cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.12.24.220 Par Nicolas Coolman (2017/12/24)
~ Démarré par BOB (Administrator) (2017/12/27 13:17:21)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\BOB\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\BOB\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ Navigateurs Internet (2) - 0s
~ MFIE: Opera 47.0.2631.80
~ MSIE: Internet Explorer v11.0.9600.18638

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels d'optimisation (1) - 2s
~ CCleaner v5.22 (Optimize)

---\\ Surveillance de Logiciels (2) - 2s
~ Adobe Flash Player 25 NPAPI (Surveillance)
~ Adobe Reader XI MUI (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4109.256 MB (15% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 137 GB (29%) free of 463 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: SWAGCOMPUTER9
~ User Name: BOB
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 137 GB free of 463 GB (System)
~ Drive Y: has 4 GB free of 13 GB

---\\ Etat du Centre de Sécurité Windows (12) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] AutoConfigUrl: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (26) - 14s
[MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 29/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.1C5E7DFE2DF454E1C04C8A6B0CCF8297] - 25/03/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [3241472] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 01/07/2013 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 01/07/2013 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 09/10/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9B38580063D281A99E68EF5813022A5F] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [106496] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.2EB36DF5E373FCD1783F941A85803F9F] - 08/03/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation
[MD5.E47D571FEC2C76E867935109AB2A770C] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262144] =>.Microsoft Corporation
[MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 11/01/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.DF8126BD41180351A093A3AD2FC8903B] - 01/07/2013 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [296320] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (40) - 64s
O23 - Service: acbfa4650af99dfd75de9e6b9233a85d (acbfa4650af99dfd75de9e6b9233a85d) . (.Copyright (C) 2014 - .) - C:\Program Files\acbfa4650af99dfd75de9e6b9233a85d\dd77f671f66a11b98a5bdf4365a3fa00.exe =>PUP.Optional.Wajam
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: Apple Notifications Service (AppleNotificationsSrv) . (...) - C:\ProgramData\Software\Apple\Apps\Notification.dll
O23 - Service: Background Logic Handler (backlh) . (.Copyright © 2016 - ExtManager.) - C:\ProgramData\Logic Cramble\set.exe =>PUP.Optional.LogicHandler
O23 - Service: (BIT) . (.TODO: <公司名> - TODO: <文件说明>.) - C:\ProgramData\BIT\BIT.dll =>.SUP.Elex
O23 - Service: CSHMDR (CSHMDR) . (.IntertSect Alliance Pty Ltd - CSHMDR Service.) - C:\Users\BOB\AppData\Local\CSHMDR\Snare.dll =>.SUP.Elex
O23 - Service: Dell Data Vault Service API (DDVCollectorSvcApi) . (.Dell Inc. - Dell Data Vault Data Collector Service API.) - C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe =>.Dell Inc®
O23 - Service: Dell Data Vault Collector (DDVDataCollector) . (.Dell Inc. - Dell Data Vault Data Collector Service.) - C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe =>.Dell Inc®
O23 - Service: Dell Data Vault Processor (DDVRulesProcessor) . (.Dell Inc. - Dell Data Vault Rules Processor.) - C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe =>.Dell Inc®
O23 - Service: Dell Foundation Services (Dell Foundation Services) . (.Dell - DFS.Agent.WinService.) - C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe =>.Dell Inc®
O23 - Service: Dell Data Vault (DellDataVault) . (.Dell Inc. - Dell Data Vault Service.) - C:\Program Files\Dell\DellDataVault\DellDataVault.exe =>.Techporch Incorporated®
O23 - Service: Dell Digital Delivery Service (DellDigitalDelivery) . (.Dell Products, LP. - Dell Digital Delivery Windows Service.) - c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe =>.Dell Inc.®
O23 - Service: Dell Update Service (DellUpdate) . (.Dell Inc. - Dell Update Windows Service.) - C:\Program Files (x86)\Dell Update\DellUpService.exe =>.Dell Inc®
O23 - Service: SCP DS3 Service (Ds3Service) . (...) - C:\Users\BOB\Desktop\MANETTE PS3 SUR PC\ScpServer\bin\ScpService.exe (.not file.)
O23 - Service: Update Service(FirefoxU) (FirefoxU) . (.Copyright (C) 2017 - .) - C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe =>Adware.Mutabaha
O23 - Service: glory (glory) . (.glory - glory Service.) - C:\Users\BOB\AppData\Local\glory\glory.dll =>.SUP.Elex
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology®
O23 - Service: (Installer) . (.Copyright © 2017 - DisplayService.) - C:\Users\BOB\AppData\Local\Temp\ds93_l\DisplayService.exe
O23 - Service: Service Installer TrueKey (InstallerService) . (...) - C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe (.not file.)
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
O23 - Service: YAC Service (iSafeService) . (.Elex do Brasil Participações Ltda - iSafeSvc.) - C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe =>.SUP.Elex
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: (Kitty) . (.word - word.) - C:\Users\BOB\AppData\Local\Kitty\Kitty.dll =>.SUP.Elex
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
O23 - Service: NetUtils2016srv (NetUtils2016srv) . (...) - C:\Windows\System32\NetUtils2016.exe (.not file.) =>.SUP.StartGo123
O23 - Service: PG Manager (pgt_svc) . (.Gold Click Ltd - PG Control Center.) - C:\Program Files (x86)\ProxyGate\MainService.exe =>.SUP.ProxyGate
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
O23 - Service: SoftThinks Agent Service (SftService) . (.SoftThinks SAS - SoftThinks Agent Service.) - C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe =>.Dell Inc.®
O23 - Service: Skype Updater (SkypeUpdate) . (...) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: Dell SupportAssist Agent (SupportAssistAgent) . (.Dell Inc. - Service.) - C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe =>.Dell Inc.®
O23 - Service: TMCheckVersion (TMCheckVersion) . (...) - C:\Windows\SysWOW64\TMhardware.dll =>.SUP.SuspiciousCloud
O23 - Service: Intel Security True Key (TrueKey) . (.McAfee, Inc. - Intel Security True Key.) - C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe =>.McAfee, Inc.®
O23 - Service: Intel Security True Key Scheduler (TrueKeyScheduler) . (.McAfee, Inc. - Intel Security True Key.) - C:\Program Files\TrueKey\McTkSchedulerService.exe =>.McAfee, Inc.®
O23 - Service: Apple Image Acquisition Service (wiasvc) . (...) - C:\ProgramData\Microsoft\Windows\Image\capCADF.tmp:ad
O23 - Service: (WindowService) . (.Copyright © 2016 - WindowService.) - C:\Users\BOB\AppData\Local\Temp\WS\WindowService.exe =>Adware.Suspect
O23 - Service: (WinSAPSvc) . (...) - C:\Users\BOB\AppData\Roaming\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (45) - 44s
SR - Auto [08/08/2017] [ 1576448] acbfa4650af99dfd75de9e6b9233a85d (acbfa4650af99dfd75de9e6b9233a85d) . (.Copyright (C) 2014.) - C:\Program Files\acbfa4650af99dfd75de9e6b9233a85d\dd77f671f66a11b98a5bdf4365a3fa00.exe =>PUP.Optional.Wajam
SR - Auto [23/09/2012] [ 65192] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [09/12/2016] [ 753240] (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [18/11/2009] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics®
SR - Auto [23/08/2017] [ 2257016] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SR - Auto [17/04/2017] [ 106496] Apple Notifications Service (AppleNotificationsSrv) . (...) - C:\ProgramData\Software\Apple\Apps\Notification.dll
SR - Auto [01/04/2017] [ 3780096] Background Logic Handler (backlh) . (.Copyright © 2016.) - C:\ProgramData\Logic Cramble\set.exe =>PUP.Optional.LogicHandler
SS - Demand [25/05/2017] [ 1530376] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.®
SR - Auto [17/05/2017] [ 1812992] (BIT) . (.TODO: <公司名>.) - C:\ProgramData\BIT\BIT.dll =>.SUP.Elex
SS - Demand [30/01/2014] [ 279024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - Software and Firmware Products®
SS - Auto [22/05/2017] [ 900096] CSHMDR (CSHMDR) . (.IntertSect Alliance Pty Ltd.) - C:\Users\BOB\AppData\Local\CSHMDR\Snare.dll =>.SUP.Elex
SR - Auto [27/07/2017] [ 208760] Dell Data Vault Service API (DDVCollectorSvcApi) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe =>.Dell Inc®
SR - Auto [27/07/2017] [ 3294584] Dell Data Vault Collector (DDVDataCollector) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe =>.Dell Inc®
SR - Auto [27/07/2017] [ 217464] Dell Data Vault Processor (DDVRulesProcessor) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe =>.Dell Inc®
SR - Auto [11/01/2017] [ 97616] Dell Foundation Services (Dell Foundation Services) . (.Dell.) - C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe =>.Dell Inc®
SS - Auto [11/03/2016] [ 2572024] Dell Data Vault (DellDataVault) . (.Dell Inc..) - C:\Program Files\Dell\DellDataVault\DellDataVault.exe =>.Techporch Incorporated®
SS - Auto [16/03/2015] [ 237448] Dell Digital Delivery Service (DellDigitalDelivery) . (.Dell Products, LP..) - c:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe =>.Dell Inc.®
SR - Auto [01/05/2017] [ 230248] Dell Update Service (DellUpdate) . (.Dell Inc..) - C:\Program Files (x86)\Dell Update\DellUpService.exe =>.Dell Inc®
SS - Demand [06/02/2017] [ 1471168] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.Disc Soft Ltd®
SR - Auto [24/05/2017] [ 116376] Update Service(FirefoxU) (FirefoxU) . (.Copyright (C) 2017.) - C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe =>Adware.Mutabaha =>Adware.Mutabaha
SS - Auto [02/06/2017] [ 809984] glory (glory) . (.glory.) - C:\Users\BOB\AppData\Local\glory\glory.dll =>.SUP.Elex
SS - Auto [01/05/2017] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [01/05/2017] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [30/07/2013] [ 14696] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology®
SS - Auto [21/04/2017] [ 8192] (Installer) . (.Copyright © 2017.) - C:\Users\BOB\AppData\Local\Temp\ds93_l\DisplayService.exe
SR - Auto [27/08/2013] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - c:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
SS - Demand [27/08/2013] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Auto [02/12/2016] [ 131024] YAC Service (iSafeService) . (.Elex do Brasil Participações Ltda.) - C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe =>.SUP.Elex
SR - Auto [09/12/2013] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [03/05/2017] [ 123904] (Kitty) . (.word.) - C:\Users\BOB\AppData\Local\Kitty\Kitty.dll =>.SUP.Elex
SR - Auto [09/12/2013] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
SS - Auto [22/02/2017] [ 2285664] PG Manager (pgt_svc) . (.Gold Click Ltd.) - C:\Program Files (x86)\ProxyGate\MainService.exe =>.SUP.ProxyGate
SR - Auto [19/06/2013] [ 246488] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
SR - Auto [23/01/2015] [ 2020240] SoftThinks Agent Service (SftService) . (.SoftThinks SAS.) - C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe =>.Dell Inc.®
SS - Auto [05/04/2017] [ 317400] Skype Updater (SkypeUpdate) . (...) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - Demand [15/12/2017] [ 1644832] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [30/11/2017] [ 41432] Dell SupportAssist Agent (SupportAssistAgent) . (.Dell Inc..) - C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe =>.Dell Inc.®
SR - Auto [09/08/2017] [ 467240] TMCheckVersion (TMCheckVersion) . (...) - C:\Windows\SysWOW64\TMhardware.dll =>.SUP.SuspiciousCloud
SS - Demand [09/08/2017] [ 242344] TMService (TMService) . (.Smart Software, Inc..) - C:\Program Files (x86)\WindowsTM\TMService.exe =>.SUP.WindowsTM
SR - Auto [05/01/2017] [ 995800] Intel Security True Key (TrueKey) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe =>.McAfee, Inc.®
SR - Auto [05/01/2017] [ 16248] Intel Security True Key Scheduler (TrueKeyScheduler) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McTkSchedulerService.exe =>.McAfee, Inc.®
SS - Demand [05/01/2017] [ 86864] TrueKeyServiceHelper (TrueKeyServiceHelper) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe =>.McAfee, Inc.®
SR - Auto [00/00/0000] [ 0] Apple Image Acquisition Service (wiasvc) . (...) - C:\ProgramData\Microsoft\Windows\Image\capCADF.tmp:ad
SR - Auto [21/04/2017] [ 8192] (WindowService) . (.Copyright © 2016.) - C:\Users\BOB\AppData\Local\Temp\WS\WindowService.exe =>Adware.Suspect
SR - Auto [17/05/2017] [ 1887232] (WinSAPSvc) . (...) - C:\Users\BOB\AppData\Roaming\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo

---\\ Tâches planifiées en automatique (Registre) (51) - 22s
O38 - TASK: {02EEAAF9-2B1F-48BA-A1CC-0782465C7E51} [64Bits][\Microsoft\Windows\Media Center\mcupdate_scheduled] - (...) -- C:\Windows\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {036CBDA7-E6EC-4E4B-B600-484ABD75AD1E} [64Bits][\{62F5E116-EF29-E68A-F8C5-7A32657465E8}] - (...) -- C:\Users\BOB\AppData\Roaming\62F5E116-EF29-E68A-F8C5-7A32657465E8\synctask.exe [1206784]
O38 - TASK: {11134E04-F925-458A-9AD1-8CED94C61AF1} [64Bits][\Y2Go\Updater\Y2GoUpdater] - (...) -- C:\Users\BOB\AppData\Local\MicrosoftUpdater\updater.exe [649184] =>PUP.Optional.Y2Go
O38 - TASK: {11C44B83-E2B2-4846-AAFA-F18F8731741C} [64Bits][\{E4A5B050-1ED3-438A-B87A-D0D3B20D13A1}] - (...) -- C:\Users\BOB\Desktop\movie-maker_12_fr_10967.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {16BC01DD-521F-4F9D-9ECE-A52F44F4F8D4} [64Bits][\AdobeAAMUpdater-1.0-SWAGCOMPUTER9-BOB] - (...) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {1A16B118-C184-42A4-89F5-0FAB8AEF96F6} [64Bits][\{3B4EB6B3-AA9D-4782-9B2E-474FB4000C38}] - (...) -- C:\Users\BOB\Desktop\forge-1.7.10-10.13.4.1558-1.7.10-installer-win.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {1D4D7D55-D103-4FCC-BD4E-973D4CF861C7} [64Bits][\{7156B350-1B5E-E8E9-33A9-259CC50E6446}] - (...) -- C:\Users\BOB\AppData\Roaming\7156B3~1\UPDATE~1.EXE (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {20C7C55B-B921-4251-B2AB-55E38A631A2E} [64Bits][\PCDoctorBackgroundMonitorTask] - (.PC-Doctor, Inc. - PC-Doctor Module.) -- C:\Program Files\Dell\SupportAssist\uaclauncher.exe [1131992] =>.PC-Doctor, Inc.
O38 - TASK: {2C6BE06D-F48A-4107-8EE1-1D0ED5E9284B} [64Bits][\Opera_helper] - (...) -- C:\Users\BOB\AppData\Roaming\OPERA_~1\OPERA_~1.EXE (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {2DC1A0E0-54F7-4D13-9F2B-E32938AD0B83} [64Bits][\Milimili] - (...) -- C:\Program Files (x86)\MIO\MIO.exe [282168] =>.SUP.Elex
O38 - TASK: {3034C1B1-BBE2-449C-BACD-CC6DE0A7C7DE} [64Bits][\Updater_Online_Application] - (.Microleaves - Online Application Updater 2.6.0 © Microle.) -- C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe [879984] =>.SUP.Microleaves
O38 - TASK: {35DB785D-482D-4467-9A36-5D59B37A3D4C} [64Bits][\Y2Go\Y2Go\Y2Go] - (...) -- C:\Users\BOB\AppData\Local\MicrosoftHelper\bin\Y2Go.exe [2330592] =>PUP.Optional.Y2Go
O38 - TASK: {4B3E37F3-8D6F-4887-9786-2E4812394150} [64Bits][\Samsung Update] - (...) -- msiexec [0]
O38 - TASK: {4FD42E0E-81D1-422A-B990-F1758B9DF5DC} [64Bits][\GEN] - (. - Genius Setup.) -- C:\Users\BOB\AppData\Local\Programs\GEN\GEN.exe [520138] =>Adware.Geniv
O38 - TASK: {528D6B07-D048-4627-89FB-CEB9F5E0B350} [64Bits][\Start Registry Reviver( SR ) for SWAGCOMPUTER9@BOB] - (...) -- C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe (.not file.) [0] (.Orphan.) =>PUP.Optional.RegistryReviver
O38 - TASK: {5558D856-3B50-484E-A2C1-D60EF682EBAD} [64Bits][\Online Application V2G1] - (.Microleaves LTD - Online.io Application.) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [555120] =>.SUP.Microleaves
O38 - TASK: {5EAD620E-1A18-4436-A027-140BD97EDED1} [64Bits][\{0DA1D8F8-2374-4747-A17F-05DBC2B617A4}] - (...) -- C:\Program Files (x86)\MagicISO\MagicISO.exe [1686528]
O38 - TASK: {66B452F4-066D-4508-BECB-985D6173FA8B} [64Bits][\Opera scheduled Autoupdate 1494348044] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe [1236568] =>.Opera Software
O38 - TASK: {6A73D90C-B17C-4761-8357-1A346F1A3327} [64Bits][\Microsoft\Windows\Media Center\mcupdate] - (...) -- C:\Windows\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {7C04BE9B-26A0-4B1F-AB81-D2091A0EF531} [64Bits][\{670C1731-557C-4B9B-86B4-0239C90EF5EB}] - (...) -- c:\program files (x86)\cansuck\application\chrome.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {7DB9448D-0558-4F17-B936-6B729C3B19BE} [64Bits][\Microsoft\Windows\Media Center\StartRecording] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {7E888423-A1C1-425D-AFE2-FF8440572C64} [64Bits][\PCDDataUploadTask] - (.PC-Doctor, Inc. - PC-Doctor Module.) -- C:\Program Files\Dell\SupportAssist\uaclauncher.exe [1131992] =>.PC-Doctor, Inc.
O38 - TASK: {8B082080-CB13-4E00-A0C2-EF7EC4337377} [64Bits][\GEN_Interval] - (. - Genius Setup.) -- C:\Users\BOB\AppData\Local\Programs\GEN\GEN.exe [520138] =>Adware.Geniv
O38 - TASK: {967F86BA-D2BA-424E-8B8A-CB8501B5F42C} [64Bits][\Start Registry Reviver Schedule] - (...) -- C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe (.not file.) [0] (.Orphan.) =>PUP.Optional.RegistryReviver
O38 - TASK: {9BEC366C-BB77-4D88-85F1-448AE2D30B6A} [64Bits][\Online Application V2G3] - (.Microleaves LTD - Online.io Application.) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [555120] =>.SUP.Microleaves
O38 - TASK: {A245E611-B014-4484-B2FF-FAA5DC337F44} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {A94D1859-77CD-4A1E-85C5-C5A723C1ECFE} [64Bits][\Dell SupportAssistAgent AnonymousRegistration] - (.Dell Inc. - SupportAssist.) -- C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssist.exe [38360] =>.Dell Inc.
O38 - TASK: {A9C8386D-8586-4276-AD90-D2465B75FBC5} [64Bits][\Start Registry Reviver for SWAGCOMPUTER9@BOB(logon)] - (...) -- C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe (.not file.) [0] (.Orphan.) =>PUP.Optional.RegistryReviver
O38 - TASK: {B48BA35B-CA79-46E2-B95D-730EE776C928} [64Bits][\PCDEventLauncherTask] - (.PC-Doctor, Inc. - PC-Doctor Module.) -- C:\Program Files\Dell\SupportAssist\sessionchecker.exe [435672] =>.PC-Doctor, Inc.
O38 - TASK: {BDC5C102-FAEE-45BC-B838-AF3EA37DBAED} [64Bits][\{AB8EBDB4-B781-4FBD-A8B5-7395E62FE4E0}] - (.Google Inc. - Google Chrome.) -- c:\program files (x86)\Fanlook\application\chrome.exe [976216] =>.Google Inc.
O38 - TASK: {C37AF641-D0CC-4E42-A79B-04CD569CB7A4} [64Bits][\{3CB7D864-382F-4AF2-A3BD-2E4FEDCD93CA}] - (...) -- C:\Users\BOB\Downloads\Grand.Theft.Auto.V-RELOADED\setup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {C44A3071-D3E3-454F-AC35-460971F1B229} [64Bits][\Suughtjerperck Client] - (.Glarysoft Ltd - Glary Utilities AutoUpdate.) -- C:\Program Files (x86)\Coicoph\xpruoent.exe [1023272] =>.Glarysoft Ltd
O38 - TASK: {D0781E34-E281-4C85-BC0C-2C2F84326204} [64Bits][\{84E47FA8-334F-C803-FD3B-77D89DE2A78C}] - (...) -- C:\ProgramData\{61FDB315-D656-04BE-A43B-46335E5B6A4E}\0F1F7910-B8B4-CEBB-4AE3-D5CBA8CC3176.exe [2165248]
O38 - TASK: {D0B8AB3E-4104-4A6B-A352-C5CFDD62D755} [64Bits][\SystemToolsDailyTest] - (.PC-Doctor, Inc. - PC-Doctor Module.) -- C:\Program Files\Dell\SupportAssist\uaclauncher.exe [1131992] =>.PC-Doctor, Inc.
O38 - TASK: {D135AF60-60AA-4E16-B09B-8F182DC58A58} [64Bits][\wmiadap] - (...) -- C:\ProgramData\502t295t1A33\502t295t1A33.dll (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {D3C7F44B-2033-43A6-BC46-85AAEE580A3F} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {D49C3B51-0502-4534-8E01-F7D63431841D} [64Bits][\Rerqit] - (...) -- msiexec [0]
O38 - TASK: {D551E98C-2427-4B18-BA51-48107A5D78B2} [64Bits][\Online Application V2G2] - (.Microleaves LTD - Online.io Application.) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [555120] =>.SUP.Microleaves
O38 - TASK: {DA12D9E3-8412-4715-ADAD-3FFFA96E451A} [64Bits][\{78936311-0D14-7460-6062-6A5494772FF1}] - (...) -- C:\Program Files (x86)\Common Files\789363110d14746060626a5494772ff1\syncversion.exe [655360]
O38 - TASK: {DF71AF34-1E5E-44CB-A792-6CF5442F838E} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6868696] =>.Piriform Ltd
O38 - TASK: {E65544A2-A48A-4C72-AB47-A03DDFB820BC} [64Bits][\Wufospromigh Core] - (.Glarysoft Ltd - Glary Utilities AutoUpdate.) -- C:\Program Files (x86)\Mehition\pilph.exe [1026920] =>.Glarysoft Ltd
O38 - TASK: {E6DFBF61-DA76-4B5E-863C-F2E9C1F5A144} [64Bits][\Microsoft\Windows\Media Center\VCore] - (...) -- C:\ProgramData\vCore\VCore.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {ED083230-C409-43CE-ACED-89FBC20A42C7} [64Bits][\{51ECE177-9CF1-4A58-B441-880D96942A3A}] - (.Rockstar Games - Setup Launcher.) -- C:\Program Files (x86)\InstallShield Installation Information\{A724605D-B399-4304-B8C7-33B3EF7D4677}\setup.exe [331776] =>.Rockstar Games
O38 - TASK: {EDCEDAE7-8066-4D07-A1D5-825749187B88} [64Bits][\Start Registry Reviver Update] - (...) -- C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe (.not file.) [0] (.Orphan.) =>PUP.Optional.RegistryReviver
O38 - TASK: {EE7366DC-E1D3-485E-AC39-3A781EE4A38B} [64Bits][\Start Registry Reviver( SR ) for SWAGCOMPUTER9@BOB at logon] - (...) -- C:\Program Files\ReviverSoft\Registry Reviver\RegistryReviver.exe (.not file.) [0] (.Orphan.) =>PUP.Optional.RegistryReviver
O38 - TASK: {EE8E7F52-49F0-4FAA-BA5E-24D86EAD856D} [64Bits][\Dell SupportAssistAgent AutoUpdate] - (.Dell Inc. - SupportAssist.) -- C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssist.exe [38360] =>.Dell Inc.
O38 - TASK: {FBCFA66E-A741-48DF-9A5D-F4558229D950} [64Bits][\System\SystemCheck] - (...) -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Helper.exe [3184128] =>Trojan.Agent
O38 - TASK: {FBEE5329-D659-4DEF-9100-2C6385303DB0} [64Bits][\Universal\Driver Updater\Start Driver Updater оn logon] - (...) -- C:\Program Files (x86)\Universal Driver Updater\UniversalDriverUpdater.exe (.not file.) [0] (.Orphan.) =>.SUP.AdvancedPCCare
O38 - TASK: {FC0F3A17-7BBD-4551-95C8-1B9465D7091E} [64Bits][\Universal\Driver Updater\Start Driver Updater automatic scanning] - (...) -- C:\Program Files (x86)\Universal Driver Updater\UniversalDriverUpdater.exe (.not file.) [0] (.Orphan.) =>.SUP.AdvancedPCCare
O38 - TASK: {FDEF0BFF-A272-4BE5-BD58-80106F4014AD} [64Bits][\502t295t1A33] - (...) -- C:\ProgramData\502t295t1A33\502t295t1A33.dll (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {FFD0BCF8-7926-4344-A2B0-908C275D350D} [64Bits][\Microsoft\Windows\Media Center\RecordingRestart] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan

