~ ZHPDiag v2017.9.2.149 By Nicolas Coolman (2017/09/02) ~ Run by NET1 (Administrator) (2017/09/03 12:22:55) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\NET1\Desktop\ZHPDiag.txt ~ Report: C:\Users\NET1\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Sans échec avec prise en charge du réseau (Fail-safe with network boot) Windows 7 Ultimate, 64-bit (Build 7600) =>.Microsoft Corporation ---\\ Internet Browsers (2) - 0s ~ GCIE: Google Chrome v58.0.3029.110 ~ MSIE: Internet Explorer v9.0.8112.16421 ---\\ Windows Product Information (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ System protection software (1) - 2s AVG Protection v17.4.3014 (Protection) ---\\ Surveillance software (1) - 3s ~ Adobe Reader 9.5.5 - Bulgarian (Surveillance) ---\\ Sharing software PeerToPeer (2) - 3s ~ µTorrent v3.2.0 (P2P) ~ µTorrent v3.3.2.30303 (P2P) ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 23 Stepping 6, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Sans échec avec prise en charge du réseau (Fail-safe with network boot) Total RAM: 4191.212 MB (73% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 42 GB (42%) free of 99 GB : OK =>.Disk Space ---\\ Connection to the system mode (3) - 0s ~ Computer Name: NET1-PC ~ User Name: NET1 ~ Logged in as Administrator ---\\ Enumeration of the disk units (2) - 0s ~ Drive C: has 42 GB free of 99 GB (System) ~ Drive D: has 142 GB free of 376 GB ---\\ State of the Windows Security Center (11) - 0s [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Search Generic System Files (25) - 10s [MD5.0862495E0C825893DB75EF44FAEA8E93] - 26/02/2011 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2870272] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.5A45FA344F4AD99D903F4B20E43B89EC] - 27/07/2012 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [1392128] =>.Microsoft Corporation [MD5.DA3E2A6FA9660CC75B471530CE88453A] - 28/10/2009 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [389632] =>.Microsoft Corporation [MD5.75341574F21E766748732BDF530C74BD] - 14/07/2009 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [231936] =>.Microsoft Corporation [MD5.E247E7DEB20C0CF0801A8AC39E9CE1DF] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [356352] =>.Microsoft Corporation [MD5.62390F4ACE9E2B63E3CA26B7F7497897] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\Syswow64\dnsapi.dll [269824] =>.Microsoft Corporation [MD5.DB9D6C6B2CD95A9CA414D045B627422E] - 28/12/2011 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [499200] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.83D2D75E1EFB81B3450C18131443F7DB] - 14/07/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.9C253CE7311CA60FC11C774692A13208] - 27/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation [MD5.0A49913402747A0B67DE940FB42CBDBB] - 14/07/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.040D62A9D8AD28922632137ACDD984F2] - 04/05/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [157696] =>.Microsoft Corporation [MD5.9162B273A44AB9DCE5B44362731D062A] - 14/07/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [259072] =>.Microsoft Corporation [MD5.356698A13C4630D5B31C37378D469196] - 14/07/2009 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1659984] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.87A6E852A22991580D6D39ADC4790463] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [130048] =>.Microsoft Corporation [MD5.9706B84DBABFC4B4CA46C5A82B14DFA3] - 14/07/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165376] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - 14/07/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [99840] =>.Microsoft Corporation [MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - 14/07/2009 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [294992] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (14) - 17s O23 - Service: Adobe Active File Monitor V12 (AdobeActiveFileMonitor12.0) . (.Adobe Systems Incorporated - Adobe Photoshop Elements 12.0 (component).) - C:\Program Files (x86)\Adobe\Elements 12 Organizer\PhotoshopElementsFileAgent.exe =>.Adobe Systems Incorporated® O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: AVG Antivirus (AVG Antivirus) . (.AVG Technologies CZ, s.r.o. - AVG Service.) - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o. - AVG Service Process.) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.® O23 - Service: DisplayLink Service (DisplayLinkService) . (.DisplayLink Corp. - DisplayLinkSerivce Application.) - C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe {52631D6E586DCD47FB576CEEB88CD113} =>.DisplayLink Corp. O23 - Service: GLOBUL Connection Manager. OUC (GLOBUL Connection Manager. RunOuc) . (...) - C:\Program Files (x86)\GLOBUL Connection Manager\UpdateDog\ouc.exe =>.HUAWEI Technologies Co., Ltd.® O23 - Service: Услуга на Google Актуализация (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HWDeviceService64.exe (HWDeviceService64.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService64.exe =>.HUAWEI Technologies Co., Ltd.® O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: NVIDIA GuardService (nvservice) . (.NVIDIA Corporation - NVIDIA Guard Service.) - C:\Windows\system32\nvservice.exe =>.NVIDIA Corporation O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 186.4.) - C:\Windows\system32\nvvsvc.exe =>.NVIDIA Corporation O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe (.not file.) O23 - Service: PnkBstrB (PnkBstrB) . (...) - C:\Windows\System32\PnkBstrB.exe (.not file.) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe =>.CyberLink® ---\\ Services not Microsoft (SR=Run, SS=Stop) (20) - 505s SS - Auto [25/09/2013] [ 181152] Adobe Active File Monitor V12 (AdobeActiveFileMonitor12.0) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Elements 12 Organizer\PhotoshopElementsFileAgent.exe =>.Adobe Systems Incorporated® SS - Auto [23/09/2012] [ 65192] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Auto [14/05/2017] [ 264432] AVG Antivirus (AVG Antivirus) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe =>.AVG Technologies CZ, s.r.o.® SS - Demand [14/05/2017] [ 7396872] avgbIDSAgent (avgbIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe =>.AVG Technologies CZ, s.r.o.® SS - Auto [31/05/2017] [ 1428656] AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.® SS - Demand [21/01/2014] [ 477960] BitRaider Mini-Support Service (BRSptSvc) . (.BitRaider, LLC.) - C:\ProgramData\BitRaider\BRSptSvc.exe =>.BitRaider® SS - Auto [18/08/2008] [ 733544] DisplayLink Service (DisplayLinkService) . (.DisplayLink Corp..) - C:\Program Files\DisplayLink Core Software\DisplayLinkService.exe {52631D6E586DCD47FB576CEEB88CD113} =>.DisplayLink Corp. SS - Auto [27/07/2012] [ 655712] GLOBUL Connection Manager. OUC (GLOBUL Connection Manager. RunOuc) . (...) - C:\Program Files (x86)\GLOBUL Connection Manager\UpdateDog\ouc.exe =>.HUAWEI Technologies Co., Ltd.® SS - Auto [28/08/2015] [ 144200] Услуга на Google Актуализация (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [28/08/2015] [ 144200] Услуга на Google Актуализация (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Auto [14/03/2011] [ 346976] HWDeviceService64.exe (HWDeviceService64.exe) . (.Copyright (C) 2008.) - C:\ProgramData\DatacardService\HWDeviceService64.exe =>.HUAWEI Technologies Co., Ltd.® SS - Demand [04/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe =>.Macrovision Corporation SS - Demand [01/10/2012] [ 359224] Logitech Bluetooth Service (LBTServ) . (.Logitech, Inc..) - C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe =>.Logitech® SR - Auto [21/08/2017] [ 6058960] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [29/06/2007] [ 800040] NBService (NBService) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe =>.Nero AG® SS - Demand [27/06/2007] [ 279848] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe =>.Nero AG® SS - Auto [04/02/2013] [ 192800] NVIDIA GuardService (nvservice) . (.NVIDIA Corporation.) - C:\Windows\system32\nvservice.exe =>.NVIDIA Corporation® SS - Auto [18/07/2009] [ 382496] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe =>.NVIDIA Corporation® SS - Auto [17/04/2009] [ 247152] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe =>.CyberLink® SS - Demand [31/03/2016] [ 1656600] VUAgent (VUAgent) . (.Sony Corporation.) - C:\Program Files\Sony\VAIO Update\vuagent.exe =>.Sony Corporation® ---\\ Task Planned Automatically (Register) (17) - 87s O40 - TASK: {0DBE3C95-E818-483B-A9E2-487D29A3A768} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Google Installer.