Beruflich Dokumente
Kultur Dokumente
Navigateurs Internet
Internet Explorer v11.0.9600.16659
Mozilla Firefox 27.0.1
Google Chrome v34.0.1847.116 (Defaut)
(Free
(Free
(Free
(Free
47 Go of 293 Go)
77 Go of 349 Go)
238 Go of 349 Go)
325 Go of 381 Go)
[92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM D
river.) (.20/11/2010 - 01:19:22.) -- C:\Windows\system32\Drivers\Cdrom.sys [1474
56]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace
Client Driver.) (.20/11/2010 - 01:26:34.) -- C:\Windows\system32\Drivers\DfsC.s
ys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definiti
on Audio Bus Driver.) (.20/11/2010 - 02:43:44.) -- C:\Windows\system32\Drivers\H
DAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de por
t i8042.) (.13/07/2009 - 15:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys
[105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Ad
dress Translator.) (.13/07/2009 - 16:10:03.) -- C:\Windows\system32\Drivers\IpNa
t.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SM
B Minirdr.) (.26/04/2011 - 18:40:40.) -- C:\Windows\system32\Drivers\MRxSmb.sys
[158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport
driver.) (.20/11/2010 - 01:23:22.) -- C:\Windows\system32\Drivers\netBT.sys [26
1632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du sys
tme de fichiers NT.) (.23/01/2014 - 18:37:55.) -- C:\Windows\system32\Drivers\ntf
s.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de por
t parallle.) (.13/07/2009 - 16:00:41.) -- C:\Windows\system32\Drivers\Parport.sys
[97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini
-port/call-manager driver.) (.20/11/2010 - 02:52:36.) -- C:\Windows\system32\Dri
vers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport
driver.) (.13/07/2009 - 16:09:09.) -- C:\Windows\system32\Drivers\smb.sys [9318
4]
[MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - (.Microsoft Corporation - TDI Translati
on Driver.) (.20/11/2010 - 01:21:58.) -- C:\Windows\system32\Drivers\tdx.sys [11
9296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cli
ch instantan du volume.) (.20/11/2010 - 05:34:04.) -- C:\Windows\system32\Drivers\
volsnap.sys [295808]
~ Generic Processes: Scanned in 00mn 00s
Zzze
Clou
Chro
Goog
Hang
Goog
.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.micro
soft.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = htt
p://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.micr
osoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://as
us.msn.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.micr
osoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go
.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:
noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:s
ecurityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://
go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = ht
tp://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL
= http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_U
RL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off P
age = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Pa
ge = about:securityrisk
R3 - URLSearchHook: Microsoft Url Search Hook [64Bits] - {CFBFAE00-17A6-11D0-99C
B-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.16
428 (winblue_gdr.131013-1700)) -- C:\Windows\SysWOW64\ieframe.dll
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV8 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,Enable
dV8 = 1
~ IE Browser: 18 Scanned in 00mn 00s
Settings,ProxyServe
Settings,ProxyEnabl
Settings,MigratePro
Settings,EnableHttp
Settings,AutoConfig
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.ex
e
~ Keys: Scanned in 00mn 00s
=>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - M
oniteur de ressources et de performances.) -- C:\Windows\system32\perfmon.exe
=>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation Informations systme.) -- C:\Windows\system32\msinfo32.exe =>.Microsoft Corpor
ation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Res
tauration du systme de Microsoft Windo.) -- C:\Windows\system32\rstrui.exe =>.M
icrosoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) -- C:\Windows\system32
\taskschd.msc
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Co
rporation - Application post-migration de transfert de.) -- C:\Windows\system32
\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporatio
n - Application Transfert de fichiers et param.) -- C:\Windows\system32\migwiz\m
igwiz.exe =>.Microsoft Corporation
O4 - GS\QuickLaunch [Armin Metovic]: Fake Webcam 7.3.lnk . (.Web Solution Mart Pas de description.) -- C:\Program Files (x86)\Fake Webcam 7.3\7.3.0.0\FakeWeb
cam.exe
O4 - GS\QuickLaunch [Armin Metovic]: GOM Audio.lnk . (.Gretech Corporation - GOM
Audio.) -- C:\Program Files (x86)\GRETECH\GomAudio\Goma.exe
O4 - GS\QuickLaunch [Armin Metovic]: GOM Player.lnk . (...) -- C:\Program Files
(x86)\GRETECH\GomPlayer\GOM.exe
O4 - GS\QuickLaunch [Armin Metovic]: Google Chrome.lnk . (.Google Inc. - Google
Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Armin Metovic]: JDownloader.lnk . (.AppWork GmbH - JDownloa
der 0.9.) -- C:\Program Files (x86)\JDownloader\JDownloaderPortable.exe
O4 - GS\QuickLaunch [Armin Metovic]: Launch Internet Explorer Browser.lnk . (.Mi
crosoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Ex
plorer\iexplore.exe
O4 - GS\QuickLaunch [Armin Metovic]: PokerStars.be.lnk . (.PokerStars - PokerSta
rs Update.) -- C:\Program Files (x86)\PokerStars.BE\PokerStarsUpdate.exe
O4 - GS\QuickLaunch [Armin Metovic]: Samsung Kies (Lite).lnk . (...) -- C:\Prog
ram Files (x86)\Samsung\Kies\KiesAgent.exe
O4 - GS\QuickLaunch [Armin Metovic]: Samsung Kies.lnk . (...) -- C:\Program Fil
es (x86)\Samsung\Kies\KiesAgent.exe
O4 - GS\QuickLaunch [Armin Metovic]: Torrent.lnk . (.BitTorrent Inc. - Torrent.)
-- C:\Users\Armin Metovic\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorre
nt
O4 - GS\TaskBar [Armin Metovic]: Google Chrome.lnk . (.Google Inc. - Google Chro
me.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\TaskBar [Armin Metovic]: Intel(R) Turbo Boost Technology Monitor 2.0.lnk
. (...) -- C:\Program Files (x86)\Intel\TurboBoost\SignalIslandUi.exe (.not fi
le.)