---\\ Applications lancées au démarrage du système (39) - 6s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg_PushButton] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe =>.Intel Corporation
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] . (. - .) -- C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [Chromium] . (.The Chromium Authors - Chromium.) -- c:\Users\BOB\AppData\Local\Chromium\application\chrome.exe =>.The Chromium Authors
O4 - HKCU\..\Run: [lifetv] . (...) -- C:\Users\BOB\AppData\Local\lifetv.dll =>Trojan.ProxyAgent
O4 - HKCU\..\Run: [Microsoft Windows Manager] . (...) -- C:\Users\BOB\M-505074067204976070913757760\winmgr.exe
O4 - HKCU\..\Run: [ZS] . (...) -- c:\Users\BOB\AppData\Roaming\svchost.exe =>Trojan.Agent
O4 - HKCU\..\Run: [svchost] . (...) -- C:\Users\BOB\AppData\Local\Temp\6E3.tmp.exe
O4 - HKCU\..\Run: [MSConfig] . (...) -- C:\Users\BOB\lhsmbwha.exe
O4 - HKCU\..\Run: [Chrome Updater] . (.Ijhdh sdfsdfg dfsgsdf sdfg asdfasdf sdfgasd8fyha dfg - .) -- C:\Users\BOB\AppData\Roaming\Google Chrome Updater.exe
O4 - HKCU\..\Run: [cacaoweb] . (. - .) -- C:\Users\BOB\Desktop\cacaoweb.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [EA Core] . (. - .) -- C:\Program Files (x86)\Electronic Arts\EADM\Core.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\RunOnce: [svchost] . (...) -- C:\Users\BOB\AppData\Local\Temp\6E3.tmp.exe
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe =>.Intel Corporation - Software and Firmware Products®
O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe =>.Wondershare software CO., LIMITED®
O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [Microsoft Windows Manager] . (...) -- C:\Windows\M-50505223570267092472746290450\winmgr.exe
O4 - HKLM\..\Wow6432Node\Run: [syshost32] . (...) -- C:\Windows\Installer\{E8E34052-3F7B-C307-7D78-8F685A841457}\syshost.exe
O4 - HKLM\..\Wow6432Node\Run: [Windows Security Manager] . (...) -- C:\Users\BOB\AppData\Roaming\Win32\wsmcs.exe
O4 - HKLM\..\Wow6432Node\RunOnce: [Rosanoleba] . (...) -- C:\Program Files (x86)\Common Files\789363110d14746060626a5494772ff1\Hesulunagu.dat
O4 - HKLM\..\Wow6432Node\RunOnce: [Bufagok] . (...) -- C:\Users\BOB\AppData\Roaming\62F5E116-EF29-E68A-F8C5-7A32657465E8\Nosemep.dat
O4 - HKLM\..\Wow6432Node\RunOnce: [Hacebulaka] . (...) -- C:\Users\BOB\AppData\Local\319ef92251a8e9ae\Codafeno.dat
O4 - HKLM\..\policies\Explorer\Run: [Windows Security Manager] . (...) -- C:\Users\BOB\AppData\Roaming\Win32\wsmcs.exe
O4 - HKCU\..\policies\Explorer\Run: [Drivers] . (. - .) -- C:\Users\BOB\AppData\Roaming\Microsoft\srvuwser\veucsubg.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [Chromium] . (.The Chromium Authors - Chromium.) -- c:\Users\BOB\AppData\Local\Chromium\application\chrome.exe =>.The Chromium Authors
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [lifetv] . (...) -- C:\Users\BOB\AppData\Local\lifetv.dll =>Trojan.ProxyAgent
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [Microsoft Windows Manager] . (...) -- C:\Users\BOB\M-505074067204976070913757760\winmgr.exe
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [ZS] . (...) -- c:\Users\BOB\AppData\Roaming\svchost.exe =>Trojan.Agent
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [svchost] . (...) -- C:\Users\BOB\AppData\Local\Temp\6E3.tmp.exe
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [MSConfig] . (...) -- C:\Users\BOB\lhsmbwha.exe
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [Chrome Updater] . (.Ijhdh sdfsdfg dfsgsdf sdfg asdfasdf sdfgasd8fyha dfg - .) -- C:\Users\BOB\AppData\Roaming\Google Chrome Updater.exe
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [cacaoweb] . (. - .) -- C:\Users\BOB\Desktop\cacaoweb.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\Run: [EA Core] . (. - .) -- C:\Program Files (x86)\Electronic Arts\EADM\Core.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-4197031219-1917498957-2016370213-1000\..\RunOnce: [svchost] . (...) -- C:\Users\BOB\AppData\Local\Temp\6E3.tmp.exe

---\\ Processus lancés (77) - 24s
[MD5.6FEA419122DCFABD79A17FC6C9FFB0A6] - (.Elex do Brasil Participações Ltda - iSafeSvc.) -- C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc.exe [131024] [PID.508] =>.SUP.Elex
[MD5.ED1FF139AFD82CB4500B6511C05DE5E1] - (.Elex do Brasil Participações Ltda - iSafeSvc2.) -- C:\Program Files (x86)\Elex-tech\YAC\iSafeSvc2.exe [131024] [PID.812] =>.SUP.Elex
[MD5.DDF3EFB4AD226C61D0ADA6E779E3D968] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488] [PID.1336] =>.Realtek Semiconductor Corp®
[MD5.C9C552CE10985B889DC476F6C015F85D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.1368] =>.Realtek Semiconductor Corp®
[MD5.C9C552CE10985B889DC476F6C015F85D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.1376] =>.Realtek Semiconductor Corp®
[MD5.DC8BB111E29C846CA3420055BD17BB9C] - (.Copyright (C) 2014 - .) -- C:\Program Files\acbfa4650af99dfd75de9e6b9233a85d\dd77f671f66a11b98a5bdf4365a3fa00.exe [1576448] [PID.1812] =>PUP.Optional.Wajam
[MD5.B1EA9681502EE57F87DB71D726288A5B] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192] [PID.1948] =>.Adobe Systems, Incorporated®
[MD5.5B4D60ACCEA6918DBBB8C9FD4ADBDD29] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [753240] [PID.1424] =>.Adobe Systems Incorporated®
[MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.1648] =>.Andrea Electronics®
[MD5.0677F5ECD4F801403C428BBAE1286379] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016] [PID.1764] =>.Adobe Systems Incorporated®
[MD5.09A30D97F3FCB14F092477469E516C2A] - (.Copyright © 2016 - ExtManager.) -- C:\ProgramData\Logic Cramble\set.exe [3780096] [PID.2036]
[MD5.246C1FD08F967CABA7F9C38C1E925DFD] - (...) -- C:\Users\BOB\AppData\Local\MicrosoftHelper\bin\Y2Go.exe [2330592] [PID.2584] =>PUP.Optional.Y2Go
[MD5.839188F23D247681E2E6E84915B4AC56] - (...) -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Helper.exe [3184128] [PID.2704] =>Trojan.Agent
[MD5.6C35E3B8E814F9A03D05DD5B874E8350] - (.Elex do Brasil Participações Ltda - YACTray.) -- C:\Program Files (x86)\Elex-tech\YAC\iSafeTray.exe [373416] [PID.3060] =>.SUP.Elex
[MD5.8C4805A53A6E259942DB5B0E7DDE2DDE] - (...) -- C:\Users\BOB\AppData\Local\MicrosoftHelper\bin\pt.exe [287712] [PID.780] =>PUP.Optional.Y2Go
[MD5.6493F607C63B6715730B1B75FA6BFAA5] - (...) -- C:\Users\BOB\AppData\Local\MicrosoftHelper\bin\UrlHandler.exe [346592] [PID.2836] =>PUP.Optional.Y2Go
[MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- c:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.3484] =>.Intel(R) Corporation
[MD5.D6F9E3A60884DB1222A014CD180E8B92] - (...) -- C:\Windows\SysWOW64\NetUtils2016.exe [470592] [PID.3540] =>.SUP.HDWallPaper
[MD5.B6A784DF9C081A9D5829C78E33BDCE42] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [995800] [PID.3916] =>.McAfee, Inc.®
[MD5.26EBE10498108E9EA746EF804AF4C680] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McTkSchedulerService.exe [16248] [PID.4000] =>.McAfee, Inc.®
[MD5.F28C8C194CA17E451B08C315C72E258B] - (.Copyright © 2016 - WindowService.) -- C:\Users\BOB\AppData\Local\Temp\WS\WindowService.exe [8192] [PID.4088]
[MD5.357CABBF155AFD1D3926E62539D2A3A7] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480] [PID.2900] =>.Microsoft Corporation®
[MD5.D790CAFEFF0291D0AF8C76F5A1EE2E4E] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223488] [PID.608] =>.Microsoft Corporation®
[MD5.2166853BF49ECB1870385736CFA0068C] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7194840] [PID.5108] =>.Realtek Semiconductor Corp®
[MD5.C9C552CE10985B889DC476F6C015F85D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.3912] =>.Realtek Semiconductor Corp®
[MD5.C9C552CE10985B889DC476F6C015F85D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.5112] =>.Realtek Semiconductor Corp®
[MD5.00000000000000000000000000000000] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [0] [PID.1504] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [0] [PID.4888] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [0] [PID.3672] =>.Intel Corporation
[MD5.50E81F5F143F4ABBCCC4BDF92D70C383] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848] [PID.5360] =>.Intel Corporation - Software and Firmware Products®
[MD5.C6BDF0F7C7354CE2073BAB2C8B1BE845] - (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744] [PID.5472] =>.Wondershare software CO., LIMITED®
[MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.2880] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.FA43794F2096469B326B14E9215D4888] - (...) -- C:\Windows\M-50505223570267092472746290450\winmgr.exe [86016] [PID.5156]
[MD5.172D5F1FB83C1084FE706681D84BD389] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286056] [PID.3716] =>.Intel Corporation - Intel® Rapid Storage Technology®
[MD5.EB42E818A401740986483147C842AFFC] - (.Dell Inc. - Dell Data Vault Rules Processor.) -- C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [217464] [PID.2092] =>.Dell Inc®
[MD5.802FC4E1B3E24185C731C81CD629F41D] - (.Dell - DFS.Agent.WinService.) -- C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616] [PID.3952] =>.Dell Inc®
[MD5.CAE8AEB8CABCC87D87763B7B97C24532] - (.Dell Inc. - Dell Update Windows Service.) -- C:\Program Files (x86)\Dell Update\DellUpService.exe [230248] [PID.8772] =>.Dell Inc®
[MD5.E42B08A9D72BFDBD01138CEA2E7DB51A] - (.Copyright (C) 2017 - .) -- C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe [116376] [PID.5372] =>Adware.Mutabaha
[MD5.ECFFBCCBE9691EACE3B60EEEC970E9E5] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [14696] [PID.9360] =>.Intel Corporation - Intel® Rapid Storage Technology®
[MD5.E2952760B05A256FB1412D20A41C89C1] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.9500] =>.Intel Corporation - Software and Firmware Products®
[MD5.68960DD826166C69BE15F28942573EC3] - (.SoftThinks SAS - SoftThinks Agent Service.) -- C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [2020240] [PID.7504] =>.Dell Inc.®
[MD5.95885FF0F016A6D2D9F2E1797FF83ED3] - (.Dell Inc. - Service.) -- C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [41432] [PID.10088] =>.Dell Inc.®
[MD5.2108F9CE0C447B4935BF5976C7A8AD27] - (.Dell Inc. - Dell Data Vault Data Collector Service.) -- C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3294584] [PID.11116] =>.Dell Inc®
[MD5.5EF7C24A40B15B4931F44461B41B3BDC] - (.Dell Inc. - Dell Data Vault Data Collector Service API.) -- C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [208760] [PID.11164] =>.Dell Inc®
[MD5.F26F5E00F9D1104871A6FDF4D0061BA3] - (.Microleaves LTD - Online.io Application.) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [555120] [PID.11832] =>.SUP.Microleaves
[MD5.373026A3BD7C6666C83764835B8448A4] - (.Dell - DFS.Common.Agent.) -- C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe [467280] [PID.14604] =>.Dell Inc®
[MD5.1EE9093A151777146FA0A470335FB5B7] - (.SoftThinks - Dell - Dell Backup And Recovery Update Launcher.) -- C:\Program Files (x86)\Dell Backup and Recovery\COMPONENTS\DBRUPDATE\DBRUpd.exe [514960] [PID.15448] =>.Dell Inc.®
[MD5.2B6235FD8AEE5821BAFF47FF0B39B818] - (.SoftThinks - Dell - Dell Backup And Recovery Toaster.) -- C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe [4191632] [PID.15464] =>.Dell Inc.®
[MD5.AE17D5E86A1891500CE02BA659FFD018] - (.SoftThinks - Dell - Dell Backup And Recovery Sync.) -- C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRSync.exe [508304] [PID.2724] =>.Dell Inc.®
[MD5.839188F23D247681E2E6E84915B4AC56] - (...) -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Helper.exe [3184128] [PID.13576] =>Trojan.Agent
[MD5.F26F5E00F9D1104871A6FDF4D0061BA3] - (.Microleaves LTD - Online.io Application.) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [555120] [PID.21052] =>.SUP.Microleaves
[MD5.839188F23D247681E2E6E84915B4AC56] - (...) -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Helper.exe [3184128] [PID.21340] =>Trojan.Agent
[MD5.F26F5E00F9D1104871A6FDF4D0061BA3] - (.Microleaves LTD - Online.io Application.) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [555120] [PID.2744] =>.SUP.Microleaves
[MD5.32C3A90E860C27DD5525F5455D471B23] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [3111712] [PID.22624] =>.Valve®
[MD5.F71CA689063E1A15A44268A6B42E3164] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [1644832] [PID.11004] =>.Valve®
[MD5.386EF09EBDFB4D9E0DABAC5C186BAD70] - (. - Genius Setup.) -- C:\Users\BOB\AppData\Local\Programs\GEN\GEN.exe [520138] [PID.4616]
[MD5.90FC739C83CD19766ACB562C66A7D0E2] - (. - Setup/Uninstall.) -- C:\Users\BOB\AppData\Local\Temp\is-T3CTT.tmp\GEN.tmp [1179648] [PID.22656]
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.21228] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.22832] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.23700] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.15796] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.16372] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.8936] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.18032] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.18012] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.12740] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.12624] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.22500] =>.Google Inc®
[MD5.B79AF8D165046DC3B8B3DC781652FDCB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Eastness\Application\chrome.exe [941912] [PID.23112] =>.Google Inc®
[MD5.0C6F806E81EC1216404A52DCA2F017FB] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\BOB\Downloads\ZHPDiag3.exe [2955136] [PID.21768] =>.Nicolas Coolman
[MD5.8658F5C45D6A0F239B9A538D60201889] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3668256] [PID.23156] =>.Valve®
[MD5.8658F5C45D6A0F239B9A538D60201889] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3668256] [PID.21724] =>.Valve®
[MD5.8658F5C45D6A0F239B9A538D60201889] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3668256] [PID.24228] =>.Valve®
[MD5.8658F5C45D6A0F239B9A538D60201889] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3668256] [PID.12856] =>.Valve®
[MD5.8658F5C45D6A0F239B9A538D60201889] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3668256] [PID.21128] =>.Valve®
[MD5.839188F23D247681E2E6E84915B4AC56] - (...) -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Helper.exe [3184128] [PID.9028] =>Trojan.Agent
[MD5.839188F23D247681E2E6E84915B4AC56] - (...) -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Helper.exe [3184128] [PID.23068] =>Trojan.Agent

---\\ Google Chrome, Démarrage,Recherche,Extensions (13) - 3s
G2 - GCE: Preference [BOB][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [BOB][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [BOB][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [BOB][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [BOB][User Data\Default] [elmkjjfkkchohaaoljobaffjeedcoocj] hTab =>.SUP.BrowserExtension
G2 - GCE: Preference [BOB][User Data\Default] [fcfenmboojpjinhpgggodefccipikbpd] Bing =>.Microsoft Corporation
G2 - GCE: Preference [BOB][User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Operations GmbH & Co. KG =>.Avira Software
G2 - GCE: Preference [BOB][User Data\Default] [fngmhnnpilhplaeedifhccceomclgfbg] Tables =>Adware.CloudAtlas
G2 - GCE: Preference [BOB][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [BOB][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [BOB][User Data\Default] [pilplloabdedfmialnfchjomjmpjcoej] Search Manager =>.SUP.SearchManager
G2 - GCE: Preference [BOB][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [BOB][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 2s
P2 - EXT FILE: (...) -- C:\Users\BOB\AppData\Roaming\Mozilla\Firefox\Profiles\yJ3k3GIn.default\searchplugins\ayj9qk09.xml
P2 - EXT FILE: (...) -- C:\Users\BOB\AppData\Roaming\Mozilla\Firefox\Profiles\yJ3k3GIn.default\searchplugins\vp3vxz8c.xml
P2 - EXT: (.Avira - Segurança do navegador Avira.) -- C:\Users\BOB\AppData\Roaming\Mozilla\Firefox\Profiles\yJ3k3GIn.default\extensions\abs@avira.com =>.Avira
P2 - EXT: (.http://www.cacaoweb.org/ - cacaoweb.) -- C:\Users\BOB\AppData\Roaming\Mozilla\Firefox\Profiles\yJ3k3GIn.default\extensions\cacaoweb@cacaoweb.org =>.SUP.CacaoWeb
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll =>.Adobe Systems Incorporated

---\\ Opera, Démarrage,Recherche,Plugins (3) - 1s
B2 - EXT: [stefanvd] C:\Users\BOB\AppData\Roaming\Opera Software\Opera Stable\Extensions\ccbdoklfbpcifppcfahmmpmbkfdjjccm
B2 - EXT: [gorhill] C:\Users\BOB\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida =>.gorhill
B2 - EXT: [adblockplus] C:\Users\BOB\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp =>.adblockplus

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.ourluckysites.com/ =>Hijacker.OurLuckySites
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.18639 (winblue_ltsb.170325-0600)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer,Proxy Management (8) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback>
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8808;https=127.0.0.1:8808 =>Hijacker.Proxy
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [http://unstopaccess.com/]

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (22)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Raccourcis Global Startup (96) - 75s
O4 - GS\Desktop [Administrateur]: Adobe After Effect Cs6.lnk . (.Punsh.at.ua (Vladimir aka punsh) - Adobe After Effects CS6 Portable.) C:\Users\BOB\Desktop\Bureau\After Effect CS6\AdobeAfterEffectsPortable.exe
O4 - GS\Desktop [Administrateur]: Discord.lnk . (.GitHub - Update.) C:\Users\BOB\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.Hammer & Chisel Inc.®
O4 - GS\Desktop [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Eastness\Application\chrome.exe --disable-quic =>.Google Inc®
O4 - GS\Desktop [Administrateur]: Photoshop CS6.lnk . (.PainteR - Adobe Photoshop CS6 Pre-Release Portable.) C:\Users\BOB\Desktop\Bureau\PhotoShop CS6\AdobePhotoshopCS6Portable\PhotoshopCS6.exe =>.PainteR
O4 - GS\Desktop [Administrateur]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\BOB\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) C:\Users\BOB\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Administrateur]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [Administrateur]: DS3 Tool.lnk . (...) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Eastness\Application\chrome.exe --disable-quic =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: HxD.lnk . (...) C:\Program Files (x86)\HxD\HxD.exe
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: Montage Photo 2017.lnk . (...) C:\MontagePhoto\MontagePhoto.exe
O4 - GS\sendTo [Administrateur]: AVS Mobile Uploader.lnk . (...) C:\Program Files (x86)\Common Files\AVSMedia\MobileUploader\AVSMobileUploader.exe
O4 - GS\sendTo [Administrateur]: AVS Video Burner.lnk . (...) C:\Program Files (x86)\Common Files\AVSMedia\BurnerService\AVSVideoBurner.exe
O4 - GS\sendTo [Administrateur]: AVS Video Uploader.lnk . (...) C:\Program Files (x86)\Common Files\AVSMedia\VideoUploader\AVSVideoUploader.exe
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) C:\Users\BOB\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc®
O4 - GS\TaskBar [Administrateur]: FileZilla.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Tim Kosse®
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Eastness\Application\chrome.exe --disable-quic =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Minecraft.lnk . (.Mojang - Minecraft launcher.) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe =>.Mojang AB®
O4 - GS\TaskBar [Administrateur]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [BOB]: Adobe After Effect Cs6.lnk . (.Punsh.at.ua (Vladimir aka punsh) - Adobe After Effects CS6 Portable.) C:\Users\BOB\Desktop\Bureau\After Effect CS6\AdobeAfterEffectsPortable.exe
O4 - GS\Desktop [BOB]: Discord.lnk . (.GitHub - Update.) C:\Users\BOB\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.Hammer & Chisel Inc.®
O4 - GS\Desktop [BOB]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Eastness\Application\chrome.exe --disable-quic =>.Google Inc®
O4 - GS\Desktop [BOB]: Photoshop CS6.lnk . (.PainteR - Adobe Photoshop CS6 Pre-Release Portable.) C:\Users\BOB\Desktop\Bureau\PhotoShop CS6\AdobePhotoshopCS6Portable\PhotoshopCS6.exe =>.PainteR
O4 - GS\Desktop [BOB]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\Desktop [BOB]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\BOB\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [BOB]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) C:\Users\BOB\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [BOB]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [BOB]: DS3 Tool.lnk . (...) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
O4 - GS\Quicklaunch [BOB]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Eastness\Application\chrome.exe --disable-quic =>.Google Inc®
O4 - GS\Quicklaunch [BOB]: HxD.lnk . (...) C:\Program Files (x86)\HxD\HxD.exe
O4 - GS\Quicklaunch [BOB]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [BOB]: Montage Photo 2017.lnk . (...) C:\MontagePhoto\MontagePhoto.exe
O4 - GS\sendTo [BOB]: AVS Mobile Uploader.lnk . (...) C:\Program Files (x86)\Common Files\AVSMedia\MobileUploader\AVSMobileUploader.exe
O4 - GS\sendTo [BOB]: AVS Video Burner.lnk . (...) C:\Program Files (x86)\Common Files\AVSMedia\BurnerService\AVSVideoBurner.exe
O4 - GS\sendTo [BOB]: AVS Video Uploader.lnk . (...) C:\Program Files (x86)\Common Files\AVSMedia\VideoUploader\AVSVideoUploader.exe
O4 - GS\sendTo [BOB]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [BOB]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [BOB]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) C:\Users\BOB\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc®
O4 - GS\TaskBar [BOB]: FileZilla.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Tim Kosse®
O4 - GS\TaskBar [BOB]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Eastness\Application\chrome.exe --disable-quic =>.Google Inc®
O4 - GS\TaskBar [BOB]: Minecraft.lnk . (.Mojang - Minecraft launcher.) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe =>.Mojang AB®
O4 - GS\TaskBar [BOB]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\TaskBar [BOB]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\Programs [BOB]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [BOB]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Minecraft.lnk . (.Mojang - Minecraft launcher.) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe =>.Mojang AB®
O4 - GS\CommonDesktop [Public]: OBS Studio.lnk . (...) C:\Program Files (x86)\obs-studio\bin\64bit\obs64.exe =>.Open Source Developer, Hugh Bailey®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\Programs [Public]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Reader XI.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-AB0000000001}\SC_Reader.ico =>.Adobe Inc.
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Fanlook\Application\chrome.exe --disable-quic =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: HowToRemove.html.lnk . (...) C:\Users\BOB\AppData\Local\{9D7FAB23-B9D7-C79B-D44F-E273F0271EEB}\HowToRemove\HowToRemove.html
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Office.lnk . (.Microsoft Corporation - Microsoft Office.) C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE /OEM =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Firefox\Firefox.exe =>.Mengmeng Wang®
O4 - GS\ProgramsCommon [Public]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\ProgramsCommon [Public]: paint.net.lnk . (.dotPDN LLC - .) C:\Program Files (x86)\paint.net\PaintDotNet.exe =>.dotPDN LLC
O4 - GS\ProgramsCommon [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: True Key.lnk . (.Intel Security - True Key™.) C:\Program Files\Intel Security\True Key\application\truekey.exe --open-source=startmenu =>.McAfee, Inc.®
O4 - GS\ProgramsCommon [Public]: Visual Studio 2017.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2017.) C:\Program Files (x86)\Microsoft Visual Studio\2017\Community\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Movie Maker 2.6.lnk . (.Microsoft Corporation - Windows Movie Maker.) C:\Windows\Installer\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}\MOVIEMK.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.176 82.163.142.178 =>Adware.DNSUnlocker
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{0A3C9A52-E512-458C-9E8C-E4EBDCD6D9AE}: NameServer = 82.163.143.176 82.163.142.178 =>Adware.DNSUnlocker
O17 - HKLM\System\CCS\Services\Tcpip\..\{0A3C9A52-E512-458C-9E8C-E4EBDCD6D9AE}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress

---\\ Protocole additionnel (20) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Logiciels installés (103) - 63s
O42 - Logiciel: 7-Zip 16.04 - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 17 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 25 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader XI MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AB0000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: AlphaGo - (.AlphaGo.) [HKLM][64Bits] -- {B7CB7055-EFAE-4CD2-928A-15DB5F4FF7C7} =>.AlphaGo
O42 - Logiciel: AlphaGo - (.Default Company Name.) [HKLM][64Bits] -- {118B6258-BF13-47C9-8D46-B2A349196B5D}
O42 - Logiciel: AlphaGo - (.Default Company Name.) [HKLM][64Bits] -- {2C652C0A-EC71-4797-8077-F67649177AB0}
O42 - Logiciel: AlphaGo - (.Default Company Name.) [HKLM][64Bits] -- {51639FCA-678F-4D71-8044-E16E3D49187F}
O42 - Logiciel: AlphaGo - (.Default Company Name.) [HKLM][64Bits] -- {97D2FBF4-72CF-4DD6-8DA8-26710BC7BE71}
O42 - Logiciel: AlphaGo - (.Default Company Name.) [HKLM][64Bits] -- {B20B3A3C-91E3-4326-8A0F-B3C012574F8C}
O42 - Logiciel: Assassin's Creed - (.Ubisoft.) [HKLM][64Bits] -- {8CFA9151-6404-409A-AF22-4632D04582FD} =>.UBISOFT ENTERTAINMENT INC.®
O42 - Logiciel: Assassins Creed III - (.R.G. Revenants.) [HKLM][64Bits] -- Assassins Creed III_is1
O42 - Logiciel: Assassin's Creed(R) III v1.03 - (.Ubisoft.) [HKLM][64Bits] -- {9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF} =>.Ubisoft
O42 - Logiciel: Bing Search Engine - (.Unknown.) [HKLM][64Bits] -- {CF6B27AB-9FEB-F62B-2E6B-86ABFEEB552B}
O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent =>.BitTorrent Inc®
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks =>.BlueStack Systems, Inc.
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: CloudExtender - (.AltoCloud.) [HKCU][64Bits] -- CloudExtender =>Trojan.ProxyAgent
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd®
O42 - Logiciel: Dell Backup and Recovery - (.Dell Inc..) [HKLM][64Bits] -- {0ED7EE95-6A97-47AA-AD73-152C08A15B04} =>.Dell Inc.
O42 - Logiciel: Dell Data Vault - (.Dell Inc..) [HKLM][64Bits] -- {2E55EEFD-2162-4A7D-9158-EDB0305603A6} =>.Dell Inc.
O42 - Logiciel: Dell Digital Delivery - (.Dell Products, LP.) [HKLM][64Bits] -- {693A23FB-F28B-4F7A-A720-4C1263F97F43} =>.Dell Products, LP
O42 - Logiciel: Dell Edoc Viewer - (.Dell Inc.) [HKLM][64Bits] -- {8EBA8727-ADC2-477B-9D9A-1A1836BE4E05} =>.Dell Inc
O42 - Logiciel: Dell Foundation Services - (.Dell Inc..) [HKLM][64Bits] -- {BDB50421-E961-42F3-B803-6DAC6F173834} =>.Dell Inc.
O42 - Logiciel: Dell SupportAssist - (.Dell.) [HKLM][64Bits] -- PC-Doctor for Windows =>.Dell Inc.®
O42 - Logiciel: Dell SupportAssistAgent - (.Dell.) [HKLM][64Bits] -- {4015CD01-07AB-4354-9E43-E63DFAB5A6A2} =>.Dell
O42 - Logiciel: Dell Update - (.Dell Inc..) [HKLM][64Bits] -- {F91263FA-BE4D-439D-9C0A-2E7204E0E9E3} =>.Dell Inc.
O42 - Logiciel: deskapp - (.deskapp.) [HKLM][64Bits] -- {13327864-E605-423C-9A52-721CE3068FDF}
O42 - Logiciel: Dirty Bomb - (.Splash Damage.) [HKLM][64Bits] -- Steam App 333930 =>.Valve®
O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord =>.Hammer & Chisel Inc.®
O42 - Logiciel: DragonBoost - (..) [HKCU][64Bits] -- 119 =>Adware.DragonBoost
O42 - Logiciel: FileZilla Client 3.29.0 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client =>.Tim Kosse
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} =>.Microsoft Corporation
O42 - Logiciel: GlassOwnership - (..) [HKLM][64Bits] -- GlassOwnership
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Intel Security True Key - (.Intel Security.) [HKLM][64Bits] -- TrueKey =>.Intel Security
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {0B8B7B39-179F-47F8-A7AC-63D9C433A567} =>.Intel Corporation
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel® RealSense™ SDK 2014 Runtime (x64): Core - (.Intel Corporation.) [HKLM][64Bits] -- {37D41A97-6B02-4C30-8753-85107BE1D674} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7} =>.Intel Corporation
O42 - Logiciel: Java 7 Update 51 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417051FF} =>.Oracle
O42 - Logiciel: Java 8 Update 101 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180101F0} =>.Oracle Corporation
O42 - Logiciel: Kerbal Space Program - (.Squad.) [HKLM][64Bits] -- Steam App 220200 =>.Valve®
O42 - Logiciel: Magic ISO Maker v5.3 (build 0214) - (.Magic ISO Inc.) [HKLM][64Bits] -- Magic ISO Maker v5.3 (build 0214) =>.Magic ISO Inc
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {09466F30-D788-4C52-9270-2BC92D3B4804} =>.MAGIX Software GmbH
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{09466F30-D788-4C52-9270-2BC92D3B4804} =>.MAGIX Software GmbH®
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Games for Windows - LIVE - (.Microsoft Corporation.) [HKLM][64Bits] -- {2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {00C5F4F4-62F9-40D7-8000-AD8A9CD0C669} =>.Microsoft Corporation
O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13} =>.Microsoft Corp.
O42 - Logiciel: Minecraft - (.Mojang.) [HKLM][64Bits] -- {1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872} =>.Mojang
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT Redists - (.MAGIX Computer Products Intl. Co..) [HKLM][64Bits] -- {29F417C0-AAA4-11E6-863F-8EDAE4BED5C9} =>.MAGIX Computer Products Intl. Co.
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation
O42 - Logiciel: Note-UP - (..) [HKLM][64Bits] -- NUIns =>PUP.Optional.NoteUp
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B83FC356-B7C0-441F-8A4D-D71E088E7974} =>.NVIDIA Corporation
O42 - Logiciel: OBS Studio - (.OBS Project.) [HKLM][64Bits] -- OBS Studio =>.OBS Project
O42 - Logiciel: Online Application - (.Microleaves.) [HKLM][64Bits] -- {5266F634-7B7D-4537-BDDC-98DD6CFCBAA1} =>.SUP.Microleaves
O42 - Logiciel: Opera Stable 47.0.2631.80 - (.Opera Software.) [HKLM][64Bits] -- Opera 47.0.2631.80 =>.Opera Software AS®
O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {1F895C18-6A2F-4A9E-BBE9-246783070F37} =>.dotPDN LLC
O42 - Logiciel: Prison Break - (.Deep Silver.) [HKLM][64Bits] -- {C5A31DDC-157A-4DD7-9B5C-C692A06F61FD} {688BC3FA6133ADC23C15AE0E643BCF81} =>.Deep Silver
O42 - Logiciel: ProxyGate version 3.0.0.1180 - (.Gold Click Ltd.) [HKLM][64Bits] -- {1EC095EE-8CA3-43D6-B9F5-0C55B82ED3D7}}_is1 =>.SUP.GoldClick
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Registry Reviver - (.ReviverSoft LLC.) [HKLM][64Bits] -- Registry Reviver =>PUP.Optional.RegistryReviver
O42 - Logiciel: Reload Icons Cache 1.00 - (.Mr Blade Design's.) [HKLM][64Bits] -- Reload Icons Cache 1.00 =>.Mr Blade Design's
O42 - Logiciel: Search the Web (Yahoo) - (..) [HKLM][64Bits] -- {4428ACE8-14A8-7D68-A528-0DE875A8DE68}
O42 - Logiciel: SkinPack 7 - (.SkinPack.) [HKLM][64Bits] -- SkinPack =>.SkinPack
O42 - Logiciel: Skype™ 7.36 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: Social2Search - (.Social2Search.) [HKLM][64Bits] -- acbfa4650af99dfd75de9e6b9233a85d =>PUP.Optional.Wajam
O42 - Logiciel: Space Fighter - (.Roger Barton.) [HKLM][64Bits] -- Steam App 691540 =>.Valve®
O42 - Logiciel: Spooky's Jump Scare Mansion - (.Lag Studios.) [HKLM][64Bits] -- Steam App 356670 =>.Valve®
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: StepMania 5 - (.StepMania.) [HKLM][64Bits] -- StepMania 5 =>.StepMania
O42 - Logiciel: SwytShop version 1.0 - (.SwytShop.) [HKCU][64Bits] -- SwytShopAlgoadChrome_Pkg4_is1 =>PUP.Optional.SwytShop
O42 - Logiciel: TOXIKK - (.Reakktor Studios.) [HKLM][64Bits] -- Steam App 324810 =>.Valve®
O42 - Logiciel: Unreal Development Kit: 2015-01 - (.Epic Games, Inc..) [HKLM][64Bits] -- UDK-054920d2-5608-4ee4-ba2f-59891fb0ee23 =>.Epic Games Inc.®
O42 - Logiciel: Unreal Development Kit: 2015-01 - (.Epic Games, Inc..) [HKLM][64Bits] -- UDK-4151a0a5-47cb-4158-92b5-c72219407d1a =>.Epic Games Inc.®
O42 - Logiciel: Unreal Development Kit: 2015-01 - (.Epic Games, Inc..) [HKLM][64Bits] -- UDK-c09d8fac-d030-4f13-9d4a-414ff8e2d9a4 =>.Epic Games Inc.®
O42 - Logiciel: Update_msi - (.Default Company Name.) [HKLM][64Bits] -- {59B5A9CD-253D-4C41-A073-B387D4C9672D}
O42 - Logiciel: vs_communitymsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {A041943F-C97B-48F6-8F23-C5078F99BB3A} =>.Microsoft Corporation
O42 - Logiciel: vs_communitymsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {C30630C0-5E96-4996-99B5-EF9E89AD7EEA} =>.Microsoft Corporation
O42 - Logiciel: vs_devenvmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {581E5656-26E2-4A02-9711-48C8E4998310} =>.Microsoft Corporation
O42 - Logiciel: vs_filehandler_amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {15D591B0-7B40-4957-B6C0-EB7452B5AAB6} =>.Microsoft Corporation
O42 - Logiciel: vs_filehandler_x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {DC296244-0701-4EDE-9696-05B9C1D017B3} =>.Microsoft Corporation
O42 - Logiciel: vs_FileTracker_Singleton - (.Microsoft Corporation.) [HKLM][64Bits] -- {11230C85-1813-4BC3-9C24-E0B74B59653E} =>.Microsoft Corporation
O42 - Logiciel: vs_minshellinteropmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {9477F337-FD16-4ACA-8217-E2D7A0F92603} =>.Microsoft Corporation
O42 - Logiciel: vs_minshellmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {ACFEA151-D1BE-4114-875A-87328B6002D4} =>.Microsoft Corporation
O42 - Logiciel: vs_minshellmsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {91E8FFB6-FB21-4039-A6C8-EA973C38FB68} =>.Microsoft Corporation
O42 - Logiciel: Web Optimum - (..) [HKLM][64Bits] -- WebOptimum =>PUP.Optional.WebOptimum
O42 - Logiciel: WindowsTM - (..) [HKLM][64Bits] -- WindowsTM =>.SUP.WindowsTM
O42 - Logiciel: WindowsTM - (..) [HKLM][64Bits] -- WindowsTM
O42 - Logiciel: WinRAR 5.40 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: YAC(Yet Another Cleaner!) - (.ELEX DO BRASIL PARTICIPAÇÕES LTDA.) [HKLM][64Bits] -- iSafe =>.SUP.Elex

---\\ HKCU & HKLM Software Keys (541) - 63s
HKLM\SOFTWARE\5BF532F5FA7101FC088D0A0745D3A926 =>Adware.CrossRider
HKLM\SOFTWARE\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\amule-custom =>Adware.aMULEcustom
HKLM\SOFTWARE\Anerfersypruhety
HKLM\SOFTWARE\Anikuy
HKLM\SOFTWARE\Annerkphequs
HKLM\SOFTWARE\Aralphcojother
HKLM\SOFTWARE\Aravitphersak =>.RSA Security
HKLM\SOFTWARE\Arijose
HKLM\SOFTWARE\Arulientkjt
HKLM\SOFTWARE\Atosoent
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\AVG =>.AVG Software
HKLM\SOFTWARE\AVS4YOU =>.AVS4YOU
HKLM\SOFTWARE\BANDISOFT =>.Bandisoft
HKLM\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\BSD =>.Berkeley
HKLM\SOFTWARE\Cansuck
HKLM\SOFTWARE\Caphyon =>.Caphyon
HKLM\SOFTWARE\CDDB =>.Cddb Software
HKLM\SOFTWARE\Chivich
HKLM\SOFTWARE\Chovuph
HKLM\SOFTWARE\Chqucultgrusdom
HKLM\SOFTWARE\Chromium =>.Chromium
HKLM\SOFTWARE\Cibaghclimit
HKLM\SOFTWARE\Clocitgrikuing
HKLM\SOFTWARE\Clpyfuzay
HKLM\SOFTWARE\CLSID =>.Unknown
HKLM\SOFTWARE\Clsuty
HKLM\SOFTWARE\Clvientghideried
HKLM\SOFTWARE\Coatessoduy
HKLM\SOFTWARE\Cowertherlhight
HKLM\SOFTWARE\Cygwin =>.Cygwin
HKLM\SOFTWARE\Deep Silver =>.Deep Silver
HKLM\SOFTWARE\DeepSilver
HKLM\SOFTWARE\Dell =>.Dell
HKLM\SOFTWARE\Dell Inc. =>.Dell Inc.
HKLM\SOFTWARE\DellBackupandRecovery =>.Dell Inc.
HKLM\SOFTWARE\DigitalWave =>.DigitalWave Corporation
HKLM\SOFTWARE\Dkaingvverge
HKLM\SOFTWARE\DMA Design Ltd =>.DMA Design Ltd
HKLM\SOFTWARE\Drenertain
HKLM\SOFTWARE\Drideringjoly
HKLM\SOFTWARE\Dridetain
HKLM\SOFTWARE\Drirodom
HKLM\SOFTWARE\Dronaing
HKLM\SOFTWARE\Dunoiederpesy
HKLM\SOFTWARE\DuoDianApp =>.DuoDianApp
HKLM\SOFTWARE\Eastness
HKLM\SOFTWARE\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\Elex-tech =>.SUP.Elex
HKLM\SOFTWARE\Enterbrain =>.Enterbrain
HKLM\SOFTWARE\Fanlook
HKLM\SOFTWARE\Femaly
HKLM\SOFTWARE\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\FileZilla Client =>.Tim Kosse
HKLM\SOFTWARE\Firefox =>.Mozilla Corporation
HKLM\SOFTWARE\Fraps =>.Beepa
HKLM\SOFTWARE\Fuhelyclile
HKLM\SOFTWARE\Ghivosp
HKLM\SOFTWARE\Ghllycljerdom
HKLM\SOFTWARE\GNU =>.GNU
HKLM\SOFTWARE\GOG.com =>.GOG.com
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Grazry
HKLM\SOFTWARE\Grergeing
HKLM\SOFTWARE\Gromcultclujuied
HKLM\SOFTWARE\Grunickghidodom
HKLM\SOFTWARE\Grunuied
HKLM\SOFTWARE\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\Hvelekrasy
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\InstallShield =>.InstallShield
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Intel Security =>.Intel Security
HKLM\SOFTWARE\Irishqle
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Jecidomdrugeward
HKLM\SOFTWARE\jhdbca
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Jucupyletert
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Kiherent
HKLM\SOFTWARE\Ksasypretaent
HKLM\SOFTWARE\Kuruculthafoing
HKLM\SOFTWARE\Ladaghphemach
HKLM\SOFTWARE\Lantion
HKLM\SOFTWARE\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Magix =>.Magix
HKLM\SOFTWARE\Martin Prikryl =>.Martin Prikryl
HKLM\SOFTWARE\Maxis =>.Maxis
HKLM\SOFTWARE\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\mcafeeupdater =>.McAfee Inc.
HKLM\SOFTWARE\Mewient
HKLM\SOFTWARE\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\MicroRay =>.MicroRay
HKLM\SOFTWARE\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Mmoingtozoy
HKLM\SOFTWARE\Mojang =>.Mojang
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\msServer
HKLM\SOFTWARE\mtPlusdax =>.SUP.Linkury
HKLM\SOFTWARE\Muhach
HKLM\SOFTWARE\NCH Software =>.NCH Software
HKLM\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\Nigeghoesp
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\OBS Studio =>.OBS Studio
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\ompndb
HKLM\SOFTWARE\Opera Software =>.Opera Software
HKLM\SOFTWARE\Origin =>.Electronic Arts, Inc.
HKLM\SOFTWARE\OtherSearch =>Adware.FastSearch
HKLM\SOFTWARE\ourluckysitesSoftware =>Hijacker.OurLuckySites
HKLM\SOFTWARE\Overwolf =>.Overwolf
HKLM\SOFTWARE\Ovoghaterwe
HKLM\SOFTWARE\PC-Doctor =>.PC-Doctor Inc.
HKLM\SOFTWARE\PCVARK =>.SUP.AdvancedPCCare
HKLM\SOFTWARE\Permersy
HKLM\SOFTWARE\pilph.exe
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Plerdeck
HKLM\SOFTWARE\Plermatyqueght
HKLM\SOFTWARE\Plovght
HKLM\SOFTWARE\Plulogeterkward
HKLM\SOFTWARE\Plusosedonution
HKLM\SOFTWARE\PRO PC Cleaner =>.SUP.DoctorPC
HKLM\SOFTWARE\Prtely
HKLM\SOFTWARE\Prumertionwihadom
HKLM\SOFTWARE\Pufspreekaph
HKLM\SOFTWARE\Qecaent
HKLM\SOFTWARE\Qerfech
HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Reerut
HKLM\SOFTWARE\Reikuse
HKLM\SOFTWARE\Rockstar Games =>.Rockstar Games
HKLM\SOFTWARE\Rucult
HKLM\SOFTWARE\ScreenShot
HKLM\SOFTWARE\Shipry
HKLM\SOFTWARE\Shojiingqpertion
HKLM\SOFTWARE\Shotcut
HKLM\SOFTWARE\Shouwardaterbaied
HKLM\SOFTWARE\Shzagh
HKLM\SOFTWARE\simplitec =>.Simplitec
HKLM\SOFTWARE\Sirertherqerpok
HKLM\SOFTWARE\Sjokohaty
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\Soci2Sear Browser Enhancer =>PUP.Optional.Wajam
HKLM\SOFTWARE\SoftThinks =>.SoftThinks
HKLM\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\Space Sciences Laboratory, U.C. Berkeley =>.Space Sciences Laboratory, U.C.
HKLM\SOFTWARE\Staage
HKLM\SOFTWARE\startpageing123Software
HKLM\SOFTWARE\Stemoght
HKLM\SOFTWARE\StepMania =>.StepMania
HKLM\SOFTWARE\Stgaycoeheing
HKLM\SOFTWARE\Stiwerleckervuward
HKLM\SOFTWARE\TaskInj
HKLM\SOFTWARE\TeamSpeak 3 Client =>.TeamSpeak
HKLM\SOFTWARE\TechSmith =>.TechSmith
HKLM\SOFTWARE\The Incredible Hulk
HKLM\SOFTWARE\Thogph
HKLM\SOFTWARE\Tizeried
HKLM\SOFTWARE\Tkchnogesp
HKLM\SOFTWARE\Toqoty
HKLM\SOFTWARE\ToughQueen
HKLM\SOFTWARE\trotuxSoftware =>.SUP.Trotux
HKLM\SOFTWARE\TrueKey =>.Intel Corporation
HKLM\SOFTWARE\Tudopy
HKLM\SOFTWARE\Ubisoft =>.Ubisoft
HKLM\SOFTWARE\Valve =>.Valve
HKLM\SOFTWARE\Vmagephahoy
HKLM\SOFTWARE\WafCX =>.WafCX
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wondershare =>.Wondershare
HKLM\SOFTWARE\wsxy
HKLM\SOFTWARE\Wukiingplte
HKLM\SOFTWARE\XOB
HKLM\SOFTWARE\xpruoent.exe
HKLM\SOFTWARE\youndooSoftware =>PUP.Optional.Youndoo
HKLM\SOFTWARE\Zamasp
HKLM\SOFTWARE\Zberpy
HKLM\SOFTWARE\Zersotherprubing
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\VolDellBackupAndRecovery
HKLM\SOFTWARE\WOW6432Node\5BF532F5FA7101FC088D0A0745D3A926 =>Adware.CrossRider
HKLM\SOFTWARE\WOW6432Node\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\amule-custom =>Adware.aMULEcustom
HKLM\SOFTWARE\WOW6432Node\Anerfersypruhety
HKLM\SOFTWARE\WOW6432Node\Anikuy
HKLM\SOFTWARE\WOW6432Node\Annerkphequs
HKLM\SOFTWARE\WOW6432Node\Aralphcojother
HKLM\SOFTWARE\WOW6432Node\Aravitphersak =>.RSA Security
HKLM\SOFTWARE\WOW6432Node\Arijose
HKLM\SOFTWARE\WOW6432Node\Arulientkjt
HKLM\SOFTWARE\WOW6432Node\Atosoent
HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\AVG =>.AVG Software
HKLM\SOFTWARE\WOW6432Node\AVS4YOU =>.AVS4YOU
HKLM\SOFTWARE\WOW6432Node\BANDISOFT =>.Bandisoft
HKLM\SOFTWARE\WOW6432Node\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\WOW6432Node\BSD =>.Berkeley
HKLM\SOFTWARE\WOW6432Node\Cansuck
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\CDDB =>.Cddb Software
HKLM\SOFTWARE\WOW6432Node\Chivich
HKLM\SOFTWARE\WOW6432Node\Chovuph
HKLM\SOFTWARE\WOW6432Node\Chqucultgrusdom
HKLM\SOFTWARE\WOW6432Node\Chromium =>.Chromium
HKLM\SOFTWARE\WOW6432Node\Cibaghclimit
HKLM\SOFTWARE\WOW6432Node\Clocitgrikuing
HKLM\SOFTWARE\WOW6432Node\Clpyfuzay
HKLM\SOFTWARE\WOW6432Node\CLSID =>.Unknown
HKLM\SOFTWARE\WOW6432Node\Clsuty
HKLM\SOFTWARE\WOW6432Node\Clvientghideried
HKLM\SOFTWARE\WOW6432Node\Coatessoduy
HKLM\SOFTWARE\WOW6432Node\Cowertherlhight
HKLM\SOFTWARE\WOW6432Node\Cygwin =>.Cygwin
HKLM\SOFTWARE\WOW6432Node\Deep Silver =>.Deep Silver
HKLM\SOFTWARE\WOW6432Node\DeepSilver
HKLM\SOFTWARE\WOW6432Node\Dell =>.Dell
HKLM\SOFTWARE\WOW6432Node\Dell Inc. =>.Dell Inc.
HKLM\SOFTWARE\WOW6432Node\DellBackupandRecovery =>.Dell Inc.
HKLM\SOFTWARE\WOW6432Node\DigitalWave =>.DigitalWave Corporation
HKLM\SOFTWARE\WOW6432Node\Dkaingvverge
HKLM\SOFTWARE\WOW6432Node\DMA Design Ltd =>.DMA Design Ltd
HKLM\SOFTWARE\WOW6432Node\Drenertain
HKLM\SOFTWARE\WOW6432Node\Drideringjoly
HKLM\SOFTWARE\WOW6432Node\Dridetain
HKLM\SOFTWARE\WOW6432Node\Drirodom
HKLM\SOFTWARE\WOW6432Node\Dronaing
HKLM\SOFTWARE\WOW6432Node\Dunoiederpesy
HKLM\SOFTWARE\WOW6432Node\DuoDianApp =>.DuoDianApp
HKLM\SOFTWARE\WOW6432Node\Eastness
HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\WOW6432Node\Elex-tech =>.SUP.Elex
HKLM\SOFTWARE\WOW6432Node\Enterbrain =>.Enterbrain
HKLM\SOFTWARE\WOW6432Node\Fanlook
HKLM\SOFTWARE\WOW6432Node\Femaly
HKLM\SOFTWARE\WOW6432Node\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\WOW6432Node\FileZilla Client =>.Tim Kosse
HKLM\SOFTWARE\WOW6432Node\Firefox =>.Mozilla Corporation
HKLM\SOFTWARE\WOW6432Node\Fraps =>.Beepa
HKLM\SOFTWARE\WOW6432Node\Fuhelyclile
HKLM\SOFTWARE\WOW6432Node\Ghivosp
HKLM\SOFTWARE\WOW6432Node\Ghllycljerdom
HKLM\SOFTWARE\WOW6432Node\GNU =>.GNU
HKLM\SOFTWARE\WOW6432Node\GOG.com =>.GOG.com
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Grazry
HKLM\SOFTWARE\WOW6432Node\Grergeing
HKLM\SOFTWARE\WOW6432Node\Gromcultclujuied
HKLM\SOFTWARE\WOW6432Node\Grunickghidodom
HKLM\SOFTWARE\WOW6432Node\Grunuied
HKLM\SOFTWARE\WOW6432Node\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\WOW6432Node\Hvelekrasy
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\InstallShield =>.InstallShield
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Intel Security =>.Intel Security
HKLM\SOFTWARE\WOW6432Node\Irishqle
HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\WOW6432Node\Jecidomdrugeward
HKLM\SOFTWARE\WOW6432Node\jhdbca
HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\WOW6432Node\Jucupyletert
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Kiherent
HKLM\SOFTWARE\WOW6432Node\Ksasypretaent
HKLM\SOFTWARE\WOW6432Node\Kuruculthafoing
HKLM\SOFTWARE\WOW6432Node\Ladaghphemach
HKLM\SOFTWARE\WOW6432Node\Lantion
HKLM\SOFTWARE\WOW6432Node\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Magix =>.Magix
HKLM\SOFTWARE\WOW6432Node\Martin Prikryl =>.Martin Prikryl
HKLM\SOFTWARE\WOW6432Node\Maxis =>.Maxis
HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\mcafeeupdater =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\Mewient
HKLM\SOFTWARE\WOW6432Node\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\WOW6432Node\MicroRay =>.MicroRay
HKLM\SOFTWARE\WOW6432Node\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\WOW6432Node\Mmoingtozoy
HKLM\SOFTWARE\WOW6432Node\Mojang =>.Mojang
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\msServer
HKLM\SOFTWARE\WOW6432Node\mtPlusdax =>.SUP.Linkury
HKLM\SOFTWARE\WOW6432Node\Muhach
HKLM\SOFTWARE\WOW6432Node\NCH Software =>.NCH Software
HKLM\SOFTWARE\WOW6432Node\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\WOW6432Node\Nigeghoesp
HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\WOW6432Node\OBS Studio =>.OBS Studio
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\ompndb
HKLM\SOFTWARE\WOW6432Node\Opera Software =>.Opera Software
HKLM\SOFTWARE\WOW6432Node\Origin =>.Electronic Arts, Inc.
HKLM\SOFTWARE\WOW6432Node\OtherSearch =>Adware.FastSearch
HKLM\SOFTWARE\WOW6432Node\ourluckysitesSoftware =>Hijacker.OurLuckySites
HKLM\SOFTWARE\WOW6432Node\Overwolf =>.Overwolf
HKLM\SOFTWARE\WOW6432Node\Ovoghaterwe
HKLM\SOFTWARE\WOW6432Node\PC-Doctor =>.PC-Doctor Inc.
HKLM\SOFTWARE\WOW6432Node\PCVARK =>.SUP.AdvancedPCCare
HKLM\SOFTWARE\WOW6432Node\Permersy
HKLM\SOFTWARE\WOW6432Node\pilph.exe
HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform
HKLM\SOFTWARE\WOW6432Node\Plerdeck
HKLM\SOFTWARE\WOW6432Node\Plermatyqueght
HKLM\SOFTWARE\WOW6432Node\Plovght
HKLM\SOFTWARE\WOW6432Node\Plulogeterkward
HKLM\SOFTWARE\WOW6432Node\Plusosedonution
HKLM\SOFTWARE\WOW6432Node\PRO PC Cleaner =>.SUP.DoctorPC
HKLM\SOFTWARE\WOW6432Node\Prtely
HKLM\SOFTWARE\WOW6432Node\Prumertionwihadom
HKLM\SOFTWARE\WOW6432Node\Pufspreekaph
HKLM\SOFTWARE\WOW6432Node\Qecaent
HKLM\SOFTWARE\WOW6432Node\Qerfech
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Reerut
HKLM\SOFTWARE\WOW6432Node\Reikuse
HKLM\SOFTWARE\WOW6432Node\Rockstar Games =>.Rockstar Games
HKLM\SOFTWARE\WOW6432Node\Rucult
HKLM\SOFTWARE\WOW6432Node\ScreenShot
HKLM\SOFTWARE\WOW6432Node\Shipry
HKLM\SOFTWARE\WOW6432Node\Shojiingqpertion
HKLM\SOFTWARE\WOW6432Node\Shotcut
HKLM\SOFTWARE\WOW6432Node\Shouwardaterbaied
HKLM\SOFTWARE\WOW6432Node\Shzagh
HKLM\SOFTWARE\WOW6432Node\simplitec =>.Simplitec
HKLM\SOFTWARE\WOW6432Node\Sirertherqerpok
HKLM\SOFTWARE\WOW6432Node\Sjokohaty
HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype
HKLM\SOFTWARE\WOW6432Node\Soci2Sear Browser Enhancer =>PUP.Optional.Wajam
HKLM\SOFTWARE\WOW6432Node\SoftThinks =>.SoftThinks
HKLM\SOFTWARE\WOW6432Node\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\WOW6432Node\Space Sciences Laboratory, U.C. Berkeley =>.Space Sciences Laboratory, U.C.
HKLM\SOFTWARE\WOW6432Node\Staage
HKLM\SOFTWARE\WOW6432Node\startpageing123Software
HKLM\SOFTWARE\WOW6432Node\Stemoght
HKLM\SOFTWARE\WOW6432Node\StepMania =>.StepMania
HKLM\SOFTWARE\WOW6432Node\Stgaycoeheing
HKLM\SOFTWARE\WOW6432Node\Stiwerleckervuward
HKLM\SOFTWARE\WOW6432Node\TaskInj
HKLM\SOFTWARE\WOW6432Node\TeamSpeak 3 Client =>.TeamSpeak
HKLM\SOFTWARE\WOW6432Node\TechSmith =>.TechSmith
HKLM\SOFTWARE\WOW6432Node\The Incredible Hulk
HKLM\SOFTWARE\WOW6432Node\Thogph
HKLM\SOFTWARE\WOW6432Node\Tizeried
HKLM\SOFTWARE\WOW6432Node\Tkchnogesp
HKLM\SOFTWARE\WOW6432Node\Toqoty
HKLM\SOFTWARE\WOW6432Node\ToughQueen
HKLM\SOFTWARE\WOW6432Node\trotuxSoftware =>.SUP.Trotux
HKLM\SOFTWARE\WOW6432Node\TrueKey =>.Intel Corporation
HKLM\SOFTWARE\WOW6432Node\Tudopy
HKLM\SOFTWARE\WOW6432Node\Ubisoft =>.Ubisoft
HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve
HKLM\SOFTWARE\WOW6432Node\Vmagephahoy
HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX
HKLM\SOFTWARE\WOW6432Node\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node\wsxy
HKLM\SOFTWARE\WOW6432Node\Wukiingplte
HKLM\SOFTWARE\WOW6432Node\XOB
HKLM\SOFTWARE\WOW6432Node\xpruoent.exe
HKLM\SOFTWARE\WOW6432Node\youndooSoftware =>PUP.Optional.Youndoo
HKLM\SOFTWARE\WOW6432Node\Zamasp
HKLM\SOFTWARE\WOW6432Node\Zberpy
HKLM\SOFTWARE\WOW6432Node\Zersotherprubing
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\VolDellBackupAndRecovery
HKCU\SOFTWARE\1de9fca4b5fc067e =>PUP.Optional.Heuristic
HKCU\SOFTWARE\5BF532F5FA7101FC088D0A0745D3A926 =>Adware.CrossRider
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\8322898 =>.FastStone Soft
HKCU\SOFTWARE\Activision =>.Activision
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AlphaGo =>.AlphaGo
HKCU\SOFTWARE\APOLLO
HKCU\SOFTWARE\Apowersoft =>.Apowersoft
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\AppWork =>.Appwork GmbH
HKCU\SOFTWARE\Aureal =>.Aureal Semiconductor
HKCU\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\Avg =>.AVG Software
HKCU\SOFTWARE\AVS4YOU =>.AVS4YOU
HKCU\SOFTWARE\BANDISOFT =>.Bandisoft
HKCU\SOFTWARE\Boneloaf
HKCU\SOFTWARE\BSD =>.Berkeley
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\Bytescout =>.ByteScout
HKCU\SOFTWARE\C84E
HKCU\SOFTWARE\cacaoweb =>.SUP.CacaoWeb
HKCU\SOFTWARE\Cansuck
HKCU\SOFTWARE\Caphyon =>.Caphyon
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\CineForm =>.CineForm
HKCU\SOFTWARE\CKAN
HKCU\SOFTWARE\Corel =>.Corel
HKCU\SOFTWARE\csastats =>Adware.InstallCore
HKCU\SOFTWARE\Datastead =>.Datastead
HKCU\SOFTWARE\DefaultCompany =>.Unity
HKCU\SOFTWARE\deskapp
HKCU\SOFTWARE\DirectShow =>.Microsoft Corporation
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\DMA Design Ltd =>.DMA Design Ltd
HKCU\SOFTWARE\DMGR1.25
HKCU\SOFTWARE\Drivers =>.Legitimate
HKCU\SOFTWARE\DuoDianApp =>.DuoDianApp
HKCU\SOFTWARE\Eastness
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts
HKCU\SOFTWARE\EMU =>.Games Software
HKCU\SOFTWARE\Emulators =>.Open Source
HKCU\SOFTWARE\Enterbrain =>.Enterbrain
HKCU\SOFTWARE\Epic Games =>.Epic Games
HKCU\SOFTWARE\epsxe =>.ePSXe
HKCU\SOFTWARE\Fanlook
HKCU\SOFTWARE\Firefox =>.Mozilla Corporation
HKCU\SOFTWARE\Fraps3 =>.Beepa
HKCU\SOFTWARE\Game Maker
HKCU\SOFTWARE\Genius =>.Genius Games
HKCU\SOFTWARE\Genius2
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\GOG.com =>.GOG.com
HKCU\SOFTWARE\GoldenGate =>.Oracle
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\GRE
HKCU\SOFTWARE\GTAGarage
HKCU\SOFTWARE\Haali =>.Haali Media
HKCU\SOFTWARE\heheelibom
HKCU\SOFTWARE\IM =>.Legitimate
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\IMDownloader =>.Legitimate
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Intel Security =>.Intel Security
HKCU\SOFTWARE\Interstatnogui =>Adware.UserMon
HKCU\SOFTWARE\JaboSoft =>.JaboSoft
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Kiloo Games =>.Kiloo Games
HKCU\SOFTWARE\L2j Community Network =>.L2j Community Network
HKCU\SOFTWARE\LAV =>.LAV Inc
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MagicISO =>.MagicISO
HKCU\SOFTWARE\Magix =>.Magix
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\Martin Prikryl =>.Martin Prikryl
HKCU\SOFTWARE\MC4D =>.Magic Cube 4D
HKCU\SOFTWARE\medfkrszcf_medfkrszcf
HKCU\SOFTWARE\Meltytech =>.Meltytech LLC
HKCU\SOFTWARE\Mirillis =>.Mirillis
HKCU\SOFTWARE\ModManager
HKCU\SOFTWARE\Mojang =>.Mojang
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\MultiMC
HKCU\SOFTWARE\N64 Emulation =>.Games Software
HKCU\SOFTWARE\NCH Software =>.NCH Software
HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKCU\SOFTWARE\NewTechnologyStudio =>.New Technology Studio
HKCU\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing
HKCU\SOFTWARE\NTSCorp =>.NTSCorp Ltd
HKCU\SOFTWARE\One System Care =>PUP.Optional.OneSystemCare
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\paint.net =>.Rick Brewster
HKCU\SOFTWARE\PC-Doctor =>.PC-Doctor Inc.
HKCU\SOFTWARE\PCVARK =>.SUP.AdvancedPCCare
HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\PROPCCleanerConfig =>.SUP.DoctorPC
HKCU\SOFTWARE\PROPCCleanerLanguage =>.SUP.DoctorPC
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RocketDock =>.Punk Software
HKCU\SOFTWARE\Rockstar Games =>.Rockstar Games
HKCU\SOFTWARE\Roger Barton
HKCU\SOFTWARE\SecuROM =>.SecuROM
HKCU\SOFTWARE\Settings =>.Samsung Electronics
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\skypeapp-64ccef7df34b =>.Skype Technologies
HKCU\SOFTWARE\SmallGamesInfo
HKCU\SOFTWARE\Smartly Dressed Games =>.Smartly Dressed Games
HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKCU\SOFTWARE\Space Sciences Laboratory, U.C. Berkeley =>.Space Sciences Laboratory, U.C.
HKCU\SOFTWARE\SpeeDownloader =>Adware.SoftwareEngine
HKCU\SOFTWARE\Squad =>.Games Software
HKCU\SOFTWARE\StackDocklet
HKCU\SOFTWARE\SwytShop =>PUP.Optional.SwytShop
HKCU\SOFTWARE\System Healer =>.SUP.SystemHealer
HKCU\SOFTWARE\System32 =>.Mirillis
HKCU\SOFTWARE\Team 17 Digital ltd. =>.Team 17 Digital
HKCU\SOFTWARE\TechSmith =>.TechSmith
HKCU\SOFTWARE\tfdfu =>.Electronic Arts, Inc.
HKCU\SOFTWARE\The Incredible Hulk
HKCU\SOFTWARE\THQ =>.THQ
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\TrueKey =>.Intel Corporation
HKCU\SOFTWARE\Twitch
HKCU\SOFTWARE\Ubisoft =>.Ubisoft
HKCU\SOFTWARE\undefined =>.SUP.Downloader
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\Unity Technologies =>.Unity Technologies
HKCU\SOFTWARE\UnPas2MontagePhoto.exe
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\VideoBox =>Adware.Amonetize
HKCU\SOFTWARE\Vision Thing
HKCU\SOFTWARE\W7SOC =>.Legitimate
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\Waves Audio =>.Waves Audio
HKCU\SOFTWARE\Win =>.Unknown
HKCU\SOFTWARE\Win7zip
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\WinSnare =>.SUP.WinSnare
HKCU\SOFTWARE\WinZip Computing, S.L. =>.WinZip Computing, S.L.
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\Y2Go =>PUP.Optional.Y2Go
HKCU\SOFTWARE\YandereDev =>.Games Software
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\AppTrailers =>Adware.AppTrailers
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Squad =>.Games Software
HKCU\SOFTWARE\AppDataLow\Software\Unity =>.Unity

