Advertisement
Guest User

OTL.txt

a guest
Dec 21st, 2015
160
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 65.80 KB | None | 0 0
  1. OTL logfile created on: 21/12/2015 16:05:58 - Run 1
  2. OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\D0ownCracker\Downloads
  3. 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
  4. Internet Explorer (Version = 9.11.9600.18124)
  5. Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy
  6.  
  7. 3,84 Gb Total Physical Memory | 1,05 Gb Available Physical Memory | 27,23% Memory free
  8. 7,68 Gb Paging File | 4,48 Gb Available in Paging File | 58,38% Paging File free
  9. Paging file location(s): ?:\pagefile.sys [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
  12. Drive C: | 680,54 Gb Total Space | 578,92 Gb Free Space | 85,07% Space Free | Partition Type: NTFS
  13.  
  14. Computer Name: D0OWNCRACKER-PC | User Name: D0ownCracker | Logged in as Administrator.
  15. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
  16. Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
  17.  
  18. [color=#E56717]========== Processes (SafeList) ==========[/color]
  19.  
  20. PRC - [2015/12/21 16:05:35 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\D0ownCracker\Downloads\OTL.exe
  21. PRC - [2015/12/04 21:52:01 | 007,021,880 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
  22. PRC - [2015/12/04 21:51:58 | 000,226,440 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
  23. PRC - [2015/11/12 11:37:50 | 000,346,552 | ---- | M] (Steganos Software GmbH) -- C:\Program Files (x86)\OkayFreedom\OkayFreedomService.exe
  24. PRC - [2015/10/31 15:09:13 | 000,379,432 | ---- | M] (F-Secure Corporation) -- C:\Program Files (x86)\F-Secure\Freedome\Freedome\1.1\FreedomeService.exe
  25. PRC - [2015/10/12 08:28:44 | 001,433,216 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
  26. PRC - [2015/10/12 08:28:42 | 001,773,696 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
  27. PRC - [2015/10/05 09:48:46 | 001,135,416 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
  28. PRC - [2015/10/05 09:48:44 | 001,513,784 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
  29. PRC - [2015/10/05 09:48:34 | 009,832,760 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
  30. PRC - [2015/09/14 09:25:38 | 000,082,128 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
  31. PRC - [2015/06/10 21:21:56 | 000,509,216 | ---- | M] (QFX Software Corporation) -- C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe
  32. PRC - [2015/04/04 11:43:28 | 000,055,296 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\ovpntray.exe
  33. PRC - [2015/04/04 11:43:28 | 000,024,064 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\capiws.exe
  34. PRC - [2015/02/06 17:40:12 | 000,359,104 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnetdhcp.exe
  35. PRC - [2015/02/06 17:40:10 | 000,438,464 | ---- | M] (VMware, Inc.) -- C:\Windows\SysWOW64\vmnat.exe
  36. PRC - [2015/02/06 16:39:40 | 000,087,744 | ---- | M] (VMware, Inc.) -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
  37. PRC - [2012/04/06 19:29:22 | 000,022,120 | ---- | M] () -- C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
  38. PRC - [2012/04/06 19:29:20 | 000,040,552 | ---- | M] () -- C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
  39. PRC - [2012/03/23 10:33:48 | 000,419,408 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe
  40. PRC - [2012/03/23 10:33:46 | 000,355,920 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe
  41. PRC - [2012/03/23 10:33:46 | 000,343,632 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LMworker.exe
  42. PRC - [2012/03/23 10:33:44 | 001,105,488 | ---- | M] (Dritek System Inc.) -- C:\Program Files (x86)\Launch Manager\LManager.exe
  43. PRC - [2012/03/21 03:06:00 | 002,458,944 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
  44. PRC - [2012/02/29 14:49:06 | 000,028,264 | ---- | M] (Acer Incorporated) -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
  45. PRC - [2012/02/27 12:01:58 | 000,291,608 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
  46. PRC - [2012/02/08 03:03:36 | 000,363,800 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
  47. PRC - [2012/02/08 03:03:34 | 000,277,784 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  48. PRC - [2012/02/08 03:03:16 | 000,161,560 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
  49. PRC - [2012/02/07 01:54:04 | 000,255,376 | ---- | M] (Acer Incorporated) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe
  50. PRC - [2012/02/02 00:29:58 | 000,013,592 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
  51. PRC - [2012/01/05 22:22:10 | 000,256,536 | ---- | M] (NTI Corporation) -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
  52. PRC - [2012/01/05 22:21:44 | 000,296,984 | ---- | M] (NTI Corporation) -- C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
  53. PRC - [2011/05/20 17:44:32 | 000,986,208 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
  54.  
  55.  
  56. [color=#E56717]========== Modules (No Company Name) ==========[/color]
  57.  
