~ ZHPDiag v2016.1.27.21 By Nicolas Coolman (2016/01/27) ~ Run by Mr Unknown (Administrator) (2016/01/27 10:31:04) ~ Web: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\Mr Unknown\Desktop\ZHPDiag.txt ~ Report: C:\Users\Mr Unknown\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ System startup: Normal (Normal boot) Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) ---\\ Internet Browsers (3) - 0s GCIE: Google Chrome v47.0.2526.111 MFIE: Mozilla Firefox 43.0.4 (x86 en-US) MSIE: Internet Explorer v11.0.9600.18097 ---\\ Windows Product Information (4) - 3s ~ Windows Server License Manager Script : OK System - VBScript Engine not found Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System protection software (3) - 3s ESET Smart Security v8.0.319.0 Malwarebytes Anti-Malware version 2.2.0.1024 Windows Defender W7 (Deactivate) ---\\ System optimization software (1) - 4s CCleaner v5.05 ---\\ Surveillance software (2) - 4s Adobe Flash Player 20 NPAPI Adobe Reader XI ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8281.404 MB (59% free) System Restore: Activé (Enable) System drive C: has 105 GB () free of 497 GB ---\\ Connection to the system mode (3) - 0s ~ Computer Name: MRUNKNOWN-HP ~ User Name: Mr Unknown ~ Logged in as Administrator ---\\ Enumeration of the disk units (8) - 0s ~ Drive C: has 105 GB free of 497 GB (System) ~ Drive D: has 3 GB free of 28 GB ~ Drive F: has 16 GB free of 60 GB ~ Drive G: has 211 GB free of 341 GB ~ Drive M: has 10 GB free of 42 GB ~ Drive S: has 7 GB free of 8 GB ~ Drive T: has 8 GB free of 34 GB ~ Drive Y: has 0 GB free of 0 GB ---\\ State of the Windows Security Center (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Search Generic System Files (26) - 1s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 25/02/2011 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2871808] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 13/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 13/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.033E70DEEE5FED5E9A3E197A2DB1A618] - 30/10/2015 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [2487808] =>.Microsoft Corporation [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 16/07/2014 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 13/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 13/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.73ADDCC406B86E7DA4416691E8E74BDA] - 19/10/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 23/01/2014 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1684928] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 13/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.1B6163C503398B23FF8B939C67747683] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 13/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (17) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation® O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Company® O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: NitroPDFDriverCreatorReadSpool10 (NitroDriverReadSpool10) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe =>.Nitro Software, Inc.® O23 - Service: NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe =>.Nitro Software, Inc.® O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 361.4.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation® O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\system32\PnkBstrA.exe (.not file.) O23 - Service: Razer Game Scanner (Razer Game Scanner Service) . (.Copyright © 2013-2015 - GameScannerService.) - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe =>.Razer Inc.® O23 - Service: RzKLService (RzKLService) . (.Razer Inc. - RzKLService.exe.) - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe =>.Razer Inc.® O23 - Service: SoftEther VPN Client (SEVPNCLIENT) . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) - C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe =>.SoftEther K.K.® O23 - Service: @C:\Windows\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc. ---\\ Services not Microsoft (SR=Run, SS=Stop) (51) - 39s SR - Auto [14/09/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Disabl [15/01/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Disabl [06/08/2015] [ 29912] AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd..) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.ChengDu AoMei Tech Co., Ltd® SR - Demand [27/03/2012] [ 1014096] Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe =>.Intel Corporation-Mobile Wireless Group® SS - Demand [27/03/2012] [ 1304912] Bluetooth Media Service (Bluetooth Media Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe =>.Intel Corporation-Mobile Wireless Group® SS - Demand [27/03/2012] [ 1104208] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe =>.Intel Corporation-Mobile Wireless Group® SS - Disabl [03/09/2014] [ 1243344] CAM Service (CAMService) . (.Intel® Corporation.) - C:\Program Files\Intel\CAM\bin\CAMService.exe =>.Intel Corporation-Mobile Wireless Group® SS - Disabl [30/01/2012] [ 276248] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation® SS - Demand [23/03/2010] [ 1528616] Cisco Systems, Inc. VPN Service (CVPND) . (.Cisco Systems, Inc..) - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc. SR - Auto [08/07/2015] [ 1353720] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe =>.ESET, spol. s r.o.® SS - Disabl [19/11/2014] [ 638368] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions® SS - Disabl [07/06/2013] [ 1641768] TrueSuiteService (FPLService) . (.HP.) - C:\Program Files (x86)\HP SimplePass\TrueSuiteService.exe =>.AuthenTec, Inc.® SR - Auto [11/01/2016] [ 1163200] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation® SS - Auto [02/09/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [02/09/2015] [ 144200] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [19/05/2015] [ 99128] HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Company® SS - Disabl [11/10/2010] [ 346168] HP Client Services (HPClientSvc) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe =>.Hewlett-Packard Company® SS - Disabl [13/05/2013] [ 1129760] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company® SS - Disabl [24/09/2012] [ 31040] HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\Windows\system32\Hpservice.exe =>.Hewlett-Packard Company SS - Disabl [07/09/2012] [ 35232] HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe =>.Hewlett-Packard Company® SS - Disabl [08/12/2011] [ 607456] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® SS - Disabl [10/11/2014] [ 132896] Intel® ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SS - Disabl [09/04/2014] [ 174368] Intel(R) Update Manager (iumsvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe =>.Intel® Services Manager® SS - Disabl [10/11/2014] [ 158496] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SS - Disabl [10/11/2014] [ 409376] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SR - Auto [05/10/2015] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Disabl [06/01/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Demand [ 0] [ 0] (MWAC) . (...) - C:\Windows\System32\drivers\ SS - Disabl [19/11/2014] [ 268192] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation-Wireless Connectivity Solutions® SR - Auto [03/07/2015] [ 324760] NitroPDFDriverCreatorReadSpool10 (NitroDriverReadSpool10) . (.Nitro PDF Software.) - C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe =>.Nitro Software, Inc.® SS - Auto [03/07/2015] [ 418968] NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe =>.Nitro Software, Inc.® SR - Auto [11/01/2016] [ 1879488] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation® SR - Demand [11/01/2016] [ 6308288] NVIDIA Streamer Network Service (NvStreamNetworkSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe =>.NVIDIA Corporation® SR - Auto [11/01/2016] [ 4812736] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation® SR - Auto [16/12/2015] [ 1256240] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe =>.NVIDIA Corporation SS - Disabl [29/12/2015] [ 2104840] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - C:\Program Files (x86)\Origin\OriginClientService.exe =>.Electronic Arts, Inc.® SS - Disabl [15/12/2015] [ 1008880] Overwolf Updater Windows SCM (OverwolfUpdater) . (.Overwolf LTD.) - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe =>.Overwolf Ltd® SR - Auto [23/09/2015] [ 188072] Razer Game Scanner (Razer Game Scanner Service) . (.Copyright © 2013-2015.) - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe =>.Razer Inc.® SS - Disabl [19/11/2014] [ 157088] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions® SR - Auto [13/11/2015] [ 129168] RzKLService (RzKLService) . (.Razer Inc..) - C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe =>.Razer Inc.® SR - Auto [18/10/2014] [ 4368440] SoftEther VPN Client (SEVPNCLIENT) . (.SoftEther VPN Project at University of Tsukuba, Japan.) - C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe =>.SoftEther K.K.® SS - Disabl [03/06/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Disabl [13/10/2014] [ 743688] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD® SR - Auto [23/09/2014] [ 321536] @C:\Windows\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc. SS - Disabl [07/01/2013] [ 401856] TrueAPI Service component (TrueService) . (.AuthenTec, Inc..) - C:\Program Files\Common Files\AuthenTec\TrueService.exe =>.AuthenTec, Inc.® SS - Disabl [19/09/2012] [ 1157056] WD Backup (WDBackup) . (.Western Digital.) - C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe =>.Western Digital Technologies, Inc.® SS - Disabl [23/05/2014] [ 296312] WD Drive Manager (WDDriveService) . (.Western Digital Technologies, Inc..) - C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe =>.Western Digital Technologies, Inc.® SS - Disabl [19/09/2012] [ 1177536] WD Rules (WDRulesService) . (.Western Digital.) - C:\Program Files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe =>.Western Digital Technologies, Inc.® SS - Disabl [19/11/2014] [ 3820960] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions® ---\\ Task Planned Automatically (50) - 8s [MD5.2EED3542F86F77D56569504B37C8108A] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1045720] =>.Adobe Systems, Incorporated® [MD5.C3E7E1F3C85A6788F3BA078BA214341E] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.D4F602B1F775B5827932D3C5B04A3FD2] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3372032] =>HackTool.AutoKMS [MD5.1F014EA12ECB13C909DA9395E9CD3D18] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6278424] =>.Piriform Ltd® [MD5.E8F746CD86EFBCD5AB43F01A59CFE49D] [APT] [Core Temp Autostart Mr Unknown] (.Copyright (C) 2006 - 2013 Alcpu.) -- C:\Program Files\Core Temp\Core Temp.exe [890016] {112124A45ABBF7C551DEB213B28633C3DCAD} [MD5.33BFEC2B102B196B62ABB9947C7D7E23] [APT] [DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002Core] (.Dropbox, Inc..) -- C:\Users\Mr Unknown\AppData\Local\Dropbox\Update\DropboxUpdate.exe [136048] =>.Dropbox, Inc® [MD5.33BFEC2B102B196B62ABB9947C7D7E23] [APT] [DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002UA] (.Dropbox, Inc..) -- C:\Users\Mr Unknown\AppData\Local\Dropbox\Update\DropboxUpdate.exe [136048] =>.Dropbox, Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA1d04048ae6427d3] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.8AA3B22B716A04AC8DD13318A40D708D] [APT] [HPCeeScheduleForMr Unknown] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [95800] =>.Hewlett-Packard Company® [MD5.28405F60CCF4023CD253B0EB3640C078] [APT] [HPCustParticipation HP Deskjet 3050A J611 series] (.Hewlett-Packard Co..) -- C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [4119656] =>.Hewlett Packard® [MD5.F7DD22E06B8BD29CC5C627AB6DD57DAB] [APT] [IntelBootstrapCCDashServer] (.Intel® Corporation.) -- C:\Program Files\Intel\CCDashboard\bin\CCDashServer.exe [5004592] =>.Intel Corporation-Mobile Wireless Group® [MD5.EC62720A72C1ACD6AB638C0D7D10F431] [APT] [IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473] (...) -- C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368] =>.Intel® Services Manager® [MD5.EC62720A72C1ACD6AB638C0D7D10F431] [APT] [IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon] (...) -- C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368] =>.Intel® Services Manager® [MD5.B7F55E2AE978D3D34F7876EE5D689AAE] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] =>.CyberLink® [MD5.ADA2B2D72593DC26D70AD9EF7152838E] [APT] [Overwolf Updater Task] (.Overwolf LTD.) -- C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1008880] =>.Overwolf Ltd® [MD5.411B307DA384A9D48C5C2C9EDC755266] [APT] [Registration] (.Copyright © 2006.) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\Dependencies\RemEngine.exe [38456] =>.Hewlett-Packard Company® [MD5.00000000000000000000000000000000] [APT] [{3DB8C750-4AA2-432D-A0C1-6D5D239730F1}] (...) -- C:\Users\Mr Unknown\Desktop\New folder\Dying Light PC full game + DLC ^^nosTEAM^^\Dying-Light-nosTEAM.part1.exe (.not file.) [0] [MD5.23294E80AF6A4C653522D12A391933A1] [APT] [{81E3A0A2-090E-4B5F-9384-A54314DA6FA9}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [748360] =>.Google Inc® [MD5.00000000000000000000000000000000] [APT] [{8AE9605F-F968-4448-8EE8-C43B65188CBC}] (...) -- C:\Users\Mr Unknown\Desktop\New folder\Dying Light PC full game + DLC ^^nosTEAM^^\Dying-Light-nosTEAM.part1.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{C4539863-E301-4381-B5A3-02027FBA1F0E}] (...) -- C:\Users\Mr Unknown\Desktop\New folder\Dying Light PC full game + DLC ^^nosTEAM^^\Dying-Light-nosTEAM.part1.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{E70415A1-FDB8-487B-A948-CCE9177E73E3}] (...) -- C:\Users\Mr Unknown\Desktop\New folder\Dying Light PC full game + DLC ^^nosTEAM^^\Dying-Light-nosTEAM.part1.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{F2165992-8907-464D-A08E-6E36A558EBE0}] (...) -- C:\Users\Mr Unknown\Desktop\New folder\Dying Light PC full game + DLC ^^nosTEAM^^\Dying-Light-nosTEAM.part1.exe (.not file.) [0] [MD5.45C56529DC489125D0EAAFB4C552A3F4] [APT] [Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon] (.Hewlett-Packard Development Company, L.P..) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1354552] =>.Hewlett-Packard Company® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [830] =>.Adobe Systems Incorporated O39 - APT: DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002Core - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002Core.job [886] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002UA - (.Dropbox, Inc..) -- C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002UA.job [938] =>.Dropbox, Inc. O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [894] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [898] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA1d04048ae6427d3 - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d04048ae6427d3.job [898] =>.Google Inc. O39 - APT: HPCeeScheduleForMr Unknown - (.Hewlett-Packard.) -- C:\Windows\Tasks\HPCeeScheduleForMr Unknown.job [352] =>.Hewlett-Packard O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3888] =>.Adobe Systems Incorporated O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3768] =>.Adobe Systems Incorporated O39 - APT: AutoKMS - (.CODYQX4.) -- C:\Windows\System32\Tasks\AutoKMS [3490] =>HackTool.AutoKMS O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2782] =>.Piriform Ltd O39 - APT: Core Temp Autostart Mr Unknown - (.Copyright (C) 2006 - 2013 Alcpu.) -- C:\Windows\System32\Tasks\Core Temp Autostart Mr Unknown [2750] O39 - APT: DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002Core - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002Core [3538] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002UA - (.Dropbox, Inc..) -- C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-641472299-1940632299-3284642096-1002UA [3934] =>.Dropbox, Inc. O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3654] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3906] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA1d04048ae6427d3 - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d04048ae6427d3 [3906] =>.Google Inc. O39 - APT: HPCeeScheduleForMr Unknown - (.Hewlett-Packard.) -- C:\Windows\System32\Tasks\HPCeeScheduleForMr Unknown [3216] =>.Hewlett-Packard O39 - APT: HPCustParticipation HP Deskjet 3050A J611 series - (.Hewlett-Packard Co..) -- C:\Windows\System32\Tasks\HPCustParticipation HP Deskjet 3050A J611 series [3652] =>.Hewlett-Packard Co. O39 - APT: IntelBootstrapCCDashServer - (.Intel® Corporation.) -- C:\Windows\System32\Tasks\IntelBootstrapCCDashServer [3224] =>.Intel® Corporation O39 - APT: IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 - (...) -- C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 [3720] O39 - APT: IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon - (...) -- C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon [3478] O39 - APT: MirageAgent - (.CyberLink.) -- C:\Windows\System32\Tasks\MirageAgent [3148] =>.CyberLink O39 - APT: Overwolf Updater Task - (.Overwolf LTD.) -- C:\Windows\System32\Tasks\Overwolf Updater Task [3730] =>.Overwolf LTD O39 - APT: Registration - (.Copyright © 2006.) -- C:\Windows\System32\Tasks\Registration [3568] ---\\ Process running (44) - 2s [MD5.2B1E7315C16A2164024F33041332C884] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 361.4.) -- C:\Windows\System32\nvvsvc.exe [1256240] [PID.696] =>.NVIDIA Corporation® [MD5.97F839E8AEC48EE271509BF4BC764C24] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [321536] [PID.1164] =>.IDT, Inc. [MD5.319D821F86BCA7D23BBE05498CC2D07F] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1254520] [PID.1588] =>.NVIDIA Corporation® [MD5.2B1E7315C16A2164024F33041332C884] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 361.4.) -- C:\Windows\System32\nvvsvc.exe [1256240] [PID.1596] =>.NVIDIA Corporation® [MD5.F6CEFEF46986DE02A3AE5D93AE32B5DC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1720] =>.Adobe Systems, Incorporated® [MD5.0F32048BF3EA2A85FE3AC48E8E7B7C85] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1353720] [PID.2272] =>.ESET, spol. s r.o.® [MD5.061CC5C12C39899D7398CFEBFD19F69F] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163200] [PID.2416] =>.NVIDIA Corporation® [MD5.AB176B9E59C0435499D83047D84EDD59] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784] [PID.2580] =>.Malwarebytes Corporation® [MD5.E8F746CD86EFBCD5AB43F01A59CFE49D] - (.Copyright (C) 2006 - 2013 Alcpu - CPU temperature and system information util.) -- C:\Program Files\Core Temp\Core Temp.exe [890016] [PID.2916] {112124A45ABBF7C551DEB213B28633C3DCAD} [MD5.4076E418CD3EB0E09FFBCD828C35CE26] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288] [PID.1108] =>.Synaptics Incorporated® [MD5.A118C52E94780AEBFA52D05A3313CCF6] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5595848] [PID.2964] =>.ESET, spol. s r.o.® [MD5.6389C402302751A48E6A4461CE7117F8] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448176] [PID.1248] =>.NVIDIA Corporation® [MD5.BD0EA5C8A4EF518C46E05F99908A56CE] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [121640] [PID.1184] =>.Synaptics Incorporated® [MD5.E445C0DB7E5E89C657FC89C0C4CCEDE5] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2787264] [PID.3212] =>.NVIDIA Corporation® [MD5.B7F55E2AE978D3D34F7876EE5D689AAE] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488] [PID.3428] =>.CyberLink® [MD5.45C56529DC489125D0EAAFB4C552A3F4] - (.Hewlett-Packard Development Company, L.P. - HP CoolSense.) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1354552] [PID.3440] =>.Hewlett-Packard Company® [MD5.DB2F32DF0FB536B72F494700DF035554] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe [324760] [PID.3488] =>.Nitro Software, Inc.® [MD5.8A3B69683E63808719D24E1C68C21CC7] - (.Hewlett-Packard Development Company, L.P. - HP On Screen Display.) -- C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960] [PID.3724] =>.Hewlett-Packard Company® [MD5.1E3277F1C9F62F90488D02869A9522B7] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488] [PID.3360] =>.NVIDIA Corporation® [MD5.266512CCC3B2E195CDE3A7A2C98A353A] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [4812736] [PID.1692] =>.NVIDIA Corporation® [MD5.CD421DDB5C6E5458CE52EDC36DE7DC5B] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [76152] [PID.3832] =>.Even Balance, Inc.® [MD5.7010B5B6FBC671B6636D0B18C4027FAA] - (.Copyright © 2013-2015 - GameScannerService.) -- C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072] [PID.3856] =>.Razer Inc.® [MD5.9FE061CEBE2478FABC37BBA9557C6DAA] - (.Razer Inc. - RzKLService.exe.) -- C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [129168] [PID.4040] =>.Razer Inc.® [MD5.9B4B3747C6756F49B986398A46EC1FE0] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6308288] [PID.5012] =>.NVIDIA Corporation® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] - (.Google Inc. - Google Installer.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [PID.4932] =>.Google Inc® [MD5.77E81E788CC63E65272A7D247F441505] - (.Hewlett-Packard Company - HP Support Assistant Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [99128] [PID.3484] =>.Hewlett-Packard Company® [MD5.549A2C7D28280312E325115EC5695D1E] - (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe [4368440] [PID.6496] =>.SoftEther K.K.® [MD5.6D625A18DDFCD0464B914B71293AD837] - (.Intel Corporation - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1014096] [PID.4712] =>.Intel Corporation-Mobile Wireless Group® [MD5.6818ABE67E1EF0B1B5A75C1090D1AF2F] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [20069312] [PID.12132] =>.NVIDIA Corporation® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.2536] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.12672] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.10928] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.12364] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.10584] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.12084] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.11716] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.9240] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.6196] =>.Google Inc® [MD5.BD25C3F5A54919B3AAEDF9A61BAC847B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\nacl64.exe [2159944] [PID.11472] =>.Google Inc® [MD5.BD25C3F5A54919B3AAEDF9A61BAC847B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.111\nacl64.exe [2159944] [PID.12636] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.11384] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.11428] =>.Google Inc® [MD5.23294E80AF6A4C653522D12A391933A1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [748360] [PID.7788] =>.Google Inc® [MD5.AD0F16DEF98337C3F11E69DCFDD9928E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Mr Unknown\Desktop\ZHPDiag3.exe [2097152] [PID.11336] =>.Nicolas Coolman ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (9) - 1s P2 - EXT FILE: (...) -- C:\Users\Mr Unknown\AppData\Roaming\Mozilla\Firefox\Profiles\314sehcw.default\extensions\button@scholar.google.com.xpi P2 - EXT FILE: (...) -- C:\Users\Mr Unknown\AppData\Roaming\Mozilla\Firefox\Profiles\314sehcw.default\extensions\firefox@mega.co.nz.xpi P2 - EXT FILE: (...) -- C:\Users\Mr Unknown\AppData\Roaming\Mozilla\Firefox\Profiles\314sehcw.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\Mr Unknown\AppData\Roaming\Mozilla\Firefox\Profiles\314sehcw.default\searchplugins\myanimelistnet.xml P2 - EXT FILE: (...) -- C:\Users\Mr Unknown\AppData\Roaming\Mozilla\Firefox\Profiles\314sehcw.default\searchplugins\youtube-video-search.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.Mike Perry, Peter Eckersley, & Yan Zhu - HTTPS-Everywhere.) -- C:\Users\Mr Unknown\AppData\Roaming\Mozilla\Firefox\Profiles\314sehcw.default\extensions\https-everywhere@eff.org P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll =>.Microsoft ---\\ Internet Explorer Extensions, Start, Search (17) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.ca R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {04b84c46-5abb-476b-a7d7-40435d9ae611} Orphean R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Hosts file redirection (3) - 0s 127 127 ~ Nombre lignes détournées 127 46 (Hosts file redirected) ---\\ Browser Helper Object (BHO) (8) - 1s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (Orphean) O2 - BHO: Ghostery Plugin [64Bits] - {6BF739DD-3323-4C6A-975B-C7E00A50B154} . (.Ghostery, Inc. - Ghostery Dynamic Link Library.) -- C:\Program Files (x86)\Ghostery\bin\ghostery.dll {1121075ACA92BD90B068E76AC01DB3C54FEC} O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: WOT Helper [64Bits] - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} . (...) -- C:\Program Files (x86)\WOT\WOT.dll O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll =>.Hewlett-Packard Company® O2 - BHO: Adblock Plus for IE Browser Helper Object [64Bits] - {FFCB3198-32F3-4E8B-9539-4324694ED664} . (.Eyeo GmbH - Adblock Plus BHO for Internet Explorer.) -- C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll =>.Eyeo GmbH® ---\\ Internet Explorer Toolbars (5) - 0s O3 - Toolbar: 0x464CB804BB5A6B47A7D740435D9AE611 - [HKCU]{04B84C46-5ABB-476B-A7D7-40435D9AE611} . (...) -- (.not file.) O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA0029030000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.) O3 - Toolbar: 0x466557714D35C941AAE831F2EC22BF0D - [HKCU]{71576546-354D-41C9-AAE8-31F2EC22BF0D} . (...) -- C:\Program Files (x86)\WOT\WOT.dll O3 - Toolbar: Newwara Toolbar - [HKLM]{04b84c46-5abb-476b-a7d7-40435d9ae611} . (...) -- (.not file.) O3 - Toolbar: WOT - [HKLM]{71576546-354D-41c9-AAE8-31F2EC22BF0D} . (...) -- C:\Program Files (x86)\WOT\WOT.dll ---\\ Auto loading programs from Registry and folders (11) - 0s O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe =>.ESET, spol. s r.o.