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O40 - TASK: {1DD0AAE6-3B25-486E-B8AB-916CD8A0ED40} [64Bits][\{93E04AFC-FF5C-4101-8B84-31F821A96001}] - (...) -- c:\program files (x86)\mozilla firefox\firefox.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O40 - TASK: {2CF589E0-9EDA-4B17-89BB-D21D3BC7869F} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [4624152] =>.Piriform Ltd® O40 - TASK: {33C98015-3469-428C-9080-BC46CEE9518A} [64Bits][\Microsoft\Windows\Media Center\StartRecording] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan O40 - TASK: {3BE380AF-5572-46E8-8104-E402F641601F} [64Bits][\Microsoft\Windows\Media Center\RecordingRestart] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan O40 - TASK: {4A2EE873-885B-409D-A114-86993F0496A0} [64Bits][\{00D4F15A-7480-4CBC-B9B8-20BFDD373142}] - (...) -- C:\Program Files (x86)\Claro LTD\claro\1.8.3.10\GUninstaller.exe (.not file.) [0] (.Orphan.) =>PUP.Optional.ClaroSearch O40 - TASK: {4B8E1884-2CDB-46CD-937A-C3776EE5191C} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Google Installer.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O40 - TASK: {5940C011-27A1-4625-91FB-0F357D26CFB0} [64Bits][\Sony Corporation\VAIO Update\VAIO Update] - (.Sony Corporation - VAIO Update.) -- C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [1214232] =>.Sony Corporation® O40 - TASK: {70672D03-8783-4D57-B0ED-D5574B052462} [64Bits][\AdobeAAMUpdater-1.0-NET1-PC-NET1] - (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984] =>.Adobe Systems Incorporated® O40 - TASK: {7EB2C10F-98BC-4CC8-A737-C834E95F2512} [64Bits][\Microsoft\Windows\Media Center\mcupdate] - (...) -- C:\Windows\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan O40 - TASK: {8946A4CD-059C-42A3-A78B-14290E72C25D} [64Bits][\{D970188C-77E1-4648-B290-BE350B718D07}] - (...) -- C:\Users\NET1\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K7LN5DEV\RIDMSC-15669200-US.EXE (.not file.) [0] (.Orphan.) =>.SUP.Orphan O40 - TASK: {936F5149-BC06-4957-8F6B-B4A75D22D9A5} [64Bits][\{8329C2B8-BF2F-402A-AD0A-23C5513783EC}] - (...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O40 - TASK: {9F9D896E-546F-4D33-962D-6EEE76E46FB3} [64Bits][\AVG EUpdate Task] - (...) -- avgsetupx.exe [0] O40 - TASK: {BE3486A2-A857-4246-B3D4-5F31359E9691} [64Bits][\{E4F3E25E-B35B-461E-B279-B7E3FB8E0675}] - (...) -- C:\Users\NET1\Downloads\out_xf.exe [46827] O40 - TASK: {BFD838E9-3B15-4109-A549-B1BA48B2A553} [64Bits][\Sony Corporation\VAIO Update\VAIO Update Self Repair] - (.Sony Corporation - VUSR.) -- C:\Program Files\Sony\VAIO Update\VUSR.exe [3152152] =>.Sony Corporation® O40 - TASK: {D2AB85AA-4770-4FD1-AF49-885DB34436C2} [64Bits][\{12CC3C38-A3A6-45D3-84D2-AF2274011541}] - (...) -- C:\Program Files (x86)\Skype\Phone\Skype.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O40 - TASK: {F2D7F7EB-18FA-41F1-B1EB-034CA9FB1DF1} [64Bits][\Antivirus Emergency Update] - (.AVG Technologies CZ, s.r.o. - AVG Emergency Update.) -- C:\Program Files (x86)\AVG\Antivirus\AvEmUpdate.exe [2376072] =>.AVG Technologies CZ, s.r.o.® ---\\ Auto loading programs from Registry and folders (15) - 8s O4 - HKLM\..\Run: [EvtMgr6] . (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe =>.Logitech® O4 - HKLM\..\Run: [NvCplDaemon] -- C:\Windows\system32\NvCpl.dll (.not file.) O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [AvgUi] . (.AVG Technologies CZ, s.r.o. - AVG Ui (Re)Starter.) -- C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe =>.AVG Technologies CZ, s.r.o.® O4 - HKLM\..\Run: [AVGUI.exe] . (.AVG Technologies CZ, s.r.o. - AvLaunch component.) -- C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe =>.AVG Technologies CZ, s.r.o.® O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Users\Sashka\Downloads\Sky38i.exe =>.Skype Technologies S.A. O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe =>.Nero AG® O4 - HKLM\..\Wow6432Node\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe =>.Microsoft Corporation® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1113787428-1424384801-3093382837-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Users\Sashka\Downloads\Sky38i.exe =>.Skype Technologies S.A. O4 - HKUS\S-1-5-21-1113787428-1424384801-3093382837-1000\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe =>.Nero AG® ---\\ Google Chrome, Start,Search,Extensions (12) - 3s G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://consent.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.googleapis.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://id.google.fr =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google-analytics.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.nicolascoolman.com =>.Nicolas Coolman G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (20) - 53s P2 - EXT FILE: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated® P2 - EXT FILE: (.Adobe Inc. - Acrobate Reader.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA =>.Adobe Inc. P2 - EXT FILE: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin.dll =>.Apple Inc. P2 - EXT FILE: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin2.dll =>.Apple Inc. P2 - EXT FILE: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin3.dll =>.Apple Inc. P2 - EXT FILE: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin4.dll =>.Apple Inc. P2 - EXT FILE: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin5.dll =>.Apple Inc. P2 - EXT FILE: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin6.dll =>.Apple Inc. P2 - EXT FILE: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin7.dll =>.Apple Inc. P2 - EXT FILE: (.Nullsoft, Inc. - Winamp Application Detector.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npwachk.dll =>.Nullsoft, Inc. P2 - EXT FILE: (.Apple Inc..) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class =>.Apple Inc. P2 - EXT FILE: (.Microsoft Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\WMP Firefox Plugin License.rtf =>.Microsoft Corporation P2 - EXT FILE: (.Microsoft Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\WMP Firefox Plugin RelNotes.txt =>.Microsoft Corporation P2 - EXT FILE: (.AVG Web TuneUp - AVG Web TuneUp optimizes your online b.) -- C:\Users\NET1\AppData\Roaming\Mozilla\Firefox\Profiles\cjc3j2f3.default\extensions\avg@wtu3.xpi =>.AVG Web TuneUp P2 - EXT FILE: (.New Tab - .) -- C:\Users\NET1\AppData\Roaming\Mozilla\Firefox\Profiles\cjc3j2f3.default\extensions\{01145754-47b0-4c4e-8e9d-79a40f737d10}.xpi P2 - EXT FILE: (.Search Tool for Mozilla Firefox - Provides Yahoo Search in Mozilla Firef.) -- C:\Users\NET1\AppData\Roaming\Mozilla\Firefox\Profiles\cjc3j2f3.default\extensions\{74904424-ec46-4d61-bd52-8b528a96f6d1}.xpi P2 - EXT FILE: (.Adblock Plus - Ads were yesterday!.) -- C:\Users\NET1\AppData\Roaming\Mozilla\Firefox\Profiles\cjc3j2f3.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Adblock Plus P2 - EXT FILE: (...) -- C:\Users\NET1\AppData\Roaming\Mozilla\Firefox\Profiles\cjc3j2f3.default\searchplugins\yahoo-fr.xml P2 - EXT FILE: (.AVG Software.) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wtu-secure-search.xml =>.AVG Software P2 - EXT: (.20-20 Technologies - Visualisateur 3D de 20-20.) -- C:\Users\NET1\AppData\Roaming\Mozilla\Firefox\Profiles\cjc3j2f3.default\extensions\2020Player_IKEA@2020Technologies.com =>.20-20 Technologies ---\\ Internet Explorer Extensions, Start, Search (17) - 3s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (9.00.8112.16421 (WIN7_IE9_RTM.110308-0330)) -- C:\Windows\SysWOW64\ieframe.dll =>.Microsoft Corporation ---\\ Internet Explorer, Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 1s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Global shortcuts Startup (111) - 138s O4 - GS\Desktop [Administrator]: Microsoft Office Excel 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrator]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrator]: Peugeot DocBackup.lnk . (...) C:\Program Files (x86)\DocBackupAP\start.exe O4 - GS\Desktop [Administrator]: Peugeot SEDRE Backup.lnk . (...) C:\Program Files (x86)\SEDREAP\start.exe O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Skype.lnk . (...) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Startup [Administrator]: OpenOffice.org 3.4.1.lnk . (...) C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe O4 - GS\Programs [Administrator]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [Guest]: Microsoft Office Excel 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Guest]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Guest]: Peugeot DocBackup.lnk . (...) C:\Program Files (x86)\DocBackupAP\start.exe O4 - GS\Desktop [Guest]: Peugeot SEDRE Backup.lnk . (...) C:\Program Files (x86)\SEDREAP\start.exe O4 - GS\Desktop [Guest]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Guest]: Skype.lnk . (...) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Startup [Guest]: OpenOffice.org 3.4.1.lnk . (...) C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe O4 - GS\Programs [Guest]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [NET1]: Microsoft Office Excel 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [NET1]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [NET1]: Peugeot DocBackup.lnk . (...) C:\Program Files (x86)\DocBackupAP\start.exe O4 - GS\Desktop [NET1]: Peugeot SEDRE Backup.lnk . (...) C:\Program Files (x86)\SEDREAP\start.exe O4 - GS\Desktop [NET1]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [NET1]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [NET1]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\sendTo [NET1]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [NET1]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [NET1]: Skype.lnk . (...) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: O4 - GS\TaskBar [NET1]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [NET1]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Startup [NET1]: OpenOffice.org 3.4.1.lnk . (...) C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe O4 - GS\Programs [NET1]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [NET1]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [Sashka]: Microsoft Office Excel 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Sashka]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Sashka]: Peugeot DocBackup.lnk . (...) C:\Program Files (x86)\DocBackupAP\start.exe O4 - GS\Desktop [Sashka]: Peugeot SEDRE Backup.lnk . (...) C:\Program Files (x86)\SEDREAP\start.exe O4 - GS\Desktop [Sashka]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Sashka]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\NET1\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Sashka]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\sendTo [Sashka]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Sashka]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Sashka]: Skype.lnk . (...) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: O4 - GS\TaskBar [Sashka]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Sashka]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Startup [Sashka]: OpenOffice.org 3.4.1.lnk . (...) C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe O4 - GS\Programs [Sashka]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Sashka]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Adobe Acrobat XI Pro.lnk . (.Adobe Systems Incorporated - Adobe Acrobat.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrobat.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Adobe Reader 9.lnk . (.Adobe Systems Incorporated - Adobe Reader 9.5.) C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: AVG.lnk . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe /avg.open_ui =>.AVG Technologies CZ, s.r.o.® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: programa za otvarqne myzika.lnk . (.Nullsoft, Inc. - Winamp.) C:\Program Files (x86)\Winamp\winamp.exe =>.Winamp® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (...) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLan Team O4 - GS\Programs [Public]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Windows Command Processor.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Private Character Editor.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Windows Calculator.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Display Switch.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel Accessory.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Windows Mobility Center.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Windows Sound Recorder.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Sticky Notes.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows host process (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Microsoft® Disk Defragmenter.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Disk Space Cleanup Manager for Windows.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Resource and Performance Monitor.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - System Information.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Microsoft® Windows System Restore.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Windows Easy Transfer Post Migration Applic.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Windows Easy Transfer Application.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe Acrobat Distiller XI.lnk . (.Adobe Systems Incorporated. - Acrobat Distiller.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrodist.exe =>.Adobe Systems, Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Acrobat XI Pro.lnk . (...) C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-000000000006}\_SC_Acrobat.ico O4 - GS\ProgramsCommon [Public]: Adobe Download Assistant.lnk . (...) C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe O4 - GS\ProgramsCommon [Public]: Adobe FormsCentral.lnk . (...) C:\Program Files (x86)\Adobe\Acrobat 11.0\FormsCentral\FormsCentralForAcrobat.exe =>.Adobe Systems, Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop Elements 12.lnk . (.Adobe Systems Incorporated - Adobe Photoshop Elements 12.) C:\Program Files (x86)\Adobe\Elements 12 Organizer\Photoshop Elements 12.0.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1026-7B44-A95000000001}\SC_Reader.ico =>.Adobe Inc. O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Windows Desktop Gadgets.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: VAIO Update.lnk . (.Sony Corporation - .) C:\Program Files (x86)\Sony\VAIO Update\VAIOUpdt.exe =>.Sony Corporation O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS Viewer.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation ---\\ Lop.com/Domain Hijackers (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{1919B7F5-A30A-4F19-A4E7-0AA588002B59}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{9D7A999B-726C-4BBB-A492-C9910B3609B3}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{9D7A999B-726C-4BBB-A492-C9910B3609B3}: DhcpDomain = lan =>.Local Domain ---\\ Extra protocols (24) - 33s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: grooveLocalGWS [64Bits] - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation® O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype-ie-addon-data [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype add-on for IE.