O4 - GS\TaskBar [Armin Metovic]: Notepad.lnk . (.Microsoft Corporation - Bloc-no
tes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Program [Armin Metovic]: Internet Explorer.lnk . (.Microsoft Corporation
- Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Accessories [Armin Metovic]: Command Prompt.lnk . (.Microsoft Corporatio
n - Interprteur de commandes Windows.) -- C:\Windows\system32\cmd.exe =>.Micro
soft Corporation
O4 - GS\Accessories [Armin Metovic]: Notepad.lnk . (.Microsoft Corporation - Blo
c-notes.) -- C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Armin Metovic]: Run.lnk - Cl orpheline
O4 - GS\Accessories [Armin Metovic]: Windows Explorer.lnk . (.Microsoft Corporat
ion - Explorateur Windows.) -- C:\Windows\explorer.exe =>.Microsoft Corporati
on
=>
gram Files\Canon\MyPrinter\BJMyPrt.exe
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe U
pdater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp
\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience
Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.ex
e
O4 - HKLM\..\Run: [ShadowPlay] . (.NVIDIA Corporation - NVIDIA Capture Server Pr
oxy.) -- C:\Windows\system32\nvspcap64.dll
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Window
s.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe =>.DT Soft Ltd
O4 - HKCU\..\Run: [KiesPreload] . (.Samsung - Kies.) -- C:\Program Files (x86)\S
amsung\Kies\Kies.exe
O4 - HKCU\..\Run: [KiesAirMessage] C:\Program Files (x86)\Samsung\Kies\KiesAirMe
ssage.exe (.not file.)
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - Torrent.) -- C:\Users\Armin Me
tovic\AppData\Roaming\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - HKCU\..\Run: [AdobeBridge] Cl orpheline
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation
de Facebook.) -- C:\Users\Armin Metovic\AppData\Local\Facebook\Update\FacebookU
pdate.exe
O4 - HKLM\..\Wow6432Node\Run: [Nuance PDF Reader-reminder] . (.Nuance Communicat
ions, Inc. - Ereg.) -- C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe
O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ecareme - AsusWebStorage.) -C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe
O4 - HKLM\..\Wow6432Node\Run: [SonicMasterTray] . (.Virage Logic Corporation / S
onic Focus - ASUS_MATray.exe.) -- C:\Program Files (x86)\ASUS\Sonic Focus\SonicF
ocusTray.exe
O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUS - ATKOSD2.) -- C:\Program Files
(x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Fi
les (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Pro
gram Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Wow6432Node\Run: [Wireless Console 3] . (.ASUS - Wireless Console 3
.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Wow6432Node\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - MUI Star
tMenu Application.) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\M
UIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI Sta
rtMenu Application.) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MU
IStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antiviru
s.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Wow6432Node\Run: [WsmUpdater] . (.Web Solution Mart - Updater.) -C:\Program Files (x86)\Web Solution Mart\Fake Webcam Codecs Pack\Updater.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe
Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1
.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java
(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\
jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Wow6432Node\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogen
ie\DaemonProcess.exe (.not file.) =>PUP.Mobogenie
O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd.
- Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAg
ent.exe =>.Samsung Electronics Co
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - Swi
---\\ Boutons situs sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C
6C49} -- C:\Program Files (x86)\MICROS~2\Office15\ONBttnIE.dll (.not file.)
O9 - Extra button: Cliquer pour appeler Lync [64Bits] - {31D09BA0-12F5-4CCE-BE8A
-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files\
Microsoft Office\Office15\lync.exe
O9 - Extra button: Notes &lies OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB
0C95CA} -- C:\Program Files (x86)\MICROS~2\Office15\ONBTTN~1.dll (.not file.)
~ IE Extra Buttons: Scanned in 00mn 00s
iZWxhc0JpZ0dhbWVIdW50ZXJQcm9IdW50cw==_is1
O42 - Logiciel: Canon Easy-PhotoPrint EX - (.Canon Inc..) [HKLM][64Bits] -- Easy
-PhotoPrint EX
O42 - Logiciel: Canon MP Navigator EX 3.0 - (...) [HKLM][64Bits] -- MP Navigator
EX 3.0
O42 - Logiciel: Canon MP270 series MP Drivers - (...) [HKLM][64Bits] -- {1199FAD
5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP270_series
O42 - Logiciel: Canon My Printer - (...) [HKLM][64Bits] -- CanonMyPrinter
O42 - Logiciel: Cheat Engine 6.3 - (.Cheat Engine.) [HKLM][64Bits] -- Cheat Engi
ne 6.3_is1
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] - {64BF0187-F3D2-498B-99EA-163AF9AE6EC9}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {5
1C7AD07-C3F6-4635-8E8A-231306D810FE}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {E
D5776D5-59B4-46B7-AF81-5F2D94D7C640}
O42 - Logiciel: Cooking Dash - (.Oberon Media Inc..) [HKLM][64Bits] -- Cooking D
ash
O42 - Logiciel: Counter-Strike: Source - (.Valve.) [HKLM][64Bits] -- Steam App 2
40
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- Ins
tallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C5
9C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- Insta
llShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF
1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A63
1-8EA7239923AF}
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON T
ools Lite =>.DT Soft Ltd
O42 - Logiciel: Don't Starve - (.Klei Entertainment.) [HKLM][64Bits] -- Steam Ap
p 219740
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox
O42 - Logiciel: FMRTE 14.3.0.32 - (.Raul Bravo.) [HKLM][64Bits] -- {067E314C-050
5-406F-ABF5-AC601646E8B4}_is1
O42 - Logiciel: Facebook Video Calling 2.0.0.447 - (.Skype Limited.) [HKLM][64Bi
ts] -- {8DF41A9F-FE13-43E8-A003-5F9B55A011EE}
O42 - Logiciel: Fake Webcam 7.3 - (.Web Solution Mart.) [HKLM][64Bits] -- fakewe
bcam7.3.0_is1
O42 - Logiciel: Fake Webcam Codecs Pack 1.0.0 - (.Web Solution Mart.) [HKLM][64B
its] -- fwccpsetup_is1
O42 - Logiciel: Fallout New Vegas Ultimate Edition - (...) [HKLM][64Bits] -- Fal
lout New Vegas Ultimate Edition_is1
O42 - Logiciel: Fast Boot - (.ASUS.) [HKLM][64Bits] -- {13F4A7F3-EABC-4261-AF6B1317777F0755}
O42 - Logiciel: Football Manager 2014 - (...) [HKLM][64Bits] -- Football Manager
2014_is1
O42 - Logiciel: GOM Audio - (.Gretech Corporation.) [HKLM][64Bits] -- GomAudio
O42 - Logiciel: GOM Player - (.Gretech Corporation.) [HKLM][64Bits] -- GOM Playe
r
O42 - Logiciel: Game Park Console - (.Oberon Media, Inc..) [HKLM][64Bits] -- {E7
1E60C1-533E-45A5-8D80-E475E88D2B17}_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Earth Plug-in - (.Google.) [HKLM][64Bits] -- {4AB54F11-2F
8C-11E3-B09F-B8AC6F97B88E} =>.Google Inc
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB
39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Governor of Poker - (.Oberon Media Inc..) [HKLM][64Bits] -- Gove
rnor of Poker
O42 - Logiciel: Hotel Dash Suite Success - (.Oberon Media Inc..) [HKLM][64Bits]
-- Hotel Dash Suite Success
O42 - Logiciel: Inpaint 5.4 - (.Teorex.) [HKLM][64Bits] -- {2AEDC172-479F-47AE-8
A48-A0524D4AED5B}_is1
O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] - {F8A9085D-4C7A-41a9-8A77-C8998A96C421}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [H
KLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bit
s] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Intel(R) Turbo Boost Technology Monitor 2.0 - (.Intel.) [HKLM][6
4Bits] -- {B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}
O42 - Logiciel: JDownloader 0.9 - (.AppWork GmbH.) [HKLM][64Bits] -- 5513-1208-7
298-9440
O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4
CA4-87B4-2F83217045FF}
O42 - Logiciel: Jewel Quest 3 - (.Oberon Media Inc..) [HKLM][64Bits] -- Jewel Qu
est 3
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bit
s] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: Lagarith lossless video codec (Remove Only) - (...) [HKLM][64Bit
s] -- LAGARITH
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of L
egends 3.0.1
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {3E75652D-9
9B1-417E-B163-BEF33CAD3F16}
O42 - Logiciel: Les Sims 3 - (.Electronic Arts.) [HKLM][64Bits] -- {C05D8CDB-417D
-4335-A38C-A0659EDFD6B8}
O42 - Logiciel: Luxor 3 - (.Oberon Media Inc..) [HKLM][64Bits] -- Luxor 3
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70
A-28BB16A1F11F}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-49
2D-BEF6-587A14BD9BD9}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bi
ts] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bi
ts] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Mahjongg dimensions - (.Oberon Media Inc..) [HKLM][64Bits] -- Ma
hjongg dimensions
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D
6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [
HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKL
M][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [H
KLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [
HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.)
[HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HK
LM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.)
[HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporati
on
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.)
[HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation
.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.
) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits]
-- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] - {E3E71D07-CD27-46CB-8448-16D4FB29AA13}
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HK
LM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE}
O42 - Logiciel: Mozilla Firefox 27.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -Mozilla Firefox 27.0.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- Mozi
llaMaintenanceService
O42 - Logiciel: MyFreeCodec - (...) [HKCU][64Bits] -- MyFreeCodec
O42 - Logiciel: NVIDIA GeForce Experience 1.8.2.1 - (.NVIDIA Corporation.) [HKLM
][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA Logiciel systme PhysX 9.13.1220 - (.NVIDIA Corporation.) [
HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA
7-7763-4395-AB98-5233F1B34E65}
O42 - Logiciel: NVIDIA Pilote 3D Vision 335.23 - (.NVIDIA Corporation.) [HKLM][6
4Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision
O42 - Logiciel: NVIDIA Pilote graphique 335.23 - (.NVIDIA Corporation.) [HKLM][6
4Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64
Bits] -- NVIDIAStereo
O42 - Logiciel: NVIDIA Virtual Audio 1.2.20 - (.NVIDIA Corporation.) [HKLM][64Bi
ts] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver
O42 - Logiciel: Nuance PDF Reader - (.Nuance Communications, Inc..) [HKLM][64Bit
s] -- {B480904D-F73F-4673-B034-8A5F492C9184}
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits]
-- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}
O42 - Logiciel: Pando Media Booster - (.Pando Networks Inc..) [HKLM][64Bits] -{980A182F-E0A2-4A40-94C1-AE0C1235902E}
O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU][64Bits] -- PhotoFiltre Studi
o X
O42 - Logiciel: Plants vs Zombies - (.Oberon Media Inc..) [HKLM][64Bits] -- Plan
ts vs Zombies
O42 - Logiciel: PokerStars.be - (.PokerStars.be.) [HKLM][64Bits] -- PokerStars.b
e
O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM][64Bits] -- {
8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor C
orp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Rust - (.Facepunch Studios.) [HKLM][64Bits] -- Steam App 252490
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co.
, Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44}
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits]
-- InstallShield_{758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits]
-- {758C8301-2696-4855-AF45-534B1200980A}
O42 - Logiciel: Sid Meier's Pirates! - (.Firaxis Games.) [HKLM][64Bits] -- Insta
llShield_{1632FD86-1BA4-4FC4-8B25-A8C655D63F68}
O42 - Logiciel: Skype 6.14 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {7A3C7
E05-EE37-47D6-99E1-2EB05A3DA3F7}
O42 - Logiciel: Sonic Focus - (.Synopsys .) [HKLM][64Bits] -- {09BCB9CE-964B-4BD
A-AE46-B5A0ABEF1D3F}
O42 - Logiciel: Sony RAW Driver - (.Sony Corporation.) [HKLM][64Bits] -- {166FCF
01-AC98-4288-A01C-90BEB808C059}
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam
[HKCU\Software\Conduit] =>Toolbar.Conduit
[HKCU\Software\CyberLink]
[HKCU\Software\Disc Soft]
[HKCU\Software\ECAREME]
[HKCU\Software\Ethnos5]
[HKCU\Software\FLEXnet]
[HKCU\Software\Facebook]
[HKCU\Software\Facepunch Studios]
[HKCU\Software\GRETECH]
[HKCU\Software\Gabest]
[HKCU\Software\GamersGate]
[HKCU\Software\Google]
[HKCU\Software\Haali]
[HKCU\Software\IM Providers]
[HKCU\Software\InstallCore] =>Adware.InstallCore
[HKCU\Software\Intel]
[HKCU\Software\JAM Software]
[HKCU\Software\JavaSoft]
[HKCU\Software\LAV64]
[HKCU\Software\LAV]
[HKCU\Software\MCAFEE]
[HKCU\Software\Macromedia]
[HKCU\Software\MetaGeek, LLC]
[HKCU\Software\Modern UI Test]
[HKCU\Software\MozillaPlugins]
[HKCU\Software\Mozilla]
[HKCU\Software\Myfree Codec]
[HKCU\Software\NVIDIA Corporation]
[HKCU\Software\Netscape]
[HKCU\Software\ODBC]
[HKCU\Software\PalTalk]
[HKCU\Software\Pando Networks]
[HKCU\Software\Piriform]
[HKCU\Software\Policies]
[HKCU\Software\Realtek]
[HKCU\Software\SOFT CONCEPT]
[HKCU\Software\Samsung]
[HKCU\Software\Shining Rock Software LLC]
[HKCU\Software\SightSpeed Inc]
[HKCU\Software\SkypeRS]
[HKCU\Software\Skype]
[HKCU\Software\Synaptics]
[HKCU\Software\Teorex]
[HKCU\Software\Trolltech]
[HKCU\Software\Unity]
[HKCU\Software\VB and VBA Program Settings]
[HKCU\Software\Valve]
[HKCU\Software\VirtualDub.org]
[HKCU\Software\Voipwise]
[HKCU\Software\Web Solution Mart]
[HKCU\Software\WinRAR SFX]
[HKCU\Software\WinRAR]
[HKCU\Software\Wintertree]
[HKCU\Software\Wow6432Node]
[HKCU\Software\Xander Software]
[HKCU\Software\Yahoo]
[HKCU\Software\ZebHelpProcess Helper]
[HKCU\Software\Zeon]
[HKCU\Software\ej-technologies]
[HKCU\Software\fwc]
[HKCU\Software\kde.org]
[HKLM\Software\AGEIA Technologies]
[HKLM\Software\ASUS]
[HKLM\Software\ATI Technologies]
[HKLM\Software\Adobe]
[HKLM\Software\Canon]
[HKLM\Software\Classes]
[HKLM\Software\Clients]
[HKLM\Software\CoreSecurity]
[HKLM\Software\DTS]
[HKLM\Software\Google]
[HKLM\Software\HaaliMkx]
[HKLM\Software\IM Providers]
[HKLM\Software\InstalledOptions]
[HKLM\Software\Intel]
[HKLM\Software\Khronos]
[HKLM\Software\Macromedia]
[HKLM\Software\MozillaPlugins]
[HKLM\Software\Mozilla]
[HKLM\Software\NVIDIA Corporation]
[HKLM\Software\ODBC]
[HKLM\Software\Piriform]
[HKLM\Software\Policies]
[HKLM\Software\Realtek]
[HKLM\Software\RegisteredApplications]
[HKLM\Software\SAMSUNG]
[HKLM\Software\SRS Labs]
[HKLM\Software\SonicFocus]
[HKLM\Software\Sonic]
[HKLM\Software\Synaptics]
[HKLM\Software\TrendMicro]
[HKLM\Software\Waves Audio]
[HKLM\Software\WinRAR]
[HKLM\Software\Wow6432Node\AGEIA Technologies]
[HKLM\Software\Wow6432Node\ASUS]
[HKLM\Software\Wow6432Node\ATK0100]
[HKLM\Software\Wow6432Node\AVAST Software]
[HKLM\Software\Wow6432Node\Adobe]
[HKLM\Software\Wow6432Node\AsLdr]
[HKLM\Software\Wow6432Node\Atari]
[HKLM\Software\Wow6432Node\Bethesda Softworks]
[HKLM\Software\Wow6432Node\Borland]
[HKLM\Software\Wow6432Node\Canon]
[HKLM\Software\Wow6432Node\Caphyon]
[HKLM\Software\Wow6432Node\Classes]
[HKLM\Software\Wow6432Node\Clients]
[HKLM\Software\Wow6432Node\CodeGear]
[HKLM\Software\Wow6432Node\CyberLink]
[HKLM\Software\Wow6432Node\Disc Soft]
[HKLM\Software\Wow6432Node\ECAREME]
[HKLM\Software\Wow6432Node\Electronic Arts]
[HKLM\Software\Wow6432Node\Futuremark]
[HKLM\Software\Wow6432Node\GRETECH]
[HKLM\Software\Wow6432Node\Google]
[HKLM\Software\Wow6432Node\HaaliMkx]
[HKLM\Software\Wow6432Node\IM Providers]
[HKLM\Software\Wow6432Node\InstallShield]
[HKLM\Software\Wow6432Node\Intel]
[HKLM\Software\Wow6432Node\JavaSoft]
[HKLM\Software\Wow6432Node\JreMetrics]
[HKLM\Software\Wow6432Node\Khronos]
[HKLM\Software\Wow6432Node\Macromedia]
[HKLM\Software\Wow6432Node\McAfee.com]
[HKLM\Software\Wow6432Node\MozillaPlugins]
[HKLM\Software\Wow6432Node\Mozilla]
[HKLM\Software\Wow6432Node\Myfree Codec]
[HKLM\Software\Wow6432Node\NVIDIA Corporation]
[HKLM\Software\Wow6432Node\ODBC]
[HKLM\Software\Wow6432Node\Oberon Media]
[HKLM\Software\Wow6432Node\Pando Networks]
[HKLM\Software\Wow6432Node\PocketSoft]
[HKLM\Software\Wow6432Node\Policies]
[HKLM\Software\Wow6432Node\PowerPivot]
[HKLM\Software\Wow6432Node\Ralink]
[HKLM\Software\Wow6432Node\Realtek Semiconductor Corp.]
