~ ZHPDiag v2016.4.14.87 By Nicolas Coolman (2016/04/14) ~ Run by Serge (Administrator) (2016/04/18 13:04:35) ~ Web: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\Serge\Desktop\ZHPDiag.txt ~ Report: C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Internet Browsers (3) - 0s GCIE: Google Chrome v49.0.2623.112 MFIE: Mozilla Firefox 45.0.2 (x86 fr) MSIE: Internet Explorer v11.0.9600.18282 ---\\ Windows Product Information (4) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System protection software (1) - 1s Malwarebytes Anti-Malware version 2.2.1.1043 ---\\ System protection software (Superfluous) (1) - 1s ESET Online Scanner v3 ---\\ Surveillance software (1) - 1s Adobe Flash Player 21 NPAPI ---\\ Sharing software PeerToPeer (1) - 1s µTorrent v3.4.6.42178 ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 37 Stepping 5, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3916.212 MB (69% free) System Restore: Activé (Enable) System drive C: has 18 GB () free of 109 GB =>Alerte espace disque inférieur à 20 Go ---\\ Connection to the system mode (3) - 0s ~ Computer Name: SERGE-PC ~ User Name: Serge ~ Logged in as Administrator ---\\ Enumeration of the disk units (1) - 0s ~ Drive C: has 18 GB free of 109 GB (System) ---\\ State of the Windows Security Center (13) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Search Generic System Files (25) - 1s [MD5.9D77CC4A36FEEA644D002CFB9B2D42C0] - 22/01/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\windows\Explorer.exe [3231232] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.D2E3B1DEDF6F6177D8C32B2516703A93] - 31/03/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\windows\System32\wininet.dll [2596864] =>.Microsoft Corporation [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Windows Logon Application.) -- C:\windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Software Licensing Library.) -- C:\windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 14/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.ACEC16415275E1AD6F7983EF472810E3] - 18/03/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 12/01/2016 - (.Microsoft Corporation - NT File System Driver.) -- C:\windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.1B6163C503398B23FF8B939C67747683] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.AA77EB517D2F07A947294F260E3ACA83] - 14/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (1) - 0s O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® ---\\ Services not Microsoft (SR=Run, SS=Stop) (27) - 16s SS - Disabl [18/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [28/08/2014] [ 43336] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SS - Disabl [02/02/2010] [ 2731328] AuthenTec Fingerprint Service (ATService) . (.AuthenTec, Inc..) - C:\Program Files\Fingerprint Sensor\ATService.exe {2ED54CF4ED156D690537900AB6488CDF} =>.AuthenTec, Inc. SS - Disabl [30/08/2011] [ 462184] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Disabl [29/01/2010] [ 249200] ConfigFree WiMAX Service (cfWiMAXService) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\ConfigFree\CFIWmxSvcs64.exe =>.TOSHIBA CORPORATION® SS - Disabl [11/03/2009] [ 46448] ConfigFree Service (ConfigFree Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe =>.TOSHIBA CORPORATION® SS - Disabl [12/12/2015] [ 143144] Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Disabl [12/12/2015] [ 143144] Dropbox Update Service (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Disabl [12/01/2011] [ 1430800] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation - Mobile Wireless Group® SS - Disabl [26/12/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Disabl [26/12/2015] [ 144200] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Demand [01/09/2014] [ 640840] iPod Service (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Disabl [19/03/2010] [ 268824] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Demand [25/08/2011] [ 6144] MEMSWEEP2 (MEMSWEEP2) . (.Sophos Plc.) - C:\Windows\System32\9647.tmp SS - Disabl [12/04/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Disabl [12/01/2011] [ 340240] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation - Mobile Wireless Group® SS - Disabl [12/01/2011] [ 840976] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation - Mobile Wireless Group® SS - Disabl [29/01/2016] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Disabl [11/02/2011] [ 54136] TMachInfo (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe =>.TOSHIBA CORPORATION® SS - Disabl [29/07/2009] [ 140632] TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation.) - C:\windows\system32\TODDSrv.exe =>.Toshiba Corporation SS - Disabl [21/05/2010] [ 489384] TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [13/04/2010] [ 196976] TOSHIBA Bluetooth Service (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [24/04/2010] [ 259440] TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TECO\TecoService.exe =>.TOSHIBA CORPORATION® SS - Disabl [06/02/2010] [ 137560] TOSHIBA HDD SSD Alert Service (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [11/05/2010] [ 836016] TPCH Service (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe =>.TOSHIBA CORPORATION® SS - Disabl [19/03/2010] [ 2320920] Intel(R) Management & Security Application User Notificatio (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® ---\\ Process running (10) - 1s [MD5.608D6A90E989C6522F170E5526A64BF4] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.1588] =>.Apple Inc.® [MD5.7FB272B53B2D1D477934491D4EAC0D42] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3929296] [PID.2892] =>.Tonec Inc.® [MD5.9BB2778FE2C8477EE6E50C53DB668ADA] - (.Zhorn Software - Stickies 8.0c.) -- C:\Program Files (x86)\Stickies\stickies.exe [1553408] [PID.2944] [MD5.E9A61CA7929F5945CF7FCC240A8EA997] - (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [23248560] [PID.2964] =>.Dropbox, Inc® [MD5.D88B2D487439305A2EC308A6796C3044] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392] [PID.2976] =>.Apple Inc.® [MD5.635F7587F7576AA14871B850EB95BFB8] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [640840] [PID.2148] =>.Apple Inc.® [MD5.C224456660839CFCAD2CD8DFB293F38B] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8686296] [PID.2724] =>.Piriform Ltd® [MD5.AE2BE27838478814F87EE42437D862E6] - (.TOSHIBA CORPORATION - ConfigFree Task Tray Menu.) -- C:\Program Files (x86)\Toshiba\ConfigFree\NDSTray.exe [304560] [PID.3808] =>.TOSHIBA CORPORATION® [MD5.8A07221789D46B2EA7DFCA2BC807572A] - (.TOSHIBA CORPORATION - ConfigFree Switch Manager Process.) -- C:\Program Files (x86)\Toshiba\ConfigFree\CFSwMgr.exe [62848] [PID.3888] =>.TOSHIBA CORPORATION® [MD5.85EC7A6E8957C3B3E53ED53CEC027215] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Serge\Desktop\ZHPDiag3.exe [2187264] [PID.1708] =>.Nicolas Coolman ---\\ Google Chrome, Start,Search,Extensions (10) - 0s G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [boadgeojelhgndaghljhdicfkmllpafd] Google Cast G2 - GCE: Preference [User Data\Default] [cnciopoikihiagdjbjpnocolokfelagl] Videostream for Google Chromecast™ G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghagedffjalchgcgdgfindabkpnmalel] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (7) - 1s M0 - MFSP: prefs.js [Serge - a529vz0u.default-1458544705154] https://www.google.fr/?gws_rd=ssl P2 - EXT FILE: (...) -- C:\Users\Serge\AppData\Roaming\Mozilla\Firefox\Profiles\a529vz0u.default-1458544705154\extensions\tinyurl.addon@fast-chat.co.uk.xpi P2 - EXT FILE: (...) -- C:\Users\Serge\AppData\Roaming\Mozilla\Firefox\Profiles\a529vz0u.default-1458544705154\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc. P2 - FPN: [HKLM] [@mozilla.zeniko.ch/SumatraPDF_Browser_Plugin] - (.SumatraPDF Browser Plugin.) -- C:\Program Files (x86)\SumatraPDF\npPdfViewer.dll ---\\ Internet Explorer Extensions, Start, Search (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (70) ---\\ Browser Helper Object (BHO) (2) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® ---\\ Auto loading programs from Registry and folders (16) - 1s O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [IDM trial reset] . (...) -- C:\Users\Serge\1 - A garder - Softs & PW\1 - 2016 - IDM - Trial Reset Auto - FINAL\3 -idm_trial_reset.exe O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - HKLM\..