cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.1.19.16 By Nicolas Coolman (2017/01/19)
~ Run by THEGIVE (Administrator) (2017/01/20 12:01:06)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: https://www.facebook.com/nicolascoolman1
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\THEGIVE\Desktop\ZHPDiag.txt
~ Report: C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 14393) =>.Microsoft Corporation

---\\ Internet Browsers (3) - 0s
~ GCIE: Google Chrome v55.0.2883.87
~ MFIE: Mozilla Firefox 50.1.0 (x86 fr)
~ MSIE: Internet Explorer v11.576.14393.0

---\\ Windows Product Information (3) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ System protection software (2) - 6s
Kaspersky Total Security v17.0.0.611 (Protection)
Windows Defender (Deactivate)

---\\ Surveillance software (1) - 7s
~ Adobe Flash Player 24 PPAPI (Surveillance)

---\\ Sharing software PeerToPeer (1) - 7s
~ µTorrent v3.4.9.43085 (P2P)

---\\ Information on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4140.908 MB (23% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 117 GB (53%) free of 218 GB : OK =>.Disk Space

---\\ Connection to the system mode (3) - 0s
~ Computer Name: DESKTOP-4SE8BJR
~ User Name: THEGIVE
~ Logged in as Administrator

---\\ Enumeration of the disk units (3) - 0s
~ Drive C: has 117 GB free of 218 GB (System)
~ Drive D: has 142 GB free of 359 GB
~ Drive E: has 22 GB free of 31 GB

---\\ State of the Windows Security Center (8) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (24) - 2s
[MD5.4E10FB1A015B49AC68F76C1A3F4D9C0F] - 27/11/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [14458] =>.Microsoft Windows®
[MD5.C7645D43451C6D94D87F4D07BDE59C89] - 27/11/2016 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [14458] =>.Microsoft Corporation
[MD5.99A19C9A74E2F9820E501DCE77F84F70] - 27/11/2016 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [14458] =>.Microsoft Windows Publisher®
[MD5.E584CDC70F694F9A984A060A8291EB04] - 27/11/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [14458] =>.Microsoft Corporation
[MD5.917F081E2AB667C44F7D96DE1D16DFAE] - 27/11/2016 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [14458] =>.Microsoft Corporation
[MD5.9600B7F2F89DE60A80D13DE42F672834] - 27/11/2016 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [14458] =>.Microsoft Corporation
[MD5.96B8A433F6407DE34850927C96C6CE9B] - 27/11/2016 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [14458] =>.Microsoft Windows®
[MD5.227CFE3EDA82029AAC1C088A16297CD7] - 27/11/2016 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [14458] =>.Microsoft Windows®
[MD5.323AA1953ED9C01E23F740FA891FE064] - 27/11/2016 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [14458] =>.Microsoft Windows®
[MD5.A10F989A812B57B9695F6C305907C9C6] - 27/11/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [14458] =>.Microsoft Windows®
[MD5.F8FB51B9EF6372610E9B31A1D86B62FC] - 27/11/2016 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [14458] =>.Microsoft Corporation
[MD5.613D0137C269187FA298A157E3D14A18] - 27/11/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [14458] =>.Microsoft Corporation
[MD5.0D1D392ED2597F295956D058D33BD7C3] - 27/11/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [14458] =>.Microsoft Corporation
[MD5.10E3515FE5DBA6656FA62C29342EC4A1] - 27/11/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [14458] =>.Microsoft Corporation
[MD5.B54B30992620C97230013A74461C8517] - 27/11/2016 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [14458] =>.Microsoft Corporation
[MD5.F1DAECC3B3D6399875D4F10529D6A77C] - 27/11/2016 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [14458] =>.Microsoft Corporation
[MD5.E671EDAB0726E05ECEF4058B4CD73C4D] - 27/11/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [14458] =>.Microsoft Windows®
[MD5.6FEBB0A847FFD5F057B9AC8889F1B9A7] - 27/11/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [14458] =>.Microsoft Corporation
[MD5.DB69C6DA8B3DDFDC547D455CA23A8250] - 27/11/2016 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [14458] =>.Microsoft Windows®
[MD5.6B81BF7853D161DB8AC62CD8B9C2DE6B] - 27/11/2016 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [14458] =>.Microsoft Corporation
[MD5.17E565710172ED71B8531D8822E1C5D1] - 27/11/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [14458] =>.Microsoft Corporation
[MD5.7135785C21CA79D270D11037C43D3F19] - 27/11/2016 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [14458] =>.Microsoft Corporation
[MD5.9D2DD64A0B51C56285512DC9454340F6] - 27/11/2016 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [14458] =>.Microsoft Windows®
[MD5.BF2546583BB75F01DDA60A7921DFB230] - 27/11/2016 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [14458] =>.Microsoft Windows®

---\\ Non Microsoft non disabled Windows Services (16) - 3s
O23 - Service: Acrylic DNS Proxy (AcrylicServiceController) . (...) - C:\Program Files (x86)\Acrylic DNS Proxy\AcrylicService.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 24.0 r0.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: Arp Intelligent Protection Service (AIPS) . (.Arcai.com - Arp Intelligent Protection Service.) - d:\Program Files (x86)\netcut\services\aips.exe =>.arcai.com
O23 - Service: Kaspersky Anti-Virus Service 17.0.0 (AVP17.0.0) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe =>.Kaspersky Lab®
O23 - Service: InterBase XE7 Guardian gds_db (IBG_gds_db) . (.Embarcadero Technologies, Inc. - InterBase Server.) - d:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\ibguard.exe =>.Embarcadero Technologies Inc.®
O23 - Service: IObit Uninstaller Service (IObitUnSvr) . (.IObit - Uninstall Programs.) - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe =>.IObit Information Technology®
O23 - Service: Kaspersky Secure Connection Service 1.0.0 (KSDE1.0.0) . (.AO Kaspersky Lab - Kaspersky Secure Connection.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe =>.Kaspersky Lab®
O23 - Service: TechSmith Uploader Service (TechSmith Uploader Service) . (.TechSmith Corporation - TechSmith Uploader Service.) - C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe =>.TechSmith Corporation
O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.®
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.®
O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare AppService.) - C:\Program Files (x86)\Wondershare\WAF\2.3.2.219\WsAppService.exe =>.Wondershare

---\\ Services not Microsoft (SR=Run, SS=Stop) (26) - 36s
SR - Auto [27/11/2016] [ 14458] Acrylic DNS Proxy (AcrylicServiceController) . (...) - C:\Program Files (x86)\Acrylic DNS Proxy\AcrylicService.exe
SR - Auto [27/11/2016] [ 14458] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Auto [27/11/2016] [ 14458] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Demand [27/11/2016] [ 14458] AdobeUpdateService (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [27/11/2016] [ 14458] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SR - Auto [27/11/2016] [ 14458] Arp Intelligent Protection Service (AIPS) . (.Arcai.com.) - d:\Program Files (x86)\netcut\services\aips.exe =>.arcai.com
SR - Auto [27/11/2016] [ 14458] Kaspersky Anti-Virus Service 17.0.0 (AVP17.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe =>.Kaspersky Lab®
SS - Demand [27/11/2016] [ 14458] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SS - Demand [27/11/2016] [ 14458] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [27/11/2016] [ 14458] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [27/11/2016] [ 14458] InterBase XE7 Guardian gds_db (IBG_gds_db) . (.Embarcadero Technologies, Inc..) - d:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\ibguard.exe =>.Embarcadero Technologies Inc.®
SR - Demand [27/11/2016] [ 14458] InterBase XE7 Server gds_db (IBS_gds_db) . (.Embarcadero Technologies, Inc..) - d:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\ibserver.exe =>.Embarcadero Technologies, Inc.
SS - Demand [27/11/2016] [ 14458] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation®
SR - Auto [27/11/2016] [ 14458] IObit Uninstaller Service (IObitUnSvr) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe =>.IObit Information Technology®
SS - Demand [27/11/2016] [ 14458] klvssbrigde64 (klvssbrigde64) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\x64\vssbridge64.exe =>.Kaspersky Lab®
SR - Auto [27/11/2016] [ 14458] Kaspersky Secure Connection Service 1.0.0 (KSDE1.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe =>.Kaspersky Lab®
SS - Demand [27/11/2016] [ 14458] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [27/11/2016] [ 14458] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [27/11/2016] [ 14458] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [27/11/2016] [ 14458] TechSmith Uploader Service (TechSmith Uploader Service) . (.TechSmith Corporation.) - C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe =>.TechSmith Corporation
SR - Auto [27/11/2016] [ 14458] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
SR - Auto [27/11/2016] [ 14458] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.®
SR - Auto [27/11/2016] [ 14458] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
SR - Auto [27/11/2016] [ 14458] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.®
SR - Auto [27/11/2016] [ 14458] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
SR - Auto [27/11/2016] [ 14458] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.3.2.219\WsAppService.exe =>.Wondershare

---\\ Task Planned Automatically (30) - 16s
[MD5.A0747D9A94EDFD251ED8E6556E70BA37] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [14458] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.3EB66B37B5DB00216E9711F3C5881100] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe [14458] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.1EEC35CD4B215AF8C217084EDC629532] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [14458] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.48515EEA1608ECD83FE26C7490460F59] [APT] [AdobeAAMUpdater-1.0-MicrosoftAccount-thegiver74@outlook.com] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [14458] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.00000000000000000000000000000000] [APT] [BDAntiCryptoWallTask] (...) -- C:\Program Files\Bitdefender\Tools\BDAntiRansomware\BDAntiRansomware.exe (.not file.) [14458] (.Activate.)
[MD5.63BB08F1FE94AE8804BCDC4916D4ABCD] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [14458] (.Activate.) =>.Piriform Ltd®
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [14458] (.Activate.) =>.Google Inc®
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [14458] (.Activate.) =>.Google Inc®
[MD5.D1A5F3292D9E356CCEC2D8FD6DA8DC3E] [APT] [Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}] (.AO Kaspersky Lab.) -- C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [14458] (.Activate.) =>.Kaspersky Lab®
[MD5.E99C064EB92244468C5C7035EA82E99B] [APT] [Run RoboForm TaskBar Icon] (.Siber Systems.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [14458] (.Activate.) =>.Siber Systems®
[MD5.56C0D9B869C4DB7B2270C68F99E0D007] [APT] [TechSmith Updater] (.TechSmith Corporation.) -- C:\Program Files (x86)\Common Files\TechSmith Shared\Updater\TSCUpdClt.exe [14458] (.Activate.) =>.TechSmith Corporation®
[MD5.74FC6CEB588ABFBF551E1ADA2F691F5B] [APT] [Uninstaller_SkipUac_THEGIVE] (.IObit.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [14458] (.Activate.) =>.IObit Information Technology®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job [14458] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [14458] =>.Adobe Systems Incorporated®
O39 - APT: Unknown - (.Legitimate.) -- C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job [14458]
O39 - APT: Uninstaller_SkipUac_THEGIVE - (.IObit.) -- C:\WINDOWS\Tasks\Uninstaller_SkipUac_THEGIVE.job [14458] =>.IObit Information Technology®
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [14458] =>.Adobe Systems, Incorporated®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier [14458] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [14458] =>.Adobe Systems Incorporated®
O39 - APT: AdobeAAMUpdater-1.0-MicrosoftAccount-thegiver74@outlook.com - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-thegiver74@outlook.com [14458] =>.Adobe Systems Incorporated®
O39 - APT: BDAntiCryptoWallTask - (...) -- C:\WINDOWS\System32\Tasks\BDAntiCryptoWallTask [14458] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [14458] =>.Piriform Ltd®
O39 - APT: Unknown - (.Legitimate.) -- C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask [14458]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [14458] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [14458] =>.Google Inc®
O39 - APT: Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} - (.AO Kaspersky Lab.) -- C:\WINDOWS\System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} [14458] =>.Kaspersky Lab®
O39 - APT: Unknown - (.Microsoft Corporation.) -- C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 [14458] =>.Microsoft Corporation
O39 - APT: Run RoboForm TaskBar Icon - (.Siber Systems.) -- C:\WINDOWS\System32\Tasks\Run RoboForm TaskBar Icon [14458] =>.Siber Systems®
O39 - APT: TechSmith Updater - (.TechSmith Corporation.) -- C:\WINDOWS\System32\Tasks\TechSmith Updater [14458] =>.TechSmith Corporation®
O39 - APT: Uninstaller_SkipUac_THEGIVE - (.IObit.) -- C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_THEGIVE [14458] =>.IObit Information Technology®

---\\ Auto loading programs from Registry and folders (23) - 3s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe =>.Intel Corporation
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe =>.Intel Corporation
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe =>.Intel Corporation
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKCU\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe =>.Siber Systems®
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [EsetPasswordManager] C:\Program Files\ESET\ESET Password Manager\pwm.exe (.not file.)
O4 - HKCU\..\Run: [Viber] . (.Viber Media S.à r.l. - Viber.) -- C:\Users\THEGIVE\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKCU\..\Run: [kpm.exe] . (.AO Kaspersky Lab - Kaspersky Password Manager.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.5\kpm.exe =>.Kaspersky Lab®
O4 - HKLM\..\Wow6432Node\Run: [vmware-tray.exe] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [KeyScrambler] . (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\keyscrambler.exe =>.QFX Software Corporation®
O4 - HKLM\..\Wow6432Node\Run: [Acrobat Assistant 8.0] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe =>.Adobe Systems, Incorporated®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-664720695-1916834757-400598217-1001\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe =>.Siber Systems®
O4 - HKUS\S-1-5-21-664720695-1916834757-400598217-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-664720695-1916834757-400598217-1001\..\Run: [EsetPasswordManager] C:\Program Files\ESET\ESET Password Manager\pwm.exe (.not file.)
O4 - HKUS\S-1-5-21-664720695-1916834757-400598217-1001\..\Run: [Viber] . (.Viber Media S.à r.l. - Viber.) -- C:\Users\THEGIVE\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - HKUS\S-1-5-21-664720695-1916834757-400598217-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-664720695-1916834757-400598217-1001\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKUS\S-1-5-21-664720695-1916834757-400598217-1001\..\Run: [kpm.exe] . (.AO Kaspersky Lab - Kaspersky Password Manager.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.5\kpm.exe =>.Kaspersky Lab®

