OTL logfile created on: 15/03/2014 21:46:21 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Alexandre\Desktop 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16521) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 3,89 Gb Total Physical Memory | 1,56 Gb Available Physical Memory | 40,16% Memory free 5,27 Gb Paging File | 2,35 Gb Available in Paging File | 44,57% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 911,67 Gb Total Space | 829,98 Gb Free Space | 91,04% Space Free | Partition Type: NTFS Drive D: | 19,07 Gb Total Space | 1,88 Gb Free Space | 9,85% Space Free | Partition Type: NTFS Computer Name: ALEXANDRE-PC | User Name: Alexandre | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - C:\Users\Alexandre\Desktop\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\Mega Browse\updateMegaBrowse.exe () PRC - C:\Program Files (x86)\Mega Browse\bin\utilMegaBrowse.exe () PRC - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe (Adobe Systems, Inc.) PRC - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe (The Software Group) PRC - C:\Program Files (x86)\View-Password-soft\ViewPassword157.exe () PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) PRC - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (WildTangent) PRC - C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkDMS.exe (Samsung) PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) PRC - C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) PRC - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) PRC - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (CyberLink) PRC - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe (CyberLink) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) PRC - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink) PRC - C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (CyberLink Corp.) PRC - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.) PRC - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe (Hewlett-Packard Development Company, L.P.) PRC - C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Hewlett-Packard Development Company, L.P.) PRC - C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe (McAfee, Inc.) PRC - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation) [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BrowserFilter.Helper.dll () MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll () MOD - C:\Program Files (x86)\Mozilla Firefox\mozjs.dll () MOD - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll () MOD - C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll () [color=#E56717]========== Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - (Samsung Link Service) -- C:\Program Files\Samsung\Samsung Link\Samsung Link.exe (Copyright 2013 SAMSUNG) SRV:[b]64bit:[/b] - (IEEtwCollectorService) -- C:\Windows\SysNative\IEEtwCollector.exe (Microsoft Corporation) SRV:[b]64bit:[/b] - (AllShare Framework DMS) -- C:\Program Files\Samsung\AllShare Framework DMS\1.3.23\AllShareFrameworkManagerDMS.exe (Samsung) SRV:[b]64bit:[/b] - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD) SRV:[b]64bit:[/b] - (WSService) -- C:\Windows\SysNative\WSService.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (BrokerInfrastructure) -- C:\Windows\SysNative\bisrv.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (lfsvc) -- C:\Windows\SysNative\GeofenceMonitorService.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (AppXSvc) -- C:\Windows\SysNative\AppXDeploymentServer.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (WdNisSvc) -- C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) SRV:[b]64bit:[/b] - (WinDefend) -- C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) SRV:[b]64bit:[/b] - (workfolderssvc) -- C:\Windows\SysNative\workfolderssvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (AppReadiness) -- C:\Windows\SysNative\AppReadiness.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (w3logsvc) -- C:\Windows\SysNative\inetsrv\w3logsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (omniserv) -- C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe (Softex Inc.) SRV:[b]64bit:[/b] - (Cachedrv server) -- C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe () SRV:[b]64bit:[/b] - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (WEPHOSTSVC) -- C:\Windows\SysNative\wephostsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (vmicvss) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (vmicrdv) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (vmicguestinterface) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (IAStorDataMgrSvc) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) SRV:[b]64bit:[/b] - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (smphost) -- C:\Windows\SysNative\smphost.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (ScDeviceEnum) -- C:\Windows\SysNative\ScDeviceEnum.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (TimeBroker) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (NcbService) -- C:\Windows\SysNative\ncbservice.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation) SRV:[b]64bit:[/b] - (mfevtp) -- C:\Windows\SysNative\mfevtps.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (mfefire) -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe () SRV:[b]64bit:[/b] - (mfecore) -- C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (McAPExe) -- C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (hpsrv) -- C:\Windows\SysNative\hpservice.exe (Hewlett-Packard Company) SRV:[b]64bit:[/b] - (MSK80Service) -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (McProxy) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (mcpltsvc) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (McOobeSv2) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (McNaiAnn) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (McMPFSvc) -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (HomeNetSvc) -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (McODS) -- C:\Program Files\mcafee\VirusScan\mcods.exe (McAfee, Inc.) SRV:[b]64bit:[/b] - (RtkAudioService) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor) SRV:[b]64bit:[/b] - (Intel(R) -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe (Intel(R) Corporation) SRV:[b]64bit:[/b] - (Intel(R) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) Corporation) SRV:[b]64bit:[/b] - (AERTFilters) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE (Andrea Electronics Corporation) SRV - (Update Mega Browse) -- C:\Program Files (x86)\Mega Browse\updateMegaBrowse.exe () SRV - (Util Mega Browse) -- C:\Program Files (x86)\Mega Browse\bin\utilMegaBrowse.exe () SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (ViewPassword) -- C:\Program Files (x86)\View-Password-soft\ViewPassword157.exe () SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation) SRV - (GamesAppIntegrationService) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (WildTangent) SRV - (AVGIDSAgent) -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) SRV - (lfsvc) -- C:\Windows\SysWOW64\GeofenceMonitorService.dll (Microsoft Corporation) SRV - (avgwd) -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) SRV - (HP Support Assistant Service) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard Company) SRV - (cphs) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe (Intel Corporation) SRV - (WAS) -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll (Microsoft Corporation) SRV - (w3logsvc) -- C:\Windows\SysWOW64\inetsrv\w3logsvc.dll (Microsoft Corporation) SRV - (AppHostSvc) -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll (Microsoft Corporation) SRV - (PrintNotify) -- C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation) SRV - (StorSvc) -- C:\Windows\SysWOW64\StorSvc.dll (Microsoft Corporation) SRV - (smphost) -- C:\Windows\SysWOW64\smphost.dll (Microsoft Corporation) SRV - (CyberLink PowerDVD 12 Media Server Service) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (CyberLink) SRV - (CyberLink PowerDVD 12 Media Server Monitor Service) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe (CyberLink) SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) SRV - (Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) SRV - (jhi_service) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) SRV - (McAWFwk) -- c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe (McAfee, Inc.) SRV - (HPWMISVC) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe (Hewlett-Packard Development Company, L.P.) SRV - (McComponentHostService) -- C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe (McAfee, Inc.) SRV - (ICCS) -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation) SRV - (GamesAppService) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe (WildTangent, Inc.) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - (ssudmdm) -- C:\Windows\SysNative\drivers\ssudmdm.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:[b]64bit:[/b] - (dg_ssudbus) -- C:\Windows\SysNative\drivers\ssudbus.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:[b]64bit:[/b] - (RTWlanE) -- C:\Windows\SysNative\drivers\rtwlane.sys (Realtek Semiconductor Corporation ) DRV:[b]64bit:[/b] - (USBXHCI) -- C:\Windows\SysNative\drivers\USBXHCI.SYS (Microsoft Corporation) DRV:[b]64bit:[/b] - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.) DRV:[b]64bit:[/b] - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (Advanced Micro Devices, Inc.) DRV:[b]64bit:[/b] - (AVGIDSHA) -- C:\Windows\SysNative\drivers\avgidsha.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (AVGIDSDriver) -- C:\Windows\SysNative\drivers\avgidsdrivera.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (Avgdiska) -- C:\Windows\SysNative\drivers\avgdiska.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (USBHUB3) -- C:\Windows\SysNative\drivers\USBHUB3.SYS (Microsoft Corporation) DRV:[b]64bit:[/b] - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (VerifierExt) -- C:\Windows\SysNative\drivers\VerifierExt.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (intelpep) -- C:\Windows\SysNative\drivers\intelpep.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (pdc) -- C:\Windows\SysNative\drivers\pdc.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (Avgldx64) -- C:\Windows\SysNative\drivers\avgldx64.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (Avgloga) -- C:\Windows\SysNative\drivers\avgloga.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (spaceport) -- C:\Windows\SysNative\drivers\spaceport.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (WdFilter) -- C:\Windows\SysNative\drivers\WdFilter.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (WdNisDrv) -- C:\Windows\SysNative\drivers\WdNisDrv.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (WdBoot) -- C:\Windows\SysNative\drivers\WdBoot.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (SerCx2) -- C:\Windows\SysNative\drivers\SerCx2.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (Avgwfpa) -- C:\Windows\SysNative\drivers\avgwfpa.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (WFPLWFS) -- C:\Windows\SysNative\drivers\wfplwfs.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (stornvme) -- C:\Windows\SysNative\drivers\stornvme.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (Avgmfx64) -- C:\Windows\SysNative\drivers\avgmfx64.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (HipShieldK) -- C:\Windows\SysNative\drivers\HipShieldK.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (Avgrkx64) -- C:\Windows\SysNative\drivers\avgrkx64.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (Avgboota) -- C:\Windows\SysNative\drivers\avgboota.sys (AVG Technologies CZ, s.r.o.) DRV:[b]64bit:[/b] - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (terminpt) -- C:\Windows\SysNative\drivers\terminpt.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (condrv) -- C:\Windows\SysNative\drivers\condrv.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (dam) -- C:\Windows\SysNative\drivers\dam.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (acpiex) -- C:\Windows\SysNative\drivers\acpiex.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (TPM) -- C:\Windows\SysNative\drivers\tpm.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (mvumis) -- C:\Windows\SysNative\drivers\mvumis.sys (Marvell Semiconductor, Inc.) DRV:[b]64bit:[/b] - (GPIOClx0101) -- C:\Windows\SysNative\drivers\msgpioclx.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (msgpiowin32) -- C:\Windows\SysNative\drivers\msgpiowin32.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:[b]64bit:[/b] - (LSI_SSS) -- C:\Windows\SysNative\drivers\lsi_sss.sys (LSI Corporation) DRV:[b]64bit:[/b] - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:[b]64bit:[/b] - (LSI_SAS3) -- C:\Windows\SysNative\drivers\lsi_sas3.sys (LSI Corporation) DRV:[b]64bit:[/b] - (ADP80XX) -- C:\Windows\SysNative\drivers\adp80xx.sys (PMC-Sierra) DRV:[b]64bit:[/b] - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:[b]64bit:[/b] - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:[b]64bit:[/b] - (3ware) -- C:\Windows\SysNative\drivers\3ware.sys (LSI) DRV:[b]64bit:[/b] - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:[b]64bit:[/b] - (EhStorTcgDrv) -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (EhStorClass) -- C:\Windows\SysNative\drivers\EhStorClass.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:[b]64bit:[/b] - (VSTXRAID) -- C:\Windows\SysNative\drivers\VSTXRAID.SYS (VIA Corporation) DRV:[b]64bit:[/b] - (UCX01000) -- C:\Windows\SysNative\drivers\UCX01000.SYS (Microsoft Corporation) DRV:[b]64bit:[/b] - (UASPStor) -- C:\Windows\SysNative\drivers\uaspstor.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (sdstor) -- C:\Windows\SysNative\drivers\sdstor.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology, Inc.) DRV:[b]64bit:[/b] - (storahci) -- C:\Windows\SysNative\drivers\storahci.