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc® O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1606463160-1528309087-3068095059-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-1606463160-1528309087-3068095059-1000\..\Run: [IDM trial reset] . (...) -- C:\Users\Serge\1 - A garder - Softs & PW\1 - 2016 - IDM - Trial Reset Auto - FINAL\3 -idm_trial_reset.exe O4 - HKUS\S-1-5-21-1606463160-1528309087-3068095059-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® ---\\ Global shortcuts Startup (78) - 6s O4 - GS\Desktop [Administrator]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrator]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\sendTo [Administrator]: Dropbox.lnk . (...) C:\Users\Serge\Dropbox O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrator]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\TaskBar [Administrator]: Any DVD Cloner Platinum.lnk . (.Any DVD Cloner - Any DVD Cloner Platinum.) C:\Program Files (x86)\Any DVD Cloner Platinum\ClonerPlatinum_U.exe {26267E29934668A10F0731D9C546D7CE} O4 - GS\TaskBar [Administrator]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Administrator]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Chrono ShutDown.lnk . (.John's Soft ;) - Chrono ShutDown.) C:\Users\Serge\1 - A garder - Softs & PW\Chrono Shutdown.exe O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Administrator]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\TaskBar [Administrator]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrator]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrator]: ScreenHunter 4.0 Free.lnk . (.Wisdom Software Inc. - ScreenHunter 4.0 Free.) C:\Program Files (x86)\Wisdom-soft ScreenHunter\ScreenHunter.exe O4 - GS\TaskBar [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrator]: SpeedyFox program.lnk . (.SpeedyFox - SpeedyFox program.) C:\Users\Serge\1 - A garder - Softs & PW\speedyfox.exe {119B09803E11C7BE685861F72F128819} =>.SpeedyFox O4 - GS\TaskBar [Administrator]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\TaskBar [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Serge\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Startup [Administrator]: Stickies.lnk . (.Zhorn Software - Stickies 8.0c.) C:\Program Files (x86)\Stickies\stickies.exe O4 - GS\Desktop [Guest]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Guest]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\sendTo [Guest]: Dropbox.lnk . (...) C:\Users\Serge\Dropbox O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Guest]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\TaskBar [Guest]: Any DVD Cloner Platinum.lnk . (.Any DVD Cloner - Any DVD Cloner Platinum.) C:\Program Files (x86)\Any DVD Cloner Platinum\ClonerPlatinum_U.exe {26267E29934668A10F0731D9C546D7CE} O4 - GS\TaskBar [Guest]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Guest]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Chrono ShutDown.lnk . (.John's Soft ;) - Chrono ShutDown.) C:\Users\Serge\1 - A garder - Softs & PW\Chrono Shutdown.exe O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Guest]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\TaskBar [Guest]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Guest]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Guest]: ScreenHunter 4.0 Free.lnk . (.Wisdom Software Inc. - ScreenHunter 4.0 Free.) C:\Program Files (x86)\Wisdom-soft ScreenHunter\ScreenHunter.exe O4 - GS\TaskBar [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Guest]: SpeedyFox program.lnk . (.SpeedyFox - SpeedyFox program.) C:\Users\Serge\1 - A garder - Softs & PW\speedyfox.exe {119B09803E11C7BE685861F72F128819} =>.SpeedyFox O4 - GS\TaskBar [Guest]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\TaskBar [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Serge\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Startup [Guest]: Stickies.lnk . (.Zhorn Software - Stickies 8.0c.) C:\Program Files (x86)\Stickies\stickies.exe O4 - GS\Desktop [Serge]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Desktop [Serge]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Serge\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Serge]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Serge]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Serge]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Serge]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\sendTo [Serge]: Dropbox.lnk . (...) C:\Users\Serge\Dropbox O4 - GS\sendTo [Serge]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Serge]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\TaskBar [Serge]: Any DVD Cloner Platinum.lnk . (.Any DVD Cloner - Any DVD Cloner Platinum.) C:\Program Files (x86)\Any DVD Cloner Platinum\ClonerPlatinum_U.exe {26267E29934668A10F0731D9C546D7CE} O4 - GS\TaskBar [Serge]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\TaskBar [Serge]: Chrome App Launcher.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Serge]: Chrono ShutDown.lnk . (.John's Soft ;) - Chrono ShutDown.) C:\Users\Serge\1 - A garder - Softs & PW\Chrono Shutdown.exe O4 - GS\TaskBar [Serge]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Serge]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Serge]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.® O4 - GS\TaskBar [Serge]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [Serge]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Serge]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Serge]: ScreenHunter 4.0 Free.lnk . (.Wisdom Software Inc. - ScreenHunter 4.0 Free.) C:\Program Files (x86)\Wisdom-soft ScreenHunter\ScreenHunter.exe O4 - GS\TaskBar [Serge]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Serge]: SpeedyFox program.lnk . (.SpeedyFox - SpeedyFox program.) C:\Users\Serge\1 - A garder - Softs & PW\speedyfox.exe {119B09803E11C7BE685861F72F128819} =>.SpeedyFox O4 - GS\TaskBar [Serge]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\TaskBar [Serge]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\Serge\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Startup [Serge]: Stickies.lnk . (.Zhorn Software - Stickies 8.0c.) C:\Program Files (x86)\Stickies\stickies.exe O4 - GS\CommonDesktop [Public]: ZHPFix.lnk . (.Nicolas Coolman - ZHPDiag Setup.) C:\Program Files (x86)\ZHPFix\ZHPhep.exe =>.Nicolas Coolman O4 - GS\Programs [Public]: Allway Sync.lnk . (...) C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe {21D93F17217292DF4A757940A0A7545F} O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\windows\system32\taskschd.msc ---\\ Lop.com/Domain Hijackers (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{810AEBA7-AB0C-4077-8362-93CB7D7ACC4E}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{AD58E9E5-21C6-48F4-9AFC-6A6FE53FF39C}: DhcpNameServer = 192.168.1.1 ---\\ Extra protocols (24) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: mso-offdap11 [64Bits] - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files (x86)\Common Files\microsoft shared\Web Components\11\OWC11.