® O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation® O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - HKLM\..\Wow6432Node\Run: [HPOSD] . (.Hewlett-Packard Development Company, L.P. - HP On Screen Display.) -- C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe =>.Hewlett-Packard Company® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-641472299-1940632299-3284642096-1002\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® ---\\ Global shortcuts Startup (65) - 6s O4 - GS\Desktop [Administrator]: Handbrake.lnk . (.HandBrake - .) C:\Program Files (x86)\Handbrake\Handbrake.exe O4 - GS\Desktop [Administrator]: SoftEther VPN Client Manager.lnk . (.SoftEther VPN Project at University of Tsukuba, Japan - .) C:\Program Files (x86)\SoftEther VPN Client\vpncmgr_x64.exe =>.SoftEther VPN Project at University of Tsukuba, Japan O4 - GS\Desktop [Administrator]: Subtitle Workshop.lnk . (...) C:\Program Files (x86)\Subtitle Workshop\SubtitleWorkshop.exe O4 - GS\Desktop [Administrator]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC} O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Mr Unknown\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: GOM Player.lnk . (.Copyright(C) Gretech Corp. All rights reserved. Since - GOM Player.) C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE {5A87D8BD8A1311CDC79E31FB1F452ED1} O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Subtitle Workshop.lnk . (...) C:\Program Files (x86)\Subtitle Workshop\SubtitleWorkshop.exe O4 - GS\Quicklaunch [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Mr Unknown\AppData\Roaming\uTorrent\uTorrent.exe O4 - GS\sendTo [Administrator]: Dropbox.lnk . (...) C:\Users\Mr Unknown\Dropbox O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrator]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Administrator]: Computer Management.lnk . (...) C:\Windows\system32\compmgmt.msc O4 - GS\TaskBar [Administrator]: Fraps.lnk . (.Beepa P/L - Fraps.) C:\Fraps\fraps.exe =>.Beepa P/L O4 - GS\TaskBar [Administrator]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Company® O4 - GS\TaskBar [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Administrator]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - GS\TaskBar [Administrator]: Protect My Folders.lnk . (.Top Password Software, Inc. - .) C:\Program Files (x86)\Protect My Folders\ProtectMyFolders.exe O4 - GS\TaskBar [Administrator]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) G:\Tor\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\TaskBar [Administrator]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - .) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH O4 - GS\Desktop [Guest]: Handbrake.lnk . (.HandBrake - .) C:\Program Files (x86)\Handbrake\Handbrake.exe O4 - GS\Desktop [Guest]: SoftEther VPN Client Manager.lnk . (.SoftEther VPN Project at University of Tsukuba, Japan - .) C:\Program Files (x86)\SoftEther VPN Client\vpncmgr_x64.exe =>.SoftEther VPN Project at University of Tsukuba, Japan O4 - GS\Desktop [Guest]: Subtitle Workshop.lnk . (...) C:\Program Files (x86)\Subtitle Workshop\SubtitleWorkshop.exe O4 - GS\Desktop [Guest]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC} O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Mr Unknown\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: GOM Player.lnk . (.Copyright(C) Gretech Corp. All rights reserved. Since - GOM Player.) C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE {5A87D8BD8A1311CDC79E31FB1F452ED1} O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Subtitle Workshop.lnk . (...) C:\Program Files (x86)\Subtitle Workshop\SubtitleWorkshop.exe O4 - GS\Quicklaunch [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Mr Unknown\AppData\Roaming\uTorrent\uTorrent.exe O4 - GS\sendTo [Guest]: Dropbox.lnk . (...) C:\Users\Mr Unknown\Dropbox O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Guest]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Guest]: Computer Management.lnk . (...) C:\Windows\system32\compmgmt.msc O4 - GS\TaskBar [Guest]: Fraps.lnk . (.Beepa P/L - Fraps.) C:\Fraps\fraps.exe =>.Beepa P/L O4 - GS\TaskBar [Guest]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Company® O4 - GS\TaskBar [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Guest]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - GS\TaskBar [Guest]: Protect My Folders.lnk . (.Top Password Software, Inc. - .) C:\Program Files (x86)\Protect My Folders\ProtectMyFolders.exe O4 - GS\TaskBar [Guest]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) G:\Tor\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\TaskBar [Guest]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - .) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH O4 - GS\Desktop [Mr Unknown]: Handbrake.lnk . (.HandBrake - .) C:\Program Files (x86)\Handbrake\Handbrake.exe O4 - GS\Desktop [Mr Unknown]: SoftEther VPN Client Manager.lnk . (.SoftEther VPN Project at University of Tsukuba, Japan - .) C:\Program Files (x86)\SoftEther VPN Client\vpncmgr_x64.exe =>.SoftEther VPN Project at University of Tsukuba, Japan O4 - GS\Desktop [Mr Unknown]: Subtitle Workshop.lnk . (...) C:\Program Files (x86)\Subtitle Workshop\SubtitleWorkshop.exe O4 - GS\Desktop [Mr Unknown]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files (x86)\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC} O4 - GS\Desktop [Mr Unknown]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Mr Unknown\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Mr Unknown]: GOM Player.lnk . (.Copyright(C) Gretech Corp. All rights reserved. Since - GOM Player.) C:\Program Files (x86)\GRETECH\GomPlayer\GOM.EXE {5A87D8BD8A1311CDC79E31FB1F452ED1} O4 - GS\Quicklaunch [Mr Unknown]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Mr Unknown]: Subtitle Workshop.lnk . (...) C:\Program Files (x86)\Subtitle Workshop\SubtitleWorkshop.exe O4 - GS\Quicklaunch [Mr Unknown]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Mr Unknown\AppData\Roaming\uTorrent\uTorrent.exe O4 - GS\sendTo [Mr Unknown]: Dropbox.lnk . (...) C:\Users\Mr Unknown\Dropbox O4 - GS\sendTo [Mr Unknown]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Mr Unknown]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Mr Unknown]: Computer Management.lnk . (...) C:\Windows\system32\compmgmt.msc O4 - GS\TaskBar [Mr Unknown]: Fraps.lnk . (.Beepa P/L - Fraps.) C:\Fraps\fraps.exe =>.Beepa P/L O4 - GS\TaskBar [Mr Unknown]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Company® O4 - GS\TaskBar [Mr Unknown]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Mr Unknown]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - GS\TaskBar [Mr Unknown]: Protect My Folders.lnk . (.Top Password Software, Inc. - .) C:\Program Files (x86)\Protect My Folders\ProtectMyFolders.exe O4 - GS\TaskBar [Mr Unknown]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) G:\Tor\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\TaskBar [Mr Unknown]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - .) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH O4 - GS\CommonDesktop [Public]: AOMEI Backupper Standard.lnk . (.AOMEI Tech Co., Ltd. - AOMEI Backupper.) C:\Program Files (x86)\AOMEI Backupper\Backupper.exe =>.ChengDu AoMei Tech Co., Ltd® O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - NVIDIA GeForce Experience Launcher Applicat.) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\LaunchGFExperience.exe =>.NVIDIA Corporation® O4 - GS\CommonDesktop [Public]: Just Cause 2.lnk . (...) G:\Just Cause 2\Just Cause 2\JustCause2.exe O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Lop.com/Domain Hijackers (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{30D9DCCA-89E7-4E11-B884-72C18785E31E}: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A2ED394B-5E27-4109-A834-17D4637CE6DB}: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DC105135-FEBB-4548-80D7-220AEA4709D4}: DhcpNameServer = 192.168.42.129 ---\\ Extra protocols (23) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: wot [64Bits] - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} . (...) -- C:\Program Files (x86)\WOT\WOT.dll O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ AppInit_DLLs Registry value Autorun (1) - 0s O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 361.) - C:\Windows\System32\nvinitx.dll ---\\ Software installed (224) - 20s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent O42 - Logiciel: Adblock Plus for IE (32-bit and 64-bit) - (.Eyeo GmbH.) [HKLM][64Bits] -- {0F347A49-E36C-4639-8D2E-003AD408B8B2} =>.Eyeo GmbH O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader XI (11.0.13) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AB0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824157129} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Aegisub 3.2.2 - (.Aegisub Team.) [HKLM][64Bits] -- {24BC8B57-716C-444F-B46B-A3349B9164C5}_is1 =>.Aegisub Team O42 - Logiciel: Aiseesoft Video Converter Ultimate 7.2.66 - (.Aiseesoft Studio.) [HKLM][64Bits] -- {BD446D04-7426-4a27-9B0B-33B0C386F71B}_is1 =>.RayShare Co.,Ltd® O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation O42 - Logiciel: Antidote 8 - (.Druide informatique inc..) [HKLM][64Bits] -- {09AAAB09-6DBA-4DD9-9865-54597D3FBCA8} =>.Druide informatique inc. O42 - Logiciel: Any Video Converter Professional 5.5.2 - (.Any-Video-Converter.com.) [HKLM][64Bits] -- Any Video Converter Professional_is1 =>.AnvSoft Co., Ltd.® O42 - Logiciel: AOMEI Backupper Standard - (.AOMEI Technology Co., Ltd..) [HKLM][64Bits] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536C09F}_is1 =>.AOMEI Technology Co., Ltd. O42 - Logiciel: Assistant de téléchargement - (.Druide informatique inc..) [HKLM][64Bits] -- {92154A3C-9BB7-49D7-A571-4EB6373FA5AD} =>.Druide informatique inc. O42 - Logiciel: AuthenTec TrueAPI 64-bit - (.AuthenTec, Inc..) [HKLM][64Bits] -- {EBC0CC3F-B7A1-4FC8-8014-4C7BFD3925E8} =>.AuthenTec, Inc. O42 - Logiciel: Battlefield 3™ - (.Electronic Arts.) [HKLM][64Bits] -- {76285C16-411A-488A-BCE3-C83CB933D8CF} =>.Electronic Arts® O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins =>.EA Digital Illusions CE AB O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-ae2324f7-1de3-496f-9328-419803edfd34 =>.WildTangent Inc® O42 - Logiciel: Bejeweled® 3 - (.Electronic Arts, Inc..) [HKLM][64Bits] -- {E99C27B2-EB2E-4244-9F5C-A96F55100F0C} =>.Electronic Arts® O42 - Logiciel: Blackhawk Striker 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-7a097b0b-30e8-417f-9b21-d32e650cef98 =>.WildTangent Inc® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-2f7252ac-34c6-4c15-a89e-daad57bcfb23 =>.WildTangent Inc® O42 - Logiciel: Cisco Systems VPN Client 5.0.07.0290 - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {467D5E81-8349-4892-9E81-C3674ED8E451} =>.Cisco Systems, Inc. O42 - Logiciel: Core Temp 1.0 RC6 - (.Alcpu.) [HKLM][64Bits] -- {086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1 =>.Alcpu O42 - Logiciel: Cradle of Rome 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-e32a596f-f0bb-4aa2-93c6-ead7e4d3b258 =>.WildTangent Inc® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler =>.Piriform Ltd® O42 - Logiciel: Dora's World Adventure - (.WildTangent.) [HKLM][64Bits] -- WTA-f81c125c-a70f-4296-8533-439926c82813 =>.WildTangent Inc® O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: ESET Smart Security - (.ESET, spol s r. o..) [HKLM][64Bits] -- {92172C3C-7BCF-4DA3-8263-6617B13E897F} =>.ESET, spol s r. o. O42 - Logiciel: ESU for Microsoft Windows 7 SP1 - (.Hewlett-Packard.) [HKLM][64Bits] -- {768A6276-5822-489C-8A2B-67190F745655} =>.Hewlett-Packard O42 - Logiciel: f.lux - (...) [HKCU][64Bits] -- Flux O42 - Logiciel: Far Cry 4 - (.R.G. Mechanics, spider91.) [HKLM][64Bits] -- Far Cry 4_R.G. Mechanics_is1 =>.R.G. Mechanics, spider91 O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WTA-32b69f35-e6f2-4c79-9b63-a901a97833a0 =>.WildTangent Inc® O42 - Logiciel: Farmscapes - (.WildTangent.) [HKLM][64Bits] -- WTA-64697717-e11e-4ab7-acba-fd36bdfb7d69 =>.WildTangent Inc® O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WTA-f92b7351-462c-44f8-9327-f620537fa6f7 =>.WildTangent Inc® O42 - Logiciel: FileASSASSIN - (.Malwarebytes.) [HKLM][64Bits] -- FileASSASSIN =>.Malwarebytes O42 - Logiciel: Final Drive Fury - (.WildTangent.) [HKLM][64Bits] -- WTA-71f5bd80-0231-4445-8edb-6d908e315f5c =>.WildTangent Inc® O42 - Logiciel: Fraps (remove only) - (...) [HKLM][64Bits] -- Fraps O42 - Logiciel: Ghostery - (.Ghostery Inc.) [HKLM][64Bits] -- Ghostery O42 - Logiciel: GOM Player - (.Gretech Corporation.) [HKLM][64Bits] -- GOM Player =>.Gretech Corporation O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Grand Theft Auto IV - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-1110000B8301} =>.Rockstar Games Inc. O42 - Logiciel: Grand Theft Auto IV - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-1110000D8301} =>.Rockstar Games Inc. O42 - Logiciel: Grand Theft Auto IV - (.Rockstar Games.) [HKLM][64Bits] -- {579BA58C-F33D-4970-9953-B94B43768AC3} =>.Take-Two Interactive Software, Inc.