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll =>.Skype Technologies SA® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (80) - 54s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKLM][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 7-Zip 9.22beta - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov O42 - Logiciel: Adobe Acrobat XI Pro - (.Adobe Systems.) [HKLM][64Bits] -- {AC76BA86-1033-FFFF-7760-000000000006} =>.Adobe Systems O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {77D28FF5-242F-488A-8215-937D6A4D69E0} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E68EADA6-63A4-F6D3-FE12-968B879F7AD6} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Photoshop Elements 12 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {777B751F-C904-4BD7-8DFF-81F97A3C0BC5} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Photoshop Elements 12 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Photoshop Elements 12 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Reader 9.5.5 - Bulgarian - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1026-7B44-A95000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {EE6097DD-05F4-4178-9719-D3170BF098E8} =>.Apple Inc. O42 - Logiciel: AVG - (.AVG Technologies.) [HKLM][64Bits] -- {67975182-2130-493C-A58F-7C2604B8852A} =>.AVG Technologies O42 - Logiciel: AVG Protection - (.AVG Technologies.) [HKLM][64Bits] -- AVG Antivirus =>.AVG Technologies CZ, s.r.o.® O42 - Logiciel: AVG Web TuneUp - (.AVG Technologies.) [HKLM][64Bits] -- AVG Web TuneUp =>.AVG Technologies O42 - Logiciel: BitRaider Web Client - (.BitRaider, LLC.) [HKLM][64Bits] -- BitRaider Web Client =>.Electronic Arts® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink® O42 - Logiciel: CyberLink PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink® O42 - Logiciel: DAEMON Tools Lite - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.DT Soft Ltd® O42 - Logiciel: Détection de l'application Winamp - (.Nullsoft, Inc.) [HKCU][64Bits] -- Winamp Detect =>.Nullsoft, Inc O42 - Logiciel: DisplayLink Core Software - (.DisplayLink Corp..) [HKLM][64Bits] -- {E1CD90F5-0972-45C7-A450-7ACF9EF6FB28} =>.DisplayLink Corp. O42 - Logiciel: DocBackupAP - (..) [HKLM][64Bits] -- DocBackupAP O42 - Logiciel: Elements 12 Organizer - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {9D80A7B7-DC01-485D-AE93-710D559B5C56} =>.Adobe Systems Incorporated O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} =>.Logitech, Inc. O42 - Logiciel: FMW 1 - (.AVG Technologies.) [HKLM][64Bits] -- {AF4C2E26-9BE2-4813-B1A4-9CA0717374D3} =>.AVG Technologies O42 - Logiciel: GLOBUL Connection Manager - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- GLOBUL Connection Manager =>.Huawei Technologies Co.,Ltd O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {F6430171-B86B-4639-839E-374913E7911D} =>.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Intel Android Device USB driver - (.Intel.) [HKLM][64Bits] -- Intel Android Device USB driver =>.Intel O42 - Logiciel: Java 7 Update 60 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF} =>.Oracle O42 - Logiciel: Java Auto Updater - (.Oracle, Inc..) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle, Inc. O42 - Logiciel: Logitech SetPoint 6.51 - (.Logitech.) [HKLM][64Bits] -- sp6 =>.Logitech® O42 - Logiciel: Malwarebytes version 3.2.2.2018 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: Nero 7 Ultra Edition - (.Nero AG.) [HKLM][64Bits] -- {CF097717-F174-4144-954A-FBC4BF301036} =>.Nero AG O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG O42 - Logiciel: Nikon Message Center 2 - (.Nikon.) [HKLM][64Bits] -- {B014EE44-9197-4513-9613-71E6EB1B514E} =>.Nikon O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Guard Service 1.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.GuardService =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65} =>.NVIDIA Corporation O42 - Logiciel: OpenOffice.org 3.4.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D} =>.Apache Software Foundation O42 - Logiciel: Photo Mechanic 5 - (.Camera Bits, Inc.) [HKLM][64Bits] -- {DE924CF0-B8BB-42BA-BDA0-14535F79DF3F} {4B81BDCFA69622B8217864631EF14DC4} =>.Camera Bits, Inc O42 - Logiciel: Picture Control Utility - (.Nikon.) [HKLM][64Bits] -- {87441A59-5E64-4096-A170-14EFE67200C3} =>.Nikon O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {E8C64028-08E5-4BF0-B1C0-DBAAC6A77DF1} =>.CyberLink Corp. O42 - Logiciel: PSE12 STI Installer - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {11F9A376-342F-4297-82DA-1F6EA8ED4B6B} =>.Adobe Systems Incorporated® O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc =>.Even Balance, Inc.® O42 - Logiciel: Qualcomm USB Drivers For Windows - (.QUALCOMM Incorporated.) [HKLM][64Bits] -- {D9FB7F91-9687-4B09-894D-072903CADEA4} =>.QUALCOMM Incorporated O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {57752979-A1C9-4C02-856B-FBB27AC4E02C} =>Riskware.QuickTime O42 - Logiciel: SEDREAP - (..) [HKLM][64Bits] -- SEDREAP O42 - Logiciel: Setting Utility Series - (.Sony Corporation.) [HKLM][64Bits] -- {A7DA438C-2E43-4C20-BFDA-C1F4A6208558} =>.Sony Corporation® O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B} =>.Microsoft Corporation O42 - Logiciel: Skype Toolbars - (.Skype Technologies S.A..) [HKLM][64Bits] -- {981029E0-7FC9-4CF3-AB39-6F133621921A} =>.Skype Technologies S.A. O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {CD62BCB9-02D2-443F-AC7A-443377DA5B38} =>.Skype Technologies S.A. O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F} =>.SmartSound Software Inc. O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} =>.SmartSound Software, Inc.® O42 - Logiciel: Star Wars The Old Republic - (.Bioware/EA.) [HKLM][64Bits] -- swtor_swtor =>.Electronic Arts® O42 - Logiciel: Star Wars: The Old Republic - (.Electronic Arts, Inc..) [HKLM][64Bits] -- {3B11D799-48E0-48ED-BFD7-EA655676D8BB} =>.Electronic Arts® O42 - Logiciel: Texas Instruments PCIxx21/x515/xx12 drivers. - (.Texas Instruments Inc..) [HKLM][64Bits] -- InstallShield_{607398CF-354B-4E21-B1BC-549424BFD04C} =>.Texas Instruments Inc. O42 - Logiciel: TIPCI - (.Texas Instruments Inc..) [HKLM][64Bits] -- {607398CF-354B-4E21-B1BC-549424BFD04C} =>.Texas Instruments Inc. O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft Massive® O42 - Logiciel: VAIO Power Management - (.Sony Corporation.) [HKLM][64Bits] -- {802889F8-6AF5-45A5-9764-CA5B999E50FC} =>.Sony Corporation O42 - Logiciel: VAIO Update - (.Sony Corporation.) [HKLM][64Bits] -- {9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2} =>.Sony Corporation® O42 - Logiciel: ViewNX 2 - (.Nikon.) [HKLM][64Bits] -- {DDD62492-32A7-412B-8AF1-2CF032AD42E3} =>.Nikon O42 - Logiciel: Visual Studio 2010 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {21B133D6-5979-47F0-BE1C-F6A6B304693F} =>.AVG Technologies O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o. O42 - Logiciel: VLC media player 2.0.3 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: VUx64 - (.Sony Corporation.) [HKLM][64Bits] -- {A0A2BE14-D3FF-41C8-9545-4B130E3FE9A4} =>.Sony Corporation O42 - Logiciel: VUx86 - (.Sony Corporation.) [HKLM][64Bits] -- {D04F1D22-4A47-42C6-A2B9-094A7B844D9B} =>.Sony Corporation O42 - Logiciel: Winamp - (.Nullsoft, Inc.) [HKLM][64Bits] -- Winamp =>.Nullsoft, Inc O42 - Logiciel: Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/1 - (.Google, Inc..) [HKLM][64Bits] -- 256CD808BFEEBAFFBD9071CA2C9D2D633E524FC9 =>.Microsoft Windows® O42 - Logiciel: Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/2 - (.Google, Inc..) [HKLM][64Bits] -- 092555911492C6959D2596D612F52DCA71881CA2 =>.Google, Inc. O42 - Logiciel: Windows Driver Package - Qualcomm (qcusbnet) Net (07/29/2011 1.0.6.5) - (.Qualcomm.) [HKLM][64Bits] -- 2F53F0A0FCEDAFD3CCCB1439CAAE0738B4BAFBFB =>.Microsoft Windows® O42 - Logiciel: Windows Driver Package - Qualcomm Incorporated (qcusbser) Modem (07/29/201 - (.Qualcomm Incorporated.) [HKLM][64Bits] -- 6BF6A4AE61C76DD6CBA31ACB5852032BA320D4E4 =>.Microsoft Windows® O42 - Logiciel: Windows Driver Package - Qualcomm Incorporated (qcusbser) Ports (07/29/201 - (.Qualcomm Incorporated.) [HKLM][64Bits] -- 05D0DACD8686BF30FA10AEAD80D777AEDC6B2562 =>.Microsoft Windows® O42 - Logiciel: Windows XP Mode - (.Microsoft Corporation.) [HKLM][64Bits] -- {1374CC63-B520-4f3f-98E8-E9020BF01CFF} =>.Microsoft Corporation O42 - Logiciel: WinRAR 4.01 (64-битова версия) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH ---\\ HKCU & HKLM Software Keys (110) - 54s HKLM\SOFTWARE\Wow6432Node\7-Zip =>.Igor Pavlov HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Ahead =>.Ahead HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. =>.Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Wow6432Node\Audible =>.Audible.com HKLM\SOFTWARE\Wow6432Node\Avg =>.AVG Software HKLM\SOFTWARE\Wow6432Node\AVG Web TuneUp =>.AVG Web TuneUp HKLM\SOFTWARE\Wow6432Node\BackupAP HKLM\SOFTWARE\Wow6432Node\BioWare =>.BioWare HKLM\SOFTWARE\Wow6432Node\Bunndle =>.Unknown HKLM\SOFTWARE\Wow6432Node\Camera Bits, Inc =>.Camera Bits, Inc HKLM\SOFTWARE\Wow6432Node\CDDB =>.Cddb Software HKLM\SOFTWARE\Wow6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Wow6432Node\DocBackupAP HKLM\SOFTWARE\Wow6432Node\DT Soft =>.DT Soft Ltd HKLM\SOFTWARE\Wow6432Node\ESET =>.ESET HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\Huawei technologies =>.Huawei Technologies HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Wow6432Node\Kaydara =>.Kaydara HKLM\SOFTWARE\Wow6432Node\LOGITECH =>.Logitech HKLM\SOFTWARE\Wow6432Node\LucasArts =>.LucasArts HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero =>.Ahead Corporation HKLM\SOFTWARE\Wow6432Node\Nikon =>.Nikon HKLM\SOFTWARE\Wow6432Node\Nullsoft =>.Nullsoft HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\OpenOffice.org =>.SourceForge HKLM\SOFTWARE\Wow6432Node\SDR HKLM\SOFTWARE\Wow6432Node\SEDREAP HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\SmartSound Software =>.SmartSound Software HKLM\SOFTWARE\Wow6432Node\Sonic =>.Sonic HKLM\SOFTWARE\Wow6432Node\Sony Corporation =>.Sony Corporation HKLM\SOFTWARE\Wow6432Node\Tuner HKLM\SOFTWARE\Wow6432Node\Ubisoft =>.Ubisoft HKLM\SOFTWARE\Wow6432Node\User Pictures HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Wow6432Node\Vocals HKLM\SOFTWARE\Wow6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\XiaoMi =>.XiaoMi Tech HKLM\SOFTWARE\Wow6432Node\ZDB HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\4A-Games HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Ahead =>.Ahead HKCU\SOFTWARE\Alcor =>.Alcor HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Avg =>.AVG Software HKCU\SOFTWARE\Avg Secure Update =>.AVG Software HKCU\SOFTWARE\AVG Web TuneUp =>.AVG Web TuneUp HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Camera Bits, Inc. HKCU\SOFTWARE\CDDB =>.Cddb Software HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\DT Soft =>.DT Soft Ltd HKCU\SOFTWARE\ej-technologies =>.ej-technologies HKCU\SOFTWARE\EMU =>.Games Software HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\FLT =>.FLT Software HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Leadertech =>.Leadertech Systems HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\LucasArts =>.LucasArts HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\MainConcept =>.MainConcept AG HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Nikon =>.Nikon HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OpenOffice.org =>.SourceForge HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\Protector Suite QL =>.UPEK Inc HKCU\SOFTWARE\SDR HKCU\SOFTWARE\SecuROM =>.SecuROM HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\Softland =>.Softland HKCU\SOFTWARE\Sony Corporation =>.Sony Corporation HKCU\SOFTWARE\SystemConfiguration HKCU\SOFTWARE\Templates HKCU\SOFTWARE\Track Settings HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\VirtualDJ =>.Atomix Production HKCU\SOFTWARE\Winamp =>.Nullsoft Inc. HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZDB HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft ---\\ Contents of the Common Files folders (264) - 131s O43 - CFD: 13/07/2014 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 01/09/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 18/05/2013 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation O43 - CFD: 15/02/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 12/07/2014 - [] D -- C:\Program Files\DisplayLink Core Software {52631D6E586DCD47FB576CEEB88CD113} O43 - CFD: 19/07/2014 - [] D -- C:\Program Files\DocBackupAP O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 27/07/2012 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 13/12/2012 - [] D -- C:\Program Files\Logitech =>.Logitech® O43 - CFD: 01/09/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 05/12/2013 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 13/07/2014 - [] D -- C:\Program Files\SEDREAP O43 - CFD: 09/03/2013 - [] D -- C:\Program Files\Softland =>.Softland S.R.L.® O43 - CFD: 30/10/2016 - [] D -- C:\Program Files\Sony =>.Sony Corporation® O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 12/07/2014 - [] D -- C:\Program Files\Windows XP Mode =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 02/10/2013 - [] D -- C:\Program Files (x86)\7-Zip =>.Igor Pavlov O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Adobe Download Assistant =>.Adobe Inc. O43 - CFD: 04/01/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies =>.AGEIA Technologies O43 - CFD: 01/04/2017 - [] D -- C:\Program Files (x86)\AVG =>.AVG Software O43 - CFD: 15/08/2013 - [] D -- C:\Program Files (x86)\Camera Bits O43 - CFD: 01/09/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 15/02/2017 - [] D -- C:\Program Files (x86)\Cyberlink =>.CyberLink Corporation O43 - CFD: 11/12/2012 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 14/07/2014 - [] D -- C:\Program Files (x86)\DocBackupJRE O43 - CFD: 09/08/2014 - [] D -- C:\Program Files (x86)\Franzis O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\GLOBUL Connection Manager =>.HUAWEI Technologies Co., Ltd.® O43 - CFD: 23/02/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 15/02/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 15/02/2017 - [] D -- C:\Program Files (x86)\Intel Android Device USB driver =>.Intel Corporation O43 - CFD: 15/08/2013 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\Program Files (x86)\iStar O43 - CFD: 12/07/2014 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 14/02/2017 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 14/02/2017 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 09/08/2014 - [] D -- C:\Program Files (x86)\Nero =>.Ahead Corporation O43 - CFD: 15/02/2017 - [] D -- C:\Program Files (x86)\Nikon =>.Nikon O43 - CFD: 25/12/2012 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 02/04/2013 - [] D -- C:\Program Files (x86)\OpenOffice.org 3 =>.SourceForge O43 - CFD: 15/02/2017 - [] D -- C:\Program Files (x86)\QUALCOMM Incorporated =>.Qualcomm Atheros O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 29/03/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 18/05/2013 - [] D -- C:\Program Files (x86)\SmartSound Software =>.SmartSound Software Inc O43 - CFD: 12/07/2014 - [] D -- C:\Program Files (x86)\Sony =>.Sony Corporation® O43 - CFD: 30/01/2015 - [] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 11/09/2012 - [] D -- C:\Program Files (x86)\uTorrent =>.BitTorrent Inc® O43 - CFD: 07/09/2012 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 30/06/2013 - [] D -- C:\Program Files (x86)\Winamp =>.Winamp O43 - CFD: 30/06/2013 - [] D -- C:\Program Files (x86)\Winamp Detect =>.Nullsoft Inc. O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 12/07/2014 - [] D -- C:\Program Files (x86)\Windows Virtual PC =>.Microsoft Corporation O43 - CFD: 02/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 27/07/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 14/10/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 30/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG =>.AVG Software O43 - CFD: 28/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen =>.AVG O43 - CFD: 13/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 04/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DocBackupAP O43 - CFD: 21/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA =>.Electronic Arts, Inc. O43 - CFD: 