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (90) - 15s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc. O42 - Logiciel: AC3Filter 2.6.0b - (.Alexander Vigovsky.) [HKLM][64Bits] -- AC3Filter_is1 =>.Alexander Vigovsky O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Allway Sync version 9.2.15 - (.Usov Lab.) [HKLM][64Bits] -- Allway Sync_is1 O42 - Logiciel: Any DVD Cloner Platinum 1.2.3 - (.dvdsmith.com.) [HKLM][64Bits] -- Any DVD Cloner Platinum_is1 {26267E29934668A10F0731D9C546D7CE} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {78002155-F025-4070-85B3-7C0453561701} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B678797F-DF38-4556-8A31-8B818E261868} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc. O42 - Logiciel: AuthenTec Fingerprint Software - (.AuthenTec, Inc..) [HKLM][64Bits] -- {5F1DFCC1-595D-4235-A044-E05B706D800A} =>.AuthenTec, Inc. O42 - Logiciel: Backup Thunderbird - (.backupthunderbird.com.) [HKLM][64Bits] -- {FA212C5D-FE18-4A8B-9A45-B2E62A20D4CA}_is1 O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6} =>.Toshiba Corporation O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: ChromecastApp - (.Google Inc..) [HKCU][64Bits] -- {079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1 =>.Google Inc® O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} =>.Cisco Systems, Inc. O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: ESET Online Scanner v3 - (...) [HKLM][64Bits] -- ESET Online Scanner =>.ESET, spol. s r.o.® O42 - Logiciel: Everything 1.4.0.713b (x64) - (.David Carpenter.) [HKLM][64Bits] -- Everything O42 - Logiciel: Freemake Video Downloader - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Downloader_is1 =>.Ellora Assets Corporation O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {709A2D23-C25E-47B5-9268-CB6FEE648504} =>.Apple Inc. O42 - Logiciel: Intel PROSet Wireless - (...) [HKLM][64Bits] -- ProInst O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM][64Bits] -- PROSet =>.Intel O42 - Logiciel: Intel(R) PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {AB67B5F9-B19A-42F4-A57D-46114D71060E} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F46AA0F1-E284-4878-A462-5F11B9166C0E} =>.Apple Inc. O42 - Logiciel: LocK-A-FoLdeR - (...) [HKLM][64Bits] -- LocK-A-FoLdeR O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {3061DCA5-2D0B-48F9-800F-9D7C1FEB5E78} =>.Microsoft Corporation O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client =>.Microsoft Corporation® O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 45.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 45.0.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Mozilla Thunderbird 38.7.2 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 38.7.2 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: NEC Electronics USB 3.0 Host Controller Driver - (.NEC Electronics Corporation.) [HKLM][64Bits] -- {D7BF9739-8A68-4335-BBEE-37752AD9E86B} =>.NEC Electronics Corporation O42 - Logiciel: NEC Electronics USB 3.0 Host Controller Driver - (.NEC Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B} =>.NEC Electronics Corporation O42 - Logiciel: PhotoFiltre - (...) [HKLM][64Bits] -- PhotoFiltre O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM][64Bits] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} =>.Prolific Technology INC O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} =>.Microsoft Corporation O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: Remove Empty Directories version 2.2 (Admin Editon) - (.Jonas John.) [HKLM][64Bits] -- {06F25DC8-71E2-44E2-805A-F15E15B51C74}_is1 =>.Jonas John O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation O42 - Logiciel: Skype Launcher - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {DA84ECBF-4B79-47F2-B34C-95C38484C058} =>.Macrovision Corporation® O42 - Logiciel: Skype™ 7.21 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Stickies 8.0c - (.Zhorn Software.) [HKLM][64Bits] -- ZhornStickies O42 - Logiciel: SumatraPDF - (.Krzysztof Kowalczyk.) [HKLM][64Bits] -- SumatraPDF =>.Krzysztof Kowalczyk® O42 - Logiciel: TFPU - (.TOSHIBA.) [HKLM][64Bits] -- {A7760E07-4C23-4766-A99E-F715F298E99C} =>.TOSHIBA O42 - Logiciel: TOSHIBA Application Installer - (.TOSHIBA.) [HKLM][64Bits] -- {970472D0-F5F9-4158-A6E3-1AE49EFEF2D3} =>.TOSHIBA O42 - Logiciel: TOSHIBA Assist - (.TOSHIBA.) [HKLM][64Bits] -- {1B87C40B-A60B-4EF3-9A68-706CF4B69978} =>.TOSHIBA CORPORATION® O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {C14518AF-1A0F-4D39-8011-69BAA01CD380} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Bulletin Board - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA ConfigFree - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {B73A66DB-7804-46EC-9A2F-BD534FDB6AD5} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Disc Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5DA0E02F-970B-424B-BF41-513A5018E4C0} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA eco Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {B3FF1CD9-B2F0-4D71-BB55-5F580401C48E} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA eco Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {F67FA545-D8E5-4209-86B1-AEE045D1003F} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Face Recognition - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Fingerprint Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- TFPU{A7760E07-4C23-4766-A99E-F715F298E99C} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {D4322448-B6AF-4316-B859-D8A0E84DCB38} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Media Controller - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {983CD6FE-8320-4B80-A8F6-0D0366E0AA22} =>.Macrovision Corporation® O42 - Logiciel: TOSHIBA Media Controller Plug-in - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {F26FDF57-483E-42C8-A9C9-EEE1EDB256E0} =>.Toshiba Corporation O42 - Logiciel: Toshiba Online Backup - (.Toshiba.) [HKLM][64Bits] -- {C57BCDE1-7CB9-467D-B3BA-7E119916CDC1} =>.TOSHIBA O42 - Logiciel: TOSHIBA PC Health Monitor - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Quality Application - (.TOSHIBA.) [HKLM][64Bits] -- {E69992ED-A7F6-406C-9280-1C156417BC49} =>.TOSHIBA O42 - Logiciel: TOSHIBA Recovery Media Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {A0E99122-25C1-4CA4-9063-499A2A814EB6} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA ReelTime - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{A0E99122-25C1-4CA4-9063-499A2A814EB6} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Security Assist - (.TOSHIBA.) [HKLM][64Bits] -- {1E63ACB5-D45E-4856-8FC9-78F4B0D7BB80} =>.Macrovision Corporation® O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {AC6569FA-6919-442A-8552-073BE69E247A} =>.TOSHIBA O42 - Logiciel: TOSHIBA Sleep Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {654F7484-88C5-46DC-AB32-C66BCB0E2102} =>.TOSHIBA CORPORATION® O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {066CFFF8-12BF-4390-A673-75F95EFF188E} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} =>.TOSHIBA CORPORATION® O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5E6F6CF3-BACC-4144-868C-E14622C658F3} =>.Macrovision Corporation® O42 - Logiciel: ToshibaRegistration - (.Toshiba.) [HKLM][64Bits] -- {5AF550B4-BB67-4E7E-82F1-2C4300279050} =>.TOSHIBA O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM][64Bits] -- WinPcapInst =>.Riverbed Technology, Inc. O42 - Logiciel: WinRAR 5.20 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wisdom-soft ScreenHunter 4.0 Free - (.Wisdom Software Inc..) [HKLM][64Bits] -- Wisdom-soft ScreenHunter 4.0 Free O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 =>.Nicolas Coolman ---\\ HKCU & HKLM Software Keys (133) - 15s HKLM\SOFTWARE\Wow6432Node\ActMask Virtual Printer SDK HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Auslogics HKLM\SOFTWARE\Wow6432Node\Authentec HKLM\SOFTWARE\Wow6432Node\BSD HKLM\SOFTWARE\Wow6432Node\Canneverbe Limited HKLM\SOFTWARE\Wow6432Node\Cisco Systems HKLM\SOFTWARE\Wow6432Node\Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate HKLM\SOFTWARE\Wow6432Node\ej-technologies HKLM\SOFTWARE\Wow6432Node\Elaborate Bytes HKLM\SOFTWARE\Wow6432Node\Eset HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\GlarySoft HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Infix PDF HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\iOSinstaller HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nitro HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Panda Software HKLM\SOFTWARE\Wow6432Node\PhotoFiltre HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\RtWLan HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SymNRT HKLM\SOFTWARE\Wow6432Node\Tific HKLM\SOFTWARE\Wow6432Node\TOSHIBA HKLM\SOFTWARE\Wow6432Node\TOSHIBA Corporation HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\Vso HKLM\SOFTWARE\Wow6432Node\WafCX HKLM\SOFTWARE\Wow6432Node\WinPcap HKLM\SOFTWARE\Wow6432Node\WiseCleaner HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Xilisoft HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\2VG HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Altaruine HKCU\SOFTWARE\Any DVD Cloner Platinum HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\Canneverbe Limited HKCU\SOFTWARE\Cheat Engine HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Circitor HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Elaborate Bytes HKCU\SOFTWARE\ESET HKCU\SOFTWARE\EXECryptorTestKeys HKCU\SOFTWARE\FileOpen HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\giveawayoftheday.com HKCU\SOFTWARE\Glarysoft HKCU\SOFTWARE\Google HKCU\SOFTWARE\idoo Free AntiSpyware HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\iMazing HKCU\SOFTWARE\Informer Technologies, Inc. HKCU\SOFTWARE\Intel HKCU\SOFTWARE\iOSinstaller HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\LocK-A-FoLdeR HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Magicbit HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Mirage HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\Mozilla Backup HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NITRO HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\PcWinTech HKCU\SOFTWARE\PDFEdit HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PopcornTime HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\redsn0w HKCU\SOFTWARE\SecurityXploded HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SWiSHzone.com HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\SyncApp HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Thunderbird HKCU\SOFTWARE\Tomabo HKCU\SOFTWARE\TOSHIBA HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unchecky HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VS Revo Group HKCU\SOFTWARE\Vso HKCU\SOFTWARE\Winaero.com HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wisdom-soft HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Xilisoft HKCU\SOFTWARE\xp-AntiSpy HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Google HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contents of the Common Files folders (270) - 11s O43 - CFD: 11/10/2015 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.® O43 - CFD: 01/10/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 25/03/2015 - [] D -- C:\Program Files\Common Files O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 10/08/2014 - [] D -- C:\Program Files\e8fa8ab28b4c03c2ea =>.Microsoft Corporation® O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\Everything {7B523EBF727602C8813FF39239A3BA58} O43 - CFD: 21/01/2014 - [] D -- C:\Program Files\Fingerprint Sensor {2ED54CF4ED156D690537900AB6488CDF} O43 - CFD: 21/01/2014 - [] D -- C:\Program Files\Intel =>.Microsoft Windows® O43 - CFD: 13/04/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation® O43 - CFD: 05/04/2016 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 05/04/2016 - [] D -- C:\Program Files\iTunes O43 - CFD: 24/02/2016 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation® O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild O43 - CFD: 21/01/2014 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 31/03/2016 - [] D -- C:\Program Files\SumatraPDF =>.Krzysztof Kowalczyk® O43 - CFD: 20/01/2014 - [] D -- C:\Program Files\TOSHIBA =>.TOSHIBA CORPORATION® O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group® O43 - CFD: 16/02/2014 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 11/02/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 17/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 01/04/2016 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology, Inc.® O43 - CFD: 14/04/2016 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 13/08/2015 - [] D -- C:\Program Files (x86)\AC3Filter O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\AdwCleaner O43 - CFD: 28/01/2014 - [] D -- C:\Program Files (x86)\Allway Sync O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Any DVD Cloner Platinum {26267E29934668A10F0731D9C546D7CE} O43 - CFD: 11/10/2015 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.® O43 - CFD: 03/02/2016 - [] D -- C:\Program Files (x86)\Backup Thunderbird O43 - CFD: 11/10/2015 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 10/08/2014 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 22/10/2014 - [] D -- C:\Program Files (x86)\Cisco Systems O43 - CFD: 09/04/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc® O43 - CFD: 11/04/2016 - [] D -- C:\Program Files (x86)\ESET =>.ESET, spol. s r.o.® O43 - CFD: 01/04/2015 - [] D -- C:\Program Files (x86)\Freemake =>.Microsoft Corporation® O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 31/08/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 22/04/2014 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation® O43 - CFD: 12/04/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc.® O43 - CFD: 13/04/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 05/04/2016 - [] D -- C:\Program Files (x86)\iTunes =>.Apple Inc.