sorry for my english cause i m french
so the problem is:
-google chrome or firefox or internetexplorer always open not on my start page but on nation zoom's page and after when i go on other site i have always one or 2 windows open with publicities
i have a other hard disc where i have all my life(pics of me and my familly, music, and movies) but it doesn t be scan by the programm. so u can t it on the report
please help me
OTL logfile created on: 04/01/2014 01:09:35 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ba nous\Downloads
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16476)
Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy
2,25 Gb Total Physical Memory | 1,19 Gb Available Physical Memory | 52,90% Memory free
4,49 Gb Paging File | 2,90 Gb Available in Paging File | 64,52% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 698,54 Gb Total Space | 635,23 Gb Free Space | 90,94% Space Free | Partition Type: NTFS
Drive D: | 157,98 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive E: | 1862,56 Gb Total Space | 1065,31 Gb Free Space | 57,20% Space Free | Partition Type: FAT32
Computer Name: BANOUS-PC | User Name: ba nous | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/01/04 01:09:13 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\ba nous\Downloads\OTL.exe
PRC - [2014/01/01 19:31:08 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2013/12/04 03:48:06 | 000,863,184 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
PRC - [2013/11/01 15:31:08 | 000,114,176 | ---- | M] (Wajam) -- C:\Program Files\Wajam\Updater\WajamUpdaterV3.exe
PRC - [2013/10/23 15:01:10 | 000,280,288 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\NisSrv.exe
PRC - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) -- c:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2013/10/23 14:55:28 | 000,948,440 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2013/08/16 18:09:06 | 000,961,312 | ---- | M] (Boxore OU) -- C:\Program Files\Boxore\BoxoreClient\boxore.exe
PRC - [2011/06/24 09:27:04 | 006,044,264 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
PRC - [2011/06/07 22:08:18 | 000,294,400 | ---- | M] (Advanced Micro Devices, Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
PRC - [2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/12/13 14:37:46 | 000,135,536 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
PRC - [2010/02/10 15:06:04 | 000,372,736 | ---- | M] (AMD) -- C:\Windows\System32\atieclxx.exe
PRC - [2010/02/10 15:05:34 | 000,172,032 | ---- | M] (AMD) -- C:\Windows\System32\atiesrxx.exe
========== Modules (No Company Name) ==========
MOD - [2014/01/03 03:34:20 | 000,240,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\03dc83fbe48384390aed7a455e949789\WindowsFormsIntegration.ni.dll
MOD - [2014/01/03 03:33:06 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\a2920ed81e097f8551231a9350697bbd\PresentationFramework.Aero.ni.dll
MOD - [2014/01/03 03:32:43 | 014,340,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\bcf51dc88597d0835c819a2d5a755b74\PresentationFramework.ni.dll
MOD - [2014/01/03 03:32:31 | 012,238,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\51478a61dbd40488e320a0061e23c4df\PresentationCore.ni.dll
MOD - [2014/01/03 03:32:21 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\4eef5a3a4d0ed6d6fd882947a70df530\WindowsBase.ni.dll
MOD - [2014/01/03 03:32:11 | 002,297,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Core\8f5b881951592b2fd05f710650bf7e04\System.Core.ni.dll
MOD - [2014/01/03 03:30:46 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\ef0a534be135cd8f0d99d938d8b1814a\System.Windows.Forms.ni.dll
MOD - [2014/01/03 03:30:28 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5aa44bce7933e4de09d935848f868a4b\System.Drawing.ni.dll
MOD - [2014/01/03 03:30:27 | 011,914,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\0cb40437ecbf8ab60a297ff419b7f830\System.Web.ni.dll
MOD - [2014/01/03 03:30:20 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\d473c19e69818875b9c739cad8f386a5\System.Runtime.Remoting.ni.dll
MOD - [2014/01/03 03:30:13 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\09db78d6068543df01862a023aca785a\System.Xml.ni.dll
