~ ZHPDiag v2016.3.28.76 By Nicolas Coolman (2016/03/28) ~ Run by Serge (Administrator) (2016/03/29 07:31:53) ~ Web: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\Serge\Desktop\ZHPDiag.txt ~ Report: C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Internet Browsers (3) - 0s GCIE: Google Chrome v49.0.2623.87 MFIE: Mozilla Firefox 45.0.1 (x86 fr) MSIE: Internet Explorer v11.0.9600.18230 ---\\ Windows Product Information (4) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3916.212 MB (68% free) System Restore: Activé (Enable) System drive C: has 34 GB () free of 109 GB ---\\ Connection to the system mode (3) - 0s ~ Computer Name: SERGE-PC ~ User Name: Serge ~ Logged in as Administrator ---\\ Enumeration of the disk units (1) - 0s ~ Drive C: has 34 GB free of 109 GB (System) ---\\ State of the Windows Security Center (13) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Search Generic System Files (25) - 1s [MD5.9D77CC4A36FEEA644D002CFB9B2D42C0] - 22/01/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\windows\Explorer.exe [3231232] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.C15649DEABA6B45562009663673E23D1] - 09/02/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\windows\System32\wininet.dll [2597376] =>.Microsoft Corporation [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Windows Logon Application.) -- C:\windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Software Licensing Library.) -- C:\windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 14/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.07F8F6B0CAEC7ADD30EBD94940A315D7] - 12/02/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\windows\System32\drivers\MRxSmb.sys [159232] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 12/01/2016 - (.Microsoft Corporation - NT File System Driver.) -- C:\windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.1B6163C503398B23FF8B939C67747683] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.AA77EB517D2F07A947294F260E3ACA83] - 14/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Services not Microsoft (SR=Run, SS=Stop) (27) - 13s SS - Disabl [25/03/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Disabl [28/08/2014] [ 43336] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SS - Disabl [02/02/2010] [ 2731328] AuthenTec Fingerprint Service (ATService) . (.AuthenTec, Inc..) - C:\Program Files\Fingerprint Sensor\ATService.exe {2ED54CF4ED156D690537900AB6488CDF} =>.AuthenTec, Inc. SS - Disabl [30/08/2011] [ 462184] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Disabl [29/01/2010] [ 249200] ConfigFree WiMAX Service (cfWiMAXService) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\ConfigFree\CFIWmxSvcs64.exe =>.TOSHIBA CORPORATION® SS - Disabl [11/03/2009] [ 46448] ConfigFree Service (ConfigFree Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe =>.TOSHIBA CORPORATION® SS - Disabl [12/12/2015] [ 143144] Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Disabl [12/12/2015] [ 143144] Dropbox Update Service (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Disabl [12/01/2011] [ 1430800] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation - Mobile Wireless Group® SS - Disabl [26/12/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Disabl [26/12/2015] [ 144200] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Disabl [01/09/2014] [ 640840] iPod Service (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Disabl [19/03/2010] [ 268824] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Demand [25/08/2011] [ 6144] MEMSWEEP2 (MEMSWEEP2) . (.Sophos Plc.) - C:\Windows\System32\9647.tmp SS - Disabl [17/02/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Disabl [12/01/2011] [ 340240] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation - Mobile Wireless Group® SS - Disabl [12/01/2011] [ 840976] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation - Mobile Wireless Group® SS - Disabl [29/01/2016] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Disabl [11/02/2011] [ 54136] TMachInfo (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe =>.TOSHIBA CORPORATION® SS - Disabl [29/07/2009] [ 140632] TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation.) - C:\windows\system32\TODDSrv.exe =>.Toshiba Corporation SS - Disabl [21/05/2010] [ 489384] TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [13/04/2010] [ 196976] TOSHIBA Bluetooth Service (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [24/04/2010] [ 259440] TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TECO\TecoService.exe =>.TOSHIBA CORPORATION® SS - Disabl [06/02/2010] [ 137560] TOSHIBA HDD SSD Alert Service (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [11/05/2010] [ 836016] TPCH Service (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [19/03/2010] [ 2320920] Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® ---\\ Process running (6) - 1s [MD5.3E3DF26309A0DA13D6BAD36077A60121] - (.Glarysoft Ltd - Glary Utilities 5.) -- C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [896464] [PID.3264] =>.Glarysoft LTD® [MD5.AE2BE27838478814F87EE42437D862E6] - (.TOSHIBA CORPORATION - ConfigFree Task Tray Menu.) -- C:\Program Files (x86)\Toshiba\ConfigFree\NDSTray.exe [304560] [PID.3540] =>.TOSHIBA CORPORATION® [MD5.8A07221789D46B2EA7DFCA2BC807572A] - (.TOSHIBA CORPORATION - ConfigFree Switch Manager Process.) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFSwMgr.exe [62848] [PID.3612] =>.TOSHIBA CORPORATION® [MD5.4D4DE41DA750649505E884CEC4A1422F] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3933392] [PID.3092] =>.Tonec Inc.® [MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275608] [PID.924] =>.Tonec Inc.® [MD5.1DE4831E18DC61E758EF7F3EB193B736] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag3.exe [2166272] [PID.3848] =>.Nicolas Coolman ---\\ Google Chrome, Start,Search,Extensions (20) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients4.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://mail.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.co.jp G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [boadgeojelhgndaghljhdicfkmllpafd] Google Cast G2 - GCE: Preference [User Data\Default] [cnciopoikihiagdjbjpnocolokfelagl] Videostream for Google Chromecast™ G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghagedffjalchgcgdgfindabkpnmalel] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (7) - 1s M0 - MFSP: prefs.js [Serge - a529vz0u.default-1458544705154] https://www.google.fr/?gws_rd=ssl P2 - EXT FILE: (...) -- C:\Users\Serge\AppData\Roaming\Mozilla\Firefox\Profiles\a529vz0u.default-1458544705154\extensions\tinyurl.addon@fast-chat.co.uk.xpi P2 - EXT FILE: (...) -- C:\Users\Serge\AppData\Roaming\Mozilla\Firefox\Profiles\a529vz0u.default-1458544705154\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc. P2 - FPN: [HKLM] [@mozilla.zeniko.ch/SumatraPDF_Browser_Plugin] - (.SumatraPDF Browser Plugin.) -- C:\Program Files (x86)\SumatraPDF\npPdfViewer.dll ---\\ Internet Explorer Extensions, Start, Search (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=MSSE R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?pc=MSSE