® O43 - CFD: 15/02/2014 - [] D -- C:\Program Files (x86)\LocK-A-FoLdeR O43 - CFD: 01/04/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 10/03/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 24/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Security Client O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 28/01/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 12/04/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 12/04/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 09/04/2016 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 10/03/2014 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 04/06/2010 - [] D -- C:\Program Files (x86)\NEC Electronics O43 - CFD: 23/03/2015 - [] D -- C:\Program Files (x86)\PhotoFiltre O43 - CFD: 27/04/2014 - [] D -- C:\Program Files (x86)\Portable O43 - CFD: 21/01/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 31/08/2015 - [] D -- C:\Program Files (x86)\Remove Empty Directories O43 - CFD: 23/05/2015 - [] D -- C:\Program Files (x86)\SecurityXploded O43 - CFD: 28/03/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 27/03/2016 - [] D -- C:\Program Files (x86)\SpywareBlaster O43 - CFD: 17/02/2016 - [] D -- C:\Program Files (x86)\Stickies O43 - CFD: 20/01/2014 - [] D -- C:\Program Files (x86)\Toshiba =>.TOSHIBA CORPORATION® O43 - CFD: 04/06/2010 - [] D -- C:\Program Files (x86)\Toshiba Online Backup =>.Symantec Corporation® O43 - CFD: 26/03/2016 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 16/02/2014 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 17/03/2016 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 15/06/2015 - [] D -- C:\Program Files (x86)\Wisdom-soft ScreenHunter O43 - CFD: 18/04/2016 - [] D -- C:\Program Files (x86)\ZHPFix O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Allway Sync O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Any DVD Cloner Platinum O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup Thunderbird O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 16/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 07/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 01/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My Toshiba O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Empty Directories O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro O43 - CFD: 13/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 29/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toshiba Online Backup O43 - CFD: 26/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 01/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap O43 - CFD: 13/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 09/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wisdom-soft ScreenHunter O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Apple O43 - CFD: 11/10/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 26/05/2014 - [] D -- C:\ProgramData\ArcSoft O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Auslogics O43 - CFD: 22/01/2014 - [] D -- C:\ProgramData\Cisco Systems O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\DigiDNA O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 18/06/2015 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 23/11/2015 - [] D -- C:\ProgramData\Emsisoft O43 - CFD: 14/09/2015 - [] D -- C:\ProgramData\F-Secure O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 18/04/2016 - [0] D -- C:\ProgramData\IDM O43 - CFD: 04/06/2014 - [] D -- C:\ProgramData\Intel O43 - CFD: 04/10/2015 - [] D -- C:\ProgramData\IObit O43 - CFD: 23/08/2014 - [] D -- C:\ProgramData\Lavasoft O43 - CFD: 29/04/2015 - [] D -- C:\ProgramData\Logs O43 - CFD: 30/03/2016 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Malwarebytes Anti-Exploit O43 - CFD: 11/04/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 21/01/2014 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 20/01/2014 - [] D -- C:\ProgramData\Norton O43 - CFD: 19/05/2014 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Panda Security O43 - CFD: 11/09/2014 - [] D -- C:\ProgramData\panda_url_filtering O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Simply Super Software O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 27/01/2014 - [] D -- C:\ProgramData\Sync App Settings O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\TempDR O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\Toshiba O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Unchecky O43 - CFD: 05/09/2014 - [] D -- C:\ProgramData\VS Revo Group O43 - CFD: 10/04/2014 - [] D -- C:\ProgramData\vsosdk O43 - CFD: 19/05/2014 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 03/10/2015 - [] D -- C:\ProgramData\WindSolutions O43 - CFD: 08/10/2014 - [] D -- C:\ProgramData\Xilisoft O43 - CFD: 31/01/2014 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 05/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 28/01/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 31/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared O43 - CFD: 04/06/2010 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 09/08/2014 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 21/01/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 23/01/2014 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Adobe O43 - CFD: 26/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Apowersoft O43 - CFD: 11/10/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Apple Computer O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\ArcSoft O43 - CFD: 06/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\CAD-KAS O43 - CFD: 25/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Canneverbe Limited O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\CrystalIdea Software O43 - CFD: 25/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Digiarty O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\DMCache O43 - CFD: 19/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Downloaded Installations O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Dropbox O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\dvdcss O43 - CFD: 10/04/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Eusing O43 - CFD: 25/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Everything O43 - CFD: 12/04/2015 - [] D -- C:\Users\Serge\AppData\Roaming\FairStars CD Ripper O43 - CFD: 06/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\FileOpen O43 - CFD: 13/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\FreeLanguageTranslator O43 - CFD: 27/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\GlarySoft O43 - CFD: 09/03/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Gmail Backup O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\HP O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\IDM O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\iMazing O43 - CFD: 09/03/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Intel O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Internet Download Accelerator O43 - CFD: 28/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\IObit O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\KaiJet O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\KastorAllVideoDownloader O43 - CFD: 08/10/2014 - [] D -- C:\Users\Serge\AppData\Roaming\libimobiledevice