MOD - [2014/01/03 03:30:10 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\29f3ae8d313e62b4daed1107ccd29f9f\System.Configuration.ni.dll
MOD - [2014/01/03 03:30:08 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll
MOD - [2014/01/03 03:30:03 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll
MOD - [2013/12/04 03:48:04 | 000,399,312 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll
MOD - [2013/12/04 03:48:03 | 013,586,896 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll
MOD - [2013/12/04 03:48:02 | 004,055,504 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\31.0.1650.63\pdf.dll
MOD - [2013/12/04 03:47:11 | 000,702,416 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\31.0.1650.63\libglesv2.dll
MOD - [2013/12/04 03:47:11 | 000,099,792 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\31.0.1650.63\libegl.dll
MOD - [2013/12/04 03:47:08 | 001,619,408 | ---- | M] () -- C:\Program Files\Google\Chrome\Application\31.0.1650.63\ffmpegsumo.dll
MOD - [2011/06/07 22:11:00 | 000,243,712 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
MOD - [2011/06/07 22:08:26 | 000,095,232 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
MOD - [2011/04/12 02:35:22 | 000,245,760 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_fr_31bf3856ad364e35\PresentationFramework.resources.dll
MOD - [2011/04/12 02:35:14 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_fr_b77a5c561934e089\System.resources.dll
MOD - [2010/11/13 00:35:41 | 000,430,080 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_fr_b77a5c561934e089\System.Windows.Forms.resources.dll
MOD - [2010/11/13 00:35:38 | 000,311,296 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_fr_b77a5c561934e089\mscorlib.resources.dll
========== Services (SafeList) ==========
SRV - [2014/01/01 23:28:58 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2014/01/01 23:28:20 | 000,119,408 | ---- | M] (The Software Group) [On_Demand | Stopped] -- C:\Program Files\Software\Update\SoftwareUpdate.exe -- (Software_update_m)
SRV - [2014/01/01 23:28:20 | 000,119,408 | ---- | M] (The Software Group) [Auto | Stopped] -- C:\Program Files\Software\Update\SoftwareUpdate.exe -- (Software_update)
SRV - [2014/01/01 23:27:49 | 000,250,808 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/12/05 20:36:33 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/11/26 09:29:52 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2013/11/01 15:31:08 | 000,114,176 | ---- | M] (Wajam) [Auto | Running] -- C:\Program Files\Wajam\Updater\WajamUpdaterV3.exe -- (WajamUpdaterV3)
SRV - [2013/10/23 15:01:10 | 000,280,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2013/10/23 15:01:10 | 000,022,208 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2013/05/27 05:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2011/06/07 22:08:18 | 000,294,400 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV - [2010/12/13 14:37:46 | 000,135,536 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
SRV - [2010/02/10 15:05:34 | 000,172,032 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2009/07/14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
========== Driver Services (SafeList) ==========
DRV - [2013/09/27 09:53:06 | 000,104,768 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2011/06/06 11:06:54 | 000,211,984 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AtihdW73.sys -- (AtiHDAudioService)
DRV - [2011/04/15 07:37:46 | 000,066,688 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\amd_sata.sys -- (amd_sata)
DRV - [2011/04/15 07:37:46 | 000,033,408 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\amd_xata.sys -- (amd_xata)
DRV - [2010/12/02 22:30:44 | 000,025,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nx6000.sys -- (MSHUSBVideo)
DRV - [2010/11/28 21:50:40 | 000,035,968 | R--- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\usbfilter.sys -- (usbfilter)
DRV - [2010/11/20 22:29:24 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/11/20 22:29:03 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/20 22:29:03 | 000,027,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV - [2010/06/16 22:15:36 | 000,014,392 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\AtiPcie.sys -- (AtiPcie)