R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (70) ---\\ Browser Helper Object (BHO) (2) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® ---\\ Auto loading programs from Registry and folders (10) - 0s O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1606463160-1528309087-3068095059-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® ---\\ Global shortcuts Startup (77) - 7s O4 - GS\Desktop [Administrator]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\Quicklaunch [Administrator]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrator]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\sendTo [Administrator]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\sendTo [Administrator]: Dropbox.lnk . (...) C:\Users\Serge\Dropbox O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrator]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\TaskBar [Administrator]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Administrator]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Chrono ShutDown.lnk . (.John's Soft ;) - Chrono ShutDown.) C:\Users\Serge\1 - A garder - Softs & PW\Chrono Shutdown.exe O4 - GS\TaskBar [Administrator]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Administrator]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrator]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrator]: ScreenHunter 4.0 Free.lnk . (.Wisdom Software Inc. - ScreenHunter 4.0 Free.) C:\Program Files (x86)\Wisdom-soft ScreenHunter\ScreenHunter.exe O4 - GS\TaskBar [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrator]: SpeedyFox program.lnk . (.SpeedyFox - SpeedyFox program.) C:\Users\Serge\1 - A garder - Softs & PW\speedyfox.exe {119B09803E11C7BE685861F72F128819} =>.SpeedyFox O4 - GS\TaskBar [Administrator]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Guest]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\Quicklaunch [Guest]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Guest]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\sendTo [Guest]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\sendTo [Guest]: Dropbox.lnk . (...) C:\Users\Serge\Dropbox O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Guest]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\TaskBar [Guest]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Guest]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Chrono ShutDown.lnk . (.John's Soft ;) - Chrono ShutDown.) C:\Users\Serge\1 - A garder - Softs & PW\Chrono Shutdown.exe O4 - GS\TaskBar [Guest]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Guest]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Guest]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Guest]: ScreenHunter 4.0 Free.lnk . (.Wisdom Software Inc. - ScreenHunter 4.0 Free.) C:\Program Files (x86)\Wisdom-soft ScreenHunter\ScreenHunter.exe O4 - GS\TaskBar [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Guest]: SpeedyFox program.lnk . (.SpeedyFox - SpeedyFox program.) C:\Users\Serge\1 - A garder - Softs & PW\speedyfox.exe {119B09803E11C7BE685861F72F128819} =>.SpeedyFox O4 - GS\TaskBar [Guest]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Serge]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Desktop [Serge]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Serge]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\Quicklaunch [Serge]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Serge]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\Quicklaunch [Serge]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Serge]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Serge]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\sendTo [Serge]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files (x86)\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\sendTo [Serge]: Dropbox.lnk . (...) C:\Users\Serge\Dropbox O4 - GS\sendTo [Serge]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Serge]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\TaskBar [Serge]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Serge]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Serge]: Chrono ShutDown.lnk . (.John's Soft ;) - Chrono ShutDown.) C:\Users\Serge\1 - A garder - Softs & PW\Chrono Shutdown.exe O4 - GS\TaskBar [Serge]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\TaskBar [Serge]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Serge]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Serge]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\TaskBar [Serge]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Serge]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Serge]: ScreenHunter 4.0 Free.lnk . (.Wisdom Software Inc. - ScreenHunter 4.0 Free.) C:\Program Files (x86)\Wisdom-soft ScreenHunter\ScreenHunter.exe O4 - GS\TaskBar [Serge]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Serge]: SpeedyFox program.lnk . (.SpeedyFox - SpeedyFox program.) C:\Users\Serge\1 - A garder - Softs & PW\speedyfox.exe {119B09803E11C7BE685861F72F128819} =>.SpeedyFox O4 - GS\TaskBar [Serge]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [Public]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\windows\system32\taskschd.msc ---\\ Lop.com/Domain Hijackers (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{810AEBA7-AB0C-4077-8362-93CB7D7ACC4E}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{AD58E9E5-21C6-48F4-9AFC-6A6FE53FF39C}: DhcpNameServer = 192.168.1.1 ---\\ Extra protocols (24) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: mso-offdap11 [64Bits] - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files (x86)\Common Files\microsoft shared\Web Components\11\OWC11.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (92) - 14s O42 - Logiciel: AC3Filter 2.6.0b - (.Alexander Vigovsky.) [HKLM][64Bits] -- AC3Filter_is1 =>.Alexander Vigovsky O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Allway Sync version 9.2.15 - (.Usov Lab.) [HKLM][64Bits] -- Allway Sync_is1 O42 - Logiciel: AnyDVD - (.SlySoft.) [HKLM][64Bits] -- AnyDVD =>.SlySoft O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B678797F-DF38-4556-8A31-8B818E261868} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc. O42 - Logiciel: AuthenTec Fingerprint Software - (.AuthenTec, Inc..) [HKLM][64Bits] -- {5F1DFCC1-595D-4235-A044-E05B706D800A} =>.AuthenTec, Inc. O42 - Logiciel: Backup Thunderbird - (.backupthunderbird.com.) [HKLM][64Bits] -- {FA212C5D-FE18-4A8B-9A45-B2E62A20D4CA}_is1 O42 - Logiciel: Bigasoft YouTube Downloader Pro 1.2.26.4849 - (.Bigasoft Corporation.) [HKLM][64Bits] -- {C7056BA6-D954-42A2-ABBA-AB2E8E777730}_is1 =>.Bigasoft Corporation O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6} =>.Toshiba Corporation O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 =>.CDBurnerXP O42 - Logiciel: ChromecastApp - (.Google Inc..) [HKCU][64Bits] -- {079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1 =>.Google Inc® O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} =>.Cisco Systems, Inc. O42 - Logiciel: CloneCD - (.Elaborate Bytes.) [HKLM][64Bits] -- CloneCD =>.Elaborate Bytes O42 - Logiciel: CloneDVD2 - (.Elaborate