® O42 - Logiciel: HandBrake 0.10.2 - (...) [HKLM][64Bits] -- HandBrake O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company O42 - Logiciel: Hoyle Card Games - (.WildTangent.) [HKLM][64Bits] -- WTA-1aecb10b-92d8-4684-a505-2d98c187afdf =>.WildTangent Inc® O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {54CE68A8-4F2D-4328-B1F7-D6C720405F7F} =>.Hewlett-Packard Company O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1} =>.Hewlett-Packard Company O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM][64Bits] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2} =>.Hewlett-Packard O42 - Logiciel: HP CoolSense - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E2C8D0C2-1C97-4C05-939A-5B13A0FE655C} =>.Hewlett-Packard Company O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard O42 - Logiciel: HP Deskjet 3050A J611 series Basic Device Software - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {1B77E249-B8D5-4E5E-8848-693ACEF84E6D} =>.Hewlett-Packard Co. O42 - Logiciel: HP Deskjet 3050A J611 series Help - (.Hewlett Packard.) [HKLM][64Bits] -- {97DDCAB8-B770-4089-A10F-67568069D78A} =>.Hewlett Packard O42 - Logiciel: HP Deskjet 3050A J611 series Product Improvement Study - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {A772BF60-20A5-4279-A18B-B9D8DBC9B30A} =>.Hewlett-Packard Co. O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {3F122044-172F-4DC6-96CA-0DD4300E9CD9} =>.Hewlett-Packard O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall =>.WildTangent Inc O42 - Logiciel: HP On Screen Display - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {ED1BD69A-07E3-418C-91F1-D856582581BF} =>.Hewlett-Packard Company O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] -- HP Photo Creations =>.Visan Industries® O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {D8BCE5B9-67CF-4F3F-93AE-3ACC754C72EB} =>.Hewlett-Packard Company O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E5823036-6F09-4D0A-B05C-E2BAA129288A} =>.Hewlett-Packard Company O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {DBCD5E64-7379-4648-9444-8A6558DCB614} =>.Hewlett-Packard O42 - Logiciel: HP Security Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {ED6CD3AC-616B-4B20-BCF3-6E637B92A5AD} =>.Hewlett-Packard Company O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {F5E7D9AF-60F6-4A30-87E3-4EA94D322CE1} =>.Hewlett-Packard Company O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C} =>.Hewlett-Packard Company O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- {4BACA3B8-F63A-44ED-9A8D-48B4D02AD268} =>.Hewlett-Packard O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {1DFA0C99-6E2E-46F4-B242-51C7CF41DDE5} =>.Hewlett-Packard Company O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {904822F1-6C7D-4B91-B936-6A1C0810544C} =>.Hewlett-Packard Company O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E35601C0-BA8E-4F32-919A-C7EF4CA81F67} =>.Hewlett-Packard Company O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D} =>.Microsoft O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} =>.IDT O42 - Logiciel: Intel(R) Cloud Access Manager - (.Intel Corporation.) [HKLM][64Bits] -- {48500E3A-90D9-4FA4-8DA9-7BFB77A5A2AE} =>.Intel Corporation O42 - Logiciel: Intel(R) Driver Update Utility 2.0 - (.Intel.) [HKLM][64Bits] -- {59DB38EB-F864-4E10-841D-38CFBCF864B0} =>.Intel O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {5F6F9FDB-4B94-4912-8966-77356C01303C} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {74541060-2DB1-4E8C-B239-3A78EA50F2F6} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {CA07FCB1-DAE9-4F8A-8698-F9C30D1E375F} =>.Intel Corporation O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {43A76F9B-48F1-4E0D-A9B4-8E4F6C42E28C} =>.Intel Corporation O42 - Logiciel: Intel(R) My WiFi Dashboard - (.Intel Corporation.) [HKLM][64Bits] -- {6FF4DB88-3E54-468C-A0C6-208766A45C52} =>.Intel Corporation O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} =>.Intel Corporation O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] -- {17e91253-12f4-4fa1-bd55-5d950e7799a8} =>.Intel Corporation O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3015F546-6C3E-4E6A-B564-BCDF88C0BA2A} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {2CC64CFB-0B4F-45D1-94CB-3F68DC4A60AE} =>.Intel Corporation O42 - Logiciel: Intel(R) Update Manager - (.Intel Corporation.) [HKLM][64Bits] -- {84A2B59B-6A7B-4C01-8592-15C9BFE6AC36} =>.Intel Corporation O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel Corporation® O42 - Logiciel: Intel(R) WiDi - (.Intel Corporation.) [HKLM][64Bits] -- {BE7E45FA-7F97-4155-87CF-2DEA398995DA} =>.Intel Corporation O42 - Logiciel: Intel(R) Wireless Music device driver - (.Intel Corporation.) [HKLM][64Bits] -- {4169B8AC-D144-4E38-A9CA-637EA44129ED} =>.Intel Corporation O42 - Logiciel: Intel® Driver Update Utility - (.Intel.) [HKLM][64Bits] -- {8409c4f7-2340-4933-a304-5d37db4fb48b} =>.Intel(R) Driver Update Utility® O42 - Logiciel: Intel® PROSet/Wireless Software - (.Intel Corporation.) [HKLM][64Bits] -- {89a03d4c-5e14-4180-984e-6932893138fc} =>.Intel Corporation-Wireless Connectivity Solutions® O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {F27A944C-C95A-4DB7-BC8A-AEFD9B1B5E40} =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {6199B534-A1B6-46ED-873B-97B0ECF8F81E} =>.Intel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Java 8 Update 51 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218051F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-5cabdc80-b7b6-463e-bcb8-d3f65e0ed0bb =>.WildTangent Inc® O42 - Logiciel: Jewel Quest Mysteries: The Seventh Gate Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-a2c38aa2-9093-431f-b300-0bd66e739d1c =>.WildTangent Inc® O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WTA-837c70c6-7091-4cbb-b00c-d265a18ed489 =>.WildTangent Inc® O42 - Logiciel: Just Cause 2 - (...) [HKLM][64Bits] -- Just Cause 2_is1 O42 - Logiciel: K-Lite Mega Codec Pack 10.7.1 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Letters from Nowhere 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-ea1f8b74-e35c-4112-bc6f-c106c83ae5b7 =>.WildTangent Inc® O42 - Logiciel: Luxor HD - (.WildTangent.) [HKLM][64Bits] -- WTA-8a008f5a-1e58-4920-969e-6239ce0c3075 =>.WildTangent Inc® O42 - Logiciel: Mah Jong Medley - (.WildTangent.) [HKLM][64Bits] -- WTA-1cc1e892-e29f-4bcd-8265-ab53414d38c7 =>.WildTangent Inc® O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Metal Slug 3 - (...) [HKLM][64Bits] -- TWV0YWxTbHVnMw==_is1 O42 - Logiciel: Microsoft Access MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0117-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft SharePoint Designer MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0017-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft X MUI (Arabic) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0101-0401-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mirror's Edge™ - (.Electronic Arts.) [HKLM][64Bits] -- {AEDBD563-24BB-4EE3-8366-A654DAC2D988} =>.Electronic Arts O42 - Logiciel: MKVToolNix 7.9.0 (64bit) - (.Moritz Bunkus.) [HKLM][64Bits] -- MKVToolNix =>.Moritz Bunkus O42 - Logiciel: Mozilla Firefox 43.0.4 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 43.0.4 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Mp3tag v2.64 - (.Florian Heidenreich.) [HKLM][64Bits] -- Mp3tag =>.Florian Heidenreich O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Nitro Pro 10 - (.Nitro.) [HKLM][64Bits] -- {7FEDFA65-7BA1-447A-82C7-90C01D863E91} =>.Nitro O42 - Logiciel: NVIDIA Control Panel 361.43 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience 2.9.1.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Graphics Driver 361.43 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Optimus Update 2.9.1.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation O42 - Logiciel: NVIDIA PhysX System Software 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation O42 - Logiciel: NVIDIA PhysX v8.10.17 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {E4D15328-8C89-484B-B9AA-F5BE9EA6D01C} =>.NVIDIA Corporation O42 - Logiciel: NVIDIA ShadowPlay 2.9.1.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update 2.9.1.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Audio 1.2.34 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc® O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {9395F41D-0F80-432E-9A59-B8E477E7E163} =>.Apache Software Foundation O42 - Logiciel: opensource - (.Your Company Name.) [HKLM][64Bits] -- {3677D4D8-E5E0-49FC-B86E-06541CF00BBE} =>.Your Company Name O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin =>.Electronic Arts, Inc.® O42 - Logiciel: Overwolf - (.Overwolf Ltd..) [HKLM][64Bits] -- Overwolf =>.Overwolf Ltd® O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WTA-aa61f94f-4fe6-4aef-8ab4-8b2dc265dbf2 =>.WildTangent Inc® O42 - Logiciel: Petit Larousse 2010 - (...) [HKLM][64Bits] -- {422FADA9-FED2-41D7-B5FA-472BB98B7784} O42 - Logiciel: PlayReady PC Runtime x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61} =>.Microsoft Corporation O42 - Logiciel: Poker Superstars III - (.WildTangent.) [HKLM][64Bits] -- WTA-70286558-a194-4846-a3ea-e574be70749a =>.WildTangent Inc® O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-f5dbd774-8919-4bad-931c-7a30460ab5ed =>.WildTangent Inc® O42 - Logiciel: Polar Golfer - (.WildTangent.) [HKLM][64Bits] -- WTA-eff9fd81-1619-472c-b795-8d921f0bde0e =>.WildTangent Inc® O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM][64Bits] -- PowerISO =>.Power Software Ltd O42 - Logiciel: QuickSFV - (.Totally Useful Software, Inc..) [HKLM][64Bits] -- {89B56CFC-0270-4ACF-8BF1-048251FD9E08} O42 - Logiciel: Rainmeter - (...) [HKLM][64Bits] -- Rainmeter O42 - Logiciel: Razer Cortex - (.Razer Inc..) [HKLM][64Bits] -- Razer Cortex_is1 =>.Razer Inc.® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp® O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva =>.Piriform Ltd® O42 - Logiciel: Remove Empty Directories version 2.2 - (.Jonas John.) [HKLM][64Bits] -- {06F25DC8-71E2-44E2-805A-F15E15B51C74}_is1 =>.Jonas John O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club =>.Take-Two Interactive Software, Inc.® O42 - Logiciel: RollerCoaster Tycoon 3: Platinum - (.WildTangent.) [HKLM][64Bits] -- WTA-ebbe23f5-2b7d-4b6a-9daf-c5f04d510df2 =>.WildTangent Inc® O42 - Logiciel: Saints Row Gat out of Hell - (...) [HKLM][64Bits] -- U2FpbnRzUm93R2F0b3V0b2ZIZWxs_is1 O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.DEVGURU CO LTD® O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation O42 - Logiciel: Should I Remove It - (.Reason Software Company Inc..) [HKCU][64Bits] -- Should I Remove It 1.0.4 =>.Reason Software Company Inc. O42 - Logiciel: Should I Remove It - (.Reason Software Company Inc..) [HKLM][64Bits] -- {4E62123C-4C0D-4123-A8A2-C0103B92D7EA} =>.Reason Software Company Inc. O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A. O42 - Logiciel: SoftEther VPN Client - (.SoftEther VPN Project.) [HKLM][64Bits] -- softether_sevpnclient =>.SoftEther K.K.