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (SpbCx) -- C:\Windows\SysNative\drivers\SpbCx.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (SerCx) -- C:\Windows\SysNative\drivers\SerCx.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (wpcfltr) -- C:\Windows\SysNative\drivers\wpcfltr.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (CLFS) -- C:\Windows\SysNative\drivers\clfs.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (ReFS) -- C:\Windows\SysNative\drivers\refs.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (UEFI) -- C:\Windows\SysNative\drivers\uefi.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (vpci) -- C:\Windows\SysNative\drivers\vpci.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (WpdUpFltr) -- C:\Windows\SysNative\drivers\WpdUpFltr.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (ahcache) -- C:\Windows\SysNative\drivers\ahcache.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (BasicDisplay) -- C:\Windows\SysNative\drivers\BasicDisplay.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (BasicRender) -- C:\Windows\SysNative\drivers\BasicRender.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (HyperVideo) -- C:\Windows\SysNative\drivers\HyperVideo.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (mshidumdf) -- C:\Windows\SysNative\drivers\mshidumdf.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (acpitime) -- C:\Windows\SysNative\drivers\acpitime.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (acpipagr) -- C:\Windows\SysNative\drivers\acpipagr.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (BthAvrcpTg) -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (kdnic) -- C:\Windows\SysNative\drivers\kdnic.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (gencounter) -- C:\Windows\SysNative\drivers\vmgencounter.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (npsvctrig) -- C:\Windows\SysNative\drivers\npsvctrig.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (bthhfhid) -- C:\Windows\SysNative\drivers\BthhfHid.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (hyperkbd) -- C:\Windows\SysNative\drivers\hyperkbd.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (BthHFEnum) -- C:\Windows\SysNative\drivers\bthhfenum.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (hidi2c) -- C:\Windows\SysNative\drivers\hidi2c.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (dmvsc) -- C:\Windows\SysNative\drivers\dmvsc.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (netvsc) -- C:\Windows\SysNative\drivers\netvsc63.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (NdisVirtualBus) -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (NdisImPlatform) -- C:\Windows\SysNative\drivers\NdisImPlatform.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (MsLldp) -- C:\Windows\SysNative\drivers\mslldp.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (Ndu) -- C:\Windows\SysNative\drivers\Ndu.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (FxPPM) -- C:\Windows\SysNative\drivers\fxppm.sys (Microsoft Corporation) DRV:[b]64bit:[/b] - (IntcDAud) -- C:\Windows\SysNative\drivers\IntcDAud.sys (Intel(R) Corporation) DRV:[b]64bit:[/b] - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation) DRV:[b]64bit:[/b] - (iaStorA) -- C:\Windows\SysNative\drivers\iaStorA.sys (Intel Corporation) DRV:[b]64bit:[/b] - (RTL8168) -- C:\Windows\SysNative\drivers\Rt630x64.sys (Realtek ) DRV:[b]64bit:[/b] - (bcmfn2) -- C:\Windows\SysNative\drivers\bcmfn2.sys (Windows (R) Win 7 DDK provider) DRV:[b]64bit:[/b] - (iaStorAV) -- C:\Windows\SysNative\drivers\iaStorAV.sys (Intel Corporation) DRV:[b]64bit:[/b] - (MEIx64) -- C:\Windows\SysNative\drivers\TeeDriverx64.sys (Intel Corporation) DRV:[b]64bit:[/b] - (intaud_WaveExtensible) -- C:\Windows\SysNative\drivers\intelaud.sys (Intel Corporation) DRV:[b]64bit:[/b] - (iwdbus) -- C:\Windows\SysNative\drivers\iwdbus.sys (Intel Corporation) DRV:[b]64bit:[/b] - (cfwids) -- C:\Windows\SysNative\drivers\cfwids.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (mfewfpk) -- C:\Windows\SysNative\drivers\mfewfpk.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (mfehidk) -- C:\Windows\SysNative\drivers\mfehidk.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (mfefirek) -- C:\Windows\SysNative\drivers\mfefirek.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (mfeavfk) -- C:\Windows\SysNative\drivers\mfeavfk.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (mfeapfk) -- C:\Windows\SysNative\drivers\mfeapfk.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (mfeelamk) -- C:\Windows\SysNative\drivers\mfeelamk.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (iaLPSSi_GPIO) -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys (Intel Corporation) DRV:[b]64bit:[/b] - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated) DRV:[b]64bit:[/b] - (SmbDrvI) -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys (Synaptics Incorporated) DRV:[b]64bit:[/b] - (SmbDrv) -- C:\Windows\SysNative\drivers\Smb_driver_AMDASF.sys (Synaptics Incorporated) DRV:[b]64bit:[/b] - (iaLPSSi_I2C) -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys (Intel Corporation) DRV:[b]64bit:[/b] - (Accelerometer) -- C:\Windows\SysNative\drivers\Accelerometer.sys (Hewlett-Packard) DRV:[b]64bit:[/b] - (hpdskflt) -- C:\Windows\SysNative\drivers\hpdskflt.sys (Hewlett-Packard) DRV:[b]64bit:[/b] - (WirelessButtonDriver) -- C:\Windows\SysNative\drivers\WirelessButtonDriver64.sys (Hewlett-Packard Development Company, L.P.) DRV:[b]64bit:[/b] - (mfencrk) -- C:\Windows\SysNative\drivers\mfencrk.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (mfencbdc) -- C:\Windows\SysNative\drivers\mfencbdc.sys (McAfee, Inc.) DRV:[b]64bit:[/b] - (RSP2STOR) -- C:\Windows\SysNative\drivers\RtsP2Stor.sys (Realtek Semiconductor Corp.) DRV:[b]64bit:[/b] - (CLVirtualDrive) -- C:\Windows\SysNative\drivers\CLVirtualDrive.sys (CyberLink) DRV:[b]64bit:[/b] - (clwvd) -- C:\Windows\SysNative\drivers\clwvd.sys (CyberLink Corporation) DRV - (RTWlanE) -- C:\Windows\SysWOW64\drivers\rtwlane.sys (Realtek Semiconductor Corporation ) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86} IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{32EB8596-94B5-4755-89E1-FDA3D4AFBF6D}: "URL" = http://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS IE - HKLM\..\SearchScopes\{32EB8596-94B5-4755-89E1-FDA3D4AFBF6D}: "URL" = http://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} IE - HKLM\..\SearchScopes\{BFFED5CA-8BDF-47CC-AED0-23F4E6D77732}: "URL" = http://start.iminent.com/?appId=79354C5D-CD4B-4423-B7D0-075C6360ACE2&ref=toolbox&q={searchTerms} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKCU\..\URLSearchHook: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found IE - HKCU\..\SearchScopes,DefaultScope = IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPNTDFJS IE - HKCU\..\SearchScopes\{32EB8596-94B5-4755-89E1-FDA3D4AFBF6D}: "URL" = http://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} IE - HKCU\..\SearchScopes\{D944BB61-2E34-4DBF-A683-47E505C587DC}: "URL" = http://rover.ebay.com/rover/1/709-29563-11896-9/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = http=127.0.0.1:13828 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledAddons: a841c8b5-4960-4555-87bf-dbd75965c3f5%40aec11bbe-81d6-43aa-873c-a071b69ed8a5.com:0.94.22 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1 FF - user.js - File not found FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll File not found FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\SysWOW64\Adobe\Director\np32dsw_1203133.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.Software.com/Software Update;version=3: C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll (The Software Group) FF - HKLM\Software\MozillaPlugins\@tools.Software.com/Software Update;version=9: C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll (The Software Group) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll () FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK [2014/03/13 10:56:34 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{58bf8d19-cd2b-47b3-b133-4041a825ec39}: C:\Program Files (x86)\View-Password-soft\157.xpi [2014/03/13 13:19:15 | 000,011,562 | ---- | M] () [2014/03/15 13:47:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\Extensions [2014/03/15 20:37:49 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\Firefox\Profiles\inq9gi6s.default\extensions [2014/03/15 07:28:57 | 000,000,000 | ---D | M] ("hdtotal1.2") -- C:\Users\Alexandre\AppData\Roaming\mozilla\Firefox\Profiles\inq9gi6s.default\extensions\a841c8b5-4960-4555-87bf-dbd75965c3f5@aec11bbe-81d6-43aa-873c-a071b69ed8a5.com [2014/03/15 20:40:34 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\Firefox\Profiles\inq9gi6s.default\extensions\a841c8b5-4960-4555-87bf-dbd75965c3f5@aec11bbe-81d6-43aa-873c-a071b69ed8a5.com\extensionData [2014/03/15 20:40:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\Firefox\Profiles\inq9gi6s.default\extensions\a841c8b5-4960-4555-87bf-dbd75965c3f5@aec11bbe-81d6-43aa-873c-a071b69ed8a5.com\extensionData\plugins [2014/03/15 07:28:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\Firefox\Profiles\inq9gi6s.default\extensions\a841c8b5-4960-4555-87bf-dbd75965c3f5@aec11bbe-81d6-43aa-873c-a071b69ed8a5.com\extensionData\userCode [2014/03/15 20:06:09 | 001,393,079 | ---- | M] () (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\firefox\profiles\inq9gi6s.default\extensions\firefox@ghostery.com.xpi [2014/03/15 20:13:49 | 000,034,478 | ---- | M] () (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\firefox\profiles\inq9gi6s.default\extensions\referrercontrol@qixinglu.com.xpi [2014/03/15 20:01:10 | 000,957,290 | ---- | M] () (No name found) -- C:\Users\Alexandre\AppData\Roaming\mozilla\firefox\profiles\inq9gi6s.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014/03/13 13:20:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions [2014/03/14 20:08:28 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions [2014/03/14 20:08:29 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} O1 HOSTS File: ([2010/12/23 20:08:04 | 000,000,780 | RHS- | M]) - C:\Windows\SysNative\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2:[b]64bit:[/b] - BHO: (hdtotal1.2) - {11111111-1111-1111-1111-110511291122} - C:\Program Files (x86)\hdtotal1.2\hdtotal1.2-bho64.dll (hdtotal) O2:[b]64bit:[/b] - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) O2 - BHO: (hdtotal1.2) - {11111111-1111-1111-1111-110511291122} - C:\Program Files (x86)\hdtotal1.2\hdtotal1.2-bho.dll (hdtotal) O2 - BHO: (no name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found. O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [OPBHOBroker] C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe (Hewlett-Packard) O4:[b]64bit:[/b] - HKLM..\Run: [OPBHOBrokerDesktop] C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe (Hewlett-Packard) O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) O4:[b]64bit:[/b] - HKLM..\Run: [Samsung Link] C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe (Copyright 2013 SAMSUNG) O4:[b]64bit:[/b] - HKLM..\Run: [SimplePass] C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe (Hewlett-Packard) O4 - HKLM..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe (Hewlett-Packard Company) O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC) O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe () O4 - HKLM..\Run: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe (Hewlett-Packard Development Company, L.P.) O4 - HKLM..\Run: [IminentMessenger] C:\Program Files (x86)\Iminent\Iminent.Messengers.exe File not found O4 - HKLM..\Run: [mcpltui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.) O4 - HKLM..\Run: [offerbox] C:\Program Files (x86)\OfferBox\OfferBox.exe File not found O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [YouCam Service] C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (CyberLink Corp.) O4:[b]64bit:[/b] - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O9:[b]64bit:[/b] - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard) O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard) O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard) O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.) O13[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{6003A02B-DADE-4D4E-BAA0-0B3AC24940A0}: DhcpNameServer = 40.20.1.201 40.20.1.202 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B5E4429C-7142-4D83-8B2C-813940FA6A4F}: DhcpNameServer = 192.168.1.254 O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found O18:[b]64bit:[/b] - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~1\mcafee\msc\MCSNIE~1.DLL (McAfee, Inc.) O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation) O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) Drivers32:[b]64bit:[/b] msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32:[b]64bit:[/b] VIDC.LAGS - lagarith.dll ( ) Drivers32:[b]64bit:[/b] vidc.XVID - xvidvfw.dll () Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.) Drivers32: vidc.DIVX - C:\Windows\SysWow64\DivX.dll (DivX, Inc.) Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll () Drivers32: VIDC.LAGS - C:\Windows\SysWow64\lagarith.dll ( ) Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll () Drivers32: vidc.yv12 - C:\Windows\SysWow64\DivX.dll (DivX, Inc.) PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin NetSvcs:[b]64bit:[/b] lfsvc - C:\Windows\SysNative\GeofenceMonitorService.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] wlidsvc - C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] DsmSvc - C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] NcaSvc - C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] AppMgmt - Service SafeBootMin:[b]64bit:[/b] Base - Driver Group SafeBootMin:[b]64bit:[/b] BasicDisplay.sys - C:\Windows\SysNative\drivers\BasicDisplay.