DRV - [2010/02/18 09:18:22 | 000,037,944 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\amdiox86.sys -- (amdiox86)
DRV - [2010/02/10 15:23:24 | 005,315,584 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag)
DRV - [2010/02/10 15:23:24 | 005,315,584 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atipmdag.sys -- (amdkmdag)
DRV - [2010/02/10 14:10:58 | 000,152,064 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap)
DRV - [2009/07/14 00:45:33 | 000,083,456 | ---- | M] (Brother Industries Ltd.) [Kernel | System | Running] -- C:\Windows\System32\drivers\serial.sys -- (Serial)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoo...2509AV582509AV5
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.nationzoo...q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.nationzoo...q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.mysearc...r=986792973&ir=
IE - HKLM\..\SearchScopes,DefaultScope = {77AA745B-F4F8-45DA-9B14-61D2D95054C8}
IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.nationzoo...q={searchTerms}
IE - HKLM\..\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}: "URL" = http://start.mysearc...r=986792973&ir=
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.nationzoo...2509AV582509AV5
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...9A89052E4&SSPV=
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://fr.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 9F B2 A0 5B 17 07 CF 01 [binary data]
IE - HKCU\..\URLSearchHook: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found
IE - HKCU\..\SearchScopes,DefaultScope = {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
IE - HKCU\..\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}: "URL" = http://search.condui...rchTerms}&SSPV=
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.condui...rchTerms}&SSPV=
IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.nationzoo...q={searchTerms}
IE - HKCU\..\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}: "URL" = http://start.mysearc...r=986792973&ir=
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..extensions.enabledAddons: d8222698-19e5-4827-b79e-0a077ea8eb7a%407b662f6d-3899-41e4-8864-6393447568da.com:0.93.109
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.Software.com/Software Update;version=3: C:\Program Files\Software\Update\1.3.25.0\npSoftwareUpdate3.dll (The Software Group)
FF - HKLM\Software\MozillaPlugins\@tools.Software.com/Software Update;version=9: C:\Program Files\Software\Update\1.3.25.0\npSoftwareUpdate3.dll (The Software Group)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Nosibay\Bubble Dock\extensions\FFSurfMatch
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
[2014/01/01 23:37:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ba nous\AppData\Roaming\mozilla\Extensions
[2014/01/03 23:37:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ba nous\AppData\Roaming\mozilla\Firefox\Profiles\c9j1n8po.default\extensions
[2014/01/03 14:08:39 | 000,000,000 | ---D | M] ("MySearchDial NewTab") -- C:\Users\ba nous\AppData\Roaming\mozilla\Firefox\Profiles\c9j1n8po.default\extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
[2014/01/02 00:02:30 | 000,000,000 | ---D | M] ("Plus-HD-3.5") -- C:\Users\ba nous\AppData\Roaming\mozilla\Firefox\Profiles\c9j1n8po.default\extensions\d8222698-19e5-4827-b79e-0a077ea8eb7a@7b662f6d-3899-41e4-8864-6393447568da.com
[2014/01/02 18:39:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ba nous\AppData\Roaming\mozilla\Firefox\Profiles\c9j1n8po.default\extensions\d8222698-19e5-4827-b79e-0a077ea8eb7a@7b662f6d-3899-41e4-8864-6393447568da.com\extensionData
[2014/01/02 18:39:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ba nous\AppData\Roaming\mozilla\Firefox\Profiles\c9j1n8po.default\extensions\d8222698-19e5-4827-b79e-0a077ea8eb7a@7b662f6d-3899-41e4-8864-6393447568da.com\extensionData\plugins
[2014/01/02 18:39:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ba nous\AppData\Roaming\mozilla\Firefox\Profiles\c9j1n8po.default\extensions\d8222698-19e5-4827-b79e-0a077ea8eb7a@7b662f6d-3899-41e4-8864-6393447568da.com\extensionData\userCode
[2014/01/03 23:37:00 | 000,007,303 | ---- | M] () (No name found) -- C:\Users\ba nous\AppData\Roaming\mozilla\firefox\profiles\c9j1n8po.default\extensions\[email protected]