® O42 - Logiciel: StudioTax 2014 - (.BHOK IT Consulting.) [HKLM][64Bits] -- {80403EF9-5F06-487F-AD5D-5B135E822DDD} O42 - Logiciel: Subtitle Workshop 6.0b - (...) [HKLM][64Bits] -- SubtitleWorkshop O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: System Requirements Lab - (.Husdawg, LLC.) [HKLM][64Bits] -- {FEE1F166-EAE4-4C4B-8988-D82521F9F63F} =>.Husdawg, LLC O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH O42 - Logiciel: TeraCopy 2.3 - (.Code Sector.) [HKLM][64Bits] -- TeraCopy_is1 {71C5DF6381C2F42A65159FEE0540F57E} O42 - Logiciel: The Treasures of Mystery Island: The Ghost Ship - (.WildTangent.) [HKLM][64Bits] -- WTA-e4dbe710-8c64-4c44-9024-be9276f4f4ef =>.WildTangent Inc® O42 - Logiciel: TmNationsForever - (.Nadeo.) [HKLM][64Bits] -- TmNationsForever_is1 =>.Nadeo O42 - Logiciel: TNod User & Password Finder - (.Tukero[X]Team.) [HKLM][64Bits] -- TNod O42 - Logiciel: Torchlight - (.WildTangent.) [HKLM][64Bits] -- WTA-4a886f29-c8d9-4f92-b5dd-eb9c4f155789 =>.WildTangent Inc® O42 - Logiciel: Total Video Converter 3.71 100812 - (.EffectMatrix Inc..) [HKLM][64Bits] -- Total Video Converter 3.71_is1 O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0401-1000-0000000FF1CE}_Office15.OMUI.ar-sa_{4B154642-070A-4391-A5A6-E41FDC0FF38B} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{40930C8E-A677-414C-A72F-DFDEB10738FB} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0401-1000-0000000FF1CE}_Office15.OMUI.ar-sa_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} =>.Microsoft Corporation® O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft O42 - Logiciel: Uplayer - (.D-LINK CORPORATION.) [HKLM][64Bits] -- {28B6BA37-247E-4F7C-8D60-3EC1C9A2EB2F} =>.D-Link Corporation O42 - Logiciel: Validity WBF DDK - (.Validity Sensors, Inc..) [HKLM][64Bits] -- {DA83578A-7DB2-4CF6-9453-CF24C7917AB8} =>.Validity Sensors, Inc. O42 - Logiciel: Virtual Villagers 4 - The Tree of Life - (.WildTangent.) [HKLM][64Bits] -- WTA-4f0c7e3f-961f-4e7b-a5f6-67e2c6bac936 =>.WildTangent Inc® O42 - Logiciel: Visuel intégré - (.Druide informatique inc..) [HKLM][64Bits] -- {D6A48C7F-A0F8-46A5-A1ED-F45A62FE93BF} =>.Druide informatique inc. O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WD Drive Utilities - (.Western Digital Technologies, Inc..) [HKLM][64Bits] -- {E61CFDDA-40DD-4400-95CA-12819C50B5C2} =>.Western Digital Technologies, Inc. O42 - Logiciel: WD Security - (.Western Digital Technologies, Inc..) [HKLM][64Bits] -- {83270912-15C7-4336-822E-E8F1B1BBCA60} =>.Western Digital Technologies, Inc. O42 - Logiciel: WD SmartWare - (.Western Digital Technologies, Inc..) [HKLM][64Bits] -- {6FE8A1DA-8CA6-4801-BF0F-0F2FED143FF4} =>.Western Digital Technologies, Inc. O42 - Logiciel: WildTangent Games App for HP - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp =>.WildTangent Inc® O42 - Logiciel: WinDirStat 1.1.2 - (...) [HKCU][64Bits] -- WinDirStat O42 - Logiciel: WinRAR 5.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WOT for Internet Explorer - (.WOT Services Oy.) [HKLM][64Bits] -- {373B90E1-A28C-434C-92B6-7281AFA6115A} =>.WOT Services Oy O42 - Logiciel: XBMC - (.Team XBMC.) [HKCU][64Bits] -- XBMC =>.Team XBMC O42 - Logiciel: Your Uninstaller! 7 - (.URSoft, Inc..) [HKLM][64Bits] -- YU2010_is1 {2D52C7CF5E69A633AC3AED0E78F988DC} O42 - Logiciel: Zumas Revenge - (.PopCap Games.) [HKLM][64Bits] -- {0B153CAB-792B-4CA2-B2A5-AB0BBAF2FFA9} =>.Electronic Arts® O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-c8ad166b-335b-4afc-83e7-ea8404f3d9ef =>.WildTangent Inc® ---\\ HKCU & HKLM Software Keys (213) - 20s HKLM\SOFTWARE\Wow6432Node\Acronis HKLM\SOFTWARE\Wow6432Node\Activision HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\AuthenTec HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\Cisco Systems HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\DeterministicNetworks HKLM\SOFTWARE\Wow6432Node\Druide informatique inc. HKLM\SOFTWARE\Wow6432Node\EA DICE HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\ESET HKLM\SOFTWARE\Wow6432Node\Florian Heidenreich HKLM\SOFTWARE\Wow6432Node\Fraps HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\GRETECH HKLM\SOFTWARE\Wow6432Node\GSLLC HKLM\SOFTWARE\Wow6432Node\Havas Interactive HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\IDT HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Insyde HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\iTinySoft HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\Larousse HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nalpeiron HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OpenOffice HKLM\SOFTWARE\Wow6432Node\Origin HKLM\SOFTWARE\Wow6432Node\Origin Games HKLM\SOFTWARE\Wow6432Node\Overwolf HKLM\SOFTWARE\Wow6432Node\PopCap HKLM\SOFTWARE\Wow6432Node\PopCap Games HKLM\SOFTWARE\Wow6432Node\PowerISO HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Rainmeter HKLM\SOFTWARE\Wow6432Node\Razer HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\RocketLife HKLM\SOFTWARE\Wow6432Node\Rockstar Games HKLM\SOFTWARE\Wow6432Node\Samsung HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SoftEther Project HKLM\SOFTWARE\Wow6432Node\Steganos HKLM\SOFTWARE\Wow6432Node\Subtitle Workshop HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\TGUID HKLM\SOFTWARE\Wow6432Node\Ubisoft HKLM\SOFTWARE\Wow6432Node\uOttawa HKLM\SOFTWARE\Wow6432Node\Validity HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Visan HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\Western Digital HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\Yodot Software HKLM\SOFTWARE\Wow6432Node\Even Balance HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\4kdownload.com HKCU\SOFTWARE\Acronis HKCU\SOFTWARE\AdblockPlus HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Against Intuition HKCU\SOFTWARE\Aiseesoft Studio HKCU\SOFTWARE\AnchorFree HKCU\SOFTWARE\AnvSoft HKCU\SOFTWARE\AOMEI HKCU\SOFTWARE\Aoofpkkccp HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AuthenTec HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Bohemia Interactive HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\bunkus.org HKCU\SOFTWARE\Caphyon HKCU\SOFTWARE\Code Sector HKCU\SOFTWARE\Crystal Dynamics HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Deep Silver HKCU\SOFTWARE\DeterministicNetworks HKCU\SOFTWARE\dlink HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\Druide informatique inc. HKCU\SOFTWARE\EA Games HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Electronic Arts HKCU\SOFTWARE\EMU HKCU\SOFTWARE\ESET HKCU\SOFTWARE\Facepunch Studios HKCU\SOFTWARE\FeePerfect HKCU\SOFTWARE\Fraps3 HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GRETECH HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Hewlett-Packard Company HKCU\SOFTWARE\HP HKCU\SOFTWARE\HWiNFO64 HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IE Tab HKCU\SOFTWARE\IGA HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Imagination Technologies HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Intel Corporation HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JDownloader HKCU\SOFTWARE\JustCause2 HKCU\SOFTWARE\KoeiTecmo HKCU\SOFTWARE\Lavalys HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Lyrics Plugin HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\MainConcept (Broadcast) HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Michael Herf HKCU\SOFTWARE\MiniLyrics HKCU\SOFTWARE\mkvmergeGUI HKCU\SOFTWARE\Modern UI Test HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\NBMonitor HKCU\SOFTWARE\Ndemic Creations HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewTechnologyStudio HKCU\SOFTWARE\Nitro HKCU\SOFTWARE\Nitro PDF HKCU\SOFTWARE\NTSCorp HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OpenOffice HKCU\SOFTWARE\Overwolf HKCU\SOFTWARE\Parsec Productions HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PopCap HKCU\SOFTWARE\PowerISO HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Reason HKCU\SOFTWARE\RegisteredApplicationsEx =>PUP.Optional.SfKpCouponApp HKCU\SOFTWARE\Resplendence Sp HKCU\SOFTWARE\SAMP HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\Seifert HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SoftEther Project HKCU\SOFTWARE\Steganos HKCU\SOFTWARE\SWiSHzone.com HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\System Requirements Lab HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\THEGFW HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Tukero[X]Team HKCU\SOFTWARE\tvp HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Unity HKCU\SOFTWARE\University of Tsukuba HKCU\SOFTWARE\URSoft HKCU\SOFTWARE\uTorrentPlus HKCU\SOFTWARE\Valve HKCU\SOFTWARE\Visan HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\Western Digital HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\XBMC HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Toolbar HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\Against Intuition HKCU\SOFTWARE\AppDataLow\Software\Ghostery HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Newwara HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\AppDataLow\Software\Tbccint =>PUP.Optional.Conduit ---\\ Contents of the Common Files folders (360) - 15s O43 - CFD: 26/08/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 24/03/2015 - [] D -- C:\Program Files (x86)\Aiseesoft Studio =>.RayShare Co.,Ltd® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\AnvSoft =>.AnvSoft Co., Ltd.® O43 - CFD: 12/08/2015 - [] D -- C:\Program Files (x86)\AOMEI Backupper =>.ChengDu AoMei Tech Co., Ltd® O43 - CFD: 16/06/2015 - [] D -- C:\Program Files (x86)\Battlelog Web Plugins =>.Electronic Arts® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Belarc O43 - CFD: 11/03/2015 - [] D -- C:\Program Files (x86)\BHOK IT Consulting {071B0F9C35FBCC07469AED4863BA9FAA} O43 - CFD: 09/03/2015 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Cisco Systems O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink® O43 - CFD: 19/12/2015 - [] D -- C:\Program Files (x86)\Druide =>.Druide informatique inc.® O43 - CFD: 09/02/2015 - [] D -- C:\Program Files (x86)\FileASSASSIN O43 - CFD: 29/12/2015 - [] D -- C:\Program Files (x86)\Ghostery O43 - CFD: 03/01/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 25/04/2015 - [] D -- C:\Program Files (x86)\GRETECH {5A87D8BD8A1311CDC79E31FB1F452ED1} O43 - CFD: 11/03/2015 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard Company® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\HP Games O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\HP Photo Creations =>.Visan Industries® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\HP SimplePass =>.AuthenTec, Inc.® O43 - CFD: 25/08/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 09/03/2015 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 22/01/2015 - [] D -- C:\Program Files (x86)\Intel Driver Update Utility =>.Intel(R) Driver Update Utility® O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc.® O43 - CFD: 28/11/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 21/07/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Larousse =>.Microsoft Corporation® O43 - CFD: 15/10/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 19/07/2015 - [] D -- C:\Program Files (x86)\Metal Slug 3 O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET O43 - CFD: 07/07/2015 - [] D -- C:\Program Files (x86)\Microsoft Games O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 17/09/2015 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 06/01/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 06/01/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Mp3tag {00B0290098B8F8D5FBF1BBD1F352792307} O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 04/11/2015 - [] D -- C:\Program Files (x86)\Nitro O43 - CFD: 21/01/2015 - [] D -- C:\Program Files (x86)\Nsasoft O43 - CFD: 13/04/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.NVIDIA Corporation® O43 - CFD: 29/12/2014 - [] RD -- C:\Program Files (x86)\Online Services =>.Skype Technologies SA® O43 - CFD: 24/03/2015 - [] D -- C:\Program Files (x86)\OpenAL =>.Creative Labs Inc® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\OpenOffice 4 O43 - CFD: 29/12/2015 - [] D -- C:\Program Files (x86)\Origin =>.Electronic Arts, Inc.® O43 - CFD: 25/08/2015 - [] D -- C:\Program Files (x86)\Origin Games =>.Electronic Arts® O43 - CFD: 29/12/2015 - [] D -- C:\Program Files (x86)\Overwolf =>.Overwolf Ltd® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\PlayReady O43 - CFD: 14/01/2015 - [] D -- C:\Program Files (x86)\Razer =>.Razer Inc.® O43 - CFD: 21/01/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Reason =>.Reason Software Company Inc.® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Remove Empty Directories O43 - CFD: 26/06/2015 - [] D -- C:\Program Files (x86)\Rockstar Games =>.Take-Two Interactive Software, Inc.® O43 - CFD: 07/07/2015 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 07/07/2015 - [] D -- C:\Program Files (x86)\Subtitle Workshop O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\SymSilent =>.Symantec Corporation® O43 - CFD: 26/08/2015 - [] D -- C:\Program Files (x86)\SystemRequirementsLab O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Technitium O43 - CFD: 17/06/2015 - [] D -- C:\Program Files (x86)\TmNationsForever O43 - CFD: 07/07/2015 - [] D -- C:\Program Files (x86)\Total Video Converter O43 - CFD: 09/01/2015 - [] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft Massive® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Western Digital =>.Western Digital Technologies, Inc.® O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Inc® O43 - CFD: 03/02/2015 - [] D -- C:\Program Files (x86)\WinDirStat O43 - CFD: 30/12/2014 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 24/08/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 20/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 12/01/2015 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\WinThemePack O43 - CFD: 18/07/2015 - [] D -- C:\Program Files (x86)\WOT O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\XBMC O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Your Uninstaller! 7 O43 - CFD: 26/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 26/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 24/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aiseesoft O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antidote O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bejeweled 3 O43 - CFD: 21/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 12/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Systems VPN Client O43 - CFD: 29/12/2014 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat O43 - CFD: 26/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp O43 - CFD: 31/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler O43 - CFD: 02/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET O43 - CFD: 09/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileASSASSIN O43 - CFD: 29/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps O43 - CFD: 23/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 25/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 05/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 26/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support O43 - CFD: 26/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 22/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility O43 - CFD: 03/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Larousse O43 - CFD: 26/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 15/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 24/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 17/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 19/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag O43 - CFD: 29/12/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 29/12/2014 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Planets Windows Theme O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO O43 - CFD: 26/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protect My Folders O43 - CFD: 19/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recover Keys O43 - CFD: 26/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Empty Directories O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer O43 - CFD: 29/12/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection O43 - CFD: 29/12/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 12/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftEther VPN Client O43 - CFD: 07/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQUARE ENIX - Eidos Interactive O43 - CFD: 11/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StudioTax 2014 O43 - CFD: 26/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy O43 - CFD: 17/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TmNationsForever O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TNod User & Password Finder O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Video Converter O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Western Digital O43 - CFD: 03/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDirStat O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7 O43 - CFD: 03/03/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\AomeiBR O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 25/05/2015 - [] D -- C:\ProgramData\Bohemia Interactive O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 28/07/2015 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\EA Logs O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Electronic Arts O43 - CFD: 02/10/2015 - [] D -- C:\ProgramData\ESET O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 12/01/2015 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\HP O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\HP SimplePass 2011 O43 - CFD: 13/01/2016 - [0] D -- C:\ProgramData\IDM O43 - CFD: 09/03/2015 - [] D -- C:\ProgramData\Intel O43 - CFD: 21/01/2015 - [] D -- C:\ProgramData\Intel(R) Update Manager O43 - CFD: 22/01/2015 - [] D -- C:\ProgramData\IntelDLM O43 - CFD: 09/03/2015 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 21/05/2015 - [] D -- C:\ProgramData\Logs O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Malwarebytes Anti-Exploit O43 - CFD: 12/01/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Nitro O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Norton O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 15/07/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\Orbit O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Origin O43 - CFD: 02/01/2016 - [] D -- C:\ProgramData\Overwolf O43 - CFD: 15/07/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Passmark O43 - CFD: 04/03/2015 - [0] D -- C:\ProgramData\Protect My Folders O43 - CFD: 14/01/2015 - [] D -- C:\ProgramData\Razer O43 - CFD: 08/07/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 25/04/2015 - [] D -- C:\ProgramData\SAMSUNG O43 - CFD: 29/12/2014 - [] SHD -- C:\ProgramData\SecuROM O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 09/01/2015 - [] D -- C:\ProgramData\Steam O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Sun O43 - CFD: 25/08/2015 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\SystemRequirementsLab O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\TrackMania O43 - CFD: 25/08/2015 - [] D -- C:\ProgramData\TrueSuite O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Visan O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Western Digital O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\Windows Genuine Advantage O43 - CFD: 26/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Acronis O43 - CFD: 10/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Common Files\AuthenTec O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Common Files\Bitdefender O43 - CFD: 24/08/2015 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 29/01/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 15/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 29/07/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 29/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Overwolf O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 13/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 07/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 13/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 30/12/2014 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 29/12/2014 - [] D -- C:\Program Files (x86)\Common Files\Western Digital O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 26/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\.kde O43 - CFD: 02/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Adobe O43 - CFD: 19/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Aegisub O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\AnvSoft O43 - CFD: 11/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\BHOK O43 - CFD: 11/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\BHOK IT Consulting O43 - CFD: 04/08/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Bioshock2Steam O43 - CFD: 09/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\dlink O43 - CFD: 26/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\DMCache O43 - CFD: 09/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox O43 - CFD: 12/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Druide O43 - CFD: 07/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\dvdcss O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\ESET O43 - CFD: 02/05/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Far Cry 4 O43 - CFD: 26/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\flightgear.org O43 - CFD: 25/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\fltk.org O43 - CFD: 03/08/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\fontconfig O43 - CFD: 13/04/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\GiliSoft O43 - CFD: 03/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\gnupg O43 - CFD: 25/04/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\GRETECH O43 - CFD: 09/02/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\gtk-2.0 O43 - CFD: 14/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\HandBrake O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Hewlett-Packard O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\hpqlog O43 - CFD: 11/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\HpUpdate O43 - CFD: 06/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\IDM O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\IDT O43 - CFD: 26/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Intel O43 - CFD: 21/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Intel Corporation O43 - CFD: 09/02/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Intel WiDi O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Macromedia O43 - CFD: 20/07/2015 - [] SD -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft O43 - CFD: 04/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Mozilla O43 - CFD: 04/02/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Mp3tag O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\MPC-HC O43 - CFD: 04/08/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Nitro O43 - CFD: 26/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Nitro PDF O43 - CFD: 10/02/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\No Company Name O43 - CFD: 11/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\NVIDIA O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\OpenOffice O43 - CFD: 12/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Origin O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\PlayClaw5 O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\PowerISO O43 - CFD: 05/08/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Rainmeter O43 - CFD: 13/04/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\SAMSUNG O43 - CFD: 29/12/2014 - [] RHD -- C:\Users\Mr Unknown\AppData\Roaming\SecuROM O43 - CFD: 07/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Skype O43 - CFD: 15/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Steam O43 - CFD: 13/04/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Steganos O43 - CFD: 23/06/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Steganos Updates O43 - CFD: 07/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Steganos VPN O43 - CFD: 06/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Synaptics O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\TeraCopy O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Theta O43 - CFD: 02/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\TS3Client O43 - CFD: 20/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Ubisoft O43 - CFD: 08/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\uplay O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\URSoft O43 - CFD: 02/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\uTorrent O43 - CFD: 22/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\vlc O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\WildTangent O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Windows Live Writer O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\WinRAR O43 - CFD: 19/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\XBMC O43 - CFD: 27/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\ZHP