  58. MOD - [2015/12/04 21:52:02 | 040,539,648 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
  59. MOD - [2015/12/04 21:51:59 | 000,469,008 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\ffl2.dll
  60. MOD - [2015/12/04 21:51:59 | 000,103,888 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\log.dll
  61. MOD - [2015/12/04 21:51:58 | 000,125,512 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
  62. MOD - [2015/11/25 08:53:03 | 012,438,016 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\dc5e9aaf3f627418b920205c75b926df\System.Windows.Forms.ni.dll
  63. MOD - [2015/09/16 07:45:37 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\82ecf48db57ddf66f74fca17b0f99453\System.Drawing.ni.dll
  64. MOD - [2015/05/25 08:58:10 | 007,991,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
  65. MOD - [2015/05/25 08:57:56 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
  66. MOD - [2015/04/04 11:43:28 | 000,055,296 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\ovpntray.exe
  67. MOD - [2015/04/04 11:43:22 | 000,039,936 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\OpenSSL.SSL.pyd
  68. MOD - [2015/04/04 11:43:22 | 000,007,168 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pyovpnc.pyd
  69. MOD - [2015/04/04 11:43:20 | 000,010,240 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\OpenSSL.rand.pyd
  70. MOD - [2015/04/04 11:43:18 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\OpenSSL.crypto.pyd
  71. MOD - [2015/04/04 11:43:12 | 000,007,680 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\twisted.protocols._c_urlarg.pyd
  72. MOD - [2015/04/04 11:43:08 | 000,019,968 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\zope.interface._zope_interface_coptimizations.pyd
  73. MOD - [2014/10/12 16:41:34 | 000,005,120 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\ovpntray.dll
  74. MOD - [2012/04/06 19:29:22 | 000,022,120 | ---- | M] () -- C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
  75. MOD - [2012/04/06 19:29:20 | 000,040,552 | ---- | M] () -- C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
  76. MOD - [2012/01/05 22:22:36 | 000,465,344 | ---- | M] () -- C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
  77. MOD - [2011/02/27 09:12:56 | 000,110,080 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pywintypes26.dll
  78. MOD - [2011/02/26 10:38:18 | 000,265,728 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32com.shell.shell.pyd
  79. MOD - [2011/02/26 10:34:56 | 000,354,304 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pythoncom26.dll
  80. MOD - [2011/02/26 10:33:20 | 000,167,424 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32gui.pyd
  81. MOD - [2011/02/26 10:33:14 | 000,096,768 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32api.pyd
  82. MOD - [2011/02/26 10:32:38 | 000,110,080 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32security.pyd
  83. MOD - [2011/02/26 10:32:30 | 000,017,408 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32profile.pyd
  84. MOD - [2011/02/26 10:32:28 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32process.pyd
  85. MOD - [2011/02/26 10:31:48 | 000,017,408 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\win32event.pyd
  86. MOD - [2010/08/24 17:48:54 | 000,011,776 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\select.pyd
  87. MOD - [2010/08/24 17:48:52 | 000,286,208 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_hashlib.pyd
  88. MOD - [2010/08/24 17:48:48 | 000,153,088 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\pyexpat.pyd
  89. MOD - [2010/08/24 17:48:16 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_ctypes.pyd
  90. MOD - [2010/08/24 17:48:06 | 000,585,728 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\unicodedata.pyd
  91. MOD - [2010/08/24 17:48:02 | 000,720,896 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_ssl.pyd
  92. MOD - [2010/08/24 17:47:50 | 000,040,448 | ---- | M] () -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\_socket.pyd
  93.  
  94.  
  95. [color=#E56717]========== Services (SafeList) ==========[/color]
  96.  
  97. SRV:[b]64bit:[/b] - [2015/12/04 21:51:58 | 000,226,440 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
  98. SRV:[b]64bit:[/b] - [2015/11/08 23:01:25 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
  99. SRV:[b]64bit:[/b] - [2015/10/22 19:12:26 | 000,177,800 | ---- | M] (Sandboxie Holdings, LLC) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
  100. SRV:[b]64bit:[/b] - [2015/07/23 01:02:54 | 001,390,592 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
  101. SRV:[b]64bit:[/b] - [2015/05/22 22:10:22 | 000,048,128 | ---- | M] (Broadcom Corporation) [Auto | Running] -- C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE -- (wltrysvc)
  102. SRV:[b]64bit:[/b] - [2013/05/27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
  103. SRV:[b]64bit:[/b] - [2012/03/21 12:03:16 | 000,957,216 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
  104. SRV:[b]64bit:[/b] - [2012/02/07 16:53:48 | 000,871,296 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe -- (ePowerSvc)
  105. SRV:[b]64bit:[/b] - [2012/02/07 01:54:04 | 000,255,376 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Live Updater Service)
  106. SRV:[b]64bit:[/b] - [2012/02/02 21:29:52 | 000,628,448 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
  107. SRV:[b]64bit:[/b] - [2010/09/23 02:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
  108. SRV - [2015/12/20 14:46:38 | 000,147,624 | ---- | M] (Mozilla Foundation) [Disabled | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
  109. SRV - [2015/12/09 21:58:37 | 000,269,504 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
  110. SRV - [2015/11/12 11:37:50 | 000,346,552 | ---- | M] (Steganos Software GmbH) [Auto | Running] -- C:\Program Files (x86)\OkayFreedom\OkayFreedomService.exe -- (OkayFreedom VPN Starter Service)
  111. SRV - [2015/10/31 15:09:13 | 000,379,432 | ---- | M] (F-Secure Corporation) [Auto | Running] -- C:\Program Files (x86)\F-Secure\Freedome\Freedome\1.1\FreedomeService.exe -- (Freedome Service)
