cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.4.18.88 By Nicolas Coolman (2016/04/18)
~ Run by Dany (Administrator) (2016/04/18 12:12:53)
~ Web: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\Dany\Desktop\ZHPDiag.txt
~ Report: C:\Users\Dany\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 10240)

---\\ Internet Browsers (2) - 0s
GCIE: Google Chrome v49.0.2623.112
MSIE: Internet Explorer v11.0.10240.16766

---\\ Windows Product Information (3) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ System protection software (3) - 0s
Avira Antivirus v15.0.16.282
Malwarebytes Anti-Malware version 2.2.1.1043
Windows Defender (Deactivate)

---\\ Surveillance software (1) - 1s
Adobe Flash Player 21 NPAPI

---\\ Information on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8324.58 MB (76% free)
System Restore: Activé (Enable)
System drive C: has 74 GB () free of 243 GB

---\\ Connection to the system mode (3) - 0s
~ Computer Name: DANY-PC
~ User Name: Dany
~ Logged in as Administrator

---\\ Enumeration of the disk units (1) - 0s
~ Drive C: has 74 GB free of 243 GB (System)

---\\ State of the Windows Security Center (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (24) - 0s
[MD5.D2EAEC106F183572317AF7D68E381063] - 25/11/2015 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4532304] =>.Microsoft Windows®
[MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation
[MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 05/08/2015 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [290312] =>.Microsoft Windows Publisher®
[MD5.71EF55BA035CD459D8230501D067D2F8] - 31/01/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [2849792] =>.Microsoft Corporation
[MD5.DA32F9BFA7851AD4247353EA03755DE6] - 05/01/2016 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [578560] =>.Microsoft Corporation
[MD5.ECB1943967424DFB96E03F6A098434EF] - 05/08/2015 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation
[MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [680256] =>.Microsoft Windows®
[MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] =>.Microsoft Windows®
[MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] =>.Microsoft Windows®
[MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows®
[MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation
[MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation
[MD5.55D5C5B0B9F9B65BD452136A384E6EAC] - 23/02/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation
[MD5.27E248CD861AFED4DF0C48F4C853E7F0] - 25/11/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] =>.Microsoft Corporation
[MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation
[MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation
[MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] =>.Microsoft Corporation
[MD5.F0D791348AD254360CC3C3E501CCB745] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [273408] =>.Microsoft Corporation
[MD5.BA8DC96D1DD7785EB0589CB1777208B7] - 01/12/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2115936] =>.Microsoft Windows®
[MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation
[MD5.2521520142F7853E39028AE6BD66E072] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation
[MD5.A32AED8C644734B283A7C9D08D76064D] - 10/07/2015 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] =>.Microsoft Corporation
[MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116064] =>.Microsoft Windows®
[MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] =>.Microsoft Windows®

---\\ Non Microsoft non disabled Windows Services (25) - 1s
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe =>.AMD
O23 - Service: ACP User Service (amdacpusrsvc) . (.Advanced Micro Devices - AMD ACP Binaries.) - C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe =>.Advanced Micro Devices
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe =>.ASUSTeK Computer Inc.®
O23 - Service: Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira.OE.ServiceHost.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (...) - C:\Program Files (x86)\BlueStacks\HD-Service.exe (.not file.)
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (...) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (.not file.)
O23 - Service: DTSAudioSvc (DTSAudioSvc) . (.DTS, Inc - DTS Audio Service.) - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe =>.DTS, Inc.®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (...) - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe (.not file.)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel(R) Rapid Storage Technology®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: SoftEther VPN Client (SEVPNCLIENT) . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) - C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe =>.SoftEther K.K.®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD®
O23 - Service: TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 11.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
O23 - Service: (Update service) . (.Popcorn Time - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time
O23 - Service: ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros

---\\ Services not Microsoft (SR=Run, SS=Stop) (28) - 9s

SR - Auto [05/04/2016] [ 260112] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.AMD
SR - Auto [21/03/2016] [ 121856] ACP User Service (amdacpusrsvc) . (.Advanced Micro Devices.) - C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe =>.Advanced Micro Devices
SS - Auto [18/03/2016] [ 955736] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [18/03/2016] [ 466504] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [18/03/2016] [ 466504] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe =>.Avira Operations GmbH & Co. KG®
SS - Auto [18/03/2016] [ 1424880] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [07/10/2015] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [07/05/2013] [ 936728] ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe =>.ASUSTeK Computer Inc.®
SS - Auto [22/10/2014] [ 164656] Avira Service Host (Avira.OE.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Disabl [21/05/2014] [ 385808] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe =>.Bluestack Systems, Inc.®
SR - Auto [07/10/2013] [ 240576] DTSAudioSvc (DTSAudioSvc) . (.DTS, Inc.) - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe =>.DTS, Inc.®
SS - Auto [09/04/2016] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [09/04/2016] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Auto [04/11/2015] [ 19440] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel(R) Rapid Storage Technology®
SS - Demand [13/05/2014] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SS - Auto [10/11/2014] [ 158496] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SS - Auto [10/11/2014] [ 409376] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SS - Disabl [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
SS - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Auto [18/01/2016] [ 5250280] SoftEther VPN Client (SEVPNCLIENT) . (.SoftEther VPN Project at University of Tsukuba, Japan.) - C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe =>.SoftEther K.K.®
SR - Auto [29/01/2016] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [13/10/2014] [ 743688] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD®
SS - Demand [31/03/2016] [ 835664] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [02/03/2016] [ 6942480] TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
SR - Auto [17/07/2015] [ 339968] (Update service) . (.Popcorn Time.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time
SR - Auto [28/09/2014] [ 323584] ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros

---\\ Task Planned Automatically (21) - 5s
[MD5.00000000000000000000000000000000] [APT] [TaskName] (...) -- Task To Run (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.4B7C7D77FF8863DE05F5B673D0D1BCB5] [APT] [AMD Updater] (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [10334408] (.Activate.) =>.Advanced Micro Devices, Inc.®
[MD5.EC7BF707FBE2C766A567E47515D7F746] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6667992] (.Activate.) =>.Piriform Ltd®
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
[MD5.C457854F0B883D9C8574B868C1DB4826] [APT] [GyazoUpdateTaskMachine] (.(c) Nota Inc. All rights reserved..) -- C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [4694717] (.Activate.)
[MD5.C457854F0B883D9C8574B868C1DB4826] [APT] [GyazoUpdateTaskMachineDaily] (.(c) Nota Inc. All rights reserved..) -- C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [4694717] (.Activate.)
[MD5.8A3A1B1D58C43A45517321BC8C650752] [APT] [klcp_update] (...) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1175040] (.Activate.)
[MD5.AE8ED86C45C1947E7DB964DA39AE4845] [APT] [SamsungMagician] (.Samsung Electronics..) -- C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [4838816] (.Activate.) =>.Samsung Electronics Co., Ltd.®
[MD5.00000000000000000000000000000000] [APT] [{C1399141-95EC-4C58-9A65-2DE484EF7765}] (...) -- C:\Program Files (x86)\Portal\Portal.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.293B50CE76DE28B513B9FF0B58782513] [APT] [UAC pass\] (...) -- C:\Program Files (x86)\VPNetwork LLC\TorGuard\TorGuardDesktopQt.exe [946312] (.Activate.) {00A4658A922A1A96F2F67CEBE86FB42483}
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1076] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1080] =>.Google Inc®
O39 - APT: AMD Updater - (.Advanced Micro Devices, Inc..) -- C:\WINDOWS\System32\Tasks\AMD Updater [3764] =>.Advanced Micro Devices, Inc.®
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2236] =>.Piriform Ltd®
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3368] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3592] =>.Google Inc®
O39 - APT: GyazoUpdateTaskMachine - (.(c) Nota Inc. All rights reserved..) -- C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachine [2508]
O39 - APT: GyazoUpdateTaskMachineDaily - (.(c) Nota Inc. All rights reserved..) -- C:\WINDOWS\System32\Tasks\GyazoUpdateTaskMachineDaily [2648]
O39 - APT: klcp_update - (...) -- C:\WINDOWS\System32\Tasks\klcp_update [3008]
O39 - APT: SamsungMagician - (.Samsung Electronics..) -- C:\WINDOWS\System32\Tasks\SamsungMagician [2580] =>.Samsung Electronics Co., Ltd.®

---\\ Process running (34) - 1s
[MD5.D2AC5BEE06DAD97FBDB9E0D743C800A4] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\System32\atiesrxx.exe [260112] [PID.1312] {330000002D4E7AEC99B0F05F7300000000002D} =>.AMD
[MD5.BBF8F831C7720DD5135D8C4C8325187A] - (...) -- C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728] [PID.1536] =>.ASUSTeK Computer Inc.®
[MD5.549F291D09EC7AFF0170C66E56616EAF] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\System32\atieclxx.exe [573456] [PID.1616] {330000002D4E7AEC99B0F05F7300000000002D} =>.AMD
[MD5.98C06275DB53A1E70AB8CB94013B20D4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466504] [PID.2340] =>.Avira Operations GmbH & Co. KG®
[MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2448] =>.Apple Inc.®
[MD5.98C06275DB53A1E70AB8CB94013B20D4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466504] [PID.2456] =>.Avira Operations GmbH & Co. KG®
[MD5.6688B6F74C360CBC366B7AF948D9084D] - (.DTS, Inc - DTS Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe [240576] [PID.2464] =>.DTS, Inc.®
[MD5.2D564BB1C4559A517B390A031955714D] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104] [PID.2476] =>.Apple Inc.®
[MD5.BF94CD46764019A080DE9B47C6DDEFED] - (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856] [PID.2548] =>.Advanced Micro Devices
[MD5.3E98CE04689597C76B3EF4D3D0323836] - (.Skype Technologies - Skype Updater Service.) -- C:\Program Files (x86)\Skype\Updater\Updater.exe [327296] [PID.2864] =>.Skype Software Sarl®
[MD5.E9BDC3C1B67723856895626A192E40B6] - (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe [5250280] [PID.2880] =>.SoftEther K.K.®
[MD5.BD93D1A0E0A7A96BEA4585F17C9B3307] - (.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe [339968] [PID.3080] =>.Popcorn Time
[MD5.86B8B1F5C1189D68B07666784BE882FE] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584] [PID.3104] =>.Atheros
[MD5.9DA3B55B17B54789AFB8C657D4ACE4D7] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688] [PID.3240] =>.DEVGURU CO LTD®
[MD5.E9D702580349582413503A28F8329B32] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480] [PID.3296] =>.TeamViewer®
[MD5.10578A03586B8727D4B549351CAF4174] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe [1036576] [PID.1892] =>.Avira Operations GmbH & Co. KG®
[MD5.293B50CE76DE28B513B9FF0B58782513] - (...) -- C:\Program Files (x86)\VPNetwork LLC\TorGuard\TorGuardDesktopQt.exe [946312] [PID.6276] {00A4658A922A1A96F2F67CEBE86FB42483}
[MD5.A15FF7FFA54109281D5742D396271DFC] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056] [PID.6960] =>.Realtek Semiconductor Corp®
[MD5.813006C133576159EBB6DE770D55267D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] [PID.7108] =>.Realtek Semiconductor Corp®
[MD5.66AF3CBBF3C0F747E7BF5ED1B5A61718] - (.The OpenVPN Project - OpenVPN Daemon.) -- C:\Program Files (x86)\VPNetwork LLC\TorGuard\openvpn.exe [695296] [PID.7164] =>.The OpenVPN Project
[MD5.FE376432645847404698E64D093597D6] - (.Copyright (C) 2013 - .) -- C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe [817440] [PID.4584] =>.Plantronics®
[MD5.E41245791F9B6F4022F8C46154C358E8] - (.Advanced Micro Devices, Inc. - Radeon Settings: Host Application.) -- C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [5006536] [PID.3892] =>.Advanced Micro Devices, Inc.®
[MD5.7F8AB0D8E13B8B815F792E3454BE2F32] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3919928] [PID.6128] =>.Tonec Inc.
[MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275608] [PID.6460] =>.Tonec Inc.®
[MD5.44A9229022A519ED45294A1934C05EEC] - (.Flux Software LLC - f.lux.) -- C:\Users\Dany\AppData\Local\FluxSoftware\Flux\flux.exe [1017224] [PID.6248] =>.Michael Herf®
[MD5.1F6661738127C4EE4E7C647914002C0B] - (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe [53430456] [PID.6652] =>.Hammer & Chisel Inc.®
[MD5.1F6661738127C4EE4E7C647914002C0B] - (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe [53430456] [PID.6812] =>.Hammer & Chisel Inc.®
[MD5.294137F33E5B067786F3C1FFDC1EB229] - (.SteelSeries ApS - SteelSeries Engine 3 Core.) -- C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe [13425904] [PID.7332] =>.SteelSeries ApS®
[MD5.1CE11C53E562D5F7EAFCF47E0E696516] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [807392] [PID.7348] =>.Avira Operations GmbH & Co. KG®
[MD5.2555A094409BD20DAB7A97A5A539F21C] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216] [PID.7600] =>.Intel Corporation - Software and Firmware Products®
[MD5.C9B67BCB8E384064A8C2263740B0C437] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595480] [PID.7820] =>.Oracle America, Inc.®
[MD5.AE8ED86C45C1947E7DB964DA39AE4845] - (.Samsung Electronics. - Samsung Magician Application.) -- C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [4838816] [PID.7296] =>.Samsung Electronics Co., Ltd.®
[MD5.1F6661738127C4EE4E7C647914002C0B] - (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe [53430456] [PID.7492] =>.Hammer & Chisel Inc.®
[MD5.E7996990C46DB265792376A8E2695529] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Dany\Downloads\ZHPDiag3.exe [2190336] [PID.6956] =>.Nicolas Coolman