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] BasicRender.sys - C:\Windows\SysNative\drivers\BasicRender.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group SafeBootMin:[b]64bit:[/b] BrokerInfrastructure - C:\Windows\SysNative\bisrv.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] EFS - C:\Windows\SysNative\efssvc.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] File system - Driver Group SafeBootMin:[b]64bit:[/b] Filter - Driver Group SafeBootMin:[b]64bit:[/b] HelpSvc - Service SafeBootMin:[b]64bit:[/b] KeyIso - C:\Windows\SysNative\keyiso.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] LSM - C:\Windows\SysNative\lsm.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] MCODS - C:\Program Files\mcafee\VirusScan\mcods.exe (McAfee, Inc.) SafeBootMin:[b]64bit:[/b] mcpltsvc - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SafeBootMin:[b]64bit:[/b] Netlogon - C:\Windows\SysNative\netlogon.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group SafeBootMin:[b]64bit:[/b] sacsvr - Service SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group SafeBootMin:[b]64bit:[/b] SystemEventsBroker - C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] TBS - Service SafeBootMin:[b]64bit:[/b] vmms - Service SafeBootMin:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin:[b]64bit:[/b] {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootMin:[b]64bit:[/b] {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootMin: AppMgmt - Service SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: HelpSvc - Service SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: sacsvr - Service SafeBootMin: SCSI Class - Driver Group SafeBootMin: System Bus Extender - Driver Group SafeBootMin: TBS - Service SafeBootMin: vmms - Service SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin: {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootMin: {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet:[b]64bit:[/b] AppMgmt - Service SafeBootNet:[b]64bit:[/b] Base - Driver Group SafeBootNet:[b]64bit:[/b] BasicDisplay.sys - C:\Windows\SysNative\drivers\BasicDisplay.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] BasicRender.sys - C:\Windows\SysNative\drivers\BasicRender.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group SafeBootNet:[b]64bit:[/b] BrokerInfrastructure - C:\Windows\SysNative\bisrv.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] EFS - C:\Windows\SysNative\efssvc.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] File system - Driver Group SafeBootNet:[b]64bit:[/b] Filter - Driver Group SafeBootNet:[b]64bit:[/b] HelpSvc - Service SafeBootNet:[b]64bit:[/b] KeyIso - C:\Windows\SysNative\keyiso.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] LSM - C:\Windows\SysNative\lsm.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] McMPFSvc - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] MCODS - C:\Program Files\mcafee\VirusScan\mcods.exe (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] mcpltsvc - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] Messenger - Service SafeBootNet:[b]64bit:[/b] mfefire - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe () SafeBootNet:[b]64bit:[/b] mfefirek - C:\Windows\SysNative\drivers\mfefirek.sys (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] mfefirek.sys - C:\Windows\SysNative\drivers\mfefirek.sys (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] mfehidk - C:\Windows\SysNative\drivers\mfehidk.sys (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] mfehidk.sys - C:\Windows\SysNative\drivers\mfehidk.sys (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] mfevtp - C:\Windows\SysNative\mfevtps.exe (McAfee, Inc.) SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group SafeBootNet:[b]64bit:[/b] Netlogon - C:\Windows\SysNative\netlogon.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] netprofm - C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] Network - Driver Group SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group SafeBootNet:[b]64bit:[/b] rdpencdd.sys - Driver SafeBootNet:[b]64bit:[/b] rdsessmgr - Service SafeBootNet:[b]64bit:[/b] sacsvr - Service SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group SafeBootNet:[b]64bit:[/b] SmartcardSimulator - Driver SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group SafeBootNet:[b]64bit:[/b] SystemEventsBroker - C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] TBS - Service SafeBootNet:[b]64bit:[/b] TDI - Driver Group SafeBootNet:[b]64bit:[/b] VaultSvc - C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] VirtualSmartcardReader - Driver SafeBootNet:[b]64bit:[/b] vmms - Service SafeBootNet:[b]64bit:[/b] Wcmsvc - C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet:[b]64bit:[/b] {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootNet:[b]64bit:[/b] {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet: AppMgmt - Service SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: HelpSvc - Service SafeBootNet: Messenger - Service SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: rdpencdd.sys - Driver SafeBootNet: rdsessmgr - Service SafeBootNet: sacsvr - Service SafeBootNet: SCSI Class - Driver Group SafeBootNet: SmartcardSimulator - Driver SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TBS - Service SafeBootNet: TDI - Driver Group SafeBootNet: VirtualSmartcardReader - Driver SafeBootNet: vmms - Service SafeBootNet: WudfUsbccidDriver - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: {9DA2B80F-F89F-4A49-A5C2-511B085B9E8A} - Enhanced Storage Devices SafeBootNet: {A0A588A4-C46F-4B37-B7EA-C82FE89870C6} - SDA Standard Compliant SD Host Controller SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices ActiveX:[b]64bit:[/b] {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0 ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall ActiveX:[b]64bit:[/b] {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack ActiveX:[b]64bit:[/b] {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE ActiveX:[b]64bit:[/b] {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx ActiveX:[b]64bit:[/b] {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help ActiveX:[b]64bit:[/b] {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6 ActiveX:[b]64bit:[/b] {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools ActiveX:[b]64bit:[/b] {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements ActiveX:[b]64bit:[/b] {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player ActiveX:[b]64bit:[/b] {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access ActiveX:[b]64bit:[/b] {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7 ActiveX:[b]64bit:[/b] {78E345F7-E976-3595-9C30-2458D6A8EC32} - .NET Framework ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4340} - U ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install ActiveX:[b]64bit:[/b] {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding ActiveX:[b]64bit:[/b] {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts ActiveX:[b]64bit:[/b] {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help ActiveX:[b]64bit:[/b] {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface ActiveX:[b]64bit:[/b] {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework ActiveX:[b]64bit:[/b] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0 ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6 ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7 ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding ActiveX: {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - .NET Framework ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface ActiveX: {EC43E638-09F0-38CC-A585-72FCCDDF035C} - .NET Framework ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP Drivers32:[b]64bit:[/b] msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32:[b]64bit:[/b] VIDC.LAGS - lagarith.dll ( ) Drivers32:[b]64bit:[/b] vidc.XVID - xvidvfw.dll () Drivers32: msacm.l3acm - C:\Windows\SysWow64\l3codecp.acm (Fraunhofer Institut Integrierte Schaltungen IIS) Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.) Drivers32: vidc.DIVX - C:\Windows\SysWow64\DivX.dll (DivX, Inc.) Drivers32: VIDC.FFDS - C:\Windows\SysWow64\ff_vfw.dll () Drivers32: VIDC.LAGS - C:\Windows\SysWow64\lagarith.dll ( ) Drivers32: vidc.XVID - C:\Windows\SysWow64\xvidvfw.dll () Drivers32: vidc.yv12 - C:\Windows\SysWow64\DivX.dll (DivX, Inc.) CREATERESTOREPOINT Restore point Set: OTL Restore Point [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014/03/15 21:40:42 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Alexandre\Desktop\OTL.exe [2014/03/15 20:50:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee [2014/03/15 20:27:13 | 000,000,000 | ---D | C] -- C:\Shortcut_Module [2014/03/15 13:45:43 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\Samsung Link [2014/03/15 13:38:05 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\ElevatedDiagnostics [2014/03/15 13:22:26 | 000,000,000 | ---D | C] -- C:\Upload [2014/03/15 13:21:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung [2014/03/15 13:21:45 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\.swt [2014/03/15 13:21:44 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\SAMSUNG [2014/03/15 13:21:36 | 000,000,000 | ---D | C] -- C:\ProgramData\SAMSUNG [2014/03/15 13:19:47 | 000,000,000 | ---D | C] -- C:\Program Files\Samsung [2014/03/14 20:33:47 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Skyrim [2014/03/14 20:22:23 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Macromedia [2014/03/14 20:08:41 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Mozilla [2014/03/14 20:08:41 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Mozilla [2014/03/14 20:08:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla [2014/03/14 20:08:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service [2014/03/14 13:46:16 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dofus2 [2014/03/14 13:46:08 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Ankama [2014/03/14 13:26:05 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Diagnostics [2014/03/14 07:40:32 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Dofus-2 [2014/03/14 07:40:13 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Dofus [2014/03/13 21:25:30 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\vlc [2014/03/13 21:25:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN [2014/03/13 21:23:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN [2014/03/13 21:19:12 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Documents\Notes [2014/03/13 18:46:32 | 000,000,000 | ---D | C] -- C:\ProgramData\BlueStacks [2014/03/13 18:45:34 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\WildTangent [2014/03/13 17:56:43 | 000,000,000 | ---D | C] -- C:\AMD [2014/03/13 17:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\AMD [2014/03/13 17:54:14 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\poqexec.exe [2014/03/13 17:54:13 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe [2014/03/13 17:42:59 | 000,693,240 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2014/03/13 17:42:59 | 000,105,464 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2014/03/13 17:37:12 | 000,000,000 | R--D | C] -- C:\Windows\BrowserChoice [2014/03/13 17:21:25 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT [2014/03/13 16:53:36 | 002,328,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe [2014/03/13 16:53:35 | 002,065,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe [2014/03/13 16:53:35 | 001,067,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfasfsrcsnk.dll [2014/03/13 16:53:34 | 001,584,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\workfolderssvc.dll [2014/03/13 16:53:33 | 000,883,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfasfsrcsnk.dll [2014/03/13 16:53:29 | 002,134,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d9.dll [2014/03/13 16:53:26 | 001,160,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Web.Http.dll [2014/03/13 16:53:24 | 001,011,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll [2014/03/13 16:53:24 | 000,708,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iuilp.dll [2014/03/13 16:53:22 | 000,920,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAutomationCore.dll [2014/03/13 16:53:22 | 000,656,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnsapi.dll [2014/03/13 16:53:21 | 001,231,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Media.dll [2014/03/13 16:53:21 | 001,147,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAutomationCore.dll [2014/03/13 16:53:21 | 000,533,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppReadiness.dll [2014/03/13 16:53:19 | 000,699,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll [2014/03/13 16:53:18 | 000,631,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WWAHost.exe [2014/03/13 16:53:17 | 000,761,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WorkfoldersControl.dll [2014/03/13 16:53:15 | 000,578,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Networking.BackgroundTransfer.dll [2014/03/13 16:53:15 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll [2014/03/13 16:53:14 | 000,518,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WWAHost.exe [2014/03/13 16:53:11 | 000,888,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Media.dll [2014/03/13 16:53:11 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Networking.BackgroundTransfer.dll [2014/03/13 16:53:11 | 000,171,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kd_02_8086.dll [2014/03/13 16:53:10 | 000,465,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll [2014/03/13 16:53:09 | 000,391,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsmf.dll [2014/03/13 16:53:08 | 000,607,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll [2014/03/13 16:53:07 | 000,795,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll [2014/03/13 