  112. SRV - [2015/10/12 08:28:44 | 001,433,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
  113. SRV - [2015/10/12 08:28:42 | 001,773,696 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
  114. SRV - [2015/10/05 09:48:46 | 001,135,416 | ---- | M] (Malwarebytes) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
  115. SRV - [2015/10/05 09:48:44 | 001,513,784 | ---- | M] (Malwarebytes) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
  116. SRV - [2015/09/14 09:25:38 | 000,082,128 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
  117. SRV - [2015/07/09 12:14:04 | 000,327,296 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
  118. SRV - [2015/05/22 22:17:19 | 000,655,624 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
  119. SRV - [2015/04/04 11:43:28 | 000,024,064 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\OpenVPN Technologies\OpenVPN Client\core\capiws.exe -- (OpenVPNAccessClient)
  120. SRV - [2015/02/06 17:40:12 | 000,359,104 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnetdhcp.exe -- (VMnetDHCP)
  121. SRV - [2015/02/06 17:40:10 | 000,438,464 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vmnat.exe -- (VMware NAT Service)
  122. SRV - [2015/02/06 16:39:40 | 000,087,744 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe -- (VMAuthdService)
  123. SRV - [2015/01/07 07:02:48 | 000,915,648 | ---- | M] (VMware, Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe -- (VMUSBArbService)
  124. SRV - [2014/05/01 13:38:12 | 012,942,848 | ---- | M] () [On_Demand | Stopped] -- c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe -- (wampmysqld64)
  125. SRV - [2014/04/11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
  126. SRV - [2014/03/20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
  127. SRV - [2012/03/23 10:33:46 | 000,355,920 | ---- | M] (Dritek System Inc.) [Auto | Running] -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe -- (DsiWMIService)
  128. SRV - [2012/03/21 03:06:00 | 002,458,944 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
  129. SRV - [2012/02/29 14:49:06 | 000,028,264 | ---- | M] (Acer Incorporated) [Auto | Running] -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe -- (GREGService)
  130. SRV - [2012/02/20 05:18:20 | 000,276,248 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
  131. SRV - [2012/02/08 03:03:36 | 000,363,800 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
  132. SRV - [2012/02/08 03:03:34 | 000,277,784 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
  133. SRV - [2012/02/08 03:03:16 | 000,161,560 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
  134. SRV - [2012/02/02 00:29:58 | 000,013,592 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
  135. SRV - [2012/01/05 22:22:10 | 000,256,536 | ---- | M] (NTI Corporation) [Auto | Running] -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe -- (NTI IScheduleSvc)
  136. SRV - [2010/10/12 18:59:12 | 000,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
  137.  
  138.  
  139. [color=#E56717]========== Driver Services (SafeList) ==========[/color]
  140.  
  141. DRV:[b]64bit:[/b] - [2015/12/21 14:35:40 | 000,192,216 | ---- | M] (Malwarebytes) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
  142. DRV:[b]64bit:[/b] - [2015/12/20 19:34:04 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Unknown] -- C:\Windows\SysNative\drivers\TrueSight.sys -- (TrueSight)
  143. DRV:[b]64bit:[/b] - [2015/12/18 23:26:55 | 000,451,040 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
  144. DRV:[b]64bit:[/b] - [2015/12/18 23:26:51 | 000,097,648 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswmonflt.sys -- (aswMonFlt)
  145. DRV:[b]64bit:[/b] - [2015/12/04 21:52:05 | 000,273,784 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
  146. DRV:[b]64bit:[/b] - [2015/12/04 21:52:05 | 000,155,304 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)
  147. DRV:[b]64bit:[/b] - [2015/12/04 21:52:05 | 000,093,528 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
  148. DRV:[b]64bit:[/b] - [2015/12/04 21:52:05 | 000,065,224 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
  149. DRV:[b]64bit:[/b] - [2015/12/04 21:52:05 | 000,028,656 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
  150. DRV:[b]64bit:[/b] - [2015/12/04 21:51:45 | 001,055,560 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSnx.sys -- (aswSnx)
  151. DRV:[b]64bit:[/b] - [2015/10/31 15:09:18 | 000,033,832 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901.sys -- (tap0901)
  152. DRV:[b]64bit:[/b] - [2015/10/22 19:12:26 | 000,192,648 | ---- | M] (Sandboxie Holdings, LLC) [Kernel | On_Demand | Running] -- C:\Program Files\Sandboxie\SbieDrv.sys -- (SbieDrv)
  153. DRV:[b]64bit:[/b] - [2015/10/05 09:50:18 | 000,063,704 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
  154. DRV:[b]64bit:[/b] - [2015/10/05 09:50:06 | 000,025,816 | ---- | M] (Malwarebytes) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
  155. DRV:[b]64bit:[/b] - [2015/06/10 22:08:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
  156. DRV:[b]64bit:[/b] - [2015/06/03 14:43:30 | 000,224,208 | ---- | M] (QFX Software Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\keyscrambler.sys -- (KeyScrambler)
  157. DRV:[b]64bit:[/b] - [2015/05/22 22:10:22 | 000,022,592 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcm42rly.sys -- (BCM42RLY)
  158. DRV:[b]64bit:[/b] - [2015/05/22 22:10:21 | 004,746,304 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
  159. DRV:[b]64bit:[/b] - [2015/05/22 22:10:20 | 000,021,568 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcmvwl64.sys -- (BcmVWL)
  160. DRV:[b]64bit:[/b] - [2015/02/06 17:40:16 | 000,026,816 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetuserif.sys -- (VMnetuserif)
  161. DRV:[b]64bit:[/b] - [2015/02/06 17:40:06 | 000,066,752 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmx86.sys -- (vmx86)
  162. DRV:[b]64bit:[/b] - [2015/02/06 17:39:48 | 000,048,832 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\vmnetbridge.sys -- (VMnetBridge)