---\\ Google Chrome, Start,Search,Extensions (12) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://plus.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.amazon.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com
G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (3) - 0s
P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - EXT FILE: (...) -- C:\Users\Dany\AppData\Roaming\Mozilla\Firefox\Profiles\nJrzLImL.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer Extensions, Start, Search (18) - 0s
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKEY_USERS\S-1-5-21-2107275447-3332583315-1831846903-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (7) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 62.23.15.92:3128
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (126)

---\\ Browser Helper Object (BHO) (2) - 0s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation®

---\\ Auto loading programs from Registry and folders (25) - 1s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg_DTS] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [GamecomSound] . (.Copyright (C) 2013 - .) -- C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe =>.Plantronics®
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation
O4 - HKLM\..\Run: [StartCN] . (.Advanced Micro Devices, Inc. - Radeon Settings: Host Application.) -- C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc.®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\Dany\AppData\Local\FluxSoftware\Flux\flux.exe =>.Michael Herf®
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Dany\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®
O4 - HKCU\..\Run: [iFunBox] . (.i-Funbox.com - File & App Manager for iPhone/iPad.) -- C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe =>.i-Funbox.com
O4 - HKCU\..\Run: [Discord] . (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe =>.Hammer & Chisel Inc.®
O4 - HKCU\..\Run: [Viscosity] C:\Program Files\Viscosity\Viscosity.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe =>.Intel Corporation - Software and Firmware Products®
O4 - HKLM\..\Wow6432Node\Run: [Avira Systray] . (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (.not file.)
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\Dany\AppData\Local\FluxSoftware\Flux\flux.exe =>.Michael Herf®
O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Dany\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®
O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [iFunBox] . (.i-Funbox.com - File & App Manager for iPhone/iPad.) -- C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe =>.i-Funbox.com
O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [Discord] . (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\Dany\AppData\Local\Discord\app-0.0.287\Discord.exe =>.Hammer & Chisel Inc.®
O4 - HKUS\S-1-5-21-2107275447-3332583315-1831846903-1000\..\Run: [Viscosity] C:\Program Files\Viscosity\Viscosity.exe (.not file.)

---\\ Global shortcuts Startup (78) - 3s
O4 - GS\Desktop [Administrator]: Crusader Kings 2.lnk . (.Paradox Interactive - CK2.) C:\Program Files (x86)\Crusader Kings II\CK2game.exe =>.Paradox Interactive
O4 - GS\Desktop [Administrator]: Discord.lnk . (.GitHub - Update.) C:\Users\Dany\AppData\Local\Discord\Update.exe =>.Hammer & Chisel Inc.®
O4 - GS\Desktop [Administrator]: DroidCamApp.lnk . (...) C:\Program Files (x86)\DroidCam\DroidCamApp.exe =>.DEV47 APPS®
O4 - GS\Desktop [Administrator]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe
O4 - GS\Desktop [Administrator]: MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7}
O4 - GS\Desktop [Administrator]: MSI Afterburner.lnk . (.Copyright © 2009-2015 Alexey Nicolaychuk aka Unwinder - MSIAfterburner.) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O4 - GS\Desktop [Administrator]: Multi-MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7}
O4 - GS\Desktop [Administrator]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe =>.Open Source Developer, Hugh Bailey®
O4 - GS\Desktop [Administrator]: Portal.bat.lnk . (...) C:\Program Files (x86)\Source Unpack 2.2new\Portal.bat
O4 - GS\Desktop [Administrator]: RS Somnífero.lnk . (.Rico Software - .) C:\Program Files (x86)\Rico Software\RS Somnífero\somnifero.exe =>.Rico Software
O4 - GS\Desktop [Administrator]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [Administrator]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Dany\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrator]: Gyazo GIF.lnk . (.Nota Inc. - Gyazo GIF.) C:\Program Files (x86)\Gyazo\GyazoGIF.exe =>.Nota Inc.®
O4 - GS\Quicklaunch [Administrator]: Gyazo.lnk . (.Nota Inc. - Gyazo: Screen Uploader.) C:\Program Files (x86)\Gyazo\Gyazowin.exe =>.Nota Inc.®
O4 - GS\Quicklaunch [Administrator]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe
O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [Dany]: Crusader Kings 2.lnk . (.Paradox Interactive - CK2.) C:\Program Files (x86)\Crusader Kings II\CK2game.exe =>.Paradox Interactive
O4 - GS\Desktop [Dany]: Discord.lnk . (.GitHub - Update.) C:\Users\Dany\AppData\Local\Discord\Update.exe =>.Hammer & Chisel Inc.®
O4 - GS\Desktop [Dany]: DroidCamApp.lnk . (...) C:\Program Files (x86)\DroidCam\DroidCamApp.exe =>.DEV47 APPS®
O4 - GS\Desktop [Dany]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe
O4 - GS\Desktop [Dany]: MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7}
O4 - GS\Desktop [Dany]: MSI Afterburner.lnk . (.Copyright © 2009-2015 Alexey Nicolaychuk aka Unwinder - MSIAfterburner.) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O4 - GS\Desktop [Dany]: Multi-MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7}
O4 - GS\Desktop [Dany]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe =>.Open Source Developer, Hugh Bailey®
O4 - GS\Desktop [Dany]: Portal.bat.lnk . (...) C:\Program Files (x86)\Source Unpack 2.2new\Portal.bat
O4 - GS\Desktop [Dany]: RS Somnífero.lnk . (.Rico Software - .) C:\Program Files (x86)\Rico Software\RS Somnífero\somnifero.exe =>.Rico Software
O4 - GS\Desktop [Dany]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [Dany]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [Dany]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Dany\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Dany]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Dany]: Gyazo GIF.lnk . (.Nota Inc. - Gyazo GIF.) C:\Program Files (x86)\Gyazo\GyazoGIF.exe =>.Nota Inc.®
O4 - GS\Quicklaunch [Dany]: Gyazo.lnk . (.Nota Inc. - Gyazo: Screen Uploader.) C:\Program Files (x86)\Gyazo\Gyazowin.exe =>.Nota Inc.®
O4 - GS\Quicklaunch [Dany]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe
O4 - GS\sendTo [Dany]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Dany]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [Dany]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [Guest]: Crusader Kings 2.lnk . (.Paradox Interactive - CK2.) C:\Program Files (x86)\Crusader Kings II\CK2game.exe =>.Paradox Interactive
O4 - GS\Desktop [Guest]: Discord.lnk . (.GitHub - Update.) C:\Users\Dany\AppData\Local\Discord\Update.exe =>.Hammer & Chisel Inc.®
O4 - GS\Desktop [Guest]: DroidCamApp.lnk . (...) C:\Program Files (x86)\DroidCam\DroidCamApp.exe =>.DEV47 APPS®
O4 - GS\Desktop [Guest]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe
O4 - GS\Desktop [Guest]: MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7}
O4 - GS\Desktop [Guest]: MSI Afterburner.lnk . (.Copyright © 2009-2015 Alexey Nicolaychuk aka Unwinder - MSIAfterburner.) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O4 - GS\Desktop [Guest]: Multi-MEmu.lnk . (...) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe {5528D5543296BFE427D43B8DDC0A20C7}
O4 - GS\Desktop [Guest]: Open Broadcaster Software.lnk . (.Copyright (C) 2013-2015 - Open Broadcaster Software.) C:\Program Files (x86)\OBS\OBS.exe =>.Open Source Developer, Hugh Bailey®
O4 - GS\Desktop [Guest]: Portal.bat.lnk . (...) C:\Program Files (x86)\Source Unpack 2.2new\Portal.bat
O4 - GS\Desktop [Guest]: RS Somnífero.lnk . (.Rico Software - .) C:\Program Files (x86)\Rico Software\RS Somnífero\somnifero.exe =>.Rico Software
O4 - GS\Desktop [Guest]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [Guest]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [Guest]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Dany\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Guest]: Gyazo GIF.lnk . (.Nota Inc. - Gyazo GIF.) C:\Program Files (x86)\Gyazo\GyazoGIF.exe =>.Nota Inc.®
O4 - GS\Quicklaunch [Guest]: Gyazo.lnk . (.Nota Inc. - Gyazo: Screen Uploader.) C:\Program Files (x86)\Gyazo\Gyazowin.exe =>.Nota Inc.®
O4 - GS\Quicklaunch [Guest]: Hex Editor Neo.lnk . (.HHD Software Ltd. - .) C:\Program Files (x86)\HHD Software\Hex Editor Neo\HexFrame.exe
O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Guest]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - EpicGamesLauncher.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe =>.Epic Games Inc.®
O4 - GS\CommonDesktop [Public]: Hand of Fate.lnk . (...) C:\GOG Games\Hand of Fate\Hand of Fate.exe
O4 - GS\CommonDesktop [Public]: Hearthstone.lnk . (.Blizzard Entertainment - Hearthstone Beta Launcher.) C:\Program Files (x86)\Hearthstone\Hearthstone Beta Launcher.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\CommonDesktop [Public]: iFunbox.lnk . (.i-Funbox.com - File & App Manager for iPhone/iPad.) C:\Program Files (x86)\i-Funbox DevTeam\iFunBox.exe =>.i-Funbox.com
O4 - GS\CommonDesktop [Public]: Layers of Fear.lnk . (...) C:\GOG Games\Layers of Fear\Layers Of Fear.exe
O4 - GS\CommonDesktop [Public]: ManiaPlanet.lnk . (...) C:\Program Files (x86)\ManiaPlanet\ManiaPlanetLauncher.exe
O4 - GS\CommonDesktop [Public]: MultiBit HD.lnk . (...) C:\Program Files (x86)\MultiBit HD\multibit-hd.exe
O4 - GS\CommonDesktop [Public]: SoftEther VPN Client Manager.lnk . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) C:\Program Files\SoftEther VPN Client\vpncmgr_x64.exe =>.SoftEther K.K.®
O4 - GS\CommonDesktop [Public]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH®
O4 - GS\CommonDesktop [Public]: TeamViewer 11.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\CommonDesktop [Public]: TMAC v6.lnk . (.Technitium - Technitium MAC Address Changer.) C:\Program Files (x86)\Technitium\TMACv6.0\TMAC.exe =>.Technitium
O4 - GS\Startup [Public]: SteelSeries Engine 3.lnk . (.SteelSeries ApS - SteelSeries Engine 3 Core.) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe =>.SteelSeries ApS®
O4 - GS\Programs [Public]: AMD Radeon Settings.lnk . (.Advanced Micro Devices, Inc. - .) C:\Program Files (x86)\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc.
O4 - GS\Programs [Public]: CNext.lnk . (...) C:\Program Files (x86)\AMD\CNext\CNext\cnext.exe
O4 - GS\Programs [Public]: Livestreamer Twitch GUI.lnk . (...) C:\Users\Dany\Desktop\livestreamer-twitch-gui\livestreamer-twitch-gui.exe
O4 - GS\Programs [Public]: lol.launcher.admin.lnk . (...) C:\Riot Games\League of Legends\lol.launcher.admin.exe =>.Riot Games, Inc.®
O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Dany\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®