---\\ Contenu des dossiers Programmes (617) - 75s
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files\1UUV4EKLEF =>Adware.Wizzcaster
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files\7WIXTUELM7 =>Adware.Wizzcaster
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files\9APROW87HP =>Adware.Wizzcaster
O43 - CFD: 19/09/2017 - [] D -- C:\Program Files\acbfa4650af99dfd75de9e6b9233a85d
O43 - CFD: 09/04/2017 - [] D -- C:\Program Files\Adobe =>.Adobe
O43 - CFD: 31/05/2017 - [] D -- C:\Program Files\ayj9qk09
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files\B7YVZYTBNH =>Adware.Wizzcaster
O43 - CFD: 06/10/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 31/08/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 18/04/2017 - [] D -- C:\Program Files\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 25/06/2017 - [] D -- C:\Program Files\Dell =>.Dell
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files\Dell Inc =>.Dell Inc.
O43 - CFD: 14/10/2017 - [] D -- C:\Program Files\Dell Support Center =>.Dell Inc.
O43 - CFD: 19/04/2017 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 26/11/2017 - [] D -- C:\Program Files\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 02/04/2017 - [] D -- C:\Program Files\Intel Security =>.Intel Corporation
O43 - CFD: 16/04/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 10/10/2016 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\jetstrmedia =>Adware.iBryte
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files\K1H7PYV80L =>Adware.Wizzcaster
O43 - CFD: 25/01/2017 - [] D -- C:\Program Files\Movie Maker =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 23/09/2017 - [] D -- C:\Program Files\Opera =>.Opera Software
O43 - CFD: 05/05/2017 - [] D -- C:\Program Files\paint.net =>.Rick Brewster
O43 - CFD: 09/10/2015 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 08/10/2017 - [] D -- C:\Program Files\Strogino CS Portal =>.Strogino CS Portal
O43 - CFD: 22/04/2017 - [] D -- C:\Program Files\TrueKey =>.Intel Corporation
O43 - CFD: 20/05/2017 - [] D -- C:\Program Files\Unity =>.Unity
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files\VBDK1ACTFB =>Adware.Wizzcaster
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 19/04/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 19/04/2017 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files (x86)\58e8e744-b6ac-4fa0-88d3-0f19cb3554171491078324 =>Adware.CrossRider
O43 - CFD: 10/07/2017 - [] D -- C:\Program Files (x86)\7-Zip =>.Igor Pavlov
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 02/03/2017 - [] D -- C:\Program Files (x86)\AGEIA Technologies =>.AGEIA Technologies
O43 - CFD: 09/05/2017 - [0] D -- C:\Program Files (x86)\AlphaGo =>.AlphaGo
O43 - CFD: 30/08/2016 - [] D -- C:\Program Files (x86)\Anuman Interactive =>.Anuman Interactive
O43 - CFD: 19/04/2017 - [] D -- C:\Program Files (x86)\ayj9qk09
O43 - CFD: 16/04/2017 - [] D -- C:\Program Files (x86)\BikaQRss =>.SUP.BikaQ
O43 - CFD: 31/05/2017 - [] D -- C:\Program Files (x86)\Coicoph =>.VideoLAN®
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 02/03/2017 - [] D -- C:\Program Files (x86)\Deep Silver =>.Deep Silver
O43 - CFD: 12/05/2017 - [] D -- C:\Program Files (x86)\Default Company Name
O43 - CFD: 18/09/2016 - [] D -- C:\Program Files (x86)\Dell =>.Dell
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files (x86)\Dell Backup and Recovery =>.Dell Inc.
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files (x86)\Dell Digital Delivery =>.Dell
O43 - CFD: 29/06/2017 - [] D -- C:\Program Files (x86)\Dell Update =>.Dell Inc.
O43 - CFD: 17/04/2017 - [] D -- C:\Program Files (x86)\Eastness =>.Google Inc®
O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\Elex-tech =>.SUP.Elex
O43 - CFD: 01/06/2017 - [] D -- C:\Program Files (x86)\Fanlook =>.Google Inc®
O43 - CFD: 24/05/2017 - [] AD -- C:\Program Files (x86)\Firefox =>.Mozilla Corporation
O43 - CFD: 20/06/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\GtkSharp =>.Xamarin, Inc
O43 - CFD: 06/04/2017 - [] D -- C:\Program Files (x86)\GUM3F22.tmp =>.Google Inc®
O43 - CFD: 30/10/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 16/04/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 30/04/2017 - [] D -- C:\Program Files (x86)\MagicISO =>.MagicISO
O43 - CFD: 01/04/2017 - [] D -- C:\Program Files (x86)\Mehition =>.Fengtao Software Inc.®
O43 - CFD: 23/04/2017 - [] D -- C:\Program Files (x86)\Microleaves =>.SUP.Microleaves
O43 - CFD: 28/09/2016 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 30/04/2017 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE =>.Microsoft Corporation
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio Tools for Unity =>.Pinnacle Systems, Inc.
O43 - CFD: 10/10/2017 - [] D -- C:\Program Files (x86)\Microsoft WSE =>.Microsoft Corporation
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 29/10/2017 - [] D -- C:\Program Files (x86)\Minecraft =>.Microsoft Corporation
O43 - CFD: 05/04/2017 - [] D -- C:\Program Files (x86)\MIO =>.Mio
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 26/11/2017 - [] D -- C:\Program Files (x86)\obs-studio =>.OBS-Studio
O43 - CFD: 23/04/2017 - [] D -- C:\Program Files (x86)\OneSystemCare =>PUP.Optional.OneSystemCare
O43 - CFD: 11/10/2017 - [0] D -- C:\Program Files (x86)\Origin =>.Electronic Arts, Inc.
O43 - CFD: 17/11/2017 - [] D -- C:\Program Files (x86)\ProxyGate =>.SUP.ProxyGate
O43 - CFD: 05/11/2017 - [0] D -- C:\Program Files (x86)\R.G. Mechanics =>.R.G. Mechanics
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 12/06/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games
O43 - CFD: 30/04/2017 - [] D -- C:\Program Files (x86)\temp =>.Microsoft Corporation
O43 - CFD: 06/10/2016 - [] D -- C:\Program Files (x86)\Universal Driver Updater =>.RSA Security
O43 - CFD: 01/05/2017 - [] D -- C:\Program Files (x86)\vgrYSV0onk
O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\vp3vxz8c
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\Windows Kits =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 19/04/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 19/04/2017 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 09/08/2017 - [] D -- C:\Program Files (x86)\WindowsTM =>.SUP.WindowsTM
O43 - CFD: 05/12/2016 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 02/03/2017 - [] D -- C:\Program Files (x86)\Wufospromigh Core
O43 - CFD: 10/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 10/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 10/02/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 14/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assassins Creed III
O43 - CFD: 06/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 18/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 02/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deep Silver =>.Deep Silver
O43 - CFD: 14/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell =>.Dell
O43 - CFD: 26/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 18/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 08/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 10/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 30/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MagicISO =>.MagicISO
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 21/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft =>.Microsoft Corporation
O43 - CFD: 02/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio =>.OBS Studio
O43 - CFD: 14/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programmes de vidéo
O43 - CFD: 27/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack =>.SkinPack
O43 - CFD: 12/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 29/04/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 03/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StepMania 5.0.12
O43 - CFD: 06/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2017 =>.Pinnacle Systems, Inc.
O43 - CFD: 05/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 02/04/2017 - [] HD -- C:\ProgramData\502t295t1A33
O43 - CFD: 21/10/2017 - [0] D -- C:\ProgramData\62d13578-0037-1 =>.SUP.Polluteware
O43 - CFD: 26/11/2017 - [0] D -- C:\ProgramData\62d13578-0127-1 =>.SUP.Polluteware
O43 - CFD: 18/10/2017 - [0] D -- C:\ProgramData\62d13578-0385-1 =>.SUP.Polluteware
O43 - CFD: 01/12/2017 - [0] D -- C:\ProgramData\62d13578-0393-1 =>.SUP.Polluteware
O43 - CFD: 14/11/2017 - [0] D -- C:\ProgramData\62d13578-05e5-1 =>.SUP.Polluteware
O43 - CFD: 10/08/2017 - [0] D -- C:\ProgramData\62d13578-05e7-1 =>.SUP.Polluteware
O43 - CFD: 01/09/2017 - [0] D -- C:\ProgramData\62d13578-0681-1 =>.SUP.Polluteware
O43 - CFD: 04/09/2017 - [0] D -- C:\ProgramData\62d13578-0775-1 =>.SUP.Polluteware
O43 - CFD: 06/08/2017 - [0] D -- C:\ProgramData\62d13578-0a37-1 =>.SUP.Polluteware
O43 - CFD: 20/11/2017 - [0] D -- C:\ProgramData\62d13578-0ac7-1 =>.SUP.Polluteware
O43 - CFD: 25/11/2017 - [0] D -- C:\ProgramData\62d13578-0af1-1 =>.SUP.Polluteware
O43 - CFD: 06/05/2017 - [0] D -- C:\ProgramData\62d13578-0c03-0 =>.SUP.Polluteware
O43 - CFD: 30/10/2017 - [0] D -- C:\ProgramData\62d13578-0dc7-1 =>.SUP.Polluteware
O43 - CFD: 31/08/2017 - [0] D -- C:\ProgramData\62d13578-0f51-1 =>.SUP.Polluteware
O43 - CFD: 30/08/2017 - [0] D -- C:\ProgramData\62d13578-0fc3-1 =>.SUP.Polluteware
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\62d13578-1171-1 =>.SUP.Polluteware
O43 - CFD: 06/12/2017 - [0] D -- C:\ProgramData\62d13578-1177-1 =>.SUP.Polluteware
O43 - CFD: 23/12/2017 - [0] D -- C:\ProgramData\62d13578-11b7-1 =>.SUP.Polluteware
O43 - CFD: 02/06/2017 - [0] D -- C:\ProgramData\62d13578-11e7-0 =>.SUP.Polluteware
O43 - CFD: 06/09/2017 - [0] D -- C:\ProgramData\62d13578-11f3-1 =>.SUP.Polluteware
O43 - CFD: 04/08/2017 - [0] D -- C:\ProgramData\62d13578-1317-0 =>.SUP.Polluteware
O43 - CFD: 07/10/2017 - [0] D -- C:\ProgramData\62d13578-1361-1 =>.SUP.Polluteware
O43 - CFD: 22/11/2017 - [0] D -- C:\ProgramData\62d13578-13d5-1 =>.SUP.Polluteware
O43 - CFD: 02/12/2017 - [0] D -- C:\ProgramData\62d13578-1473-1 =>.SUP.Polluteware
O43 - CFD: 13/11/2017 - [0] D -- C:\ProgramData\62d13578-14a7-1 =>.SUP.Polluteware
O43 - CFD: 05/12/2017 - [0] D -- C:\ProgramData\62d13578-14c3-1 =>.SUP.Polluteware
O43 - CFD: 11/10/2017 - [0] D -- C:\ProgramData\62d13578-1603-1 =>.SUP.Polluteware
O43 - CFD: 03/09/2017 - [0] D -- C:\ProgramData\62d13578-1637-1 =>.SUP.Polluteware
O43 - CFD: 02/09/2017 - [0] D -- C:\ProgramData\62d13578-1911-1 =>.SUP.Polluteware
O43 - CFD: 17/11/2017 - [0] D -- C:\ProgramData\62d13578-1921-1 =>.SUP.Polluteware
O43 - CFD: 01/11/2017 - [0] D -- C:\ProgramData\62d13578-1c91-1 =>.SUP.Polluteware
O43 - CFD: 13/09/2017 - [0] D -- C:\ProgramData\62d13578-2017-1 =>.SUP.Polluteware
O43 - CFD: 30/09/2017 - [0] D -- C:\ProgramData\62d13578-2047-1 =>.SUP.Polluteware
O43 - CFD: 30/11/2017 - [0] D -- C:\ProgramData\62d13578-2065-1 =>.SUP.Polluteware
O43 - CFD: 20/10/2017 - [0] D -- C:\ProgramData\62d13578-21b5-1 =>.SUP.Polluteware
O43 - CFD: 21/11/2017 - [0] D -- C:\ProgramData\62d13578-2241-1 =>.SUP.Polluteware
O43 - CFD: 08/06/2017 - [0] D -- C:\ProgramData\62d13578-2243-0 =>.SUP.Polluteware
O43 - CFD: 09/09/2017 - [0] D -- C:\ProgramData\62d13578-2307-1 =>.SUP.Polluteware
O43 - CFD: 18/12/2017 - [0] D -- C:\ProgramData\62d13578-2413-1 =>.SUP.Polluteware
O43 - CFD: 27/12/2017 - [0] D -- C:\ProgramData\62d13578-2461-1 =>.SUP.Polluteware
O43 - CFD: 09/08/2017 - [0] D -- C:\ProgramData\62d13578-2525-1 =>.SUP.Polluteware
O43 - CFD: 31/05/2017 - [0] D -- C:\ProgramData\62d13578-2617-0 =>.SUP.Polluteware
O43 - CFD: 14/05/2017 - [0] D -- C:\ProgramData\62d13578-27d7-0 =>.SUP.Polluteware
O43 - CFD: 12/10/2017 - [0] D -- C:\ProgramData\62d13578-27e7-1 =>.SUP.Polluteware
O43 - CFD: 07/12/2017 - [0] D -- C:\ProgramData\62d13578-27f5-1 =>.SUP.Polluteware
O43 - CFD: 06/08/2017 - [0] D -- C:\ProgramData\62d13578-2825-0 =>.SUP.Polluteware
O43 - CFD: 23/09/2017 - [0] D -- C:\ProgramData\62d13578-2843-1 =>.SUP.Polluteware
O43 - CFD: 23/12/2017 - [0] D -- C:\ProgramData\62d13578-28b5-1 =>.SUP.Polluteware
O43 - CFD: 21/12/2017 - [0] D -- C:\ProgramData\62d13578-2901-1 =>.SUP.Polluteware
O43 - CFD: 05/11/2017 - [0] D -- C:\ProgramData\62d13578-2911-1 =>.SUP.Polluteware
O43 - CFD: 06/08/2017 - [0] D -- C:\ProgramData\62d13578-2941-0 =>.SUP.Polluteware
O43 - CFD: 15/11/2017 - [0] D -- C:\ProgramData\62d13578-2977-1 =>.SUP.Polluteware
O43 - CFD: 10/12/2017 - [0] D -- C:\ProgramData\62d13578-2ba3-1 =>.SUP.Polluteware
O43 - CFD: 02/09/2017 - [0] D -- C:\ProgramData\62d13578-2be5-1 =>.SUP.Polluteware
O43 - CFD: 09/11/2017 - [0] D -- C:\ProgramData\62d13578-2c95-1 =>.SUP.Polluteware
O43 - CFD: 14/10/2017 - [0] D -- C:\ProgramData\62d13578-2e55-1 =>.SUP.Polluteware
O43 - CFD: 07/06/2017 - [0] D -- C:\ProgramData\62d13578-2fa1-0 =>.SUP.Polluteware
O43 - CFD: 29/11/2017 - [0] D -- C:\ProgramData\62d13578-30e1-1 =>.SUP.Polluteware
O43 - CFD: 25/11/2017 - [0] D -- C:\ProgramData\62d13578-3297-1 =>.SUP.Polluteware
O43 - CFD: 11/12/2017 - [0] D -- C:\ProgramData\62d13578-3367-1 =>.SUP.Polluteware
O43 - CFD: 09/08/2017 - [0] D -- C:\ProgramData\62d13578-3411-1 =>.SUP.Polluteware
O43 - CFD: 10/05/2017 - [0] D -- C:\ProgramData\62d13578-34b3-0 =>.SUP.Polluteware
O43 - CFD: 19/09/2017 - [0] D -- C:\ProgramData\62d13578-34d1-1 =>.SUP.Polluteware
O43 - CFD: 17/11/2017 - [0] D -- C:\ProgramData\62d13578-35d7-1 =>.SUP.Polluteware
O43 - CFD: 28/11/2017 - [0] D -- C:\ProgramData\62d13578-3693-1 =>.SUP.Polluteware
O43 - CFD: 08/10/2017 - [0] D -- C:\ProgramData\62d13578-36f1-1 =>.SUP.Polluteware
O43 - CFD: 31/10/2017 - [0] D -- C:\ProgramData\62d13578-3705-1 =>.SUP.Polluteware
O43 - CFD: 29/08/2017 - [0] D -- C:\ProgramData\62d13578-38e1-1 =>.SUP.Polluteware
O43 - CFD: 14/05/2017 - [0] D -- C:\ProgramData\62d13578-3977-0 =>.SUP.Polluteware
O43 - CFD: 25/12/2017 - [0] D -- C:\ProgramData\62d13578-3c75-1 =>.SUP.Polluteware
O43 - CFD: 29/09/2017 - [0] D -- C:\ProgramData\62d13578-3c95-1 =>.SUP.Polluteware
O43 - CFD: 04/11/2017 - [0] D -- C:\ProgramData\62d13578-3eb1-1 =>.SUP.Polluteware
O43 - CFD: 26/12/2017 - [0] D -- C:\ProgramData\62d13578-3f75-1 =>.SUP.Polluteware
O43 - CFD: 03/10/2017 - [0] D -- C:\ProgramData\62d13578-3fa5-1 =>.SUP.Polluteware
O43 - CFD: 12/12/2017 - [0] D -- C:\ProgramData\62d13578-3fc5-1 =>.SUP.Polluteware
O43 - CFD: 08/08/2017 - [0] D -- C:\ProgramData\62d13578-41c1-0 =>.SUP.Polluteware
O43 - CFD: 30/08/2017 - [0] D -- C:\ProgramData\62d13578-4273-1 =>.SUP.Polluteware
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\62d13578-42c3-1 =>.SUP.Polluteware
O43 - CFD: 10/08/2017 - [0] D -- C:\ProgramData\62d13578-42d3-1 =>.SUP.Polluteware
O43 - CFD: 06/12/2017 - [0] D -- C:\ProgramData\62d13578-4311-1 =>.SUP.Polluteware
O43 - CFD: 17/11/2017 - [0] D -- C:\ProgramData\62d13578-4501-1 =>.SUP.Polluteware
O43 - CFD: 07/12/2017 - [0] D -- C:\ProgramData\62d13578-4577-1 =>.SUP.Polluteware
O43 - CFD: 09/08/2017 - [0] D -- C:\ProgramData\62d13578-45b5-0 =>.SUP.Polluteware
O43 - CFD: 05/05/2017 - [0] D -- C:\ProgramData\62d13578-4717-0 =>.SUP.Polluteware
O43 - CFD: 14/12/2017 - [0] D -- C:\ProgramData\62d13578-4891-1 =>.SUP.Polluteware
O43 - CFD: 20/10/2017 - [0] D -- C:\ProgramData\62d13578-4943-1 =>.SUP.Polluteware
O43 - CFD: 04/06/2017 - [0] D -- C:\ProgramData\62d13578-49e7-0 =>.SUP.Polluteware
O43 - CFD: 02/10/2017 - [0] D -- C:\ProgramData\62d13578-4a53-1 =>.SUP.Polluteware
O43 - CFD: 06/10/2017 - [0] D -- C:\ProgramData\62d13578-4a83-1 =>.SUP.Polluteware
O43 - CFD: 03/06/2017 - [0] D -- C:\ProgramData\62d13578-4c03-0 =>.SUP.Polluteware
O43 - CFD: 24/11/2017 - [0] D -- C:\ProgramData\62d13578-4da3-1 =>.SUP.Polluteware
O43 - CFD: 01/10/2017 - [0] D -- C:\ProgramData\62d13578-4dd5-1 =>.SUP.Polluteware
O43 - CFD: 09/12/2017 - [0] D -- C:\ProgramData\62d13578-4e51-1 =>.SUP.Polluteware
O43 - CFD: 30/10/2017 - [0] D -- C:\ProgramData\62d13578-4f31-1 =>.SUP.Polluteware
O43 - CFD: 22/12/2017 - [0] D -- C:\ProgramData\62d13578-5001-1 =>.SUP.Polluteware
O43 - CFD: 13/05/2017 - [0] D -- C:\ProgramData\62d13578-5051-0 =>.SUP.Polluteware
O43 - CFD: 02/10/2017 - [0] D -- C:\ProgramData\62d13578-5095-1 =>.SUP.Polluteware
O43 - CFD: 08/11/2017 - [0] D -- C:\ProgramData\62d13578-50d3-1 =>.SUP.Polluteware
O43 - CFD: 12/12/2017 - [0] D -- C:\ProgramData\62d13578-51f1-1 =>.SUP.Polluteware
O43 - CFD: 18/11/2017 - [0] D -- C:\ProgramData\62d13578-5205-1 =>.SUP.Polluteware
O43 - CFD: 06/05/2017 - [0] D -- C:\ProgramData\62d13578-5351-0 =>.SUP.Polluteware
O43 - CFD: 31/08/2017 - [0] D -- C:\ProgramData\62d13578-53b1-1 =>.SUP.Polluteware
O43 - CFD: 16/09/2017 - [0] D -- C:\ProgramData\62d13578-5485-1 =>.SUP.Polluteware
O43 - CFD: 06/08/2017 - [0] D -- C:\ProgramData\62d13578-5673-1 =>.SUP.Polluteware
O43 - CFD: 08/08/2017 - [0] D -- C:\ProgramData\62d13578-5693-1 =>.SUP.Polluteware
O43 - CFD: 30/09/2017 - [0] D -- C:\ProgramData\62d13578-58d5-1 =>.SUP.Polluteware
O43 - CFD: 11/09/2017 - [0] D -- C:\ProgramData\62d13578-5c91-1 =>.SUP.Polluteware
O43 - CFD: 07/12/2017 - [0] D -- C:\ProgramData\62d13578-5cb7-1 =>.SUP.Polluteware
O43 - CFD: 14/11/2017 - [0] D -- C:\ProgramData\62d13578-5d23-1 =>.SUP.Polluteware
O43 - CFD: 14/10/2017 - [0] D -- C:\ProgramData\62d13578-5d27-1 =>.SUP.Polluteware
O43 - CFD: 08/08/2017 - [0] D -- C:\ProgramData\62d13578-5d37-1 =>.SUP.Polluteware
O43 - CFD: 25/11/2017 - [0] D -- C:\ProgramData\62d13578-5f95-1 =>.SUP.Polluteware
O43 - CFD: 29/10/2017 - [0] D -- C:\ProgramData\62d13578-60b1-1 =>.SUP.Polluteware
O43 - CFD: 17/09/2017 - [0] D -- C:\ProgramData\62d13578-6165-1 =>.SUP.Polluteware
O43 - CFD: 07/05/2017 - [0] D -- C:\ProgramData\62d13578-61b7-0 =>.SUP.Polluteware
O43 - CFD: 07/08/2017 - [0] D -- C:\ProgramData\62d13578-6211-0 =>.SUP.Polluteware
O43 - CFD: 05/08/2017 - [0] D -- C:\ProgramData\62d13578-6241-1 =>.SUP.Polluteware
O43 - CFD: 09/10/2017 - [0] D -- C:\ProgramData\62d13578-6263-1 =>.SUP.Polluteware
O43 - CFD: 17/09/2017 - [0] D -- C:\ProgramData\62d13578-62b7-1 =>.SUP.Polluteware
O43 - CFD: 15/10/2017 - [0] D -- C:\ProgramData\62d13578-63e3-1 =>.SUP.Polluteware
O43 - CFD: 13/05/2017 - [0] D -- C:\ProgramData\62d13578-63f5-0 =>.SUP.Polluteware
O43 - CFD: 10/08/2017 - [0] D -- C:\ProgramData\62d13578-64d1-1 =>.SUP.Polluteware
O43 - CFD: 16/11/2017 - [0] D -- C:\ProgramData\62d13578-6625-1 =>.SUP.Polluteware
O43 - CFD: 07/08/2017 - [0] D -- C:\ProgramData\62d13578-67f1-1 =>.SUP.Polluteware
O43 - CFD: 06/05/2017 - [0] D -- C:\ProgramData\62d13578-6865-0 =>.SUP.Polluteware
O43 - CFD: 08/08/2017 - [0] D -- C:\ProgramData\62d13578-6893-0 =>.SUP.Polluteware
O43 - CFD: 30/11/2017 - [0] D -- C:\ProgramData\62d13578-6921-1 =>.SUP.Polluteware
O43 - CFD: 01/10/2017 - [0] D -- C:\ProgramData\62d13578-6947-1 =>.SUP.Polluteware
O43 - CFD: 05/08/2017 - [0] D -- C:\ProgramData\62d13578-6a05-0 =>.SUP.Polluteware
O43 - CFD: 11/12/2017 - [0] D -- C:\ProgramData\62d13578-6a27-1 =>.SUP.Polluteware
O43 - CFD: 02/10/2017 - [0] D -- C:\ProgramData\62d13578-6a65-1 =>.SUP.Polluteware
O43 - CFD: 04/10/2017 - [0] D -- C:\ProgramData\62d13578-6a71-1 =>.SUP.Polluteware
O43 - CFD: 04/05/2017 - [0] D -- C:\ProgramData\62d13578-6ac5-0 =>.SUP.Polluteware
O43 - CFD: 10/10/2017 - [0] D -- C:\ProgramData\62d13578-6c73-1 =>.SUP.Polluteware
O43 - CFD: 10/10/2017 - [0] D -- C:\ProgramData\62d13578-6cc5-1 =>.SUP.Polluteware
O43 - CFD: 31/05/2017 - [0] D -- C:\ProgramData\62d13578-6e47-0 =>.SUP.Polluteware
O43 - CFD: 15/10/2017 - [0] D -- C:\ProgramData\62d13578-6e73-1 =>.SUP.Polluteware
O43 - CFD: 14/10/2017 - [0] D -- C:\ProgramData\62d13578-6ed3-1 =>.SUP.Polluteware
O43 - CFD: 29/10/2017 - [0] D -- C:\ProgramData\62d13578-6f07-1 =>.SUP.Polluteware
O43 - CFD: 16/11/2017 - [0] D -- C:\ProgramData\62d13578-6f51-1 =>.SUP.Polluteware
O43 - CFD: 08/10/2017 - [0] D -- C:\ProgramData\62d13578-71a1-1 =>.SUP.Polluteware
O43 - CFD: 09/12/2017 - [0] D -- C:\ProgramData\62d13578-7255-1 =>.SUP.Polluteware
O43 - CFD: 29/11/2017 - [0] D -- C:\ProgramData\62d13578-7311-1 =>.SUP.Polluteware
O43 - CFD: 30/11/2017 - [0] D -- C:\ProgramData\62d13578-7355-1 =>.SUP.Polluteware
O43 - CFD: 05/09/2017 - [0] D -- C:\ProgramData\62d13578-7565-1 =>.SUP.Polluteware
O43 - CFD: 10/12/2017 - [0] D -- C:\ProgramData\62d13578-76f1-1 =>.SUP.Polluteware
O43 - CFD: 10/12/2017 - [0] D -- C:\ProgramData\62d13578-7761-1 =>.SUP.Polluteware
O43 - CFD: 26/11/2017 - [0] D -- C:\ProgramData\62d13578-7831-1 =>.SUP.Polluteware
O43 - CFD: 05/08/2017 - [0] D -- C:\ProgramData\62d13578-7865-0 =>.SUP.Polluteware
O43 - CFD: 09/10/2017 - [0] D -- C:\ProgramData\62d13578-7ad3-1 =>.SUP.Polluteware
O43 - CFD: 07/11/2017 - [0] D -- C:\ProgramData\62d13578-7b23-1 =>.SUP.Polluteware
O43 - CFD: 17/10/2017 - [0] D -- C:\ProgramData\62d13578-7c63-1 =>.SUP.Polluteware
O43 - CFD: 03/09/2017 - [0] D -- C:\ProgramData\62d13578-7ce1-1 =>.SUP.Polluteware
O43 - CFD: 26/12/2017 - [0] D -- C:\ProgramData\62d13578-7d21-1 =>.SUP.Polluteware
O43 - CFD: 03/06/2017 - [0] D -- C:\ProgramData\62d13578-7d51-0 =>.SUP.Polluteware
O43 - CFD: 10/12/2017 - [0] D -- C:\ProgramData\62d13578-7db5-1 =>.SUP.Polluteware
O43 - CFD: 01/11/2017 - [0] D -- C:\ProgramData\62d13578-7fd1-1 =>.SUP.Polluteware
O43 - CFD: 31/10/2017 - [0] D -- C:\ProgramData\62d13578-7fe5-1 =>.SUP.Polluteware
O43 - CFD: 23/04/2017 - [] D -- C:\ProgramData\a1bd8073-3ff7-1 =>.SUP.Polluteware
O43 - CFD: 14/05/2017 - [0] D -- C:\ProgramData\a1bd8073-7607-0 =>.SUP.Polluteware
O43 - CFD: 27/04/2017 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 27/04/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 27/12/2017 - [] D -- C:\ProgramData\Avg =>.AVG Software
O43 - CFD: 20/04/2017 - [] D -- C:\ProgramData\bfa51af5
O43 - CFD: 24/05/2017 - [] D -- C:\ProgramData\BIT =>.SUP.Elex
O43 - CFD: 13/09/2017 - [] D -- C:\ProgramData\Blackmagic Design =>.Blackmagic Design
O43 - CFD: 24/05/2017 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 15/10/2017 - [] D -- C:\ProgramData\BlueStacksSetup =>.BlueStack Systems, Inc.
O43 - CFD: 31/10/2016 - [] D -- C:\ProgramData\BOINC =>.Space Sciences Laboratory, U.C.
O43 - CFD: 01/10/2016 - [] D -- C:\ProgramData\BSD =>.Berkeley
O43 - CFD: 09/08/2017 - [] D -- C:\ProgramData\Cache =>.Legitimate
O43 - CFD: 27/12/2017 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation
O43 - CFD: 18/04/2017 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 09/08/2017 - [] D -- C:\ProgramData\DataCache
O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\Dell =>.Dell
O43 - CFD: 21/11/2017 - [] D -- C:\ProgramData\Dell Inc =>.Dell Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 27/04/2017 - [] D -- C:\ProgramData\Lavasoft =>.Lavasoft
O43 - CFD: 01/04/2017 - [] D -- C:\ProgramData\Logic Cramble =>PUP.Optional.LogicHandler
O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\LogMeIn =>.LogMeIn
O43 - CFD: 04/05/2017 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 23/04/2017 - [] D -- C:\ProgramData\Microleaves =>.SUP.Microleaves
O43 - CFD: 18/11/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Mirillis =>.Mirillis