[HKLM\Software\Wow6432Node\Realtek]
[HKLM\Software\Wow6432Node\RegisteredApplications]
[HKLM\Software\Wow6432Node\Riot Games]
[HKLM\Software\Wow6432Node\Samsung]
[HKLM\Software\Wow6432Node\ScanSoft]
[HKLM\Software\Wow6432Node\Sims]
[HKLM\Software\Wow6432Node\Skype]
[HKLM\Software\Wow6432Node\Sony Corporation]
[HKLM\Software\Wow6432Node\Sports Interactive]
[HKLM\Software\Wow6432Node\Valve]
[HKLM\Software\Wow6432Node\VideoLAN]
[HKLM\Software\Wow6432Node\Web Solution Mart]
[HKLM\Software\Wow6432Node\Zeon]
[HKLM\Software\Wow6432Node\ej-technologies]
[HKLM\Software\Wow6432Node\mozilla.org]
[HKLM\Software\Wow6432Node\syncables]
[HKLM\Software\Wow6432Node]
~ Key Software: 387 Scanned in 00mn 00s
Roaming\PhotoFiltre Studio X
O43 - CFD: 5/02/2014 - 15:20:54 - [0] ----D C:\Users\Armin Metovic\AppData\Roami
ng\Riot Games
O43 - CFD: 9/02/2014 - 09:56:33 - [0,636] ----D C:\Users\Armin Metovic\AppData\R
oaming\Samsung
O43 - CFD: 15/04/2014 - 21:07:04 - [8,804] ----D C:\Users\Armin Metovic\AppData\
Roaming\Skype
O43 - CFD: 20/02/2014 - 17:19:53 - [0] ----D C:\Users\Armin Metovic\AppData\Roam
ing\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 1/04/2014 - 23:56:19 - [11,229] ----D C:\Users\Armin Metovic\AppData\
Roaming\theHunter
O43 - CFD: 16/04/2014 - 09:21:30 - [11,120] ----D C:\Users\Armin Metovic\AppData
\Roaming\uTorrent =>P2P.Torrent
O43 - CFD: 16/04/2014 - 02:11:43 - [1,625] ----D C:\Users\Armin Metovic\AppData\
Roaming\vlc
O43 - CFD: 27/02/2014 - 20:17:16 - [0,004] ----D C:\Users\Armin Metovic\AppData\
Roaming\Voipwise
O43 - CFD: 7/11/2013 - 10:47:19 - [0] ----D C:\Users\Armin Metovic\AppData\Roami
ng\WinRAR
O43 - CFD: 11/11/2013 - 05:28:25 - [0,003] ----D C:\Users\Armin Metovic\AppData\
Roaming\Zeon
O43 - CFD: 16/04/2014 - 10:15:50 - [0,019] ----D C:\Users\Armin Metovic\AppData\
Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 31/03/2014 - 16:21:58 - [28,206] ----D C:\Users\Armin Metovic\AppData
\Local\Adobe
O43 - CFD: 7/11/2013 - 02:04:23 - [0] -SH-D C:\Users\Armin Metovic\AppData\Local
\Application Data
O43 - CFD: 7/11/2013 - 07:51:25 - [1,600] ----D C:\Users\Armin Metovic\AppData\L
ocal\Apps
O43 - CFD: 31/12/2013 - 07:57:59 - [2,220] ----D C:\Users\Armin Metovic\AppData\
Local\cache
O43 - CFD: 6/03/2014 - 01:39:08 - [0] ----D C:\Users\Armin Metovic\AppData\Local
\Chromium
O43 - CFD: 7/11/2013 - 07:51:37 - [0] ----D C:\Users\Armin Metovic\AppData\Local
\Deployment
O43 - CFD: 29/03/2014 - 19:42:49 - [0] ----D C:\Users\Armin Metovic\AppData\Loca
l\Diagnostics
O43 - CFD: 15/01/2014 - 15:07:18 - [66,338] ----D C:\Users\Armin Metovic\AppData
\Local\Downloaded Installations
O43 - CFD: 7/03/2014 - 10:27:45 - [14,668] ----D C:\Users\Armin Metovic\AppData\
Local\Facebook
O43 - CFD: 11/04/2014 - 16:27:09 - [0] ----D C:\Users\Armin Metovic\AppData\Loca
l\FalloutNV
O43 - CFD: 31/12/2013 - 07:57:59 - [1,224] ----D C:\Users\Armin Metovic\AppData\
Local\genienext =>PUP.NextLive
O43 - CFD: 7/11/2013 - 07:52:23 - [581,906] ----D C:\Users\Armin Metovic\AppData
\Local\Google
O43 - CFD: 7/11/2013 - 02:04:23 - [0] -SH-D C:\Users\Armin Metovic\AppData\Local
\Historique
O43 - CFD: 19/02/2014 - 00:39:56 - [0,010] ----D C:\Users\Armin Metovic\AppData\
Local\MetaGeek,_LLC
O43 - CFD: 15/04/2014 - 01:43:13 - [206,475] ----D C:\Users\Armin Metovic\AppDat
a\Local\Microsoft
O43 - CFD: 14/11/2013 - 14:52:21 - [0,088] ----D C:\Users\Armin Metovic\AppData\
Local\Microsoft Games
O43 - CFD: 1/12/2013 - 09:28:30 - [0,062] ----D C:\Users\Armin Metovic\AppData\L
ocal\Microsoft Help
O43 - CFD: 7/11/2013 - 11:03:32 - [0,002] ----D C:\Users\Armin Metovic\AppData\L
ocal\Microsoft Toolkit
O43 - CFD: 31/12/2013 - 07:58:25 - [0,003] ----D C:\Users\Armin Metovic\AppData\
Local\Mobogenie =>PUP.Mobogenie
O43 - CFD: 11/11/2013 - 05:19:53 - [7,003] ----D C:\Users\Armin Metovic\AppData\
Local\Mozilla
O43 - CFD: 19/02/2014 - 00:39:58 - [0] -SH-D C:\Users\Armin Metovic\AppData\Loca
l\ms-drivers
O43 - CFD: 1/04/2014 - 16:02:55 - [104,300] ----D C:\Users\Armin Metovic\AppData
\Local\NVIDIA
O43 - CFD: 1/04/2014 - 16:02:16 - [0,002] ----D C:\Users\Armin Metovic\AppData\L
ocal\NVIDIA Corporation
O43 - CFD: 6/02/2014 - 16:19:12 - [0,257] ----D C:\Users\Armin Metovic\AppData\L
ocal\PMB Files =>P2P.Pando
O43 - CFD: 29/12/2013 - 13:41:14 - [0,795] ----D C:\Users\Armin Metovic\AppData\
Local\PokerStars.BE
O43 - CFD: 7/11/2013 - 02:04:39 - [0,039] ----D C:\Users\Armin Metovic\AppData\L
ocal\Power2Go
O43 - CFD: 13/11/2013 - 18:00:49 - [0] ----D C:\Users\Armin Metovic\AppData\Loca
l\Programs
O43 - CFD: 15/01/2014 - 15:22:38 - [0,011] ----D C:\Users\Armin Metovic\AppData\
Local\Samsung
O43 - CFD: 14/03/2014 - 11:52:29 - [4,549] ----D C:\Users\Armin Metovic\AppData\
Local\Skype
O43 - CFD: 17/12/2013 - 17:50:04 - [0] ----D C:\Users\Armin Metovic\AppData\Loca
l\Skyrim
O43 - CFD: 6/03/2014 - 01:16:59 - [23,897] ----D C:\Users\Armin Metovic\AppData\
Local\Sports Interactive