---\\ Lop.com/Domain Hijackers (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.24.0.1 10.24.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{21110b57-acd2-45df-bd40-7c2773110c8d}: NameServer = 4.2.2.2,4.2.2.3
O17 - HKLM\System\CCS\Services\Tcpip\..\{21110b57-acd2-45df-bd40-7c2773110c8d}: DhcpNameServer = 95.85.9.86 185.83.217.248
O17 - HKLM\System\CCS\Services\Tcpip\..\{4df5de9f-bfd0-4c8b-ae4e-af7e1cfa0fff}: DhcpNameServer = 8.8.8.8 8.8.4.4
O17 - HKLM\System\CCS\Services\Tcpip\..\{d02bba65-b738-4474-8d17-fed25e36bdb5}: DhcpNameServer = 10.24.0.1 10.24.0.1

---\\ Extra protocols (23) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\WINDOWS\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\WINDOWS\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Software installed (155) - 11s
O42 - Logiciel: .NET Reflector Desktop - (.Red Gate Software Ltd.) [HKLM][64Bits] -- {348E3E12-2F11-4AA4-8694-88222F3440F3} =>.Red Gate Software Ltd
O42 - Logiciel: 4K Video Downloader 3.7 - (.Open Media LLC.) [HKLM][64Bits] -- 4K Video Downloader_is1 =>.Open Media LLC
O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {691F30EB-9009-475A-B8A9-E1BF39598FD5} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {3540181E-340A-4E7A-B409-31663472B2F7} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} =>.Apple Inc.
O42 - Logiciel: Asmedia ASM106x SATA Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {DF6C3726-7E53-4772-9763-E9F147769F51} =>.Asmedia Technology
O42 - Logiciel: AutoIt v3.3.12.0 - (.AutoIt Team.) [HKLM][64Bits] -- AutoItv3 =>.AutoIt Team
O42 - Logiciel: Avira Antivirus v15.0.16.282 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira v1.1.25.25607 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {9480d4af-12b9-4e56-8034-4031ef6ab39d} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira v1.1.25.25607 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {D2763B4E-5BF4-468B-BB00-9B3B121E0FB2} =>.Avira Operations GmbH & Co. KG
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks App Player =>.BlueStack Systems, Inc.
O42 - Logiciel: BlueStacks App Player 0.9.24.5311 Superuser BSEasy - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {9926ADE0-ABB3-4513-B31A-F1B5EBA14F73} =>.BlueStack Systems, Inc.
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 =>.Valve®
O42 - Logiciel: Discord - (.Hammer & Chisel, Inc..) [HKCU][64Bits] -- Discord =>.Hammer & Chisel Inc.®
O42 - Logiciel: DriversCloud.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {B3F21810-C58E-4AE1-BFBA-8327721C9F8A} =>.CybelSoft
O42 - Logiciel: Epic Games Launcher - (.Epic Games, Inc..) [HKLM][64Bits] -- {4620A9CA-A0D7-4F15-BA89-4545B5372345} =>.Epic Games, Inc.
O42 - Logiciel: Epic Games Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {66C5838F-B854-4A55-89E6-A6138747A4DF} =>.Epic Games, Inc.
O42 - Logiciel: f.lux - (...) [HKCU][64Bits] -- Flux
O42 - Logiciel: FreeMouseAutoClicker 3.8.1 - (.Advanced Mouse Auto Clicker ltd..) [HKLM][64Bits] -- {292F00C5-25EF-4FBE-9873-13EF1F69DEED}_is1 =>.Advanced Mouse Auto Clicker ltd.
O42 - Logiciel: Git version 2.6.4 - (.The Git Development Community.) [HKLM][64Bits] -- Git_is1 =>.The Git Development Community
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Gyazo 3.2.1 - (.Nota Inc..) [HKLM][64Bits] -- {6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1 =>.Nota Inc.®
O42 - Logiciel: Hand of Fate - (.GOG.com.) [HKLM][64Bits] -- 1424100574_is1 =>.GOG Limited®
O42 - Logiciel: Hand of Fate - Wildcards - (.GOG.com.) [HKLM][64Bits] -- Hand of Fate: Wildcards_is1 =>.GOG Limited®
O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: HHD Software Hex Editor Neo 6.05 - (.HHD Software, Ltd..) [HKCU][64Bits] -- {8EB85C0E-DE7D-4A53-BD66-708B8F2C80B0} =>.HHD Software Ltd.®
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {C7090522-1436-4FD6-9449-B06A665E2537} =>.Intel Corporation
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] -- {5ae11e9e-c192-4030-97b5-2f83e0edf570} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {5F6F9FDB-4B94-4912-8966-77356C01303C} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {74541060-2DB1-4E8C-B239-3A78EA50F2F6} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {CA07FCB1-DAE9-4F8A-8698-F9C30D1E375F} =>.Intel Corporation
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {43A76F9B-48F1-4E0D-A9B4-8E4F6C42E28C} =>.Intel Corporation
O42 - Logiciel: Intel(R) Network Connections 20.7.67.0 - (.Intel.) [HKLM][64Bits] -- {0F2D8891-8089-499F-ACB1-58DB79C63483} =>.Intel
O42 - Logiciel: Intel(R) Network Connections 20.7.67.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX =>.Intel
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {B66F70B4-34E5-429A-9F55-7129E0833A45} =>.Intel Corporation
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} =>.Intel Corporation
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Java 8 Update 77 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218077F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Java SE Development Kit 8 Update 25 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180250} =>.Oracle Corporation
O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.®
O42 - Logiciel: Layers of Fear - (.GOG.com.) [HKLM][64Bits] -- 1455107123_is1 =>.GOG Limited®
O42 - Logiciel: Les héros de la République - (.LucasArts.) [HKLM][64Bits] -- {5612C844-55BC-4B77-82C2-A2E28962418E} =>.LUCASFILM ENTERTAINMENT COMPANY LTD®
O42 - Logiciel: Les Sims™ 4 - (.Electronic Arts Inc..) [HKLM][64Bits] -- {48EBEBBF-B9F8-4520-A3CF-89A730721917} =>.Electronic Arts®
O42 - Logiciel: MAGIX Common Components 1 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {8E7E3475-C37E-44F5-897F-718AAE0B4827} =>.MAGIX Software GmbH
O42 - Logiciel: MAGIX Content and Soundpools - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MAGIX_GlobalContent {42A0275C3BFD4807111325C219E0FFE1} =>.MAGIX Software GmbH
O42 - Logiciel: MAGIX Fonts Package 2 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {E6860DA4-62A8-4E0B-A5C7-CF38404AE094} =>.MAGIX Software GmbH
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {30F841D2-1D8E-4362-A806-7B6189F9BFEA} =>.MAGIX Software GmbH
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{30F841D2-1D8E-4362-A806-7B6189F9BFEA} {42A0275C3BFD4807111325C219E0FFE1} =>.MAGIX Software GmbH
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: MEmu - (.Microvirt.) [HKLM][64Bits] -- MEmu
O42 - Logiciel: Microsoft Access MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0117-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM][64Bits] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Exchange Web Services Managed API 2.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {24CA683D-8174-4EBF-AD4D-3F2DD7814716} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Games for Windows - LIVE - (.Microsoft Corporation.) [HKLM][64Bits] -- {4AA3D64E-9EC3-4B0F-AB91-5885AC55641F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {FD052FB9-FE90-4438-B355-15EDC89D8FB1} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Identity Extensions - (.Microsoft Corporation.) [HKLM][64Bits] -- {F99F24BF-0B90-463E-9658-3FD2EFC3C992} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneNote MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Server Speech Platform Runtime (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {22CB8ED7-DF57-4864-BD04-F63B9CE4B494} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Server Speech Text to Speech Voice (fr-FR, Hortense) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9B9D928F-97D5-4D95-9A71-EE9B1805BADE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {070C38AC-05CE-43DF-9A20-141332F6AB2B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2012 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {05FF8209-C4F1-4C77-BC28-791653156D20} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4AEB505C-95E1-4964-9B64-8D27F3186D30} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C06D6DB-A391-4686-B050-99CC522A7843} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {45CD67FD-3218-4207-A0A2-BC41245189E3} =>.Microsoft
O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2BFC7AA0-544C-4E3A-8796-67F3BE655BE9} =>.Microsoft Corporation
O42 - Logiciel: MK LOL - (...) [HKCU][64Bits] -- MK LOL
O42 - Logiciel: MSI Afterburner 4.2.0 - (.MSI Co., LTD.) [HKLM][64Bits] -- Afterburner =>.MSI Co., LTD
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation
O42 - Logiciel: MultiBit HD 0.2.0 - (.Bitcoin Solutions Ltd.) [HKLM][64Bits] -- 6925-4794-5772-4956 {12A37B0B1D08C0}
O42 - Logiciel: Mumble 1.2.3 - (.Thorvald Natvig.) [HKLM][64Bits] -- {E1019541-10A2-464F-A23E-A4F23DA65160} =>.Thorvald Natvig
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B455E95A-B804-439F-B533-336B1635AE97} =>.NVIDIA Corporation
O42 - Logiciel: Open Broadcaster Software - (...) [HKLM][64Bits] -- Open Broadcaster Software
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc®
O42 - Logiciel: OpenAL 1.1 Core PC SDK (ver 3.05) - (.Creative Labs.) [HKLM][64Bits] -- {1C10D0D6-AF1A-48B8-9BF7-52A2BB014E0C} =>.Creative Labs
O42 - Logiciel: OpenAL 1.1 Core PC SDK (ver 3.05) - (.Creative Labs.) [HKLM][64Bits] -- InstallShield_{1C10D0D6-AF1A-48B8-9BF7-52A2BB014E0C} =>.Creative Labs
O42 - Logiciel: Oracle VM VirtualBox 4.3.18 - (.Oracle Corporation.) [HKLM][64Bits] -- {74B7E6F9-DCAC-4ADB-B2D0-EEFDD1B5AC25} =>.Oracle Corporation
O42 - Logiciel: Plantronics® GameCom 780/788 Software for Dolby® Headphone - (.Plantronics.) [HKLM][64Bits] -- {EB3C9064-9140-4279-9E51-965119402151} =>.Plantronics®
O42 - Logiciel: Prerequisites for SSDT - (.Microsoft Corporation.) [HKLM][64Bits] -- {21373064-AD95-48DB-A32E-0D9E08EF7355} =>.Microsoft Corporation
O42 - Logiciel: Prerequisites for SSDT - (.Microsoft Corporation.) [HKLM][64Bits] -- {35C1D9D6-87C0-46A3-B1B4-EDBCC063221C} =>.Microsoft Corporation
O42 - Logiciel: Python 3.5.1 (32-bit) - (.Python Software Foundation.) [HKCU][64Bits] -- {c39d559b-aa83-4476-ba20-988a35a1199a} =>.Python Software Foundation®
O42 - Logiciel: Python 3.5.1 Add to Path (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {C68BE7C0-355D-49B6-B950-A558FAA17451} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Core Interpreter (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {7665C66D-78C4-4B30-B4B9-8DD484403532} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Development Libraries (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {2B2FED36-5D63-411A-A8C4-E311D70BCF33} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Documentation (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {77EEC303-714C-4290-AF63-5252FDB5D7C8} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Executables (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {946BBA68-EDC0-4981-83D3-09592B9A84FA} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Launcher (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {17778F7B-FB5A-4A93-9719-D75BAF673498} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 pip Bootstrap (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {4F29879C-940D-4599-8CEC-407579F73DF7} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Standard Library (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {65A2F7DA-ACD7-4EC1-8A88-665D535D9CE7} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Tcl/Tk Support (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {C387DB53-A25F-49E3-8DF7-94F47E5A7921} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Test Suite (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {FA87440D-634A-4581-AD9C-C6FA859B88DD} =>.Python Software Foundation
O42 - Logiciel: Python 3.5.1 Utility Scripts (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {9254A29B-0F60-444C-B5CE-DB7E2505474C} =>.Python Software Foundation
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros Communications
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Rocket League - (.Psyonix.) [HKLM][64Bits] -- Steam App 252950 =>.Valve®
O42 - Logiciel: RS Somnífero - (.Rico Software.) [HKLM][64Bits] -- RS Somnífero =>.Rico Software
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.DEVGURU CO LTD®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation®
O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {95150002-1163-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {95160001-1163-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {7E4C8063-6644-4580-B27F-6B70B1A51F0E} =>.Skype Technologies S.A.
O42 - Logiciel: Skype™ 7.21 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Smartflix - (.Smartflix Inc..) [HKCU][64Bits] -- smartflix
O42 - Logiciel: SoftEther VPN Client - (.SoftEther VPN Project.) [HKLM][64Bits] -- softether_sevpnclient =>.SoftEther K.K.®
O42 - Logiciel: SpeedFan (remove only) - (...) [HKLM][64Bits] -- SpeedFan
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify =>.Spotify AB®
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: SteelSeries DTS Headphone X - (.SteelSeries.) [HKLM][64Bits] -- SteelSeries DTS Headphone X =>.Conexant Systems, Inc.®
O42 - Logiciel: SteelSeries Engine 3.7.1 - (.SteelSeries ApS.) [HKLM][64Bits] -- SteelSeries Engine 3 =>.SteelSeries ApS®
O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM][64Bits] -- {83073F33-4211-4948-B737-A3B0D0623143} =>.Husdawg, LLC
O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM][64Bits] -- {04C4B49D-45D9-4A28-9ED1-B45CBD99B8C7} =>.Husdawg, LLC
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH
O42 - Logiciel: TeamViewer 11 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer®
O42 - Logiciel: Technitium MAC Address Changer v6.0 - (.Technitium.) [HKLM][64Bits] -- TMACv6.0 =>.Technitium
O42 - Logiciel: Text-To-Speech-Runtime - (.Magix Development GmbH.) [HKLM][64Bits] -- {7B3F0113-E63C-4D6D-AF19-111A3165CCA2} =>.Magix Development GmbH
O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {31b49e1e-03f8-4a04-8faa-f6476d8fad02} =>.Epic Games Inc.®
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker =>.Cedrick Collomb
O42 - Logiciel: Update for (KB2504637) - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637 =>.Microsoft Corporation
O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{0FA8AE0C-69AE-4F60-A1AB-F79C6BA5A999} =>.Microsoft Corporation®
O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft Entertainment Sweden AB®
O42 - Logiciel: VC_CRT_x64 - (.Intel Corporation.) [HKLM][64Bits] -- {54F2237F-018C-483B-8884-9FC0D88840C3} =>.Intel Corporation
O42 - Logiciel: Vita 2 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {6B793FAD-8CCC-4746-AC53-3BF5185DACA3} =>.MAGIX Software GmbH
O42 - Logiciel: Vita Analog Synths - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {71C3679C-E6DA-4656-82B5-F6C0EE4A9F2C} =>.MAGIX Software GmbH
O42 - Logiciel: Vita Celtic Harp - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {C7AC19FD-2547-4D79-BC3D-41A41BA8D48F} =>.MAGIX Software GmbH
O42 - Logiciel: Vita Drum Engine - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {5BBD6B03-5E8C-42AD-BFB9-518240CE3D80} =>.MAGIX Software GmbH
O42 - Logiciel: Vita Jazz Drums - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {99C2C7FB-682E-415C-B36B-C9BC95A91EC8} =>.MAGIX Software GmbH
O42 - Logiciel: Vita Urban Drums - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {F55756AC-18F5-4D95-B0AC-C61F1E56AAB7} =>.MAGIX Software GmbH
O42 - Logiciel: Vita World Flutes - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {E04FC0CB-2DC6-4788-94D4-0186262A5F2A} =>.MAGIX Software GmbH
O42 - Logiciel: VPNetwork LLC - TorGuard - Online Privacy Protection Services - (."VPNetwork LLC".) [HKLM][64Bits] -- VPNetwork LLC TorGuard
O42 - Logiciel: Vulkan Run Time Libraries 1.0.3.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.3.1 =>.LunarG, Inc.
O42 - Logiciel: Vulkan Run Time Libraries 1.0.3.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.3.1-2 =>.LunarG, Inc.
O42 - Logiciel: WinRAR 5.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (258) - 11s
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AMD
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\AutoIt v3
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\AviraSpeedup
HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\BoL
HKLM\SOFTWARE\Wow6432Node\Brothers
HKLM\SOFTWARE\Wow6432Node\CounterPath
HKLM\SOFTWARE\Wow6432Node\Creative Labs
HKLM\SOFTWARE\Wow6432Node\CyberGhost
HKLM\SOFTWARE\Wow6432Node\Cygnus Solutions
HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\EpicGames
HKLM\SOFTWARE\Wow6432Node\F-Secure
HKLM\SOFTWARE\Wow6432Node\Fraps
HKLM\SOFTWARE\Wow6432Node\Frogwares
HKLM\SOFTWARE\Wow6432Node\Gameforge
HKLM\SOFTWARE\Wow6432Node\GOG.com
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Havij
HKLM\SOFTWARE\Wow6432Node\Icaros
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\LAV
HKLM\SOFTWARE\Wow6432Node\LucasArts
HKLM\SOFTWARE\Wow6432Node\LucasArts Entertainment Company LLC
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MAGIX
HKLM\SOFTWARE\Wow6432Node\Magix Development
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Maxis
HKLM\SOFTWARE\Wow6432Node\Metin2_EN
HKLM\SOFTWARE\Wow6432Node\Metin2_FR
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MSI
HKLM\SOFTWARE\Wow6432Node\Notepad++
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Open Broadcaster Software
HKLM\SOFTWARE\Wow6432Node\OpenAL
HKLM\SOFTWARE\Wow6432Node\Origin Games
HKLM\SOFTWARE\Wow6432Node\Overwolf
HKLM\SOFTWARE\Wow6432Node\Plantronics
HKLM\SOFTWARE\Wow6432Node\PowerPivot
HKLM\SOFTWARE\Wow6432Node\Python
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Riot Games
HKLM\SOFTWARE\Wow6432Node\Runes of Magic
HKLM\SOFTWARE\Wow6432Node\Samsung Magician
HKLM\SOFTWARE\Wow6432Node\sega
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SoftEther Project
HKLM\SOFTWARE\Wow6432Node\SpeedFan
HKLM\SOFTWARE\Wow6432Node\SRS Labs
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\Thingamahoochie
HKLM\SOFTWARE\Wow6432Node\THQ
HKLM\SOFTWARE\Wow6432Node\TrendyEntertainment
HKLM\SOFTWARE\Wow6432Node\Tunngle.net
HKLM\SOFTWARE\Wow6432Node\Ubisoft
HKLM\SOFTWARE\Wow6432Node\Unwinder
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\X-AVCSD
HKLM\SOFTWARE\Wow6432Node\Zemi Interactive
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\4kdownload.com
HKCU\SOFTWARE\5 Bits Games
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\82 Apps
HKCU\SOFTWARE\Aeria Games
HKCU\SOFTWARE\Akeo Consulting
HKCU\SOFTWARE\AMD
HKCU\SOFTWARE\Andy
HKCU\SOFTWARE\AnvSoft
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Audacity
HKCU\SOFTWARE\AutoIt v3
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\Bankroll Studios
HKCU\SOFTWARE\BetaDwarf ApS
HKCU\SOFTWARE\Big Robot
HKCU\SOFTWARE\Bitcoin
HKCU\SOFTWARE\Blazing Griffin
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Bloober Team
HKCU\SOFTWARE\BlooberTeam S.A.
HKCU\SOFTWARE\BNE
HKCU\SOFTWARE\Bohemia Interactive
HKCU\SOFTWARE\Boneloaf
HKCU\SOFTWARE\BugSplat
HKCU\SOFTWARE\CampoSanto
HKCU\SOFTWARE\Cheat Engine
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CounterPath
HKCU\SOFTWARE\Cryptozoic
HKCU\SOFTWARE\Crystal Dynamics
HKCU\SOFTWARE\Cygnus Solutions
HKCU\SOFTWARE\Cygwin
HKCU\SOFTWARE\Daniel Mullins Games
HKCU\SOFTWARE\DefaultCompany
HKCU\SOFTWARE\Defiant Development
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\EMU
HKCU\SOFTWARE\Epic Games
HKCU\SOFTWARE\Etter Studio
HKCU\SOFTWARE\Fireproof Games
HKCU\SOFTWARE\FLT
HKCU\SOFTWARE\Freejam
HKCU\SOFTWARE\Game Swing
HKCU\SOFTWARE\Gameforge4d
HKCU\SOFTWARE\GOG.com
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GuruGames
HKCU\SOFTWARE\Gyazo
HKCU\SOFTWARE\Heaventools
HKCU\SOFTWARE\HEX Entertainment
HKCU\SOFTWARE\HHD Software
HKCU\SOFTWARE\HWiNFO64
HKCU\SOFTWARE\i-FunBox.com
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Immunity Inc
HKCU\SOFTWARE\INCAInternet
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\IO Interactive
HKCU\SOFTWARE\iZotope
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Jitbit
HKCU\SOFTWARE\Joe Williams
HKCU\SOFTWARE\Juicy Beast Studio Ltd.
HKCU\SOFTWARE\Kyle Seeley
HKCU\SOFTWARE\LandFall Games
HKCU\SOFTWARE\LANGAGENT
HKCU\SOFTWARE\Logic Artists
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\LowRegistry
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madshi
HKCU\SOFTWARE\Magix
HKCU\SOFTWARE\Magix Development
HKCU\SOFTWARE\MAGIX Software GmbH
HKCU\SOFTWARE\MAIET entertainment
HKCU\SOFTWARE\MD5Checksum
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\Michael Herf
HKCU\SOFTWARE\MilkyTea
HKCU\SOFTWARE\Mindblown Studios
HKCU\SOFTWARE\Monomi Park
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\MSI
HKCU\SOFTWARE\Mumble
HKCU\SOFTWARE\Muse Games
HKCU\SOFTWARE\My64K
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nilings
HKCU\SOFTWARE\Northcode Inc
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OpenAutomate
HKCU\SOFTWARE\Oracle
HKCU\SOFTWARE\osu!
HKCU\SOFTWARE\PHL Collective
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Plex, Inc.
HKCU\SOFTWARE\Popcorn Time
HKCU\SOFTWARE\PopcornTime
HKCU\SOFTWARE\Psw
HKCU\SOFTWARE\Python
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Raptr
HKCU\SOFTWARE\Razer
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RealVNC
HKCU\SOFTWARE\Red Gate
HKCU\SOFTWARE\Red Gate Software Ltd.
HKCU\SOFTWARE\Refract
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Room710Games
HKCU\SOFTWARE\RS Somnífero
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\Samurai Punk
HKCU\SOFTWARE\Section Studios
HKCU\SOFTWARE\Section Studios, Inc.
HKCU\SOFTWARE\SKS
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypePlugin
HKCU\SOFTWARE\SmallGamesInfo
HKCU\SOFTWARE\SoftEther Project
HKCU\SOFTWARE\Space Budgie
HKCU\SOFTWARE\SpeedFan
HKCU\SOFTWARE\Spotify
HKCU\SOFTWARE\sqlitebrowser
HKCU\SOFTWARE\Squirrels
HKCU\SOFTWARE\Steel Crate Games
HKCU\SOFTWARE\SUPERHOT beta
HKCU\SOFTWARE\SUPERHOT_Team
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\System Requirements Lab
HKCU\SOFTWARE\Tasharen Entertainment
HKCU\SOFTWARE\TCP Optimizer
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\techPowerUp
HKCU\SOFTWARE\Telltale Games
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\THEGFW
HKCU\SOFTWARE\Thingamahoochie
HKCU\SOFTWARE\Thingummy Software
HKCU\SOFTWARE\TightVNC
HKCU\SOFTWARE\Tracker Software
HKCU\SOFTWARE\Trial-Reset
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Tunngle.net
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\University of Tsukuba
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\Vision Thing
HKCU\SOFTWARE\VPNetworkLLC
HKCU\SOFTWARE\W10Privacy
HKCU\SOFTWARE\Warner Bros. Interactive Entertainment
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wireshark
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Yanderu Software
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\MarkAny