Bytes.) [HKLM][64Bits] -- CloneDVD2 =>.Elaborate Bytes O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: Everything 1.4.0.713b (x64) - (.David Carpenter.) [HKLM][64Bits] -- Everything O42 - Logiciel: Freemake Video Downloader - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Downloader_is1 =>.Ellora Assets Corporation O42 - Logiciel: Glary Utilities PRO 5.47 - (.Glarysoft Ltd.) [HKLM][64Bits] -- Glary Utilities 5 =>.Glarysoft Ltd O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {709A2D23-C25E-47B5-9268-CB6FEE648504} =>.Apple Inc. O42 - Logiciel: Intel PROSet Wireless - (...) [HKLM][64Bits] -- ProInst O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM][64Bits] -- PROSet =>.Intel O42 - Logiciel: Intel(R) PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {AB67B5F9-B19A-42F4-A57D-46114D71060E} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E} =>.Apple Inc. O42 - Logiciel: LocK-A-FoLdeR - (...) [HKLM][64Bits] -- LocK-A-FoLdeR O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {3061DCA5-2D0B-48F9-800F-9D7C1FEB5E78} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client =>.Microsoft Corporation® O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 45.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 45.0.1 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Mozilla Thunderbird 38.6.0 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 38.6.0 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: NEC Electronics USB 3.0 Host Controller Driver - (.NEC Electronics Corporation.) [HKLM][64Bits] -- {D7BF9739-8A68-4335-BBEE-37752AD9E86B} =>.NEC Electronics Corporation O42 - Logiciel: NEC Electronics USB 3.0 Host Controller Driver - (.NEC Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B} =>.NEC Electronics Corporation O42 - Logiciel: PhotoFiltre - (...) [HKLM][64Bits] -- PhotoFiltre O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM][64Bits] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} =>.Prolific Technology INC O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} =>.Microsoft Corporation O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: Remove Empty Directories version 2.2 (Admin Editon) - (.Jonas John.) [HKLM][64Bits] -- {06F25DC8-71E2-44E2-805A-F15E15B51C74}_is1 =>.Jonas John O42 - Logiciel: Revo Uninstaller Pro 3.1.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, Ltd. O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation O42 - Logiciel: Skype Launcher - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {DA84ECBF-4B79-47F2-B34C-95C38484C058} =>.Macrovision Corporation® O42 - Logiciel: Skype™ 7.21 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Stickies 8.0c - (.Zhorn Software.) [HKLM][64Bits] -- ZhornStickies O42 - Logiciel: TFPU - (.TOSHIBA.) [HKLM][64Bits] -- {A7760E07-4C23-4766-A99E-F715F298E99C} =>.TOSHIBA O42 - Logiciel: TOSHIBA Application Installer - (.TOSHIBA.) [HKLM][64Bits] -- {970472D0-F5F9-4158-A6E3-1AE49EFEF2D3} =>.TOSHIBA O42 - Logiciel: TOSHIBA Assist - (.TOSHIBA.) [HKLM][64Bits] -- {1B87C40B-A60B-4EF3-9A68-706CF4B69978} =>.TOSHIBA CORPORATION® O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {C14518AF-1A0F-4D39-8011-69BAA01CD380} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA ConfigFree - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {B73A66DB-7804-46EC-9A2F-BD534FDB6AD5} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Disc Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5DA0E02F-970B-424B-BF41-513A5018E4C0} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA eco Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {B3FF1CD9-B2F0-4D71-BB55-5F580401C48E} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA eco Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F67FA545-D8E5-4209-86B1-AEE045D1003F} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Fingerprint Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- TFPU{A7760E07-4C23-4766-A99E-F715F298E99C} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {D4322448-B6AF-4316-B859-D8A0E84DCB38} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Media Controller - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {983CD6FE-8320-4B80-A8F6-0D0366E0AA22} =>.Macrovision Corporation® O42 - Logiciel: TOSHIBA Media Controller Plug-in - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {F26FDF57-483E-42C8-A9C9-EEE1EDB256E0} =>.Toshiba Corporation O42 - Logiciel: Toshiba Online Backup - (.Toshiba.) [HKLM][64Bits] -- {C57BCDE1-7CB9-467D-B3BA-7E119916CDC1} =>.TOSHIBA O42 - Logiciel: TOSHIBA PC Health Monitor - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Quality Application - (.TOSHIBA.) [HKLM][64Bits] -- {E69992ED-A7F6-406C-9280-1C156417BC49} =>.TOSHIBA O42 - Logiciel: TOSHIBA Recovery Media Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {A0E99122-25C1-4CA4-9063-499A2A814EB6} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{A0E99122-25C1-4CA4-9063-499A2A814EB6} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Security Assist - (.TOSHIBA.) [HKLM][64Bits] -- {1E63ACB5-D45E-4856-8FC9-78F4B0D7BB80} =>.Macrovision Corporation® O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {AC6569FA-6919-442A-8552-073BE69E247A} =>.TOSHIBA O42 - Logiciel: TOSHIBA Sleep Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {654F7484-88C5-46DC-AB32-C66BCB0E2102} =>.TOSHIBA CORPORATION® O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {066CFFF8-12BF-4390-A673-75F95EFF188E} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} =>.TOSHIBA CORPORATION® O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5E6F6CF3-BACC-4144-868C-E14622C658F3} =>.Macrovision Corporation® O42 - Logiciel: ToshibaRegistration - (.Toshiba.) [HKLM][64Bits] -- {5AF550B4-BB67-4E7E-82F1-2C4300279050} =>.TOSHIBA O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies O42 - Logiciel: WinRAR 5.00 beta 6 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wisdom-soft ScreenHunter 4.0 Free - (.Wisdom Software Inc..) [HKLM][64Bits] -- Wisdom-soft ScreenHunter 4.0 Free O42 - Logiciel: YT Downloader 3 - (.Youtomato.) [HKLM][64Bits] -- YT Downloader_is1 =>.Youtomato ---\\ HKCU & HKLM Software Keys (135) - 14s HKLM\SOFTWARE\Wow6432Node\ActMask Virtual Printer SDK HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Auslogics HKLM\SOFTWARE\Wow6432Node\Authentec HKLM\SOFTWARE\Wow6432Node\Bigasoft HKLM\SOFTWARE\Wow6432Node\BSD HKLM\SOFTWARE\Wow6432Node\Canneverbe Limited HKLM\SOFTWARE\Wow6432Node\Cisco Systems HKLM\SOFTWARE\Wow6432Node\Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate HKLM\SOFTWARE\Wow6432Node\ej-technologies HKLM\SOFTWARE\Wow6432Node\Elaborate Bytes HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\GlarySoft HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Infix PDF HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\iOSinstaller HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nitro HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Panda Software HKLM\SOFTWARE\Wow6432Node\PhotoFiltre HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\RtWLan HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SlySoft HKLM\SOFTWARE\Wow6432Node\SymNRT