  163. DRV:[b]64bit:[/b] - [2015/02/06 17:39:48 | 000,028,864 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vmnetadapter.sys -- (VMnetAdapter)
  164. DRV:[b]64bit:[/b] - [2015/02/06 17:39:42 | 000,033,472 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMkbd.sys -- (vmkbd)
  165. DRV:[b]64bit:[/b] - [2015/01/07 14:55:58 | 000,076,480 | ---- | M] (VMware, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vsock.sys -- (vsock)
  166. DRV:[b]64bit:[/b] - [2015/01/07 14:55:56 | 000,085,584 | ---- | M] (VMware, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vmci.sys -- (vmci)
  167. DRV:[b]64bit:[/b] - [2015/01/07 07:02:54 | 000,055,488 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\hcmon.sys -- (hcmon)
  168. DRV:[b]64bit:[/b] - [2015/01/07 07:02:46 | 000,046,144 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmusb.sys -- (vmusb)
  169. DRV:[b]64bit:[/b] - [2014/10/12 17:03:00 | 000,027,136 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tapoas.sys -- (tapoas)
  170. DRV:[b]64bit:[/b] - [2012/03/21 22:23:22 | 000,594,472 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)
  171. DRV:[b]64bit:[/b] - [2012/03/21 22:23:22 | 000,163,368 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcbtums.sys -- (bcbtums)
  172. DRV:[b]64bit:[/b] - [2012/03/21 22:23:18 | 000,210,984 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
  173. DRV:[b]64bit:[/b] - [2012/03/21 22:23:18 | 000,184,872 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
  174. DRV:[b]64bit:[/b] - [2012/03/21 22:23:18 | 000,039,976 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)
  175. DRV:[b]64bit:[/b] - [2012/03/21 22:23:18 | 000,021,544 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
  176. DRV:[b]64bit:[/b] - [2012/03/21 03:06:00 | 000,028,992 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
  177. DRV:[b]64bit:[/b] - [2012/03/07 14:48:20 | 000,238,384 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
  178. DRV:[b]64bit:[/b] - [2012/03/01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
  179. DRV:[b]64bit:[/b] - [2012/02/27 12:01:00 | 000,788,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
  180. DRV:[b]64bit:[/b] - [2012/02/27 12:01:00 | 000,356,120 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
  181. DRV:[b]64bit:[/b] - [2012/02/27 12:01:00 | 000,016,152 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
  182. DRV:[b]64bit:[/b] - [2012/02/14 19:47:38 | 014,692,224 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
  183. DRV:[b]64bit:[/b] - [2012/02/09 17:12:08 | 000,078,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bScsiSDa.sys -- (bScsiSDa)
  184. DRV:[b]64bit:[/b] - [2012/02/07 07:03:06 | 000,018,432 | ---- | M] (NTI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NTIDrvr.sys -- (NTIDrvr)
  185. DRV:[b]64bit:[/b] - [2012/02/07 07:03:06 | 000,017,408 | ---- | M] (NTI Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UBHelper.sys -- (UBHelper)
  186. DRV:[b]64bit:[/b] - [2012/02/02 00:16:40 | 000,568,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
  187. DRV:[b]64bit:[/b] - [2012/01/18 23:30:42 | 000,435,240 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a)
  188. DRV:[b]64bit:[/b] - [2011/12/06 12:23:10 | 000,331,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
  189. DRV:[b]64bit:[/b] - [2011/11/10 10:04:14 | 000,060,184 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
  190. DRV:[b]64bit:[/b] - [2011/11/04 09:21:38 | 000,019,496 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\b57xdmp.sys -- (b57xdmp)
  191. DRV:[b]64bit:[/b] - [2011/11/04 09:21:36 | 000,068,648 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\b57xdbd.sys -- (b57xdbd)
  192. DRV:[b]64bit:[/b] - [2011/09/02 13:36:58 | 000,051,752 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bScsiMSa.sys -- (bScsiMSa)
  193. DRV:[b]64bit:[/b] - [2011/07/14 06:35:47 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
  194. DRV:[b]64bit:[/b] - [2011/07/14 06:35:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
  195. DRV:[b]64bit:[/b] - [2010/11/21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
  196. DRV:[b]64bit:[/b] - [2010/11/21 04:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
  197. DRV:[b]64bit:[/b] - [2010/11/21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
  198. DRV:[b]64bit:[/b] - [2010/11/21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
  199. DRV:[b]64bit:[/b] - [2009/07/14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
  200. DRV:[b]64bit:[/b] - [2009/07/14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
  201. DRV:[b]64bit:[/b] - [2009/07/14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
  202. DRV:[b]64bit:[/b] - [2009/06/10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
  203. DRV:[b]64bit:[/b] - [2009/06/10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
  204. DRV:[b]64bit:[/b] - [2009/06/10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
  205. DRV:[b]64bit:[/b] - [2009/06/10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
  206. DRV - [2009/07/14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
  207.  
  208.  
  209. [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
  210.  
  211.  
  212. [color=#E56717]========== Internet Explorer ==========[/color]
  213.  
  214. IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  215. IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
  216. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
  217. IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  218. IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
  219.  
  220. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com
  221. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://acer.msn.com
  222. IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
  223. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  224. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
  225. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "AutoConfigURL" = http://127.0.0.1:8445/okayfreedom.pac
  226.  
  227. [color=#E56717]========== FireFox ==========[/color]
  228.  