---\\ Contents of the Common Files folders (551) - 13s
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\AirParrot 2
O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\AMD
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 14/10/2014 - [] D -- C:\Program Files\ATI
O43 - CFD: 18/02/2016 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.®
O43 - CFD: 23/01/2016 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.®
O43 - CFD: 18/01/2016 - [] D -- C:\Program Files\CyberGhost 5
O43 - CFD: 07/03/2016 - [] AD -- C:\Program Files\DriversCloud.com =>.CYBELSOFT®
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 08/04/2016 - [] D -- C:\Program Files\Epic Games
O43 - CFD: 04/01/2016 - [] AD -- C:\Program Files\Git
O43 - CFD: 30/12/2014 - [] D -- C:\Program Files\HHD Software
O43 - CFD: 20/03/2016 - [] D -- C:\Program Files\Intel =>.Intel(R) Rapid Storage Technology®
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 17/08/2015 - [] D -- C:\Program Files\ma-config.com
O43 - CFD: 07/11/2014 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation®
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 03/01/2015 - [] D -- C:\Program Files\Microsoft Identity Extensions
O43 - CFD: 07/11/2014 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 27/05/2015 - [] AD -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation®
O43 - CFD: 27/05/2015 - [] AD -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 14/10/2014 - [] AD -- C:\Program Files\Microsoft Xbox 360 Accessories =>.Microsoft Corporation®
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 16/04/2016 - [] AD -- C:\Program Files\Microvirt {5528D5543296BFE427D43B8DDC0A20C7}
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 13/04/2016 - [] AD -- C:\Program Files\MultiBit HD {12A37B0B1D08C0}
O43 - CFD: 04/01/2015 - [] D -- C:\Program Files\OBS
O43 - CFD: 09/09/2015 - [] D -- C:\Program Files\OpenVPN
O43 - CFD: 09/04/2016 - [] D -- C:\Program Files\pia_manager
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\Plantronics =>.Plantronics®
O43 - CFD: 18/02/2016 - [] D -- C:\Program Files\QuickSFV
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 13/06/2015 - [] D -- C:\Program Files\Rockstar Games =>.Take-Two Interactive Software, Inc.®
O43 - CFD: 30/01/2015 - [] D -- C:\Program Files\SAMSUNG
O43 - CFD: 16/04/2016 - [] D -- C:\Program Files\Sandboxie =>.Invincea, Inc.®
O43 - CFD: 11/03/2015 - [] AD -- C:\Program Files\SharePoint Client Components
O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\SoftEther VPN Client =>.SoftEther K.K.®
O43 - CFD: 14/10/2014 - [] D -- C:\Program Files\SteelSeries
O43 - CFD: 16/02/2015 - [] D -- C:\Program Files\Steinberg
O43 - CFD: 05/04/2016 - [] AD -- C:\Program Files\TeamSpeak 3 Client =>.TeamSpeak Systems GmbH®
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files\Tracker Software =>.Tracker Software Products Ltd®
O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 31/12/2015 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 16/02/2015 - [] D -- C:\Program Files\Virtual Audio Cable
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Windows Identity Foundation
O43 - CFD: 11/02/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 17/04/2016 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 17/04/2016 - [] HD -- C:\Program Files\WindowsApps
O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files\WindowsPowerShell
O43 - CFD: 14/10/2014 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files (x86)\4KDownload
O43 - CFD: 18/03/2016 - [] D -- C:\Program Files (x86)\AdwCleaner
O43 - CFD: 20/07/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 18/04/2016 - [] AD -- C:\Program Files (x86)\AMD
O43 - CFD: 18/02/2016 - [] AD -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.®
O43 - CFD: 05/09/2015 - [] AD -- C:\Program Files (x86)\ASM106xSATA
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\AutoIt3 =>.AutoIt Consulting Ltd®
O43 - CFD: 11/11/2014 - [] D -- C:\Program Files (x86)\Avira =>.Avira Operations GmbH & Co. KG®
O43 - CFD: 17/04/2016 - [] AD -- C:\Program Files (x86)\Battle.net =>.Blizzard Entertainment, Inc.®
O43 - CFD: 15/04/2016 - [] D -- C:\Program Files (x86)\BlueStacks =>.Bluestack Systems, Inc.®
O43 - CFD: 04/08/2015 - [] AD -- C:\Program Files (x86)\Bluetooth Suite
O43 - CFD: 18/02/2016 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.®
O43 - CFD: 27/04/2015 - [] D -- C:\Program Files (x86)\Cheat Engine 6.4 =>.Cheat Engine®
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 23/01/2015 - [] D -- C:\Program Files (x86)\Cool Beans NFO Creator
O43 - CFD: 23/02/2015 - [] D -- C:\Program Files (x86)\CounterPath
O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\Crusader Kings II
O43 - CFD: 27/07/2015 - [] D -- C:\Program Files (x86)\DroidCam =>.DEV47 APPS®
O43 - CFD: 01/06/2015 - [] D -- C:\Program Files (x86)\Duty Calls
O43 - CFD: 03/04/2016 - [] AD -- C:\Program Files (x86)\Epic Games =>.Epic Games Inc.®
O43 - CFD: 01/04/2016 - [] AD -- C:\Program Files (x86)\FreeMouseAutoClicker
O43 - CFD: 14/02/2016 - [] D -- C:\Program Files (x86)\GameforgeLive
O43 - CFD: 09/04/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 10/04/2016 - [] AD -- C:\Program Files (x86)\Gyazo =>.Nota Inc.®
O43 - CFD: 17/04/2016 - [] AD -- C:\Program Files (x86)\Hearthstone =>.Blizzard Entertainment, Inc.®
O43 - CFD: 05/06/2015 - [] D -- C:\Program Files (x86)\HEX
O43 - CFD: 16/09/2015 - [0] D -- C:\Program Files (x86)\HiSuite
O43 - CFD: 14/10/2015 - [] D -- C:\Program Files (x86)\i-Funbox DevTeam
O43 - CFD: 30/09/2015 - [] D -- C:\Program Files (x86)\iExplorer
O43 - CFD: 14/04/2015 - [] D -- C:\Program Files (x86)\Immunity Inc
O43 - CFD: 21/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Realtek Semiconductor Corp®
O43 - CFD: 14/10/2014 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - Software and Firmware Products®
O43 - CFD: 09/04/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\iZotope
O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 09/04/2016 - [] AD -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 06/09/2015 - [] D -- C:\Program Files (x86)\ManiaPlanet =>.NADEO®
O43 - CFD: 30/01/2015 - [0] D -- C:\Program Files (x86)\MarkAny
O43 - CFD: 03/01/2015 - [] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation®
O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET
O43 - CFD: 10/01/2015 - [] D -- C:\Program Files (x86)\Microsoft Chart Controls
O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE =>.Microsoft Corporation®
O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Help Viewer =>.Microsoft Corporation®
O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 17/07/2015 - [] D -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation®
O43 - CFD: 27/05/2015 - [] AD -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation®
O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 17/07/2015 - [] AD -- C:\Program Files (x86)\Microsoft Visual Studio 12.0 =>.Microsoft Corporation®
O43 - CFD: 24/10/2015 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation®
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 16/11/2014 - [] D -- C:\Program Files (x86)\MKJogo =>.Beijing Stone Age Network Technology Limited Company®
O43 - CFD: 29/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 20/02/2016 - [] D -- C:\Program Files (x86)\MSI Afterburner =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O43 - CFD: 17/07/2015 - [] AD -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 28/07/2015 - [] AD -- C:\Program Files (x86)\Mumble
O43 - CFD: 21/12/2015 - [0] D -- C:\Program Files (x86)\NCWest
O43 - CFD: 27/01/2016 - [] D -- C:\Program Files (x86)\Notepad++
O43 - CFD: 20/07/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\OBS =>.Open Source Developer, Hugh Bailey®
O43 - CFD: 01/09/2015 - [0] D -- C:\Program Files (x86)\Omega Force
O43 - CFD: 03/01/2015 - [] D -- C:\Program Files (x86)\Open XML SDK
O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\OpenAL =>.Creative Labs Inc®
O43 - CFD: 07/12/2014 - [] AD -- C:\Program Files (x86)\OpenAL 1.1 SDK
O43 - CFD: 23/04/2015 - [] D -- C:\Program Files (x86)\Pidgin
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files (x86)\Plantronics =>.Plantronics®
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\Plex
O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Popcorn Time
O43 - CFD: 06/06/2015 - [] D -- C:\Program Files (x86)\Portal
O43 - CFD: 14/10/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 31/12/2014 - [] D -- C:\Program Files (x86)\Red Gate =>.Red Gate Software Ltd®
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 02/10/2015 - [] D -- C:\Program Files (x86)\Rico Software
O43 - CFD: 13/06/2015 - [0] D -- C:\Program Files (x86)\Rockstar Games
O43 - CFD: 30/01/2015 - [] D -- C:\Program Files (x86)\Samsung =>.DEVGURU CO LTD®
O43 - CFD: 06/04/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 08/11/2015 - [] D -- C:\Program Files (x86)\Source Unpack 2.2new =>.Valve®
O43 - CFD: 29/05/2015 - [] D -- C:\Program Files (x86)\SpeedFan =>.SOKNO S.R.L.®
O43 - CFD: 15/04/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve®
O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\Steinberg
O43 - CFD: 01/11/2014 - [] D -- C:\Program Files (x86)\Supraball
O43 - CFD: 09/11/2015 - [] AD -- C:\Program Files (x86)\SystemRequirementsLab
O43 - CFD: 09/04/2016 - [] AD -- C:\Program Files (x86)\TeamViewer =>.TeamViewer®
O43 - CFD: 10/09/2015 - [] D -- C:\Program Files (x86)\Technitium
O43 - CFD: 04/08/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 12/10/2015 - [] D -- C:\Program Files (x86)\The Talos Principle
O43 - CFD: 01/03/2016 - [] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft Entertainment Sweden AB®
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\VODOBOX Flash Server Trial
O43 - CFD: 14/04/2016 - [] D -- C:\Program Files (x86)\VPNetwork LLC
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\VulkanRT
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 03/01/2015 - [] D -- C:\Program Files (x86)\Windows Identity Foundation
O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Windows Kits
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 17/04/2016 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 30/12/2014 - [] D -- C:\Program Files (x86)\WinMerge
O43 - CFD: 26/02/2015 - [] D -- C:\Program Files (x86)\WOMic
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K Download
O43 - CFD: 01/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMouseAutoClicker
O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gyazo
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hand of Fate [GOG.com]
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam
O43 - CFD: 14/04/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immunity Inc
O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Layers of Fear [GOG.com]
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEGO Jurassic World
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot
O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManiaPlanet
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEmu
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows - LIVE
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultiBit HD
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
O43 - CFD: 21/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 04/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenAL 1.1 SDK
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plantronics
O43 - CFD: 04/06/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Portal
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Gate
O43 - CFD: 02/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rico Software
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftEther VPN Client
O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Star Wars Racer
O43 - CFD: 17/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 04/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries
O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 10/07/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VPNetwork LLC
O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vulkan 1.0.3.1
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMerge
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 16/01/2016 - [0] D -- C:\ProgramData\-YNAD7DD
O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\.mono
O43 - CFD: 13/05/2015 - [] D -- C:\ProgramData\Aeria Games
O43 - CFD: 21/06/2015 - [] D -- C:\ProgramData\AirParrot 2
O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Apple
O43 - CFD: 09/02/2015 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 06/03/2015 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\ATI
O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Avira
O43 - CFD: 22/02/2016 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 30/07/2015 - [0] D -- C:\ProgramData\Binarysense
O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 28/10/2014 - [] D -- C:\ProgramData\Bohemia Interactive
O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Conexant
O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\CounterPath Corporation
O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 31/12/2014 - [] D -- C:\ProgramData\Downloaded Installations
O43 - CFD: 07/03/2016 - [] AD -- C:\ProgramData\DriversCloud.com
O43 - CFD: 23/02/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 03/04/2016 - [] D -- C:\ProgramData\Epic
O43 - CFD: 18/01/2016 - [] D -- C:\ProgramData\F-Secure
O43 - CFD: 04/08/2015 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\Git
O43 - CFD: 16/09/2015 - [] D -- C:\ProgramData\HiSuiteDataSvc
O43 - CFD: 14/10/2014 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Intel
O43 - CFD: 14/04/2015 - [] D -- C:\ProgramData\Isolated Storage
O43 - CFD: 04/03/2015 - [] D -- C:\ProgramData\Jabra
O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\Licenses
O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Logs
O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\MAGIX
O43 - CFD: 25/05/2015 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 06/03/2016 - [] D -- C:\ProgramData\ManiaPlanet
O43 - CFD: 17/04/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 14/04/2016 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 04/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 03/01/2015 - [] D -- C:\ProgramData\Microsoft Visual Studio
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\Nexon
O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\Orbit
O43 - CFD: 18/10/2015 - [] D -- C:\ProgramData\Origin
O43 - CFD: 03/04/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 04/03/2015 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 30/03/2015 - [0] D -- C:\ProgramData\RealVNC-Service
O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Reflector 2
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 14/10/2014 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 30/01/2015 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 06/04/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 27/05/2015 - [] D -- C:\ProgramData\SP_FT_Logs
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Steam
O43 - CFD: 14/10/2014 - [] D -- C:\ProgramData\SteelSeries
O43 - CFD: 14/10/2014 - [] D -- C:\ProgramData\Sun
O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\SWTCWRH
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\TrackmaniaTurbo
O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 04/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 01/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Blizzard Entertainment
O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Digidesign
O43 - CFD: 18/10/2015 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 25/12/2015 - [] AD -- C:\Program Files (x86)\Common Files\MAGIX Services
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Shared
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 06/04/2016 - [] AD -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 02/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\Common Files\VST3
O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 01/05/2015 - [0] SHD -- C:\Users\Dany\AppData\Roaming\.#
O43 - CFD: 05/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\.madgarden
O43 - CFD: 27/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\.minecraft
O43 - CFD: 05/06/2015 - [] D -- C:\Users\Dany\AppData\Roaming\.mono
O43 - CFD: 23/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\.purple
O43 - CFD: 16/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\AdbDriverInstaller
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Adobe
O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Aeria Games & Entertainment
O43 - CFD: 15/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\AMD
O43 - CFD: 10/12/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Andy
O43 - CFD: 18/11/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Anvsoft