O43 - CFD: 08/10/2014 - [] D -- C:\Users\Serge\AppData\Roaming\log O43 - CFD: 21/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Macromedia O43 - CFD: 04/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Mchid O43 - CFD: 17/03/2016 - [] SD -- C:\Users\Serge\AppData\Roaming\Microsoft O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Mozilla O43 - CFD: 09/03/2014 - [] D -- C:\Users\Serge\AppData\Roaming\MP3 Quality Modifier O43 - CFD: 06/05/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Nitro O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Nitro PDF O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\PortForward.com O43 - CFD: 21/09/2015 - [] D -- C:\Users\Serge\AppData\Roaming\QuickScan O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\redsn0w O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Skype O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\stickies O43 - CFD: 31/03/2016 - [] D -- C:\Users\Serge\AppData\Roaming\SumatraPDF O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Sync App Settings O43 - CFD: 04/10/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Syncios O43 - CFD: 18/04/2016 - [0] D -- C:\Users\Serge\AppData\Roaming\TFPU O43 - CFD: 02/11/2015 - [] D -- C:\Users\Serge\AppData\Roaming\thecleaner O43 - CFD: 19/02/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Thunderbird O43 - CFD: 06/03/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Tomabo O43 - CFD: 26/09/2014 - [] D -- C:\Users\Serge\AppData\Roaming\TunnelBear O43 - CFD: 28/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\UBitMenu O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\uTorrent O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\vlc O43 - CFD: 20/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\WinBatch O43 - CFD: 03/10/2015 - [] D -- C:\Users\Serge\AppData\Roaming\WindSolutions O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\WinRAR O43 - CFD: 07/09/2014 - [] D -- C:\Users\Serge\AppData\Roaming\WNR O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Xilisoft O43 - CFD: 31/12/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Youtube Downloader HD O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\ZHP O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Local\Adobe O43 - CFD: 11/10/2015 - [] D -- C:\Users\Serge\AppData\Local\Apple Computer O43 - CFD: 12/04/2015 - [] D -- C:\Users\Serge\AppData\Local\CDex O43 - CFD: 20/02/2016 - [] D -- C:\Users\Serge\AppData\Local\DigiDNA O43 - CFD: 19/10/2014 - [] D -- C:\Users\Serge\AppData\Local\Downloaded Installations O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Local\Dropbox O43 - CFD: 14/09/2015 - [] D -- C:\Users\Serge\AppData\Local\F-Secure O43 - CFD: 23/09/2015 - [] D -- C:\Users\Serge\AppData\Local\Geckofx O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Local\Google O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Local\GSMiscDownload O43 - CFD: 05/06/2015 - [] D -- C:\Users\Serge\AppData\Local\GWX O43 - CFD: 27/09/2014 - [] D -- C:\Users\Serge\AppData\Local\HockeyCrashes O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Local\HP O43 - CFD: 25/09/2014 - [] D -- C:\Users\Serge\AppData\Local\IsolatedStorage O43 - CFD: 29/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Luminescence_Software O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Local\Macromedia O43 - CFD: 17/04/2016 - [] D -- C:\Users\Serge\AppData\Local\Microsoft O43 - CFD: 28/01/2014 - [] D -- C:\Users\Serge\AppData\Local\Microsoft Help O43 - CFD: 28/03/2016 - [] D -- C:\Users\Serge\AppData\Local\Mozilla O43 - CFD: 22/01/2016 - [] D -- C:\Users\Serge\AppData\Local\NovaStor_Corporation O43 - CFD: 19/05/2014 - [] D -- C:\Users\Serge\AppData\Local\NPE O43 - CFD: 19/05/2014 - [] D -- C:\Users\Serge\AppData\Local\Packages O43 - CFD: 18/02/2016 - [] D -- C:\Users\Serge\AppData\Local\Popcorn-Time O43 - CFD: 31/08/2015 - [] D -- C:\Users\Serge\AppData\Local\Remove_Empty_Directories O43 - CFD: 16/09/2014 - [] D -- C:\Users\Serge\AppData\Local\Riot O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Local\Temp O43 - CFD: 20/01/2014 - [0] SHD -- C:\Users\Serge\AppData\Local\Temporary Internet Files O43 - CFD: 13/12/2015 - [] D -- C:\Users\Serge\AppData\Local\Thunderbird O43 - CFD: 18/04/2016 - [] D -- C:\Users\Serge\AppData\Local\Toshiba O43 - CFD: 24/03/2014 - [] D -- C:\Users\Serge\AppData\Local\TOSHIBA_Corporation O43 - CFD: 27/01/2014 - [] D -- C:\Users\Serge\AppData\Local\VirtualStore O43 - CFD: 05/09/2014 - [] D -- C:\Users\Serge\AppData\Local\VS Revo Group O43 - CFD: 28/01/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 13/12/2015 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 11/02/2016 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 14/01/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome O43 - CFD: 30/09/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast O43 - CFD: 01/04/2015 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 24/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 03/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 15/08/2014 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LocK-A-FoLdeR O43 - CFD: 28/01/2014 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 11/04/2016 - [] RD -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 06/02/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 13/04/2016 - [] D -- C:\Users\Serge\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (22) - 1s O106 - SIOI: DropboxExt1 Class [ DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [ DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class [ DropboxExt3] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class [ DropboxExt4] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [ DropboxExt5] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class [ DropboxExt6] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [ DropboxExt7] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class [ DropboxExt8] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt1 Class ["DropboxExt1"] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class ["DropboxExt2"] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class ["DropboxExt3"] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class ["DropboxExt4"] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class ["DropboxExt5"] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class ["DropboxExt6"] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class ["DropboxExt7"] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class ["DropboxExt8"] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt1 Class [DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [DropboxExt3] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [DropboxExt4] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll =>.Dropbox, Inc® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ ShareTools MSconfig StartupReg (30) - 1s O53 - SMSR:HKLM\...\startupreg\00TCrdMain [Key] . (.TOSHIBA Corporation - TOSHIBA Flash Cards.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd O53 - SMSR:HKLM\...\startupreg\Dropbox [Key] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc. O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (.Google Inc. - Google Installer.) -- C:\Users\Serge\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc. O53 - SMSR:HKLM\...