O43 - CFD: 16/04/2014 - 10:15:39 - [126,717] ----D C:\Users\Armin Metovic\AppDat
a\Local\Temp
O43 - CFD: 7/11/2013 - 02:04:23 - [0] -SH-D C:\Users\Armin Metovic\AppData\Local
\Temporary Internet Files
O43 - CFD: 1/04/2014 - 23:56:19 - [0] ----D C:\Users\Armin Metovic\AppData\Local
\theHunter
O43 - CFD: 16/03/2014 - 00:39:59 - [0,465] ----D C:\Users\Armin Metovic\AppData\
Local\THQ
O43 - CFD: 7/11/2013 - 11:58:18 - [0,075] ----D C:\Users\Armin Metovic\AppData\L
ocal\VirtualStore
O43 - CFD: 14/04/2014 - 15:13:13 - [0,047] ----D C:\Users\Armin Metovic\AppData\
Local\Windows Live
O43 - CFD: 13/07/2009 - 21:54:32 - [0,014] R---D C:\Users\Armin Metovic\AppData\
Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 10/11/2013 - 10:32:18 - [0] R---D C:\Users\Armin Metovic\AppData\Roam
ing\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 5/11/2013 - 17:36:33 - [0,013] ----D C:\Users\Armin Metovic\AppData\R
oaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
O43 - CFD: 17/01/2014 - 11:34:41 - [0,002] ----D C:\Users\Armin Metovic\AppData\
Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 28/03/2014 - 16:35:29 - [0] ----D C:\Users\Armin Metovic\AppData\Roam
ing\Microsoft\Windows\Start Menu\Programs\Firaxis Games
O43 - CFD: 1/04/2014 - 00:34:10 - [0] ----D C:\Users\Armin Metovic\AppData\Roami
ng\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 13/07/2009 - 21:49:38 - [0,001] R---D C:\Users\Armin Metovic\AppData\
Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 19/02/2014 - 00:39:45 - [0,003] ----D C:\Users\Armin Metovic\AppData\
Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek
O43 - CFD: 13/11/2013 - 17:47:48 - [0] ----D C:\Users\Armin Metovic\AppData\Roam
ing\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
O43 - CFD: 17/01/2014 - 11:34:47 - [0,002] R---D C:\Users\Armin Metovic\AppData\
Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 1/01/2014 - 11:13:02 - [0,002] ----D C:\Users\Armin Metovic\AppData\R
oaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 7/11/2013 - 02:06:20 - [0,011] ----D C:\Users\Armin Metovic\AppData\R
dcap64v.dll [35104]
O44 - LFC:[MD5.52A94BCDEE1D8FA54B956A07408B7610] - 1/04/2014 - 15:01:14 ---A- .
(.NVIDIA Corporation - NVIDIA Capture Server Proxy.) -- C:\Windows\System32\nvsp
cap64.dll [1179576]
O44 - LFC:[MD5.B035CB17B9C7FC419047AAAD5AA8C81D] - 1/04/2014 - 22:01:21 ---A- .
(...) -- C:\Windows\System32\ServiceFilter.ini [1392]
O44 - LFC:[MD5.C3C9CFD8E8A5F927293ACE179031F877] - 1/04/2014 - 22:01:23 ---A- .
(...) -- C:\Windows\System32\AutoRunFilter.ini [2488]
O44 - LFC:[MD5.3D6C79A2099B7E8CEE90EF3031BF3DCD] - 11/04/2014 - 09:36:24 ---A- .
(...) -- C:\Windows\ODBC.INI [28]
O44 - LFC:[MD5.EB5EB52D7210B2A7182AF9097AA21FE5] - 15/04/2014 - 19:25:02 ---A- .
(...) -- C:\Windows\System32\PerfStringBackup.INI [1700612]
O44 - LFC:[MD5.D486403CF986CBA8A0127034FA5C8BA9] - 15/04/2014 - 19:25:02 ---A- .
(...) -- C:\Windows\System32\perfc009.dat [126088]
O44 - LFC:[MD5.D96E05AE2B8473CF1F95FE2597903910] - 15/04/2014 - 19:25:02 ---A- .
(...) -- C:\Windows\System32\perfc00C.dat [154138]
O44 - LFC:[MD5.0BE0FD7BC59222CF3CEAA42CC3FD37D8] - 15/04/2014 - 19:25:02 ---A- .
(...) -- C:\Windows\System32\perfh009.dat [665876]
O44 - LFC:[MD5.A040A83E6F5CF85C5F574A24F8BE0990] - 15/04/2014 - 19:25:02 ---A- .
(...) -- C:\Windows\System32\perfh00C.dat [759306]
O44 - LFC:[MD5.F40AC933F050760A2454638E0A7F3557] - 16/04/2014 - 08:18:46 -S-A- .
(...) -- C:\Windows\bootstat.dat [67584]
O44 - LFC:[MD5.0F2DF9A6D71013120568E79C7D20A570] - 16/04/2014 - 08:18:58 ---A- .
(...) -- C:\Windows\setupact.log [3466]
O44 - LFC:[MD5.141B00A1333A760C8AF3EB5F814D3D72] - 16/04/2014 - 08:24:36 ---A- .
(...) -- C:\Windows\WindowsUpdate.log [1228960]
O44 - LFC:[MD5.2465EBC8CD6E412CDC1AB9FEF40BCAE6] - 3/04/2014 - 08:25:59 ---A- .
(...) -- C:\Windows\win.ini [478]
O44 - LFC:[MD5.D9990B02B4E85B62EA2387C7FE2998EC] - 3/04/2014 - 11:37:01 ---A- .
(...) -- C:\Windows\System32\FNTCACHE.DAT [5058688]
O44 - LFC:[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 8/04/2014 - 13:13:27 ---A- .
(.Microsoft Corporation - Pilote du systme de fichiers NT.) -- C:\Windows\System3
2\Drivers\ntfs.sys [1684928]
O44 - LFC:[MD5.0F090A77E664CB0F70AB8D3B230B760C] - 8/04/2014 - 13:13:43 ---A- .
(.Microsoft Corporation - AMD64 Wow64 CPU.) -- C:\Windows\System32\wow64cpu.dll
[13312]
O44 - LFC:[MD5.D2A513EE880D71BDE7F0257F38B9D019] - 8/04/2014 - 13:13:43 ---A- .
(.Microsoft Corporation - DLL du client API BASE Windows NT.) -- C:\Windows\Syst
em32\kernel32.dll [1163264]
O44 - LFC:[MD5.2A107B611C91CD256466C58C0D776E9D] - 8/04/2014 - 13:13:43 ---A- .
(.Microsoft Corporation - Win32 Emulation on NT64.) -- C:\Windows\System32\wow64
.dll [243712]
O44 - LFC:[MD5.7434E01FBCA3CB86539C39412A31D5E1] - 8/04/2014 - 13:13:43 ---A- .
(.Microsoft Corporation - Wow64 Console and Win32 API Logging.) -- C:\Windows\Sy
stem32\wow64win.dll [362496]
O44 - LFC:[MD5.74959C718FF4594369645F35B7DF19C4] - 8/04/2014 - 13:13:43 ---A- .