O43 - CFD: 15/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Apple Computer
O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Atheros
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\ATI
O43 - CFD: 25/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Audacity
O43 - CFD: 07/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Avira
O43 - CFD: 09/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Awesomium
O43 - CFD: 05/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Axolot Games
O43 - CFD: 22/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Battle.net
O43 - CFD: 04/03/2015 - [] D -- C:\Users\Dany\AppData\Roaming\BluetoothDriverInstaller
O43 - CFD: 13/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\BrawlhallaAir
O43 - CFD: 05/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\BulletHeaven2
O43 - CFD: 30/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Charles
O43 - CFD: 14/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\com.jackboxgames.quiplash
O43 - CFD: 02/09/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Crypto Obfuscator For .Net v2013 R2
O43 - CFD: 30/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Crystal Dynamics
O43 - CFD: 25/05/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\dclogs
O43 - CFD: 20/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\discord
O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\DMCache
O43 - CFD: 12/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\FileZilla
O43 - CFD: 08/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Frontwing
O43 - CFD: 15/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Gui Booter
O43 - CFD: 10/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Gyazo
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Identities
O43 - CFD: 16/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\IDM
O43 - CFD: 14/10/2015 - [] D -- C:\Users\Dany\AppData\Roaming\iFunbox_UserCache
O43 - CFD: 14/04/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\Immunity Debugger
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\InstallShield
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Intel Corporation
O43 - CFD: 01/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\IO Interactive
O43 - CFD: 27/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\java
O43 - CFD: 08/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\library_dir
O43 - CFD: 04/10/2015 - [] D -- C:\Users\Dany\AppData\Roaming\LolClient
O43 - CFD: 01/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\LOVE
O43 - CFD: 17/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\LSE5709130
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Macromedia
O43 - CFD: 25/12/2015 - [] D -- C:\Users\Dany\AppData\Roaming\MAGIX
O43 - CFD: 12/04/2011 - [0] D -- C:\Users\Dany\AppData\Roaming\Media Center Programs
O43 - CFD: 23/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\MediaInfo
O43 - CFD: 17/04/2016 - [] SD -- C:\Users\Dany\AppData\Roaming\Microsoft
O43 - CFD: 04/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Mirroring360
O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Molura
O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Mozilla
O43 - CFD: 15/04/2016 - [0] D -- C:\Users\Dany\AppData\Roaming\MPC-HC
O43 - CFD: 13/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\MultiBitHD
O43 - CFD: 28/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Mumble
O43 - CFD: 20/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\mymacro
O43 - CFD: 04/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Nidhogg
O43 - CFD: 06/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Notepad++
O43 - CFD: 03/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\NuGet
O43 - CFD: 04/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\OBS
O43 - CFD: 19/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Oracle
O43 - CFD: 09/10/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Origin
O43 - CFD: 28/05/2015 - [] D -- C:\Users\Dany\AppData\Roaming\ParadoxInteractive
O43 - CFD: 04/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\PIFreePC
O43 - CFD: 17/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\PT
O43 - CFD: 20/04/2015 - [] D -- C:\Users\Dany\AppData\Roaming\qmacro
O43 - CFD: 09/02/2015 - [] D -- C:\Users\Dany\AppData\Roaming\redsn0w
O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Resource Tuner 2
O43 - CFD: 30/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Samsung
O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Skype
O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Smartflix
O43 - CFD: 04/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\SmartSteamEmu
O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Spotify
O43 - CFD: 19/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Steam
O43 - CFD: 25/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\steelseries-engine-3-client
O43 - CFD: 22/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\Subversion
O43 - CFD: 27/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Sun
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Roaming\SystemRequirementsLab
O43 - CFD: 06/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\TeamViewer
O43 - CFD: 13/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\TERA
O43 - CFD: 03/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\The Witness
O43 - CFD: 24/06/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\TightVNC
O43 - CFD: 15/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Titanium
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\TS3Client
O43 - CFD: 25/02/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Tunngle
O43 - CFD: 09/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Ubisoft
O43 - CFD: 08/02/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\uTorrent
O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\vlc
O43 - CFD: 19/06/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Warner Bros. Interactive Entertainment
O43 - CFD: 18/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\WinRAR
O43 - CFD: 12/06/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Wireshark
O43 - CFD: 13/05/2015 - [] SHD -- C:\Users\Dany\AppData\Roaming\wyUpdate AU
O43 - CFD: 15/01/2015 - [] D -- C:\Users\Dany\AppData\Roaming\xulrunner
O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\YouTubeByClick
O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\ZHP
O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Local\4kdownload.com
O43 - CFD: 09/04/2016 - [0] D -- C:\Users\Dany\AppData\Local\Adobe
O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Aeria Games
O43 - CFD: 04/04/2015 - [] D -- C:\Users\Dany\AppData\Local\AirMyPC
O43 - CFD: 21/06/2015 - [] D -- C:\Users\Dany\AppData\Local\AirParrot 2
O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\AirParrot 2 - Cracked By ThuGie @ warez-bb.org
O43 - CFD: 11/03/2016 - [] D -- C:\Users\Dany\AppData\Local\AMD
O43 - CFD: 09/02/2015 - [] D -- C:\Users\Dany\AppData\Local\Apple
O43 - CFD: 15/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Apple Computer
O43 - CFD: 04/08/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\Application Data
O43 - CFD: 29/10/2014 - [] D -- C:\Users\Dany\AppData\Local\Apps
O43 - CFD: 28/10/2014 - [] D -- C:\Users\Dany\AppData\Local\Arma 3
O43 - CFD: 14/10/2014 - [] D -- C:\Users\Dany\AppData\Local\ATI
O43 - CFD: 01/05/2015 - [] D -- C:\Users\Dany\AppData\Local\AutoIt v3
O43 - CFD: 01/03/2015 - [] D -- C:\Users\Dany\AppData\Local\BANDAI NAMCO Games
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Battle.net
O43 - CFD: 01/03/2015 - [] D -- C:\Users\Dany\AppData\Local\Blizzard
O43 - CFD: 07/11/2014 - [] D -- C:\Users\Dany\AppData\Local\Blizzard Entertainment
O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Local\BMExplorer
O43 - CFD: 25/01/2016 - [] D -- C:\Users\Dany\AppData\Local\CAPCOM
O43 - CFD: 23/07/2015 - [] D -- C:\Users\Dany\AppData\Local\CEF
O43 - CFD: 13/08/2015 - [] D -- C:\Users\Dany\AppData\Local\Comms
O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Local\CounterPath
O43 - CFD: 23/02/2015 - [] D -- C:\Users\Dany\AppData\Local\CounterPath Corporation
O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Local\CrashDumps
O43 - CFD: 29/10/2014 - [] D -- C:\Users\Dany\AppData\Local\DayZ
O43 - CFD: 10/02/2016 - [] D -- C:\Users\Dany\AppData\Local\DeathTractor
O43 - CFD: 15/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Diagnostics
O43 - CFD: 09/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Discord
O43 - CFD: 23/01/2016 - [] D -- C:\Users\Dany\AppData\Local\DiscordPTB
O43 - CFD: 20/03/2016 - [] D -- C:\Users\Dany\AppData\Local\Disp1
O43 - CFD: 24/01/2015 - [] D -- C:\Users\Dany\AppData\Local\DotNet Resolver
O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Downloaded Installations
O43 - CFD: 26/09/2015 - [] D -- C:\Users\Dany\AppData\Local\DunDefLauncher
O43 - CFD: 13/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Email_Account_Creator_Ext
O43 - CFD: 20/06/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\EmieBrowserModeList
O43 - CFD: 20/06/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\EmieSiteList
O43 - CFD: 20/06/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\EmieUserList
O43 - CFD: 11/09/2015 - [] D -- C:\Users\Dany\AppData\Local\EMU
O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\EnigmaPrison
O43 - CFD: 03/04/2016 - [] D -- C:\Users\Dany\AppData\Local\EpicGamesLauncher
O43 - CFD: 03/10/2015 - [] D -- C:\Users\Dany\AppData\Local\F-Secure
O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Local\fabi.me
O43 - CFD: 06/06/2015 - [] D -- C:\Users\Dany\AppData\Local\FLT
O43 - CFD: 22/05/2015 - [] D -- C:\Users\Dany\AppData\Local\FluxSoftware
O43 - CFD: 13/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Geckofx
O43 - CFD: 04/03/2015 - [] D -- C:\Users\Dany\AppData\Local\GN_Netcom_A_S
O43 - CFD: 09/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Google
O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Grip
O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Local\GSoftwareLab
O43 - CFD: 01/06/2015 - [] D -- C:\Users\Dany\AppData\Local\GWX
O43 - CFD: 30/12/2014 - [] D -- C:\Users\Dany\AppData\Local\HHD Software
O43 - CFD: 04/08/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\History
O43 - CFD: 16/09/2015 - [] D -- C:\Users\Dany\AppData\Local\HiSuite
O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Local\IsolatedStorage
O43 - CFD: 17/07/2015 - [] D -- C:\Users\Dany\AppData\Local\LeagueSharp
O43 - CFD: 17/08/2015 - [] D -- C:\Users\Dany\AppData\Local\livestreamer-twitch-gui
O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Macromedia
O43 - CFD: 30/09/2015 - [] D -- C:\Users\Dany\AppData\Local\Macroplant_LLC
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Microsoft
O43 - CFD: 07/11/2014 - [0] D -- C:\Users\Dany\AppData\Local\Microsoft Help
O43 - CFD: 04/09/2015 - [] D -- C:\Users\Dany\AppData\Local\MicrosoftEdge
O43 - CFD: 13/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Molura
O43 - CFD: 14/05/2015 - [] D -- C:\Users\Dany\AppData\Local\Mozilla
O43 - CFD: 01/03/2016 - [] D -- C:\Users\Dany\AppData\Local\mullvad
O43 - CFD: 28/07/2015 - [] D -- C:\Users\Dany\AppData\Local\Mumble
O43 - CFD: 26/08/2015 - [0] D -- C:\Users\Dany\AppData\Local\My Games
O43 - CFD: 04/08/2015 - [0] D -- C:\Users\Dany\AppData\Local\NetworkTiles
O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Obliteracers
O43 - CFD: 17/12/2015 - [] D -- C:\Users\Dany\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\OrionGame
O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Package Cache
O43 - CFD: 07/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Packages
O43 - CFD: 14/10/2015 - [0] D -- C:\Users\Dany\AppData\Local\pangu
O43 - CFD: 04/11/2014 - [] D -- C:\Users\Dany\AppData\Local\PAYDAY 2
O43 - CFD: 05/08/2015 - [0] D -- C:\Users\Dany\AppData\Local\PeerDistRepub
O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\pip
O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Plex Media Server
O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Programs
O43 - CFD: 04/08/2015 - [] D -- C:\Users\Dany\AppData\Local\Publishers
O43 - CFD: 23/08/2015 - [] D -- C:\Users\Dany\AppData\Local\PunkBuster
O43 - CFD: 30/03/2015 - [] D -- C:\Users\Dany\AppData\Local\RealVNC
O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Local\Red Gate
O43 - CFD: 31/12/2014 - [] D -- C:\Users\Dany\AppData\Local\Red_Gate_Software_Ltd
O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Reflector 2
O43 - CFD: 13/06/2015 - [0] D -- C:\Users\Dany\AppData\Local\Rockstar Games
O43 - CFD: 30/01/2015 - [0] D -- C:\Users\Dany\AppData\Local\Samsung
O43 - CFD: 24/05/2015 - [] D -- C:\Users\Dany\AppData\Local\SCE
O43 - CFD: 10/01/2015 - [] D -- C:\Users\Dany\AppData\Local\SKIDROW
O43 - CFD: 02/09/2015 - [] D -- C:\Users\Dany\AppData\Local\SkinSoft
O43 - CFD: 01/01/2016 - [0] D -- C:\Users\Dany\AppData\Local\Skype
O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\SkypePlugin
O43 - CFD: 11/11/2014 - [] D -- C:\Users\Dany\AppData\Local\Skyrim
O43 - CFD: 28/02/2016 - [] D -- C:\Users\Dany\AppData\Local\Spotify
O43 - CFD: 09/04/2016 - [] D -- C:\Users\Dany\AppData\Local\SquirrelTemp
O43 - CFD: 31/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Star Citizen
O43 - CFD: 23/12/2015 - [] D -- C:\Users\Dany\AppData\Local\Steam
O43 - CFD: 13/03/2016 - [] D -- C:\Users\Dany\AppData\Local\SUPERHOT_Sp_z_o.o
O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Targem
O43 - CFD: 18/04/2016 - [] D -- C:\Users\Dany\AppData\Local\Temp
O43 - CFD: 04/08/2015 - [0] SHD -- C:\Users\Dany\AppData\Local\Temporary Internet Files
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Local\TileDataLayer
O43 - CFD: 09/03/2016 - [] D -- C:\Users\Dany\AppData\Local\Ubisoft
O43 - CFD: 01/03/2016 - [] D -- C:\Users\Dany\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 08/04/2016 - [] D -- C:\Users\Dany\AppData\Local\UNDERTALE
O43 - CFD: 03/04/2016 - [] D -- C:\Users\Dany\AppData\Local\UnrealEngine
O43 - CFD: 03/04/2016 - [] D -- C:\Users\Dany\AppData\Local\UnrealEngineLauncher
O43 - CFD: 16/09/2015 - [] D -- C:\Users\Dany\AppData\Local\VirtualStore
O43 - CFD: 16/01/2016 - [] D -- C:\Users\Dany\AppData\Local\VODOBOX
O43 - CFD: 16/02/2016 - [] D -- C:\Users\Dany\AppData\Local\VPNetworkLLC
O43 - CFD: 14/02/2016 - [] D -- C:\Users\Dany\AppData\Local\worstenbrood
O43 - CFD: 14/10/2014 - [0] D -- C:\Users\Dany\AppData\Local\Programs\Common
O43 - CFD: 04/01/2016 - [] D -- C:\Users\Dany\AppData\Local\Programs\Python
O43 - CFD: 10/07/2015 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 04/08/2015 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 17/04/2016 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 14/05/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames
O43 - CFD: 17/04/2016 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crusader Kings II
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DroidCam
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux
O43 - CFD: 08/05/2015 - [0] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\frontwing
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HHD Hex Editor Neo
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 10/07/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 04/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MKJogo
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.5
O43 - CFD: 10/01/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Smartflix Inc
O43 - CFD: 17/04/2016 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 04/08/2015 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteelSeries
O43 - CFD: 10/07/2015 - [] RD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 01/03/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
O43 - CFD: 10/07/2015 - [] RSD -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Dany\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Dany\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ ShareTools MSconfig StartupReg (8) - 0s
O53 - SMSR:HKLM\...\startupreg\Aeria Ignite [Key] . (...) -- C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Akamai NetSession Interface [Key] . (...) -- C:\Users\Dany\AppData\Local\Akamai\netsession_win.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\BlueStacks Agent [Key] . (...) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\CyberGhost [Key] . (...) -- C:\Program Files\CyberGhost 5\CyberGhost.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\IAStorIcon [Key] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation
O53 - SMSR:HKLM\...\startupreg\Raptr [Key] . (...) -- C:\PROGRA~2\Raptr\raptrstub.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Spotify Web Helper [Key] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Dany\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify Ltd
O53 - SMSR:HKLM\...\startupreg\XboxStat [Key] . (.Microsoft Corporation - XBoxStat.exe.) -- C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe =>.Microsoft Corporation