O43 - CFD: 04/11/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Adobe O43 - CFD: 19/06/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Aegisub O43 - CFD: 26/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Aiseesoft Studio O43 - CFD: 29/12/2014 - [0] SHD -- C:\Users\Mr Unknown\AppData\Local\Application Data O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Apps O43 - CFD: 25/05/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Arma 3 O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\AuthenTec O43 - CFD: 25/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Local\CrashDumps O43 - CFD: 25/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\CyberLink O43 - CFD: 21/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Dropbox O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Electronic_Arts_Inc O43 - CFD: 25/11/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\ElevatedDiagnostics O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\ESET O43 - CFD: 28/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\FeePerfect O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\FluxSoftware O43 - CFD: 15/09/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Google O43 - CFD: 24/06/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\GWX O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Hewlett-Packard O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Hewlett-Packard_Company O43 - CFD: 29/12/2014 - [0] SHD -- C:\Users\Mr Unknown\AppData\Local\History O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\HP O43 - CFD: 20/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Local\IE Tab O43 - CFD: 22/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Intel O43 - CFD: 29/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Intel WiDi O43 - CFD: 11/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\IsolatedStorage O43 - CFD: 04/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Local\Macromedia O43 - CFD: 03/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Local\Microsoft O43 - CFD: 04/06/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Microsoft Games O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Mozilla O43 - CFD: 19/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\mslug3 O43 - CFD: 11/05/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\My Games O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\NVIDIA O43 - CFD: 19/11/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\NVIDIA Corporation O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Origin O43 - CFD: 02/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Local\Overwolf O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\PassMark O43 - CFD: 25/05/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\PAYDAY 2 O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\PopCap Games O43 - CFD: 05/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Local\Programs O43 - CFD: 09/05/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\PunkBuster O43 - CFD: 29/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Purplizer O43 - CFD: 14/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Razer O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Razer_Inc O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Remove_Empty_Directories O43 - CFD: 31/05/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Rockstar Games O43 - CFD: 07/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\SKIDROW O43 - CFD: 07/07/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Skype O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Sniper3 O43 - CFD: 27/01/2016 - [] D -- C:\Users\Mr Unknown\AppData\Local\Temp O43 - CFD: 29/12/2014 - [0] SHD -- C:\Users\Mr Unknown\AppData\Local\Temporary Internet Files O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Torch =>.Superfluous.Torch O43 - CFD: 04/07/2012 - [] D -- C:\Users\Mr Unknown\AppData\Local\Ubisoft Game Launcher O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Western_Digital O43 - CFD: 04/08/2015 - [] D -- C:\Users\Mr Unknown\AppData\Local\Windows Live O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Local\Windows Live Writer O43 - CFD: 13/07/2009 - [] RD -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 27/12/2015 - [] RD -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 09/09/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps O43 - CFD: 09/12/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux O43 - CFD: 24/04/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 07/04/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 05/07/2015 - [0] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Handbrake O43 - CFD: 03/03/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 13/07/2009 - [] RD -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 19/05/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf O43 - CFD: 28/12/2015 - [0] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer O43 - CFD: 29/12/2014 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Should I Remove It O43 - CFD: 27/12/2015 - [] RD -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 19/06/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Subtitle Workshop O43 - CFD: 20/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft O43 - CFD: 03/02/2015 - [0] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinDirStat O43 - CFD: 26/03/2015 - [0] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 20/01/2015 - [] D -- C:\Users\Mr Unknown\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XBMC ---\\ ShellIconOverlayIdentifiers (SIOI) (21) - 1s O106 - SIOI: DropboxExt1 Class [ DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [ DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class [ DropboxExt3] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class [ DropboxExt4] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [ DropboxExt5] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class [ DropboxExt6] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [ DropboxExt7] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class [ DropboxExt8] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: DropboxExt1 Class ["DropboxExt1"] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class ["DropboxExt2"] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class ["DropboxExt3"] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class ["DropboxExt4"] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class ["DropboxExt5"] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class ["DropboxExt6"] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class ["DropboxExt7"] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class ["DropboxExt8"] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\Mr Unknown\AppData\Roaming\Dropbox\bin\DropboxExt.28.dll =>.Dropbox, Inc® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ ShareTools MSconfig StartupReg (29) - 2s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Adobe Creative Cloud [Key] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Adobe Updater [Key] . (...) -- C:\ProgramData\Adobe\Color.vbs O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\AgentAntidote32 [Key] . (.Druide informatique inc. - AgentAntidote.) -- C:\Program Files (x86)\Druide\Antidote 8\Programmes32\AgentAntidote.exe =>.Druide informatique inc. O53 - SMSR:HKLM\...\startupreg\AgentAntidote64 [Key] . (.Druide informatique inc. - AgentAntidote.) -- C:\Program Files (x86)\Druide\Antidote 8\Programmes64\AgentAntidote.exe =>.Druide informatique inc. O53 - SMSR:HKLM\...\startupreg\BLEServicesCtrl [Key] . (.Intel Corporation - Bluetooth LE Services Control Program.) -- C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\BTMTrayAgent [Key] . (.Microsoft Corporation - Windows host process (Rundll32).) -- rundll32.exe (.not file.) =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd O53 - SMSR:HKLM\...\startupreg\DriveUtilitiesHelper [Key] . (.Western Digital Technologies, Inc. - WD Drive Utilities Helper.) -- C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe =>.Western Digital Technologies, Inc. O53 - SMSR:HKLM\...\startupreg\Dropbox Update [Key] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\Mr Unknown\AppData\Local\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc. O53 - SMSR:HKLM\...\startupreg\FLBackup [Key] . (...) -- C:\Program Files (x86)\NewSoftware's\Folder Lock\FLComServCtrl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\HP Deskjet 3050A J611 series (NET) [Key] . (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\ScanToPCActivationApp.exe =>.Hewlett-Packard Co. O53 - SMSR:HKLM\...\startupreg\HP Quick Launch [Key] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe =>.Hewlett-Packard Development Company, L.P. O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\IntelMyWiFiDashboard [Key] . (.Intel® Corporation - Intel® My WiFi Dashboard Server.) -- C:\Program Files\Intel\CCDashboard\bin\CCDashServer.exe =>.Intel® Corporation O53 - SMSR:HKLM\...\startupreg\Lync [Key] . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\Office15\lync.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\Malwarebytes Anti-Exploit [Key] . (...) -- C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\NvBackend [Key] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\Samsung Link [Key] . (...) -- C:\Program Files\Samsung\Samsung Link\Samsung Link Tray Agent.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\SetDefault [Key] . (...) -- C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\ShadowPlay [Key] . (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\SoftEther VPN Client UI Helper [Key] . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe =>.SoftEther VPN Project at University of Tsukuba, Japan O53 - SMSR:HKLM\...\startupreg\SOS Browser Monitor [Key] . (...) -- C:\Program Files (x86)\Steganos Online Shield\SteganosBrowserMonitor.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\SOS_Agent [Key] . (...) -- C:\Program Files (x86)\Steganos Online Shield\OnlineShieldClient.exe (.not file.) ---\\ System Drivers List (114) - 66s O58 - SDL:2015/01/30 11:20:37 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0D372A55.sys [129752] =>.Malwarebytes Corporation® O58 - SDL:2014/10/09 07:22:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\48230029.sys [122584] =>.Malwarebytes Corporation® O58 - SDL:2014/10/21 08:31:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\50A155BB.sys [129752] =>.Malwarebytes Corporation® O58 - SDL:2014/10/27 15:03:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6FDD5622.sys [129752] =>.Malwarebytes Corporation® O58 - SDL:2012/09/24 12:40:56 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [43840] =>.Hewlett-Packard Company® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2011/03/11 01:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2011/03/11 01:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2013/07/29 03:01:24 A . (.Windows (R) Win 7 DDK provider - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\Windows\System32\drivers\AmpPal.sys [164832] =>.Intel Corporation-Mobile Wireless Group® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2009/06/10 15:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/10 15:34:38 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL664.SYS [1311232] =>.Broadcom Corporation O58 - SDL:2009/06/10 15:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 15:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 20:19:07 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 15:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 15:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 15:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2011/11/30 12:19:46 A . (.Intel Corporation - Bluetooth Audio Driver.) -- C:\Windows\System32\drivers\btmaud.sys [51712] =>.Intel Corporation O58 - SDL:2012/02/13 08:53:54 A . (.Intel Corporation - Bluetooth Auxiliary Driver.) -- C:\Windows\System32\drivers\btmaux.sys [95232] =>.Intel Corporation O58 - SDL:2012/02/13 09:10:40 A . (.Intel Corporation - Bluetooth HighSpeed Filter Driver.) -- C:\Windows\System32\drivers\btmhsf.sys [747008] =>.Intel Corporation O58 - SDL:2009/06/10 15:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2009/10/20 06:00:00 A . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [10224] =>.Sonic Solutions® O58 - SDL:2009/10/20 06:00:00 A . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [10224] =>.Sonic Solutions® O58 - SDL:2009/07/13 20:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2010/02/08 07:32:00 A . (.Cisco Systems, Inc. - Cisco Systems VPN Adapter.) -- C:\Windows\System32\drivers\CVirtA64.sys [14992] =>.Cisco Systems, Inc.® O58 - SDL:2010/03/23 13:29:46 A . (...) -- C:\Windows\System32\drivers\CVPNDRVA.sys [304784] =>.Cisco Systems, Inc.® O58 - SDL:2008/11/16 18:39:44 A . (.Deterministic Networks, Inc. - Deterministic Network Enhancer for NDIS 5.1.) -- C:\Windows\System32\drivers\dne64x.sys [157968] =>.Deterministic Networks® O58 - SDL:2015/07/13 06:14:14 A . (.ESET - Amon monitor.) -- C:\Windows\System32\drivers\eamonm.sys [255240] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/13 06:14:14 A . (.ESET - Devmon monitor.) -- C:\Windows\System32\drivers\edevmon.sys [251632] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/13 06:14:14 A . (.ESET - ESET Helper driver.) -- C:\Windows\System32\drivers\ehdrv.sys [178520] =>.ESET, spol. s r.o.® O58 - SDL:2009/07/13 20:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2015/07/13 06:14:14 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfw.sys [231520] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/13 06:14:14 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [53360] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/13 06:14:14 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfwwfp.sys [72400] =>.ESET, spol. s r.o.® O58 - SDL:2009/06/10 15:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2015/04/13 09:29:32 A . (...) -- C:\Windows\System32\drivers\GsRamDsk.sys [55288] {166DAF8F034BBD9BE8EBE24044970524} O58 - SDL:2009/06/10 15:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2012/07/17 17:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [62784] =>.Intel Corporation® O58 - SDL:2012/09/24 12:40:56 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\drivers\hpdskflt.sys [31040] =>.Hewlett-Packard Company® O58 - SDL:2010/11/20 22:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2011/11/29 22:40:32 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [568600] =>.Intel Corporation® O58 - SDL:2014/10/09 14:54:44 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [1398936] =>.Intel® Rapid Storage Technology® O58 - SDL:2014/10/09 14:54:44 A . (.Intel Corporation - Intel(R) Rapid Storage Technology Filter dr.) -- C:\Windows\System32\drivers\iaStorF.sys [30360] =>.Intel® Rapid Storage Technology® O58 - SDL:2011/03/11 01:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2012/03/21 11:13:14 A . (.Intel Corporation - Intel(R) Centrino(R) Wireless (Bluetooth Ad.) -- C:\Windows\System32\drivers\iBtFltCoex.sys [60928] =>.Intel Corporation O58 - SDL:2015/06/11 21:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [197616] =>.Tonec Inc.® O58 - SDL:2012/01/18 21:24:12 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [14658688] =>.Intel Corporation O58 - SDL:2009/07/13 20:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2011/12/06 06:23:08 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [331264] =>.Intel(R) Corporation O58 - SDL:2013/09/10 17:56:42 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [35256] =>.Intel Wireless Display® O58 - SDL:2013/09/17 09:48:30 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [20464] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/09/17 09:48:30 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [358896] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/09/17 09:48:30 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [795632] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/09/10 17:56:42 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [25528] =>.Intel Wireless Display® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2015/10/05 08:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 08:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] =>.Malwarebytes Corporation® O58 - SDL:2016/01/21 10:59:19 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2015/10/05 08:50:18 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704] =>.Malwarebytes Corporation® O58 - SDL:2015/01/03 20:16:00 A . (.SoftEther VPN Project at University of Tsukuba, Japan - SoftEther VPN.) -- C:\Windows\System32\drivers\Neo_0000.sys [28768] =>.SoftEther K.K.® O58 - SDL:2011/12/02 00:51:00 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwNs64.sys [11417088] =>.Intel Corporation O58 - SDL:2014/01/26 06:09:40 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwsw00.sys [11521024] =>.Intel Corporation O58 - SDL:2014/12/18 23:07:36 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwsw01.sys [11523584] =>.Intel Corporation O58 - SDL:2009/07/13 20:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2015/12/16 12:34:16 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [12334200] =>.NVIDIA Corporation® O58 - SDL:2009/06/10 15:35:35 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvm62x64.sys [408960] =>.NVIDIA Corporation O58 - SDL:2015/12/16 12:34:16 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvpciflt.sys [31352] =>.NVIDIA Corporation® O58 - SDL:2011/03/11 01:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2011/03/11 01:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2015/12/18 01:11:06 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [47760] =>.NVIDIA Corporation® O58 - SDL:2013/09/18 18:33:40 A . (.Windows (R) Win 7 DDK provider - Sample File System Filter Driver.) -- C:\Windows\System32\drivers\pmfilter.sys [67280] {3C88851F157DA16CF16A6FB34AB302AD} =>.Windows (R) Win 7 DDK provider O58 - SDL:2009/07/13 20:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2015/08/10 13:28:10 A . (.Resplendence Software Projects Sp. - Resplendence WhySoSlow Monitoring Driver.) -- C:\Windows\System32\drivers\rspWhy64.sys [27904] =>.Daniel Terhell® O58 - SDL:2014/08/27 01:10:26 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [942808] =>.Realtek Semiconductor Corp® O58 - SDL:2011/10/27 13:27:52 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsP2Stor.sys [259688] =>.Realtek Semiconductor Corp® O58 - SDL:2015/09/22 18:36:40 A . (.Razer, Inc. - Razer Overlay Support.) -- C:\Windows\System32\drivers\rzpmgrk.sys [37184] =>.Razer Inc.® O58 - SDL:2014/02/03 01:45:22 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\Windows\System32\drivers\scdemu.sys [129944] =>.Power Software Ltd® O58 - SDL:2009/06/10 15:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/13 20:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2011/10/13 19:37:42 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver.sys [20016] =>.Synaptics Incorporated® O58 - SDL:2014/10/13 00:57:48 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [110336] =>.DEVGURU CO LTD® O58 - SDL:2014/10/13 00:57:48 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2009/07/13 20:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2014/09/23 11:36:39 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt64.sys [540160] =>.IDT, Inc. O58 - SDL:2011/10/13 19:37:44 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [396848] =>.Synaptics Incorporated® O58 - SDL:2013/09/13 08:57:26 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [40664] =>.OpenVPN Technologies, Inc.® O58 - SDL:2014/03/24 15:12:06 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\drivers\taphss6.sys [42184] =>.AnchorFree Inc® O58 - SDL:2014/11/10 12:12:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [129312] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O58 - SDL:2013/06/20 19:36:54 A . (.Windows (R) Win 7 DDK provider - usb3hub.sys.) -- C:\Windows\System32\drivers\usb3Hub.sys [206744] =>.Intel Wireless Display® O58 - SDL:2012/05/22 13:26:10 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [224088] =>.Oracle Corporation® O58 - SDL:2012/05/22 13:26:10 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\Windows\System32\drivers\VBoxNetAdp.sys [147288] =>.Oracle Corporation® O58 - SDL:2012/05/22 13:26:10 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [130904] =>.Oracle Corporation® O58 - SDL:2009/07/13 20:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/13 20:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2009/06/10 16:01:11 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL6.SYS [292864] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 16:01:11 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT6.SYS [740864] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 16:01:11 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV6.SYS [1485312] =>.Conexant Systems, Inc. O58 - SDL:2012/09/06 10:46:28 A . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\Windows\System32\drivers\wdcsam64.sys [14464] =>.Western Digital Technologies O58 - SDL:2015/02/25 23:00:00 A . (...) -- C:\Windows\System32\ambakdrv.sys [30648] O58 - SDL:2015/02/25 23:00:00 A . (...) -- C:\Windows\System32\ammntdrv.sys [151480] O58 - SDL:2015/02/25 23:00:00 A . (...) -- C:\Windows\System32\amwrtdrv.sys [17848] ---\\ Last modified or created user files (2) - 22s O61 - LFC: 2016/01/25 06:30:04 A . (..) -- C:\Users\Mr Unknown\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [6128953] O61 - LFC: 2016/01/27 10:09:26 A . (..) -- C:\Users\Mr Unknown\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [236] ---\\ File Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Start Menu Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Search Browser Infection (13) - 5s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {2fa28606-de77-4029-af96-b231e3b8f827} - (Ask.com) - http://search.ask.com/ =>Toolbar.Ask O69 - SBI: SearchScopes [HKCU] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Yahoo) - http://ca.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {C228A999-FFAF-4BCC-9051-BB9A0CD5B5E8} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {d43b3890-80c7-4010-a95d-1e77b5924dc3} - (Wikipedia) - http://en.wikipedia.org/ O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/ O69 - SBI: SearchScopes [HKCU] {FC7B8A54-3E4C-45CA-9F59-AA122713DE4D} - (Amazon (Canada) Search Suggestions) - http://www.amazon.ca/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {2fa28606-de77-4029-af96-b231e3b8f827} - (Ask.com) - http://search.ask.com/ =>Toolbar.Ask O69 - SBI: SearchScopes [HKLM] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Yahoo) - http://ca.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKLM] {d43b3890-80c7-4010-a95d-1e77b5924dc3} - (Wikipedia) - http://en.wikipedia.org/ O69 - SBI: SearchScopes [HKLM] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/ O69 - SBI: SearchScopes [HKLM] {FC7B8A54-3E4C-45CA-9F59-AA122713DE4D} - (Amazon (Canada) Search Suggestions) - http://www.amazon.ca/ ---\\ Search Svchost Services (33) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\system32\wuaueng.dll [2609152] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Firewall Active Exception List (4) - 3s O87 - FAEL: "{0A4C451B-C149-4E3E-A61B-3C3E14F7A840}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Mr Unknown\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{A2C28336-2895-425C-BE79-5F8B8415EAAC}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Mr Unknown\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{F427F294-9D5C-400D-A477-D738585AD4F6}" [In-None-P6-TRUE] .(.Copyright (C) 2012 - Bejeweled 3.) -- C:\Program Files (x86)\Origin Games\Bejeweled 3\Bejeweled3.exe {60F0BE25F028BFEDB5BDF0CE5C7A9E26} O87 - FAEL: "{C52987D2-2433-4719-9FD4-12A418D77D96}" [In-None-P17-TRUE] .(.Copyright (C) 2012 - Bejeweled 3.) -- C:\Program Files (x86)\Origin Games\Bejeweled 3\Bejeweled3.exe {60F0BE25F028BFEDB5BDF0CE5C7A9E26} ---\\ Additional Scan (O88) (11) - 0s C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\RegisteredApplicationsEx =>PUP.Optional.SfKpCouponApp HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\AppDataLow\Software\Tbccint =>PUP.Optional.Conduit C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\Mr Unknown\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Users\Mr Unknown\AppData\Local\Torch =>.Superfluous.Torch HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827} =>Toolbar.Ask HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{2fa28606-de77-4029-af96-b231e3b8f827} =>Toolbar.Ask ---\\ Summary of the elements found (7) - 0s http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS http://www.nicolascoolman.fr/?p=210 =>PUP.Optional.Conduit http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SfKpCouponApp http://www.nicolascoolman.fr/?p=308 =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Torch http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask ~ End of the scan, 67073 items in 00h05mn46s (1475)(0)