(.Microsoft Corporation - mulation 16 bits sur NT64.) -- C:\Windows\System32\ntvd
m64.dll [16384]
O44 - LFC:[MD5.B3222734D80013D2C73841B0C549FA63] - 8/04/2014 - 13:16:31 ---A- .
(.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\Driver
s\Diskdump.sys [27584]
O44 - LFC:[MD5.1F34470A484B001CC95B66CFE4753960] - 8/04/2014 - 13:16:31 ---A- .
(.Microsoft Corporation - DLL de journalisation des E/S.) -- C:\Windows\System32
\iologmsg.dll [2048]
O44 - LFC:[MD5.A3F0BC5897F9D3786A3CB695B163633A] - 8/04/2014 - 13:16:31 ---A- .
(.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32
\Drivers\storport.sys [190912]
O44 - LFC:[MD5.96BB922A0981BC7432C8CF52B5410FE6] - 8/04/2014 - 13:16:31 ---A- .
(.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\Syste
m32\Drivers\msiscsi.sys [274880]
14:20:31 ---A14:30:11 ---A15:42:06 ---A08:09:08 ---A08:09:13 ---A08:09:49 ---A10:56:09 ---A15:44:12 ---A17:17:33 ---A23:15:26 ---A23:24:10 ---A08:19:55 ---A08:20:43 ---A09:13:11 ---A-
tarve_steam.exe
O87 - FAEL: "TCP Query User{FD1105CA-CA82-4C8C-B6E7-34568A75E018}C:\program file
s (x86)\saints row 2\sr2_pc.exe" | In - Private - P6 - TRUE | .(...) -- C:\progr
am files (x86)\saints row 2\sr2_pc.exe
O87 - FAEL: "UDP Query User{C4D234ED-79F0-4DAC-98BA-59CBBE1B0B05}C:\program file
s (x86)\saints row 2\sr2_pc.exe" | In - Private - P17 - TRUE | .(...) -- C:\prog
ram files (x86)\saints row 2\sr2_pc.exe
O87 - FAEL: "{2ACFAC5C-AE71-4249-B747-26585B58BCF8}" | In - Private - P6 - TRUE
| .(.Expansive Worlds - theHunter.) -- C:\Program Files (x86)\theHunter\game\the
Hunter.exe
O87 - FAEL: "{960111D4-FA25-42C6-B630-CEB4850C11AA}" | In - Private - P17 - TRUE
| .(.Expansive Worlds - theHunter.) -- C:\Program Files (x86)\theHunter\game\th
eHunter.exe
O87 - FAEL: "{8A445FEF-15AD-42A9-9136-899DCF4362FC}" | In - Private - P6 - TRUE
| .(.Expansive Worlds - theHunter Launcher.) -- C:\Program Files (x86)\theHunter
\launcher\launcher.exe
O87 - FAEL: "{E7425BEA-A4C7-4197-8768-0343EF5376BB}" | In - Private - P17 - TRUE
| .(.Expansive Worlds - theHunter Launcher.) -- C:\Program Files (x86)\theHunte
r\launcher\launcher.exe
O87 - FAEL: "{9796B954-67F6-42A6-AAD6-A3D6377C18B0}" | In - None - P6 - TRUE | .
(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA
Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{AF196DA6-8D0B-410E-8368-6E0B5B7BE15D}" | In - None - P6 - TRUE | .
(.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA
Corporation\NetService\NvNetworkService.exe
O87 - FAEL: "{48669BD0-4939-4F23-B419-CCC4F0865C4F}" | In - None - P6 - TRUE | .
(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corp
oration\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{8AD10A6B-3595-4979-A88A-1FE62D51AF17}" | In - None - P17 - TRUE |
.(.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Cor
poration\NvStreamSrv\nvstreamsvc.exe
O87 - FAEL: "{15EA29CA-AE00-49F2-804F-2D4DF2B0BD24}" | In - None - P6 - TRUE | .
(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NV
IDIA Corporation\NvStreamSrv\nvstreamer.exe
O87 - FAEL: "{917C5F95-A6F4-4618-A515-A978429B544F}" | In - None - P17 - TRUE |
.(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\N
VIDIA Corporation\NvStreamSrv\nvstreamer.exe
~ Firewall: 235 Scanned in 00mn 02s
ndows\Installer\{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}\ApplicationIcon.ico
O90 - PUC: "1038C85769625584FA5435B4210089A0" . (.Samsung Kies.) -- C:\Windows\I
nstaller\{758C8301-2696-4855-AF45-534B1200980A}\ARPPRODUCTICON.exe
O90 - PUC: "11F45BA4C8F23E110BF98BCAF6798BE8" . (.Google Earth Plug-in.) -- C:\W
indows\Installer\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}\ARPPRODUCTICON.exe =>.G
oogle Inc
O90 - PUC: "121E2D80A6F7BE3479DF26B944094330" . (.Microsoft_VC90_CRT_x86.) -- C:
\Windows\Installer\{08D2E121-7F6A-43EB-97FD-629B44903403}\ARPPRODUCTICON.exe
O90 - PUC: "16525446F96163A42AFF5B1E81CE565F" . (.ASUS SmartLogon.) -- C:\Window
s\Installer\{64452561-169F-4A36-A2FF-B5E118EC65F5}\_294823.exe
O90 - PUC: "1D034B0FAA6BD374B960AAD30DF10D8B" . (.Microsoft SQL Server 2005 Comp
act Edition [ENU].) -- C:\Windows\Installer\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B
8}\ProductIcon
O90 - PUC: "21F1DBD139DE0C947ACC65BCED841885" . (.ASUS LifeFrame3.) -- C:\Window
s\Installer\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}\_853F67D554F05449430E7E.exe
O90 - PUC: "22CF704AFB6328C45A61959DB45C509A" . (.System Requirements Lab Detect
ion.) -- C:\Windows\Installer\{A407FC22-36BF-4C82-A516-59D94BC505A9}\icon.ico
O90 - PUC: "38E1FB04BE028D11795C00905C206085" . (.Power2Go.) -- C:\Windows\Insta
ller\{40BF1E83-20EB-11D8-97C5-0009C5020658}\ARPPRODUCTICON.exe
O90 - PUC: "3F7A4F31CBAE1624FAB6317177F77055" . (.Fast Boot.) -- C:\Windows\Inst
aller\{13F4A7F3-EABC-4261-AF6B-1317777F0755}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "46289B33988A31940AAC3C467A05233B" . (.ASUS Power4Gear Hybrid.) -- C:
\Windows\Installer\{33B98264-A889-4913-A0CA-C364A75032B3}\_6FEFF9B68218417F98F54
9.exe
O90 - PUC: "50E7C3A773EE6D74991EE20BA5D33A7F" . (.Skype 6.14.) -- C:\Windows\Inst
aller\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe
O90 - PUC: "6760F93DE36159549A712EF899BB4D2D" . (.ASUS AI Recovery.) -- C:\Windo
ws\Installer\{D39F0676-163E-4595-A917-E28F99BBD4D2}\_6FEFF9B68218417F98F549.exe
O90 - PUC: "68AB67CA7DA76301B744BA0000000010" . (.Adobe Reader XI (11.0.06) - Fr
anais.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.