04/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GLOBUL Connection Manager O43 - CFD: 23/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Android Device USB driver =>.Intel Corporation O43 - CFD: 12/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 15/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon =>.Nikon O43 - CFD: 13/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech =>.Logitech O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 01/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 27/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 09/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Ultra Edition =>.Ahead Corporation O43 - CFD: 15/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2 O43 - CFD: 02/04/2013 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1 =>.SourceForge O43 - CFD: 15/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Mechanic 5 O43 - CFD: 13/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEDREAP O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 07/09/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 15/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX 2 =>.Nikon O43 - CFD: 30/01/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ =>.Atomix Production O43 - CFD: 30/06/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp =>.Winamp O43 - CFD: 12/07/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Virtual PC =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/08/2014 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 09/08/2014 - [] D -- C:\ProgramData\Ahead =>.Ahead Software O43 - CFD: 15/08/2013 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 15/08/2013 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 27/07/2012 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 02/04/2017 - [] D -- C:\ProgramData\Avg =>.AVG Software O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\AVG2013 =>.AVG Software O43 - CFD: 30/01/2015 - [] D -- C:\ProgramData\BitRaider =>.BitRaider O43 - CFD: 15/08/2013 - [] D -- C:\ProgramData\Camera Bits, Inc =>.Camera Bits, Inc O43 - CFD: 21/05/2013 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation O43 - CFD: 21/05/2013 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 25/12/2012 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 27/07/2012 - [] D -- C:\ProgramData\DatacardService =>.Entriq, Inc. O43 - CFD: 27/07/2012 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 15/08/2013 - [] D -- C:\ProgramData\EnterNHelp =>.Nikon O43 - CFD: 18/05/2013 - [] D -- C:\ProgramData\eSellerate =>.eSellerate O43 - CFD: 27/07/2012 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 14/09/2014 - [] D -- C:\ProgramData\firebird =>.Legitimate O43 - CFD: 27/07/2012 - [] D -- C:\ProgramData\GLOBUL Connection Manager O43 - CFD: 13/12/2012 - [] D -- C:\ProgramData\Logishrd =>.Logitech Inc. O43 - CFD: 01/09/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 01/04/2017 - [] D -- C:\ProgramData\MFAData =>.AVG Software O43 - CFD: 07/09/2012 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 09/09/2012 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 09/08/2014 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation O43 - CFD: 20/08/2013 - [] D -- C:\ProgramData\Nikon =>.Nikon O43 - CFD: 05/12/2013 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 12/07/2014 - [0] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 11/12/2012 - [] D -- C:\ProgramData\Orbit =>.Orbit O43 - CFD: 04/01/2015 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 20/08/2014 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 30/11/2013 - [] D -- C:\ProgramData\RELOADED O43 - CFD: 29/03/2017 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 18/05/2013 - [] D -- C:\ProgramData\SmartSound Software Inc =>.SmartSound Software Inc O43 - CFD: 30/10/2016 - [] D -- C:\ProgramData\Sony Corporation =>.Sony Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 22/12/2013 - [] D -- C:\ProgramData\Steam =>.Steam Games O43 - CFD: 05/12/2013 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 18/05/2013 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 15/08/2013 - [] D -- C:\ProgramData\Ultima_T15 =>.Nikon O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc. O43 - CFD: 09/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Ahead =>.Ahead Software O43 - CFD: 15/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc. O43 - CFD: 21/01/2014 - [] D -- C:\Program Files (x86)\Common Files\BioWare =>.BioWare O43 - CFD: 07/09/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 30/01/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 12/07/2014 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 13/12/2012 - [] D -- C:\Program Files (x86)\Common Files\LogiShrd =>.Logitech Inc. O43 - CFD: 11/12/2012 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 15/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Nikon =>.Nikon O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine =>.Sonic Solutions O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 20/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared =>.Sonic O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 31/08/2014 - [] D -- C:\Users\NET1\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 09/08/2014 - [] D -- C:\Users\NET1\AppData\Roaming\Ahead =>.Ahead Software O43 - CFD: 24/09/2014 - [0] D -- C:\Users\NET1\AppData\Roaming\ArchiFacile =>.Jérôme Saynes O43 - CFD: 02/09/2017 - [] D -- C:\Users\NET1\AppData\Roaming\AVG =>.AVG Software O43 - CFD: 15/08/2013 - [] D -- C:\Users\NET1\AppData\Roaming\Camera Bits, Inc =>.Camera Bits, Inc O43 - CFD: 20/08/2014 - [] D -- C:\Users\NET1\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Inc. O43 - CFD: 20/08/2014 - [] D -- C:\Users\NET1\AppData\Roaming\com.adobe.formscentral.FormsCentralForAcrobat =>.Adobe Inc. O43 - CFD: 18/05/2013 - [] D -- C:\Users\NET1\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 04/02/2017 - [] D -- C:\Users\NET1\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 15/10/2013 - [] D -- C:\Users\NET1\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 27/07/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 13/12/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Leadertech =>.Leadertech Systems O43 - CFD: 13/12/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Logishrd =>.Logitech Inc. O43 - CFD: 13/12/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Logitech =>.Logitech O43 - CFD: 27/07/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 14/07/2009 - [0] D -- C:\Users\NET1\AppData\Roaming\Media Center Programs =>.Microsoft Corporation O43 - CFD: 20/08/2014 - [] SD -- C:\Users\NET1\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 09/09/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 15/08/2013 - [] D -- C:\Users\NET1\AppData\Roaming\Nikon =>.Nikon O43 - CFD: 20/08/2014 - [] D -- C:\Users\NET1\AppData\Roaming\No Company Name =>.No Company Name O43 - CFD: 02/04/2013 - [] D -- C:\Users\NET1\AppData\Roaming\OpenOffice.org =>.OpenOffice.org O43 - CFD: 27/07/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Protector Suite =>.UPEK Inc O43 - CFD: 29/03/2017 - [] D -- C:\Users\NET1\AppData\Roaming\Skype =>.Skype O43 - CFD: 09/03/2013 - [] D -- C:\Users\NET1\AppData\Roaming\Softland =>.Softland O43 - CFD: 21/05/2013 - [] D -- C:\Users\NET1\AppData\Roaming\TuneUp Software =>.TuneUp Software O43 - CFD: 04/02/2017 - [] D -- C:\Users\NET1\AppData\Roaming\uTorrent O43 - CFD: 18/01/2015 - [] D -- C:\Users\NET1\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 09/08/2014 - [] D -- C:\Users\NET1\AppData\Roaming\Winamp =>.Winamp O43 - CFD: 27/07/2012 - [] D -- C:\Users\NET1\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 03/09/2017 - [] D -- C:\Users\NET1\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 04/01/2015 - [] D -- C:\Users\NET1\AppData\Local\4A Games =>.4A Games O43 - CFD: 02/09/2017 - [] D -- C:\Users\NET1\AppData\Local\Adobe =>.Adobe O43 - CFD: 09/08/2014 - [] D -- C:\Users\NET1\AppData\Local\Ahead =>.Ahead Software