---\\ Process running (56) - 5s
[MD5.2870CE9BFD6BA66FB0FFC6D11C9E41A7] - (.Arcai.com - Arp Intelligent Protection Service.) -- d:\Program Files (x86)\netcut\services\aips.exe [262144] [PID.1996] =>.arcai.com
[MD5.7FCA0B4C29542F0431A9D09DBFD7C216] - (...) -- C:\Program Files (x86)\Acrylic DNS Proxy\AcrylicService.exe [644608] [PID.2780]
[MD5.B932E0EE190778D840F1442DFC0F9612] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82640] [PID.2788] =>.Adobe Systems, Incorporated®
[MD5.E20C1118524DF19945BCD83A3843E8CF] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2159320] [PID.2812] =>.Adobe Systems Incorporated®
[MD5.FB6AD8DB12C46BB2D7067717CDAF12FE] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [366664] [PID.3068] =>.VMware, Inc.®
[MD5.D98FCF3FE82249BAAC025059A5E346B3] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [400968] [PID.2076] =>.VMware, Inc.®
[MD5.439BD966130226F464DC15F55ABD266E] - (.TechSmith Corporation - TechSmith Uploader Service.) -- C:\Program Files (x86)\Common Files\TechSmith Shared\Uploader\UploaderService.exe [3408384] [PID.1424] =>.TechSmith Corporation
[MD5.D46F765ABFBBEE6A23B7D61603916B4F] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [916040] [PID.1136] =>.VMware, Inc.®
[MD5.19FF8F5CD0E043B036DCCEF678EAB3F5] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [97864] [PID.2268] =>.VMware, Inc.®
[MD5.DD4C186BBBBC68D7FEA45DB9E1B97272] - (.Embarcadero Technologies, Inc. - InterBase Server.) -- d:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\ibguard.exe [636744] [PID.3252] =>.Embarcadero Technologies Inc.®
[MD5.5F62EBCF26E6FA2F8FFA48A4E5F825E7] - (.Wondershare - Wondershare AppService.) -- C:\Program Files (x86)\Wondershare\WAF\2.3.2.219\WsAppService.exe [440832] [PID.3524] =>.Wondershare
[MD5.5F28DF706595FC019294D494760DEB22] - (.Embarcadero Technologies, Inc. - InterBase Server.) -- d:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\ibserver.exe [5586248] [PID.4108] =>.Embarcadero Technologies, Inc.
[MD5.4C974532E7ABD9A8A68B2AD74ADE0484] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [12472904] [PID.4384] =>.VMware, Inc.®
[MD5.EFF5EA6088DB81C6EF6EDCDA5EE79909] - (.AO Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksde.exe [241544] [PID.3004] =>.Kaspersky Lab®
[MD5.CD6FE4D2E29D70D9E2AA587DE5978A15] - (.IObit - Uninstall Programs.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736] [PID.12040] =>.IObit Information Technology®
[MD5.BDB3D8437752EBCD11DB04082B1FE8A5] - (.AO Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe [480216] [PID.11616] =>.Kaspersky Lab®
[MD5.D5A2D371E4704137CD41A912232B0BBA] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.147.0_x64__kzf8qxf38zg5c\SkypeHost.exe [72192] [PID.9916] =>.Skype Technologies
[MD5.E7897DBF7C5EF31B1AC7E35B6BB0BC88] - (.AO Kaspersky Lab - Kaspersky Password Manager.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.5\kpm.exe [7763384] [PID.3224] =>.Kaspersky Lab®
[MD5.C28CA39E9503CFA662FB7ECFE429FC30] - (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe [515600] [PID.9352] =>.QFX Software Corporation®
[MD5.AB18A288DBC7E8ECD11D5B9ED6C36949] - (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\x64\KeyScrambler.exe [569360] [PID.1640] =>.QFX Software Corporation®
[MD5.3E5999946E4C3E84DC474E6BE28CFE79] - (.IObit - UninstallerMonitor.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe [2275104] [PID.8084] =>.IObit Information Technology®
[MD5.5B8F3BBA71E442CB34FE54069EF9C306] - (.Microsoft® Windows® Operating System - Task Manager.) -- C:\Windows\System32\Taskmgr.exe [1120256] [PID.2068] =>.Microsoft Windows®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.10088] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.7000] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.5696] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.836] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.2244] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.5232] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.10232] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.11052] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.7672] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.8396] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.7932] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.11120] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.6240] =>.Google Inc®
[MD5.62AF06B4D988B740621526822E1C4D97] - (.AO Kaspersky Lab - Google Chrome Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.5\plugin-nm-server.exe [1256312] [PID.7156] =>.Kaspersky Lab®
[MD5.B211C9C0F0CAD37B638D1E21A286D002] - (.Siber Systems Inc. - rf-chrome-nm-host.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\Chrome\rf-chrome-nm-host.exe [4107040] [PID.11412] =>.Siber Systems®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.10888] =>.Google Inc®
[MD5.A84A15F542D48BABAFADA463207222F4] - (.Ipswitch, Inc - iMacros for Chrome Scripting Interface.) -- C:\Program Files (x86)\Ipswitch\iMacros\nm.exe [228112] [PID.6172] {1DFC556CDDE02BAF0B6550E9C67B72DA}
[MD5.03B45C52179E8DAE51A0F685C30D06D6] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\avp.exe [241544] [PID.10636] =>.Kaspersky Lab®
[MD5.E14F3C1C1833A0BB3B639D1BD5F55BF5] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\avpui.exe [223704] [PID.9076] =>.Kaspersky Lab®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.8768] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.11660] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.9276] =>.Google Inc®
[MD5.E99C064EB92244468C5C7035EA82E99B] - (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [110376] [PID.8828] =>.Siber Systems®
[MD5.F235544A7F4D5132470A5806D9532AB2] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1612.3341.0_x64__8wekyb3d8bbwe\Calculator.exe [3810816] [PID.7508] =>.Microsoft Corporation
[MD5.F521C7C0DC19A1F7F54EC7987677FD2B] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [19456] [PID.10280] =>.Microsoft Corporation
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.7644] =>.Google Inc®
[MD5.BDC09F3D393624EC5EE450E15AF9766B] - (.TechSmith Corporation - Snagit.) -- C:\Program Files (x86)\TechSmith\Snagit 12\Snagit32.exe [7442752] [PID.8392] =>.TechSmith Corporation®
[MD5.CAD924D378DC16CD0E65E8B7F3058CAE] - (.TechSmith Corporation - Snagit RPC Helper.) -- C:\Program Files (x86)\TechSmith\Snagit 12\SnagPriv.exe [156480] [PID.5944] =>.TechSmith Corporation®
[MD5.0A1810F3CF866F67856C8A4E98194493] - (.TechSmith Corporation - TechSmith HTML Help Helper.) -- C:\Program Files (x86)\TechSmith\Snagit 12\TscHelp.exe [46080] [PID.2384] =>.TechSmith Corporation
[MD5.AE93AE5D73A4F21CE89764646D401FCE] - (.TechSmith Corporation - Snagit Editor.) -- C:\Program Files (x86)\TechSmith\Snagit 12\snagiteditor.exe [8597824] [PID.11472] =>.TechSmith Corporation®
[MD5.EDAE065B775AB3CB047ED8EC08D6D27C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPDiag3.exe [2652672] [PID.9240] =>.Nicolas Coolman
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.11076] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4916] =>.Google Inc®
[MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4984] =>.Google Inc®

---\\ Google Chrome, Start,Search,Extensions (14) - 0s
G2 - GCE: Preference [User Data\Default] [bhmmomiinigofkjcapegjjndpbikblnp] WOT: Web of Trust Website Reputation Ratings =>.WOT
G2 - GCE: Preference [User Data\Default] [cjpalhdlnbpafiamejdnhcphjbkeiagm] uBlock Origin =>.Raymond Hill
G2 - GCE: Preference [User Data\Default] [cplklnmnlbnpmjogncfgfijoopmnlemp] iMacros for Chrome
G2 - GCE: Preference [User Data\Default] [fcpnnjlljgdcinojgocmjddolelccbjc] NeoBuxOx
G2 - GCE: Preference [User Data\Default] [gcbommkclmclpchllfjekcdonpmejbdp] __MSG_about_ext_name__
G2 - GCE: Preference [User Data\Default] [gebpdbfmpedcnopofelmhndhincfkhki] __MSG_extension_name__
G2 - GCE: Preference [User Data\Default] [gkojfkhlekighikafcpjkiklfbnlmeio] Google Chrome manifest =>.Google Inc. =>.Hola.org
G2 - GCE: Preference [User Data\Default] [hgmhmanijnjhaffoampdlllchpolkdnj] Hunter =>.hunter.io
G2 - GCE: Preference [User Data\Default] [hjnhcgkngeeahimbfhejeaiijecekhba] ClixAddon =>.ClixSense.com
G2 - GCE: Preference [User Data\Default] [hnpkdcghgfeaccigdjnibpkopebncakc] NeoBux AdAlert
G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc.
G2 - GCE: Preference [User Data\Default] [oaepeijninfcgjdnighjnlgdkkgpnaen] NeoBux AdAlert
G2 - GCE: Preference [User Data\Default] [obnfifcganohemahpomajbhocfkdgmjb] AdF.ly Skipper ★WORKING★
G2 - GCE: Preference [User Data\Default] [pnlccmojcmeohlpggmfnbbiapkmbliob] RoboForm Password Manager =>.Siber Systems Inc.

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (7) - 3s
M0 - MFSP: prefs.js [THEGIVE - ll3lmxcp.default] http://www.msn.com/ =>.Microsoft Corporation
P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT FILE: (.iMacros for Firefox - Automate your web browser. Record and .) -- C:\Users\THEGIVE\AppData\Roaming\Mozilla\Firefox\Profiles\ll3lmxcp.default\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}.xpi =>.iMacros for Firefox
P2 - EXT FILE: (.Bing - Bing. Search by Microsoft..) -- C:\Users\THEGIVE\AppData\Roaming\Mozilla\Firefox\Profiles\ll3lmxcp.default\searchplugins\bing-.xml =>.Bing
P2 - FPN: [HKCU] [@eset.com/ESET Password Manager] - (...) -- C:\Program Files\ESET\ESET Password Manager\nppwmAutofill.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_194.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer Extensions, Start, Search (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (4) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies []

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (63)

---\\ Browser Helper Object (BHO) (10) - 1s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: ExplorerWnd Helper [64Bits] - {10921475-03CE-4E04-90CE-E2E7EF20C814} (.Orphan.)
O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {2E38825B-8815-42CF-9126-C58BC28D4591} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\IEExt\ie_plugin.dll =>.Kaspersky Lab®
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: iMacros Browser Helper Object [64Bits] - {34D5A80A-992D-4F07-9509-66E9E133BAAF} . (...) -- C:\Program Files (x86)\Ipswitch\iMacros\iMacrosBHO.dll {1DFC556CDDE02BAF0B6550E9C67B72DA}
O2 - BHO: RoboForm BHO [64Bits] - {724d43a9-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll =>.Siber Systems Inc.
O2 - BHO: Adobe Acrobat Create PDF Helper [64Bits] - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll =>.Adobe Systems, Incorporated®
O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: SmartSelect [64Bits] - {F4971EE7-DAA0-4053-9964-665D8EE6A077} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll =>.Adobe Systems, Incorporated®
O2 - BHO: Kaspersky Password Manager [64Bits] - {F710F7E5-A520-471D-989C-F653AC328FB2} . (.AO Kaspersky Lab - Internet Explorer Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.5\ie_engine.dll =>.Kaspersky Lab®