ico
O90 - PUC: "68DF23614AB14CF4B8528A6C556DF386" . (.Sid Meier's Pirates!.) -- C:\W
indows\Installer\{1632FD86-1BA4-4FC4-8B25-A8C655D63F68}\ARPPRODUCTICON.exe
O90 - PUC: "7AB7040836775934BA8925331F3BE456" . (.NVIDIA PhysX.) -- C:\Windows\I
nstaller\{80407BA7-7763-4395-AB98-5233F1B34E65}\icon.ico
O90 - PUC: "7FDAC8786DB592A46A4FCA150CEC0886" . (.Alcor Micro USB Card Reader.)
-- C:\Windows\Installer\{878CADF7-5BD6-4A29-A6F4-AC51C0CE8068}\ARPPRODUCTICON.ex
e
O90 - PUC: "884FD4BEFEAAF6043A14BCA2AA13B509" . (.Windows Live Messenger.) -- C:
\Windows\Installer\{EB4DF488-AAEF-406F-A341-CB2AAA315B90}\MsblIco.Exe
O90 - PUC: "8D7961433299E5444BA225E9A599BCA7" . (.syncables desktop SE.) -- C:\W
indows\Installer\{341697D8-9923-445E-B42A-529E5A99CB7A}\ARPPRODUCTICON.exe
O90 - PUC: "91785D291CBB3CC40AB8659C8E48CCC2" . (.Microsoft_VC80_CRT_x86.) -- C:
\Windows\Installer\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}\ARPPRODUCTICON.exe
O90 - PUC: "9EBF5A643BDA39441ACC4BFCDF422DA6" . (.Windows Live Family Safety.) - C:\Windows\Installer\{46A5FBE9-ADB3-4493-A1CC-B4CFFD24D26A}\fssicon.ico
O90 - PUC: "B0AFE77B3DB92214F9A9519A365BAE42" . (.Intel(R) Turbo Boost Technolog
y Monitor 2.0.) -- C:\Windows\Installer\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}\A
RPPRODUCTICON.exe
O90 - PUC: "C1220518E7F87994DAE4FAED7E4F4B01" . (.Wireless Console 3.) -- C:\Win
dows\Installer\{8150221C-8F7E-4997-AD4E-AFDEE7F4B410}\_853F67D554F05449430E7E.ex
e
O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" . (.LabelPrint.) -- C:\Windows\Ins
taller\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe
O90 - PUC: "D25657E31B99E7141B36EB3FC3DAF361" . (.League of Legends.) -- C:\Wind
ows\Installer\{3E75652D-99B1-417E-B163-BEF33CAD3F16}\lol.launcher_1.exe
O90 - PUC: "D409084BF37F37640B43A8F594C21948" . (.Nuance PDF Reader.) -- C:\Wind
ows\Installer\{B480904D-F73F-4673-B034-8A5F492C9184}\ARPPRODUCTICON.exe
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" . (.Microsoft Silverlight.) -- C:\
Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon
---\\ Etat gnral des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 31/03/2014 257928 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems
Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.ex
e
SS - | Demand 17/09/2010 267480 | (Amsp) . (.Trend Micro Inc..) - C:\Program Fi
les\Trend Micro\AMSP\coreServiceShell.exe
SS - | Auto 7/11/2013 116648 | (gupdate) . (.Google Inc..) - C:\Program Files (
x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 7/11/2013 116648 | (gupdatem) . (.Google Inc..) - C:\Program File
s (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 3/04/2005 69632 | (IDriverT) . (.Macrovision Corporation.) - C:\P
rogram Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
SS - | Demand 7/03/2014 118896 | (MozillaMaintenance) . (.Mozilla Foundation.)
- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Pro
gram Files (x86)\Skype\Updater\Updater.exe
SS - | Demand 27/01/2014 571816 | (Steam Client Service) . (.Valve Corporation.
) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SS - | Demand 19/02/2010 517096 | (SwitchBoard) . (.Adobe Systems Incorporated.
) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
SS - | Demand 13/07/2009 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.d
ll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 20/12/2013 65432 | (AdobeARMservice) . (.Adobe Systems Incorporated
.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 3/03/2011 379520 | (AFBAgent) . (.ASUSTeK Computer Inc..) - C:\Wind
ows\system32\FBAgent.exe
SR - | Auto 15/06/2009 84536 | (ASLDRService) . (.ASUS.) - C:\Program Files (x8
6)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
SR - | Auto 15/12/2009 96896 | (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86
)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
SR - | Auto 25/02/2014 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Pro
gram Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 5/10/2010 325656 | (LMS) . (.Intel Corporation.) - C:\Program Files
(x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - | Auto 5/02/2014 1593632 | (NvNetworkService) . (.NVIDIA Corporation.) - C
:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
SR - | Auto 5/02/2014 16941856 | (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Pr
ogram Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
SR - | Auto 4/03/2014 922968 | (NVSvc) . (.NVIDIA Corporation.) - C:\Windows\sy
stem32\nvvsvc.exe
SR - | Auto 4/03/2014 411936 | (Stereo Service) . (.NVIDIA Corporation.) - C:\P
rogram Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
SR - | Demand 17/09/2010 241488 | (TiMiniService) . (.Trend Micro Inc..) - C:\P
rogram Files\Trend Micro\Titanium\TiMiniService.exe
SR - | Demand 29/11/2010 149504 | (TurboBoost) . (.Intel(R) Corporation.) - C:\
Program Files\Intel\TurboBoost\TurboBoost.exe
SR - | Auto 5/10/2010 2655768 | (UNS) . (.Intel Corporation.) - C:\Program File
s (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
SR - | Demand 10/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\W
indows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 13/07/2009 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Mi
crosoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 10s
[HKCU\Software\BitTorrent] =>P2P.BitTorrent^
[HKCU\Software\Conduit] =>Toolbar.Conduit^
~ Additionnel Scan: 314984 Items scanned in 00mn 37s