  229. FF - prefs.js..browser.search.countryCode: "FR"
  230. FF - prefs.js..browser.search.region: "FR"
  231. FF - prefs.js..browser.search.useDBForOrder: true
  232. FF - prefs.js..browser.startup.homepage: "https://ixquick.com/fra/"
  233. FF - prefs.js..extensions.enabledAddons: %7B9c51bd27-6ed8-4000-a2bf-36cb95c0c947%7D:11.0.1.1-signed
  234. FF - prefs.js..extensions.enabledAddons: https-everywhere%40eff.org:5.1.0
  235. FF - prefs.js..extensions.enabledAddons: %7Bea2b95c2-9be8-48ed-bdd1-5fcd2ad0ff99%7D:0.3.8.1.1-signed
  236. FF - prefs.js..extensions.enabledAddons: %7Bbb6bc1bb-f824-4702-90cd-35e2fb24f25d%7D:1.5.2.1-signed
  237. FF - prefs.js..extensions.enabledAddons: cryptocat%40crypto.cat:2.2.2.1-signed
  238. FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:43.0.1
  239. FF - prefs.js..network.proxy.http: "81.223.96.246"
  240. FF - prefs.js..network.proxy.http_port: 443
  241. FF - user.js - File not found
  242.  
  243. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll File not found
  244. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
  245. FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll ( Microsoft Corporation)
  246. FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll ()
  247. FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
  248. FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
  249. FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
  250. FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
  251. FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.66.2: C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
  252. FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.66.2: C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll (Oracle Corporation)
  253. FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
  254. FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll ( Microsoft Corporation)
  255. FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
  256. FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
  257. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll (Google Inc.)
  258. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll (Google Inc.)
  259. FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
  260. FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
  261. FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
  262.  
  263. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015/12/04 21:55:56 | 000,000,000 | ---D | M]
  264. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\sp@avast.com: C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015/12/04 21:55:52 | 000,000,000 | ---D | M]
  265. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 43.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
  266. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 43.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
  267.  
  268. [2015/06/02 17:57:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\Extensions
  269. [2015/12/21 16:04:48 | 000,000,000 | ---D | M] (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\Firefox\Profiles\jw1ap85c.default\extension-data
  270. [2015/12/20 22:45:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\Firefox\Profiles\jw1ap85c.default\extensions
  271. [2015/12/20 14:46:45 | 000,000,000 | ---D | M] (Cookies Manager+) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\Firefox\Profiles\jw1ap85c.default\extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d}
  272. [2015/08/20 23:11:25 | 000,000,000 | ---D | M] (HTTPS-Everywhere) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\Firefox\Profiles\jw1ap85c.default\extensions\https-everywhere@eff.org
  273. [2015/12/13 21:42:10 | 000,006,724 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\CookiesIE@yahoo.com.xpi
  274. [2015/12/20 22:45:27 | 000,911,873 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\cryptocat@crypto.cat.xpi
  275. [2015/07/23 15:22:12 | 000,029,160 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\the-addon-bar@GeekInTraining-GiT.xpi
  276. [2015/12/13 12:21:21 | 001,338,001 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\uBlock0@raymondhill.net.xpi
  277. [2015/11/23 19:19:53 | 000,563,259 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
  278. [2015/07/23 15:02:14 | 000,084,992 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi
  279. [2015/12/06 09:52:15 | 000,085,998 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\{9D6218B8-03C7-4b91-AA43-680B305DD35C}.xpi
  280. [2015/12/06 20:31:19 | 000,795,503 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\{DB981CCA-088E-4731-A4A2-2FE218703C0E}.xpi
  281. [2015/10/22 13:15:22 | 000,047,246 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\{ea2b95c2-9be8-48ed-bdd1-5fcd2ad0ff99}.xpi
  282. [2015/06/02 18:03:50 | 000,054,951 | ---- | M] () (No name found) -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\extensions\{F5DDF39C-9293-4d5e-9AA8-E04E6DD5E9B4}.xpi
  283. [2015/07/07 17:13:07 | 000,002,096 | ---- | M] () -- C:\Users\D0ownCracker\AppData\Roaming\mozilla\firefox\profiles\jw1ap85c.default\searchplugins\recherche-de-vidos-youtube.xml
  284. [2015/06/02 17:56:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
  285. [2015/12/20 14:46:38 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  286.  
  287. [color=#E56717]========== Chrome ==========[/color]
  288.  
  289. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
  290. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
  291. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0\
  292. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\bckipplcmnfhblnpibpbehenelnkpecd\1.4.8_0\
  293. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\
  294. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.9.4_0\
  295. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.60_0\
  296. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
  297. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg\1.4.1_0\
  298. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.1_0\
  299. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\11.1.0.210_0\
  300. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\gonbigodpnfghidmnphnadhepmbabhij\2.2.2_0\
  301. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\hifhgpdkfodlpnlmlnmhchnkepplebkb\1.3_0\
  302. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\
  303. CHR - Extension: No name found = C:\Users\D0ownCracker\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
  304.  