[2013/07/22 12:35:02 | 000,180,858 | ---- | M] () (No name found) -- C:\Users\ba nous\AppData\Roaming\mozilla\firefox\profiles\c9j1n8po.default\extensions\[email protected]
[2014/01/03 19:03:45 | 000,000,975 | ---- | M] () -- C:\Users\ba nous\AppData\Roaming\mozilla\firefox\profiles\c9j1n8po.default\searchplugins\conduit-search.xml
[2014/01/03 14:08:41 | 000,002,393 | ---- | M] () -- C:\Users\ba nous\AppData\Roaming\mozilla\firefox\profiles\c9j1n8po.default\searchplugins\Mysearchdial.xml
[2014/01/01 23:28:02 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions
[2014/01/02 00:01:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\browser\extensions
[2014/01/02 00:01:39 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014/01/01 23:39:21 | 000,000,566 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\nationzoom.xml
========== Chrome ==========
CHR - default_search_provider: Recherche de vid\u00E9os YouTube (Enabled)
CHR - default_search_provider: search_url = http://www.youtube.c...urce=opensearch
CHR - default_search_provider: suggest_url = ,
CHR - homepage: http://search.condui...F57352BA1&SSPV=
CHR - Extension: Bejeweled = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpkifcfcacgmnggcbpbjbkdijciiigm\2_0\
CHR - Extension: Private Joe - Dungeons = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\bddhcbcefccaggaloclldffhobmecjfj\1.4_0\
CHR - Extension: Snooker = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjohiacoelemalmancnccjggomjnkfod\1.0.2_0\
CHR - Extension: YouTube = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: POKERWOOD - Texas Holdem Poker = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\clkeocmibglboageifmndbpeikoghebb\1.0.9_0\
CHR - Extension: Ratchet & Clank Future 2 = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejhfomhehcinmhgnlhdpghklkjgppdmn\3_0\
CHR - Extension: avast! Online Security = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2011.70_1\
CHR - Extension: Isoball 3 = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\iajlkcpgcnbhfhpdeooockfaincfkjjj\1.4.0_0\
CHR - Extension: World of Solitaire = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifbnllnaaaohekjkcpfdllhhjijnidgn\1.0.1_0\
CHR - Extension: Lightning Newtab = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\1.1.7.9_1\
CHR - Extension: Lightning Newtab = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\1.1.8.4_0\
CHR - Extension: RePlay.FR = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\imfaefgciinakhhijicamiodfbejphdb\1.4.1_0\
CHR - Extension: Lettre Compte Triple = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjeddnjjfojmepmehcknfgdlefcolomp\0.8.5_0\
CHR - Extension: Skyrama = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlehaidnnmjjkhgbbiombcdifogolhap\1.0.8_0\
CHR - Extension: Cargo Bridge = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\keembkgclppcbilkekfgpobhldjjhpmn\1.5.7_0\
CHR - Extension: iGraal = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm\1.5.3_1\
CHR - Extension: Custom Print = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldikpdnngdmeceeameoaannjilbjppnm\0.1_0\
CHR - Extension: Custom Print = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldikpdnngdmeceeameoaannjilbjppnm\1.25.85_0\crossrider
CHR - Extension: Custom Print = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\ldikpdnngdmeceeameoaannjilbjppnm\1.25.85_0\
CHR - Extension: WGT Golf Game = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpedbpkelbhcbkdaglillalioeeekbpb\45.0.0_0\
CHR - Extension: Google00A0Wallet = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\
CHR - Extension: Destroyer bombe 3D = C:\Users\ba nous\AppData\Local\Google\Chrome\User Data\Default\Extensions\okehlnjpihomkdokiiafpejniofjaoom\1.0.6_0\
O1 HOSTS File: ([2009/06/10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Plus-HD-3.5) - {11111111-1111-1111-1111-110311711180} - C:\Program Files\Plus-HD-3.5\Plus-HD-3.5-bho.dll (Plus HD)
O2 - BHO: (Bubble Dock SurfMatch) - {23AF19F7-1D5B-442c-B14C-3D1081953C94} - C:\Program Files\Nosibay\Bubble Dock\extensions\axSurfMatch.dll File not found
O2 - BHO: (no name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No CLSID value found.