O43 - CFD: 10/08/2017 - [] D -- C:\ProgramData\na
O43 - CFD: 14/11/2016 - [] D -- C:\ProgramData\NCH Software =>.NCH Software
O43 - CFD: 10/10/2016 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 27/12/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 14/10/2017 - [] D -- C:\ProgramData\PC-Doctor for Windows =>.PC-Doctor Inc.
O43 - CFD: 30/04/2017 - [] D -- C:\ProgramData\PC-Doctor, Inc =>.PC-Doctor, Inc
O43 - CFD: 23/06/2017 - [] D -- C:\ProgramData\PCDr =>.PC-Doctor Inc.
O43 - CFD: 01/10/2016 - [] D -- C:\ProgramData\PCVARK =>.SUP.AdvancedPCCare
O43 - CFD: 02/04/2017 - [] D -- C:\ProgramData\Plusdax =>.SUP.Linkury
O43 - CFD: 02/04/2017 - [] D -- C:\ProgramData\PrefsSecure =>PUP.Optional.LogicHandler
O43 - CFD: 31/08/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 05/09/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 03/05/2017 - [] SHD -- C:\ProgramData\SecuROM =>.SecuROM
O43 - CFD: 12/06/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 03/03/2017 - [] D -- C:\ProgramData\Socialclub =>.Legitimate
O43 - CFD: 01/10/2016 - [] D -- C:\ProgramData\softthinks =>.SoftThinks
O43 - CFD: 17/04/2017 - [] D -- C:\ProgramData\Software =>.Unknown
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 03/03/2017 - [] D -- C:\ProgramData\Steam =>.Steam Games
O43 - CFD: 04/07/2017 - [] D -- C:\ProgramData\SupportAssist
O43 - CFD: 25/06/2017 - [] D -- C:\ProgramData\SupportAssistAgent =>.Games Software
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 02/04/2017 - [] D -- C:\ProgramData\TrueKey =>.Intel Corporation
O43 - CFD: 26/04/2017 - [] D -- C:\ProgramData\Ubisoft =>.Ubisoft
O43 - CFD: 18/09/2016 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation
O43 - CFD: 06/05/2017 - [0] D -- C:\ProgramData\Unity =>.Unity
O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\vCore =>PUP.Optional.AArtemis
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\VEGAS =>.VEGAS
O43 - CFD: 20/05/2017 - [] RSHD -- C:\ProgramData\Win
O43 - CFD: 25/04/2017 - [] D -- C:\ProgramData\WinZip =>.WinZip
O43 - CFD: 29/04/2017 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 27/02/2017 - [] D -- C:\ProgramData\X360CE =>.Microsoft Corporation
O43 - CFD: 07/06/2017 - [0] D -- C:\ProgramData\{027e25d8-012c-1} =>.SUP.Polluteware
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\{16A570BB-A10E-C710-919A-0EFDDCDF1660}
O43 - CFD: 07/06/2017 - [0] D -- C:\ProgramData\{189f6d86-112c-0} =>.SUP.Polluteware
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\{1B0EF300-ACA5-44AB-8268-59790E296AFE}
O43 - CFD: 05/08/2017 - [] D -- C:\ProgramData\{1b274f6a-112c-0} =>.SUP.Polluteware
O43 - CFD: 05/08/2017 - [] D -- C:\ProgramData\{20d70a2d-012c-1} =>.SUP.Polluteware
O43 - CFD: 14/05/2017 - [0] D -- C:\ProgramData\{26d87c85-412c-0} =>.SUP.Polluteware
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\{2cab7e2a-512c-1} =>.SUP.Polluteware
O43 - CFD: 03/05/2017 - [0] D -- C:\ProgramData\{2cfa6180-212c-0} =>.SUP.Polluteware
O43 - CFD: 31/05/2017 - [0] D -- C:\ProgramData\{34405b56-012c-1} =>.SUP.Polluteware
O43 - CFD: 05/08/2017 - [] D -- C:\ProgramData\{34c3137f-512c-0} =>.SUP.Polluteware
O43 - CFD: 05/08/2017 - [] D -- C:\ProgramData\{3aa0385d-212c-1} =>.SUP.Polluteware
O43 - CFD: 09/05/2017 - [0] D -- C:\ProgramData\{40980772-212c-0} =>.SUP.Polluteware
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\{44B3B855-F318-0FFE-684D-95B7914F59EC}
O43 - CFD: 09/05/2017 - [0] D -- C:\ProgramData\{4bb86e3f-612c-0} =>.SUP.Polluteware
O43 - CFD: 10/07/2017 - [0] D -- C:\ProgramData\{4CB67FEB-FB1D-C840-1A4C-C6C198FD7A37}
O43 - CFD: 04/05/2017 - [0] D -- C:\ProgramData\{4cca2d19-512c-1} =>.SUP.Polluteware
O43 - CFD: 14/05/2017 - [0] D -- C:\ProgramData\{57615a64-512c-0} =>.SUP.Polluteware
O43 - CFD: 03/05/2017 - [0] D -- C:\ProgramData\{5C142FC2-EBBF-9869-95C8-FC4DF9896073}
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\{6162276B-D6C9-90C0-2E46-CD59DDD6AC82}
O43 - CFD: 03/11/2017 - [] D -- C:\ProgramData\{61FDB315-D656-04BE-A43B-46335E5B6A4E}
O43 - CFD: 07/11/2017 - [0] D -- C:\ProgramData\{64ea00fd-312c-1} =>.SUP.Polluteware
O43 - CFD: 31/05/2017 - [0] D -- C:\ProgramData\{66b13b47-212c-0} =>.SUP.Polluteware
O43 - CFD: 05/08/2017 - [] D -- C:\ProgramData\{72c06dc8-112c-1} =>.SUP.Polluteware
O43 - CFD: 10/07/2017 - [0] D -- C:\ProgramData\{75F49EEE-C25F-2945-3A70-22A1104AFA89}
O43 - CFD: 05/08/2017 - [0] D -- C:\ProgramData\{7dce680e-612c-0} =>.SUP.Polluteware
O43 - CFD: 26/12/2017 - [] D -- C:\ProgramData\{8AFE4F9D-00BC-C55B-867A-5B191C38D0D7}
O43 - CFD: 31/05/2017 - [0] D -- C:\ProgramData\{8FA46642-380F-D1E9-9BDE-E473CA75500D}
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\{A9FB8D8E-1E50-3A25-602A-D127D0003EF6}
O43 - CFD: 31/05/2017 - [0] D -- C:\ProgramData\{E925BFB6-5E8E-081D-93B4-0514AB45F8D8}
O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\{FCA4112D-4B0F-A686-8165-266CE6C1BD83}
O43 - CFD: 08/10/2017 - [] D -- C:\Program Files (x86)\Common Files\789363110d14746060626a5494772ff1
O43 - CFD: 06/11/2017 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 25/05/2017 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Designer =>.Designer
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Enterbrain =>.Enterbrain
O43 - CFD: 30/04/2017 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 09/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation =>.Intel Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Services =>.MAGIX_Software_GmbH
O43 - CFD: 02/03/2017 - [] D -- C:\Program Files (x86)\Common Files\McAfee =>.McAfee
O43 - CFD: 06/05/2017 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 08/10/2015 - [] D -- C:\Program Files (x86)\Common Files\postureAgent =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 12/06/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 17/12/2017 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games
O43 - CFD: 29/09/2016 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 02/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard =>.Seagate
O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.Alkazia
O43 - CFD: 30/08/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.AltisCraft.fr
O43 - CFD: 04/09/2016 - [] D -- C:\Users\BOB\AppData\Roaming\.ascentia =>.Ascentia
O43 - CFD: 26/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.azlauncher
O43 - CFD: 04/09/2016 - [] D -- C:\Users\BOB\AppData\Roaming\.DCC
O43 - CFD: 06/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\.deathfight
O43 - CFD: 25/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.deathfightV4
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.FPVnetwork
O43 - CFD: 24/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.hellomine
O43 - CFD: 16/10/2017 - [0] D -- C:\Users\BOB\AppData\Roaming\.hypercraft
O43 - CFD: 24/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.lifecraft =>.Notch Development AB
O43 - CFD: 26/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.minecraft =>.Microsoft Corporation
O43 - CFD: 06/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\.minecraft-aquilon
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.mineria-v3
O43 - CFD: 02/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.Paladium =>.Games Software
O43 - CFD: 14/10/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.technic
O43 - CFD: 26/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\.tlauncher
O43 - CFD: 21/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\62F5E116-EF29-E68A-F8C5-7A32657465E8
O43 - CFD: 05/11/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\aMule =>Adware.aMULEcustom
O43 - CFD: 30/08/2016 - [] D -- C:\Users\BOB\AppData\Roaming\Anuman Interactive =>.Anuman Interactive
O43 - CFD: 24/03/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Apowersoft =>.Apowersoft
O43 - CFD: 12/03/2017 - [] D -- C:\Users\BOB\AppData\Roaming\AVS4YOU =>.AVS4YOU
O43 - CFD: 24/03/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Bandicam Company =>.Bandicam Company
O43 - CFD: 05/11/2017 - [] D -- C:\Users\BOB\AppData\Roaming\BitTorrent
O43 - CFD: 13/09/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Blackmagic Design =>.Blackmagic Design
O43 - CFD: 06/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\Blender Foundation =>.Blender Foundation
O43 - CFD: 09/08/2017 - [] D -- C:\Users\BOB\AppData\Roaming\BrowserModule =>.Unknown
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\cacaoweb =>.SUP.CacaoWeb
O43 - CFD: 07/07/2017 - [] D -- C:\Users\BOB\AppData\Roaming\com.mcleodgaming.ssf2
O43 - CFD: 15/10/2017 - [] D -- C:\Users\BOB\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 09/08/2017 - [] D -- C:\Users\BOB\AppData\Roaming\discord =>.GitHub
O43 - CFD: 02/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft
O43 - CFD: 17/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Elex-tech =>.SUP.Elex
O43 - CFD: 29/09/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Enterbrain =>.Enterbrain
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 11/03/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Firefox =>.Mozilla Corporation
O43 - CFD: 17/05/2017 - [] SHD -- C:\Users\BOB\AppData\Roaming\FolderN
O43 - CFD: 28/09/2016 - [] HD -- C:\Users\BOB\AppData\Roaming\GoldenGate =>.Oracle
O43 - CFD: 30/08/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Imminent =>PUP.Optional.IMBooster
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 16/05/2016 - [] D -- C:\Users\BOB\AppData\Roaming\Intel Corporation =>.Intel Corporation
O43 - CFD: 01/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Interstatnogui =>Adware.UserMon
O43 - CFD: 04/09/2016 - [] D -- C:\Users\BOB\AppData\Roaming\java =>.Oracle
O43 - CFD: 06/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\LauncherFrame
O43 - CFD: 29/05/2016 - [] D -- C:\Users\BOB\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 01/03/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Mael
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\MAGIX =>.Magix
O43 - CFD: 26/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\MAXON =>.Maxon
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\MetroSidebar =>.MetroSidebar
O43 - CFD: 10/10/2017 - [] SD -- C:\Users\BOB\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 23/03/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Mirillis =>.Mirillis
O43 - CFD: 01/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\MMFApplications =>.MultiMedia Fusion
O43 - CFD: 29/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\NCH Software =>.NCH Software
O43 - CFD: 26/11/2017 - [] D -- C:\Users\BOB\AppData\Roaming\obs-studio =>.OBS-Studio
O43 - CFD: 22/06/2016 - [] D -- C:\Users\BOB\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 09/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 06/10/2016 - [] D -- C:\Users\BOB\AppData\Roaming\opera_helper =>.Opera Software
O43 - CFD: 24/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\PCDr =>.PC-Doctor Inc.
O43 - CFD: 30/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 02/03/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Prison Break
O43 - CFD: 27/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\PRO PC Cleaner =>.SUP.DoctorPC
O43 - CFD: 01/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Profiles =>.Microsoft Corporation
O43 - CFD: 01/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\rabc
O43 - CFD: 28/01/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Rovio =>.Rovio
O43 - CFD: 18/10/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Rovio Entertainment Ltd
O43 - CFD: 30/04/2017 - [] RHD -- C:\Users\BOB\AppData\Roaming\SecuROM =>.SecuROM
O43 - CFD: 10/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Shooter =>.Marcel Pol
O43 - CFD: 07/10/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Skype =>.Skype
O43 - CFD: 07/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\SNARER =>.SUP.InterSectAlliance
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Sony =>.Sony
O43 - CFD: 03/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\StepMania 5
O43 - CFD: 10/05/2017 - [] RSHD -- C:\Users\BOB\AppData\Roaming\Syst3m
O43 - CFD: 06/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\TechSmith =>.TechSmith
O43 - CFD: 14/10/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Theta
O43 - CFD: 07/06/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Twitch Setup
O43 - CFD: 26/04/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Ubisoft =>.Ubisoft
O43 - CFD: 15/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\uMod
O43 - CFD: 06/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Unity =>.Unity
O43 - CFD: 08/10/2017 - [] D -- C:\Users\BOB\AppData\Roaming\uTorrent
O43 - CFD: 26/11/2016 - [] D -- C:\Users\BOB\AppData\Roaming\VEGAS Pro
O43 - CFD: 06/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Visual Studio Setup =>.Pinnacle Systems, Inc.
O43 - CFD: 06/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\vstelemetry =>.Legitimate
O43 - CFD: 13/09/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Webdriver v2.177
O43 - CFD: 13/09/2017 - [] RSHD -- C:\Users\BOB\AppData\Roaming\Win32
O43 - CFD: 05/12/2016 - [] D -- C:\Users\BOB\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 02/06/2017 - [] D -- C:\Users\BOB\AppData\Roaming\WinSAPSvc =>PUP.Optional.Youndoo
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 13/09/2017 - [] D -- C:\Users\BOB\AppData\Local\ Design
O43 - CFD: 09/05/2017 - [] D -- C:\Users\BOB\AppData\Local\.IdentityService
O43 - CFD: 21/12/2017 - [] HD -- C:\Users\BOB\AppData\Local\319ef92251a8e9ae
O43 - CFD: 01/07/2017 - [0] HD -- C:\Users\BOB\AppData\Local\3eeff7a97faf3c4f
O43 - CFD: 13/12/2017 - [0] HD -- C:\Users\BOB\AppData\Local\455b2ddb3151974e
O43 - CFD: 10/07/2017 - [0] HD -- C:\Users\BOB\AppData\Local\49814b0d62a9af45
O43 - CFD: 08/11/2017 - [0] HD -- C:\Users\BOB\AppData\Local\79acc70563333d20
O43 - CFD: 16/10/2017 - [] D -- C:\Users\BOB\AppData\Local\Activision =>.Activision
O43 - CFD: 05/11/2017 - [] D -- C:\Users\BOB\AppData\Local\Adobe =>.Adobe
O43 - CFD: 23/04/2017 - [] D -- C:\Users\BOB\AppData\Local\AdvinstAnalytics =>.SUP.Various
O43 - CFD: 10/04/2017 - [] D -- C:\Users\BOB\AppData\Local\AMD =>.AMD
O43 - CFD: 16/05/2016 - [0] SHD -- C:\Users\BOB\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 04/09/2016 - [] D -- C:\Users\BOB\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 16/04/2017 - [] D -- C:\Users\BOB\AppData\Local\AppTrailers =>Adware.AppTrailers
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Local\assembly =>.Assembly
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Local\Avg =>.AVG Software
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Local\AvgSetupLog =>.AVG Software
O43 - CFD: 13/09/2017 - [] D -- C:\Users\BOB\AppData\Local\background_fault
O43 - CFD: 01/07/2017 - [] D -- C:\Users\BOB\AppData\Local\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 20/09/2016 - [] D -- C:\Users\BOB\AppData\Local\CEF =>.CEF
O43 - CFD: 15/11/2017 - [] D -- C:\Users\BOB\AppData\Local\Chromium =>.Chromium
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 01/04/2017 - [] D -- C:\Users\BOB\AppData\Local\CrashRpt
O43 - CFD: 20/12/2017 - [] D -- C:\Users\BOB\AppData\Local\Creepy_Simulator
O43 - CFD: 14/11/2017 - [] D -- C:\Users\BOB\AppData\Local\CSHMDR
O43 - CFD: 17/05/2017 - [] D -- C:\Users\BOB\AppData\Local\CWASRE
O43 - CFD: 01/05/2017 - [0] D -- C:\Users\BOB\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 26/11/2017 - [0] D -- C:\Users\BOB\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 09/08/2017 - [] D -- C:\Users\BOB\AppData\Local\Discord =>.GitHub
O43 - CFD: 24/02/2017 - [] D -- C:\Users\BOB\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 17/04/2017 - [] D -- C:\Users\BOB\AppData\Local\Eastness
O43 - CFD: 30/10/2017 - [] D -- C:\Users\BOB\AppData\Local\Eclipse =>.Eclipse
O43 - CFD: 14/10/2017 - [0] D -- C:\Users\BOB\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 11/05/2017 - [] D -- C:\Users\BOB\AppData\Local\EMU =>.Games Software
O43 - CFD: 20/06/2017 - [] D -- C:\Users\BOB\AppData\Local\Fanlook
O43 - CFD: 23/12/2017 - [] D -- C:\Users\BOB\AppData\Local\FileZilla =>.FileZilla
O43 - CFD: 11/03/2017 - [] D -- C:\Users\BOB\AppData\Local\Firefox =>.Mozilla Corporation
O43 - CFD: 02/06/2017 - [] D -- C:\Users\BOB\AppData\Local\glory
O43 - CFD: 09/07/2017 - [] D -- C:\Users\BOB\AppData\Local\Google =>.Google
O43 - CFD: 04/10/2016 - [] D -- C:\Users\BOB\AppData\Local\GWX =>.GWX
O43 - CFD: 08/06/2017 - [] D -- C:\Users\BOB\AppData\Local\HelloNeighborReborn
O43 - CFD: 16/05/2016 - [0] SHD -- C:\Users\BOB\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 16/05/2016 - [] D -- C:\Users\BOB\AppData\Local\Intel_Corporation =>.Intel Corporation
O43 - CFD: 20/04/2017 - [] D -- C:\Users\BOB\AppData\Local\Kitty =>.SUP.Elex
O43 - CFD: 03/05/2017 - [] D -- C:\Users\BOB\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 01/02/2017 - [] D -- C:\Users\BOB\AppData\Local\Mega Limited =>.MEGA Limited
O43 - CFD: 12/03/2017 - [] D -- C:\Users\BOB\AppData\Local\Meltytech
O43 - CFD: 01/09/2017 - [] D -- C:\Users\BOB\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 23/04/2017 - [] D -- C:\Users\BOB\AppData\Local\MicrosoftHelper =>.Microsoft Corporation
O43 - CFD: 23/04/2017 - [] D -- C:\Users\BOB\AppData\Local\MicrosoftUpdater =>.Microsoft Corporation
O43 - CFD: 23/03/2017 - [] D -- C:\Users\BOB\AppData\Local\Mirillis =>.Mirillis
O43 - CFD: 10/07/2017 - [] D -- C:\Users\BOB\AppData\Local\MultiPlayerManager
O43 - CFD: 05/08/2017 - [] D -- C:\Users\BOB\AppData\Local\Nox =>.FFmpeg Project
O43 - CFD: 11/05/2017 - [] D -- C:\Users\BOB\AppData\Local\NPASRE
O43 - CFD: 09/05/2017 - [] D -- C:\Users\BOB\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 05/05/2017 - [] D -- C:\Users\BOB\AppData\Local\paint.net =>.Rick Brewster
O43 - CFD: 09/08/2017 - [] D -- C:\Users\BOB\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 27/04/2017 - [] D -- C:\Users\BOB\AppData\Local\PRO_PC_Cleaner =>.SUP.PCCleaner
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Local\Pujadom
O43 - CFD: 02/05/2017 - [] D -- C:\Users\BOB\AppData\Local\Rockstar Games =>.Rockstar Games
O43 - CFD: 08/03/2017 - [] D -- C:\Users\BOB\AppData\Local\Rockstar_Games
O43 - CFD: 06/05/2017 - [] D -- C:\Users\BOB\AppData\Local\ServiceHub
O43 - CFD: 29/10/2017 - [] D -- C:\Users\BOB\AppData\Local\sesorelit
O43 - CFD: 16/10/2017 - [] D -- C:\Users\BOB\AppData\Local\SKIDROW =>.SKIDROW
O43 - CFD: 25/05/2017 - [] D -- C:\Users\BOB\AppData\Local\SNARE
O43 - CFD: 03/05/2017 - [] D -- C:\Users\BOB\AppData\Local\SNAREA
O43 - CFD: 29/05/2016 - [] D -- C:\Users\BOB\AppData\Local\Sonic7
O43 - CFD: 02/04/2017 - [] D -- C:\Users\BOB\AppData\Local\Sony =>.Sony
O43 - CFD: 19/05/2017 - [] D -- C:\Users\BOB\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 01/03/2017 - [] D -- C:\Users\BOB\AppData\Local\Steam =>.Steam Games
O43 - CFD: 16/10/2017 - [0] D -- C:\Users\BOB\AppData\Local\TeamSpeak 3 Client =>.TeamSpeak
O43 - CFD: 01/04/2017 - [] D -- C:\Users\BOB\AppData\Local\TechSmith =>.TechSmith
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 16/05/2016 - [0] SHD -- C:\Users\BOB\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 31/05/2017 - [] D -- C:\Users\BOB\AppData\Local\terana
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Local\tkdata =>.TK-Data
O43 - CFD: 04/09/2016 - [] D -- C:\Users\BOB\AppData\Local\Unity =>.Unity
O43 - CFD: 08/06/2017 - [] D -- C:\Users\BOB\AppData\Local\UnrealEngine =>.Unreal Software
O43 - CFD: 26/11/2016 - [] D -- C:\Users\BOB\AppData\Local\VEGAS Pro
O43 - CFD: 29/08/2017 - [] D -- C:\Users\BOB\AppData\Local\vGpCJziLEf
O43 - CFD: 12/03/2017 - [] D -- C:\Users\BOB\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 10/05/2017 - [] D -- C:\Users\BOB\AppData\Local\VNASRE
O43 - CFD: 05/05/2017 - [] D -- C:\Users\BOB\AppData\Local\WANARE
O43 - CFD: 29/04/2017 - [] D -- C:\Users\BOB\AppData\Local\Windows Live =>.Microsoft Corporation
O43 - CFD: 25/01/2017 - [] D -- C:\Users\BOB\AppData\Local\Wondershare =>.Wondershare
O43 - CFD: 27/12/2017 - [] D -- C:\Users\BOB\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 19/04/2017 - [] D -- C:\Users\BOB\AppData\Local\Zsiphkifegh
O43 - CFD: 20/12/2017 - [] D -- C:\Users\BOB\AppData\Local\{9D7FAB23-B9D7-C79B-D44F-E273F0271EEB}
O43 - CFD: 29/10/2017 - [] D -- C:\Users\BOB\AppData\Local\{CE8DF8D1-EA25-9469-87BD-B181A3D54D19}
O43 - CFD: 27/05/2017 - [] D -- C:\Users\BOB\AppData\Local\{E3BCD5E0-C714-B958-AA8C-9CB08EE46028}
O43 - CFD: 30/04/2017 - [0] D -- C:\Users\BOB\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 09/08/2017 - [] D -- C:\Users\BOB\AppData\Local\Programs\GEN =>Adware.Geniv
O43 - CFD: 09/08/2017 - [] D -- C:\Users\BOB\AppData\Local\Programs\SwytShopAlgoadChrome_Pkg4 =>PUP.Optional.SwytShop
O43 - CFD: 23/12/2017 - [] RD -- C:\Users\BOB\Desktop\Bureau =>.Microsoft Corporation
O43 - CFD: 18/11/2017 - [] D -- C:\Users\BOB\Desktop\dz
O43 - CFD: 15/11/2017 - [] D -- C:\Users\BOB\Desktop\Ether Program (EP)
O43 - CFD: 03/11/2017 - [] D -- C:\Users\BOB\Desktop\GAMEDATA BACKUP
O43 - CFD: 04/12/2017 - [] D -- C:\Users\BOB\Desktop\Jules_Kerman_ATV__Ariane_5._LonesomeRobots_Aerospace-1.1
O43 - CFD: 09/12/2017 - [] D -- C:\Users\BOB\Desktop\Nouveau dossier
O43 - CFD: 03/11/2017 - [] D -- C:\Users\BOB\Desktop\saves
O43 - CFD: 23/12/2017 - [] D -- C:\Users\BOB\Desktop\Test 1 2 1 2
O43 - CFD: 26/12/2017 - [0] D -- C:\Users\BOB\Desktop\tout gamedata
O43 - CFD: 25/12/2017 - [] D -- C:\Users\BOB\Desktop\YandereSimulator_Data
O43 - CFD: 08/08/2017 - [] D -- C:\Users\BOB\Desktop\ZooCraft
O43 - CFD: 13/10/2016 - [] RD -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 09/08/2017 - [0] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
O43 - CFD: 06/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eclipse =>.Eclipse
O43 - CFD: 15/10/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 19/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc =>.Hammer & Chisel, Inc
O43 - CFD: 06/05/2017 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2017 Tools for Unity =>.Pinnacle Systems, Inc.
O43 - CFD: 13/09/2017 - [] RD -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 10/03/2017 - [] D -- C:\Users\Default\AppData\Local\LogMeIn Hamachi =>.LogMeIn Entreprise
O43 - CFD: 03/05/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 10/03/2017 - [] D -- C:\Users\Default User\AppData\Local\LogMeIn Hamachi =>.LogMeIn Entreprise
O43 - CFD: 03/05/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 27/12/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software
O43 - CFD: 27/12/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 04/09/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Dell_Inc
O43 - CFD: 14/07/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/03/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft
O43 - CFD: 01/06/2017 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 07/03/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Tencent =>.SUP.Tencent