\startupreg\HSON [Key] . (.TOSHIBA Corporation - HotStartOn.) -- C:\Program Files\TOSHIBA\TBS\HSON.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\IDM trial reset [Key] . (...) -- C:\Users\Serge\1 - A garder - Softs & PW\1 - 2016 - IDM - Trial Reset Auto - FINAL\3 -idm_trial_reset.exe O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O53 - SMSR:HKLM\...\startupreg\IMSS [Key] . (.Copyright © 2009, Intel Corporation. All rights reser - PIconStartup application.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe O53 - SMSR:HKLM\...\startupreg\IntelWireless [Key] . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Framework.) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe =>.Intel(R) Corporation O53 - SMSR:HKLM\...\startupreg\ITSecMng [Key] . (...) -- C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\MSC [Key] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\NortonOnlineBackupReminder [Key] . (.Toshiba - Toshiba Online Backup Service.) -- C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TobuActivation.exe =>.TOSHIBA O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A. O53 - SMSR:HKLM\...\startupreg\SmartFaceVWatcher [Key] . (.TOSHIBA Corporation - SmartFaceVWatcher.) -- C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\SmoothView [Key] . (.TOSHIBA Corporation - SmoothView.) -- C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (...) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Teco [Key] . (.TOSHIBA Corporation - TOSHIBA eco Utility.) -- C:\Program Files\TOSHIBA\TECO\Teco.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TFPUPWDBankService [Key] . (.TOSHIBA - TFPUPWDBank.) -- C:\Program Files\TOSHIBA\TFPU\TFPUPWDBank.exe =>.TOSHIBA O53 - SMSR:HKLM\...\startupreg\TFPUService [Key] . (.TOSHIBA - TFPU Task Monitor.) -- C:\Program Files\TOSHIBA\TFPU\TFPUTaskMonitor.exe =>.TOSHIBA O53 - SMSR:HKLM\...\startupreg\TOSDCR [Key] . (...) -- C:\Program Files\TOSHIBA\PasswordUtility\TOSDCR.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\ToshibaServiceStation [Key] . (.TOSHIBA Corporation - TOSHIBA Service Station.) -- C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\ToshibaServiceStation.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TosNC [Key] . (.TOSHIBA Corporation - Message Center.) -- C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TosReelTimeMonitor [Key] . (.TOSHIBA Corporation - Monitor of TOSHIBA ReelTime.) -- C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TosSENotify [Key] . (.TOSHIBA Corporation - .) -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TosVolRegulator [Key] . (.TOSHIBA Corporation - Toshiba Volume Regulator.) -- C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TosWaitSrv [Key] . (.TOSHIBA Corporation - .) -- C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TPwrMain [Key] . (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe =>.Toshiba Corporation O53 - SMSR:HKLM\...\startupreg\TSleepSrv [Key] . (.TOSHIBA - TOSHIBA Sleep Service.) -- C:\Program Files (x86)\Toshiba\TOSHIBA Sleep Utility\TSleepSrv.exe =>.TOSHIBA ---\\ System Drivers List (96) - 5s O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2011/03/11 15:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2011/03/11 15:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2010/04/24 01:31:09 A . (.SlySoft, Inc. - AnyDVD Filter Driver.) -- C:\windows\System32\drivers\AnyDVD.sys [123840] {0100000000011690704DC6} =>.SlySoft, Inc. O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2010/05/20 03:31:36 A . (.AuthenTec, Inc. - AuthenTec Swipe Sensor WDF USB Driver.) -- C:\windows\System32\drivers\ATSwpWDF.sys [770152] {2ED54CF4ED156D690537900AB6488CDF} =>.AuthenTec, Inc. O58 - SDL:2009/06/11 05:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/11 05:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/11 05:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 10:19:07 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2009/06/11 05:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2009/07/14 10:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2010/02/08 08:32:00 A . (.Cisco Systems, Inc. - Cisco Systems VPN Adapter.) -- C:\windows\System32\drivers\CVirtA64.sys [14992] =>.Cisco Systems, Inc.® O58 - SDL:2014/04/12 09:21:38 A . (.Digiarty Software, Inc. - Digiarty Virtual CD driver.) -- C:\windows\System32\drivers\DigiartyVirtualCDBus.sys [276256] =>.Digiarty, Inc.® O58 - SDL:2008/11/16 18:39:44 A . (.Deterministic Networks, Inc. - Deterministic Network Enhancer for NDIS 5.1.) -- C:\windows\System32\drivers\dne64x.sys [157968] =>.Deterministic Networks® O58 - SDL:2013/12/20 19:12:04 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\windows\System32\drivers\e1k62x64.sys [497424] =>.Intel Corporation® O58 - SDL:2014/02/11 02:59:45 A . (.SlySoft, Inc. - ElbyCDIO Filter Driver.) -- C:\windows\System32\drivers\ElbyCDFL.sys [40872] =>.SlySoft, Inc.® O58 - SDL:2014/12/21 07:31:04 N . (.Elaborate Bytes AG - ElbyCD Windows NT/2000/XP I/O driver.) -- C:\windows\System32\drivers\ElbyCDIO.sys [40344] =>.Elaborate Bytes AG® O58 - SDL:2009/07/14 10:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/11 05:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2016/03/27 07:24:44 A . (.Malwarebytes - Anti-RansomWare SDK.) -- C:\windows\System32\drivers\farflt.sys [54656] =>.Malwarebytes Corporation® O58 - SDL:2014/01/20 11:28:09 RSH . (...) -- C:\windows\System32\drivers\fbd.sys [13] O58 - SDL:2015/08/15 14:43:56 A . (...) -- C:\windows\System32\drivers\fwndislwf64.sys [305360] =>.Emsisoft Ltd® O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\windows\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.® O58 - SDL:2009/06/11 05:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/09/18 06:54:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2010/11/20 22:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2010/03/25 06:55:56 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\windows\System32\drivers\iaStor.sys [540696] =>.Intel Corporation® O58 - SDL:2011/03/11 15:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2016/01/28 18:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\windows\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.