HKLM\SOFTWARE\Wow6432Node\Tific HKLM\SOFTWARE\Wow6432Node\TOSHIBA HKLM\SOFTWARE\Wow6432Node\TOSHIBA Corporation HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\Vso HKLM\SOFTWARE\Wow6432Node\WafCX HKLM\SOFTWARE\Wow6432Node\WinPcap HKLM\SOFTWARE\Wow6432Node\WiseCleaner HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Xilisoft HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\2VG HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Altaruine HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Bigasoft HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\Canneverbe Limited HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Circitor HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Elaborate Bytes HKCU\SOFTWARE\EXECryptorTestKeys HKCU\SOFTWARE\FileHippo HKCU\SOFTWARE\FileOpen HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\giveawayoftheday.com HKCU\SOFTWARE\Glarysoft HKCU\SOFTWARE\Google HKCU\SOFTWARE\idoo Free AntiSpyware HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\iMazing HKCU\SOFTWARE\Informer Technologies, Inc. HKCU\SOFTWARE\Intel HKCU\SOFTWARE\iOSinstaller HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\LocK-A-FoLdeR HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Magicbit HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Mirage HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\Mozilla Backup HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NITRO HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\PcWinTech HKCU\SOFTWARE\PDFEdit HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PopcornTime HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\redsn0w HKCU\SOFTWARE\SecurityXploded HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SlySoft HKCU\SOFTWARE\SWiSHzone.com HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\SyncApp HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Thunderbird HKCU\SOFTWARE\Tomabo HKCU\SOFTWARE\TOSHIBA HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unchecky HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VS Revo Group HKCU\SOFTWARE\Vso HKCU\SOFTWARE\Winaero.com HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wisdom-soft HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Xilisoft HKCU\SOFTWARE\xp-AntiSpy HKCU\SOFTWARE\Youtomato HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Google HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contents of the Common Files folders (308) - 18s O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\Apowersoft O43 - CFD: 11/10/2015 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.® O43 - CFD: 01/10/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 25/03/2015 - [] D -- C:\Program Files\Common Files O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 10/08/2014 - [] D -- C:\Program Files\e8fa8ab28b4c03c2ea =>.Microsoft Corporation® O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\Everything {7B523EBF727602C8813FF39239A3BA58} O43 - CFD: 21/01/2014 - [] D -- C:\Program Files\Fingerprint Sensor {2ED54CF4ED156D690537900AB6488CDF} O43 - CFD: 21/03/2016 - [] D -- C:\Program Files\idoo AntiSpyware Pro O43 - CFD: 21/01/2014 - [] D -- C:\Program Files\Intel =>.Microsoft Windows® O43 - CFD: 17/03/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation® O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\iTunes O43 - CFD: 24/02/2016 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation® O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild O43 - CFD: 05/04/2014 - [] D -- C:\Program Files\Paragon Software O43 - CFD: 21/01/2014 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 20/01/2014 - [] D -- C:\Program Files\TOSHIBA =>.TOSHIBA CORPORATION® O43 - CFD: 26/03/2016 - [0] D -- C:\Program Files\VideoLAN O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group® O43 - CFD: 16/02/2014 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 11/02/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 17/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 31/12/2014 - [] D -- C:\Program Files\WinPcap =>.CACE Technologies, Inc.® O43 - CFD: 31/01/2014 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\AC3Filter O43 - CFD: 19/03/2016 - [] D -- C:\Program Files (x86)\AdwCleaner O43 - CFD: 28/01/2014 - [] D -- C:\Program Files (x86)\Allway Sync O43 - CFD: 11/10/2015 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.® O43 - CFD: 27/03/2016 - [] D -- C:\Program Files (x86)\Auslogics O43 - CFD: 03/02/2016 - [] D -- C:\Program Files (x86)\Backup Thunderbird O43 - CFD: 31/12/2015 - [] D -- C:\Program Files (x86)\Bigasoft O43 - CFD: 11/10/2015 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 19/03/2016 - [] D -- C:\Program Files (x86)\CDBurnerXP =>.Canneverbe Limited® O43 - CFD: 10/08/2014 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 22/10/2014 - [] D -- C:\Program Files (x86)\Cisco Systems O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 18/03/2016 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc® O43 - CFD: 23/09/2015 - [] D -- C:\Program Files (x86)\Elaborate Bytes O43 - CFD: 01/04/2015 - [] D -- C:\Program Files (x86)\Freemake =>.Microsoft Corporation® O43 - CFD: 29/03/2016 - [] D -- C:\Program Files (x86)\Glary Utilities 5 =>.Glarysoft LTD® O43 - CFD: 23/02/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 31/08/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 22/04/2014 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation® O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc.® O43 - CFD: 17/03/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\iTunes =>.Apple Inc.® O43 - CFD: 15/02/2014 - [] D -- C:\Program Files (x86)\LocK-A-FoLdeR O43 - CFD: 10/03/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 24/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Security Client O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 28/01/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 25/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 25/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 19/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 10/03/2014 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 04/06/2010 - [] D -- C:\Program Files (x86)\NEC Electronics O43 - CFD: 23/03/2015 - [] D -- C:\Program Files (x86)\PhotoFiltre O43 - CFD: 27/04/2014 - [] D -- C:\Program Files (x86)\Portable O43 - CFD: 21/01/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 31/08/2015 - [] D -- C:\Program Files (x86)\Remove Empty Directories O43 - CFD: 23/05/2015 - [] D -- C:\Program Files (x86)\SecurityXploded O43 - CFD: 28/03/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 23/01/2016 - [] D -- C:\Program Files (x86)\SlySoft {0100000000012CAD3AB9EF} O43 - CFD: 27/03/2016 - [] D -- C:\Program Files (x86)\SpywareBlaster O43 - CFD: 17/02/2016 - [] D -- C:\Program Files (x86)\Stickies O43 - CFD: 23/12/2014 - [] D -- C:\Program Files (x86)\System Drive O43 - CFD: 22/08/2014 - [] D -- C:\Program Files (x86)\Temp O43 - CFD: 12/11/2015 - [] D -- C:\Program Files (x86)\The Cleaner O43 - CFD: 27/03/2016 - [0] D -- C:\Program Files (x86)\Tipard Studio O43 - CFD: 20/01/2014 - [] D -- C:\Program