---\\ ShellExecuteHook (2) - 0s
O46 - SEH:ShellExecuteHooks - (no name) - [HKLM] [64Bits] - {7AE915BA-F77B-11E6-9977-64006A5CFC23} . (...) -- (.not file.)
O46 - SEH:ShellExecuteHooks - (no name) - [HKLM] [64Bits] - {64372564-12F4-11E7-9E37-64006A5CFC23} . (...) -- (.not file.)

---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 1s
O106 - SIOI: [ AccExtIco1] - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}. (.Copyright © 2013-2016, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco2] - {853B7E05-C47D-4985-909A-D0DC5C6D7303}. (.Copyright © 2013-2016, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco3] - {42D38F2E-98E9-4382-B546-E24E4D6D04BB}. (.Copyright © 2013-2016, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [DBRShellOverlayBackupFile] - {831CEBDD-6BAF-4432-BE76-9E0989C14AEF}. (.Softthinks SAS - DBROverlayIconBackuped.) -- C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIconBackuped.dll {662C24AB4C79C0FF31A299BEC88364BC} =>.SoftThinks SAS
O106 - SIOI: [DBRShellOverlayModifiedBackupFile] - {275E4FD7-21EF-45CF-A836-832E5D2CC1B3}. (.Softthinks SAS - DBROverlayIconNotBackuped.) -- C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIconNotBackuped.dll {662C24AB4C79C0FF31A299BEC88364BC} =>.SoftThinks SAS
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Raccourcis de menus conceptuels (SCMH) (35) - 1s
O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.)
O108 - CMH1: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.Copyright © 2013-2016, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: MagicISO [64Bits] - {DB85C504-C730-49DD-BEC1-7B39C6103B7A} . (.Orphan.)
O108 - CMH1: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\BOB\AppData\Local\MEGAsync\ShellExtX64.dll (.not file.)
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files (x86)\WinRAR\RarExt64.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\BOB\AppData\Local\MEGAsync\ShellExtX64.dll (.not file.)
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.)
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: MagicISO [64Bits] - {DB85C504-C730-49DD-BEC1-7B39C6103B7A} . (.Orphan.)
O108 - CMH4: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\BOB\AppData\Local\MEGAsync\ShellExtX64.dll (.not file.)
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation
O108 - CMH5: igfxcui [64Bits] - {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} . (.Intel Corporation - igfxpph Module.) -- C:\Windows\system32\igfxpph.dll =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.)
O108 - CMH6: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.Copyright © 2013-2016, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH6: MagicISO [64Bits] - {DB85C504-C730-49DD-BEC1-7B39C6103B7A} . (.Orphan.)
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files (x86)\WinRAR\RarExt64.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Image File Execution Options (5) - 1s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rstrui.exe - (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) [Debugger\\xsytzecrn.exe] =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (12) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] [64Bits] . (...) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\AnumanLive [Key] [64Bits] . (.Anuman Interactive - Anuman Live.) -- C:\Users\BOB\AppData\Roaming\Anuman Interactive\AnumanLive\AnumanLive.exe =>.Anuman Interactive
O53 - SMSR:HKLM\...\startupreg\avgnt [Key] [64Bits] . (...) -- C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Avira SystrayStartTrigger [Key] [64Bits] . (...) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\BingSvc [Key] [64Bits] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\BOB\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.© 2015 Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\boincmgr [Key] [64Bits] . (...) -- C:\Program Files (x86)\BOINC\charityengine.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\boinctray [Key] [64Bits] . (...) -- C:\Program Files (x86)\BOINC\boinctray.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\cacaoweb [Key] [64Bits] . (...) -- C:\Users\BOB\AppData\Roaming\cacaoweb\cacaoweb.exe =>.SUP.CacaoWeb
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] [64Bits] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd
O53 - SMSR:HKLM\...\startupreg\Chromium [Key] [64Bits] . (.The Chromium Authors - Chromium.) -- c:\Users\BOB\AppData\Local\Chromium\application\chrome.exe =>.The Chromium Authors
O53 - SMSR:HKLM\...\startupreg\LogMeIn Hamachi Ui [Key] [64Bits] . (...) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Skype [Key] [64Bits] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.

---\\ Liste des pilotes du système (211) - 60s
O58 - SDL:2017/08/09 16:02:06 A . (...) -- C:\Windows\System32\drivers\24ca7e6b7f2b5486.sys [75208]
O58 - SDL:2017/08/08 22:15:22 A . (.4T3RFP - .) -- C:\Windows\System32\drivers\727e14596581e16b053daf7e98d13948.sys [104512] {71C3DB93741E6C626EF8159E}
O58 - SDL:2017/03/24 16:49:12 A . (.MPDV6U - .) -- C:\Windows\System32\drivers\98ac82ef4517b63d3a7b9d6c55ea5fda.sys [8501584] {5F1B3F60755E72C7949B50A7}
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2013/07/01 20:33:40 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2013/07/01 20:33:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2017/03/02 17:02:07 A . (...) -- C:\Windows\System32\drivers\atksgt.sys [314016] =>.Tages SA®
O58 - SDL:2017/04/13 19:19:34 A . (.09ND1T - .) -- C:\Windows\System32\drivers\b22c74fadda839ed00548ea83840e1b7.sys [8501584] {3A19A907EDA6879AA407C3A0}
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2017/07/27 10:52:46 A . (.Dell Inc. - DDDriver.sys.) -- C:\Windows\System32\drivers\DDDriver64Dcsa.sys [32960] =>.Techporch Incorporated®
O58 - SDL:2017/07/27 10:52:46 A . (.Dell Computer Corporation - DellProf.sys.) -- C:\Windows\System32\drivers\DellProf.sys [32568] =>.Techporch Incorporated®
O58 - SDL:2017/02/24 18:54:32 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2017/02/24 18:58:56 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd®
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2016/09/13 17:53:46 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [34720] =>.LogMeIn, Inc.®
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2013/12/09 23:27:36 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [64472] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2013/07/24 21:28:34 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [666984] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/07/24 21:28:28 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [28008] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/07/01 20:33:40 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2014/01/22 22:51:26 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4221440] =>.Intel Corporation
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2014/01/22 22:57:34 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [450520] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2017/02/16 12:02:34 N . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\Windows\System32\drivers\iqvw64e.sys [37832] =>.Intel(R) Intel Network Drivers®
O58 - SDL:2016/05/23 03:41:44 A . (.Elex do Brasil Participações Ltda - iSafe Kernel Boot Driver.) -- C:\Windows\System32\drivers\iSafeKrnlBoot.sys [55056] =>.SUP.Elex
O58 - SDL:2016/05/19 07:42:01 A . (.Elex do Brasil Participações Ltda - iSafeNetFilter SDK WFP Driver (WPP).) -- C:\Windows\System32\drivers\iSafeNetFilter.sys [52392] =>.SUP.Elex
O58 - SDL:2013/04/26 03:40:42 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [20464] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/04/26 03:40:36 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [368112] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/04/26 03:40:36 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [786416] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2017/09/06 13:24:13 A . (...) -- C:\Windows\System32\drivers\lanmamaster.sys [1491560] =>Adware.ChinAd
O58 - SDL:2017/03/02 17:02:06 A . (...) -- C:\Windows\System32\drivers\lirsgt.sys [43680] =>.Tages SA®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\msdsm.sys [140672] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:47 A . (...) -- C:\Windows\System32\drivers\msfs.sys [26112]
O58 - SDL:2009/07/14 01:06:24 A . (...) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192]
O58 - SDL:2009/07/14 02:48:27 A . (...) -- C:\Windows\System32\drivers\msisadrv.sys [15424]
O58 - SDL:2015/10/09 01:06:11 A . (...) -- C:\Windows\System32\drivers\msiscsi.sys [274880]
O58 - SDL:2009/07/14 01:00:18 A . (...) -- C:\Windows\System32\drivers\mskssrv.sys [11136] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:17 A . (...) -- C:\Windows\System32\drivers\mspclock.sys [7168] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:17 A . (...) -- C:\Windows\System32\drivers\mspqm.sys [6784] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (...) -- C:\Windows\System32\drivers\msrpc.sys [366976]
O58 - SDL:2009/07/14 02:48:27 A . (...) -- C:\Windows\System32\drivers\mssmbios.sys [32320]
O58 - SDL:2009/07/14 01:00:17 A . (...) -- C:\Windows\System32\drivers\mstee.sys [8064] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:02:08 A . (...) -- C:\Windows\System32\drivers\MTConfig.sys [15360]
O58 - SDL:2015/10/09 01:06:03 A . (...) -- C:\Windows\System32\drivers\mup.sys [104896]
O58 - SDL:2015/10/13 05:57:21 A . (...) -- C:\Windows\System32\drivers\ndis.sys [950720]
O58 - SDL:2009/07/14 01:08:13 A . (...) -- C:\Windows\System32\drivers\ndiscap.sys [35328]
O58 - SDL:2009/07/14 01:10:00 A . (...) -- C:\Windows\System32\drivers\ndistapi.sys [24064]
O58 - SDL:2010/11/21 04:24:32 A . (...) -- C:\Windows\System32\drivers\ndisuio.sys [56832]
O58 - SDL:2010/11/21 04:24:08 A . (...) -- C:\Windows\System32\drivers\ndiswan.sys [164352]
O58 - SDL:2010/11/21 04:24:14 A . (...) -- C:\Windows\System32\drivers\ndproxy.sys [57856]
O58 - SDL:2009/07/14 01:09:26 A . (...) -- C:\Windows\System32\drivers\netbios.sys [44544]
O58 - SDL:2016/05/11 15:58:23 A . (...) -- C:\Windows\System32\drivers\netbt.sys [262144]
O58 - SDL:2016/07/07 16:36:18 A . (...) -- C:\Windows\System32\drivers\netio.sys [377576]
O58 - SDL:2017/04/01 21:24:39 A . (...) -- C:\Windows\System32\drivers\NetUtils2016.sys [909944] =>.SUP.Netutils
O58 - SDL:2010/11/21 04:23:48 A . (...) -- C:\Windows\System32\drivers\netvsc60.sys [168448]
O58 - SDL:2009/07/14 02:48:26 A . (...) -- C:\Windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2009/07/14 00:19:48 A . (...) -- C:\Windows\System32\drivers\npfs.sys [44032]
O58 - SDL:2009/07/14 00:21:02 A . (...) -- C:\Windows\System32\drivers\nsiproxy.sys [24576]
O58 - SDL:2016/01/11 20:11:08 A . (...) -- C:\Windows\System32\drivers\ntfs.sys [1684416]
O58 - SDL:2009/07/14 00:19:38 A . (...) -- C:\Windows\System32\drivers\null.sys [6144]
O58 - SDL:2013/07/01 20:33:40 A . (...) -- C:\Windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2013/07/01 20:33:40 A . (...) -- C:\Windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2009/07/14 02:48:26 A . (...) -- C:\Windows\System32\drivers\NV_AGP.SYS [122960]
O58 - SDL:2009/07/14 01:07:23 A . (...) -- C:\Windows\System32\drivers\nwifi.sys [318976]
O58 - SDL:2009/07/14 01:06:45 A . (...) -- C:\Windows\System32\drivers\ohci1394.sys [72832] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:08 A . (...) -- C:\Windows\System32\drivers\pacer.sys [131584]
O58 - SDL:2009/07/14 01:00:41 A . (...) -- C:\Windows\System32\drivers\parport.sys [97280]
O58 - SDL:2013/07/01 20:34:03 A . (...) -- C:\Windows\System32\drivers\partmgr.sys [75120]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\pci.sys [184704]
O58 - SDL:2009/07/14 02:45:45 A . (...) -- C:\Windows\System32\drivers\pciide.sys [12352]
O58 - SDL:2009/07/14 02:45:46 A . (...) -- C:\Windows\System32\drivers\pciidex.sys [48720]
O58 - SDL:2009/07/14 02:45:45 A . (...) -- C:\Windows\System32\drivers\pcmcia.sys [220752]
O58 - SDL:2009/07/14 02:45:45 A . (...) -- C:\Windows\System32\drivers\pcw.sys [50768]
O58 - SDL:2016/06/14 18:11:06 A . (...) -- C:\Windows\System32\drivers\PEAuth.sys [663552]
O58 - SDL:2015/12/08 19:12:08 A . (...) -- C:\Windows\System32\drivers\portcls.sys [230400]
O58 - SDL:2009/07/14 00:19:25 A . (...) -- C:\Windows\System32\drivers\processr.sys [60416]
O58 - SDL:2009/07/14 02:45:46 A . (...) -- C:\Windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/14 02:45:45 A . (...) -- C:\Windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2009/07/14 01:09:48 A . (...) -- C:\Windows\System32\drivers\qwavedrv.sys [46592]
O58 - SDL:2009/07/14 01:10:09 A . (...) -- C:\Windows\System32\drivers\rasacd.sys [14848]
O58 - SDL:2010/11/21 04:24:33 A . (...) -- C:\Windows\System32\drivers\rasl2tp.sys [129536]
O58 - SDL:2009/07/14 01:10:17 A . (...) -- C:\Windows\System32\drivers\raspppoe.sys [92672]
O58 - SDL:2010/11/21 04:24:33 A . (...) -- C:\Windows\System32\drivers\raspptp.sys [111104]
O58 - SDL:2009/07/14 01:10:25 A . (...) -- C:\Windows\System32\drivers\rassstp.sys [83968]
O58 - SDL:2015/10/09 01:06:02 A . (...) -- C:\Windows\System32\drivers\rdbss.sys [310272]
O58 - SDL:2009/07/14 01:17:46 A . (...) -- C:\Windows\System32\drivers\rdpbus.sys [24064]
O58 - SDL:2009/07/14 01:16:34 A . (...) -- C:\Windows\System32\drivers\RDPCDD.sys [7680]
O58 - SDL:2010/11/21 04:25:07 A . (...) -- C:\Windows\System32\drivers\rdpdr.sys [165888]
O58 - SDL:2009/07/14 01:16:34 A . (...) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680]
O58 - SDL:2009/07/14 01:16:35 A . (...) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192]
O58 - SDL:2014/07/17 02:21:54 A . (...) -- C:\Windows\System32\drivers\rdpwd.sys [212480]
O58 - SDL:2010/11/21 04:24:33 A . (...) -- C:\Windows\System32\drivers\rdyboost.sys [213888]
O58 - SDL:2015/11/05 10:53:59 A . (...) -- C:\Windows\System32\drivers\rmcast.sys [146944]
O58 - SDL:2013/07/01 20:33:35 A . (...) -- C:\Windows\System32\drivers\RNDISMP.sys [41472]
O58 - SDL:2009/07/14 01:10:47 A . (...) -- C:\Windows\System32\drivers\rootmdm.sys [11264]
O58 - SDL:2009/07/14 01:08:51 A . (...) -- C:\Windows\System32\drivers\rspndr.sys [76800]
O58 - SDL:2013/04/10 20:09:24 A . (...) -- C:\Windows\System32\drivers\Rt64win7.sys [849992]
O58 - SDL:2013/07/31 05:16:46 A . (...) -- C:\Windows\System32\drivers\RTKVHD64.sys [3564376]
O58 - SDL:2013/07/09 22:58:32 A . (...) -- C:\Windows\System32\drivers\RtsUStor.sys [263896]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\sbp2port.sys [103808]
O58 - SDL:2010/11/21 04:24:09 A . (...) -- C:\Windows\System32\drivers\scfilter.sys [29696]
O58 - SDL:2013/05/19 08:02:50 A . (...) -- C:\Windows\System32\drivers\ScpVBus.sys [39168]
O58 - SDL:2010/11/21 04:24:00 A . (...) -- C:\Windows\System32\drivers\scsiport.sys [171392]
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - .) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 01:00:33 A . (...) -- C:\Windows\System32\drivers\serenum.sys [23552]
O58 - SDL:2009/07/14 01:00:40 A . (...) -- C:\Windows\System32\drivers\serial.sys [94208]
O58 - SDL:2009/07/14 01:00:20 A . (...) -- C:\Windows\System32\drivers\sermouse.sys [26624]
O58 - SDL:2009/07/14 01:01:01 A . (...) -- C:\Windows\System32\drivers\sffdisk.sys [14336]
O58 - SDL:2009/07/14 01:01:03 A . (...) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\sffp_sd.sys [14336]
O58 - SDL:2009/07/14 01:01:02 A . (...) -- C:\Windows\System32\drivers\sfloppy.sys [16896]
O58 - SDL:2009/07/14 02:45:45 A . (...) -- C:\Windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/14 02:45:46 A . (...) -- C:\Windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2009/07/14 01:09:09 A . (...) -- C:\Windows\System32\drivers\smb.sys [93184]
O58 - SDL:2009/07/14 01:00:35 A . (...) -- C:\Windows\System32\drivers\smclib.sys [20992]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\spldr.sys [19008]
O58 - SDL:2009/06/10 21:48:43 A . (...) -- C:\Windows\System32\drivers\spsys.sys [426496]
O58 - SDL:2017/02/11 16:58:19 A . (...) -- C:\Windows\System32\drivers\srv.sys [462848]
O58 - SDL:2017/02/11 16:58:11 A . (...) -- C:\Windows\System32\drivers\srv2.sys [405504]
O58 - SDL:2017/02/11 16:58:06 A . (...) -- C:\Windows\System32\drivers\srvnet.sys [168960]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2015/10/09 01:06:11 A . (...) -- C:\Windows\System32\drivers\storport.sys [190912]
O58 - SDL:2009/07/14 01:01:04 A . (...) -- C:\Windows\System32\drivers\tape.sys [29184]
O58 - SDL:2016/07/07 16:36:20 A . (...) -- C:\Windows\System32\drivers\tcpip.sys [1896168]
O58 - SDL:2016/07/07 16:08:06 A . (...) -- C:\Windows\System32\drivers\tcpipreg.sys [46080]
O58 - SDL:2010/11/21 04:24:01 A . (...) -- C:\Windows\System32\drivers\tdi.sys [26624]
O58 - SDL:2009/07/14 01:16:32 A . (...) -- C:\Windows\System32\drivers\tdpipe.sys [15872]
O58 - SDL:2013/07/01 20:33:54 A . (...) -- C:\Windows\System32\drivers\tdtcp.sys [23552]
O58 - SDL:2015/10/13 17:40:33 A . (...) -- C:\Windows\System32\drivers\tdx.sys [118272]
O58 - SDL:2013/12/09 23:27:36 A . (...) -- C:\Windows\System32\drivers\TeeDriverx64.sys [100312]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\termdd.sys [63360]
O58 - SDL:2017/03/08 05:24:21 A . (...) -- C:\Windows\System32\drivers\TMhardware.sys [220200]
O58 - SDL:2014/07/17 02:21:27 A . (...) -- C:\Windows\System32\drivers\tssecsrv.sys [39936]
O58 - SDL:2010/11/21 04:24:33 A . (...) -- C:\Windows\System32\drivers\TsUsbFlt.sys [59392]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\TsUsbGD.sys [31232]
O58 - SDL:2010/11/21 04:24:15 A . (...) -- C:\Windows\System32\drivers\tunnel.sys [125440]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\UAGP35.SYS [64080]
O58 - SDL:2010/11/21 04:23:55 A . (...) -- C:\Windows\System32\drivers\udfs.sys [328192]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [64592]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\umbus.sys [48640]
O58 - SDL:2009/07/14 01:06:52 A . (...) -- C:\Windows\System32\drivers\umpass.sys [9728]
O58 - SDL:2013/07/01 20:33:39 A . (...) -- C:\Windows\System32\drivers\usb8023.sys [19968]
O58 - SDL:2015/10/09 01:05:25 A . (...) -- C:\Windows\System32\drivers\USBAUDIO.sys [109824]
O58 - SDL:2010/11/21 04:24:11 A . (...) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896] =>.Microsoft Corporation
O58 - SDL:2016/08/16 21:40:16 A . (...) -- C:\Windows\System32\drivers\usbccgp.sys [99840]
O58 - SDL:2015/10/09 01:05:25 A . (...) -- C:\Windows\System32\drivers\usbcir.sys [100864]
O58 - SDL:2016/08/16 21:40:06 A . (...) -- C:\Windows\System32\drivers\usbd.sys [7808] =>.Microsoft Corporation
O58 - SDL:2016/08/16 21:40:12 A . (...) -- C:\Windows\System32\drivers\usbehci.sys [56320]
O58 - SDL:2016/08/16 21:40:26 A . (...) -- C:\Windows\System32\drivers\usbhub.sys [343552]
O58 - SDL:2016/08/16 21:40:10 A . (...) -- C:\Windows\System32\drivers\usbohci.sys [25600]
O58 - SDL:2016/08/16 21:40:11 A . (...) -- C:\Windows\System32\drivers\usbport.sys [327168]
O58 - SDL:2009/07/14 01:38:18 A . (...) -- C:\Windows\System32\drivers\usbprint.sys [25088]
O58 - SDL:2010/11/21 04:24:39 A . (...) -- C:\Windows\System32\drivers\usbrpm.sys [31744]
O58 - SDL:2016/02/03 19:07:06 A . (...) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648]
O58 - SDL:2016/08/16 21:40:09 A . (...) -- C:\Windows\System32\drivers\usbuhci.sys [30720]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\vdrvroot.sys [36432]
O58 - SDL:2009/07/14 00:38:47 A . (...) -- C:\Windows\System32\drivers\vga.sys [29184]
O58 - SDL:2009/07/14 00:38:47 A . (...) -- C:\Windows\System32\drivers\vgapnp.sys [29184]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\vhdmp.sys [215936]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2009/07/14 00:38:51 A . (...) -- C:\Windows\System32\drivers\videoprt.sys [129024]
O58 - SDL:2010/11/21 04:23:48 A . (...) -- C:\Windows\System32\drivers\vmbus.sys [199552]
O58 - SDL:2010/11/21 04:23:48 A . (...) -- C:\Windows\System32\drivers\VMBusHID.sys [21760]
O58 - SDL:2010/11/21 04:23:48 A . (...) -- C:\Windows\System32\drivers\VMBusVideoM.sys [22528]
O58 - SDL:2010/11/21 04:23:48 A . (...) -- C:\Windows\System32\drivers\vms3cap.sys [6656]
O58 - SDL:2010/11/21 04:23:48 A . (...) -- C:\Windows\System32\drivers\vmstorfl.sys [46464]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\volmgr.sys [71552]
O58 - SDL:2010/11/21 04:24:15 A . (...) -- C:\Windows\System32\drivers\volmgrx.sys [363392]
O58 - SDL:2013/07/01 20:33:34 A . (...) -- C:\Windows\System32\drivers\volsnap.sys [296320]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\vsmraid.sys [161872]
O58 - SDL:2009/07/14 01:07:21 A . (...) -- C:\Windows\System32\drivers\vwifibus.sys [24576]
O58 - SDL:2009/07/14 01:07:22 A . (...) -- C:\Windows\System32\drivers\vwififlt.sys [59904]
O58 - SDL:2009/07/14 01:07:28 A . (...) -- C:\Windows\System32\drivers\vwifimp.sys [17920]
O58 - SDL:2009/07/14 01:02:07 A . (...) -- C:\Windows\System32\drivers\wacompen.sys [27776] =>.Wacom Technology
O58 - SDL:2010/11/21 04:24:11 A . (...) -- C:\Windows\System32\drivers\wanarp.sys [88576]
O58 - SDL:2009/07/14 00:37:35 A . (...) -- C:\Windows\System32\drivers\watchdog.sys [42496]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\wd.sys [21056]
O58 - SDL:2015/10/09 01:06:19 A . (...) -- C:\Windows\System32\drivers\Wdf01000.sys [785624]
O58 - SDL:2015/10/09 01:06:19 A . (...) -- C:\Windows\System32\drivers\WdfLdr.sys [54376]
O58 - SDL:2009/07/14 01:09:26 A . (...) -- C:\Windows\System32\drivers\wfplwf.sys [12800]
O58 - SDL:2010/11/21 04:23:48 A . (...) -- C:\Windows\System32\drivers\winhv.sys [52096]
O58 - SDL:2010/11/21 04:23:47 A . (...) -- C:\Windows\System32\drivers\winusb.sys [41984]
O58 - SDL:2009/07/14 00:31:02 A . (...) -- C:\Windows\System32\drivers\wmiacpi.sys [14336]
O58 - SDL:2009/07/14 02:45:55 A . (...) -- C:\Windows\System32\drivers\wmilib.sys [16464]
O58 - SDL:2009/07/14 01:10:33 A . (...) -- C:\Windows\System32\drivers\ws2ifsl.sys [21504]
O58 - SDL:2015/10/09 01:05:18 A . (...) -- C:\Windows\System32\drivers\WUDFPf.sys [87040]
O58 - SDL:2015/10/09 01:05:18 A . (...) -- C:\Windows\System32\drivers\WUDFRd.sys [198656]
O58 - SDL:2017/03/02 13:26:12 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [34720] =>.LogMeIn, Inc.®
O58 - SDL:2017/03/10 17:00:56 A . (...) -- C:\Windows\System32\win32k.sys [3219968]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 151s
O61 - LFC: 2017/12/20 18:46:46 A . (..) -- C:\Users\BOB\AppData\Local\{9D7FAB23-B9D7-C79B-D44F-E273F0271EEB}\uninst.exe [37526]