  305. O1 HOSTS File: ([2015/08/22 20:56:29 | 000,001,053 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
  306. O1 - Hosts: 127.94.0.1 client.openvpn.net
  307. O1 - Hosts: 127.0.0.1 localhost
  308. O1 - Hosts: 127.0.0.1 localhost
  309. O1 - Hosts: 127.0.0.1 localhost
  310. O1 - Hosts: 127.0.0.1 localhost
  311. O2:[b]64bit:[/b] - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
  312. O2:[b]64bit:[/b] - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
  313. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll (Oracle Corporation)
  314. O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
  315. O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
  316. O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll (Oracle Corporation)
  317. O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
  318. O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
  319. O4:[b]64bit:[/b] - HKLM..\Run: [Broadcom Wireless Manager UI] C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe (Broadcom Corporation)
  320. O4:[b]64bit:[/b] - HKLM..\Run: [ETDCtrl] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
  321. O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
  322. O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
  323. O4:[b]64bit:[/b] - HKLM..\Run: [InstantUpdate] C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuDaemon.exe ()
  324. O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
  325. O4:[b]64bit:[/b] - HKLM..\Run: [Power Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated)
  326. O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg_Dolby] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
  327. O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
  328. O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
  329. O4 - HKLM..\Run: [BackupManagerTray] C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
  330. O4 - HKLM..\Run: [Dolby Home Theater v4] C:\Dolby PCEE4\pcee4.exe (Dolby Laboratories Inc.)
  331. O4 - HKLM..\Run: [FreedomeAutoStart] C:\Program Files (x86)\F-Secure\Freedome\Freedome\1.1\Freedome.exe (F-Secure Corporation)
  332. O4 - HKLM..\Run: [KeyScrambler] C:\Program Files (x86)\KeyScrambler\keyscrambler.exe (QFX Software Corporation)
  333. O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
  334. O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
  335. O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
  336. O4 - HKCU..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (Sandboxie Holdings, LLC)
  337. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
  338. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
  339. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
  340. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
  341. O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
  342. O9:[b]64bit:[/b] - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
  343. O9 - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
  344. O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
  345. O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000012 - C:\Windows\SysNative\vsocklib.dll (VMware, Inc.)
  346. O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000013 - C:\Windows\SysNative\vsocklib.dll (VMware, Inc.)
  347. O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
  348. O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\SysWOW64\vsocklib.dll (VMware, Inc.)
  349. O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\SysWOW64\vsocklib.dll (VMware, Inc.)
  350. O13[b]64bit:[/b] - gopher Prefix: missing
  351. O13 - gopher Prefix: missing
  352. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241
  353. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EA001474-5E5E-48DE-9540-028646318CBF}: DhcpNameServer = 212.27.40.240 212.27.40.241
  354. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EA001474-5E5E-48DE-9540-028646318CBF}: NameServer = 8.8.8.8
  355. O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
  356. O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
  357. O18:[b]64bit:[/b] - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
  358. O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
  359. O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
  360. O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
  361. O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
  362. O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
  363. O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
  364. O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
  365. O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
  366. O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  367. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
  368. O32 - HKLM CDRom: AutoRun - 1
  369. O34 - HKLM BootExecute: (autocheck autochk *)
  370. O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
  371. O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
  372. O35 - HKLM\..comfile [open] -- "%1" %*
  373. O35 - HKLM\..exefile [open] -- "%1" %*
  374. O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
  375. O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
  376. O37 - HKLM\...com [@ = comfile] -- "%1" %*
  377. O37 - HKLM\...exe [@ = exefile] -- "%1" %*
  378. O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
  379. O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
  380. O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
  381.  
  382. [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
  383.  
  384. [2015/12/21 12:07:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
  385. [2015/12/20 22:24:38 | 000,000,000 | ---D | C] -- C:\EEK
  386. [2015/12/20 15:26:04 | 000,000,000 | ---D | C] -- C:\Users\D0ownCracker\AppData\Local\CEF
  387. [2015/12/20 15:26:03 | 000,000,000 | ---D | C] -- C:\Users\D0ownCracker\AppData\Local\Steam
  388. [2015/12/20 15:21:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
  389. [2015/12/20 15:21:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam
  390. [2015/12/19 12:47:28 | 000,000,000 | -HSD | C] -- C:\Config.Msi
  391. [2015/12/13 12:28:25 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MpEngineStore
  392. [2015/12/13 12:23:36 | 000,000,000 | ---D | C] -- C:\963c1050c8a484d7b647450736d115
  393. [2015/12/13 12:21:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
  394. [2015/12/13 12:21:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
  395. [2015/12/08 20:52:44 | 000,802,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
  396. [2015/12/08 20:52:38 | 000,709,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
  397. [2015/12/08 20:52:38 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
  398. [2015/12/08 20:52:37 | 003,170,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
  399. [2015/12/08 20:52:34 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
  400. [2015/12/08 20:52:34 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
  401. [2015/12/08 20:52:34 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSetupUI.dll
  402. [2015/12/08 20:52:33 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
  403. [2015/12/08 20:52:33 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
  404. [2015/12/08 20:52:33 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
  405. [2015/12/08 20:52:33 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
  406. [2015/12/08 20:52:33 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
  407. [2015/12/08 20:52:32 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
  408. [2015/12/08 20:52:32 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