---\\ System Drivers List (90) - 3s
O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows®
O58 - SDL:2016/04/05 09:33:42 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\WINDOWS\System32\drivers\amdacpksd.sys [305392] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2016/03/08 01:24:24 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmafd.sys [23240] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2014/10/28 01:46:12 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [62152] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows®
O58 - SDL:2015/11/12 15:33:02 A . (.Asmedia Technology - Asmedia 106x SATA Host Controller Driver.) -- C:\WINDOWS\System32\drivers\asstahci64.sys [89960] =>.ASMedia Technology Inc.®
O58 - SDL:2014/10/23 10:41:30 A . (.Asmedia Technology - Asmedia 106x SATA Host Controller Driver.) -- C:\WINDOWS\System32\drivers\asstor64.sys [81208] =>.ASMedia Technology Inc.®
O58 - SDL:2015/05/12 06:24:36 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athrx.sys [4149784] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2015/11/17 20:09:56 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw10x.sys [4323976] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2016/01/25 00:01:38 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [111120] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2016/04/05 09:38:52 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [26354192] {330000002D4E7AEC99B0F05F7300000000002D} =>.Advanced Micro Devices, Inc.
O58 - SDL:2016/04/05 09:39:00 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [685584] {330000002D4E7AEC99B0F05F7300000000002D} =>.Advanced Micro Devices, Inc.
O58 - SDL:2016/03/18 13:31:27 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [128664] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2016/03/18 13:31:27 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [137952] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2015/12/17 17:24:35 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [35488] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2016/03/18 13:31:27 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [68936] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2014/09/28 22:59:18 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\WINDOWS\System32\drivers\btath_bus.sys [35016] =>.Qualcomm Atheros®
O58 - SDL:2015/03/09 09:48:34 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240] =>.Qualcomm Atheros®
O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2015/06/19 19:10:00 A . (.Dev47Apps - Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\droidcam.sys [33592] =>.DEV47 APPS®
O58 - SDL:2015/06/19 19:10:01 A . (.Dev47Apps - WDM Video Capture Driver.) -- C:\WINDOWS\System32\drivers\droidcamvideo.sys [229432] =>.DEV47 APPS®
O58 - SDL:2015/11/24 21:17:18 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1d65x64.sys [541672] =>.Intel(R) INTELNPG1®
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i63x64.sys [482328] =>.Intel(R) Intel Network Drivers®
O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows®
O58 - SDL:2015/12/04 15:50:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\fsfreedometap.sys [34344] =>.F-Secure Corporation®
O58 - SDL:2015/12/24 13:31:30 A . (.Arainia Solutions LLC - Gizmo Drive, kernel-mode device driver.) -- C:\WINDOWS\System32\drivers\gizmodrv.sys [34704] {51E68CF029AE755032D4A77D37DD7D5C}
O58 - SDL:2013/01/11 19:02:34 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [64624] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2015/05/07 13:36:02 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbmdm.sys [223232] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2015/05/07 13:36:02 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\hw_quusbnet.sys [287232] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2015/05/07 13:36:02 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\hw_usbdev.sys [116864] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/11/12 21:05:48 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [1467912] =>.Intel(R) Rapid Storage Technology®
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows®
O58 - SDL:2016/01/28 11:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.®
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation®
O58 - SDL:2016/04/17 22:39:20 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2009/08/02 02:36:00 A . (.MaxiVista - mv video driver ExtA.) -- C:\WINDOWS\System32\drivers\mvvideoexta.sys [13440] {01000000000121ED9FE138}
O58 - SDL:2016/03/10 14:09:10 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [65408] =>.Malwarebytes Corporation®
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows®
O58 - SDL:2016/01/22 16:35:52 A . (.SoftEther Corporation - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\Neo6_x64_VPN2.sys [38224] =>.SoftEther Corporation®
O58 - SDL:2015/03/04 20:24:13 A . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\Neo_0037.sys [28640] =>.SoftEther K.K.®
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows®
O58 - SDL:2013/04/12 15:52:06 A . (.C-Media Electronics Inc - C-Media Audio WDM Driver.) -- C:\WINDOWS\System32\drivers\PLTGC.sys [1327104]
O58 - SDL:2015/08/17 14:01:14 A . (.Sysinternals - www.sysinternals.com - Process Explorer.) -- C:\WINDOWS\System32\drivers\PROCEXP152.SYS [34328] =>.Sysinternals®
O58 - SDL:2015/06/18 18:45:16 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4496600] =>.Realtek Semiconductor Corp®
O58 - SDL:2016/01/18 22:46:04 A . (.SoftEther Corporation - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\SeLow_x64.sys [51024] =>.SoftEther Corporation®
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2015/10/03 00:24:20 A . (.SteelSeries ApS - SteelSeries Device Factory Driver.) -- C:\WINDOWS\System32\drivers\ssdevfactory.sys [40568] =>.SteelSeries ApS®
O58 - SDL:2016/02/02 20:09:04 A . (.SteelSeries ApS - SteelSeries HID Driver.) -- C:\WINDOWS\System32\drivers\sshid.sys [51400] =>.SteelSeries ApS®
O58 - SDL:2014/10/13 07:57:48 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [110336] =>.DEVGURU CO LTD®
O58 - SDL:2014/10/13 07:57:48 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD®
O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2015/09/25 12:19:16 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project
O58 - SDL:2009/09/16 07:02:42 A . (.Tunngle.net - TAP-Win32 Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901t.sys [31232] =>.Tunngle.net
O58 - SDL:2014/11/10 13:12:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [129312] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2015/11/11 00:26:30 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\torguardtap0901.sys [39840] {0081DA02C91F7168A68F2AFBCA31C691CF} =>.The OpenVPN Project
O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032]
O58 - SDL:2015/06/17 17:04:24 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2014/10/11 14:29:02 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [917112] =>.Oracle Corporation®
O58 - SDL:2014/10/11 14:27:46 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\WINDOWS\System32\drivers\VBoxNetAdp.sys [142528] =>.Oracle Corporation®
O58 - SDL:2014/10/11 14:27:44 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys [129168] =>.Oracle Corporation®
O58 - SDL:2015/08/06 19:00:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\visctap0901.sys [34440] =>.SparkLabs Pty Ltd®
O58 - SDL:2015/01/28 15:45:24 A . (.RealVNC Ltd. - VNC Mirror Miniport.) -- C:\WINDOWS\System32\drivers\vncmirror.sys [4608] =>.RealVNC Ltd.
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows®
O58 - SDL:2015/02/22 13:58:04 A . (.Windows (R) Win 7 DDK provider - Microsoft Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\womic.sys [27056] =>.Windows (R) Win 7 DDK provider