16:53:07 | 000,558,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apphelp.dll [2014/03/13 16:53:07 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll [2014/03/13 16:53:06 | 000,345,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsmf.dll [2014/03/13 16:53:06 | 000,317,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll [2014/03/13 16:53:04 | 000,286,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcsvDevice.dll [2014/03/13 16:53:04 | 000,104,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncryptsslp.dll [2014/03/13 16:53:04 | 000,088,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncryptsslp.dll [2014/03/13 16:53:03 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msched.dll [2014/03/13 16:53:02 | 000,262,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll [2014/03/13 16:53:01 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Web.Http.dll [2014/03/13 16:53:00 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\samsrv.dll [2014/03/13 16:52:57 | 000,044,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wldp.dll [2014/03/13 16:52:54 | 000,057,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\stornvme.sys [2014/03/13 16:52:53 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dafBth.dll [2014/03/13 16:52:53 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe [2014/03/13 16:52:52 | 000,184,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dafWfdProvider.dll [2014/03/13 16:52:52 | 000,054,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe [2014/03/13 16:52:51 | 000,381,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUSettingsProvider.dll [2014/03/13 16:52:51 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shsetup.dll [2014/03/13 16:52:50 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappcfg.dll [2014/03/13 16:52:50 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\shsetup.dll [2014/03/13 16:52:49 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WiFiDisplay.dll [2014/03/13 16:52:48 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappcfg.dll [2014/03/13 16:52:48 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll [2014/03/13 16:52:47 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll [2014/03/13 16:52:47 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll [2014/03/13 16:52:43 | 001,704,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll [2014/03/13 16:52:43 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WorkFoldersShell.dll [2014/03/13 16:52:43 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ftp.exe [2014/03/13 16:52:39 | 000,338,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpclip.exe [2014/03/13 16:52:39 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ftp.exe [2014/03/13 16:52:38 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\miutils.dll [2014/03/13 16:52:38 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\miutils.dll [2014/03/13 16:50:36 | 003,210,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll [2014/03/13 16:50:32 | 002,804,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll [2014/03/13 16:50:22 | 001,399,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winmde.dll [2014/03/13 16:50:20 | 002,617,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll [2014/03/13 16:50:19 | 001,374,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmpmde.dll [2014/03/13 16:50:18 | 000,282,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll [2014/03/13 16:50:17 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ubpm.dll [2014/03/13 16:50:16 | 002,295,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll [2014/03/13 16:50:13 | 001,204,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winmde.dll [2014/03/13 16:50:13 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bisrv.dll [2014/03/13 16:50:09 | 000,809,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfmp4srcsnk.dll [2014/03/13 16:50:09 | 000,032,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ploptin.dll [2014/03/13 16:50:08 | 000,745,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll [2014/03/13 16:50:08 | 000,470,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfds.dll [2014/03/13 16:50:06 | 000,663,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfmp4srcsnk.dll [2014/03/13 16:50:04 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psmsrv.dll [2014/03/13 16:50:03 | 001,415,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll [2014/03/13 16:50:02 | 000,273,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Graphics.dll [2014/03/13 16:50:01 | 000,433,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfds.dll [2014/03/13 16:49:58 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Graphics.dll [2014/03/13 16:49:56 | 000,589,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll [2014/03/13 16:49:55 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll [2014/03/13 16:49:54 | 001,227,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mispace.dll [2014/03/13 16:49:53 | 000,980,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mispace.dll [2014/03/13 16:49:53 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bi.dll [2014/03/13 16:49:52 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll [2014/03/13 16:49:52 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\BtaMPM.sys [2014/03/13 16:49:51 | 000,513,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll [2014/03/13 16:49:51 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\deviceregistration.dll [2014/03/13 16:48:10 | 001,085,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twinui.appcore.dll [2014/03/13 16:48:10 | 000,869,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twinui.appcore.dll [2014/03/13 16:47:13 | 001,302,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppXDeploymentServer.dll [2014/03/13 16:47:12 | 007,399,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe [2014/03/13 16:47:09 | 002,570,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SettingsHandlers.dll [2014/03/13 16:47:07 | 000,358,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dcomp.dll [2014/03/13 16:47:05 | 002,896,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll [2014/03/13 16:47:04 | 000,747,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlidcli.dll [2014/03/13 16:47:02 | 001,756,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPDMC.exe [2014/03/13 16:47:01 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppxAllUserStore.dll [2014/03/13 16:47:01 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AppxAllUserStore.dll [2014/03/13 16:47:00 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dcomp.dll [2014/03/13 16:46:59 | 001,476,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi [2014/03/13 16:46:59 | 001,345,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe [2014/03/13 16:46:57 | 002,266,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll [2014/03/13 16:46:56 | 000,372,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\spaceport.sys [2014/03/13 16:46:56 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppXDeploymentClient.dll [2014/03/13 16:46:55 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpncore.dll [2014/03/13 16:46:55 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AppXDeploymentClient.dll [2014/03/13 16:46:53 | 001,391,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPDMC.exe [2014/03/13 16:46:53 | 000,146,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\SerCx2.sys [2014/03/13 16:46:53 | 000,039,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\intelpep.sys [2014/03/13 16:46:52 | 000,922,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppXDeploymentExtensions.dll [2014/03/13 16:46:50 | 000,086,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pdc.sys [2014/03/13 16:46:44 | 001,843,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll [2014/03/13 16:46:44 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CredentialMigrationHandler.dll [2014/03/13 16:46:43 | 001,816,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll [2014/03/13 16:46:43 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CredentialMigrationHandler.dll [2014/03/13 16:46:42 | 000,544,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlidcli.dll [2014/03/13 16:44:46 | 018,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.UI.Xaml.dll [2014/03/13 16:44:39 | 013,949,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.UI.Xaml.dll [2014/03/13 16:44:27 | 002,143,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll [2014/03/13 16:44:26 | 001,765,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll [2014/03/13 16:44:19 | 000,960,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MFMediaEngine.dll [2014/03/13 16:44:19 | 000,481,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfsvr.dll [2014/03/13 16:44:17 | 000,628,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SettingSyncHost.exe [2014/03/13 16:44:13 | 000,749,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SettingSyncCore.dll [2014/03/13 16:44:12 | 000,802,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MFMediaEngine.dll [2014/03/13 16:44:10 | 000,381,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfsvr.dll [2014/03/13 16:44:09 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SettingSyncHost.exe [2014/03/13 16:44:07 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll [2014/03/13 16:44:01 | 000,842,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.dll [2014/03/13 16:43:59 | 000,914,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ReAgent.dll [2014/03/13 16:43:59 | 000,588,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SettingSyncCore.dll [2014/03/13 16:43:59 | 000,382,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys [2014/03/13 16:43:58 | 000,770,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ReAgent.dll [2014/03/13 16:43:58 | 000,419,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\hal.dll [2014/03/13 16:43:58 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSClient.dll [2014/03/13 16:43:57 | 000,336,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll [2014/03/13 16:43:57 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSClient.dll [2014/03/13 16:43:55 | 000,947,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\reseteng.dll [2014/03/13 16:43:55 | 000,630,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MsSpellCheckingFacility.dll [2014/03/13 16:43:52 | 000,131,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\easinvoker.exe [2014/03/13 16:43:51 | 002,140,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll [2014/03/13 16:43:51 | 001,765,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll [2014/03/13 16:43:51 | 001,720,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll [2014/03/13 16:43:51 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sti.dll [2014/03/13 16:43:50 | 000,516,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll [2014/03/13 16:43:49 | 000,325,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBXHCI.SYS [2014/03/13 16:43:49 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\easwrt.dll [2014/03/13 16:43:47 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\easwrt.dll [2014/03/13 16:43:21 | 000,197,704 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\HipShieldK.sys [2014/03/13 14:49:48 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\BitZipper [2014/03/13 14:46:45 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\BitZipper [2014/03/13 14:46:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitZipper [2014/03/13 14:46:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BitZipper [2014/03/13 14:46:04 | 003,516,816 | ---- | C] (Bitberry Software ) -- C:\Users\Alexandre\Desktop\BitZipper502TrialSetupFr.exe [2014/03/13 14:21:25 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll [2014/03/13 14:21:25 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll [2014/03/13 14:21:23 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll [2014/03/13 14:21:23 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll [2014/03/13 14:21:23 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll [2014/03/13 14:21:23 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll [2014/03/13 14:21:22 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll [2014/03/13 14:21:22 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll [2014/03/13 14:21:20 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll [2014/03/13 14:21:20 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll [2014/03/13 14:21:20 | 000,021,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_2.dll [2014/03/13 14:21:20 | 000,018,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_2.dll [2014/03/13 14:21:18 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll [2014/03/13 14:21:18 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll [2014/03/13 14:21:18 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll [2014/03/13 14:21:18 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll [2014/03/13 14:21:17 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll [2014/03/13 14:21:17 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll [2014/03/13 14:21:16 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll [2014/03/13 14:21:16 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll [2014/03/13 14:21:15 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll [2014/03/13 14:21:15 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll [2014/03/13 14:21:14 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll [2014/03/13 14:21:14 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll [2014/03/13 14:21:14 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll [2014/03/13 14:21:14 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll [2014/03/13 14:21:13 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll [2014/03/13 14:21:13 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll [2014/03/13 14:21:11 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll [2014/03/13 14:21:11 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll [2014/03/13 14:21:10 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll [2014/03/13 14:21:10 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll [2014/03/13 14:21:10 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll [2014/03/13 14:21:10 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll [2014/03/13 14:21:08 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll [2014/03/13 14:21:08 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll [2014/03/13 14:21:08 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll [2014/03/13 14:21:08 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll [2014/03/13 14:21:06 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll [2014/03/13 14:21:06 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll [2014/03/13 14:21:04 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll [2014/03/13 14:21:04 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll [2014/03/13 14:21:04 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll [2014/03/13 14:21:04 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll [2014/03/13 14:21:01 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll [2014/03/13 14:21:01 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll [2014/03/13 14:20:58 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll [2014/03/13 14:20:58 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll [2014/03/13 14:20:54 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll [2014/03/13 14:20:54 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll [2014/03/13 14:20:41 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll [2014/03/13 14:20:41 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll [2014/03/13 14:20:38 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll [2014/03/13 14:20:38 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll [2014/03/13 14:20:38 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll [2014/03/13 14:20:38 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll [2014/03/13 14:20:37 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll [2014/03/13 14:20:37 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll [2014/03/13 14:20:36 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll [2014/03/13 14:20:36 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll [2014/03/13 14:20:35 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll [2014/03/13 14:20:35 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll [2014/03/13 14:20:34 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll [2014/03/13 14:20:34 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll [2014/03/13 14:20:29 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll [2014/03/13 14:20:29 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll [2014/03/13 14:20:27 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll [2014/03/13 14:20:27 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll [2014/03/13 14:17:01 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx [2014/03/13 13:50:45 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\AnkamaCertificates [2014/03/13 13:48:18 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Reg [2014/03/13 13:48:15 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Reg.C9ECCBDBA4E09304DEEFB106465BC17F6D6749B9.1 [2014/03/13 13:48:15 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\app [2014/03/13 13:48:13 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Dofus-3 [2014/03/13 13:48:13 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Dofus2 [2014/03/13 13:47:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR [2014/03/13 13:47:43 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Macromedia [2014/03/13 13:45:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe [2014/03/13 13:45:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe [2014/03/13 13:43:03 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee Security Scan [2014/03/13 13:43:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus [2014/03/13 13:43:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\McAfee Security Scan [2014/03/13 13:42:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2014/03/13 13:41:40 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Adobe [2014/03/13 13:34:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Software [2014/03/13 13:21:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight [2014/03/13 13:20:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight [2014/03/13 13:20:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox [2014/03/13 13:20:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\hdtotal1.2 [2014/03/13 13:19:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\View-Password-soft [2014/03/13 13:16:56 | 001,643,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi [2014/03/13 13:16:53 | 001,507,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe [2014/03/13 13:16:28 | 000,075,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll [2014/03/13 13:15:20 | 000,570,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll [2014/03/13 13:12:22 | 004,604,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll [2014/03/13 13:12:21 | 002,397,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll [2014/03/13 13:07:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector [2014/03/13 13:07:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Advanced System Protector [2014/03/13 13:01:09 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\AVG [2014/03/13 12:58:34 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG [2014/03/13 12:58:11 | 000,000,000 | -HSD | C] -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} [2014/03/13 12:55:33 | 000,136,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\wfplwfs.sys [2014/03/13 12:55:31 | 000,872,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfplat.dll [2014/03/13 12:55:30 | 000,698,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfplat.dll [2014/03/13 12:54:44 | 000,393,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll [2014/03/13 12:54:43 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll [2014/03/13 12:54:41 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\AVS4YOU [2014/03/13 12:54:37 | 001,341,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll [2014/03/13 12:54:10 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU [2014/03/13 12:53:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU [2014/03/13 12:52:53 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll [2014/03/13 12:52:52 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll [2014/03/13 12:52:50 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll [2014/03/13 12:52:49 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll [2014/03/13 12:52:43 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll [2014/03/13 12:52:42 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll [2014/03/13 12:52:40 | 001,964,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl [2014/03/13 12:52:38 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll [2014/03/13 12:52:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\AVSMedia [2014/03/13 12:52:37 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe [2014/03/13 12:52:32 | 000,627,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll [2014/03/13 12:52:17 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll [2014/03/13 12:52:13 | 002,041,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl [2014/03/13 12:52:12 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe [2014/03/13 12:52:11 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe [2014/03/13 12:52:06 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll [2014/03/13 12:52:05 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll [2014/03/13 12:51:59 | 000,708,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll [2014/03/13 12:51:59 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe [2014/03/13 12:51:58 | 005,768,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll [2014/03/13 12:51:58 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll [2014/03/13 12:51:57 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll [2014/03/13 12:51:43 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3a.dll [2014/03/13 12:51:43 | 000,000,000 | ---D | C] -- C:\ProgramData\AVS4YOU [2014/03/13 12:51:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVS4YOU [2014/03/13 12:48:17 | 003,395,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSService.dll [2014/03/13 12:48:15 | 000,848,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSShared.dll [2014/03/13 12:48:14 | 000,695,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSShared.dll [2014/03/13 12:48:07 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSCollect.exe [2014/03/13 12:48:03 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll [2014/03/13 12:48:03 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll [2014/03/13 12:47:35 | 000,236,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdFilter.sys [2014/03/13 12:47:31 | 000,035,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdBoot.sys [2014/03/13 12:47:29 | 000,124,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdNisDrv.sys [2014/03/13 12:47:18 | 001,943,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll [2014/03/13 12:47:11 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcaui.exe [2014/03/13 12:47:11 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pcaui.exe [2014/03/13 12:47:10 | 000,548,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll [2014/03/13 12:47:05 | 002,133,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfcore.dll [2014/03/13 12:47:04 | 002,143,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfcore.dll [2014/03/13 12:47:04 | 001,928,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\combase.dll [2014/03/13 12:47:03 | 001,371,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\combase.dll [2014/03/13 12:47:03 | 000,764,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfmpeg2srcsnk.dll [2014/03/13 12:47:03 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\SkyDrive [2014/03/13 12:47:02 | 006,640,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll [2014/03/13 12:47:02 | 001,287,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll [2014/03/13 12:47:02 | 000,669,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfmpeg2srcsnk.dll [2014/03/13 12:47:01 | 005,770,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll [2014/03/13 12:47:00 | 004,175,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbgeng.dll [2014/03/13 12:47:00 | 001,486,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dbghelp.dll [2014/03/13 12:46:59 | 002,873,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbgeng.dll [2014/03/13 12:46:59 | 000,407,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Faultrep.dll [2014/03/13 12:46:58 | 001,238,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dbghelp.dll [2014/03/13 12:46:58 | 000,458,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WerFault.exe [2014/03/13 12:46:58 | 000,369,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Faultrep.dll [2014/03/13 12:46:57 | 001,057,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll [2014/03/13 12:46:57 | 000,408,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WerFault.exe [2014/03/13 12:46:57 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpencom.dll [2014/03/13 12:46:57 | 000,233,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll [2014/03/13 12:46:56 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpencom.dll [2014/03/13 12:46:56 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWWIN.EXE [2014/03/13 12:46:56 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DWWIN.EXE [2014/03/13 12:46:56 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll [2014/03/13 12:46:55 | 000,447,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sppcomapi.dll [2014/03/13 12:46:55 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll [2014/03/13 12:46:54 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll [2014/03/13 12:46:52 | 000,586,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll [2014/03/13 12:46:52 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll [2014/03/13 12:46:51 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll [2014/03/13 12:46:50 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll [2014/03/13 12:46:36 | 001,113,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll [2014/03/13 12:46:26 | 000,787,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uDWM.dll [2014/03/13 12:46:25 | 000,615,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MDMAgent.exe [2014/03/13 12:46:25 | 000,287,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mdmregistration.dll [2014/03/13 12:46:24 | 000,240,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mdmregistration.dll [2014/03/13 12:46:22 | 013,209,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twinui.dll [2014/03/13 12:46:22 | 007,416,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.UI.Search.dll [2014/03/13 12:46:20 | 011,702,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twinui.dll [2014/03/13 12:46:19 | 004,961,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.UI.Search.dll [2014/03/13 12:46:18 | 001,105,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll [2014/03/13 12:46:16 | 001,462,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\propsys.dll [2014/03/13 12:46:01 | 004,217,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncEngine.dll [2014/03/13 12:46:00 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SkyDrive.exe [2014/03/13 12:45:56 | 002,804,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll [2014/03/13 12:45:56 | 