  409. [2015/12/08 20:52:32 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
  410. [2015/12/08 20:52:32 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wu.upgrade.ps.dll
  411. [2015/12/08 20:51:51 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nlsbres.dll
  412. [2015/12/08 20:51:51 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nlsbres.dll
  413. [2015/12/08 20:51:51 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDAZE.DLL
  414. [2015/12/08 20:51:50 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDAZEL.DLL
  415. [2015/12/08 20:51:50 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDAZE.DLL
  416. [2015/12/08 20:51:50 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDAZEL.DLL
  417. [2015/12/08 20:51:49 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kbdgeoqw.dll
  418. [2015/12/08 20:51:49 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\kbdgeoqw.dll
  419. [2015/12/08 20:51:00 | 001,648,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
  420. [2015/12/08 20:50:58 | 001,008,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
  421. [2015/12/08 20:50:42 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rmcast.sys
  422. [2015/12/08 20:50:42 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshrm.dll
  423. [2015/12/08 20:50:42 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshrm.dll
  424. [2015/12/08 20:50:35 | 001,735,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comsvcs.dll
  425. [2015/12/08 20:50:35 | 000,525,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\catsrvut.dll
  426. [2015/12/08 20:50:34 | 001,242,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\comsvcs.dll
  427. [2015/12/08 20:50:34 | 000,487,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\catsrvut.dll
  428. [2015/12/08 20:50:15 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
  429. [2015/12/08 20:50:14 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
  430. [2015/12/08 20:50:14 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
  431. [2015/12/08 20:50:14 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
  432. [2015/12/08 20:50:13 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
  433. [2015/12/08 20:50:13 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
  434. [2015/12/08 20:50:11 | 000,718,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
  435. [2015/12/08 20:50:11 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
  436. [2015/12/08 20:50:11 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
  437. [2015/12/08 20:50:11 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
  438. [2015/12/08 20:50:10 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
  439. [2015/12/08 20:50:07 | 002,050,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
  440. [2015/12/08 20:50:07 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
  441. [2015/12/08 20:50:07 | 000,663,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
  442. [2015/12/08 20:50:07 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
  443. [2015/12/08 20:50:07 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
  444. [2015/12/08 20:50:07 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
  445. [2015/12/08 20:50:07 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
  446. [2015/12/08 20:50:06 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
  447. [2015/12/08 20:50:06 | 000,798,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
  448. [2015/12/08 20:50:06 | 000,476,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
  449. [2015/12/08 20:50:06 | 000,315,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
  450. [2015/12/08 20:50:04 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
  451. [2015/12/08 20:50:03 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
  452. [2015/12/08 20:50:02 | 002,123,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
  453. [2015/12/08 20:50:02 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
  454. [2015/12/08 20:50:01 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
  455. [2015/12/08 20:50:01 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
  456. [2015/12/08 20:50:00 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
  457. [2015/12/08 20:50:00 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
  458. [2015/12/08 20:49:59 | 000,615,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
  459. [2015/12/08 20:49:59 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
  460. [2015/12/08 20:49:57 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
  461. [2015/12/08 20:49:57 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
  462. [2015/12/08 20:49:57 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
  463. [2015/12/08 20:49:56 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
  464. [2015/12/08 20:49:55 | 005,923,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
  465. [2015/12/08 20:49:55 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
  466. [2015/12/08 20:49:54 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
  467. [2015/12/08 20:49:53 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
  468. [2015/12/08 20:49:53 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
  469. [2015/12/08 20:47:33 | 000,241,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\els.dll
  470. [2015/12/08 20:47:33 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\els.dll
  471. [2015/12/04 21:56:13 | 000,386,096 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
  472. [2015/12/04 21:53:40 | 000,000,000 | ---D | C] -- C:\Users\D0ownCracker\AppData\Roaming\AVAST Software
  473. [2015/12/04 21:53:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
  474. [2015/12/04 21:52:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AV
  475. [2015/12/04 21:52:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\AV
  476. [2015/12/04 21:52:21 | 001,055,560 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
  477. [2015/12/04 21:52:21 | 000,451,040 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
  478. [2015/12/04 21:52:21 | 000,273,784 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswVmm.sys
  479. [2015/12/04 21:52:21 | 000,155,304 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
  480. [2015/12/04 21:52:21 | 000,097,648 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswmonflt.sys
  481. [2015/12/04 21:52:21 | 000,093,528 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
  482. [2015/12/04 21:52:21 | 000,065,224 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRvrt.sys
  483. [2015/12/04 21:52:21 | 000,028,656 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswHwid.sys
  484. [2015/12/04 21:51:59 | 000,043,112 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
  485. [2015/12/04 21:50:21 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
  486. [2015/12/04 21:49:19 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
  487. [2015/11/30 22:19:45 | 000,000,000 | ---D | C] -- C:\Users\D0ownCracker\Desktop\CyberWar
  488. [2015/11/28 13:41:39 | 000,000,000 | ---D | C] -- C:\Users\D0ownCracker\AppData\Roaming\uTorrent
  489. [2015/11/24 20:54:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
  490. [2015/11/21 21:33:40 | 000,000,000 | ---D | C] -- C:\Users\D0ownCracker\AppData\Local\{0B0A5786-3A2F-42DA-AF7E-A0D2310560A2}
  491. [2015/09/30 13:06:51 | 031,693,696 | ---- | C] (Bitcoin Solutions Ltd) -- C:\Users\D0ownCracker\multibit-hd-windows-x64-0.1.3.exe
  492. [2 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
  493.  
  494. [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
  495.  