---\\ Global shortcuts Startup (323) - 72s
O4 - GS\Desktop [Administrator]: Adobe After Effects CC 2015.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Adobe After Effects CC 2015\Support Files\AfterFX.exe =>.Adobe Systems Incorporated
O4 - GS\Desktop [Administrator]: Adobe Animate CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Animate CC 2015.1.) C:\Program Files\Adobe\Adobe Animate CC 2015\Animate.exe {796B808254C6EB0C37BE0A2ADE81DC5A} =>.Adobe Systems Incorporated
O4 - GS\Desktop [Administrator]: Adobe Audition CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Audition CC 2015.1.) C:\Program Files\Adobe\Adobe Audition CC 2015\Adobe Audition CC.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Bridge CC (64bit).lnk . (.Adobe Systems Incorporated - Adobe Bridge CC.) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Character Animator (Preview).lnk . (.Adobe Systems Incorporated - Character Animator Preview 3.) C:\Program Files\Adobe\Adobe Character Animator (Preview)\Support Files\Character Animator.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Dreamweave.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CC 2015.) C:\Program Files\Adobe\Adobe Dreamweaver CC 2015\Dreamweaver.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Fuse CC (Preview).lnk . (...) C:\Program Files (x86)\Adobe\Adobe Fuse CC (Preview)\Code\Build\Output\Fuse\bin\Release\Fuse.exe {4EE401A5758AF325DEF50BE37C887227}
O4 - GS\Desktop [Administrator]: Adobe Illustrator CC 2015.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2015.) C:\Program Files\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe InCopy CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InCopy CC 2015.) C:\Program Files\Adobe\Adobe InCopy CC 2015\InCopy.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe InDesign CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2015.) C:\Program Files\Adobe\Adobe InDesign CC 2015\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Media Encoder CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Media Encoder CC 2015.2.) C:\Program Files\Adobe\Adobe Media Encoder CC 2015\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Muse CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Muse CC.) C:\Program Files\Adobe\Adobe Muse CC 2015\Muse.exe -re =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems, Incorporated
O4 - GS\Desktop [Administrator]: Adobe Prelude CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Prelude CC 2015.3.) C:\Program Files\Adobe\Adobe Prelude CC 2015\Adobe Prelude.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe Premiere Pro CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.2.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: Adobe SpeedGrade CC 2015.lnk . (.Adobe System Incorporated - Adobe SpeedGrade CC 2015.) C:\Program Files\Adobe\Adobe SpeedGrade CC 2015\SpeedGrade.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrator]: AE_KeyboardShortcuts - Shortcut.lnk . (...) E:\After Effects CC\AE_KeyboardShortcuts.pdf
O4 - GS\Desktop [Administrator]: After Effects Guru - Animating Typography - Shortcut.lnk . (...) D:\TTourrent\Lynda - After Effects Guru Animating Typography Tutorial\After Effects Guru - Animating Typography
O4 - GS\Desktop [Administrator]: AndroidTool.exe - Shortcut.lnk . (...) D:\Alcatel_pxi3-4\app01\ReverseTethering_3.19\AndroidTool.exe
O4 - GS\Desktop [Administrator]: Any Video Converter Professional.lnk . (.Anvsoft - Any Video Converter Professional.) C:\Program Files (x86)\Anvsoft\Any Video Converter Professional\AVCPro.exe {500CAFC732F9B644B401A751992E2DB0} =>.Anvsoft
O4 - GS\Desktop [Administrator]: BatteryInfoView.exe - Shortcut.lnk . (.NirSoft - BatteryInfoView.) D:\Programs\batteryinfoview\BatteryInfoView.exe =>.NirSoft
O4 - GS\Desktop [Administrator]: CCleaner.exe - Shortcut.lnk . (.Piriform Ltd - CCleaner.) D:\Programs\AppNee.com\AppNee.com.CCleaner.Tech.v5.23.Portable.FR\CCleaner.exe =>.Piriform Ltd®
O4 - GS\Desktop [Administrator]: Delphi 10 Seattle.lnk . (.Embarcadero Technologies, Inc. - Embarcadero RAD Studio for Windows.) D:\Program Files (x86)\Embarcadero\Studio\17.0\bin\bds.exe -pDelphi =>.Embarcadero Technologies Inc.®
O4 - GS\Desktop [Administrator]: die.exe - Shortcut.lnk . (...) D:\Programs\CraCK2016\November\die.exe
O4 - GS\Desktop [Administrator]: diel.exe - Shortcut.lnk . (...) D:\Programs\CraCK2016\November\diel.exe
O4 - GS\Desktop [Administrator]: eurotrucks2.exe - 64.lnk . (.SCS Software - Euro Truck Simulator 2.) D:\Program Files (x86)\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe =>.SCS Software s.r.o.®
O4 - GS\Desktop [Administrator]: exeinfope - Shortcut.lnk . (.A.S.L Software - ExEinfo PE - Win32 exe identifier.) D:\00000000000000IDA00000\exeinfope\ExeinfoPe_V0042_Final\exeinfope.exe
O4 - GS\Desktop [Administrator]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Tim Kosse®
O4 - GS\Desktop [Administrator]: HDasm - Shortcut.lnk . (.HackWARE Lab. - Hacker's Disassembler.) D:\00000000000000IDA00000\video\Aoreteam.com\Tools\HDasm\HDasm\HDasm.exe
O4 - GS\Desktop [Administrator]: IDA Pro Advanced (32-bit)5.2.lnk . (...) D:\Program Files (x86)\IDA52\idag.exe
O4 - GS\Desktop [Administrator]: IDA Pro Advanced (64-bit)5.2.lnk . (...) D:\Program Files (x86)\IDA52\idag64.exe
O4 - GS\Desktop [Administrator]: idaq - 6.8.lnk . (.Hex-Rays SA - The Interactive Disassembler.) D:\00000000000000IDA00000\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)_Green\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)_Green\idaq.exe =>.Hex-Rays SA
O4 - GS\Desktop [Administrator]: idaq64 - Shortcut.lnk . (.Hex-Rays SA - The Interactive Disassembler.) D:\00000000000000IDA00000\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)\idaq64.exe =>.Hex-Rays SA
O4 - GS\Desktop [Administrator]: IDMan.exe - Shortcut.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrator]: iexplore.exe - Shortcut.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrator]: iMacros Examples.lnk . (.Ipswitch, Inc - iMacros demo macros and examples.) C:\Program Files (x86)\Ipswitch\iMacros\iMacrosSamples.exe {1DFC556CDDE02BAF0B6550E9C67B72DA}
O4 - GS\Desktop [Administrator]: iMacros for IE.lnk . (.Ipswitch, Inc. - iMacros.Sidebar.) C:\Program Files\Ipswitch\iMacros\iMacros.Sidebar.exe {1DFC556CDDE02BAF0B6550E9C67B72DA}
O4 - GS\Desktop [Administrator]: InstantDemo.exe.lnk . (.NetPlay Software - Instant Demo Application.) C:\Users\THEGIVE\AppData\Local\Instant Demo\InstantDemo.exe {57DBA1183D8FCB08095C981DF8619472}
O4 - GS\Desktop [Administrator]: InterBase Server.lnk . (.Embarcadero Technologies - InterBase Server Manager.) D:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\IBMgr.exe gds_db =>.Embarcadero Technologies Inc.®
O4 - GS\Desktop [Administrator]: KeyScrambler.exe - Shortcut.lnk . (.QFX Software Corporation - KeyScrambler.) C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe =>.QFX Software Corporation®
O4 - GS\Desktop [Administrator]: mac_adress.txt - Shortcut.lnk . (...) D:\wpa_wpa2\mac_adress.txt
O4 - GS\Desktop [Administrator]: Microsoft Test Manager 2015.lnk . (.Microsoft Corporation - Microsoft Test Manager.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\mtm.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrator]: MTCTOly - Shortcut.lnk . (.Copyright © 2000-2004 Oleh Yuschuk - MTCTOlly, 32-Bit Analysing Debugger.) D:\00000000000000IDA00000\OllyDBG_2016\MTCTOly_\MTCTOly\MTCTOly.exe
O4 - GS\Desktop [Administrator]: médiateur formation - Shortcut.lnk . (...) D:\&&&Médiateur formation
O4 - GS\Desktop [Administrator]: NBRTeam.exe - Shortcut.lnk . (...) D:\NBRTeam\NBRTeam.exe
O4 - GS\Desktop [Administrator]: NeoBux AdAlert.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory=Default --app-id=hnpkdcghgfeaccigdjnibpkopebncakc =>.Google Inc®
O4 - GS\Desktop [Administrator]: OLLYDBG - Shortcut (2).lnk . (.Copyright © 2000-2004 Oleh Yuschuk - OllyDbg, 32-bit analysing debugger.) D:\00000000000000IDA00000\OllyDBG_2016\Olly_DBG_v1.10-MPT\Olly DBG v1.10-MPT\OLLYDBG.EXE
O4 - GS\Desktop [Administrator]: OLLYDBG - Shortcut.lnk . (.Copyright © 2009 - OllyDbg CiS edition, 32-bit analysing debug.) D:\00000000000000IDA00000\OllyDBG_2016\OllyDBG - TeAm CiS\OllyDBG - TeAm CiS\OLLYDBG.EXE
O4 - GS\Desktop [Administrator]: oMega.lnk . (.Pylonos.com LLC - oMega Commander.) D:\Program Files\oMega Commander\oMega64.exe {00A274BB632B9E42CF75C924BC982F07D0}
O4 - GS\Desktop [Administrator]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) D:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao
O4 - GS\Desktop [Administrator]: Process Hacker 2.lnk . (.wj32 - Process Hacker.) D:\Program Files\Process Hacker 2\ProcessHacker.exe =>.Wen Jia Liu®
O4 - GS\Desktop [Administrator]: procexp64.exe - Shortcut.lnk . (.Sysinternals - www.sysinternals.com - Sysinternals Process Explorer.) D:\Programs\2017\ProcessExplorer\procexp64.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrator]: Reflector.exe - Shortcut.lnk . (.Red Gate Software Ltd - .NET Reflector.) C:\Program Files (x86)\Red Gate\.NET Reflector\Desktop 9.0\Reflector.exe {6BA13C0FC448B121455C47B079E3B307} =>.Red Gate Software Ltd
O4 - GS\Desktop [Administrator]: robotaskbaricon.exe - Shortcut.lnk . (.Siber Systems - RoboForm TaskBar Icon.) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe =>.Siber Systems®
O4 - GS\Desktop [Administrator]: Snagit32 - Shortcut.lnk . (.TechSmith Corporation - Snagit.) C:\Program Files (x86)\TechSmith\Snagit 12\Snagit32.exe =>.TechSmith Corporation®
O4 - GS\Desktop [Administrator]: SpyTheSpy.lnk . (.Copyright (C) Mediachance 2004 - Spy The Spy (Spy watch).) C:\Program Files (x86)\SpyTheSpy\SpyTheSpy.exe
O4 - GS\Desktop [Administrator]: Temp - Shortcut.lnk . (...) C:\Users\THEGIVE\AppData\Local\Temp
O4 - GS\Desktop [Administrator]: UnPacKcN Ollydbg.lnk . (.Copyright © 2000-2004 Oleh Yuschuk - OllyDbg, 32-bit analysing debugger.) D:\Programs\CraCK2016\الهندسة العكسية\لطبعة الثانية من كتاب الفريق] الهندسة العكسية خطوة إلى الأمام\OllyDBG_v1.10_The_3rd_Edition\OllyDBG v1.10 The 3rd Edition\OllyDBG.eXe
O4 - GS\Desktop [Administrator]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\THEGIVE\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - GS\Desktop [Administrator]: Visual Studio 2015.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2015.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrator]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe =>.URSoft, Inc.®
O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleane.) C:\Users\THEGIVE\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrator]: ZHPLite.lnk . (.Nicolas Coolman - ZHPLite.) C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPLite.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrator]: ZynOSScanner.exe - Shortcut.lnk . (.Copyright © 2014 - ZynOSScanner.) D:\wpa_wpa2\ZynOSScanner_2\ZynOSScanner.exe
O4 - GS\Desktop [Administrator]: _xlsx -.lnk . (.kendouci otmane - .) D:\1111_neobux\Book1.xlsx
O4 - GS\Desktop [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrator]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) D:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao
O4 - GS\Quicklaunch [Administrator]: Wireshark Legacy.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark-gtk.exe =>.Wireshark Foundation, Inc.®
O4 - GS\Quicklaunch [Administrator]: Wireshark.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark.exe =>.Wireshark Foundation, Inc.®
O4 - GS\Quicklaunch [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrator]: iexplore.exe - Shortcut.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrator]: NeoBux AdAlert.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory=Default --app-id=hnpkdcghgfeaccigdjnibpkopebncakc =>.Google Inc®
O4 - GS\TaskBar [Administrator]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibility On-Screen Keyboard.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrator]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrator]: Optional Features.lnk . (.Microsoft Corporation - Features On Demand Helper.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Desktop [Guest]: Adobe After Effects CC 2015.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Adobe After Effects CC 2015\Support Files\AfterFX.exe =>.Adobe Systems Incorporated
O4 - GS\Desktop [Guest]: Adobe Animate CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Animate CC 2015.1.) C:\Program Files\Adobe\Adobe Animate CC 2015\Animate.exe {796B808254C6EB0C37BE0A2ADE81DC5A} =>.Adobe Systems Incorporated
O4 - GS\Desktop [Guest]: Adobe Audition CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Audition CC 2015.1.) C:\Program Files\Adobe\Adobe Audition CC 2015\Adobe Audition CC.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Bridge CC (64bit).lnk . (.Adobe Systems Incorporated - Adobe Bridge CC.) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Character Animator (Preview).lnk . (.Adobe Systems Incorporated - Character Animator Preview 3.) C:\Program Files\Adobe\Adobe Character Animator (Preview)\Support Files\Character Animator.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Dreamweave.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CC 2015.) C:\Program Files\Adobe\Adobe Dreamweaver CC 2015\Dreamweaver.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Fuse CC (Preview).lnk . (...) C:\Program Files (x86)\Adobe\Adobe Fuse CC (Preview)\Code\Build\Output\Fuse\bin\Release\Fuse.exe {4EE401A5758AF325DEF50BE37C887227}
O4 - GS\Desktop [Guest]: Adobe Illustrator CC 2015.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2015.) C:\Program Files\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe InCopy CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InCopy CC 2015.) C:\Program Files\Adobe\Adobe InCopy CC 2015\InCopy.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe InDesign CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2015.) C:\Program Files\Adobe\Adobe InDesign CC 2015\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Media Encoder CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Media Encoder CC 2015.2.) C:\Program Files\Adobe\Adobe Media Encoder CC 2015\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Muse CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Muse CC.) C:\Program Files\Adobe\Adobe Muse CC 2015\Muse.exe -re =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems, Incorporated
O4 - GS\Desktop [Guest]: Adobe Prelude CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Prelude CC 2015.3.) C:\Program Files\Adobe\Adobe Prelude CC 2015\Adobe Prelude.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe Premiere Pro CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.2.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: Adobe SpeedGrade CC 2015.lnk . (.Adobe System Incorporated - Adobe SpeedGrade CC 2015.) C:\Program Files\Adobe\Adobe SpeedGrade CC 2015\SpeedGrade.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Guest]: AE_KeyboardShortcuts - Shortcut.lnk . (...) E:\After Effects CC\AE_KeyboardShortcuts.pdf
O4 - GS\Desktop [Guest]: After Effects Guru - Animating Typography - Shortcut.lnk . (...) D:\TTourrent\Lynda - After Effects Guru Animating Typography Tutorial\After Effects Guru - Animating Typography
O4 - GS\Desktop [Guest]: AndroidTool.exe - Shortcut.lnk . (...) D:\Alcatel_pxi3-4\app01\ReverseTethering_3.19\AndroidTool.exe
O4 - GS\Desktop [Guest]: Any Video Converter Professional.lnk . (.Anvsoft - Any Video Converter Professional.) C:\Program Files (x86)\Anvsoft\Any Video Converter Professional\AVCPro.exe {500CAFC732F9B644B401A751992E2DB0} =>.Anvsoft
O4 - GS\Desktop [Guest]: BatteryInfoView.exe - Shortcut.lnk . (.NirSoft - BatteryInfoView.) D:\Programs\batteryinfoview\BatteryInfoView.exe =>.NirSoft
O4 - GS\Desktop [Guest]: CCleaner.exe - Shortcut.lnk . (.Piriform Ltd - CCleaner.) D:\Programs\AppNee.com\AppNee.com.CCleaner.Tech.v5.23.Portable.FR\CCleaner.exe =>.Piriform Ltd®
O4 - GS\Desktop [Guest]: Delphi 10 Seattle.lnk . (.Embarcadero Technologies, Inc. - Embarcadero RAD Studio for Windows.) D:\Program Files (x86)\Embarcadero\Studio\17.0\bin\bds.exe -pDelphi =>.Embarcadero Technologies Inc.®
O4 - GS\Desktop [Guest]: die.exe - Shortcut.lnk . (...) D:\Programs\CraCK2016\November\die.exe
O4 - GS\Desktop [Guest]: diel.exe - Shortcut.lnk . (...) D:\Programs\CraCK2016\November\diel.exe
O4 - GS\Desktop [Guest]: eurotrucks2.exe - 64.lnk . (.SCS Software - Euro Truck Simulator 2.) D:\Program Files (x86)\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe =>.SCS Software s.r.o.®
O4 - GS\Desktop [Guest]: exeinfope - Shortcut.lnk . (.A.S.L Software - ExEinfo PE - Win32 exe identifier.) D:\00000000000000IDA00000\exeinfope\ExeinfoPe_V0042_Final\exeinfope.exe
O4 - GS\Desktop [Guest]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Tim Kosse®
O4 - GS\Desktop [Guest]: HDasm - Shortcut.lnk . (.HackWARE Lab. - Hacker's Disassembler.) D:\00000000000000IDA00000\video\Aoreteam.com\Tools\HDasm\HDasm\HDasm.exe
O4 - GS\Desktop [Guest]: IDA Pro Advanced (32-bit)5.2.lnk . (...) D:\Program Files (x86)\IDA52\idag.exe
O4 - GS\Desktop [Guest]: IDA Pro Advanced (64-bit)5.2.lnk . (...) D:\Program Files (x86)\IDA52\idag64.exe
O4 - GS\Desktop [Guest]: idaq - 6.8.lnk . (.Hex-Rays SA - The Interactive Disassembler.) D:\00000000000000IDA00000\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)_Green\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)_Green\idaq.exe =>.Hex-Rays SA
O4 - GS\Desktop [Guest]: idaq64 - Shortcut.lnk . (.Hex-Rays SA - The Interactive Disassembler.) D:\00000000000000IDA00000\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)\idaq64.exe =>.Hex-Rays SA
O4 - GS\Desktop [Guest]: IDMan.exe - Shortcut.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Guest]: iexplore.exe - Shortcut.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Guest]: iMacros Examples.lnk . (.Ipswitch, Inc - iMacros demo macros and examples.) C:\Program Files (x86)\Ipswitch\iMacros\iMacrosSamples.exe {1DFC556CDDE02BAF0B6550E9C67B72DA}
O4 - GS\Desktop [Guest]: iMacros for IE.lnk . (.Ipswitch, Inc. - iMacros.Sidebar.) C:\Program Files\Ipswitch\iMacros\iMacros.Sidebar.exe {1DFC556CDDE02BAF0B6550E9C67B72DA}
O4 - GS\Desktop [Guest]: InstantDemo.exe.lnk . (.NetPlay Software - Instant Demo Application.) C:\Users\THEGIVE\AppData\Local\Instant Demo\InstantDemo.exe {57DBA1183D8FCB08095C981DF8619472}
O4 - GS\Desktop [Guest]: InterBase Server.lnk . (.Embarcadero Technologies - InterBase Server Manager.) D:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\IBMgr.exe gds_db =>.Embarcadero Technologies Inc.®
O4 - GS\Desktop [Guest]: KeyScrambler.exe - Shortcut.lnk . (.QFX Software Corporation - KeyScrambler.) C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe =>.QFX Software Corporation®
O4 - GS\Desktop [Guest]: mac_adress.txt - Shortcut.lnk . (...) D:\wpa_wpa2\mac_adress.txt
O4 - GS\Desktop [Guest]: Microsoft Test Manager 2015.lnk . (.Microsoft Corporation - Microsoft Test Manager.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\mtm.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Guest]: MTCTOly - Shortcut.lnk . (.Copyright © 2000-2004 Oleh Yuschuk - MTCTOlly, 32-Bit Analysing Debugger.) D:\00000000000000IDA00000\OllyDBG_2016\MTCTOly_\MTCTOly\MTCTOly.exe
O4 - GS\Desktop [Guest]: médiateur formation - Shortcut.lnk . (...) D:\&&&Médiateur formation
O4 - GS\Desktop [Guest]: NBRTeam.exe - Shortcut.lnk . (...) D:\NBRTeam\NBRTeam.exe
O4 - GS\Desktop [Guest]: NeoBux AdAlert.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory=Default --app-id=hnpkdcghgfeaccigdjnibpkopebncakc =>.Google Inc®
O4 - GS\Desktop [Guest]: OLLYDBG - Shortcut (2).lnk . (.Copyright © 2000-2004 Oleh Yuschuk - OllyDbg, 32-bit analysing debugger.) D:\00000000000000IDA00000\OllyDBG_2016\Olly_DBG_v1.10-MPT\Olly DBG v1.10-MPT\OLLYDBG.EXE
O4 - GS\Desktop [Guest]: OLLYDBG - Shortcut.lnk . (.Copyright © 2009 - OllyDbg CiS edition, 32-bit analysing debug.) D:\00000000000000IDA00000\OllyDBG_2016\OllyDBG - TeAm CiS\OllyDBG - TeAm CiS\OLLYDBG.EXE
O4 - GS\Desktop [Guest]: oMega.lnk . (.Pylonos.com LLC - oMega Commander.) D:\Program Files\oMega Commander\oMega64.exe {00A274BB632B9E42CF75C924BC982F07D0}
O4 - GS\Desktop [Guest]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) D:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao
O4 - GS\Desktop [Guest]: Process Hacker 2.lnk . (.wj32 - Process Hacker.) D:\Program Files\Process Hacker 2\ProcessHacker.exe =>.Wen Jia Liu®
O4 - GS\Desktop [Guest]: procexp64.exe - Shortcut.lnk . (.Sysinternals - www.sysinternals.com - Sysinternals Process Explorer.) D:\Programs\2017\ProcessExplorer\procexp64.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Guest]: Reflector.exe - Shortcut.lnk . (.Red Gate Software Ltd - .NET Reflector.) C:\Program Files (x86)\Red Gate\.NET Reflector\Desktop 9.0\Reflector.exe {6BA13C0FC448B121455C47B079E3B307} =>.Red Gate Software Ltd
O4 - GS\Desktop [Guest]: robotaskbaricon.exe - Shortcut.lnk . (.Siber Systems - RoboForm TaskBar Icon.) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe =>.Siber Systems®
O4 - GS\Desktop [Guest]: Snagit32 - Shortcut.lnk . (.TechSmith Corporation - Snagit.) C:\Program Files (x86)\TechSmith\Snagit 12\Snagit32.exe =>.TechSmith Corporation®
O4 - GS\Desktop [Guest]: SpyTheSpy.lnk . (.Copyright (C) Mediachance 2004 - Spy The Spy (Spy watch).) C:\Program Files (x86)\SpyTheSpy\SpyTheSpy.exe
O4 - GS\Desktop [Guest]: Temp - Shortcut.lnk . (...) C:\Users\THEGIVE\AppData\Local\Temp
O4 - GS\Desktop [Guest]: UnPacKcN Ollydbg.lnk . (.Copyright © 2000-2004 Oleh Yuschuk - OllyDbg, 32-bit analysing debugger.) D:\Programs\CraCK2016\الهندسة العكسية\لطبعة الثانية من كتاب الفريق] الهندسة العكسية خطوة إلى الأمام\OllyDBG_v1.10_The_3rd_Edition\OllyDBG v1.10 The 3rd Edition\OllyDBG.eXe
O4 - GS\Desktop [Guest]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\THEGIVE\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - GS\Desktop [Guest]: Visual Studio 2015.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2015.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Guest]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe =>.URSoft, Inc.®