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Firefox\Firefox.exe =>.Mengmeng Wang®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %*
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software AS®

---\\ Menu de démarrage Internet (20) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.The Chromium Authors - Chromium.) -- C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- firefox.exe (.not file.)
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- c:\program files (x86)\google\chrome\application\chrome.exe (.not file.)
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =>.Opera Software AS®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Fanlook\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.The Chromium Authors - Chromium.) -- C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Fanlook\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\BOB\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Fanlook\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software

---\\ Recherche d'infection sur les navigateurs (6) - 0s
O69 - SBI: SearchScopes [HKCU] [64Bits]{2211d4a5-48d0-47f5-a7cd-81e861470f7f} - (Bing Powered Search) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{26080cad-4adc-49ac-8c63-eda16e595cbd} - (Bing Search Engine) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{685F7985-5F85-491C-B3ED-336871ED398D} - ((duckduckgo.com) DuckDuckGo) - http://duckduckgo.com/
O69 - SBI: SearchScopes [HKCU] [64Bits]{76915921-B323-4F2D-A8A6-B7EB5D0E5E1E} - (DuckDuckGo) - http://duckduckgo.com/
O69 - SBI: SearchScopes [HKLM] [64Bits]{2211d4a5-48d0-47f5-a7cd-81e861470f7f} - (Bing Powered Search) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{d4fee3d1-1014-4db8-a824-573bf9ab51c7} - (Yahoo! Powered) - http://www.bing.com/ =>.Bing.com

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680448] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2651136] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (73) - 8s
O87 - FAEL: "TCP Query User{22D94C2F-FF5C-44A4-A007-399857B68750}C:\program files\unity\editor\unity.exe" [In-None-P6-TRUE] .(...) -- C:\program files\unity\editor\unity.exe (.not file.)
O87 - FAEL: "UDP Query User{0D5C9F79-2076-4AFD-B89C-F8FDE991B702}C:\program files\unity\editor\unity.exe" [In-None-P17-TRUE] .(...) -- C:\program files\unity\editor\unity.exe (.not file.)
O87 - FAEL: "TCP Query User{85DF755E-98F8-4079-8AAD-6B2DC71041AE}C:\program files\java\jre7\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre7\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{8AEEF54F-13C8-41B1-88D1-D0D433CE77E2}C:\program files\java\jre7\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre7\bin\javaw.exe (.not file.)
O87 - FAEL: "TCP Query User{056AB1B6-65D3-4034-82D8-B8E21D571780}C:\program files\java\jre7\bin\java.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre7\bin\java.exe (.not file.)
O87 - FAEL: "UDP Query User{1BB256A9-BD6C-4F0A-B56A-FFCBD9C0B971}C:\program files\java\jre7\bin\java.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre7\bin\java.exe (.not file.)
O87 - FAEL: "TCP Query User{8F58F52D-DCB8-4D47-819A-8EB57A5C9099}C:\program files\unity\editor\unity.exe" [In-None-P6-TRUE] .(...) -- C:\program files\unity\editor\unity.exe (.not file.)
O87 - FAEL: "UDP Query User{83AF7633-5968-4EC8-9541-028C16E80DCE}C:\program files\unity\editor\unity.exe" [In-None-P17-TRUE] .(...) -- C:\program files\unity\editor\unity.exe (.not file.)
O87 - FAEL: "{1606EC96-3D36-4C9A-B433-B87085FFC252}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.)
O87 - FAEL: "{F6180141-BC20-459B-ADF5-B9E35903BCA2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.)
O87 - FAEL: "TCP Query User{F2C40127-20DE-4E69-8062-7ADE7024E8A5}C:\users\bob\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\bob\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{2FD7CCCB-3718-40C7-A3EA-EE541F06AF0D}C:\users\bob\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\bob\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe (.not file.)
O87 - FAEL: "{302B20F9-C351-4F31-9C09-3A8A4BBDECCD}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe (.not file.)
O87 - FAEL: "{0925E1B0-1F21-4E2C-89C2-14413EEC8882}" [Out-None-P17-TRUE] .(...) -- C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe (.not file.)
O87 - FAEL: "TCP Query User{8D53D295-4021-4795-A439-5A9CFEA248E9}C:\program files (x86)\grand theft auto v\gta5.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\grand theft auto v\gta5.exe (.not file.)
O87 - FAEL: "UDP Query User{E16FC827-8AE9-46D1-9A5C-850299487849}C:\program files (x86)\grand theft auto v\gta5.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\grand theft auto v\gta5.exe (.not file.)
O87 - FAEL: "{8EE79310-B14E-4011-B3BF-575925B81DCE}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\simplitec\simplitec\simpliclean\PowerSuite.exe (.not file.) =>.SUP.SimpliClean
O87 - FAEL: "{0EFD97E3-229F-44F4-9887-F69B2172BB34}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\simplitec\simplitec\simpliclean\PowerSuite.exe (.not file.) =>.SUP.SimpliClean
O87 - FAEL: "{2DD5F29E-425B-4C75-BADB-D1017825E499}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\simplitec\simplitec\simpliclean\ServiceProvider.exe (.not file.) =>.SUP.SimpliClean
O87 - FAEL: "{F266FA27-D576-4848-B4AA-2BDD90E52586}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\simplitec\simplitec\simpliclean\ServiceProvider.exe (.not file.) =>.SUP.SimpliClean
O87 - FAEL: "{076B1C6B-150D-4A8F-AD5F-0C720984A93B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\simplitec\simplitec\simpliclean\ServiceProvider.exe (.not file.) =>.SUP.SimpliClean
O87 - FAEL: "{B0625169-92DD-4C0B-9970-0019571E3EFB}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\simplitec\simplitec\simpliclean\ServiceProvider.exe (.not file.) =>.SUP.SimpliClean
O87 - FAEL: "TCP Query User{B7B248F0-4E85-4C05-BA12-10DD253BA596}C:\users\bob\appdata\roaming\utorrent\updates\3.4.9_43388.exe" [In-None-P6-TRUE] .(...) -- C:\users\bob\appdata\roaming\utorrent\updates\3.4.9_43388.exe (.not file.)
O87 - FAEL: "UDP Query User{58BCB2E5-90FC-423B-9BC1-2DA8CCB44907}C:\users\bob\appdata\roaming\utorrent\updates\3.4.9_43388.exe" [In-None-P17-TRUE] .(...) -- C:\users\bob\appdata\roaming\utorrent\updates\3.4.9_43388.exe (.not file.)
O87 - FAEL: "{9830CFA0-4E04-4EA9-BCBA-7DC33561143B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (.not file.)
O87 - FAEL: "{3E8CB79D-4C68-4B78-90C7-357D0C59B55E}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe (.not file.)
O87 - FAEL: "TCP Query User{C864ED85-C039-4043-A859-F9CA601EEAAF}C:\program files (x86)\amulell\amule.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\amulell\amule.exe (.not file.) =>Adware.aMULEcustom
O87 - FAEL: "UDP Query User{C460536F-16B9-4447-A2EF-D1C637B9BA0C}C:\program files (x86)\amulell\amule.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\amulell\amule.exe (.not file.) =>Adware.aMULEcustom
O87 - FAEL: "{176667DA-65D3-471C-A0B5-F36A58F7C006}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe (.not file.)
O87 - FAEL: "{C033FC62-5A72-4893-80F5-A9C153760943}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe (.not file.)
O87 - FAEL: "{F3419821-B1C8-4199-A6C6-B68EAEDD599D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe (.not file.)
O87 - FAEL: "{59805D26-3816-4420-A3B0-CC5D83DB6EB0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe (.not file.)
O87 - FAEL: "{11238219-6714-4A9A-94B6-C3F154812AB5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe (.not file.)
O87 - FAEL: "{04218C14-CA4A-4FD5-995E-634D49308015}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe (.not file.)
O87 - FAEL: "{3A83DB69-FFB6-439E-BBFF-CFE46E1BDB3C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe (.not file.) =>.Steam Games
O87 - FAEL: "{7EE91610-8107-463A-A43E-658E40D6D312}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Spooky's House of Jump Scares\SPOOKY.exe (.not file.) =>.Steam Games
O87 - FAEL: "{75A231CD-170D-486C-84A4-700B7926747C}" [In-None-P6-TRUE] .(.Reakktor Studios, Epic Games, Inc. - TOXIKK.) -- C:\Program Files (x86)\Steam\SteamApps\common\TOXIKK\Binaries\Win32\TOXIKK.exe =>.Steam SteamApps Games
O87 - FAEL: "{05789131-CFEB-46B2-A8FB-0A5F8351036A}" [In-None-P17-TRUE] .(.Reakktor Studios, Epic Games, Inc. - TOXIKK.) -- C:\Program Files (x86)\Steam\SteamApps\common\TOXIKK\Binaries\Win32\TOXIKK.exe =>.Steam SteamApps Games
O87 - FAEL: "{C60667B1-5BA3-46F9-8A61-C24220A23181}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Rockstar Games\EFLC\LaunchEFLC.exe (.not file.)
O87 - FAEL: "{3C654A35-FA33-4EF3-BA8D-4B87C33EF395}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Rockstar Games\EFLC\LaunchEFLC.exe (.not file.)
O87 - FAEL: "{B25E55D2-338D-46CB-984C-DA2D341D3BBC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\SKILL\DFUBG.exe (.not file.) =>.Steam Games
O87 - FAEL: "{FC96D0FD-0371-426D-9731-944B15AECB88}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\SKILL\DFUBG.exe (.not file.) =>.Steam Games
O87 - FAEL: "{BFB27603-6763-4BCD-833C-7C6DC3FADE32}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (.not file.)
O87 - FAEL: "{DAB4580A-F04B-4F4D-9835-D61C9F8A7513}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe (.not file.)
O87 - FAEL: "{F091BC67-D3B3-4E1E-A8E9-B1781D4625A4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.)
O87 - FAEL: "{796C3C2D-0479-43D0-B80E-B6E474FFFE83}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (.not file.)
O87 - FAEL: "{1ADCA75E-3FC2-4B83-9BF3-6120622FD8AB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe (.not file.)
O87 - FAEL: "TCP Query User{84B74E7C-FB60-4A93-85C2-F60265C4B77B}C:\games\stepmania 5\program\stepmania.exe" [In-None-P6-TRUE] .(.StepMania Team http://www.stepmania.com/ - StepMania.) -- C:\games\stepmania 5\program\stepmania.exe
O87 - FAEL: "UDP Query User{5BD6AEB2-E633-42FD-B397-A594E769C155}C:\games\stepmania 5\program\stepmania.exe" [In-None-P17-TRUE] .(.StepMania Team http://www.stepmania.com/ - StepMania.) -- C:\games\stepmania 5\program\stepmania.exe
O87 - FAEL: "{BD5ACB50-B11C-4838-B277-1D50007F6A46}" [In-None-P6-TRUE] .(.Copyright © 2015 - ToxikkLauncher.) -- C:\Program Files (x86)\Steam\SteamApps\common\TOXIKK\Binaries\ToxikkLauncher.exe =>.Steam SteamApps Games
O87 - FAEL: "{6E8A92DE-4A06-4247-9DDC-7C490FD99799}" [In-None-P17-TRUE] .(.Copyright © 2015 - ToxikkLauncher.) -- C:\Program Files (x86)\Steam\SteamApps\common\TOXIKK\Binaries\ToxikkLauncher.exe =>.Steam SteamApps Games
O87 - FAEL: "{9D4E439C-B73D-4AF8-A63A-28F3E4F3AC8F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Cracked Steam\steam.exe (.not file.)
O87 - FAEL: "{3D3D1D62-FF99-469C-9F87-92808308A0A8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Cracked Steam\steam.exe (.not file.)
O87 - FAEL: "{6CCA5697-82A5-4EEF-BA3E-F71B07A0CA8A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Cracked Steam\steamapps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe (.not file.) =>.Steam Games
O87 - FAEL: "{7BA99E29-7723-4221-B784-CD5E41FA5BAC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Cracked Steam\steamapps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe (.not file.) =>.Steam Games
O87 - FAEL: "{641FE6EF-5AF6-4EED-8182-5D5A93F9D43D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned_BE.exe (.not file.) =>.Steam Games
O87 - FAEL: "{658D2C56-E8CA-48C6-8903-806D27B14792}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned_BE.exe (.not file.) =>.Steam Games
O87 - FAEL: "{32913DEC-3DEB-401F-B197-65DF86F18B91}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned.exe (.not file.) =>.Steam Games
O87 - FAEL: "{CF5529AE-6202-4186-A079-5FD9C3FCFB2D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Unturned\Unturned.exe (.not file.) =>.Steam Games
O87 - FAEL: "{7150A0D7-D8A4-4824-B921-46E4D43FEFC0}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\MIO\loader\st500dm002-1bd142_z6en4pt2xxxxz6en4pt2.dat
O87 - FAEL: "{75447380-0C13-4B9D-8446-91831CD25C72}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\MIO\loader\st500dm002-1bd142_z6en4pt2xxxxz6en4pt2.dat
O87 - FAEL: "{FF7F6779-2C63-4A1B-B895-426278A50BA7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Warface\WarfaceMycomSteamLoader.exe (.not file.) =>.Steam Games
O87 - FAEL: "{72887D1A-4C7D-43A9-AA69-402F8B3A314B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Warface\WarfaceMycomSteamLoader.exe (.not file.) =>.Steam Games
O87 - FAEL: "{F20321A6-84D0-4C12-A613-5CADB10D4908}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\MIO\loader\st500dm002-1bd142_z6en4pt2xxxxz6en4pt2.dat
O87 - FAEL: "{8E561C87-7ACF-422A-AF84-03C29397D174}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\MIO\loader\st500dm002-1bd142_z6en4pt2xxxxz6en4pt2.dat
O87 - FAEL: "TCP Query User{589BD68C-9275-4663-869B-17B16B0BAD93}C:\users\bob\desktop\hello.neighbor.alpha.1\helloneighbor\helloneighborreborn\binaries\win64\helloneighborreborn-win64-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\users\bob\desktop\hello.neighbor.alpha.1\helloneighbor\helloneighborreborn\binaries\win64\helloneighborreborn-win64-shipping.exe (.not file.)
O87 - FAEL: "UDP Query User{12D8C24E-F634-41A3-8818-A3ECC6B390E6}C:\users\bob\desktop\hello.neighbor.alpha.1\helloneighbor\helloneighborreborn\binaries\win64\helloneighborreborn-win64-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\users\bob\desktop\hello.neighbor.alpha.1\helloneighbor\helloneighborreborn\binaries\win64\helloneighborreborn-win64-shipping.exe (.not file.)
O87 - FAEL: "TCP Query User{6D8B3EB3-AC43-4E60-BD4F-78663FD136B2}C:\users\bob\desktop\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\bob\desktop\cacaoweb.exe (.not file.) =>.SUP.CacaoWeb
O87 - FAEL: "UDP Query User{11A37612-116E-46BE-9EF4-D4B1DC080420}C:\users\bob\desktop\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\bob\desktop\cacaoweb.exe (.not file.) =>.SUP.CacaoWeb
O87 - FAEL: "{9F30B43A-742A-4C47-B611-CF4A231850C2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Nox\bin\Nox.exe (.not file.)
O87 - FAEL: "{B7944DA0-4A64-408A-8E5D-7DC12C6FE6B9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe (.not file.)
O87 - FAEL: "TCP Query User{F0B66175-B762-4470-A928-0C3CB63CA48C}C:\windows\installer\{e8e34052-3f7b-c307-7d78-8f685a841457}\syshost.exe" [In-None-P6-TRUE] .(...) -- C:\windows\installer\{e8e34052-3f7b-c307-7d78-8f685a841457}\syshost.exe
O87 - FAEL: "UDP Query User{DA773B5E-A400-42F4-B1DD-41F31A05939F}C:\windows\installer\{e8e34052-3f7b-c307-7d78-8f685a841457}\syshost.exe" [In-None-P17-TRUE] .(...) -- C:\windows\installer\{e8e34052-3f7b-c307-7d78-8f685a841457}\syshost.exe