  496. [2015/12/21 16:04:48 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
  497. [2015/12/21 15:36:05 | 000,001,070 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
  498. [2015/12/21 15:21:41 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
  499. [2015/12/21 14:36:03 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
  500. [2015/12/21 14:35:40 | 000,192,216 | ---- | M] (Malwarebytes) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
  501. [2015/12/21 14:34:46 | 000,001,106 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
  502. [2015/12/21 11:53:50 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  503. [2015/12/21 11:53:50 | 000,016,976 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  504. [2015/12/21 11:38:15 | 3092,533,248 | -HS- | M] () -- C:\hiberfil.sys
  505. [2015/12/20 22:21:41 | 000,068,170 | ---- | M] () -- C:\Users\D0ownCracker\Desktop\cc_20151220_222134.reg
  506. [2015/12/20 19:34:04 | 000,036,608 | ---- | M] () -- C:\Windows\SysNative\drivers\TrueSight.sys
  507. [2015/12/20 17:45:50 | 000,002,079 | ---- | M] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
  508. [2015/12/20 12:12:30 | 000,001,816 | ---- | M] () -- C:\Windows\Sandboxie.ini
  509. [2015/12/20 09:54:36 | 001,652,930 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
  510. [2015/12/20 09:54:36 | 000,750,616 | ---- | M] () -- C:\Windows\SysNative\perfh00C.dat
  511. [2015/12/20 09:54:36 | 000,657,186 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
  512. [2015/12/20 09:54:36 | 000,151,634 | ---- | M] () -- C:\Windows\SysNative\perfc00C.dat
  513. [2015/12/20 09:54:36 | 000,123,584 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
  514. [2015/12/20 09:54:27 | 001,652,930 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
  515. [2015/12/18 23:26:55 | 000,451,040 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
  516. [2015/12/18 23:26:51 | 000,097,648 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswmonflt.sys
  517. [2015/12/17 16:48:06 | 000,325,880 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
  518. [2015/12/09 21:58:36 | 000,796,864 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
  519. [2015/12/09 21:58:36 | 000,142,528 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
  520. [2015/12/05 11:08:29 | 000,001,157 | ---- | M] () -- C:\Users\D0ownCracker\Application Data\Microsoft\Internet Explorer\Quick Launch\OkayFreedom.lnk
  521. [2015/12/04 21:52:05 | 000,386,096 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
  522. [2015/12/04 21:52:05 | 000,273,784 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswVmm.sys
  523. [2015/12/04 21:52:05 | 000,155,304 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
  524. [2015/12/04 21:52:05 | 000,093,528 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
  525. [2015/12/04 21:52:05 | 000,065,224 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRvrt.sys
  526. [2015/12/04 21:52:05 | 000,028,656 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswHwid.sys
  527. [2015/12/04 21:51:59 | 000,043,112 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
  528. [2015/12/04 21:51:45 | 001,055,560 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSnx.sys
  529. [2015/11/24 20:52:26 | 000,097,888 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
  530. [2015/11/22 20:03:50 | 000,000,132 | ---- | M] () -- C:\Users\D0ownCracker\Documents\grabber.php
  531. [2 C:\Program Files (x86)\*.tmp files -> C:\Program Files (x86)\*.tmp -> ]
  532.  
  533. [color=#E56717]========== Files Created - No Company Name ==========[/color]
  534.  
  535. [2015/12/20 22:21:37 | 000,068,170 | ---- | C] () -- C:\Users\D0ownCracker\Desktop\cc_20151220_222134.reg
  536. [2015/12/05 11:08:29 | 000,001,157 | ---- | C] () -- C:\Users\D0ownCracker\Application Data\Microsoft\Internet Explorer\Quick Launch\OkayFreedom.lnk
  537. [2015/12/04 21:53:04 | 000,002,079 | ---- | C] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
  538. [2015/11/22 20:03:49 | 000,000,132 | ---- | C] () -- C:\Users\D0ownCracker\Documents\grabber.php
  539. [2015/11/12 19:13:24 | 000,000,290 | RHS- | C] () -- C:\ProgramData\ntuser.pol
  540. [2015/07/01 20:01:49 | 000,001,816 | ---- | C] () -- C:\Windows\Sandboxie.ini
  541. [2015/05/26 21:00:22 | 000,000,543 | ---- | C] () -- C:\Users\D0ownCracker\openvpn-connect.json
  542. [2015/05/22 22:08:33 | 001,652,930 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
  543.  
  544. [color=#E56717]========== ZeroAccess Check ==========[/color]
  545.  
  546. [2009/07/14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
  547.  
  548. [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  549.  
  550. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  551.  
  552. [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
  553.  
  554. [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
  555.  
  556. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
  557. "" = C:\Windows\SysNative\shell32.dll -- [2015/08/06 19:04:07 | 014,176,768 | ---- | M] (Microsoft Corporation)
  558. "ThreadingModel" = Apartment
  559.  
  560. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
  561. "" = %SystemRoot%\system32\shell32.dll -- [2015/08/06 18:44:51 | 012,875,776 | ---- | M] (Microsoft Corporation)
  562. "ThreadingModel" = Apartment
  563.  
  564. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
  565. "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
  566. "ThreadingModel" = Free
  567.  
  568. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
  569. "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
  570. "ThreadingModel" = Free
  571.  
  572. [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
  573. "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
  574. "ThreadingModel" = Both
  575.  
  576. [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
  577.  
  578. [color=#E56717]========== Files - Unicode (All) ==========[/color]
  579. [2015/12/20 21:44:13 | 000,000,000 | ---D | M](C:\Users\D0ownCracker\Desktop\?Tuto?) -- C:\Users\D0ownCracker\Desktop\♔Tuto♔
  580. [2015/05/22 23:26:47 | 000,000,000 | ---D | C](C:\Users\D0ownCracker\Desktop\?Tuto?) -- C:\Users\D0ownCracker\Desktop\♔Tuto♔
  581.  
  582. < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement