys [81208] =>.ASMedia Technology Inc.® O58 - SDL:2015/05/12 06:24:36 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athrx.sys [4149784] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/11/17 20:09:56 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw10x.sys [4323976] =>.Qualcomm Atheros Communications, Inc. O58 - SDL:2016/01/25 00:01:38 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [111120] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2016/04/05 09:38:52 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [26354192] {330000002D4E7AEC99B0F05F7300000000002D} =>.Advanced Micro Devices, Inc. O58 - SDL:2016/04/05 09:39:00 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [685584] {330000002D4E7AEC99B0F05F7300000000002D} =>.Advanced Micro Devices, Inc. O58 - SDL:2016/03/18 13:31:27 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [128664] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/03/18 13:31:27 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [137952] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2015/12/17 17:24:35 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [35488] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/03/18 13:31:27 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [68936] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2014/09/28 22:59:18 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\WINDOWS\System32\drivers\btath_bus.sys [35016] =>.Qualcomm Atheros® O58 - SDL:2015/03/09 09:48:34 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240] =>.Qualcomm Atheros® O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2015/06/19 19:10:00 A . (.Dev47Apps - Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\droidcam.sys [33592] =>.DEV47 APPS® O58 - SDL:2015/06/19 19:10:01 A . (.Dev47Apps - WDM Video Capture Driver.) -- C:\WINDOWS\System32\drivers\droidcamvideo.sys [229432] =>.DEV47 APPS® O58 - SDL:2015/11/24 21:17:18 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1d65x64.sys [541672] =>.Intel(R) INTELNPG1® O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i63x64.sys [482328] =>.Intel(R) Intel Network Drivers® O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows® O58 - SDL:2015/12/04 15:50:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\fsfreedometap.sys [34344] =>.F-Secure Corporation® O58 - SDL:2015/12/24 13:31:30 A . (.Arainia Solutions LLC - Gizmo Drive, kernel-mode device driver.) -- C:\WINDOWS\System32\drivers\gizmodrv.sys [34704] {51E68CF029AE755032D4A77D37DD7D5C} O58 - SDL:2013/01/11 19:02:34 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [64624] =>.Intel Corporation - Intel® Management Engine Firmware® O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2015/05/07 13:36:02 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [223232] =>.Huawei Technologies Co., Ltd. O58 - SDL:2015/05/07 13:36:02 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbnet.sys [287232] =>.Huawei Technologies Co., Ltd. O58 - SDL:2015/05/07 13:36:02 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864] =>.Huawei Technologies Co., Ltd. O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/11/12 21:05:48 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [1467912] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows® O58 - SDL:2016/01/28 11:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.® O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation® O58 - SDL:2016/04/17 22:39:20 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2009/08/02 02:36:00 A . (.MaxiVista - mv video driver ExtA.) -- C:\WINDOWS\System32\drivers\mvvideoexta.sys [13440] {01000000000121ED9FE138} O58 - SDL:2016/03/10 14:09:10 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [65408] =>.Malwarebytes Corporation® O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows® O58 - SDL:2016/01/22 16:35:52 A . (.SoftEther Corporation - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\Neo6_x64_VPN2.sys [38224] =>.SoftEther Corporation® O58 - SDL:2015/03/04 20:24:13 A . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\Neo_0037.sys [28640] =>.SoftEther K.K.® O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows® O58 - SDL:2013/04/12 15:52:06 A . (.C-Media Electronics Inc - C-Media Audio WDM Driver.) -- C:\WINDOWS\System32\drivers\PLTGC.sys [1327104] O58 - SDL:2015/08/17 14:01:14 A . (.Sysinternals - www.sysinternals.com - Process Explorer.) -- C:\WINDOWS\System32\drivers\PROCEXP152.SYS [34328] =>.Sysinternals® O58 - SDL:2015/06/18 18:45:16 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4496600] =>.Realtek Semiconductor Corp® O58 - SDL:2016/01/18 22:46:04 A . (.SoftEther Corporation - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\SeLow_x64.sys [51024] =>.SoftEther Corporation® O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2015/10/03 00:24:20 A . (.SteelSeries ApS - SteelSeries Device Factory Driver.) -- C:\WINDOWS\System32\drivers\ssdevfactory.sys [40568] =>.SteelSeries ApS® O58 - SDL:2016/02/02 20:09:04 A . (.SteelSeries ApS - SteelSeries HID Driver.) -- C:\WINDOWS\System32\drivers\sshid.sys [51400] =>.SteelSeries ApS® O58 - SDL:2014/10/13 07:57:48 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [110336] =>.DEVGURU CO LTD® O58 - SDL:2014/10/13 07:57:48 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2015/09/25 12:19:16 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project O58 - SDL:2009/09/16 07:02:42 A . (.Tunngle.net - TAP-Win32 Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901t.sys [31232] =>.Tunngle.net O58 - SDL:2014/11/10 13:12:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [129312] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O58 - SDL:2015/11/11 00:26:30 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\torguardtap0901.sys [39840] {0081DA02C91F7168A68F2AFBCA31C691CF} =>.The OpenVPN Project O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2015/06/17 17:04:24 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2014/10/11 14:29:02 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [917112] =>.Oracle Corporation® O58 - SDL:2014/10/11 14:27:46 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\WINDOWS\System32\drivers\VBoxNetAdp.sys [142528] =>.Oracle Corporation® O58 - SDL:2014/10/11 14:27:44 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys [129168] =>.Oracle Corporation® O58 - SDL:2015/08/06 19:00:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\visctap0901.sys [34440] =>.SparkLabs Pty Ltd® O58 - SDL:2015/01/28 15:45:24 A . (.RealVNC Ltd. - VNC Mirror Miniport.) -- C:\WINDOWS\System32\drivers\vncmirror.sys [4608] =>.RealVNC Ltd. O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows® O58 - SDL:2015/02/22 13:58:04 A . (.Windows (R) Win 7 DDK provider - Microsoft Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\womic.sys [27056] =>.Windows (R) Win 7 DDK provider ---\\ Last modified or created user files (14) - 4s O61 - LFC: 2016/04/18 09:20:45 A . (..) -- C:\Users\Dany\ZHPDiag3.exe [288487] O61 - LFC: 2016/04/18 09:23:30 A . (..) -- C:\Users\Dany\AppData\Roaming\IDM\DwnlData\Dany\ZHPDiag3_1764\ZHPDiag3.exe [1699103] O61 - LFC: 2016/04/14 12:37:49 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\Terminal Server Client\Cache\Cache0000.bin [104682508] O61 - LFC: 2016/04/14 12:39:53 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\Terminal Server Client\Cache\Cache0001.bin [104717324] O61 - LFC: 2016/04/14 12:54:14 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\Terminal Server Client\Cache\Cache0002.bin [104872972] O61 - LFC: 2016/04/15 07:30:04 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\GameDVR\KnownGameList.bin [199956] O61 - LFC: 2016/04/15 18:51:40 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\0b97656f286167aa_32.bin [25602] O61 - LFC: 2016/04/16 09:51:43 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\3b02bef527ffcccc_32.bin [18666] O61 - LFC: 2016/04/17 16:09:40 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\3e84b657233da406_32.bin [18662] O61 - LFC: 2016/04/15 19:14:32 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\5641b4cc69ed9593_32.bin [37243] O61 - LFC: 2016/04/18 10:44:59 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\8caa9a920725458a_32.bin [18662] O61 - LFC: 2016/04/18 12:10:27 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\8d7bac1791ca219f_32.bin [132706] O61 - LFC: 2016/04/15 19:12:27 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\a6b5602859630101_32.bin [20151] O61 - LFC: 2016/04/17 16:09:41 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\a725d42c225af74e_32.bin [18664] ---\\ File Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Start Menu Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Search Browser Infection (1) - 2s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Search Svchost Services (42) - 0s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\WINDOWS\System32\ikeext.dll [954368] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\WINDOWS\System32\appinfo.dll [93696] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\WINDOWS\System32\eapsvc.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [133120] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324096] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\WINDOWS\System32\SessEnv.dll [371200] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\WINDOWS\System32\ncasvc.dll [167424] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\WINDOWS\System32\NetSetupSvc.dll [189952] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [680448] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\System32\mprdim.dll [497152] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\System32\sens.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\WINDOWS\System32\tapisrv.dll [311808] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\system32\wuaueng.dll [2237952] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\WINDOWS\System32\qmgr.dll [1168896] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\WINDOWS\System32\shsvcs.dll [593920] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [348672] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [712704] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\WINDOWS\System32\lfsvc.dll [27136] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [267776] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1016832] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\WINDOWS\System32\bdesvc.dll [359936] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\WINDOWS\system32\themeservice.dll [58368] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\WINDOWS\System32\appmgmts.dll [200192] =>.Microsoft Corporation ---\\ Firewall Active Exception List (56) - 2s O87 - FAEL: "{8217E5C0-F200-4178-8A84-8A38E370A6B8}" [In-None-P17-TRUE] .(...) -- F:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe (.not file.) O87 - FAEL: "{850521AD-57DC-454B-963E-739594944413}" [In-None-P6-TRUE] .(...) -- F:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe (.not file.) O87 - FAEL: "UDP Query User{8F26D59F-FF83-46AC-AFC8-7A6D47BAF130}C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe O87 - FAEL: "TCP Query User{B7DF3819-B73B-4CF4-A84B-8E0DC8A63BBD}C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe O87 - FAEL: "UDP Query User{4A101CA1-7EBC-4CCD-82A3-166A1789881C}C:\program files (x86)\counterpath\x-lite\x-lite.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\counterpath\x-lite\x-lite.exe (.not file.) O87 - FAEL: "TCP Query User{1F6938F7-6542-4AE4-AF1B-8F7F0D564869}C:\program files (x86)\counterpath\x-lite\x-lite.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\counterpath\x-lite\x-lite.exe (.not file.) O87 - FAEL: "TCP Query User{AACF3514-A88A-41FE-9352-CADDE716C5BB}C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe" [In-None-P6-TRUE] .(...) -- C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe (.not file.) O87 - FAEL: "UDP Query User{5413E8DA-FE08-4964-9D70-F6A679C9D466}C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe" [In-None-P17-TRUE] .(...) -- C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe (.not file.) O87 - FAEL: "TCP Query User{4D76E940-C475-414F-A9BE-F7FFA580B71D}C:\program files\stairs\binaries\win32\udk.exe" [In-None-P6-TRUE] .(...) -- C:\program files\stairs\binaries\win32\udk.exe (.not file.) O87 - FAEL: "UDP Query User{74F46E12-6D21-4831-98A8-28FEA7AFE002}C:\program files\stairs\binaries\win32\udk.exe" [In-None-P17-TRUE] .(...) -- C:\program files\stairs\binaries\win32\udk.exe (.not file.) O87 - FAEL: "TCP Query User{EC606936-1F99-4753-9EA1-BE693A5DAB30}C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe (.not file.) O87 - FAEL: "UDP Query User{8D933603-BFE2-475F-A67F-9CA4EE4A6665}C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe (.not file.) O87 - FAEL: "TCP Query User{E24F3DDA-EB1D-4E55-BE9D-2213B8DE1DE1}C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe (.not file.) O87 - FAEL: "UDP Query User{9BB57B34-C3D7-474E-A16F-7745FEB2708C}C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe (.not file.) O87 - FAEL: "TCP Query User{34CA656F-594E-4628-BA18-7B1D8FB44E07}C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe (.not file.) O87 - FAEL: "UDP Query User{8B453C2A-3990-4EEB-B08B-A60CA7CF78D8}C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe (.not file.) O87 - FAEL: "{8C33B315-D19F-4436-8016-027FAE9D1A0D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VODOBOX Flash Server Trial\VLC\vlc_VDBPA.exe (.not file.) O87 - FAEL: "TCP Query User{E43EA3BF-077C-4203-A999-29CCE35C9287}C:\program files (x86)\kodi\kodi.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\kodi\kodi.exe (.not file.) O87 - FAEL: "UDP Query User{EA6004CD-2A83-4971-BB9B-42751B8AEA9C}C:\program files (x86)\kodi\kodi.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\kodi\kodi.exe (.not file.) O87 - FAEL: "TCP Query User{22B4419D-CBDD-4F3B-AD68-586425A898C5}C:\program files\airparrot 2\airparrot2.exe" [In-None-P6-TRUE] .(...) -- C:\program files\airparrot 2\airparrot2.exe (.not file.) O87 - FAEL: "UDP Query User{F6512A38-B682-41D5-A44F-0DA6A28D287F}C:\program files\airparrot 2\airparrot2.exe" [In-None-P17-TRUE] .(...) -- C:\program files\airparrot 2\airparrot2.exe (.not file.) O87 - FAEL: "TCP Query User{E108123F-5C26-42C7-881C-261219E742CA}C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe (.not file.) O87 - FAEL: "UDP Query User{9ABEDD50-CBDD-4E62-B19B-1207C6A5E567}C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe (.not file.) O87 - FAEL: "TCP Query User{828B0DE2-3782-410F-B677-9FBEFD321518}C:\program files\cloud imperium games\patcher\cigpatcher.exe" [In-None-P6-TRUE] .(...) -- C:\program files\cloud imperium games\patcher\cigpatcher.exe (.not file.) O87 - FAEL: "UDP Query User{C9B87636-C8E7-49B4-A5C5-02AF1E18A882}C:\program files\cloud imperium games\patcher\cigpatcher.exe" [In-None-P17-TRUE] .(...) -- C:\program files\cloud imperium games\patcher\cigpatcher.exe (.not file.) O87 - FAEL: "TCP Query User{3F01A5CF-1FE9-4CC9-BA79-0BAEF12A8FC4}C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe" [In-None-P6-TRUE] .(...) -- C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe (.not file.) O87 - FAEL: "UDP Query User{1B236C57-977E-4861-A13D-A9AA4B31F66E}C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe" [In-None-P17-TRUE] .(...) -- C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe (.not file.) O87 - FAEL: "{8DB94DCA-7EFD-4F68-8A6C-9E37F202B3D2}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microvirt\MEmu\MEmu.exe {5528D5543296BFE427D43B8DDC0A20C7} O87 - FAEL: "{734E5059-D7FB-4D8E-B2F9-156E7F5087BD}" [Out-None-P17-TRUE] .(...) -- C:\Program Files\Microvirt\MEmu\MEmu.exe {5528D5543296BFE427D43B8DDC0A20C7} O87 - FAEL: "TCP Query User{5E785404-4C65-4F6A-92C0-6A7DBF8ED234}C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe O87 - FAEL: "UDP Query User{B854EEAF-8D6A-4A76-95BF-E27BEE0A5FBD}C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe O87 - FAEL: "TCP Query User{5DD2C654-9D8C-4D60-9BFB-54131FE699EE}C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe (.not file.) O87 - FAEL: "UDP Query User{A067E547-B104-4802-AF71-D3F020CB3C80}C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe (.not file.) O87 - FAEL: "TCP Query User{B28043F1-197C-49FA-A5E6-3F6B08883D99}C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe (.not file.) O87 - FAEL: "UDP Query User{3AB7FF27-CB18-43D5-8DE6-59CB5BA3C384}C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe (.not file.) O87 - FAEL: "TCP Query User{11F1ECE3-BB4A-4753-910D-CA2C1F5230F4}C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe (.not file.) O87 - FAEL: "UDP Query User{475E7AAC-5EE5-4B8A-96AC-0A95BCD30930}C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe (.not file.) O87 - FAEL: "TCP Query User{1EE71EDC-2D08-4010-A55C-1AEC4169F28D}C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.) O87 - FAEL: "UDP Query User{0E7B76E2-9675-4DD8-81B3-C61FA1A33719}C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.) O87 - FAEL: "{FAD828FB-9C6A-4DE5-8918-10A627CFB2D6}" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.) O87 - FAEL: "{D2EA7142-FA03-4778-BBC1-D632EDFC4B9D}" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.) O87 - FAEL: "TCP Query User{8BBFED0F-8CEB-4C59-A83C-51730ED58855}C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.) O87 - FAEL: "UDP Query User{B395811D-03E7-4AD7-A23B-1783A3A8D136}C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.) O87 - FAEL: "{455F38F8-D398-4873-BDB4-B013C0D56469}" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.) O87 - FAEL: "{9AFD8BAC-8346-47D9-BB0D-E60C579A5995}" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.) O87 - FAEL: "{AF457EEC-C48D-4F7E-984A-87CD1EC8F274}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe (.not file.) O87 - FAEL: "{2CC73501-7495-47D2-95C1-034645B2872F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe (.not file.) O87 - FAEL: "{76498D16-51E9-4FAE-9980-8FA59F32B44D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\Tunngle.exe (.not file.) O87 - FAEL: "{05549AFF-2280-4D3E-9AA8-EA8D8C5CFC47}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\Tunngle.exe (.not file.) O87 - FAEL: "{74A568FB-0AF3-4A3A-B245-5C0FF4FD9BBF}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "TCP Query User{6537A1A3-08BA-470D-A5D4-96050A9B7154}C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.) O87 - FAEL: "UDP Query User{6015C8E2-D8E7-4733-A0FF-26AA89CD8ABA}C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.) O87 - FAEL: "{F64EEFC6-47D3-4A7F-A25C-8E05C143396B}" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.) O87 - FAEL: "{8CDF9E4F-D588-40B4-9F12-2BD24CD2D214}" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.) O87 - FAEL: "TCP Query User{B44022DA-2517-41E5-80A8-47CF36217AE3}C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe (.not file.) O87 - FAEL: "UDP Query User{78F87082-18EB-4574-A1A8-EB7DB660E254}C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe (.not file.) ---\\ Additional Scan (O88) (1) - 0s ~ No malicious or unnecessary items found. ---\\ Summary of the elements found (1) - 0s http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS ~ End of the scan, 57746 items in 00h01mn07s (1576)(0)