---\\ Last modified or created user files (14) - 4s
O61 - LFC: 2016/04/18 09:20:45 A . (..) -- C:\Users\Dany\ZHPDiag3.exe [288487]
O61 - LFC: 2016/04/18 09:23:30 A . (..) -- C:\Users\Dany\AppData\Roaming\IDM\DwnlData\Dany\ZHPDiag3_1764\ZHPDiag3.exe [1699103]
O61 - LFC: 2016/04/14 12:37:49 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\Terminal Server Client\Cache\Cache0000.bin [104682508]
O61 - LFC: 2016/04/14 12:39:53 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\Terminal Server Client\Cache\Cache0001.bin [104717324]
O61 - LFC: 2016/04/14 12:54:14 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\Terminal Server Client\Cache\Cache0002.bin [104872972]
O61 - LFC: 2016/04/15 07:30:04 A . (..) -- C:\Users\Dany\AppData\Local\Microsoft\GameDVR\KnownGameList.bin [199956]
O61 - LFC: 2016/04/15 18:51:40 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\0b97656f286167aa_32.bin [25602]
O61 - LFC: 2016/04/16 09:51:43 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\3b02bef527ffcccc_32.bin [18666]
O61 - LFC: 2016/04/17 16:09:40 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\3e84b657233da406_32.bin [18662]
O61 - LFC: 2016/04/15 19:14:32 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\5641b4cc69ed9593_32.bin [37243]
O61 - LFC: 2016/04/18 10:44:59 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\8caa9a920725458a_32.bin [18662]
O61 - LFC: 2016/04/18 12:10:27 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\8d7bac1791ca219f_32.bin [132706]
O61 - LFC: 2016/04/15 19:12:27 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\a6b5602859630101_32.bin [20151]
O61 - LFC: 2016/04/17 16:09:41 A . (..) -- C:\Users\Dany\AppData\Local\AMD\GLCache\a725d42c225af74e_32.bin [18664]