O4 - GS\Desktop [Guest]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleane.) C:\Users\THEGIVE\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Guest]: ZHPLite.lnk . (.Nicolas Coolman - ZHPLite.) C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPLite.exe =>.Nicolas Coolman
O4 - GS\Desktop [Guest]: ZynOSScanner.exe - Shortcut.lnk . (.Copyright © 2014 - ZynOSScanner.) D:\wpa_wpa2\ZynOSScanner_2\ZynOSScanner.exe
O4 - GS\Desktop [Guest]: _xlsx -.lnk . (.kendouci otmane - .) D:\1111_neobux\Book1.xlsx
O4 - GS\Desktop [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Guest]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) D:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao
O4 - GS\Quicklaunch [Guest]: Wireshark Legacy.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark-gtk.exe =>.Wireshark Foundation, Inc.®
O4 - GS\Quicklaunch [Guest]: Wireshark.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark.exe =>.Wireshark Foundation, Inc.®
O4 - GS\Quicklaunch [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Guest]: iexplore.exe - Shortcut.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Guest]: NeoBux AdAlert.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory=Default --app-id=hnpkdcghgfeaccigdjnibpkopebncakc =>.Google Inc®
O4 - GS\TaskBar [Guest]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibility On-Screen Keyboard.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation
O4 - GS\Programs [Guest]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Guest]: Optional Features.lnk . (.Microsoft Corporation - Features On Demand Helper.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Desktop [THEGIVE]: Adobe After Effects CC 2015.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Adobe After Effects CC 2015\Support Files\AfterFX.exe =>.Adobe Systems Incorporated
O4 - GS\Desktop [THEGIVE]: Adobe Animate CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Animate CC 2015.1.) C:\Program Files\Adobe\Adobe Animate CC 2015\Animate.exe {796B808254C6EB0C37BE0A2ADE81DC5A} =>.Adobe Systems Incorporated
O4 - GS\Desktop [THEGIVE]: Adobe Audition CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Audition CC 2015.1.) C:\Program Files\Adobe\Adobe Audition CC 2015\Adobe Audition CC.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Bridge CC (64bit).lnk . (.Adobe Systems Incorporated - Adobe Bridge CC.) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Character Animator (Preview).lnk . (.Adobe Systems Incorporated - Character Animator Preview 3.) C:\Program Files\Adobe\Adobe Character Animator (Preview)\Support Files\Character Animator.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Dreamweave.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CC 2015.) C:\Program Files\Adobe\Adobe Dreamweaver CC 2015\Dreamweaver.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Fuse CC (Preview).lnk . (...) C:\Program Files (x86)\Adobe\Adobe Fuse CC (Preview)\Code\Build\Output\Fuse\bin\Release\Fuse.exe {4EE401A5758AF325DEF50BE37C887227}
O4 - GS\Desktop [THEGIVE]: Adobe Illustrator CC 2015.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2015.) C:\Program Files\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe InCopy CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InCopy CC 2015.) C:\Program Files\Adobe\Adobe InCopy CC 2015\InCopy.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe InDesign CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2015.) C:\Program Files\Adobe\Adobe InDesign CC 2015\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Media Encoder CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Media Encoder CC 2015.2.) C:\Program Files\Adobe\Adobe Media Encoder CC 2015\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Muse CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Muse CC.) C:\Program Files\Adobe\Adobe Muse CC 2015\Muse.exe -re =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems, Incorporated
O4 - GS\Desktop [THEGIVE]: Adobe Prelude CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Prelude CC 2015.3.) C:\Program Files\Adobe\Adobe Prelude CC 2015\Adobe Prelude.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe Premiere Pro CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.2.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: Adobe SpeedGrade CC 2015.lnk . (.Adobe System Incorporated - Adobe SpeedGrade CC 2015.) C:\Program Files\Adobe\Adobe SpeedGrade CC 2015\SpeedGrade.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [THEGIVE]: AE_KeyboardShortcuts - Shortcut.lnk . (...) E:\After Effects CC\AE_KeyboardShortcuts.pdf
O4 - GS\Desktop [THEGIVE]: After Effects Guru - Animating Typography - Shortcut.lnk . (...) D:\TTourrent\Lynda - After Effects Guru Animating Typography Tutorial\After Effects Guru - Animating Typography
O4 - GS\Desktop [THEGIVE]: AndroidTool.exe - Shortcut.lnk . (...) D:\Alcatel_pxi3-4\app01\ReverseTethering_3.19\AndroidTool.exe
O4 - GS\Desktop [THEGIVE]: Any Video Converter Professional.lnk . (.Anvsoft - Any Video Converter Professional.) C:\Program Files (x86)\Anvsoft\Any Video Converter Professional\AVCPro.exe {500CAFC732F9B644B401A751992E2DB0} =>.Anvsoft
O4 - GS\Desktop [THEGIVE]: BatteryInfoView.exe - Shortcut.lnk . (.NirSoft - BatteryInfoView.) D:\Programs\batteryinfoview\BatteryInfoView.exe =>.NirSoft
O4 - GS\Desktop [THEGIVE]: CCleaner.exe - Shortcut.lnk . (.Piriform Ltd - CCleaner.) D:\Programs\AppNee.com\AppNee.com.CCleaner.Tech.v5.23.Portable.FR\CCleaner.exe =>.Piriform Ltd®
O4 - GS\Desktop [THEGIVE]: Delphi 10 Seattle.lnk . (.Embarcadero Technologies, Inc. - Embarcadero RAD Studio for Windows.) D:\Program Files (x86)\Embarcadero\Studio\17.0\bin\bds.exe -pDelphi =>.Embarcadero Technologies Inc.®
O4 - GS\Desktop [THEGIVE]: die.exe - Shortcut.lnk . (...) D:\Programs\CraCK2016\November\die.exe
O4 - GS\Desktop [THEGIVE]: diel.exe - Shortcut.lnk . (...) D:\Programs\CraCK2016\November\diel.exe
O4 - GS\Desktop [THEGIVE]: eurotrucks2.exe - 64.lnk . (.SCS Software - Euro Truck Simulator 2.) D:\Program Files (x86)\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe =>.SCS Software s.r.o.®
O4 - GS\Desktop [THEGIVE]: exeinfope - Shortcut.lnk . (.A.S.L Software - ExEinfo PE - Win32 exe identifier.) D:\00000000000000IDA00000\exeinfope\ExeinfoPe_V0042_Final\exeinfope.exe
O4 - GS\Desktop [THEGIVE]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Tim Kosse®
O4 - GS\Desktop [THEGIVE]: HDasm - Shortcut.lnk . (.HackWARE Lab. - Hacker's Disassembler.) D:\00000000000000IDA00000\video\Aoreteam.com\Tools\HDasm\HDasm\HDasm.exe
O4 - GS\Desktop [THEGIVE]: IDA Pro Advanced (32-bit)5.2.lnk . (...) D:\Program Files (x86)\IDA52\idag.exe
O4 - GS\Desktop [THEGIVE]: IDA Pro Advanced (64-bit)5.2.lnk . (...) D:\Program Files (x86)\IDA52\idag64.exe
O4 - GS\Desktop [THEGIVE]: idaq - 6.8.lnk . (.Hex-Rays SA - The Interactive Disassembler.) D:\00000000000000IDA00000\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)_Green\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)_Green\idaq.exe =>.Hex-Rays SA
O4 - GS\Desktop [THEGIVE]: idaq64 - Shortcut.lnk . (.Hex-Rays SA - The Interactive Disassembler.) D:\00000000000000IDA00000\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)\IDA_Pro_v6.8_and_Hex-Rays_Decompiler_(ARM,x64,x86)\idaq64.exe =>.Hex-Rays SA
O4 - GS\Desktop [THEGIVE]: IDMan.exe - Shortcut.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [THEGIVE]: iexplore.exe - Shortcut.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [THEGIVE]: iMacros Examples.lnk . (.Ipswitch, Inc - iMacros demo macros and examples.) C:\Program Files (x86)\Ipswitch\iMacros\iMacrosSamples.exe {1DFC556CDDE02BAF0B6550E9C67B72DA}
O4 - GS\Desktop [THEGIVE]: iMacros for IE.lnk . (.Ipswitch, Inc. - iMacros.Sidebar.) C:\Program Files\Ipswitch\iMacros\iMacros.Sidebar.exe {1DFC556CDDE02BAF0B6550E9C67B72DA}
O4 - GS\Desktop [THEGIVE]: InstantDemo.exe.lnk . (.NetPlay Software - Instant Demo Application.) C:\Users\THEGIVE\AppData\Local\Instant Demo\InstantDemo.exe {57DBA1183D8FCB08095C981DF8619472}
O4 - GS\Desktop [THEGIVE]: InterBase Server.lnk . (.Embarcadero Technologies - InterBase Server Manager.) D:\Program Files (x86)\Embarcadero\Studio\17.0\InterBaseXE7\bin\IBMgr.exe gds_db =>.Embarcadero Technologies Inc.®
O4 - GS\Desktop [THEGIVE]: KeyScrambler.exe - Shortcut.lnk . (.QFX Software Corporation - KeyScrambler.) C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe =>.QFX Software Corporation®
O4 - GS\Desktop [THEGIVE]: mac_adress.txt - Shortcut.lnk . (...) D:\wpa_wpa2\mac_adress.txt
O4 - GS\Desktop [THEGIVE]: Microsoft Test Manager 2015.lnk . (.Microsoft Corporation - Microsoft Test Manager.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\mtm.exe =>.Microsoft Corporation®
O4 - GS\Desktop [THEGIVE]: MTCTOly - Shortcut.lnk . (.Copyright © 2000-2004 Oleh Yuschuk - MTCTOlly, 32-Bit Analysing Debugger.) D:\00000000000000IDA00000\OllyDBG_2016\MTCTOly_\MTCTOly\MTCTOly.exe
O4 - GS\Desktop [THEGIVE]: médiateur formation - Shortcut.lnk . (...) D:\&&&Médiateur formation
O4 - GS\Desktop [THEGIVE]: NBRTeam.exe - Shortcut.lnk . (...) D:\NBRTeam\NBRTeam.exe
O4 - GS\Desktop [THEGIVE]: NeoBux AdAlert.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory=Default --app-id=hnpkdcghgfeaccigdjnibpkopebncakc =>.Google Inc®
O4 - GS\Desktop [THEGIVE]: OLLYDBG - Shortcut (2).lnk . (.Copyright © 2000-2004 Oleh Yuschuk - OllyDbg, 32-bit analysing debugger.) D:\00000000000000IDA00000\OllyDBG_2016\Olly_DBG_v1.10-MPT\Olly DBG v1.10-MPT\OLLYDBG.EXE
O4 - GS\Desktop [THEGIVE]: OLLYDBG - Shortcut.lnk . (.Copyright © 2009 - OllyDbg CiS edition, 32-bit analysing debug.) D:\00000000000000IDA00000\OllyDBG_2016\OllyDBG - TeAm CiS\OllyDBG - TeAm CiS\OLLYDBG.EXE
O4 - GS\Desktop [THEGIVE]: oMega.lnk . (.Pylonos.com LLC - oMega Commander.) D:\Program Files\oMega Commander\oMega64.exe {00A274BB632B9E42CF75C924BC982F07D0}
O4 - GS\Desktop [THEGIVE]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) D:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao
O4 - GS\Desktop [THEGIVE]: Process Hacker 2.lnk . (.wj32 - Process Hacker.) D:\Program Files\Process Hacker 2\ProcessHacker.exe =>.Wen Jia Liu®
O4 - GS\Desktop [THEGIVE]: procexp64.exe - Shortcut.lnk . (.Sysinternals - www.sysinternals.com - Sysinternals Process Explorer.) D:\Programs\2017\ProcessExplorer\procexp64.exe =>.Microsoft Corporation®
O4 - GS\Desktop [THEGIVE]: Reflector.exe - Shortcut.lnk . (.Red Gate Software Ltd - .NET Reflector.) C:\Program Files (x86)\Red Gate\.NET Reflector\Desktop 9.0\Reflector.exe {6BA13C0FC448B121455C47B079E3B307} =>.Red Gate Software Ltd
O4 - GS\Desktop [THEGIVE]: robotaskbaricon.exe - Shortcut.lnk . (.Siber Systems - RoboForm TaskBar Icon.) C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe =>.Siber Systems®
O4 - GS\Desktop [THEGIVE]: Snagit32 - Shortcut.lnk . (.TechSmith Corporation - Snagit.) C:\Program Files (x86)\TechSmith\Snagit 12\Snagit32.exe =>.TechSmith Corporation®
O4 - GS\Desktop [THEGIVE]: SpyTheSpy.lnk . (.Copyright (C) Mediachance 2004 - Spy The Spy (Spy watch).) C:\Program Files (x86)\SpyTheSpy\SpyTheSpy.exe
O4 - GS\Desktop [THEGIVE]: Temp - Shortcut.lnk . (...) C:\Users\THEGIVE\AppData\Local\Temp
O4 - GS\Desktop [THEGIVE]: UnPacKcN Ollydbg.lnk . (.Copyright © 2000-2004 Oleh Yuschuk - OllyDbg, 32-bit analysing debugger.) D:\Programs\CraCK2016\الهندسة العكسية\لطبعة الثانية من كتاب الفريق] الهندسة العكسية خطوة إلى الأمام\OllyDBG_v1.10_The_3rd_Edition\OllyDBG v1.10 The 3rd Edition\OllyDBG.eXe
O4 - GS\Desktop [THEGIVE]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\THEGIVE\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - GS\Desktop [THEGIVE]: Visual Studio 2015.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2015.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\Desktop [THEGIVE]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe =>.URSoft, Inc.®
O4 - GS\Desktop [THEGIVE]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleane.) C:\Users\THEGIVE\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [THEGIVE]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [THEGIVE]: ZHPLite.lnk . (.Nicolas Coolman - ZHPLite.) C:\Users\THEGIVE\AppData\Roaming\ZHP\ZHPLite.exe =>.Nicolas Coolman
O4 - GS\Desktop [THEGIVE]: ZynOSScanner.exe - Shortcut.lnk . (.Copyright © 2014 - ZynOSScanner.) D:\wpa_wpa2\ZynOSScanner_2\ZynOSScanner.exe
O4 - GS\Desktop [THEGIVE]: _xlsx -.lnk . (.kendouci otmane - .) D:\1111_neobux\Book1.xlsx
O4 - GS\Desktop [THEGIVE]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [THEGIVE]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [THEGIVE]: PotPlayer 64 bit.lnk . (.Kakao - PotPlayer.) D:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe {6FF335A71AF03911F54668DCCC13441C} =>.Kakao
O4 - GS\Quicklaunch [THEGIVE]: Wireshark Legacy.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark-gtk.exe =>.Wireshark Foundation, Inc.®
O4 - GS\Quicklaunch [THEGIVE]: Wireshark.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark.exe =>.Wireshark Foundation, Inc.®
O4 - GS\Quicklaunch [THEGIVE]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\THEGIVE\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [THEGIVE]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [THEGIVE]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [THEGIVE]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [THEGIVE]: iexplore.exe - Shortcut.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [THEGIVE]: NeoBux AdAlert.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory=Default --app-id=hnpkdcghgfeaccigdjnibpkopebncakc =>.Google Inc®
O4 - GS\TaskBar [THEGIVE]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibility On-Screen Keyboard.) C:\WINDOWS\system32\osk.exe =>.Microsoft Corporation
O4 - GS\Programs [THEGIVE]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [THEGIVE]: Optional Features.lnk . (.Microsoft Corporation - Features On Demand Helper.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\CommonDesktop [Public]: Adobe Acrobat DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat DC.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\CommonDesktop [Public]: Camtasia Studio 8.lnk . (.TechSmith Corporation - Camtasia Studio.) C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe =>.TechSmith Corporation®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd
O4 - GS\CommonDesktop [Public]: Euro Truck Simulat32bit.lnk . (.SCS Software - Euro Truck Simulator 2.) D:\Program Files (x86)\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe =>.SCS Software s.r.o.®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe =>.IObit Information Technology®
O4 - GS\CommonDesktop [Public]: Kaspersky Password Manager.lnk . (.AO Kaspersky Lab - Kaspersky Password Manager.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.5\kpm.exe =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Kaspersky Secure Connection.lnk . (.AO Kaspersky Lab - Kaspersky Secure Connection.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 1.0\ksdeui.exe -navigate ksde://mainwindow =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Kaspersky Total Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\avpui.exe =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Kingo ROOT.lnk . (.Kingosoft - Kingo Root.) D:\Program Files (x86)\Kingo ROOT\Kingo Root.exe =>.Finger Power Technology Co., Ltd.®
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files (x86)\Malwarebytes Anti-Malware\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: MiniTool Partition Wizard Professional Edition DEMO.lnk . (.MiniTool Solution Ltd. - MiniTool Partition Wizard.) D:\Program Files\MiniTool Partition Wizard Professional Edition 9.1 DEMO\PartitionWizard.exe =>.MiniTool Solution Ltd®
O4 - GS\CommonDesktop [Public]: MiniTool Power Data Recovery 7.0.lnk . (.MiniTool Solution Ltd. - MiniTool Power Data Recovery V7.0.) D:\Program Files\PowerDataRecovery\powerdatarecovery.exe =>.MiniTool Solution Ltd®
O4 - GS\CommonDesktop [Public]: Mobile Upgrade S 4.3.9.lnk . (.Copyright (C) 2010 - One Touch Upgrade S MFC Application.) D:\Mobile Upgrade S 4.3.9\Mobile Upgrade S.exe
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) C:\Program Files (x86)\Notepad++\notepad++.exe =>.Notepad++®
O4 - GS\CommonDesktop [Public]: Safe Money.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 17.0.0\avpui.exe -safebanking =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Vegas Pro 13.0 (64-bit).lnk . (.Sony Creative Software Inc. - .) C:\Program Files (x86)\Sony\Vegas Pro 13.0\vegas130.exe =>.Sony Creative Software Inc.
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: VMware Workstation Pro.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\CommonDesktop [Public]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) C:\Program Files (x86)\ZHPFix\ZHPhep.exe =>.Nicolas Coolman
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Optional Features.lnk . (.Microsoft Corporation - Features On Demand Helper.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Steps Recorder.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS Viewer.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\accicons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat Distiller DC.lnk . (.Adobe Systems Incorporated. - Acrobat Distiller.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrodist.exe =>.Adobe Systems, Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe After Effects CC 2015.lnk . (.Adobe Systems Incorporated - Adobe After Effects CC 2015.2.) C:\Program Files\Adobe\Adobe After Effects CC 2015\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Animate CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Animate CC 2015.1.) C:\Program Files\Adobe\Adobe Animate CC 2015\Animate.exe {796B808254C6EB0C37BE0A2ADE81DC5A} =>.Adobe Systems Incorporated
O4 - GS\ProgramsCommon [Public]: Adobe Audition CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Audition CC 2015.1.) C:\Program Files\Adobe\Adobe Audition CC 2015\Adobe Audition CC.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Bridge CC (64bit).lnk . (.Adobe Systems Incorporated - Adobe Bridge CC.) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Character Animator (Preview).lnk . (.Adobe Systems Incorporated - Character Animator Preview 3.) C:\Program Files\Adobe\Adobe Character Animator (Preview)\Support Files\Character Animator.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Dreamweaver CC 2015.lnk . (.Adobe Systems, Inc. - Adobe Dreamweaver CC 2015.) C:\Program Files\Adobe\Adobe Dreamweaver CC 2015\Dreamweaver.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Fuse CC (Preview).lnk . (...) C:\Program Files (x86)\Adobe\Adobe Fuse CC (Preview)\Code\Build\Output\Fuse\bin\Release\Fuse.exe {4EE401A5758AF325DEF50BE37C887227}
O4 - GS\ProgramsCommon [Public]: Adobe Illustrator CC 2015.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2015.) C:\Program Files\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe InCopy CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InCopy CC 2015.) C:\Program Files\Adobe\Adobe InCopy CC 2015\InCopy.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe InDesign CC 2015.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2015.) C:\Program Files\Adobe\Adobe InDesign CC 2015\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Media Encoder CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Media Encoder CC 2015.2.) C:\Program Files\Adobe\Adobe Media Encoder CC 2015\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Muse CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Muse CC.) C:\Program Files\Adobe\Adobe Muse CC 2015\Muse.exe -re =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Prelude CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Prelude CC 2015.3.) C:\Program Files\Adobe\Adobe Prelude CC 2015\Adobe Prelude.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Premiere Pro CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Premiere Pro CC 2015.2.) C:\Program Files\Adobe\Adobe Premiere Pro CC 2015\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe SpeedGrade CC 2015.lnk . (.Adobe System Incorporated - Adobe SpeedGrade CC 2015.) C:\Program Files\Adobe\Adobe SpeedGrade CC 2015\SpeedGrade.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Blend for Visual Studio 2015.lnk . (.Microsoft Corporation - Blend for Visual Studio.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\Blend.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Début PdfPrinter Monitor.lnk . (.PixelPlanet - PdfPrinter monitor.) C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe {0CFFBD4A04713986322B391ED7FE6B02} =>.PixelPlanet
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Test Manager 2015.lnk . (.Microsoft Corporation - Microsoft Test Manager.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\mtm.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\WINDOWS\MiracastView\MiracastView.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: OneDrive for Business.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\grv_icons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\joticon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\outicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PdfMerger.lnk . (.PixelPlanet - PdfMerge.) C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfMerge.exe {0CFFBD4A04713986322B391ED7FE6B02} =>.PixelPlanet
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\WINDOWS\PrintDialog\PrintDialog.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\pubs.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Skype for Business 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\lyncicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Visio 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0051-0000-1000-0000000FF1CE}\visicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Visual Studio 2015.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2015.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Wireshark Legacy.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark-gtk.exe =>.Wireshark Foundation, Inc.®
O4 - GS\ProgramsCommon [Public]: Wireshark.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files\Wireshark\Wireshark.exe =>.Wireshark Foundation, Inc.®
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®