O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\NET1\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 04/02/2017 - [] D -- C:\Users\NET1\AppData\Local\Avg =>.AVG Software O43 - CFD: 08/10/2013 - [] D -- C:\Users\NET1\AppData\Local\avgchrome O43 - CFD: 14/12/2016 - [] D -- C:\Users\NET1\AppData\Local\CEF =>.CEF O43 - CFD: 26/01/2015 - [] D -- C:\Users\NET1\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 15/08/2013 - [] D -- C:\Users\NET1\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 26/10/2013 - [] D -- C:\Users\NET1\AppData\Local\FLT =>.FLT Software O43 - CFD: 01/09/2017 - [] D -- C:\Users\NET1\AppData\Local\Google =>.Google O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\NET1\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 13/12/2012 - [] D -- C:\Users\NET1\AppData\Local\Logishrd =>.Logitech Inc. O43 - CFD: 12/09/2012 - [] D -- C:\Users\NET1\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 21/05/2013 - [] D -- C:\Users\NET1\AppData\Local\MFAData =>.AVG Software O43 - CFD: 04/01/2015 - [] D -- C:\Users\NET1\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 21/02/2014 - [] D -- C:\Users\NET1\AppData\Local\Microsoft Games =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] D -- C:\Users\NET1\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 01/10/2013 - [] D -- C:\Users\NET1\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 04/02/2017 - [0] D -- C:\Users\NET1\AppData\Local\Nikon =>.Nikon O43 - CFD: 25/10/2013 - [] D -- C:\Users\NET1\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 11/12/2012 - [] D -- C:\Users\NET1\AppData\Local\PunkBuster =>.PunkBuster Games O43 - CFD: 08/07/2014 - [] D -- C:\Users\NET1\AppData\Local\SKIDROW =>.SKIDROW O43 - CFD: 15/02/2017 - [] D -- C:\Users\NET1\AppData\Local\Skype =>.Skype O43 - CFD: 22/01/2014 - [] D -- C:\Users\NET1\AppData\Local\SWTOR =>.Electronic Arts, Inc. O43 - CFD: 21/01/2014 - [] D -- C:\Users\NET1\AppData\Local\SWTORPerf =>.Electronic Arts, Inc. O43 - CFD: 03/09/2017 - [] D -- C:\Users\NET1\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\NET1\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 13/12/2012 - [] D -- C:\Users\NET1\AppData\Local\Ubisoft Game Launcher =>.Ubisoft O43 - CFD: 07/07/2013 - [] D -- C:\Users\NET1\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 03/09/2017 - [] D -- C:\Users\NET1\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 25/10/2013 - [0] D -- C:\Users\NET1\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] RD -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] RD -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 15/02/2017 - [0] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector =>.CyberLink Corporation O43 - CFD: 13/07/2014 - [0] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DocBackupAP O43 - CFD: 30/06/2013 - [] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Détection de l'application Winamp =>.Nullsoft Inc. O43 - CFD: 25/01/2014 - [] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] RD -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 13/07/2014 - [0] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SEDREAP O43 - CFD: 02/04/2013 - [] RD -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 11/12/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft =>.Ubisoft O43 - CFD: 12/07/2014 - [] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Virtual PC =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [] D -- C:\Users\NET1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 27/07/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 03/03/2013 - [0] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 01/04/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software O43 - CFD: 02/09/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\AvgSetupLog =>.AVG Software O43 - CFD: 21/12/2013 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 03/03/2013 - [0] -- C:\Windows\System32\Config\systemprofile\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 23/03/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\MFAData =>.AVG Software O43 - CFD: 03/03/2013 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 03/03/2013 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 03/03/2013 - [0] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 16/11/2015 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\AVG =>.AVG Software O43 - CFD: 22/05/2013 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 03/03/2013 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 1s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ ShareTools MSconfig StartupReg (5) - 0s O53 - SMSR:HKLM\...\startupreg\Acrobat Assistant 8.0 [Key] [64Bits] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe =>.Adobe Systems Inc. O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] [64Bits] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] [64Bits] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] [64Bits] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe =>.DT Soft Ltd O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] [64Bits] . (...) -- C:\Program Files (x86)\QuickTime\QTTask.exe (.not file.) ---\\ System Drivers List (90) - 33s O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [106576] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [28752] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2017/05/14 13:55:19 A . (.AVG Technologies CZ, s.r.o. - File Vault Driver.) -- C:\Windows\System32\drivers\avgbdiska.sys [166624] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:55:20 A . (.AVG Technologies CZ, s.r.o. - IDS Application Activity Monitor Driver..) -- C:\Windows\System32\drivers\avgbidsdrivera.sys [314128] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:55:20 A . (.AVG Technologies CZ, s.r.o. - Application Activity Monitor Helper Driver.) -- C:\Windows\System32\drivers\avgbidsha.sys [192584] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:55:20 A . (.AVG Technologies CZ, s.r.o. - Logging Driver.) -- C:\Windows\System32\drivers\avgbloga.sys [336896] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:55:21 A . (.AVG Technologies CZ, s.r.o. - Universal Driver.) -- C:\Windows\System32\drivers\avgbuniva.sys [51336] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:56:24 A . (.AVG Technologies CZ, s.r.o. - AVG HWID.) -- C:\Windows\System32\drivers\avgHwid.sys [39424] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:56:24 A . (.AVG Technologies CZ, s.r.o. - AVG File System Minifilter for Windows 2003.) -- C:\Windows\System32\drivers\avgMonFlt.sys [129776] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:56:22 A . (.AVG Technologies CZ, s.r.o. - AVG WFP Redirect Driver.) -- C:\Windows\System32\drivers\avgRdr2.sys [102280] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:56:24 A . (.AVG Technologies CZ, s.r.o. - AVG Revert.) -- C:\Windows\System32\drivers\avgRvrt.sys [76832] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:55:53 A . (.AVG Technologies CZ, s.r.o. - AVG Virtualization Driver.) -- C:\Windows\System32\drivers\avgSnx.sys [1008288] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:56:25 A . (.AVG Technologies CZ, s.r.o. - AVG self protection module.) -- C:\Windows\System32\drivers\avgSP.sys [570320] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:57:47 A . (.AVG Technologies CZ, s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\avgstm.sys [160008] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2017/05/14 13:56:25 A . (.AVG Technologies CZ, s.r.o. - AVG VM Monitor.) -- C:\Windows\System32\drivers\avgVmm.sys [340824] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2012/04/24 03:01:00 N . (.Corel Corporation - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [10864] =>.Corel Corporation® O58 - SDL:2012/04/24 03:01:00 N . (.Corel Corporation - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [11376] =>.Corel Corporation® O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2015/11/24 12:31:14 A . (.Wireless Data Device - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmnxusbser.sys [146424] {69B0DDDFEA1DBF1F54D68E4417C745C4} =>.Wireless Data Device O58 - SDL:2008/08/18 17:32:41 A . (.DisplayLink Corp. - DisplayLink WDDM KMD.) -- C:\Windows\System32\drivers\dlkmd.sys [311408] {52631D6E586DCD47FB576CEEB88CD113} =>.DisplayLink Corp. O58 - SDL:2008/08/18 17:32:41 A . (.DisplayLink Corp. - DisplayLink WDDM KMD Loader.) -- C:\Windows\System32\drivers\dlkmdldr.sys [13424] {52631D6E586DCD47FB576CEEB88CD113} =>.DisplayLink Corp. O58 - SDL:2012/12/11 12:41:18 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283200] =>.DT Soft Ltd® O58 - SDL:2009/06/10 22:35:09 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G6032E.sys [145792] =>.Intel Corporation O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2012/07/27 16:32:48 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [32768] =>.Huawei Tech. Co., Ltd. O58 - SDL:2012/07/27 16:32:48 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [222464] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:48 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbwwan.sys [415744] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [22016] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [117248] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [86016] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [98816] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [69632] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [28672] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [212992] =>.Huawei Technologies Co., Ltd. O58 - SDL:2012/07/27 16:32:49 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [13952] =>.Huawei Technologies Co., Ltd. O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/07/14 03:47:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [77888] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410688] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2012/09/18 11:32:32 A . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\Windows\System32\drivers\LHidFilt.Sys [75064] =>.Logitech® O58 - SDL:2012/09/18 11:32:32 A . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\Windows\System32\drivers\LMouFilt.Sys [61240] =>.Logitech® O58 - SDL:2012/12/13 17:23:07 A . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\Windows\System32\drivers\LNonPnP.sys [18960] =>.Logitech® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2017/09/02 23:28:07 A . (...) -- C:\Windows\System32\drivers\mbae64.sys [77440] =>.Malwarebytes Corporation® O58 - SDL:2017/09/03 12:16:38 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [45472] =>.Malwarebytes Corporation® O58 - SDL:2017/09/03 12:37:43 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MBAMChameleon.sys [192960] =>.Malwarebytes Corporation® O58 - SDL:2017/09/03 12:16:33 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [253888] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2012/07/27 16:32:49 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [1001472] =>.DiBcom SA O58 - SDL:2009/06/10 22:35:28 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\netw5v64.sys [5434368] =>.Intel Corporation O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2012/07/27 09:26:42 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11531936] =>.NVIDIA Corporation® O58 - SDL:2009/07/14 03:48:27 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [149056] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [167488] =>.Microsoft Windows® O58 - SDL:2013/07/19 03:01:00 N . (.Corel Corporation - Px Engine Device Driver for 64-bit (x86-64).) -- C:\Windows\System32\drivers\PxHlpa64.sys [56336] =>.Corel Corporation® O58 - SDL:2011/07/29 17:14:20 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\qcusbser.sys [123520] =>.QUALCOMM Incorporated O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2007/08/03 04:35:54 A . (.Sony Corporation - Sony Firmware Extension Parser driver.) -- C:\Windows\System32\drivers\SFEP.sys [11392] =>.Sony Corporation O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2014/08/09 15:44:23 A . (...) -- C:\Windows\System32\drivers\sptd.sys [868848] O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2009/06/10 23:01:11 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL6.SYS [292864] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 23:01:11 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT6.SYS [740864] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 23:01:11 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV6.SYS [1485312] =>.Conexant Systems, Inc. O58 - SDL:2009/06/10 22:35:33 A . (.Marvell - Miniport Driver for Marvell Yukon Ethernet.) -- C:\Windows\System32\drivers\yk62x64.sys [389120] =>.Marvell ---\\ File Associations Shell Spawning (9) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %* O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Start Menu Internet (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Search Svchost Services (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [776192] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\ikeext.dll [845824] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\Audiosrv.dll [676864] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [343552] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316416] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [706560] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2428952] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [848384] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [369664] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [565760] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\System32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\sessenv.dll [104960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [136192] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [1114624] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\System32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [208896] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Firewall Active Exception List (9) - 1s O87 - FAEL: "{8E2FCB04-43A7-4393-8857-7C3A8FBB369C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{13F9DA19-20E6-4BDF-9E61-4499CED7D837}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgmfapx.exe (.not file.) O87 - FAEL: "{2D5DA9AC-48A5-40D1-BDFD-A94925B8401E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgmfapx.exe (.not file.) O87 - FAEL: "{4F29FCF6-07E4-4145-A0D2-5A56D28F0F14}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{C84021C0-E8E5-4808-9A44-82A6DD00E96F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "TCP Query User{41E992C6-E699-4D4D-A23F-ED77C1FB1DD5}C:\users\sashka\appdata\local\temp\rar$ex95.384\sky42i.exe" [In-None-P6-TRUE] .(...) -- C:\users\sashka\appdata\local\temp\rar$ex95.384\sky42i.exe (.not file.) O87 - FAEL: "UDP Query User{69183D26-9780-4807-8222-D2FBD1ADA394}C:\users\sashka\appdata\local\temp\rar$ex95.384\sky42i.exe" [In-None-P17-TRUE] .(...) -- C:\users\sashka\appdata\local\temp\rar$ex95.384\sky42i.exe (.not file.) O87 - FAEL: "TCP Query User{9728ACE8-490D-4173-8F93-D0837A5A0B93}C:\users\sashka\appdata\local\temp\rar$ex79.384\sky42i.exe" [In-None-P6-TRUE] .(...) -- C:\users\sashka\appdata\local\temp\rar$ex79.384\sky42i.exe (.not file.) O87 - FAEL: "UDP Query User{1A53B9D8-2AC9-461E-A6D2-1D053A147F25}C:\users\sashka\appdata\local\temp\rar$ex79.384\sky42i.exe" [In-None-P17-TRUE] .(...) -- C:\users\sashka\appdata\local\temp\rar$ex79.384\sky42i.exe (.not file.) ---\\ Additional Scan (O88) (3) - 1s C:\Windows\System32\Tasks\{00D4F15A-7480-4CBC-B9B8-20BFDD373142} =>PUP.Optional.ClaroSearch HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{57752979-A1C9-4C02-856B-FBB27AC4E02C} =>Riskware.QuickTime HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{57752979-A1C9-4C02-856B-FBB27AC4E02C} =>Riskware.QuickTime ---\\ Summary of the elements found (2) - 0s https://www.nicolascoolman.com/fr/pup-clarosearch/ =>PUP.Optional.ClaroSearch https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime ~ Unselected Options: O82, ~ End of the scan, 31281 items in 19mn38s (1021)(0)