---\\ File Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Start Menu Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Search Browser Infection (1) - 2s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Search Svchost Services (42) - 0s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\WINDOWS\System32\ikeext.dll [954368] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\WINDOWS\System32\appinfo.dll [93696] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\WINDOWS\System32\eapsvc.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [133120] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324096] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\WINDOWS\System32\SessEnv.dll [371200] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\WINDOWS\System32\ncasvc.dll [167424] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\WINDOWS\System32\NetSetupSvc.dll [189952] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [680448] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\System32\mprdim.dll [497152] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\System32\sens.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\WINDOWS\System32\tapisrv.dll [311808] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\system32\wuaueng.dll [2237952] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\WINDOWS\System32\qmgr.dll [1168896] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\WINDOWS\System32\shsvcs.dll [593920] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [348672] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [712704] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\WINDOWS\System32\lfsvc.dll [27136] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [267776] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1016832] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\WINDOWS\System32\bdesvc.dll [359936] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\WINDOWS\system32\themeservice.dll [58368] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\WINDOWS\System32\appmgmts.dll [200192] =>.Microsoft Corporation

---\\ Firewall Active Exception List (56) - 2s
O87 - FAEL: "{8217E5C0-F200-4178-8A84-8A38E370A6B8}" [In-None-P17-TRUE] .(...) -- F:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe (.not file.)
O87 - FAEL: "{850521AD-57DC-454B-963E-739594944413}" [In-None-P6-TRUE] .(...) -- F:\Program Files (x86)\The Sims 4\Game\Bin\TS4.exe (.not file.)
O87 - FAEL: "UDP Query User{8F26D59F-FF83-46AC-AFC8-7A6D47BAF130}C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe
O87 - FAEL: "TCP Query User{B7DF3819-B73B-4CF4-A84B-8E0DC8A63BBD}C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\cracking\sentry mba\sentry mba\sentry_mba.exe
O87 - FAEL: "UDP Query User{4A101CA1-7EBC-4CCD-82A3-166A1789881C}C:\program files (x86)\counterpath\x-lite\x-lite.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\counterpath\x-lite\x-lite.exe (.not file.)
O87 - FAEL: "TCP Query User{1F6938F7-6542-4AE4-AF1B-8F7F0D564869}C:\program files (x86)\counterpath\x-lite\x-lite.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\counterpath\x-lite\x-lite.exe (.not file.)
O87 - FAEL: "TCP Query User{AACF3514-A88A-41FE-9352-CADDE716C5BB}C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe" [In-None-P6-TRUE] .(...) -- C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe (.not file.)
O87 - FAEL: "UDP Query User{5413E8DA-FE08-4964-9D70-F6A679C9D466}C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe" [In-None-P17-TRUE] .(...) -- C:\gog games\magrunner - dark pulse\binaries\win32\magrunner.exe (.not file.)
O87 - FAEL: "TCP Query User{4D76E940-C475-414F-A9BE-F7FFA580B71D}C:\program files\stairs\binaries\win32\udk.exe" [In-None-P6-TRUE] .(...) -- C:\program files\stairs\binaries\win32\udk.exe (.not file.)
O87 - FAEL: "UDP Query User{74F46E12-6D21-4831-98A8-28FEA7AFE002}C:\program files\stairs\binaries\win32\udk.exe" [In-None-P17-TRUE] .(...) -- C:\program files\stairs\binaries\win32\udk.exe (.not file.)
O87 - FAEL: "TCP Query User{EC606936-1F99-4753-9EA1-BE693A5DAB30}C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe (.not file.)
O87 - FAEL: "UDP Query User{8D933603-BFE2-475F-A67F-9CA4EE4A6665}C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]blzrsh104\game.exe (.not file.)
O87 - FAEL: "TCP Query User{E24F3DDA-EB1D-4E55-BE9D-2213B8DE1DE1}C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe (.not file.)
O87 - FAEL: "UDP Query User{9BB57B34-C3D7-474E-A16F-7745FEB2708C}C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.12.0.55\pluginhost.exe (.not file.)
O87 - FAEL: "TCP Query User{34CA656F-594E-4628-BA18-7B1D8FB44E07}C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe (.not file.)
O87 - FAEL: "UDP Query User{8B453C2A-3990-4EEB-B08B-A60CA7CF78D8}C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.69\pluginhost.exe (.not file.)
O87 - FAEL: "{8C33B315-D19F-4436-8016-027FAE9D1A0D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VODOBOX Flash Server Trial\VLC\vlc_VDBPA.exe (.not file.)
O87 - FAEL: "TCP Query User{E43EA3BF-077C-4203-A999-29CCE35C9287}C:\program files (x86)\kodi\kodi.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\kodi\kodi.exe (.not file.)
O87 - FAEL: "UDP Query User{EA6004CD-2A83-4971-BB9B-42751B8AEA9C}C:\program files (x86)\kodi\kodi.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\kodi\kodi.exe (.not file.)
O87 - FAEL: "TCP Query User{22B4419D-CBDD-4F3B-AD68-586425A898C5}C:\program files\airparrot 2\airparrot2.exe" [In-None-P6-TRUE] .(...) -- C:\program files\airparrot 2\airparrot2.exe (.not file.)
O87 - FAEL: "UDP Query User{F6512A38-B682-41D5-A44F-0DA6A28D287F}C:\program files\airparrot 2\airparrot2.exe" [In-None-P17-TRUE] .(...) -- C:\program files\airparrot 2\airparrot2.exe (.not file.)
O87 - FAEL: "TCP Query User{E108123F-5C26-42C7-881C-261219E742CA}C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe (.not file.)
O87 - FAEL: "UDP Query User{9ABEDD50-CBDD-4E62-B19B-1207C6A5E567}C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.13.0.71\pluginhost.exe (.not file.)
O87 - FAEL: "TCP Query User{828B0DE2-3782-410F-B677-9FBEFD321518}C:\program files\cloud imperium games\patcher\cigpatcher.exe" [In-None-P6-TRUE] .(...) -- C:\program files\cloud imperium games\patcher\cigpatcher.exe (.not file.)
O87 - FAEL: "UDP Query User{C9B87636-C8E7-49B4-A5C5-02AF1E18A882}C:\program files\cloud imperium games\patcher\cigpatcher.exe" [In-None-P17-TRUE] .(...) -- C:\program files\cloud imperium games\patcher\cigpatcher.exe (.not file.)
O87 - FAEL: "TCP Query User{3F01A5CF-1FE9-4CC9-BA79-0BAEF12A8FC4}C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe" [In-None-P6-TRUE] .(...) -- C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe (.not file.)
O87 - FAEL: "UDP Query User{1B236C57-977E-4861-A13D-A9AA4B31F66E}C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe" [In-None-P17-TRUE] .(...) -- C:\program files\cloud imperium games\starcitizen\public\bin64\starcitizen.exe (.not file.)
O87 - FAEL: "{8DB94DCA-7EFD-4F68-8A6C-9E37F202B3D2}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microvirt\MEmu\MEmu.exe {5528D5543296BFE427D43B8DDC0A20C7}
O87 - FAEL: "{734E5059-D7FB-4D8E-B2F9-156E7F5087BD}" [Out-None-P17-TRUE] .(...) -- C:\Program Files\Microvirt\MEmu\MEmu.exe {5528D5543296BFE427D43B8DDC0A20C7}
O87 - FAEL: "TCP Query User{5E785404-4C65-4F6A-92C0-6A7DBF8ED234}C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe
O87 - FAEL: "UDP Query User{B854EEAF-8D6A-4A76-95BF-E27BEE0A5FBD}C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]scrap mechanic v0.1.17\release\scrapmechanic.exe
O87 - FAEL: "TCP Query User{5DD2C654-9D8C-4D60-9BFB-54131FE699EE}C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe (.not file.)
O87 - FAEL: "UDP Query User{A067E547-B104-4802-AF71-D3F020CB3C80}C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]firewatch\firewatch.exe (.not file.)
O87 - FAEL: "TCP Query User{B28043F1-197C-49FA-A5E6-3F6B08883D99}C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe (.not file.)
O87 - FAEL: "UDP Query User{3AB7FF27-CB18-43D5-8DE6-59CB5BA3C384}C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]drii\dreii\dreii.exe (.not file.)
O87 - FAEL: "TCP Query User{11F1ECE3-BB4A-4753-910D-CA2C1F5230F4}C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe (.not file.)
O87 - FAEL: "UDP Query User{475E7AAC-5EE5-4B8A-96AC-0A95BCD30930}C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]death tractor v6.66\deathtractor\binaries\win32\deathtractor-win32-shipping.exe (.not file.)
O87 - FAEL: "TCP Query User{1EE71EDC-2D08-4010-A55C-1AEC4169F28D}C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.)
O87 - FAEL: "UDP Query User{0E7B76E2-9675-4DD8-81B3-C61FA1A33719}C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.)
O87 - FAEL: "{FAD828FB-9C6A-4DE5-8918-10A627CFB2D6}" [In-None-P17-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.)
O87 - FAEL: "{D2EA7142-FA03-4778-BBC1-D632EDFC4B9D}" [In-None-P6-TRUE] .(...) -- C:\users\dany\appdata\local\skypeplugin\7.14.0.184\pluginhost.exe (.not file.)
O87 - FAEL: "TCP Query User{8BBFED0F-8CEB-4C59-A83C-51730ED58855}C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.)
O87 - FAEL: "UDP Query User{B395811D-03E7-4AD7-A23B-1783A3A8D136}C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.)
O87 - FAEL: "{455F38F8-D398-4873-BDB4-B013C0D56469}" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.)
O87 - FAEL: "{9AFD8BAC-8346-47D9-BB0D-E60C579A5995}" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]the ship remasted v0.6\theshipremasted.exe (.not file.)
O87 - FAEL: "{AF457EEC-C48D-4F7E-984A-87CD1EC8F274}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe (.not file.)
O87 - FAEL: "{2CC73501-7495-47D2-95C1-034645B2872F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe (.not file.)
O87 - FAEL: "{76498D16-51E9-4FAE-9980-8FA59F32B44D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\Tunngle.exe (.not file.)
O87 - FAEL: "{05549AFF-2280-4D3E-9AA8-EA8D8C5CFC47}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Tunngle\Tunngle.exe (.not file.)
O87 - FAEL: "{74A568FB-0AF3-4A3A-B245-5C0FF4FD9BBF}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.)
O87 - FAEL: "TCP Query User{6537A1A3-08BA-470D-A5D4-96050A9B7154}C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.)
O87 - FAEL: "UDP Query User{6015C8E2-D8E7-4733-A0FF-26AA89CD8ABA}C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.)
O87 - FAEL: "{F64EEFC6-47D3-4A7F-A25C-8E05C143396B}" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.)
O87 - FAEL: "{8CDF9E4F-D588-40B4-9F12-2BD24CD2D214}" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]obliteracers v1.0.0.3519\obliteracers\binaries\win64\obliteracers-win64-shipping.exe (.not file.)
O87 - FAEL: "TCP Query User{B44022DA-2517-41E5-80A8-47CF36217AE3}C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe (.not file.)
O87 - FAEL: "UDP Query User{78F87082-18EB-4574-A1A8-EB7DB660E254}C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\users\dany\desktop\[www.mpc-g.com]grip prealpha v1.0.6.0\grip\binaries\win64\grip-win64-shipping.exe (.not file.)

---\\ Additional Scan (O88) (1) - 0s
~ No malicious or unnecessary items found.

---\\ Summary of the elements found (1) - 0s
http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS

~ End of the scan, 57746 items in 00h01mn07s (1576)(0)

Publicité


Signaler le contenu de ce document

Publicité