® O58 - SDL:2010/07/28 21:10:42 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\System32\drivers\igdkmd64.sys [10610400] =>.Intel Corporation O58 - SDL:2009/07/14 10:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2010/02/27 09:32:12 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\windows\System32\drivers\Impcd.sys [158976] =>.Intel Corporation O58 - SDL:2010/02/03 23:38:30 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\windows\System32\drivers\IntcDAud.sys [271872] =>.Intel(R) Corporation O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\windows\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\windows\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation® O58 - SDL:2016/04/17 16:44:28 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:09:06 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\windows\System32\drivers\mwac.sys [64896] =>.Malwarebytes Corporation® O58 - SDL:2010/04/22 02:37:34 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\windows\System32\drivers\NETw5s64.sys [7686656] =>.Intel Corporation O58 - SDL:2011/01/19 02:28:56 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\windows\System32\drivers\NETwNs64.sys [8080384] =>.Intel Corporation O58 - SDL:2009/07/14 10:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2013/03/01 10:49:12 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\windows\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2010/02/25 03:10:16 A . (.NEC Electronics Corporation - USB 3.0 Hub Driver.) -- C:\windows\System32\drivers\nusb3hub.sys [78336] =>.NEC Electronics Corporation O58 - SDL:2010/02/25 03:10:18 A . (.NEC Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\windows\System32\drivers\nusb3xhc.sys [181248] =>.NEC Electronics Corporation O58 - SDL:2011/03/11 15:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2011/03/11 15:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2014/04/05 12:04:36 A . (.VSO Software - low level access layer for CD/DVD/BD device.) -- C:\windows\System32\drivers\pcouffin.sys [82048] =>.VSO Software O58 - SDL:2015/01/15 15:16:18 A . (.VSO Software - Patin-Couffin low level access layer for CD.) -- C:\windows\System32\drivers\pcouffin64a.sys [54816] =>.VSO Software O58 - SDL:2009/06/23 10:06:38 A . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\windows\System32\drivers\PGEffect.sys [35008] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/14 10:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2007/02/16 09:56:51 A . (.Elaborate Bytes AG - Elby Delay Lower Filter Driver.) -- C:\windows\System32\drivers\RegKill.sys [14032] =>.Elaborate Bytes AG® O58 - SDL:2009/12/30 10:21:26 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\windows\System32\drivers\revoflt.sys [31800] =>.VS Revo Group® O58 - SDL:2009/11/28 14:53:00 A . (.REDC - RICOH SD/MMC Driver.) -- C:\windows\System32\drivers\risdpe64.sys [80384] =>.REDC O58 - SDL:2010/04/07 11:17:44 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [2337440] =>.Realtek Semiconductor Corp® O58 - SDL:2009/06/11 05:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2008/02/01 01:24:32 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\windows\System32\drivers\ser2pl64.sys [93184] =>.Prolific Technology Inc. O58 - SDL:2009/07/14 10:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2014/08/12 09:45:28 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\windows\System32\drivers\tap-tb-0901.sys [38656] =>.TunnelBear, Inc.® O58 - SDL:2009/07/31 13:22:04 A . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\windows\System32\drivers\tdcmdpst.sys [27784] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/18 05:01:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\windows\System32\drivers\tosporte.sys [54664] =>.TOSHIBA CORPORATION® O58 - SDL:2010/04/08 03:51:00 A . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\windows\System32\drivers\tosrfbd.sys [214248] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/20 02:59:00 A . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\windows\System32\drivers\tosrfbnp.sys [50664] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/29 13:02:00 A . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\windows\System32\drivers\tosrfcom.sys [81768] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/14 15:12:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\windows\System32\drivers\tosrfec.sys [19824] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/20 03:00:00 A . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\windows\System32\drivers\Tosrfhid.sys [94336] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/25 04:33:00 A . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\windows\System32\drivers\tosrfnds.sys [26472] =>.TOSHIBA CORPORATION® O58 - SDL:2010/03/24 10:39:00 A . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\windows\System32\drivers\TosRfSnd.sys [63488] =>.Toshiba Corporation O58 - SDL:2010/04/09 05:47:00 A . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\windows\System32\drivers\tosrfusb.sys [60536] =>.TOSHIBA CORPORATION® O58 - SDL:2015/04/06 15:32:30 A . (...) -- C:\windows\System32\drivers\TrueSight.sys [37624] =>.Adlice® O58 - SDL:2009/07/15 05:25:14 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\windows\System32\drivers\TVALZ.SYS [26840] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/20 12:15:22 A . (.TOSHIBA Corporation - TOSHIBA TVALZ Filter Driver for x64.) -- C:\windows\System32\drivers\TVALZFL.sys [14472] =>.TOSHIBA CORPORATION® O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\UimBus.sys [102664] =>.Paragon Software GmbH® O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\UimFIO.sys [556296] =>.Paragon Software GmbH® O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\uim_devim.sys [25992] =>.Paragon Software GmbH® O58 - SDL:2014/03/17 13:10:08 A . (...) -- C:\windows\System32\drivers\uim_im.sys [700680] =>.Paragon Software GmbH® O58 - SDL:2014/07/28 14:52:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2009/07/14 10:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 10:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2008/05/06 16:06:00 A . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\windows\System32\drivers\wdcsam64.sys [14464] =>.Western Digital Technologies ---\\ Last modified or created user files (6) - 10s O61 - LFC: 2016/04/16 16:42:46 A . (..) -- C:\Users\Serge\zoek.exe [1309184] O61 - LFC: 2016/04/17 17:56:39 A . (..) -- C:\Users\Serge\Downloads\AnyDVD & AnyDVD HD 6.6.3.4 Final + Key\setup\SetupAnyDVD6634.exe [5617728] O61 - LFC: 2016/04/16 16:42:46 A . (..) -- C:\Users\Serge\Desktop\zoek.exe [1309184] O61 - LFC: 2016/04/17 15:16:11 RA . (..) -- C:\Users\Serge\2016 -AnyDVD_HD_v6.6.4.7+Key Full install\SetupAnyDVD6647.exe [6042184] {0100000000011690704DC6} O61 - LFC: 2016/04/17 15:14:17 RA . (..) -- C:\Users\Serge\2016 - AnyDVD & AnyDVD HD 6.6.3.4 Final + Key - Trail Renew\setup\SetupAnyDVD6634.exe [5617728] {0100000000011690704DC6} O61 - LFC: 2016/04/16 16:42:46 A . (..) -- C:\Users\Serge\1 - A garder - Softs & PW\x - AntiSpies-Virus\zoek.exe [1309184] ---\\ File Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Start Menu Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Search Browser Infection (6) - 12s O69 - SBI: SearchScopes [HKCU] {012E1000-F331-11DB-8314-0800200C9A66} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {98CE369B-B29B-42A7-8DB7-4532AE9F6AD4} [DefaultScope] - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {FF41E915-D2CB-4C56-9B96-F42B2ED417FF} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {FF41E915-D2CB-4C56-9B96-F42B2ED417FF} - (Google) - http://www.google.com/ ---\\ Search Svchost Services (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\windows\System32\ikeext.dll [859648] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\windows\System32\termsrv.dll [683520] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\windows\system32\wuaueng.dll [2610688] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\windows\System32\appinfo.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\windows\system32\profsvc.dll [210432] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Additional Scan (O88) (1) - 0s ~ No malicious or unnecessary items found. ---\\ Summary of the elements found (1) - 0s ~ No malicious or unnecessary items found. ~ End of the scan, 27722 items in 00h01mn28s (1012)(0)