---\\ Recherche des packages WindowsInstaller (31) - 9s
[MD5.CA90B15542575856D4485B3530B05E01] [WIS][2015/08/28 16:39:49] (.MAGIX Software GmbH - MAGIX Speed burnR (MSI) - v7.0.1.27 (fr-FR).) -- C:\Windows\Installer\1039414.msi [1761280] =>.MAGIX Software GmbH
[MD5.A3C5FCDB11663329A30E1C144791A82C] [WIS][2016/10/10 16:25:45] (.Oracle Corporation - Java SE Runtime Environment 8 Update 101.) -- C:\Windows\Installer\104899.msi [59219968] =>.Oracle Corporation
[MD5.CE71D5F3D856E69061C1526E2CFCD909] [WIS][2017/03/07 16:47:47] (.Default Company Name.) -- C:\Windows\Installer\10e820.msi [8052736]
[MD5.4BEBC23DBB318165630D6201943192BD] [WIS][2014/04/10 16:27:19] (.Sony Creative Software Inc. - MSVCRT Redists.) -- C:\Windows\Installer\142218f.msi [5423104] =>.Sony Creative Software Inc.
[MD5.2E9A01C180EB73C878E1F2A654ED4C56] [WIS][2016/09/04 18:20:38] (.Oracle - Java SE Runtime Environment 7.0.) -- C:\Windows\Installer\14988b9.msi [963072] =>.Oracle
[MD5.53900ECDC74B3BE9CA53848854F3A136] [WIS][2017/04/05 16:59:32] (.deskadp.) -- C:\Windows\Installer\14b58a5.msi [7991808]
[MD5.356BB887B373EDC63412B00CEB3C5826] [WIS][2016/09/18 19:43:40] (.Dell Inc. - Dell Data Vault Installation.) -- C:\Windows\Installer\16233ea.msi [319488] =>.Dell Inc.
[MD5.E2E8BB647FD4DFDB595394137C2851D7] [WIS][2017/12/05 19:38:49] (.Dell Inc. - Dell SupportAssist Agent.) -- C:\Windows\Installer\1648347.msi [3535872] =>.Dell Inc.
[MD5.E81C668B81975567E8C5728B805704E2] [WIS][2017/05/01 17:00:51] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\166aa8c.msi [40960] =>.Google Inc.
[MD5.A04E16FA33082B02CB691F122BAB15B3] [WIS][2015/10/27 07:55:00] (.Intel Corporation - Intel® RealSense™ SDK 2014 Runtime (x64): .) -- C:\Windows\Installer\1f0336c.msi [2801664] =>.Intel Corporation
[MD5.EB111C8F08AB59CDB5D3A1D9A9F0AE8A] [WIS][2017/03/02 17:01:42] (.NVIDIA Corporation - Install/UnInstall PhysX Driver + Engines: 2.) -- C:\Windows\Installer\216e3ff.msi [34086912] =>.NVIDIA Corporation
[MD5.7837F47FE1594B281B12C3E05E2AA447] [WIS][2017/04/18 14:02:59] (.Microleaves - Online Application.) -- C:\Windows\Installer\35d9bf.msi [2752000] =>.SUP.Microleaves
[MD5.0EC4D8991728DED1107598C789F0EC89] [WIS][2017/06/12 17:56:51] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\3b281e.msi [44789760] =>.Skype Technologies S.A.
[MD5.61645D582DA1372130AD98D0DF3C91C2] [WIS][2013/07/30 01:28:22] (.Intel Corporation - Intel(R) Rapid Storage Technology.) -- C:\Windows\Installer\3bd88.msi [8507392] =>.Intel Corporation
[MD5.DF6A2E47ACE58182CDCCC7662EED69DF] [WIS][2017/03/09 10:44:52] (.WinSnare.) -- C:\Windows\Installer\3f620.msi [1099776] =>.SUP.WinSnare
[MD5.EE3C7D44B16E7959ABF7F5A603AD9883] [WIS][2014/02/10 23:21:50] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) -- C:\Windows\Installer\49abc.msi [8753152] =>.Intel Corporation
[MD5.7AE5D91A4641B6970D890569D7E22C5C] [WIS][2015/03/16 18:29:12] (.Dell Products, LP - Dell Digital Delivery Installer.) -- C:\Windows\Installer\49ac1.msi [1683456] =>.Dell Products, LP
[MD5.3CF4BDEA86F5A7A9715850D66F573CB2] [WIS][2012/09/24 05:54:04] (.Adobe Systems Incorporated.) -- C:\Windows\Installer\49ad0.msi [2621952] =>.Adobe Systems Incorporated
[MD5.6D889956AD2A4BDEAF5B584774D8DCC2] [WIS][2017/04/16 22:26:06] (.dotPDN LLC.) -- C:\Windows\Installer\50a943.msi [30345216] =>.dotPDN LLC
[MD5.E88808D41FA3A8AA25204E87844766C2] [WIS][2016/11/14 21:09:41] (.MAGIX Computer Products Intl. Co. - MSVCRT Redists.) -- C:\Windows\Installer\57a8d3.msi [6299648] =>.MAGIX Computer Products Intl. Co.
[MD5.C513B257836D46DA90BAF413E9E3944B] [WIS][2017/05/24 12:59:51] (.Default Company Name.) -- C:\Windows\Installer\6ed13a.msi [9665544]
[MD5.5782699804594F2221BF2A4426BE86B8] [WIS][2017/05/27 18:17:21] (.Default Company Name.) -- C:\Windows\Installer\6eebfa.msi [10363400]
[MD5.CFBE68A869CF79386712C5EC7F337029] [WIS][2017/05/17 13:34:54] (.Default Company Name.) -- C:\Windows\Installer\6ef0cb.msi [9201672]
[MD5.B7AE610A1A5CA306BEDAEFDCC5A32125] [WIS][2017/05/12 18:38:12] (.Default Company Name.) -- C:\Windows\Installer\6f73fe.msi [8740872]
[MD5.D28F170F6F89FB8551F54D4C5959BF24] [WIS][2017/05/09 18:52:05] (.AlphaGo.) -- C:\Windows\Installer\6fa9bd.msi [9487368] =>.AlphaGo
[MD5.D529B42AD825AB9E4D6010B20A55F7D0] [WIS][2017/06/02 17:58:49] (.Default Company Name.) -- C:\Windows\Installer\6fcbed.msi [8894984]
[MD5.16D3F94BA8D38A212EF92277404754EC] [WIS][2017/10/21 11:17:26] (.Mojang - Minecraft.) -- C:\Windows\Installer\7f63ef.msi [2314240] =>.Mojang
[MD5.E4AF16B0574B2598AADD353A35A3722B] [WIS][2012/04/05 22:23:02] (.Adobe - InstallShield® 12 - Premier Edition 12.0.) -- C:\Windows\Installer\868bf1.msi [2211328] =>.Adobe
[MD5.78B41A323699DAF1C25265890733BE26] [WIS][2012/04/05 22:23:02] (.Adobe - InstallShield® 12 - Premier Edition 12.0.) -- C:\Windows\Installer\868bf7.msi [1997312] =>.Adobe
[MD5.9688351C7764852944278863A8ED5C16] [WIS][2017/01/11 07:40:34] (.Dell Inc. - Dell Foundation Services v3.4.16100.0.) -- C:\Windows\Installer\b4aeba.msi [3379200] =>.Dell Inc.
[MD5.962825003BD234AB0B9348C40EC5D36A] [WIS][2017/06/29 18:55:57] (.Dell Inc. - Dell Update Installer.) -- C:\Windows\Installer\b7fda.msi [1437696] =>.Dell Inc.

---\\ Recherche de clés de registre Tracing (6) - 4s
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\PROPCCleaner_RASAPI32 =>.SUP.DoctorPC
HKLM\SOFTWARE\Microsoft\Tracing\PROPCCleaner_RASMANCS =>.SUP.DoctorPC
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BikaQ_RASAPI32 =>.SUP.BikaQ
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BikaQ_RASMANCS =>.SUP.BikaQ

---\\ Scan Additionnel (321) - 2s
HKLM\SYSTEM\CurrentControlSet\Services\acbfa4650af99dfd75de9e6b9233a85d =>PUP.Optional.Wajam
C:\Program Files\acbfa4650af99dfd75de9e6b9233a85d\dd77f671f66a11b98a5bdf4365a3fa00.exe =>PUP.Optional.Wajam
HKLM\SYSTEM\CurrentControlSet\Services\backlh =>PUP.Optional.LogicHandler
C:\ProgramData\Logic Cramble\set.exe =>PUP.Optional.LogicHandler
HKLM\SYSTEM\CurrentControlSet\Services\BIT =>.SUP.Elex
C:\ProgramData\BIT\BIT.dll =>.SUP.Elex
HKLM\SYSTEM\CurrentControlSet\Services\CSHMDR =>.SUP.Elex
C:\Users\BOB\AppData\Local\CSHMDR\Snare.dll =>.SUP.Elex
HKLM\SYSTEM\CurrentControlSet\Services\glory =>.SUP.Elex
C:\Users\BOB\AppData\Local\glory\glory.dll =>.SUP.Elex
HKLM\SYSTEM\CurrentControlSet\Services\Kitty =>.SUP.Elex
C:\Users\BOB\AppData\Local\Kitty\Kitty.dll =>.SUP.Elex
HKLM\SYSTEM\CurrentControlSet\Services\NetUtils2016srv =>.SUP.StartGo123
HKLM\SYSTEM\CurrentControlSet\Services\WindowService =>Adware.Suspect
C:\Users\BOB\AppData\Local\Temp\WS\WindowService.exe =>Adware.Suspect
HKLM\SYSTEM\CurrentControlSet\Services\WinSAPSvc =>PUP.Optional.Youndoo
C:\Users\BOB\AppData\Roaming\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo
HKLM\SYSTEM\CurrentControlSet\Services\FirefoxU =>Adware.Mutabaha
C:\Program Files (x86)\Firefox\bin\FirefoxUpdate.exe =>Adware.Mutabaha
C:\Users\BOB\AppData\Local\MicrosoftUpdater\updater.exe =>PUP.Optional.Y2Go
C:\Windows\System32\Tasks\Y2Go\Updater\Y2GoUpdater =>PUP.Optional.Y2Go
C:\Program Files (x86)\MIO\MIO.exe =>.SUP.Elex
C:\Windows\System32\Tasks\Milimili =>.SUP.Elex
C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe =>.SUP.Microleaves
C:\Windows\System32\Tasks\Updater_Online_Application =>.SUP.Microleaves
C:\Users\BOB\AppData\Local\MicrosoftHelper\bin\Y2Go.exe =>PUP.Optional.Y2Go
C:\Windows\System32\Tasks\Y2Go\Y2Go\Y2Go =>PUP.Optional.Y2Go
C:\Users\BOB\AppData\Local\Programs\GEN\GEN.exe =>Adware.Geniv
C:\Windows\System32\Tasks\GEN =>Adware.Geniv
C:\Windows\System32\Tasks\Start Registry Reviver( SR ) for SWAGCOMPUTER9@BOB =>PUP.Optional.RegistryReviver
C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe =>.SUP.Microleaves
C:\Windows\System32\Tasks\Online Application V2G1 =>.SUP.Microleaves
C:\Windows\System32\Tasks\GEN_Interval =>Adware.Geniv
C:\Windows\System32\Tasks\Start Registry Reviver Schedule =>PUP.Optional.RegistryReviver
C:\Windows\System32\Tasks\Online Application V2G3 =>.SUP.Microleaves
C:\Windows\System32\Tasks\Start Registry Reviver for SWAGCOMPUTER9@BOB(logon) =>PUP.Optional.RegistryReviver
C:\Windows\System32\Tasks\Online Application V2G2 =>.SUP.Microleaves
C:\Windows\System32\Tasks\Start Registry Reviver Update =>PUP.Optional.RegistryReviver
C:\Windows\System32\Tasks\Start Registry Reviver( SR ) for SWAGCOMPUTER9@BOB at logon =>PUP.Optional.RegistryReviver
C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Helper.exe =>Trojan.Agent
C:\Windows\System32\Tasks\System\SystemCheck =>Trojan.Agent
C:\Windows\System32\Tasks\Universal\Driver Updater\Start Driver Updater оn logon =>.SUP.AdvancedPCCare
C:\Windows\System32\Tasks\Universal\Driver Updater\Start Driver Updater automatic scanning =>.SUP.AdvancedPCCare
C:\Users\BOB\AppData\Local\lifetv.dll =>Trojan.ProxyAgent
c:\Users\BOB\AppData\Roaming\svchost.exe =>Trojan.Agent
C:\Users\BOB\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\elmkjjfkkchohaaoljobaffjeedcoocj =>.SUP.BrowserExtension
C:\Users\BOB\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\fngmhnnpilhplaeedifhccceomclgfbg =>Adware.CloudAtlas
C:\Users\BOB\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pilplloabdedfmialnfchjomjmpjcoej =>.SUP.SearchManager
C:\Users\BOB\AppData\Roaming\Mozilla\Firefox\Profiles\yJ3k3GIn.default\extensions\cacaoweb@cacaoweb.org =>.SUP.CacaoWeb
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\acbfa4650af99dfd75de9e6b9233a85d =>PUP.Optional.Wajam
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Registry Reviver =>PUP.Optional.RegistryReviver
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NUIns =>PUP.Optional.NoteUp
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebOptimum =>PUP.Optional.WebOptimum
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsTM =>.SUP.WindowsTM
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1EC095EE-8CA3-43D6-B9F5-0C55B82ED3D7}}_is1 =>.SUP.GoldClick
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1} =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\NUIns =>PUP.Optional.NoteUp
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WebOptimum =>PUP.Optional.WebOptimum
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1EC095EE-8CA3-43D6-B9F5-0C55B82ED3D7}}_is1 =>.SUP.GoldClick
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1} =>.SUP.Microleaves
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\119 =>Adware.DragonBoost
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CloudExtender =>Trojan.ProxyAgent
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SwytShopAlgoadChrome_Pkg4_is1 =>PUP.Optional.SwytShop
C:\Program Files\1UUV4EKLEF\1UUV4EKLE.exe =>Adware.Wizzcaster
C:\Program Files\1UUV4EKLEF\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\1UUV4EKLEF =>Adware.Wizzcaster
C:\Program Files\7WIXTUELM7\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\7WIXTUELM7 =>Adware.Wizzcaster
C:\Program Files\9APROW87HP\9APROW87H.exe =>Adware.Wizzcaster
C:\Program Files\9APROW87HP\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\9APROW87HP =>Adware.Wizzcaster
C:\Program Files\B7YVZYTBNH\B7YVZYTBN.exe =>Adware.Wizzcaster
C:\Program Files\B7YVZYTBNH\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\B7YVZYTBNH =>Adware.Wizzcaster
C:\Program Files\jetstrmedia =>Adware.iBryte
C:\Program Files\K1H7PYV80L\K1H7PYV80.exe =>Adware.Wizzcaster
C:\Program Files\K1H7PYV80L\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\K1H7PYV80L =>Adware.Wizzcaster
C:\Program Files\VBDK1ACTFB\VBDK1ACTF.exe =>Adware.Wizzcaster
C:\Program Files\VBDK1ACTFB\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\VBDK1ACTFB =>Adware.Wizzcaster
C:\Program Files (x86)\58e8e744-b6ac-4fa0-88d3-0f19cb3554171491078324 =>Adware.CrossRider
C:\Program Files (x86)\BikaQRss =>.SUP.BikaQ
C:\ProgramData\62d13578-0037-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0127-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0385-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0393-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-05e5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-05e7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0681-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0775-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0a37-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0ac7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0af1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0c03-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-0dc7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0f51-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-0fc3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1171-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1177-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-11b7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-11e7-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-11f3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1317-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-1361-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-13d5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1473-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-14a7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-14c3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1603-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1637-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1911-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1921-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-1c91-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2017-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2047-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2065-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-21b5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2241-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2243-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-2307-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2413-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2461-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2525-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2617-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-27d7-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-27e7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-27f5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2825-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-2843-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-28b5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2901-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2911-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2941-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-2977-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2ba3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2be5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2c95-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2e55-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-2fa1-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-30e1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3297-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3367-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3411-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-34b3-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-34d1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-35d7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3693-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-36f1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3705-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-38e1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3977-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-3c75-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3c95-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3eb1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3f75-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3fa5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-3fc5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-41c1-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-4273-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-42c3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-42d3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4311-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4501-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4577-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-45b5-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-4717-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-4891-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4943-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-49e7-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-4a53-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4a83-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4c03-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-4da3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4dd5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4e51-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-4f31-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5001-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5051-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-5095-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-50d3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-51f1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5205-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5351-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-53b1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5485-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5673-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5693-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-58d5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5c91-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5cb7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5d23-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5d27-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5d37-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-5f95-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-60b1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6165-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-61b7-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-6211-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-6241-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6263-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-62b7-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-63e3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-63f5-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-64d1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6625-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-67f1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6865-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-6893-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-6921-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6947-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6a05-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-6a27-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6a65-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6a71-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6ac5-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-6c73-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6cc5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6e47-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-6e73-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6ed3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6f07-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-6f51-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-71a1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7255-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7311-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7355-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7565-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-76f1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7761-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7831-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7865-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-7ad3-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7b23-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7c63-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7ce1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7d21-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7d51-0 =>.SUP.Polluteware
C:\ProgramData\62d13578-7db5-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7fd1-1 =>.SUP.Polluteware
C:\ProgramData\62d13578-7fe5-1 =>.SUP.Polluteware
C:\ProgramData\a1bd8073-3ff7-1 =>.SUP.Polluteware
C:\ProgramData\a1bd8073-7607-0 =>.SUP.Polluteware
C:\ProgramData\BIT =>.SUP.Elex
C:\ProgramData\Logic Cramble =>PUP.Optional.LogicHandler
C:\ProgramData\Microleaves =>.SUP.Microleaves
C:\ProgramData\PCVARK =>.SUP.AdvancedPCCare
C:\ProgramData\Plusdax =>.SUP.Linkury
C:\ProgramData\PrefsSecure =>PUP.Optional.LogicHandler
C:\ProgramData\vCore =>PUP.Optional.AArtemis
C:\ProgramData\{027e25d8-012c-1} =>.SUP.Polluteware
C:\ProgramData\{189f6d86-112c-0} =>.SUP.Polluteware
C:\ProgramData\{1b274f6a-112c-0} =>.SUP.Polluteware
C:\ProgramData\{20d70a2d-012c-1} =>.SUP.Polluteware
C:\ProgramData\{26d87c85-412c-0} =>.SUP.Polluteware
C:\ProgramData\{2cab7e2a-512c-1} =>.SUP.Polluteware
C:\ProgramData\{2cfa6180-212c-0} =>.SUP.Polluteware
C:\ProgramData\{34405b56-012c-1} =>.SUP.Polluteware
C:\ProgramData\{34c3137f-512c-0} =>.SUP.Polluteware
C:\ProgramData\{3aa0385d-212c-1} =>.SUP.Polluteware
C:\ProgramData\{40980772-212c-0} =>.SUP.Polluteware
C:\ProgramData\{4bb86e3f-612c-0} =>.SUP.Polluteware
C:\ProgramData\{4cca2d19-512c-1} =>.SUP.Polluteware
C:\ProgramData\{57615a64-512c-0} =>.SUP.Polluteware
C:\ProgramData\{64ea00fd-312c-1} =>.SUP.Polluteware
C:\ProgramData\{66b13b47-212c-0} =>.SUP.Polluteware
C:\ProgramData\{72c06dc8-112c-1} =>.SUP.Polluteware
C:\ProgramData\{7dce680e-612c-0} =>.SUP.Polluteware
C:\Users\BOB\AppData\Roaming\aMule =>Adware.aMULEcustom
C:\Users\BOB\AppData\Roaming\cacaoweb =>.SUP.CacaoWeb
C:\Users\BOB\AppData\Roaming\Elex-tech =>.SUP.Elex
C:\Users\BOB\AppData\Roaming\Imminent =>PUP.Optional.IMBooster
C:\Users\BOB\AppData\Roaming\Interstatnogui =>Adware.UserMon
C:\Users\BOB\AppData\Roaming\PRO PC Cleaner =>.SUP.DoctorPC
C:\Users\BOB\AppData\Roaming\SNARER =>.SUP.InterSectAlliance
C:\Users\BOB\AppData\Roaming\WinSAPSvc =>PUP.Optional.Youndoo
C:\Users\BOB\AppData\Local\AdvinstAnalytics =>.SUP.Various
C:\Users\BOB\AppData\Local\AppTrailers =>Adware.AppTrailers
C:\Users\BOB\AppData\Local\Kitty =>.SUP.Elex
C:\Users\BOB\AppData\Local\PRO_PC_Cleaner =>.SUP.PCCleaner
C:\Users\BOB\AppData\Local\Programs\GEN =>Adware.Geniv
C:\Users\BOB\AppData\Local\Programs\SwytShopAlgoadChrome_Pkg4 =>PUP.Optional.SwytShop
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MagicISO =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{DB85C504-C730-49DD-BEC1-7B39C6103B7A} =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>.SUP.Orphan
HKLM\Software\Wow6432Node\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\MEGA (Context menu) =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MagicISO =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\MagicISO =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
C:\Users\BOB\AppData\Roaming\cacaoweb\cacaoweb.exe =>.SUP.CacaoWeb
HKLM\Software\WOW6432Node\Microsoft\Shared Tools\MSConfig\startupreg\cacaoweb =>.SUP.CacaoWeb
C:\Windows\System32\drivers\lanmamaster.sys =>Adware.ChinAd
C:\Windows\System32\drivers\NetUtils2016.sys =>.SUP.Netutils
C:\Windows\Installer\35d9bf.msi =>.SUP.Microleaves
C:\Windows\Installer\3f620.msi =>.SUP.WinSnare
HKLM\Software\WOW6432Node\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence
HKLM\Software\WOW6432Node\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence
HKLM\Software\WOW6432Node\Microsoft\Tracing\PROPCCleaner_RASAPI32 =>.SUP.DoctorPC
HKLM\Software\WOW6432Node\Microsoft\Tracing\PROPCCleaner_RASMANCS =>.SUP.DoctorPC
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BikaQ_RASAPI32 =>.SUP.BikaQ
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BikaQ_RASMANCS =>.SUP.BikaQ
C:\Users\BOB\AppData\Roaming\Besefe.exe =>Heuristic.Suspect
C:\Users\BOB\AppData\Roaming\Girofu.exe =>Heuristic.Suspect
C:\Users\BOB\AppData\Roaming\Google Chrome Updater.exe =>Heuristic.Suspect
C:\Users\BOB\AppData\Roaming\K-dox.exe =>Heuristic.Suspect
C:\Users\BOB\AppData\Roaming\Roranal.exe =>Heuristic.Suspect
C:\Users\BOB\AppData\Roaming\svchost.exe =>Heuristic.Suspect
C:\Windows\System32\Drivers\727e14596581e16b053daf7e98d13948.sys =>PUP.Optional.Wajam
C:\Windows\System32\Drivers\98ac82ef4517b63d3a7b9d6c55ea5fda.sys =>PUP.Optional.Wajam
C:\Windows\System32\Drivers\b22c74fadda839ed00548ea83840e1b7.sys =>PUP.Optional.Wajam
C:\Program Files (x86)\Wufospromigh Core\local64spl.dll =>.SUP.Elex
HKLM\SYSTEM\CurrentControlSet\Control\Print\Providers\ayj9qk09 =>.SUP.Elex

---\\ Récapitulatif des éléments trouvés sur votre station (60) - 0s
https://nicolascoolman.eu/2017/02/24/pup-optional-wajam/ =>PUP.Optional.Wajam
https://nicolascoolman.eu/2017/01/04/pup-optional-logichandler/ =>PUP.Optional.LogicHandler
https://nicolascoolman.eu/2017/03/28/superfluous-elex/ =>.SUP.Elex
https://www.anti-malware.top/2016/10/28/hijacker-startgo123/ =>.SUP.StartGo123
https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect
https://nicolascoolman.eu/2017/03/11/superfluous-youndoo/ =>PUP.Optional.Youndoo
https://www.anti-malware.top/2016/06/24/conseils-logiciel-publicitaire-mutabaha/ =>Adware.Mutabaha
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/04/08/pup-optional-y2go/ =>PUP.Optional.Y2Go
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Microleaves
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.RegistryReviver
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.Agent
https://www.anti-malware.top/2016/04/23/superfluous-advancedpccare/ =>.SUP.AdvancedPCCare
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.ProxyAgent
https://nicolascoolman.eu/2017/10/05/sup-browserextension/ =>.SUP.BrowserExtension
https://nicolascoolman.eu/2017/08/10/adware-cloudatlas/ =>Adware.CloudAtlas
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SearchManager
https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.SUP.CacaoWeb
https://nicolascoolman.eu/2017/05/16/hijacker-ourluckysites/ =>Hijacker.OurLuckySites
https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy
https://nicolascoolman.eu/2017/09/27/adware-dnsunlocker/ =>Adware.DNSUnlocker
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.NoteUp
https://www.anti-malware.top/2016/05/06/pup-optional-weboptimum/ =>PUP.Optional.WebOptimum
https://nicolascoolman.eu/2017/05/21/superfluous-windowstm/ =>.SUP.WindowsTM
https://nicolascoolman.eu/2017/10/15/sup-proxygate/ =>.SUP.GoldClick
https://nicolascoolman.eu/2017/10/05/adware-dragonboost/ =>Adware.DragonBoost
https://nicolascoolman.eu/2017/04/08/pup-optional-swytshop/ =>PUP.Optional.SwytShop
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/03/10/adware-amulecustom/ =>Adware.aMULEcustom
https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>.SUP.Linkury
https://nicolascoolman.eu/22017/04/04/adware-fastsearch/ =>Adware.FastSearch
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.DoctorPC
https://nicolascoolman.eu/2017/03/14/superfluous-trotux/ =>.SUP.Trotux
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Heuristic
https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/04/07/adware-usermon/ =>Adware.UserMon
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.OneSystemCare
https://nicolascoolman.eu/2017/10/07/adware-softwareengine/ =>Adware.SoftwareEngine
https://nicolascoolman.eu/2017/10/03/sup-systemhealer/ =>.SUP.SystemHealer
https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader
https://www.anti-malware.top/2016/05/24/adware-amonetize/ =>Adware.Amonetize
https://nicolascoolman.eu/2017/01/12/superfluous-winsnare/ =>.SUP.WinSnare
https://nicolascoolman.eu/2017/01/18/adware-apptrailers/ =>Adware.AppTrailers
https://nicolascoolman.eu/2017/09/15/adware-wizzcaster/ =>Adware.Wizzcaster
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.iBryte
https://nicolascoolman.eu/2017/02/17/superfluous-bikaq/ =>.SUP.BikaQ
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Polluteware
https://www.nicolascoolman.com/fr/pup-aartemis/ =>PUP.Optional.AArtemis
https://nicolascoolman.eu/2017/09/08/adware-imbooster/ =>PUP.Optional.IMBooster
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.InterSectAlliance
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various
https://www.nicolascoolman.com/fr/usp-pccleaner/ =>.SUP.PCCleaner
https://nicolascoolman.eu/2017/11/23/adware-geniv/ =>Adware.Geniv
https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.SUP.Tencent
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Rootkit.Necurs
https://nicolascoolman.eu/2017/09/18/adware-chinad/ =>Adware.ChinAd
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Netutils
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SimpliClean
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect

~ Unselected Options: O82,
~ End of the scan, 48829 items in 11mn03s (2683)(0)

Publicité


Signaler le contenu de ce document

Publicité