000,919,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MrmCoreR.dll [2014/03/13 12:45:55 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SkyDriveTelemetry.dll [2014/03/13 12:45:55 | 000,628,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MrmCoreR.dll [2014/03/13 12:45:53 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SkyDriveShell.dll [2014/03/13 12:45:52 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SkyDriveShell.dll [2014/03/13 12:45:46 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winbici.dll [2014/03/13 12:19:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mega Browse [2014/03/13 12:19:37 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\DivX [2014/03/13 12:19:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX [2014/03/13 12:19:12 | 000,000,000 | ---D | C] -- C:\Program Files\DivX [2014/03/13 12:19:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DivX Shared [2014/03/13 12:18:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid [2014/03/13 12:18:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Xvid [2014/03/13 12:18:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow [2014/03/13 12:17:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DivX [2014/03/13 12:17:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ffdshow [2014/03/13 12:17:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirectVobSub [2014/03/13 12:17:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter [2014/03/13 12:17:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lame For Audacity [2014/03/13 12:17:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DirectVobSub [2014/03/13 12:17:39 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\LavFilters [2014/03/13 12:17:39 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter [2014/03/13 12:17:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Haali [2014/03/13 12:17:39 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\CDXReader [2014/03/13 12:17:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenSource Flash Video Splitter [2014/03/13 12:17:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DSP-worx [2014/03/13 12:17:38 | 000,000,000 | ---D | C] -- C:\ProgramData\DivX [2014/03/13 12:17:26 | 000,019,544 | ---- | C] (System Speedup) -- C:\Windows\SysNative\roboot64.exe [2014/03/13 12:17:09 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Programs [2014/03/13 12:16:53 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\DigitalSites [2014/03/13 12:09:21 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\Documents\My Games [2014/03/13 12:03:38 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\hpqlog [2014/03/13 11:50:19 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\AVG2014 [2014/03/13 11:49:32 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\TuneUp Software [2014/03/13 11:49:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG [2014/03/13 11:48:22 | 000,000,000 | -H-D | C] -- C:\$AVG [2014/03/13 11:48:22 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014 [2014/03/13 11:48:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG [2014/03/13 11:41:16 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\Documents\Avatar [2014/03/13 11:41:06 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\CyberLink [2014/03/13 11:32:21 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files [2014/03/13 11:32:21 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\MFAData [2014/03/13 11:32:21 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData [2014/03/13 11:32:21 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Avg2014 [2014/03/13 11:22:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google [2014/03/13 11:22:52 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Google [2014/03/13 11:22:18 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Apps [2014/03/13 11:22:17 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Deployment [2014/03/13 11:18:58 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\HPConnectedMusic [2014/03/13 11:17:05 | 000,000,000 | ---D | C] -- C:\Jeux [2014/03/13 10:59:37 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Hewlett-Packard [2014/03/13 10:58:18 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\SkyDrive.old [2014/03/13 10:57:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Synaptics [2014/03/13 10:57:45 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Hewlett-Packard [2014/03/13 10:57:44 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Synaptics [2014/03/13 10:57:41 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Power2Go8 [2014/03/13 10:57:33 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\Documents\Youcam [2014/03/13 10:57:30 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\CyberLink [2014/03/13 10:56:41 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\ATI [2014/03/13 10:56:41 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\ATI [2014/03/13 10:55:33 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2014/03/13 10:55:33 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Searches [2014/03/13 10:55:33 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Contacts [2014/03/13 10:55:33 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2014/03/13 10:55:33 | 000,000,000 | -H-D | C] -- C:\Users\Alexandre\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned [2014/03/13 10:55:25 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\VirtualStore [2014/03/13 10:55:25 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Adobe [2014/03/13 10:55:22 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services [2014/03/13 10:55:02 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Packages [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Voisinage réseau [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Voisinage d'impression [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\AppData\Local\Temporary Internet Files [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\SendTo [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Recent [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Modèles [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Documents\Mes vidéos [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Documents\Mes images [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Mes documents [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Menu Démarrer [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Documents\Ma musique [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Local Settings [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\AppData\Local\Historique [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Cookies [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\Application Data [2014/03/13 10:54:33 | 000,000,000 | -HSD | C] -- C:\Users\Alexandre\AppData\Local\Application Data [2014/03/13 10:54:32 | 000,000,000 | --SD | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Videos [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Saved Games [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Pictures [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Music [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Links [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Favorites [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Downloads [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Documents [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\Desktop [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2014/03/13 10:54:32 | 000,000,000 | R--D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility [2014/03/13 10:54:32 | 000,000,000 | -H-D | C] -- C:\Users\Alexandre\Documents\hp.system.package.metadata [2014/03/13 10:54:32 | 000,000,000 | -H-D | C] -- C:\Users\Alexandre\Documents\hp.applications.package.appdata [2014/03/13 10:54:32 | 000,000,000 | -H-D | C] -- C:\Users\Alexandre\AppData [2014/03/13 10:54:32 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Temp [2014/03/13 10:54:32 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Local\Microsoft [2014/03/13 10:54:32 | 000,000,000 | ---D | C] -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2014/03/13 10:50:31 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2014/03/13 09:45:04 | 000,000,000 | -HSD | C] -- C:\ProgramData\Modèles [2014/03/13 09:45:04 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mes vidéos [2014/03/13 09:45:04 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mes images [2014/03/13 09:45:04 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Démarrer [2014/03/13 09:45:04 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Ma musique [2014/03/13 09:45:04 | 000,000,000 | -HSD | C] -- C:\Program Files\Fichiers communs [2014/03/13 09:45:04 | 000,000,000 | -HSD | C] -- C:\ProgramData\Bureau [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014/03/15 21:47:38 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin [2014/03/15 21:46:00 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014/03/15 21:40:45 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Alexandre\Desktop\OTL.exe [2014/03/15 21:16:00 | 000,000,332 | ---- | M] () -- C:\Windows\tasks\Digital Sites.job [2014/03/15 20:50:52 | 000,001,867 | ---- | M] () -- C:\Users\Public\Desktop\McAfee LiveSafe – Internet Security.lnk [2014/03/15 20:48:45 | 000,000,442 | ---- | M] () -- C:\Windows\tasks\View Password Update.job [2014/03/15 20:47:04 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2014/03/15 20:45:56 | 000,001,536 | ---- | M] () -- C:\Windows\tasks\hdtotal1.2-updater.job [2014/03/15 20:45:54 | 000,002,562 | ---- | M] () -- C:\Windows\tasks\hdtotal1.2-firefoxinstaller.job [2014/03/15 20:45:52 | 000,003,122 | ---- | M] () -- C:\Windows\tasks\hdtotal1.2-chromeinstaller.job [2014/03/15 20:45:49 | 000,001,490 | ---- | M] () -- C:\Windows\tasks\hdtotal1.2-codedownloader.job [2014/03/15 20:45:49 | 000,001,390 | ---- | M] () -- C:\Windows\tasks\hdtotal1.2-enabler.job [2014/03/15 20:45:01 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys [2014/03/15 20:45:00 | 3345,600,512 | -HS- | M] () -- C:\hiberfil.sys [2014/03/15 20:39:14 | 000,001,217 | ---- | M] () -- C:\Users\Public\Desktop\Photos Snapfish.lnk [2014/03/15 20:39:07 | 000,001,030 | ---- | M] () -- C:\Users\Alexandre\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2014/03/15 20:24:30 | 002,168,832 | ---- | M] () -- C:\Users\Alexandre\Desktop\Shortcut_Module.exe [2014/03/15 13:16:02 | 000,000,067 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\WB.CFG [2014/03/15 07:41:40 | 000,001,829 | ---- | M] () -- C:\Users\Alexandre\Desktop\Dofus - Raccourci.lnk [2014/03/15 07:41:19 | 000,000,008 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\DofusAppId0_1 [2014/03/15 07:41:10 | 000,000,008 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\DofusAppId0_3 [2014/03/15 07:36:19 | 000,000,117 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\D2Info0 [2014/03/14 20:08:36 | 000,001,166 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014/03/14 19:43:24 | 000,000,008 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\DofusAppId0_2 [2014/03/13 21:25:00 | 000,001,089 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk [2014/03/13 20:50:18 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf [2014/03/13 18:07:14 | 001,970,416 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2014/03/13 18:07:14 | 000,847,512 | ---- | M] () -- C:\Windows\SysNative\perfh00C.dat [2014/03/13 18:07:14 | 000,787,990 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2014/03/13 18:07:14 | 000,175,100 | ---- | M] () -- C:\Windows\SysNative\perfc00C.dat [2014/03/13 18:07:14 | 000,161,748 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2014/03/13 17:41:38 | 000,359,216 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2014/03/13 15:19:50 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_LocationProvider_01_11_00.Wdf [2014/03/13 14:49:46 | 000,001,062 | ---- | M] () -- C:\Users\Alexandre\Application Data\Microsoft\Internet Explorer\Quick Launch\BitZipper.lnk [2014/03/13 14:49:46 | 000,001,038 | ---- | M] () -- C:\Users\Alexandre\Desktop\BitZipper.lnk [2014/03/13 14:46:07 | 003,516,816 | ---- | M] (Bitberry Software ) -- C:\Users\Alexandre\Desktop\BitZipper502TrialSetupFr.exe [2014/03/13 13:45:46 | 000,002,046 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk [2014/03/13 13:43:02 | 000,002,189 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk [2014/03/13 13:43:02 | 000,002,189 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014/03/13 13:37:00 | 000,001,656 | ---- | M] () -- C:\Windows\SysWow64\${LOGFILE} [2014/03/13 13:07:44 | 000,001,220 | ---- | M] () -- C:\Users\Public\Desktop\Advanced System Protector.lnk [2014/03/13 12:53:26 | 000,001,260 | ---- | M] () -- C:\Users\Alexandre\Desktop\AVS Video Converter.lnk [2014/03/13 12:17:54 | 000,001,998 | ---- | M] () -- C:\Windows\unins000.dat [2014/03/13 12:17:36 | 000,715,038 | ---- | M] () -- C:\Windows\unins000.exe [2014/03/13 11:49:32 | 000,001,002 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk [2014/03/13 11:31:09 | 000,000,448 | ---- | M] () -- C:\Users\Alexandre\Desktop\Ordinateur - Raccourci.lnk [2014/03/13 10:55:24 | 000,002,151 | ---- | M] () -- C:\Users\Public\Desktop\WildTangent Games for HP.lnk [2014/03/04 23:53:05 | 000,105,464 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2014/03/04 23:53:04 | 000,693,240 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe [2014/03/01 05:17:43 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe [2014/03/01 04:54:33 | 005,768,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll [2014/03/01 04:42:12 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll [2014/03/01 03:25:42 | 000,703,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll [2014/03/01 03:25:22 | 000,817,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll [2014/02/22 13:16:06 | 