---\\ Lop.com/Domain Hijackers (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{87c1ace5-bb29-4ce7-92d2-2fe968a0864b}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{955d07b3-5a3a-43b6-ae7e-4b68e76597e5}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{dfd30a87-5e1c-4dd0-a0fc-0540974c6ad3}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{e9c5a093-bf51-46f2-8211-550dcbe02679}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress

---\\ Extra protocols (25) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb.16 [64Bits] - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Software installed (208) - 20s
O42 - Logiciel: .NET Reflector Desktop - (.Red Gate Software Ltd.) [HKLM][64Bits] -- {34795E6B-338D-4A6D-8BCE-906AD056AF4F} =>.Red Gate Software Ltd
O42 - Logiciel: .NET Reflector Visual Studio Extension 9.0 - (.Red Gate Software Ltd.) [HKLM][64Bits] -- {BDF47606-A702-4FDF-8003-F5B807F54DA3} =>.Red Gate Software Ltd
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: 7-Zip 15.14 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Active Directory Authentication Library for SQL Server - (.Microsoft Corporation.) [HKLM][64Bits] -- {E646D196-A17B-4F14-BE7B-F774527FE5E0} =>.Microsoft Corporation
O42 - Logiciel: Active Directory Authentication Library for SQL Server (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {44DC843A-C591-4064-BE1F-2BDC177AF50C} =>.Microsoft Corporation
O42 - Logiciel: Adobe Acrobat DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-1033-FFFF-7760-0C0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe After Effects CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {147EC100-14BE-45EF-AB42-35BAEE7D02F0} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Animate CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8CEBC11D-C52F-11E5-A0D6-D44AB5E81A82} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Audition CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {839A3566-AED6-4787-A849-5CBE2B1DC6AE} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Bridge CC (64 Bit) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {359F8007-6486-429C-A8C5-D67F6897C88C} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Dreamweaver CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {EE2A0AA8-0386-11E5-8603-BC82F5DB1A71} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Builder 4.7 (64 Bit) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {848DE8E1-521D-4748-A158-517708107EF3} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 24 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 24 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Fuse CC (Preview) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {06F1F289-ACFE-43A2-A654-7950079D6685} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Illustrator CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- ILST_19_2_1 =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe InCopy CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {9EF1DB49-6D32-1014-93B7-EB62FA572532} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe InDesign CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DBFD0312-6E55-1014-8952-E78D43BC0147} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Lightroom - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Media Encoder CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0FAC7130-BEC5-47A5-8813-1D339B8326ED} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Muse CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {9B0619A0-D501-11E5-B16B-FB3EC5F53981} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {793C2BF7-A4FE-4608-91C9-9282C5801C21} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Prelude CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4D911A81-7146-470C-A48F-98479255251C} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Premiere Pro CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {38C72D42-0672-43B1-9E05-E7631684F9A1} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824211354} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe SpeedGrade CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8FD7F1DB-7355-469E-A3F2-2118148D8477} =>.Adobe Systems Incorporated®
O42 - Logiciel: Any Video Converter Professional 6.0.7 - (.Any-Video-Converter.com.) [HKLM][64Bits] -- Any Video Converter Professional_is1 {500CAFC732F9B644B401A751992E2DB0}
O42 - Logiciel: Application Insights Tools for Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9F429DF7-F8DD-4980-9673-E6DACA012F6C} =>.Microsoft Corporation
O42 - Logiciel: Azure AD Authentication Connected Service - (.Microsoft Corporation.) [HKLM][64Bits] -- {3FEAC561-1CF6-41D6-B0F3-BECDD9C88A1B} =>.Microsoft Corporation
O42 - Logiciel: AzureTools.Notifications - (.Microsoft Corporation.) [HKLM][64Bits] -- {1E5CA362-39B6-4BD0-B9C0-69CF15F0FEA2} =>.Microsoft Corporation
O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] -- {2A075BB4-E976-4278-BF3F-E5C6945D84C0} =>.Your Company Name
O42 - Logiciel: Blend for Visual Studio SDK for .NET 4.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37E53780-3944-4A6A-842F-727128E8616E} =>.Microsoft Corporation
O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM][64Bits] -- {AF33D0D2-2627-4AC8-8473-FDBB7892129C} =>.TechSmith Corporation
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Dotfuscator and Analytics Community Edition 5.19.1 - (.PreEmptive Solutions.) [HKLM][64Bits] -- {2A7F99F6-88A4-4B44-B350-41C0B147A39C} =>.PreEmptive Solutions
O42 - Logiciel: Embarcadero InterBase XE7 - (.Embarcadero Technologies, Inc..) [HKLM][64Bits] -- Embarcadero InterBase XE7 =>.Embarcadero Technologies, Inc.
O42 - Logiciel: Embarcadero RAD Studio 10 Seattle - (.Embarcadero Technologies, Inc..) [HKCU][64Bits] -- Embarcadero RAD Studio 10 Seattle =>.Embarcadero Technologies, Inc.
O42 - Logiciel: Embarcadero RAD Studio 10 Seattle - (.Embarcadero Technologies, Inc..) [HKLM][64Bits] -- {25059B3C-FFC7-41B6-80A9-80E4A2ED5564} =>.Embarcadero Technologies, Inc.
O42 - Logiciel: Entity Framework 6.1.3 Tools for Visual Studio 2015 Update 1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2A56910C-69C8-495D-8ED8-9080F0A14E58} =>.Microsoft Corporation
O42 - Logiciel: EPSON Printer Software - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON Printer and Utilities =>.SEIKO EPSON Corporation®
O42 - Logiciel: Euro Truck Simulator 2 - (.SCS Software.) [HKLM][64Bits] -- {1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1 =>.SCS Software s.r.o.®
O42 - Logiciel: Euro Truck Simulator 2 - (.SCS Software.) [HKLM][64Bits] -- Steam App 227300 =>.Valve®
O42 - Logiciel: FileZilla Client 3.20.1 - (.Tim Kosse.) [HKCU][64Bits] -- FileZilla Client =>.Tim Kosse
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Hopper Disassembler - (.Cryptic Apps.) [HKLM][64Bits] -- {73984E68-8A7F-4B27-A214-7A09AFF6EB3D}
O42 - Logiciel: IIS 10.0 Express - (.Microsoft Corporation.) [HKLM][64Bits] -- {7A28A2B0-458B-4A58-84AC-C90D2D4B79FB} =>.Microsoft Corporation
O42 - Logiciel: IIS Express Application Compatibility Database for x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {08274920-8908-45c2-9258-8ad67ff77b09}.sdb =>.Microsoft Corporation
O42 - Logiciel: IIS Express Application Compatibility Database for x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb =>.Microsoft Corporation
O42 - Logiciel: iMacros Examples - (.Ipswitch, Inc.) [HKCU][64Bits] -- {6255FC5C-161E-4F25-AA75-913E2586BC86}_is1 {1DFC556CDDE02BAF0B6550E9C67B72DA}
O42 - Logiciel: iMacros Version 11.5.498.2403 (x64) - (.Ipswitch, Inc.) [HKLM][64Bits] -- {9C5118F7-E26D-4fc0-B7F4-4A067A0808FA}_is1 {1DFC556CDDE02BAF0B6550E9C67B72DA}
O42 - Logiciel: Instant Demo - (.NetPlay Software.) [HKLM][64Bits] -- {1588DBA1-51A4-48B5-81D9-C97249D189DB}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} =>.Intel Corporation
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall =>.IObit Information Technology®
O42 - Logiciel: Java 8 Update 101 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180101F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Java SE Development Kit 7 Update 71 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0170710} =>.Oracle
O42 - Logiciel: Kaspersky Password Manager - (.Kaspersky Lab.) [HKLM][64Bits] -- {2C74A102-DC39-4158-A831-02BDE2EC7D5D} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Password Manager - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{2C74A102-DC39-4158-A831-02BDE2EC7D5D} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Secure Connection - (.Kaspersky Lab.) [HKLM][64Bits] -- {1CF84962-50F8-48CA-9082-B70F3A02C686} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Secure Connection - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{1CF84962-50F8-48CA-9082-B70F3A02C686} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2} =>.Kaspersky Lab
O42 - Logiciel: KeyScrambler - (.QFX Software Corporation.) [HKLM][64Bits] -- KeyScrambler =>.QFX Software Corporation
O42 - Logiciel: Malwarebytes version 3.0.5.1299 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Microsoft .NET Core 5.0 SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {C8AC11BB-B680-44A2-ACE4-2D88D6A711CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Version Manager (x64) 1.0.0-beta5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Access MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0015-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0117-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Agents for Visual Studio 2015 Preview - (.Microsoft Corporation.) [HKLM][64Bits] -- {CE37CE67-2660-30EE-805B-78829CC3554B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Agents for Visual Studio 2015 Preview - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {B57097EF-5F38-348C-8081-4D0F0B78757E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Audio Enhancement Troubleshooter installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E0351FF-6A71-45C5-A041-D4D9D8067EAF} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Mobile Services Connected Service - (.Microsoft Corporation.) [HKLM][64Bits] -- {A4495E4F-5218-48FB-8AD2-F3076011B9E1} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Mobile Services SDK V2.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A00EC54A-CE16-4CF6-A14A-5CF81A1FE03F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Mobile Services Tools for Visual Studio - v1.4 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5536AAD4-740A-4577-843D-4281D3F30726} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Shared Components for Visual Studio 2015 - v1.7 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7F6E1C5A-25DF-4352-A9A4-B1CE272CA67F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Storage Connected Service - (.Microsoft Corporation.) [HKLM][64Bits] -- {6B3F93BC-7716-4D97-8B80-1334DA37DDE1} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Blend for Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] -- {18073ADD-8C90-3AB7-8B87-BD3B10F3232B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Blend for Visual Studio 2015 - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {0000C224-8949-3AFE-A2D5-BE392DD04546} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Build Tools 14.0 (amd64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {7F017105-282F-4091-B16A-F8B8A69B0325} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Build Tools 14.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {DF27D91D-516E-4DA1-92AC-7D7D59B2D99E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Build Tools Language Resources 14.0 (amd64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {388D7468-1CCA-40C8-9F08-4C20E972E922} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Build Tools Language Resources 14.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {CBE7F62C-646C-46C3-9AB4-A3F71E5A68CC} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0090-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0016-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Expression Blend SDK for .NET 4 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9B3A1C97-A361-463E-8817-444F9F88CDFE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {67F42018-F647-4D3C-BE62-F8CB4FE2FCD5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00BA-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0044-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft NuGet - Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] -- {769EF2AA-ECB5-3686-A387-8980102F79B8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft OneNote MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00A1-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001A-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {1634C655-2398-35C0-89BE-291449A72F88} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - enu - (.Microsoft Corporation.) [HKLM][64Bits] -- {C0626FD4-C98A-33C9-97A8-5FF35AC92F34} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0018-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0019-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Skype for Business MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-012B-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] -- {091CE6AA-2753-4F6E-AD1C-0E875744EB54} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2016 RC0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3A87F9F2-D65D-4BA9-8459-E5BBE31EA64D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2016 RC0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {495CC0B4-D4C3-4D87-8317-F66BA48C5552} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visio MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0054-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visio Professional 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0051-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visio Professional 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office16.VISPRO =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Web Deploy 3.6 - (.Microsoft Corporation.) [HKLM][64Bits] -- {94E1227C-08A9-4962-B388-1F05D89AEA75} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (English) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001B-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft.VisualStudio.Office365 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3196EC29-B75D-4EE3-8AB0-46418BC31483} =>.Microsoft Corporation
O42 - Logiciel: MiniTool Partition Wizard Professional Edition 9.0 DEMO - (.MiniTool Solution Ltd..) [HKLM][64Bits] -- {14C615A9-8108-4959-9442-547F2AE73BF9}_is1 =>.MiniTool Solution Ltd®
O42 - Logiciel: MiniTool Partition Wizard Professional Edition 9.1 DEMO - (.MiniTool Solution Ltd..) [HKLM][64Bits] -- {14C615A9-8108-4959-9442-547F2AE73BF9}_is1 =>.MiniTool Solution Ltd®
O42 - Logiciel: MiniTool Power Data Recovery Edition 7.0 - (.MiniTool Solution Ltd..) [HKLM][64Bits] -- MiniTool Power Data Recovery Edition_is1 =>.MiniTool Solution Ltd®
O42 - Logiciel: Mozilla Firefox 50.1.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 50.1.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSBuild/NuGet Integration 14.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {13FE8B50-B340-4FDA-BB6E-AA1F5FAB8205} =>.Microsoft Corporation
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {24DB3A5E-0BC8-11E5-9A27-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: Multi-Device Hybrid Apps using C# - Templates - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {12D99739-FFD3-3761-8AA6-F929E0FE407E} =>.Microsoft Corporation
O42 - Logiciel: Nik Collection - (.Google.) [HKLM][64Bits] -- Nik Collection =>.Google Inc®
O42 - Logiciel: Notepad++ (32-bit x86) - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: oMega Commander 2.3.14.4267 - (.Pylonos.com LLC.) [HKLM][64Bits] -- {19A00CE2-FDE9-41AD-8CAA-E7BF2E3EAEDE}_is1 {00A274BB632B9E42CF75C924BC982F07D0}
O42 - Logiciel: ph - (.Your Company Name.) [HKLM][64Bits] -- {185F9795-9663-4F13-9EF9-307A282ADB5A} =>.Your Company Name
O42 - Logiciel: PixelPlanet PdfPrinter 7 (64bit) - (.PixelPlanet.) [HKLM][64Bits] -- {000F58F3-A544-4BB5-AF1B-761EA1C8595C} =>.PixelPlanet
O42 - Logiciel: Potplayer-64 bit - (.Kakao Corp..) [HKLM][64Bits] -- PotPlayer64 =>.Kakao Corp.
O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM][64Bits] -- PowerISO =>.Power Software Ltd
O42 - Logiciel: PreEmptive Analytics Visual Studio Components - (.PreEmptive Solutions.) [HKLM][64Bits] -- {436A18DD-5F2C-4B3C-985E-AD3C13B0CC25} =>.PreEmptive Solutions
O42 - Logiciel: Prerequisites for SSDT - (.Microsoft Corporation.) [HKLM][64Bits] -- {21373064-AD95-48DB-A32E-0D9E08EF7355} =>.Microsoft Corporation
O42 - Logiciel: Prerequisites for SSDT RC0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {AB72EB1C-9CF4-4274-984D-5EDA8BF37A08} =>.Microsoft Corporation
O42 - Logiciel: Process Hacker 2.39 (r124) - (.wj32.) [HKLM][64Bits] -- Process_Hacker2_is1 =>.wj32
O42 - Logiciel: Python 2.7.6 - (.Python Software Foundation.) [HKLM][64Bits] -- {C3CC4DF5-39A5-4027-B136-2B3E1F5AB6E2} =>.Python Software Foundation
O42 - Logiciel: RoboForm 7-9-25-5 - (.Siber Systems.) [HKCU][64Bits] -- AI RoboForm =>.Siber Systems®
O42 - Logiciel: Roslyn Language Services - x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {05E88B0D-9C09-3F25-9DFC-0D4DF9F6BCF0} =>.Microsoft Corporation
O42 - Logiciel: Roslyn Language Services - x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6C1985E7-E1C5-3A95-86EF-2C62465F15C3} =>.Microsoft Corporation
O42 - Logiciel: Security Update for Skype for Business 2016 (KB3115408) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-00C1-0000-1000-0000000FF1CE}_Office16.PROPLUS_{C5C666D0-D5BD-4FE8-BE51-938926DC58E1} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Skype for Business 2016 (KB3115408) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-00C1-0000-1000-0000000FF1CE}_Office16.VISPRO_{C5C666D0-D5BD-4FE8-BE51-938926DC58E1} =>.Microsoft Corporation®
O42 - Logiciel: Snagit 12 - (.TechSmith Corporation.) [HKLM][64Bits] -- {4FC332FE-CBE3-4AE0-B531-35048FD81912} =>.TechSmith Corporation
O42 - Logiciel: Snagit 12 - (.TechSmith Corporation.) [HKLM][64Bits] -- {ec29af82-9c9e-420e-ab18-53821c36ac3c} =>.TechSmith Corporation®
O42 - Logiciel: SpyTheSpy - (.Mediachance.) [HKLM][64Bits] -- SpyTheSpy_is1 =>.Mediachance
O42 - Logiciel: Swiff Player 1.7.2 - (.GlobFX Technologies.) [HKLM][64Bits] -- Swiff Player_is1 =>.GlobFX Technologies
O42 - Logiciel: Tools for .Net 3.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1690CE56-2231-4E59-9006-A0876D949EA8} =>.Microsoft Corporation
O42 - Logiciel: TypeScript Power Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {60890089-588B-4362-B9C5-A9C11D6E5DD1} =>.Microsoft Corporation
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer =>.Unity Technologies ApS
O42 - Logiciel: Update for (KB2504637) - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637 =>.Microsoft Corporation
O42 - Logiciel: Update for Skype for Business 2016 (KB3128049) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{801D5242-0189-4C99-977B-0C77DBD1F046} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2016 (KB3128049) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-012B-0409-1000-0000000FF1CE}_Office16.PROPLUS_{801D5242-0189-4C99-977B-0C77DBD1F046} =>.Microsoft Corporation®
O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {1EEE0BEE-0BC8-11E5-A19E-F04DA23A5C58} =>.Sony
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKCU][64Bits] -- {9574df79-44de-4a4a-8146-38d4900e15d0} =>.Viber Media S.à r.l.®
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKLM][64Bits] -- {09674AFF-C692-4D7F-BE2A-85647529D745} =>.Viber Media Inc.
O42 - Logiciel: Virtual Audio Cable 4.15 - (..) [HKLM][64Bits] -- Virtual Audio Cable 4.15 =>.Muzychenko Evgenii Viktorovich®
O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {99C9FABF-C085-38C9-B2DA-7E4943471D31} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {A5E71A84-9BAB-3A96-A5F8-62AD16E09E56} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {56FCBA2A-90E5-3D4B-8254-67684E869852} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {803CBFA1-EF27-3E84-8A7D-6109392623A4} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Base Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {ECC8F805-E519-3314-8C79-DC6CAC3E64DC} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {2B0558EA-15B0-3F0F-9F3A-5BAB288CD8C1} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {E6D09370-D4B1-3421-A0F6-45DF6999EBED} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Common Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {E57E4E87-61B6-3FDC-A4D3-BAE317678B74} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Common Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {78768181-0C6B-3703-9228-C8D5B12B4D68} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {AB3903D7-8CC4-3708-9558-93F68CED88C5} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {19055D06-F01E-3BF2-987B-DF9BC14C69FC} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {1E315887-E33F-3726-A9AC-A3A56B0DF4B3} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {3CAA7C8A-EF8D-3F7B-9710-197F5C606255} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {65FFE121-03FA-345D-8149-50AC21A4F985} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {705D1F4A-2E06-3C3C-A1C6-B7572D650418} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {B2BA21D5-8973-3AA6-936D-F2C51BF6D764} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {BC0FB8BF-E57B-30AB-8B77-DC11C75B4212} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {C915EA4E-24C9-3398-983C-CB9B9220B1EE} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {CAC666AC-1986-3B50-9670-552432D5B88A} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {D84B1C7A-7C28-3133-AA25-2D36763182AD} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {E413256C-F028-3C5E-B9B2-728ED1F544C6} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {E6597C44-DF3C-3BE6-A5A1-28E6DAECBA30} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB4B3254-5483-3C7B-AC56-D49231C3B51A} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {EF3EE0BB-DDB9-32F0-98CA-32C4B6C47D7E} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Debugger Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {5A870F8C-02A8-3F36-9D62-99BCFE8D77AF} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Debugger Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {C26829A1-4763-3A23-9522-5B9F16221712} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE Professional Core Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {3101E866-DD09-3926-8929-C6B580B951C5} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ IDE x64 Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {3E62C619-F43D-396C-B266-FA472CFE0B4B} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ Library PGO X86 Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {2E6C63B5-A075-3591-96CA-F7FEA8226482} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ MSBuild ARM Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {030702BF-6F52-356B-A223-F9CA15B465DA} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ MSBuild Base Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {A563F0A7-CF99-37E6-A917-CD6A2509F79C} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ MSBuild Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {6BDAD106-13C8-3EA8-9683-1DD6E89C8179} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ MSBuild X64 Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {2AA9034E-6735-30BD-92A4-A18791D1616F} =>.Microsoft Corporation
O42 - Logiciel: Visual C++ MSBuild X86 Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {ADB88179-BECB-3FA3-AB20-9362E8A2626C} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2012 Verification SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {3DCCF375-3903-35C7-967A-9EFEE9ED9A77} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2015 Prerequisites - (.Microsoft Corporation.) [HKLM][64Bits] -- {DF32E41C-24AD-4A87-B43A-B38553B1806E} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2015 Prerequisites - ENU Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {83B181F2-20B8-4F00-8E71-C66E951A8D4F} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2015 Update 2 (KB3022398) - (.Microsoft Corporation.) [HKLM][64Bits] -- {78c1b501-a6eb-4f29-88c5-84189564827e} =>.Microsoft Corporation®
O42 - Logiciel: Visual Studio Graphics Analyzer - (.Microsoft Corporation.) [HKLM][64Bits] -- {C70EC402-4FAA-3B06-9BE6-77C52DBCD9B3} =>.Microsoft Corporation
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {C1DFE0DD-1E80-4BC5-B808-EC3089654606} =>.VMware, Inc.
O42 - Logiciel: VS Update core components - (.Microsoft Corporation.) [HKLM][64Bits] -- {6A878817-D626-305A-BE8D-94C93F70E27A} =>.Microsoft Corporation
O42 - Logiciel: WCF Data Services 5.6.4 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {DB85E7BD-B2DD-43D4-B3C0-23D7B527B597} =>.Microsoft Corporation
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation
O42 - Logiciel: Windows Espc Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {42AF2A8C-6EBB-3D2E-9BF1-6135379FBABC} =>.Microsoft Corporation
O42 - Logiciel: Windows Espc Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {FC94D188-1E08-3707-9D23-F41178D44664} =>.Microsoft Corporation
O42 - Logiciel: Windows Phone SDK 8.0 Assemblies for Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] -- {44474AE7-7770-3676-AC63-C9DDD15011FF} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {5247E16E-BCF8-95AB-1653-B3F8FBF8B3F1} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {A1CB8286-CFB3-A985-D799-721A0F2A27F3} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {96F4525A-470D-F15C-796E-58D9988C3E5F} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {56AD3004-0B49-967F-F682-B05650B61A78} =>.Microsoft Corporation
O42 - Logiciel: WinPcap 4.1.3 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies
O42 - Logiciel: WinRAR 5.31 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Your Uninstaller! 7 - (.URSoft, Inc..) [HKLM][64Bits] -- YU2010_is1 =>.URSoft, Inc.®
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 =>.Nicolas Coolman

---\\ HKCU & HKLM Software Keys (143) - 20s
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\Arcai =>.Arcai.com
HKLM\SOFTWARE\Wow6432Node\BCL Technologies =>.BCL Technologies
HKLM\SOFTWARE\Wow6432Node\CDDB =>.Cddb Software
HKLM\SOFTWARE\Wow6432Node\Embarcadero =>.Embarcadero
HKLM\SOFTWARE\Wow6432Node\EPSON =>.EPSON
HKLM\SOFTWARE\Wow6432Node\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\Wow6432Node\Ghisler =>.Ghisler Software
HKLM\SOFTWARE\Wow6432Node\GlobFX Technologies =>.GlobFX Technologies
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\I.R.I.S. =>.I.R.I.S.
HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\Wow6432Node\IO3O =>.IO3O LLC
HKLM\SOFTWARE\Wow6432Node\IObit =>.IObit
HKLM\SOFTWARE\Wow6432Node\iOpus
HKLM\SOFTWARE\Wow6432Node\Ipswitch =>.Ipswitch
HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit =>.Malwarebytes
HKLM\SOFTWARE\Wow6432Node\Martin Prikryl =>.Martin Prikryl
HKLM\SOFTWARE\Wow6432Node\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Notepad++ =>.Don Ho
HKLM\SOFTWARE\Wow6432Node\NuGet =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\Piriform =>.Piriform
HKLM\SOFTWARE\Wow6432Node\PowerISO =>.PowerISO Computing
HKLM\SOFTWARE\Wow6432Node\PowerPivot =>.PowerPivot
HKLM\SOFTWARE\Wow6432Node\PreEmptive Solutions =>.PreEmptive Solutions
HKLM\SOFTWARE\Wow6432Node\Python =>.Python
HKLM\SOFTWARE\Wow6432Node\QFX Software =>.QFX Software
HKLM\SOFTWARE\Wow6432Node\RSystem64
HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited =>.Safer Networking Limited
HKLM\SOFTWARE\Wow6432Node\SCS Software =>.SCS Software
HKLM\SOFTWARE\Wow6432Node\Siber Systems =>.Siber Systems
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\Sothink Blu-ray Copy Giveaway Version
HKLM\SOFTWARE\Wow6432Node\TCL =>.TCL
HKLM\SOFTWARE\Wow6432Node\TechSmith =>.TechSmith
HKLM\SOFTWARE\Wow6432Node\ThinPrint =>.ThinPrint
HKLM\SOFTWARE\Wow6432Node\TOSHIBA =>.Toshiba Corporation
HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Wow6432Node\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\Wow6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\WafCX =>.WafCX
HKLM\SOFTWARE\Wow6432Node\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\Wow6432Node\Wondershare =>.Wondershare
HKLM\SOFTWARE\Wow6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Adobe Lightroom =>.Adobe Inc.
HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKCU\SOFTWARE\Anvsoft =>.AnvSoft Inc
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Arcai.com =>.Arcai.com
HKCU\SOFTWARE\Bitdefender =>.Bitdefender
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blocade
HKCU\SOFTWARE\Blueberry Consultants
HKCU\SOFTWARE\Borland =>.Borland
HKCU\SOFTWARE\Caphyon =>.Caphyon
HKCU\SOFTWARE\cB1vK0Y4sdW58x
HKCU\SOFTWARE\ChessBase =>.ChessBase
HKCU\SOFTWARE\Datarescue =>.DataRescue
HKCU\SOFTWARE\DAUM =>.DAUM
HKCU\SOFTWARE\DirectShow =>.Microsoft Corporation
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\DVDFab =>.Fengtao
HKCU\SOFTWARE\Embarcadero =>.Embarcadero
HKCU\SOFTWARE\EPSON =>.EPSON
HKCU\SOFTWARE\ExEi-pe
HKCU\SOFTWARE\Explorer++
HKCU\SOFTWARE\FileZilla Client =>.Tim Kosse
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Heaventools
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\iMacros
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Ipswitch =>.Ipswitch
HKCU\SOFTWARE\Iris =>.I.R.I.S.
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Locky =>.Legitimate
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Martin Prikryl =>.Martin Prikryl
HKCU\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd.
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MyLanViewer
HKCU\SOFTWARE\Netgate
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\PixelPlanet =>.PixelPlanet
HKCU\SOFTWARE\PowerISO =>.PowerISO Computing
HKCU\SOFTWARE\Pylonos.com
HKCU\SOFTWARE\QFX Software =>.QFX Software
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\QwertyLab
HKCU\SOFTWARE\Red Gate
HKCU\SOFTWARE\Red Gate Software Ltd.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\RSystem64
HKCU\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKCU\SOFTWARE\Siber Systems =>.Siber Systems
HKCU\SOFTWARE\SimonTatham =>.Simon Tatham
HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\TCL =>.TCL
HKCU\SOFTWARE\TechSmith =>.TechSmith
HKCU\SOFTWARE\Thingummy Software
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\URSoft =>.URSoft
HKCU\SOFTWARE\uTorrentPlus
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\Viber =>.Viber
HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wireshark =>.Wireshark
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity =>.Unity