Files (x86)\Toshiba =>.TOSHIBA CORPORATION® O43 - CFD: 04/06/2010 - [] D -- C:\Program Files (x86)\Toshiba Online Backup =>.Symantec Corporation® O43 - CFD: 26/03/2016 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 16/02/2014 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 17/03/2016 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 15/06/2015 - [] D -- C:\Program Files (x86)\Wisdom-soft ScreenHunter O43 - CFD: 31/12/2015 - [] D -- C:\Program Files (x86)\Youtomato O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Allway Sync O43 - CFD: 26/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft O43 - CFD: 27/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup Thunderbird O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 23/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CloneCD O43 - CFD: 18/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Joboshare O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My Toshiba O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Empty Directories O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro O43 - CFD: 13/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 23/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SlySoft O43 - CFD: 29/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 27/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tipard O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toshiba Online Backup O43 - CFD: 26/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 09/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wisdom-soft ScreenHunter O43 - CFD: 31/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YT Downloader O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Apple O43 - CFD: 11/10/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 26/05/2014 - [] D -- C:\ProgramData\ArcSoft O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Auslogics O43 - CFD: 13/09/2015 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\BSD O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Canneverbe Limited O43 - CFD: 22/01/2014 - [] D -- C:\ProgramData\Cisco Systems O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\DigiDNA O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 18/06/2015 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 23/11/2015 - [] D -- C:\ProgramData\Emsisoft O43 - CFD: 14/09/2015 - [] D -- C:\ProgramData\F-Secure O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 19/03/2016 - [0] D -- C:\ProgramData\GlarySoft O43 - CFD: 18/02/2016 - [0] D -- C:\ProgramData\IDM O43 - CFD: 04/06/2014 - [] D -- C:\ProgramData\Intel O43 - CFD: 04/10/2015 - [] D -- C:\ProgramData\IObit O43 - CFD: 23/08/2014 - [] D -- C:\ProgramData\Lavasoft O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Licenses O43 - CFD: 29/04/2015 - [] D -- C:\ProgramData\Logs O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Malwarebytes Anti-Exploit O43 - CFD: 19/02/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 21/01/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 20/01/2014 - [] D -- C:\ProgramData\Norton O43 - CFD: 19/05/2014 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 23/05/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Panda Security O43 - CFD: 11/09/2014 - [] D -- C:\ProgramData\panda_url_filtering O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Simply Super Software O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 23/01/2016 - [] D -- C:\ProgramData\SlySoft O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 27/01/2014 - [] D -- C:\ProgramData\Sync App Settings O43 - CFD: 26/03/2016 - [] AD -- C:\ProgramData\TEMP O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\TempDR O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Toshiba O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Unchecky O43 - CFD: 05/09/2014 - [] D -- C:\ProgramData\VS Revo Group O43 - CFD: 10/04/2014 - [] D -- C:\ProgramData\vsosdk O43 - CFD: 19/05/2014 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 03/10/2015 - [] D -- C:\ProgramData\WindSolutions O43 - CFD: 08/10/2014 - [] D -- C:\ProgramData\Xilisoft O43 - CFD: 31/01/2014 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 28/01/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 31/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared O43 - CFD: 04/06/2010 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 09/08/2014 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 21/01/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 20/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Adobe O43 - CFD: 10/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\AnyDesk O43 - CFD: 26/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Apowersoft O43 - CFD: 11/10/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Apple Computer O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\ArcSoft O43 - CFD: 06/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\CAD-KAS O43 - CFD: 25/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Canneverbe Limited O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\CrystalIdea Software O43 - CFD: 25/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Digiarty O43 - CFD: 27/03/2016 - [0] D -- C:\Users\Serge\AppData\Roaming\DiskDefrag O43 - CFD: 29/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\DMCache O43 - CFD: 19/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Downloaded Installations O43 - CFD: 29/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Dropbox O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\dvdcss O43 - CFD: 10/04/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Eusing O43 - CFD: 25/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Everything O43 - CFD: 12/04/2015 - [] D -- C:\Users\Serge\AppData\Roaming\FairStars CD Ripper O43 - CFD: 06/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\FileOpen O43 - CFD: 13/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\FreeLanguageTranslator O43 - CFD: 27/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\GlarySoft O43 - CFD: 09/03/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Gmail Backup O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\HP O43 - CFD: 28/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\IDM O43 - CFD: 20/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\iMazing O43 - CFD: 09/03/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Intel O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Internet Download Accelerator O43 - CFD: 28/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\IObit O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\KaiJet O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\KastorAllVideoDownloader O43 - CFD: 08/10/2014 - [] D -- C:\Users\Serge\AppData\Roaming\libimobiledevice O43 - CFD: 08/10/2014 - [] D -- C:\Users\Serge\AppData\Roaming\log O43 - CFD: 21/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Macromedia O43 - CFD: 04/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Mchid O43 - CFD: 17/03/2016 - [] SD -- C:\Users\Serge\AppData\Roaming\Microsoft O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Mozilla O43 - CFD: 09/03/2014 - [] D -- C:\Users\Serge\AppData\Roaming\MP3 Quality Modifier O43 - CFD: 06/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Nitro O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Nitro PDF O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\PortForward.com O43 - CFD: 21/09/2015 - [] D -- C:\Users\Serge\AppData\Roaming\QuickScan O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\redsn0w O43 - CFD: 28/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Skype O43 - CFD: 29/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\stickies O43 - CFD: 25/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Sun O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Sync App Settings O43 - CFD: 04/10/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Syncios O43 - CFD: 18/02/2016 - [0] D -- C:\Users\Serge\AppData\Roaming\TFPU O43 - CFD: 02/11/2015 - [] D -- C:\Users\Serge\AppData\Roaming\thecleaner O43 - CFD: 19/02/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Thunderbird O43 - CFD: 06/03/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Tomabo O43 - CFD: 26/09/2014 - [] D -- C:\Users\Serge\AppData\Roaming\TunnelBear O43 - CFD: 28/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\UBitMenu O43 - CFD: 28/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\vlc O43 - CFD: 20/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\WinBatch O43 - CFD: 03/10/2015 - [] D -- C:\Users\Serge\AppData\Roaming\WindSolutions O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\WinRAR O43 - CFD: 07/09/2014 - [] D -- C:\Users\Serge\AppData\Roaming\WNR O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Xilisoft O43 - CFD: 31/12/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Youtomato O43 - CFD: 31/12/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Youtube Downloader HD O43 - CFD: 29/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\ZHP O43 - CFD: 26/01/2016 - [] D -- C:\Users\Serge\AppData\Local\Adobe O43 - CFD: 11/10/2015 - [] D -- C:\Users\Serge\AppData\Local\Apple Computer O43 - CFD: 19/05/2014 - [] D -- C:\Users\Serge\AppData\Local\cache O43 - CFD: 12/04/2015 - [] D -- C:\Users\Serge\AppData\Local\CDex O43 - CFD: 27/03/2016 - [0] D -- C:\Users\Serge\AppData\Local\CrashDumps O43 - CFD: 20/02/2016 - [] D -- C:\Users\Serge\AppData\Local\DigiDNA O43 - CFD: 19/10/2014 - [] D -- C:\Users\Serge\AppData\Local\Downloaded Installations O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Dropbox O43 - CFD: 27/03/2016 - [] D -- C:\Users\Serge\AppData\Local\ElevatedDiagnostics O43 - CFD: 14/06/2015 - [0] SHD -- C:\Users\Serge\AppData\Local\EmieBrowserModeList O43 - CFD: 14/06/2015 - [0] SHD -- C:\Users\Serge\AppData\Local\EmieSiteList O43 - CFD: 14/06/2015 - [0] SHD -- C:\Users\Serge\AppData\Local\EmieUserList O43 - CFD: 14/09/2015 - [] D -- C:\Users\Serge\AppData\Local\F-Secure O43 - CFD: 23/09/2015 - [] D -- C:\Users\Serge\AppData\Local\Geckofx O43 - CFD: 23/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Google O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Local\GSMiscDownload O43 - CFD: 05/06/2015 - [] D -- C:\Users\Serge\AppData\Local\GWX O43 - CFD: 27/09/2014 - [] D -- C:\Users\Serge\AppData\Local\HockeyCrashes O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Local\HP O43 - CFD: 25/09/2014 - [] D -- C:\Users\Serge\AppData\Local\IsolatedStorage O43 - CFD: 29/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Luminescence_Software O43 - CFD: 19/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Macromedia O43 - CFD: 26/03/2016 - [] D -- C:\Users\Serge\AppData\Local\Microsoft O43 - CFD: 28/01/2014 - [] D -- C:\Users\Serge\AppData\Local\Microsoft Help O43 - CFD: 28/03/2016 - [] D -- C:\Users\Serge\AppData\Local\Mozilla O43 - CFD: 22/01/2016 - [] D -- C:\Users\Serge\AppData\Local\NovaStor_Corporation O43 - CFD: 19/05/2014 - [] D -- C:\Users\Serge\AppData\Local\NPE O43 - CFD: 19/05/2014 - [] D -- C:\Users\Serge\AppData\Local\Packages O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Popcorn-Time O43 - CFD: 20/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Programs O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Local\Remove_Empty_Directories O43 - CFD: 16/09/2014 - [] D -- C:\Users\Serge\AppData\Local\Riot O43 - CFD: 29/03/2016 - [] D -- C:\Users\Serge\AppData\Local\Temp O43 - CFD: 20/01/2014 - [0] SHD -- C:\Users\Serge\AppData\Local\Temporary Internet Files O43 - CFD: 13/12/2015 - [] D -- C:\Users\Serge\AppData\Local\Thunderbird O43 - CFD: 10/08/2015 - [] D -- C:\Users\Serge\AppData\Local\Tipard Studio O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Toshiba O43 - CFD: 24/03/2014 - [] D -- C:\Users\Serge\AppData\Local\TOSHIBA_Corporation O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Local\VirtualStore O43 - CFD: 05/09/2014 - [] D -- C:\Users\Serge\AppData\Local\VS Revo Group O43 - CFD: 20/08/2015 - [] D -- C:\Users\Serge\AppData\Local\Wondershare O43 - CFD: 28/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 13/12/2015 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 11/02/2016 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 14/01/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome O43 - CFD: 31/12/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bigasoft O43 - CFD: 30/09/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast O43 - CFD: 01/04/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 24/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 03/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 15/08/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LocK-A-FoLdeR O43 - CFD: 28/01/2014 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 27/04/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs O43 - CFD: 17/02/2016 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 06/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 28/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (22) - 0s O106 - SIOI: DropboxExt1 Class [ DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [ DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class [ DropboxExt3] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class [ DropboxExt4] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [ DropboxExt5] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class [ DropboxExt6] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [ DropboxExt7] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class [ DropboxExt8] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt1 Class ["DropboxExt1"] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class ["DropboxExt2"] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class ["DropboxExt3"] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class ["DropboxExt4"] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class ["DropboxExt5"] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class ["DropboxExt6"] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class ["DropboxExt7"] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class ["DropboxExt8"] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt1 Class [DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [DropboxExt3] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [DropboxExt4] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll =>.Dropbox, Inc® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ ShareTools MSconfig StartupReg (28) - 2s O53 - SMSR:HKLM\...