000,139,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\poqexec.exe [2014/02/22 12:24:08 | 000,124,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014/03/15 20:24:25 | 002,168,832 | ---- | C] () -- C:\Users\Alexandre\Desktop\Shortcut_Module.exe [2014/03/15 19:17:28 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin [2014/03/15 07:33:28 | 000,001,829 | ---- | C] () -- C:\Users\Alexandre\Desktop\Dofus - Raccourci.lnk [2014/03/14 20:17:40 | 000,001,002 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014/03/14 20:08:35 | 000,001,178 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk [2014/03/14 20:08:35 | 000,001,166 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2014/03/14 07:40:32 | 000,000,008 | ---- | C] () -- C:\Users\Alexandre\AppData\Roaming\DofusAppId0_2 [2014/03/14 07:40:13 | 000,000,008 | ---- | C] () -- C:\Users\Alexandre\AppData\Roaming\DofusAppId0_1 [2014/03/13 21:25:00 | 000,001,089 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk [2014/03/13 20:50:18 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf [2014/03/13 16:43:47 | 000,138,240 | ---- | C] () -- C:\Windows\SysNative\OEMLicense.dll [2014/03/13 16:43:46 | 000,103,936 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll [2014/03/13 15:19:50 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_LocationProvider_01_11_00.Wdf [2014/03/13 14:46:42 | 000,001,062 | ---- | C] () -- C:\Users\Alexandre\Application Data\Microsoft\Internet Explorer\Quick Launch\BitZipper.lnk [2014/03/13 14:46:42 | 000,001,038 | ---- | C] () -- C:\Users\Alexandre\Desktop\BitZipper.lnk [2014/03/13 13:48:14 | 000,000,117 | ---- | C] () -- C:\Users\Alexandre\AppData\Roaming\D2Info0 [2014/03/13 13:48:14 | 000,000,008 | ---- | C] () -- C:\Users\Alexandre\AppData\Roaming\DofusAppId0_3 [2014/03/13 13:45:46 | 000,002,457 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk [2014/03/13 13:45:46 | 000,002,046 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk [2014/03/13 13:43:02 | 000,002,189 | ---- | C] () -- C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk [2014/03/13 13:43:02 | 000,002,189 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014/03/13 13:36:28 | 000,001,656 | ---- | C] () -- C:\Windows\SysWow64\${LOGFILE} [2014/03/13 13:21:52 | 000,001,536 | ---- | C] () -- C:\Windows\tasks\hdtotal1.2-updater.job [2014/03/13 13:21:47 | 000,001,390 | ---- | C] () -- C:\Windows\tasks\hdtotal1.2-enabler.job [2014/03/13 13:21:37 | 000,001,490 | ---- | C] () -- C:\Windows\tasks\hdtotal1.2-codedownloader.job [2014/03/13 13:21:17 | 000,002,562 | ---- | C] () -- C:\Windows\tasks\hdtotal1.2-firefoxinstaller.job [2014/03/13 13:20:24 | 000,003,122 | ---- | C] () -- C:\Windows\tasks\hdtotal1.2-chromeinstaller.job [2014/03/13 13:19:20 | 000,000,442 | ---- | C] () -- C:\Windows\tasks\View Password Update.job [2014/03/13 13:16:08 | 000,000,067 | ---- | C] () -- C:\Users\Alexandre\AppData\Roaming\WB.CFG [2014/03/13 13:07:44 | 000,001,220 | ---- | C] () -- C:\Users\Public\Desktop\Advanced System Protector.lnk [2014/03/13 13:07:27 | 000,016,896 | ---- | C] () -- C:\Windows\SysNative\sasnative64.exe [2014/03/13 12:53:26 | 000,001,260 | ---- | C] () -- C:\Users\Alexandre\Desktop\AVS Video Converter.lnk [2014/03/13 12:46:57 | 000,386,722 | ---- | C] () -- C:\Windows\SysNative\ApnDatabase.xml [2014/03/13 12:46:15 | 000,009,701 | ---- | C] () -- C:\Windows\SysWow64\connectedsearch-results.searchconnector-ms [2014/03/13 12:46:15 | 000,009,701 | ---- | C] () -- C:\Windows\SysNative\connectedsearch-results.searchconnector-ms [2014/03/13 12:18:22 | 000,696,832 | ---- | C] () -- C:\Windows\SysNative\xvidcore.dll [2014/03/13 12:18:22 | 000,255,488 | ---- | C] () -- C:\Windows\SysNative\xvidvfw.dll [2014/03/13 12:18:22 | 000,173,568 | ---- | C] () -- C:\Windows\SysNative\xvid.ax [2014/03/13 12:18:21 | 000,645,632 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2014/03/13 12:18:21 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\xvid.ax [2014/03/13 12:18:20 | 000,240,640 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2014/03/13 12:18:03 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll [2014/03/13 12:17:51 | 000,178,688 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [2014/03/13 12:17:50 | 000,216,064 | ---- | C] ( ) -- C:\Windows\SysWow64\lagarith.dll [2014/03/13 12:17:49 | 000,148,992 | ---- | C] ( ) -- C:\Windows\SysNative\lagarith.dll [2014/03/13 12:17:45 | 000,715,038 | ---- | C] () -- C:\Windows\unins000.exe [2014/03/13 12:17:44 | 000,001,998 | ---- | C] () -- C:\Windows\unins000.dat [2014/03/13 12:16:54 | 000,000,332 | ---- | C] () -- C:\Windows\tasks\Digital Sites.job [2014/03/13 11:49:32 | 000,001,002 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2014.lnk [2014/03/13 11:31:09 | 000,000,448 | ---- | C] () -- C:\Users\Alexandre\Desktop\Ordinateur - Raccourci.lnk [2014/03/13 11:21:25 | 000,001,030 | ---- | C] () -- C:\Users\Alexandre\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk [2014/03/13 10:55:25 | 000,001,036 | ---- | C] () -- C:\Users\Alexandre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2014/03/13 10:55:24 | 000,002,151 | ---- | C] () -- C:\Users\Public\Desktop\WildTangent Games for HP.lnk [2014/03/13 10:55:22 | 000,001,217 | ---- | C] () -- C:\Users\Public\Desktop\Photos Snapfish.lnk [2014/03/13 10:54:32 | 000,000,352 | ---- | C] () -- C:\Users\Alexandre\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk [2014/03/13 10:54:32 | 000,000,334 | ---- | C] () -- C:\Users\Alexandre\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk [2013/12/12 06:25:02 | 000,123,392 | ---- | C] () -- C:\Windows\SysWow64\amdhdl32.dll [2013/11/20 00:37:08 | 000,451,072 | ---- | C] () -- C:\Windows\SysWow64\ISSRemoveSP.exe [2013/11/20 00:32:08 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblup.dat [2013/10/22 09:50:04 | 000,025,600 | ---- | C] () -- C:\Windows\SysWow64\MediaDB.dll [2013/10/22 09:48:02 | 000,707,072 | ---- | C] () -- C:\Windows\SysWow64\ContentDirectoryPresenter.dll [2013/08/26 07:13:37 | 001,996,162 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2013/08/22 16:36:43 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2013/08/22 16:36:42 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2013/08/22 15:46:23 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2013/08/22 08:01:23 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2013/08/22 04:32:36 | 000,046,080 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2013/08/22 00:55:20 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2013/08/22 00:52:39 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat [2013/08/20 16:16:12 | 000,303,104 | ---- | C] () -- C:\Windows\SysWow64\igdmd32.dll [2013/08/20 16:14:12 | 000,180,736 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll [2013/08/20 16:13:48 | 000,142,848 | ---- | C] () -- C:\Windows\SysWow64\igdail32.dll [2013/08/20 10:49:44 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe [2013/08/20 10:49:44 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe [2013/08/20 10:06:26 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat [2013/08/20 10:06:26 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat [2013/07/23 19:18:54 | 000,046,592 | ---- | C] () -- C:\Windows\SysWow64\boost_thread-vc90-mt-1_47.dll [2013/07/23 19:18:46 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\boost_date_time-vc90-mt-1_47.dll [2013/07/23 19:18:42 | 000,704,000 | ---- | C] () -- C:\Windows\SysWow64\boost_regex-vc90-mt-1_47.dll [2013/07/23 19:18:40 | 000,227,840 | ---- | C] () -- C:\Windows\SysWow64\boost_serialization-vc90-mt-1_47.dll [2013/07/23 19:18:38 | 000,130,048 | ---- | C] () -- C:\Windows\SysWow64\boost_filesystem-vc90-mt-1_47.dll [2013/07/23 19:18:38 | 000,012,800 | ---- | C] () -- C:\Windows\SysWow64\boost_system-vc90-mt-1_47.dll [2013/05/11 17:17:52 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll [color=#E56717]========== ZeroAccess Check ==========[/color] [2013/09/05 19:42:12 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2013/12/09 09:05:24 | 021,199,256 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2013/12/09 05:51:04 | 018,643,560 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2013/08/22 10:49:49 | 000,921,088 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2013/08/22 03:45:10 | 000,691,712 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2013/08/22 10:45:17 | 000,483,840 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< >[/color] [color=#A23BEC]< HKLM\SOFTWARE\Microsoft\Intern​et Explorer\MAIN\FeatureControl|FEATURE_BROWSER_EMULATION /rs >[/color] [color=#A23BEC]< HKEY_USERS\.DEFAULT\Software\M​icrosoft\Internet Explorer\Main\FeatureControl|feature_enable_ie_compression /rs >[/color] [color=#A23BEC]< HKEY_USERS\S-1-5-18\Software\M​icrosoft\Internet Explorer\Main\FeatureControl|feature_enable_ie_compression /rs >[/color] [color=#A23BEC]< hklm\software\clients\startmen​uinternet|command /rs >[/color] [color=#A23BEC]< hklm\software\clients\startmen​uinternet|command /64 /rs >[/color] [color=#A23BEC]< HKLM\SOFTWARE\Microsoft\Window​s NT\CurrentVersion\Drivers /s >[/color] [color=#A23BEC]< HKLM\SOFTWARE\Microsoft\Window​s NT\CurrentVersion\drivers.desc /s >[/color] [color=#A23BEC]< %temp%\smtmp\1\*.* /s >[/color] [color=#A23BEC]< %temp%\smtmp\2\*.* /s >[/color] [color=#A23BEC]< %temp%\smtmp\4\*.* /s >[/color] [color=#A23BEC]< nslookup http://www.google.fr /c >[/color] Serveur : UnKnown Address: 192.168.1.254 [color=#A23BEC]< %systemroot%\system32\drivers\​*.sys /lockedfiles >[/color] [color=#A23BEC]< %APPDATA%\*.exe /s >[/color] [2013/04/12 15:10:43 | 000,106,496 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\DigitalSites\UpdateProc\UpdateTask.exe [2013/05/30 13:26:40 | 000,202,752 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\LavFilters\UltimateCodec.exe [2014/03/13 13:47:39 | 000,054,632 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Alexandre\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe [2014/03/13 18:45:55 | 001,194,080 | ---- | M] (WildTangent, Inc.) -- C:\Users\Alexandre\AppData\Roaming\WildTangent\Updater\GameConsole\GameConsole-4.0.26.48-to-4.0.34.5.exe [2012/11/29 02:52:32 | 000,049,824 | ---- | M] (WildTangent) -- C:\Users\Alexandre\AppData\Roaming\WildTangent\Updater\GameConsole\Park-{4bb4c38f-a33b-4358-bfa3-3d23709fbd48}.exe [2014/03/13 18:46:19 | 000,000,172 | ---- | M] () -- C:\Users\Alexandre\AppData\Roaming\WildTangent\WildTangent Games\App\DPConfig\InstallTouchpoints-hp.exe_filedata [2012/11/29 02:52:32 | 000,572,064 | ---- | M] (WildTangent, Inc.) -- C:\Users\Alexandre\AppData\Roaming\WildTangent\WildTangent Games\App\Update\Updater.exe [color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color] [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2013/08/22 13:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\SysNative\drivers\AGP440.sys [2013/08/22 13:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_1d5376df88365b19\AGP440.sys [2013/08/22 13:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\WinSxS\amd64_machine.inf_31bf3856ad364e35_6.3.9600.16384_none_aad14d4692a7dfee\AGP440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2013/08/22 13:43:41 | 000,026,464 | ---- | M] (Microsoft Corporation) MD5=74B14192CF79A72F7536B27CB8814FBD -- C:\Windows\SysNative\drivers\atapi.sys [2013/08/22 13:43:41 | 000,026,464 | ---- | M] (Microsoft Corporation) MD5=74B14192CF79A72F7536B27CB8814FBD -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_64aa4354da84c2df\atapi.sys [2013/08/22 13:43:41 | 000,026,464 | ---- | M] (Microsoft Corporation) MD5=74B14192CF79A72F7536B27CB8814FBD -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.3.9600.16384_none_cdf68824f580d510\atapi.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2013/08/22 09:46:35 | 000,164,352 | ---- | M] (Microsoft Corporation) MD5=C6796EA22B513E3457514D92DCDB1A3D -- C:\Windows\SysNative\drivers\cdrom.sys [2013/08/22 09:46:35 | 000,164,352 | ---- | M] (Microsoft Corporation) MD5=C6796EA22B513E3457514D92DCDB1A3D -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_42e9c29f0affc440\cdrom.sys [2013/08/22 09:46:35 | 000,164,352 | ---- | M] (Microsoft Corporation) MD5=C6796EA22B513E3457514D92DCDB1A3D -- C:\Windows\WinSxS\amd64_cdrom.inf_31bf3856ad364e35_6.3.9600.16384_none_5067bbed77be70be\cdrom.sys [color=#A23BEC]< MD5 for: CTFMON.EXE >[/color] [2013/08/22 12:26:19 | 000,010,240 | ---- | M] (Microsoft Corporation) MD5=1833FB3042FACC2B3BC7B8EDC29DFB2A -- C:\Windows\SysNative\ctfmon.exe [2013/08/22 12:26:19 | 000,010,240 | ---- | M] (Microsoft Corporation) MD5=1833FB3042FACC2B3BC7B8EDC29DFB2A -- C:\Windows\WinSxS\amd64_microsoft-windows-t..cesframework-ctfmon_31bf3856ad364e35_6.3.9600.16384_none_8deeecde6488909b\ctfmon.exe [2013/08/22 04:59:42 | 000,010,752 | ---- | M] (Microsoft Corporation) MD5=C931AE0310FBCA1E89CA7A3494D9B9FD -- C:\Windows\SysWOW64\ctfmon.exe [2013/08/22 04:59:42 | 000,010,752 | ---- | M] (Microsoft Corporation) MD5=C931AE0310FBCA1E89CA7A3494D9B9FD -- C:\Windows\WinSxS\x86_microsoft-windows-t..cesframework-ctfmon_31bf3856ad364e35_6.3.9600.16384_none_31d0515aac2b1f65\ctfmon.exe [color=#A23BEC]< MD5 for: DISK.SYS >[/color] [2013/08/22 13:39:44 | 000,100,192 | ---- | M] (Microsoft Corporation) MD5=4D40C9B33F738797CF50E77CB7C53E85 -- C:\Windows\SysNative\drivers\disk.sys [2013/08/22 13:39:44 | 000,100,192 | ---- | M] (Microsoft Corporation) MD5=4D40C9B33F738797CF50E77CB7C53E85 -- C:\Windows\SysNative\DriverStore\FileRepository\disk.inf_amd64_ab219c1a4b22e430\disk.sys [2013/08/22 13:39:44 | 000,100,192 | ---- | M] (Microsoft Corporation) MD5=4D40C9B33F738797CF50E77CB7C53E85 -- C:\Windows\WinSxS\amd64_disk.inf_31bf3856ad364e35_6.3.9600.16384_none_ea84e1ef482389ce\disk.sys [color=#A23BEC]< MD5 for: DWM.EXE >[/color] [2013/08/22 10:26:31 | 000,110,080 | ---- | M] (Microsoft Corporation) MD5=B4BBC6E4998042EF21437EED52EC0273 -- C:\Windows\SysNative\dwm.exe [2013/08/22 10:26:31 | 000,110,080 | ---- | M] (Microsoft Corporation) MD5=B4BBC6E4998042EF21437EED52EC0273 -- C:\Windows\WinSxS\amd64_microsoft-windows-d..ndowmanager-process_31bf3856ad364e35_6.3.9600.16384_none_24a5622a996ce4e5\dwm.exe [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2012/01/31 12:22:06 | 000,006,952 | ---- | M] () MD5=D9A27F35D231BAC3AD58E922C7644E8B -- C:\Program Files (x86)\CyberLink\PowerDirector10\EventLog.dll [color=#A23BEC]< MD5 for: EXPLORER.EXE >[/color] [2013/10/22 07:03:47 | 002,065,448 | ---- | M] (Microsoft Corporation) MD5=1A0BC9598E4A58FC84570FFF5A108E58 -- C:\Windows\SysWOW64\explorer.exe [2013/10/22 07:03:47 | 002,065,448 | ---- | M] (Microsoft Corporation) MD5=1A0BC9598E4A58FC84570FFF5A108E58 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16441_none_4ceff22781f6788c\explorer.exe [2013/08/22 06:25:34 | 002,063,408 | ---- | M] (Microsoft Corporation) MD5=2CA8E3C9335C3C8BAEB335345E48364D -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16384_none_4cc7b16f8214372e\explorer.exe [2013/10/22 08:55:27 | 002,328,872 | ---- | M] (Microsoft Corporation) MD5=63DC38C3E4564B2405D562855643ABA2 -- C:\Windows\explorer.exe [2013/10/22 08:55:27 | 002,328,872 | ---- | M] (Microsoft Corporation) MD5=63DC38C3E4564B2405D562855643ABA2 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16441_none_429b47d54d95b691\explorer.exe [2013/11/20 10:20:24 | 002,065,960 | ---- | M] (Microsoft Corporation) MD5=712B0D2ADE5297563168C997DDC2DD13 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16408_none_4d2233dd81cfba29\explorer.exe [2013/08/22 13:39:51 | 002,328,880 | ---- | M] (Microsoft Corporation) MD5=8479DC46E9A09015C0777A16BC22A15D -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16384_none_4273071d4db37533\explorer.exe [2013/11/20 10:20:19 | 002,328,328 | ---- | M] (Microsoft Corporation) MD5=C1400519D76A364E974E47BBA62B95B0 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16408_none_42cd898b4d6ef82e\explorer.exe [color=#A23BEC]< MD5 for: IASTORV.SYS >[/color] [2013/08/22 13:43:45 | 000,412,000 | ---- | M] (Intel Corporation) MD5=A2200C3033FA4EF249FC096A7A7D02A2 -- C:\Windows\SysNative\drivers\iaStorV.sys [2013/08/22 13:43:45 | 000,412,000 | ---- | M] (Intel Corporation) MD5=A2200C3033FA4EF249FC096A7A7D02A2 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_5069105fb236ae4b\iaStorV.sys [2013/08/22 13:43:45 | 000,412,000 | ---- | M] (Intel Corporation) MD5=A2200C3033FA4EF249FC096A7A7D02A2 -- C:\Windows\WinSxS\amd64_iastorv.inf_31bf3856ad364e35_6.3.9600.16384_none_9fcfb2835bbf0103\iaStorV.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2013/09/17 10:11:11 | 001,118,040 | ---- | M] (Microsoft Corporation) MD5=35FDC2B6E811C6E8508B70C79112C47D -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16405_none_4a6b5fcffbc14927\ndis.sys [2013/08/22 14:25:35 | 001,118,552 | ---- | M] (Microsoft Corporation) MD5=424B0796F85BB0DADD4438EAFFADA133 -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16384_none_4a13de3ffc031231\ndis.sys [2013/11/20 10:20:19 | 001,119,576 | ---- | M] (Microsoft Corporation) MD5=AD9086052A5E5153AF43FE74138A4B27 -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16408_none_4a6e60adfbbe952c\ndis.sys [2013/11/25 02:32:57 | 001,119,064 | ---- | M] (Microsoft Corporation) MD5=ED39D676080A1AEA755F1DEC1A8DF1A4 -- C:\Windows\SysNative\drivers\ndis.sys [2013/11/25 02:32:57 | 001,119,064 | ---- | M] (Microsoft Corporation) MD5=ED39D676080A1AEA755F1DEC1A8DF1A4 -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16475_none_4a1fb05bfbfa0cbe\ndis.sys [color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color] [2013/08/22 03:49:21 | 000,688,640 | ---- | M] (Microsoft Corporation) MD5=CEBE4E2D2C6F3D6E87201C21B877929C -- C:\Windows\SysWOW64\netlogon.dll [2013/08/22 03:49:21 | 000,688,640 | ---- | M] (Microsoft Corporation) MD5=CEBE4E2D2C6F3D6E87201C21B877929C -- C:\Windows\WinSxS\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.3.9600.16384_none_f8cac1a04051b0c6\netlogon.dll [2013/08/22 10:59:26 | 000,832,512 | ---- | M] (Microsoft Corporation) MD5=E01B8CE6646E055D2B806AE4DD5A1202 -- C:\Windows\SysNative\netlogon.dll [2013/08/22 10:59:26 | 000,832,512 | ---- | M] (Microsoft Corporation) MD5=E01B8CE6646E055D2B806AE4DD5A1202 -- C:\Windows\WinSxS\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.3.9600.16384_none_ee76174e0bf0eecb\netlogon.dll [color=#A23BEC]< MD5 for: NVSTOR.SYS >[/color] [2013/08/22 13:43:32 | 000,168,288 | ---- | M] (NVIDIA Corporation) MD5=1F43ABFFAC3D6CA356851D517392966E -- C:\Windows\SysNative\drivers\nvstor.sys [2013/08/22 13:43:32 | 000,168,288 | ---- | M] (NVIDIA Corporation) MD5=1F43ABFFAC3D6CA356851D517392966E -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_7ba65ba4b222e751\nvstor.sys [2013/08/22 13:43:32 | 000,168,288 | ---- | M] (NVIDIA Corporation) MD5=1F43ABFFAC3D6CA356851D517392966E -- C:\Windows\WinSxS\amd64_nvraid.inf_31bf3856ad364e35_6.3.9600.16384_none_2a99233292f5aadb\nvstor.sys [color=#A23BEC]< MD5 for: RASACD.SYS >[/color] [2013/08/22 12:40:01 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=2C56F0EE27E4EF70CA4B4983D3638905 -- C:\Windows\SysNative\drivers\rasacd.sys [2013/08/22 12:40:01 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=2C56F0EE27E4EF70CA4B4983D3638905 -- C:\Windows\WinSxS\amd64_microsoft-windows-rasautodial_31bf3856ad364e35_6.3.9600.16384_none_00985ec1394a25d7\rasacd.sys [color=#A23BEC]< MD5 for: RDPCLIP.EXE >[/color] [2013/09/14 11:05:15 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=4082B1F66087FC1D8B4759569A194391 -- C:\Windows\SysNative\rdpclip.exe [2013/09/14 11:05:15 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=4082B1F66087FC1D8B4759569A194391 -- C:\Windows\WinSxS\amd64_microsoft-windows-t..lipboardredirection_31bf3856ad364e35_6.3.9600.16404_none_f2eaf1f3ded84ec8\rdpclip.exe [2013/08/22 20:12:13 | 000,338,944 | ---- | M] (Microsoft Corporation) MD5=9C3BB8587F132D6566B5E84F87A50A02 -- C:\Windows\WinSxS\amd64_microsoft-windows-t..lipboardredirection_31bf3856ad364e35_6.3.9600.16384_none_f29470addf193129\rdpclip.exe [color=#A23BEC]< MD5 for: SCECLI.DLL >[/color] [2013/08/22 03:48:17 | 000,207,360 | ---- | M] (Microsoft Corporation) MD5=1F142D5BD1C3869C5D902779B6FEC3EF -- C:\Windows\SysWOW64\scecli.dll [2013/08/22 03:48:17 | 000,207,360 | ---- | M] (Microsoft Corporation) MD5=1F142D5BD1C3869C5D902779B6FEC3EF -- C:\Windows\WinSxS\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.3.9600.16384_none_3320ecb8e1733781\scecli.dll [2013/08/22 10:55:43 | 000,271,360 | ---- | M] (Microsoft Corporation) MD5=1F1B8D07708E40E54C55B392C78ECCE2 -- C:\Windows\SysNative\scecli.dll [2013/08/22 10:55:43 | 000,271,360 | ---- | M] (Microsoft Corporation) MD5=1F1B8D07708E40E54C55B392C78ECCE2 -- C:\Windows\WinSxS\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.3.9600.16384_none_28cc4266ad127586\scecli.dll [color=#A23BEC]< MD5 for: SFLOPPY.SYS >[/color] [2013/08/22 12:40:00 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=472B7A5AC181C050888DB454663DD764 -- C:\Windows\SysNative\drivers\sfloppy.sys [2013/08/22 12:40:00 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=472B7A5AC181C050888DB454663DD764 -- C:\Windows\SysNative\DriverStore\FileRepository\flpydisk.inf_amd64_07f27cf0dbb1f69a\sfloppy.sys [2013/08/22 12:40:00 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=472B7A5AC181C050888DB454663DD764 -- C:\Windows\WinSxS\amd64_flpydisk.inf_31bf3856ad364e35_6.3.9600.16384_none_d7c870384e72c5b7\sfloppy.sys [color=#A23BEC]< MD5 for: TASKENG.EXE >[/color] [2013/08/22 10:04:47 | 000,468,480 | ---- | M] (Microsoft Corporation) MD5=00A3F73C3A9E4EC0E11A4EA84C4BF788 -- C:\Windows\SysNative\taskeng.exe [2013/08/22 10:04:47 | 000,468,480 | ---- | M] (Microsoft Corporation) MD5=00A3F73C3A9E4EC0E11A4EA84C4BF788 -- C:\Windows\WinSxS\amd64_microsoft-windows-taskscheduler-engine_31bf3856ad364e35_6.3.9600.16384_none_d66aad3992d173cb\taskeng.exe [2013/08/22 03:16:39 | 000,355,328 | ---- | M] (Microsoft Corporation) MD5=4DAE5611613F50F54638E341E2F28ECD -- C:\Windows\SysWOW64\taskeng.exe [2013/08/22 03:16:39 | 000,355,328 | ---- | M] (Microsoft Corporation) MD5=4DAE5611613F50F54638E341E2F28ECD -- C:\Windows\WinSxS\x86_microsoft-windows-taskscheduler-engine_31bf3856ad364e35_6.3.9600.16384_none_7a4c11b5da740295\taskeng.exe [color=#A23BEC]< MD5 for: TASKHOST.EXE >[/color] [2013/08/22 13:42:49 | 000,084,696 | ---- | M] (Microsoft Corporation) MD5=EDE582496D0CADEE35EA2B1076FF19A8 -- C:\Windows\SysNative\taskhost.exe [2013/08/22 13:42:49 | 000,084,696 | ---- | M] (Microsoft Corporation) MD5=EDE582496D0CADEE35EA2B1076FF19A8 -- C:\Windows\WinSxS\amd64_microsoft-windows-taskhost_31bf3856ad364e35_6.3.9600.16384_none_18fd08642e4cdf6d\taskhost.exe [color=#A23BEC]< MD5 for: TCPIP.SYS >[/color] [2013/11/05 21:12:19 | 002,551,128 | ---- | M] (Microsoft Corporation) MD5=3D9A5AC880D7AA2305812D665D24ED23 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16456_none_a3fee49b3a43236c\tcpip.sys [2013/11/20 10:20:19 | 002,555,224 | ---- | M] (Microsoft Corporation) MD5=59238CA23C6C7E881A2D403FC90A8C3B -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16408_none_a436f4cb3a18ca65\tcpip.sys [2013/10/08 11:13:33 | 002,551,640 | ---- | M] (Microsoft Corporation) MD5=6617F44D2432C529B2249A0498B6B40A -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16423_none_a41c53813a2d8394\tcpip.sys [2013/08/22 14:25:35 | 002,549,600 | ---- | M] (Microsoft Corporation) MD5=C9436791C9DD3B5206DDBB1F75EE3E54 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16384_none_a3dc725d3a5d476a\tcpip.sys [2014/01/29 09:47:44 | 002,543,960 | ---- | M] (Microsoft Corporation) MD5=ECC68BD5347BDE9631EE68274858A41F -- C:\Windows\SysNative\drivers\tcpip.sys [2014/01/29 09:47:44 | 002,543,960 | ---- | M] (Microsoft Corporation) MD5=ECC68BD5347BDE9631EE68274858A41F -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16521_none_a41a54d33a2f4e0d\tcpip.sys [color=#A23BEC]< MD5 for: USBPRINT.SYS >[/color] [2013/08/22 12:36:33 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=4D655E3B684BE9B0F7FFD8A2935C348C -- C:\Windows\SysNative\drivers\usbprint.sys [2013/08/22 12:36:33 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=4D655E3B684BE9B0F7FFD8A2935C348C -- C:\Windows\SysNative\DriverStore\FileRepository\usbprint.inf_amd64_a0a409c28ffadf63\usbprint.sys [2013/08/22 12:36:33 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=4D655E3B684BE9B0F7FFD8A2935C348C -- C:\Windows\WinSxS\amd64_usbprint.inf_31bf3856ad364e35_6.3.9600.16384_none_23b8227595610192\usbprint.sys [color=#A23BEC]< MD5 for: USBSCAN.SYS >[/color] [2013/08/22 12:39:58 | 000,044,544 | ---- | M] (Microsoft Corporation) MD5=F04D164C4168701A4E7835607722E5F1 -- C:\Windows\SysNative\DriverStore\FileRepository\sti.inf_amd64_e6529a9a653b2764\usbscan.sys [2013/08/22 12:39:58 | 000,044,544 | ---- | M] (Microsoft Corporation) MD5=F04D164C4168701A4E7835607722E5F1 -- C:\Windows\WinSxS\amd64_sti.inf_31bf3856ad364e35_6.3.9600.16384_none_4a9d3173b4bda747\usbscan.sys [color=#A23BEC]< MD5 for: USERINIT.EXE >[/color] [2013/08/22 11:03:12 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=08C191B2917862BE90C33E31CB6B6D79 -- C:\Windows\SysNative\userinit.exe [2013/08/22 11:03:12 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=08C191B2917862BE90C33E31CB6B6D79 -- C:\Windows\WinSxS\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.3.9600.16384_none_cce71a20a5a6fe7f\userinit.exe [2013/08/22 03:54:12 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=41636F77AD6D9A396EA34E4786B96F2B -- C:\Windows\SysWOW64\userinit.exe [2013/08/22 03:54:12 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=41636F77AD6D9A396EA34E4786B96F2B -- C:\Windows\WinSxS\x86_microsoft-windows-userinit_31bf3856ad364e35_6.3.9600.16384_none_70c87e9ced498d49\userinit.exe [color=#A23BEC]< MD5 for: VOLSNAP.SYS >[/color] [2013/08/22 13:39:15 | 000,312,160 | ---- | M] (Microsoft Corporation) MD5=9F9CE33B50611A1C61A46B8911E0B30B -- C:\Windows\SysNative\DriverStore\FileRepository\volume.inf_amd64_50d690313539fa92\volsnap.sys [2013/08/22 13:39:15 | 000,312,160 | ---- | M] (Microsoft Corporation) MD5=9F9CE33B50611A1C61A46B8911E0B30B -- C:\Windows\WinSxS\amd64_volume.inf_31bf3856ad364e35_6.3.9600.16384_none_0675178bd00c0141\volsnap.sys [2014/01/31 17:15:23 | 000,311,640 | ---- | M] (Microsoft Corporation) MD5=C85C075DE5B6D0FE116043054DE8EE02 -- C:\Windows\SysNative\drivers\volsnap.sys [2014/01/31 17:15:23 | 000,311,640 | ---- | M] (Microsoft Corporation) MD5=C85C075DE5B6D0FE116043054DE8EE02 -- C:\Windows\SysNative\DriverStore\FileRepository\volume.inf_amd64_ad014cb4eed6e08e\volsnap.sys [2014/01/31 17:15:23 | 000,311,640 | ---- | M] (Microsoft Corporation) MD5=C85C075DE5B6D0FE116043054DE8EE02 -- C:\Windows\WinSxS\amd64_volume.inf_31bf3856ad364e35_6.3.9600.16523_none_06b4fa95cfdc3a92\volsnap.sys [color=#A23BEC]< MD5 for: WININIT.EXE >[/color] [2013/08/22 10:58:29 | 000,144,384 | ---- | M] (Microsoft Corporation) MD5=48CFA7BE561A7BE144C29BB912055016 -- C:\Windows\SysNative\wininit.exe [2013/08/22 10:58:29 | 000,144,384 | ---- | M] (Microsoft Corporation) MD5=48CFA7BE561A7BE144C29BB912055016 -- C:\Windows\WinSxS\amd64_microsoft-windows-wininit_31bf3856ad364e35_6.3.9600.16384_none_21b118d9d847ad16\wininit.exe [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2013/08/22 10:55:08 | 000,564,736 | ---- | M] (Microsoft Corporation) MD5=7C94FDA3809015B8F2208D2E1C221F17 -- C:\Windows\SysNative\winlogon.exe [2013/08/22 10:55:08 | 000,564,736 | ---- | M] (Microsoft Corporation) MD5=7C94FDA3809015B8F2208D2E1C221F17 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.3.9600.16384_none_60816121a8e88269\winlogon.exe [color=#A23BEC]< %systemroot%\*. /mp /s >[/color] [color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color] [color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 94 bytes -> C:\Users\Alexandre\SkyDrive.old:ms-properties @Alternate Data Stream - 162 bytes -> C:\Users\Alexandre\SkyDrive:ms-properties < End of report >