---\\ Contents of the Common Files folders (421) - 133s
O43 - CFD: 06/05/2016 - [] AD -- C:\Program Files\7-Zip =>.Igor Pavlov
O43 - CFD: 22/11/2006 - [] D -- C:\Program Files\A-Grammer
O43 - CFD: 09/05/2016 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 04/01/2017 - [] AD -- C:\Program Files\CCleaner =>.Piriform
O43 - CFD: 11/01/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 08/08/2016 - [] D -- C:\Program Files\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 10/01/2017 - [0] D -- C:\Program Files\Free FLV Player =>.Tonec Inc
O43 - CFD: 09/05/2016 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 19/01/2017 - [] AD -- C:\Program Files\HitmanPro =>.EIDOS hitman Game
O43 - CFD: 16/12/2016 - [] AD -- C:\Program Files\IIS =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files\IIS Express =>.Microsoft Corporation®
O43 - CFD: 05/01/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 23/12/2016 - [] D -- C:\Program Files\Ipswitch {1DFC556CDDE02BAF0B6550E9C67B72DA} =>.Ipswitch
O43 - CFD: 08/09/2016 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 02/10/2016 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files\Microsoft DNX =>.Microsoft Corporation
O43 - CFD: 02/10/2016 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 04/12/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files\Microsoft Visual Studio 12.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 15/09/2016 - [] D -- C:\Program Files\Reason
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 11/09/2016 - [] D -- C:\Program Files\shamela
O43 - CFD: 07/05/2016 - [] D -- C:\Program Files\Sony =>.Sony
O43 - CFD: 29/11/2016 - [0] D -- C:\Program Files\Toshiba =>.Toshiba Corporation
O43 - CFD: 13/02/2016 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 24/08/2016 - [] D -- C:\Program Files\Virtual Audio Cable =>.Muzychenko Evgenii Viktorovich®
O43 - CFD: 28/12/2016 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 19/01/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 05/07/2016 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology
O43 - CFD: 06/05/2016 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 15/09/2016 - [] AD -- C:\Program Files\Wireshark =>.Wireshark
O43 - CFD: 11/01/2017 - [0] D -- C:\Program Files (x86)\360 =>.Qihu 360 Software
O43 - CFD: 09/01/2017 - [0] AD -- C:\Program Files (x86)\AAALOGO =>.SWGSoft
O43 - CFD: 13/09/2016 - [] D -- C:\Program Files (x86)\Acrylic DNS Proxy
O43 - CFD: 16/09/2016 - [] D -- C:\Program Files (x86)\Adobe {4EE401A5758AF325DEF50BE37C887227} =>.Adobe
O43 - CFD: 01/11/2016 - [0] AD -- C:\Program Files (x86)\Advanced IP Scanner =>.Famatech Corp.
O43 - CFD: 12/01/2017 - [] AD -- C:\Program Files (x86)\Anti DDoS Guardian 3.3
O43 - CFD: 01/01/2017 - [] D -- C:\Program Files (x86)\Anvsoft =>.AnvSoft Inc
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\AppInsights =>.Microsoft Corporation
O43 - CFD: 20/01/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 12/01/2017 - [] AD -- C:\Program Files (x86)\Fast Explorer
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\GlobFX
O43 - CFD: 09/01/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 04/06/2016 - [] D -- C:\Program Files (x86)\Hopper Disassembler
O43 - CFD: 08/01/2017 - [0] AD -- C:\Program Files (x86)\I-Q-I-Y-I-Remover
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\IIS =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files (x86)\IIS Express =>.Microsoft Corporation®
O43 - CFD: 29/11/2016 - [0] D -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software
O43 - CFD: 26/08/2016 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 16/01/2017 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc
O43 - CFD: 05/01/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 20/01/2017 - [] D -- C:\Program Files (x86)\IObit =>.IObit
O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\Ipswitch {1DFC556CDDE02BAF0B6550E9C67B72DA} =>.Ipswitch
O43 - CFD: 08/09/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 19/01/2017 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 27/12/2016 - [] D -- C:\Program Files (x86)\KeyCryptSDK =>.Zemana Ltd
O43 - CFD: 31/12/2016 - [] D -- C:\Program Files (x86)\KeyScrambler =>.QFX Software
O43 - CFD: 30/12/2016 - [] AD -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes
O43 - CFD: 02/10/2016 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET =>.Microsoft Corporation
O43 - CFD: 25/08/2016 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Microsoft Help Viewer =>.Microsoft Corporation
O43 - CFD: 02/10/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Microsoft Office365 Tools =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation
O43 - CFD: 04/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 11.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 16/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 12.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 16/12/2016 - [] AD -- C:\Program Files (x86)\Microsoft Visual Studio 14.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Microsoft WCF Data Services =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files (x86)\Microsoft Web Tools =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] AD -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 18/12/2016 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 27/12/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 16/12/2016 - [] AD -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files (x86)\My Company Name =>.My Company Name
O43 - CFD: 20/11/2016 - [0] D -- C:\Program Files (x86)\MyLanViewer =>.S.K. Software
O43 - CFD: 24/09/2016 - [] D -- C:\Program Files (x86)\No-IP =>.No-IP
O43 - CFD: 06/05/2016 - [] D -- C:\Program Files (x86)\Notepad++ =>.Don Ho
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\NuGet =>.Microsoft Corporation
O43 - CFD: 29/11/2016 - [0] D -- C:\Program Files (x86)\PixelPlanet =>.PixelPlanet
O43 - CFD: 07/06/2016 - [] AD -- C:\Program Files (x86)\PowerISO =>.PowerISO Computing
O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\Red Gate {6BA13C0FC448B121455C47B079E3B307}
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\ShellDir =>.Unknow
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files (x86)\Siber Systems =>.Siber Systems®
O43 - CFD: 07/05/2016 - [] D -- C:\Program Files (x86)\Sony =>.Sony
O43 - CFD: 19/01/2017 - [0] D -- C:\Program Files (x86)\Sothink Blu-ray Copy Giveaway Version
O43 - CFD: 30/08/2016 - [] AD -- C:\Program Files (x86)\SpyTheSpy
O43 - CFD: 28/06/2016 - [] D -- C:\Program Files (x86)\SSH Communications Security
O43 - CFD: 11/09/2016 - [0] AD -- C:\Program Files (x86)\System Explorer
O43 - CFD: 06/05/2016 - [] D -- C:\Program Files (x86)\TechSmith =>.TechSmith
O43 - CFD: 16/12/2016 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 13/09/2016 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 28/11/2016 - [] AD -- C:\Program Files (x86)\VMware =>.VMware, Inc.®
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Windows Kits =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare
O43 - CFD: 10/06/2016 - [] AD -- C:\Program Files (x86)\Your Uninstaller! 7 =>.Ursoftware
O43 - CFD: 27/12/2016 - [] AD -- C:\Program Files (x86)\Zemana AntiLogger =>.Zemana Ltd
O43 - CFD: 12/01/2017 - [0] AD -- C:\Program Files (x86)\Zemana AntiMalware =>.Zemana
O43 - CFD: 20/01/2017 - [] AD -- C:\Program Files (x86)\ZHPFix =>.Nicolas Coolman
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 16/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 15/01/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrylic DNS Proxy
O43 - CFD: 28/12/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Builder 4.7
O43 - CFD: 01/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft =>.AnvSoft Inc
O43 - CFD: 04/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum =>.DAUM
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embarcadero InterBase XE7
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2
O43 - CFD: 23/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMacros
O43 - CFD: 16/12/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 20/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller =>.IObit
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit =>.Oracle
O43 - CFD: 19/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Password Manager =>.Kaspersky Labs
O43 - CFD: 19/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection =>.Kaspersky Lab
O43 - CFD: 19/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security =>.Kaspersky Labs
O43 - CFD: 31/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyScrambler =>.QFX Software
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT =>.Kingosoft Technology Ltd
O43 - CFD: 16/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 30/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Professional Edition 9.0 DEMO =>.MiniTool Solution Ltd
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Professional Edition 9.1 DEMO =>.MiniTool Solution Ltd
O43 - CFD: 08/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Power Data Recovery 7.0
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobile Upgrade S 4.3.9
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO =>.PowerISO Computing
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Hacker 2 =>.Wj32
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7 =>.Python
O43 - CFD: 23/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Red Gate
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony =>.Sony
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyTheSpy
O43 - CFD: 16/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by AnVir)
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Swiff Player
O43 - CFD: 16/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith =>.TechSmith
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015 =>.Pinnacle Systems, Inc.
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware =>.VMware
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7 =>.Ursoftware
O43 - CFD: 20/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP =>.Nicolas Coolman
O43 - CFD: 11/01/2017 - [] D -- C:\ProgramData\360Quarant =>.Qihu 360 Software Co., LTD
O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 09/12/2016 - [] D -- C:\ProgramData\Bitdefender =>.Bitdefender
O43 - CFD: 16/09/2016 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org
O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\DAEMON Tools Ultra =>.Daemon's Home
O43 - CFD: 16/12/2016 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 23/12/2016 - [] D -- C:\ProgramData\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 02/10/2016 - [] D -- C:\ProgramData\Embarcadero =>.Embarcadero
O43 - CFD: 19/01/2017 - [] D -- C:\ProgramData\Emsisoft =>.Emsisoft
O43 - CFD: 27/11/2016 - [] D -- C:\ProgramData\EPSON =>.EPSON
O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\Google =>.Google
O43 - CFD: 09/01/2017 - [] D -- C:\ProgramData\HitmanPro =>.EIDOS hitman Game
O43 - CFD: 14/01/2017 - [] D -- C:\ProgramData\HitmanPro.Alert =>.Eidos
O43 - CFD: 06/05/2016 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 26/08/2016 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 20/01/2017 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 20/01/2017 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 20/01/2017 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab
O43 - CFD: 07/12/2016 - [0] D -- C:\ProgramData\Lenovo =>.Lenovo
O43 - CFD: 30/12/2016 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 30/12/2016 - [] D -- C:\ProgramData\Malwarebytes Anti-Exploit =>.Malwarebytes
O43 - CFD: 20/01/2017 - [] ASD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\Microsoft DNX =>.Microsoft Corporation
O43 - CFD: 12/01/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 08/12/2016 - [] D -- C:\ProgramData\Movavi =>.Movavi
O43 - CFD: 08/12/2016 - [] D -- C:\ProgramData\Movavi Video Converter 17 =>.Movavi
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\NuGet =>.Microsoft Corporation
O43 - CFD: 08/09/2016 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 26/08/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 27/11/2016 - [] D -- C:\ProgramData\PixelPlanet =>.PixelPlanet
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\PreEmptive Solutions =>.PreEmptive Solutions
O43 - CFD: 20/01/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 08/01/2017 - [] D -- C:\ProgramData\Pylonos
O43 - CFD: 31/12/2016 - [] D -- C:\ProgramData\QFX Software =>.QFX Software
O43 - CFD: 27/11/2016 - [] D -- C:\ProgramData\Readiris16Pro
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 16/12/2016 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] AD -- C:\ProgramData\regid.1995-08.com.techsmith =>.TechSmith Corporation
O43 - CFD: 01/01/2017 - [0] D -- C:\ProgramData\RegRun =>.Greatis Software
O43 - CFD: 06/05/2016 - [] D -- C:\ProgramData\RoboForm =>.Siber Systems Inc.
O43 - CFD: 27/11/2016 - [] D -- C:\ProgramData\SafeNet Sentinel =>.SafeNet
O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 27/11/2016 - [0] D -- C:\ProgramData\SolidDocuments =>.SolidDocuments
O43 - CFD: 07/05/2016 - [] D -- C:\ProgramData\Sony =>.Sony
O43 - CFD: 15/06/2016 - [] D -- C:\ProgramData\Spybot - Search & Destroy =>.SaferNetworking
O43 - CFD: 16/12/2016 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 24/09/2016 - [] AD -- C:\ProgramData\TechSmith =>.TechSmith
O43 - CFD: 19/01/2017 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 03/07/2016 - [] D -- C:\ProgramData\Vitalwerks =>.Vitalwerks
O43 - CFD: 20/01/2017 - [] AD -- C:\ProgramData\VMware =>.VMware
O43 - CFD: 28/12/2016 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 28/12/2016 - [] D -- C:\ProgramData\wsr
O43 - CFD: 08/05/2016 - [0] D -- C:\ProgramData\{09FECC13-2950-4AE6-BB23-05C206979F18}
O43 - CFD: 20/01/2017 - [0] D -- C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A}
O43 - CFD: 16/09/2016 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 27/11/2016 - [] D -- C:\Program Files (x86)\Common Files\BCL Technologies =>.BCL Technologies
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Common Files\ChessBase =>.ChessBase
O43 - CFD: 28/05/2016 - [] AD -- C:\Program Files (x86)\Common Files\Designer =>.Designer
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Embarcadero =>.Embarcadero
O43 - CFD: 28/11/2016 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 20/01/2017 - [] D -- C:\Program Files (x86)\Common Files\IObit =>.IObit
O43 - CFD: 08/09/2016 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle
O43 - CFD: 28/05/2016 - [0] D -- C:\Program Files (x86)\Common Files\Merge Modules =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 27/11/2016 - [] D -- C:\Program Files (x86)\Common Files\PixelPlanet =>.PixelPlanet
O43 - CFD: 08/05/2016 - [] AD -- C:\Program Files (x86)\Common Files\PX Storage Engine =>.Sonic
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared =>.Sonic
O43 - CFD: 31/10/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.SteamApps
O43 - CFD: 16/07/2016 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 24/09/2016 - [] AD -- C:\Program Files (x86)\Common Files\TechSmith Shared =>.TechSmith
O43 - CFD: 28/11/2016 - [] AD -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint
O43 - CFD: 28/11/2016 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware
O43 - CFD: 28/12/2016 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare
O43 - CFD: 27/11/2016 - [] AD -- C:\Program Files (x86)\Common Files\XpressUpdate =>.PixelPlanet
O43 - CFD: 19/01/2017 - [0] D -- C:\Users\THEGIVE\AppData\Roaming\22417
O43 - CFD: 15/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 07/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Anvsoft =>.AnvSoft Inc
O43 - CFD: 15/07/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Charles
O43 - CFD: 07/09/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\ChessBase =>.ChessBase
O43 - CFD: 08/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\com.adobe.AdobeMuseCC.2015.1 =>.Adobe Inc.
O43 - CFD: 12/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\DAEMON Tools Ultra =>.Daemon's Home
O43 - CFD: 05/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Datarescue =>.DataRescue
O43 - CFD: 20/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 08/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Embarcadero =>.Embarcadero
O43 - CFD: 19/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\ESET =>.ESET
O43 - CFD: 10/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 29/07/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\GHISLER =>.Ghisler Software
O43 - CFD: 02/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Hex-Rays
O43 - CFD: 12/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\IDM =>.IDM
O43 - CFD: 01/10/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Internet Chess Club
O43 - CFD: 20/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\IObit =>.IObit
O43 - CFD: 23/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Ipswitch =>.Ipswitch
O43 - CFD: 18/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\JAGED Inc
O43 - CFD: 03/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Kingosoft =>.Kingosoft
O43 - CFD: 08/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Kruptos 2 Software
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 23/12/2016 - [] SD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 11/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Notepad++ =>.Don Ho
O43 - CFD: 05/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\NRHM
O43 - CFD: 01/08/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\PE Explorer
O43 - CFD: 17/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\PerfectPlayer =>.Niklabs
O43 - CFD: 29/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\PixelPlanet =>.PixelPlanet
O43 - CFD: 25/08/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Process Hacker 2 =>.Wj32
O43 - CFD: 20/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\ProductData =>.Microsoft Corporation
O43 - CFD: 07/05/2016 - [0] D -- C:\Users\THEGIVE\AppData\Roaming\Publish Providers =>.Unknow
O43 - CFD: 31/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\QFX Software =>.QFX Software
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\RoboForm =>.Siber Systems Inc.
O43 - CFD: 04/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\SatChannelListEditor
O43 - CFD: 11/09/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\shamela
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Skype =>.Skype
O43 - CFD: 06/10/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\SolidDocuments =>.SolidDocuments
O43 - CFD: 10/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Sony =>.Sony
O43 - CFD: 28/06/2016 - [0] D -- C:\Users\THEGIVE\AppData\Roaming\SSH
O43 - CFD: 01/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Subversion =>.Games Software
O43 - CFD: 08/09/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\TechSmith =>.TechSmith
O43 - CFD: 24/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Unity =>.Unity
O43 - CFD: 10/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\URSoft =>.URSoft
O43 - CFD: 17/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\uTorrent
O43 - CFD: 15/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\ViberPC =>.Viber
O43 - CFD: 07/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 14/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\VMware =>.VMware
O43 - CFD: 28/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\WinBatch =>.winbatch.com
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 15/09/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Wireshark =>.Wireshark
O43 - CFD: 28/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Wondershare =>.Wondershare
O43 - CFD: 20/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 08/05/2016 - [0] D -- C:\Users\THEGIVE\AppData\Local\ActiveSync =>.Microsoft Corporation
O43 - CFD: 20/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Adobe =>.Adobe
O43 - CFD: 26/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\AnVir =>.Anvir Software
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\THEGIVE\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 28/10/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 23/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\assembly =>.Assembly
O43 - CFD: 08/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Caphyon =>.Caphyon
O43 - CFD: 07/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\CEF =>.CEF
O43 - CFD: 11/09/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\ChessBase =>.ChessBase
O43 - CFD: 08/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 08/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\converter =>.CocoonSoftware
O43 - CFD: 17/12/2016 - [0] D -- C:\Users\THEGIVE\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 12/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 23/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\DotNet Resolver
O43 - CFD: 27/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 19/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 08/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Embarcadero =>.Embarcadero
O43 - CFD: 09/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\ESET =>.ESET
O43 - CFD: 24/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Facebook =>.Facebook
O43 - CFD: 24/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\FacebookGames =>.Facebook
O43 - CFD: 08/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Flash Builder
O43 - CFD: 29/07/2016 - [0] D -- C:\Users\THEGIVE\AppData\Local\GHISLER =>.Ghisler Software
O43 - CFD: 24/09/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\GlassWire =>.SecureMix
O43 - CFD: 29/10/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Google =>.Google
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\THEGIVE\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 16/09/2016 - [] AD -- C:\Users\THEGIVE\AppData\Local\Instant Demo
O43 - CFD: 23/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\IsolatedStorage =>.id Software
O43 - CFD: 18/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\JAGED_Inc
O43 - CFD: 19/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 03/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Kingosoft =>.Kingosoft
O43 - CFD: 08/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Kruptos
O43 - CFD: 15/07/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 01/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\MetaGeek,_LLC =>.MetaGeek, LLC
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 23/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 08/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Movavi =>.Movavi
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 16/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\MyLanViewer =>.S.K. Software
O43 - CFD: 06/05/2016 - [0] D -- C:\Users\THEGIVE\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 27/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\OfficeBSCache-MyComputer
O43 - CFD: 07/10/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Package Cache =>.Microsoft Corporation
O43 - CFD: 16/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 06/05/2016 - [0] D -- C:\Users\THEGIVE\AppData\Local\PackageStaging =>.Apcera
O43 - CFD: 07/05/2016 - [0] D -- C:\Users\THEGIVE\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 03/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 08/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Pylonos
O43 - CFD: 23/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Red Gate
O43 - CFD: 07/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Sony =>.Sony
O43 - CFD: 25/08/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Steam =>.SteamApps
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\TechSmith =>.TechSmith
O43 - CFD: 20/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\THEGIVE\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 06/05/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 24/06/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Unity =>.Unity
O43 - CFD: 03/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\uts
O43 - CFD: 25/11/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Viber =>.Viber
O43 - CFD: 25/09/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 03/07/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Vitalwerks =>.Vitalwerks
O43 - CFD: 14/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Local\VMware =>.VMware
O43 - CFD: 28/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Wondershare =>.Wondershare
O43 - CFD: 17/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Local\Zemana =>.Zemana
O43 - CFD: 08/05/2016 - [] HD -- C:\Users\THEGIVE\AppData\Local\{09FECC13-2950-4AE6-BB23-05C206979F18}
O43 - CFD: 03/06/2016 - [0] D -- C:\Users\THEGIVE\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] RD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] RD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 15/01/2017 - [] RD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 17/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome =>.Google Inc.
O43 - CFD: 01/11/2016 - [0] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dom2000
O43 - CFD: 16/12/2016 - [] RD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Embarcadero RAD Studio 10 Seattle =>.Pinnacle Systems, Inc.
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastReports
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 10/01/2017 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free FLV Player =>.Tonec Inc
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hopper Disassembler
O43 - CFD: 23/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iMacros
O43 - CFD: 16/09/2016 - [0] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Instant Demo
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 16/07/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RoboForm =>.Siber Systems Inc.
O43 - CFD: 15/01/2017 - [] RD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by AnVir)
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.SteamApps
O43 - CFD: 16/07/2016 - [] RD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber =>.Viber
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] RD -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\Users\THEGIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 20/12/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Zemana =>.Zemana
O43 - CFD: 11/01/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\360safe =>.Qihu 360 Software
O43 - CFD: 20/01/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit
O43 - CFD: 10/01/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 20/01/2017 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware

---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 1s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\THEGIVE\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ System Drivers List (115) - 19s
O58 - SDL:2017/01/02 00:27:31 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\18F9326D.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2017/01/12 19:17:42 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\3EA220C3.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2016/07/16 12:41:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [14458] =>.Microsoft Windows®
O58 - SDL:2017/01/12 19:16:08 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\53F31F90.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2017/01/01 01:24:44 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\5FA11015.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2016/07/16 12:41:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [14458] =>.Microsoft Windows®
O58 - SDL:2015/08/05 20:07:49 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwbx.sys [14458] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2016/07/16 12:41:50 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwnx.sys [14458] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2016/07/16 12:41:53 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [14458] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2016/07/16 12:41:53 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [14458] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2016/07/13 17:47:38 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [14458] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2016/07/16 12:41:52 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [14458] =>.Microsoft Windows®
O58 - SDL:2012/04/24 03:01:00 A . (.Corel Corporation - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys [14458] =>.Corel Corporation®
O58 - SDL:2012/04/24 03:01:00 A . (.Corel Corporation - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\WINDOWS\System32\drivers\cdralw2k.sys [14458] =>.Corel Corporation®
O58 - SDL:2015/08/28 17:03:46 A . (.Windows (R) Codename Longhorn DDK provider - Alcatelusb Driver.) -- C:\WINDOWS\System32\drivers\cdrombus.sys [14458] =>.Windows (R) Codename Longhorn DDK provider
O58 - SDL:2016/07/16 12:41:53 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T4 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/06/10 06:41:26 A . (.AO Kaspersky Lab - Cryptographic Module Driver x64 (56 bit).) -- C:\WINDOWS\System32\drivers\cm_km.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/12/12 11:03:31 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtultrascsibus.sys [14458] =>.Disc Soft Ltd®
O58 - SDL:2016/12/12 11:03:47 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtultrausbbus.sys [14458] =>.Disc Soft Ltd®
O58 - SDL:2016/07/16 12:41:52 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [14458] =>.Microsoft Windows®
O58 - SDL:2017/01/19 23:56:35 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2016/09/06 18:48:58 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/07/16 12:41:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:54 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [14458] =>.Intel(R) Corporation
O58 - SDL:2016/07/16 12:41:54 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [14458] =>.Intel(R) Corporation
O58 - SDL:2016/07/16 12:41:54 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [14458] =>.Intel Corporation
O58 - SDL:2016/07/16 12:41:54 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [14458] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2016/07/16 12:41:52 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [14458] =>.Intel Corporation - Client Components Group®
O58 - SDL:2016/07/16 12:41:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [14458] =>.Intel Corporation
O58 - SDL:2016/07/16 12:41:53 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/05/24 15:29:12 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [14458] =>.Tonec Inc.®
O58 - SDL:2016/05/06 18:03:14 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [14458] =>.Intel Corporation - pGFX®
O58 - SDL:2012/10/02 09:34:28 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [14458] =>.Intel(R) Corporation
O58 - SDL:2016/08/10 23:11:12 A . (.Zemana Ltd. - Zemana AntiLogger Free.) -- C:\WINDOWS\System32\drivers\KeyCrypt64.sys [14458] =>.Zemana Ltd.®
O58 - SDL:2015/08/18 17:25:20 A . (.QFX Software Corporation - KeyScrambler Keyboard Encryption Driver.) -- C:\WINDOWS\System32\drivers\keyscrambler.sys [14458] =>.QFX Software Corporation®
O58 - SDL:2016/06/02 03:43:38 A . (.AO Kaspersky Lab - Kaspersky Unified Driver.) -- C:\WINDOWS\System32\drivers\kl1.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/06/07 23:33:14 A . (.AO Kaspersky Lab - Backup Disk Filter [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klbackupdisk.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/06/15 00:23:44 A . (.AO Kaspersky Lab - Backup File Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klbackupflt.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/05/31 23:24:06 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kldisk.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/03/31 00:09:04 A . (.AO Kaspersky Lab - Early Launch Anti-Malware Filter [fre_win8_.) -- C:\WINDOWS\System32\drivers\klelam.sys [14458] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2016/06/26 15:14:40 A . (.AO Kaspersky Lab - Filter Core [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klflt.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/09/15 23:49:44 A . (.AO Kaspersky Lab - klhk [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klhk.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2017/01/19 22:12:58 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klif.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2017/01/19 22:12:49 A . (.AO Kaspersky Lab - Packet Network Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klim6.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/05/19 00:57:36 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2015/06/07 01:52:56 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/05/31 23:31:20 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klpd.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/06/07 01:31:06 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\kltap.sys [14458] =>.AnchorFree Inc®
O58 - SDL:2017/01/12 21:17:46 A . (.AO Kaspersky Lab - Anti-Rootkit Monitor.) -- C:\WINDOWS\System32\drivers\klupd_klif_arkmon.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2017/01/12 21:17:44 A . (.Authors - .) -- C:\WINDOWS\System32\drivers\klupd_klif_kimul.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2017/01/12 21:18:16 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit.) -- C:\WINDOWS\System32\drivers\klupd_klif_klark.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2017/01/12 21:17:48 A . (.AO Kaspersky Lab - Kaspersky Lab Boot Guard Driver.) -- C:\WINDOWS\System32\drivers\klupd_klif_klbg.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2017/01/12 21:17:45 A . (.AO Kaspersky Lab - Anti-Rootkit Engine.) -- C:\WINDOWS\System32\drivers\klupd_klif_mark.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/06/18 01:36:24 A . (.AO Kaspersky Lab - WFP Network Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klwfp.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2017/01/19 22:12:45 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\WINDOWS\System32\drivers\klwtp.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/06/14 17:47:52 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kneps.sys [14458] =>.Kaspersky Lab®
O58 - SDL:2016/07/16 12:41:53 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [14458] =>.Qualcomm Atheros Co., Ltd.
O58 - SDL:2016/07/16 12:41:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [14458] =>.Microsoft Windows®
O58 - SDL:2017/01/19 23:56:18 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2017/01/09 19:18:33 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MBAMChameleon.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2017/01/19 23:56:16 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2016/07/16 12:41:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/10/05 11:09:07 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [14458] =>.Microsoft Windows®
O58 - SDL:2017/01/19 23:59:57 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [14458] =>.Malwarebytes Corporation®
O58 - SDL:2014/08/21 12:35:16 A . (.BeeThink SoftWare, Inc. - BeeThink Network Blocker Driver.) -- C:\WINDOWS\System32\drivers\nblocker.sys [14458] {167EAE8B86CE85E0E7E72FA1A0C288E1}
O58 - SDL:2016/07/16 12:41:53 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:42:03 A . (.Authors - .) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [14458] =>.Microsoft Corporation
O58 - SDL:2016/03/16 16:29:18 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [14458] =>.Riverbed Technology, Inc.®
O58 - SDL:2016/07/16 12:41:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [14458] =>.Microsoft Windows®
O58 - SDL:2012/06/22 03:01:00 A . (.Corel Corporation - Px Engine Device Driver for 64-bit (x86-64).) -- C:\WINDOWS\System32\drivers\PxHlpa64.sys [14458] =>.Corel Corporation®
O58 - SDL:2015/08/28 17:03:48 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\qcusbser.sys [14458] =>.QUALCOMM Incorporated
O58 - SDL:2016/05/06 18:05:27 A . (.TOSHIBA - Generic IO & Memory Access.) -- C:\WINDOWS\System32\drivers\QIOMem.sys [14458] =>.WDKTestCert 1,130752733198717037®
O58 - SDL:2010/01/07 03:20:22 A . (.Realtek Semiconductor Corporation - Realtek RTL8187 NDIS Driver.) -- C:\WINDOWS\System32\drivers\RTL8187.sys [14458] =>.Realtek Semiconductor Corporation
O58 - SDL:2016/05/25 00:06:56 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\WINDOWS\System32\drivers\scdemu.sys [14458] =>.Power Software Limited®
O58 - SDL:2016/07/16 12:41:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/05/06 18:05:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [14458] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2016/05/06 18:05:32 A . (.Toshiba Corporation - Toshiba Hotkey Driver.) -- C:\WINDOWS\System32\drivers\Thotkey.sys [14458] =>.TOSHIBA CORPORATION®
O58 - SDL:2016/09/03 00:40:44 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth ACPI Driver.) -- C:\WINDOWS\System32\drivers\tosrfec.sys [14458] =>.TOSHIBA CORPORATION®
O58 - SDL:2016/05/06 18:05:10 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\WINDOWS\System32\drivers\TVALZ_O.SYS [14458] =>.TOSHIBA CORPORATION®
O58 - SDL:2016/08/02 23:45:46 N . (.USBPcap - USBPcap Driver.) -- C:\WINDOWS\System32\drivers\USBPcap.sys [14458] =>.Wireshark Foundation, Inc.®
O58 - SDL:2016/09/30 01:12:02 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/11/11 23:16:40 A . (.VMware, Inc. - VMware VMware Input Filter and Injection Dr.) -- C:\WINDOWS\System32\drivers\vmkbd.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/11/11 23:05:06 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/11/11 23:05:08 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/11/11 23:05:08 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/11/11 23:05:08 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/09/06 18:48:58 A . (.VMware, Inc. - VMware USB driver.) -- C:\WINDOWS\System32\drivers\vmusb.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/11/11 23:16:40 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [14458] =>.VMware, Inc.®
O58 - SDL:2015/12/30 22:28:45 A . (.Eugene V. Muzychenko - Kernel-mode WDM driver.) -- C:\WINDOWS\System32\drivers\vrtaucbl.sys [14458] =>.Muzychenko Evgenii Viktorovich®
O58 - SDL:2016/07/16 12:41:53 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/09/30 01:12:02 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\WINDOWS\System32\drivers\vsock.sys [14458] =>.VMware, Inc.®
O58 - SDL:2016/07/16 12:41:53 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [14458] =>.Microsoft Windows®
O58 - SDL:2016/07/16 12:41:53 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [14458] =>.Microsoft Windows®
O58 - SDL:2013/09/30 15:26:50 A . (.Authors - .) -- C:\WINDOWS\System32\pwdrvio.sys [14458] =>.MiniTool Solution Ltd®
O58 - SDL:2013/09/30 15:26:48 A . (.Authors - .) -- C:\WINDOWS\System32\pwdspio.sys [14458] =>.MiniTool Solution Ltd®

---\\ Last modified or created user files (2) - 51s
O61 - LFC: 2017/01/20 11:51:45 A . (..) -- C:\Users\THEGIVE\AppData\Local\TechSmith\SnagIt\Tray.bin [168]
O61 - LFC: 2017/01/17 00:58:47 A . (.BitTorrent Inc..) -- C:\Users\THEGIVE\AppData\Roaming\uTorrent\updates\3.4.9_43085\utorrentie.exe [390144]

---\\ File Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Start Menu Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Search Browser Infection (2) - 7s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Search Svchost Services (46) - 3s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\WINDOWS\System32\gpsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\WINDOWS\System32\ikeext.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\System32\iphlpsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\WINDOWS\system32\seclogon.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\WINDOWS\System32\appinfo.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\WINDOWS\system32\iscsiexe.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\WINDOWS\System32\eapsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\WINDOWS\system32\schedsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\WINDOWS\System32\wercplsupport.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\WINDOWS\system32\themeservice.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\WINDOWS\System32\lfsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Infrared Monitor.) -- C:\WINDOWS\System32\irmon.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\System32\sens.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\WINDOWS\System32\ipnathlp.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\system32\wuaueng.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\WINDOWS\System32\qmgr.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) -- C:\WINDOWS\system32\WpnService.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\WINDOWS\System32\bdesvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\WINDOWS\System32\ncasvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Flight Settings.) -- C:\WINDOWS\system32\flightsettings.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\WINDOWS\system32\wlidsvc.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [14458] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\WINDOWS\System32\NetSetupSvc.dll [14458] =>.Microsoft Corporation

---\\ Firewall Active Exception List (1) - 1s
O87 - FAEL: "{2D2E868B-2AD9-439E-9DCC-C71BBFD64D94}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acrylic DNS Proxy\AcrylicService.exe

---\\ Additional Scan (O88) (2) - 2s
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} =>.Superfluous.Orphan
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814} =>.Superfluous.Orphan

---\\ Summary of the elements found (1) - 0s
~ No malicious or unnecessary items found.

~ Unselected Options:
~ End of the scan, 79643 items in 07mn19s (1674)(0)

Publicité


Signaler le contenu de ce document

Publicité