\startupreg\00TCrdMain [Key] . (.TOSHIBA Corporation - TOSHIBA Flash Cards.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd O53 - SMSR:HKLM\...\startupreg\CloneCDElbyCDFL [Key] . (.Elaborate Bytes AG - ElbyCheck.) -- C:\Program Files (x86)\Elaborate Bytes\CloneCD\ElbyCheck.exe =>.Elaborate Bytes AG O53 - SMSR:HKLM\...\startupreg\Dropbox [Key] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc. O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Google Installer.) -- C:\Users\Serge\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc. O53 - SMSR:HKLM\...\startupreg\GUDelayStartup [Key] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe =>.Glarysoft Ltd O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\HSON [Key] . (.TOSHIBA Corporation - HotStartOn.) -- C:\Program Files\TOSHIBA\TBS\HSON.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\IDM trial reset [Key] . (...) -- C:\Users\Serge\1 - A garder - Softs & PW\x - 2016 - IDM - Trial Reset Auto - FINAL\3 -idm_trial_reset.exe O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\IMSS [Key] . (.Copyright © 2009, Intel Corporation. All rights reser - PIconStartup application.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe O53 - SMSR:HKLM\...\startupreg\IntelWireless [Key] . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe =>.Intel(R) Corporation O53 - SMSR:HKLM\...\startupreg\ITSecMng [Key] . (...) -- C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\MSC [Key] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\NortonOnlineBackupReminder [Key] . (.Toshiba - Toshiba Online Backup Service.) -- C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TobuActivation.exe =>.TOSHIBA O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O53 - SMSR:HKLM\...\startupreg\SmartFaceVWatcher [Key] . (.TOSHIBA Corporation - SmartFaceVWatcher.) -- C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\SmoothView [Key] . (.TOSHIBA Corporation - SmoothView.) -- C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (...) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Teco [Key] . (.TOSHIBA Corporation - TOSHIBA eco Utility.) -- C:\Program Files\TOSHIBA\TECO\Teco.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TFPUPWDBankService [Key] . (.TOSHIBA - TFPUPWDBank.) -- C:\Program Files\TOSHIBA\TFPU\TFPUPWDBank.exe =>.TOSHIBA O53 - SMSR:HKLM\...\startupreg\TFPUService [Key] . (.TOSHIBA - TFPU Task Monitor.) -- C:\Program Files\TOSHIBA\TFPU\TFPUTaskMonitor.exe =>.TOSHIBA O53 - SMSR:HKLM\...\startupreg\TOSDCR [Key] . (...) -- C:\Program Files\TOSHIBA\PasswordUtility\TOSDCR.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\ToshibaServiceStation [Key] . (.TOSHIBA Corporation - TOSHIBA Service Station.) -- C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\ToshibaServiceStation.exe =>.Toshiba Corporation ---\\ System Drivers List (94) - 4s O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2011/03/11 15:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2011/03/11 15:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2014/04/25 06:14:00 A . (.SlySoft, Inc. - AnyDVD Filter Driver.) -- C:\windows\System32\drivers\AnyDVD.sys [138664] =>.SlySoft, Inc.® O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2010/05/20 03:31:36 A . (.AuthenTec, Inc. - AuthenTec Swipe Sensor WDF USB Driver.) -- C:\windows\System32\drivers\ATSwpWDF.sys [770152] {2ED54CF4ED156D690537900AB6488CDF} =>.AuthenTec, Inc. O58 - SDL:2009/06/11 05:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/11 05:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/11 05:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 10:19:07 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2009/07/14 10:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2010/02/08 08:32:00 A . (.Cisco Systems, Inc. - Cisco Systems VPN Adapter.) -- C:\windows\System32\drivers\CVirtA64.sys [14992] =>.Cisco Systems, Inc.® O58 - SDL:2014/04/12 09:21:38 A . (.Digiarty Software, Inc. - Digiarty Virtual CD driver.) -- C:\windows\System32\drivers\DigiartyVirtualCDBus.sys [276256] =>.Digiarty, Inc.® O58 - SDL:2008/11/16 18:39:44 A . (.Deterministic Networks, Inc. - Deterministic Network Enhancer for NDIS 5.1.) -- C:\windows\System32\drivers\dne64x.sys [157968] =>.Deterministic Networks® O58 - SDL:2013/12/20 19:12:04 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\windows\System32\drivers\e1k62x64.sys [497424] =>.Intel Corporation® O58 - SDL:2014/02/11 02:59:45 A . (.SlySoft, Inc. - ElbyCDIO Filter Driver.) -- C:\windows\System32\drivers\ElbyCDFL.sys [40872] =>.SlySoft, Inc.® O58 - SDL:2014/12/21 07:31:04 . (.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) -- C:\windows\System32\drivers\ElbyCDIO.sys [40344] =>.Elaborate Bytes AG® O58 - SDL:2009/07/14 10:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/11 05:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2016/03/27 07:24:44 A . (.Malwarebytes - Anti-RansomWare SDK.) -- C:\windows\System32\drivers\farflt.sys [54656] =>.Malwarebytes Corporation® O58 - SDL:2014/01/20 11:28:09 RSH . (...) -- C:\windows\System32\drivers\fbd.sys [13] O58 - SDL:2015/08/15 14:43:56 A . (...) -- C:\windows\System32\drivers\fwndislwf64.sys [305360] =>.Emsisoft Ltd® O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\windows\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.® O58 - SDL:2016/03/28 18:03:51 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\windows\System32\drivers\GUBootStartup.sys [20160] =>.Glarysoft Ltd® O58 - SDL:2009/06/11 05:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/09/18 06:54:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2010/11/20 22:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2010/03/25 06:55:56 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\windows\System32\drivers\iaStor.sys [540696] =>.Intel Corporation® O58 - SDL:2011/03/11 15:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2016/01/28 18:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\windows\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.® O58 - SDL:2010/07/28 21:10:42 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\System32\drivers\igdkmd64.sys [10610400] =>.Intel Corporation O58 - SDL:2009/07/14 10:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2010/02/27 09:32:12 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\windows\System32\drivers\Impcd.sys [158976] =>.Intel Corporation O58 - SDL:2010/02/03 23:38:30 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\windows\System32\drivers\IntcDAud.sys [271872] =>.Intel(R) Corporation O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2010/04/22 02:37:34 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\windows\System32\drivers\NETw5s64.sys [7686656] =>.Intel Corporation O58 - SDL:2011/01/19 02:28:56 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\windows\System32\drivers\NETwNs64.sys [8080384] =>.Intel Corporation O58 - SDL:2009/07/14 10:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2011/02/12 06:23:34 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\windows\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.® O58 - SDL:2010/02/25 03:10:16 A . (.NEC Electronics Corporation - USB 3.0 Hub Driver.) -- C:\windows\System32\drivers\nusb3hub.sys [78336] =>.NEC Electronics Corporation O58 - SDL:2010/02/25 03:10:18 A . (.NEC Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\windows\System32\drivers\nusb3xhc.sys [181248] =>.NEC Electronics Corporation O58 - SDL:2011/03/11 15:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2011/03/11 15:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2014/04/05 12:04:36 A . (.VSO Software - low level access layer for CD/DVD/BD device.) -- C:\windows\System32\drivers\pcouffin.sys [82048] =>.VSO Software O58 - SDL:2015/01/15 15:16:18 A . (.VSO Software - Patin-Couffin low level access layer for CD.) -- C:\windows\System32\drivers\pcouffin64a.sys [54816] =>.VSO Software O58 - SDL:2009/06/23 10:06:38 A . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\windows\System32\drivers\PGEffect.sys [35008] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/14 10:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2007/02/16 09:56:51 A . (.Elaborate Bytes AG - Elby Delay Lower Filter Driver.) -- C:\windows\System32\drivers\RegKill.sys [14032] {0100000000010F5C98B8F5} =>.Elaborate Bytes AG O58 - SDL:2009/12/30 10:21:26 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\windows\System32\drivers\revoflt.sys [31800] =>.VS Revo Group® O58 - SDL:2009/11/28 14:53:00 A . (.REDC - RICOH SD/MMC Driver.) -- C:\windows\System32\drivers\risdpe64.sys [80384] =>.REDC O58 - SDL:2010/04/07 11:17:44 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [2337440] =>.Realtek Semiconductor Corp® O58 - SDL:2009/06/11 05:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2008/02/01 01:24:32 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\windows\System32\drivers\ser2pl64.sys [93184] =>.Prolific Technology Inc. O58 - SDL:2009/07/14 09:00:40 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\windows\System32\drivers\serial.sys [94208] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 10:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2014/08/12 09:45:28 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\windows\System32\drivers\tap-tb-0901.sys [38656] =>.TunnelBear, Inc.® O58 - SDL:2009/07/31 13:22:04 A . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\windows\System32\drivers\tdcmdpst.sys [27784] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/18 05:01:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\windows\System32\drivers\tosporte.sys [54664] =>.TOSHIBA CORPORATION® O58 - SDL:2010/04/08 03:51:00 A . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\windows\System32\drivers\tosrfbd.sys [214248] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/20 02:59:00 A . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\windows\System32\drivers\tosrfbnp.sys [50664] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/29 13:02:00 A . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\windows\System32\drivers\tosrfcom.sys [81768] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/14 15:12:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\windows\System32\drivers\tosrfec.sys [19824] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/20 03:00:00 A . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\windows\System32\drivers\Tosrfhid.sys [94336] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/25 04:33:00 A . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\windows\System32\drivers\tosrfnds.sys [26472] =>.TOSHIBA CORPORATION® O58 - SDL:2010/03/24 10:39:00 A . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\windows\System32\drivers\TosRfSnd.sys [63488] =>.Toshiba Corporation O58 - SDL:2010/04/09 05:47:00 A . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\windows\System32\drivers\tosrfusb.sys [60536] =>.TOSHIBA CORPORATION® O58 - SDL:2015/04/06 15:32:30 A . (...) -- C:\windows\System32\drivers\TrueSight.sys [37624] =>.Adlice® O58 - SDL:2009/07/15 05:25:14 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\windows\System32\drivers\TVALZ.SYS [26840] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/20 12:15:22 A . (.TOSHIBA Corporation - TOSHIBA TVALZ Filter Driver for x64.) -- C:\windows\System32\drivers\TVALZFL.sys [14472] =>.TOSHIBA CORPORATION® O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\UimBus.sys [102664] {6BE4677481C001C02863533EB40C5EC3} O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\UimFIO.sys [556296] {6BE4677481C001C02863533EB40C5EC3} O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\uim_devim.sys [25992] {6BE4677481C001C02863533EB40C5EC3} O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\uim_im.sys [700680] {6BE4677481C001C02863533EB40C5EC3} O58 - SDL:2014/07/28 14:52:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2009/07/14 10:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2008/05/06 16:06:00 A . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\windows\System32\drivers\wdcsam64.sys [14464] =>.Western Digital Technologies ---\\ Last modified or created user files (2) - 7s O61 - LFC: 2016/03/27 09:01:33 A . (..) -- C:\Users\Serge\ZHPCleaner.exe [170240] O61 - LFC: 2016/03/27 09:01:33 A . (..) -- C:\Users\Serge\AppData\Roaming\ZHP\ZHPCleaner.exe [170240] ---\\ File Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Start Menu Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Search Browser Infection (5) - 11s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC O69 - SBI: SearchScopes [HKCU] {98CE369B-B29B-42A7-8DB7-4532AE9F6AD4} [DefaultScope] - (Google) - http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNA_enJP571 O69 - SBI: SearchScopes [HKCU] {FF41E915-D2CB-4C56-9B96-F42B2ED417FF} - (Google) - http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNA O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC O69 - SBI: SearchScopes [HKLM] {FF41E915-D2CB-4C56-9B96-F42B2ED417FF} - (Google) - http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7TSNA ---\\ Search Svchost Services (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\windows\System32\ikeext.dll [859648] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\windows\System32\termsrv.dll [683520] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\windows\system32\wuaueng.dll [2610688] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\windows\System32\appinfo.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\windows\system32\profsvc.dll [210432] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Firewall Active Exception List (1) - 1s O87 - FAEL: "{5C09ECE2-2999-4184-8F13-E85E03854343}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe\Bonjour\mDNSResponder.exe (.not file.) ---\\ Additional Scan (O88) (1) - 0s ~ No malicious or unnecessary items found. ---\\ Summary of the elements found (1) - 0s http://www.nicolascoolman.fr/?p=4664 => ~ End of the scan, 3832 items in 00h02mn49s (1036)(0)