O2 - BHO: (Wajam) - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files\Wajam\IE\priam_bho.dll (Wajam)
O2 - BHO: (SquirrelWeb) - {dd86af49-1ef1-4532-89f7-41eda1dbbe6d} - C:\Program Files\SquirrelWeb\SquirrelWebBHO.dll File not found
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Boxore Client] C:\Program Files\Boxore\BoxoreClient\boxore.exe (Boxore OU)
O4 - HKLM..\Run: [fst_fr_26] File not found
O4 - HKLM..\Run: [Iminent] C:\Program Files\Iminent\Iminent.exe /warmup "F77F87E5-A6BD-4922-A530-EDF63D7E9F8C" File not found
O4 - HKLM..\Run: [IminentMessenger] C:\Program Files\Iminent\Iminent.Messengers.exe File not found
O4 - HKLM..\Run: [LifeCam] C:\Program Files\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [Super-Charger] C:\Program Files\MSI\Super-Charger\StartSuperCharger.exe (MSI)
O4 - HKLM..\RunOnce: [Del19562228] C:\Windows\System32\cmd.exe (Microsoft Corporation)
O4 - HKLM..\RunOnce: [DelTr53785977] cmd.exe /c rd /s /q "C:\Users\ba nous\AppData\Roaming\mysearchdial" File not found
O4 - HKLM..\RunOnce: [SpUninstallCleanUp] REG delete HKEY_LOCAL_MACHINE\Software\SearchProtect /f File not found
O4 - HKCU..\RunOnce: [Del19562228] C:\Windows\System32\cmd.exe (Microsoft Corporation)
O4 - HKCU..\RunOnce: [DelTr53785977] cmd.exe /c rd /s /q "C:\Users\ba nous\AppData\Roaming\mysearchdial" File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0B2542BC-B225-48B4-A8A5-90BFC0DD3142}: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2010/11/17 00:48:32 | 000,000,131 | R--- | M] () - D:\Autorun.inf -- [ CDFS ]
O33 - MountPoints2\{35cb2b4d-731d-11e3-808f-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{35cb2b4d-731d-11e3-808f-806e6f6e6963}\Shell\AutoRun\command - "" = D:\Setup.exe -- [2010/11/17 00:48:32 | 000,297,832 | R--- | M] (Hewlett-Packard Co.)
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014/01/03 14:06:49 | 000,000,000 | ---D | C] -- C:\Users\ba nous\Documents\My Cheat Tables
[2014/01/03 14:06:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.3
[2014/01/03 14:06:25 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\OpenCandy
[2014/01/03 14:06:25 | 000,000,000 | ---D | C] -- C:\Program Files\Cheat Engine 6.3
[2014/01/03 14:04:53 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\mysearchdial
[2014/01/03 03:04:11 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2014/01/02 03:01:11 | 000,000,000 | ---D | C] -- C:\Program Files\predm
[2014/01/01 23:44:51 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2014/01/01 23:37:21 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Mozilla
[2014/01/01 23:37:21 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\Mozilla
[2014/01/01 23:36:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2014/01/01 23:36:42 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
[2014/01/01 23:35:46 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Macromedia
[2014/01/01 23:34:19 | 000,000,000 | ---D | C] -- C:\Program Files\Nosibay
[2014/01/01 23:34:09 | 000,000,000 | ---D | C] -- C:\Program Files\MyPC Backup
[2014/01/01 23:32:11 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Nosibay
[2014/01/01 23:30:27 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Systweak
[2014/01/01 23:30:26 | 000,018,776 | ---- | C] (Systweak Inc., (www.systweak.com)) -- C:\Windows\System32\roboot.exe
[2014/01/01 23:30:07 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\Programs
[2014/01/01 23:29:35 | 000,000,000 | ---D | C] -- C:\ProgramData\BoxUpdChk
[2014/01/01 23:29:30 | 000,000,000 | ---D | C] -- C:\Program Files\Boxore
[2014/01/01 23:29:08 | 000,000,000 | ---D | C] -- C:\Windows\System32\Wat
[2014/01/01 23:28:11 | 000,000,000 | ---D | C] -- C:\Program Files\IminentToolbar
[2014/01/01 23:28:02 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2014/01/01 23:28:02 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\IminentToolbar
[2014/01/01 23:27:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2014/01/01 23:17:39 | 000,000,000 | ---D | C] -- C:\Program Files\Software
[2014/01/01 21:52:34 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\ElevatedDiagnostics
[2014/01/01 21:49:03 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2014/01/01 21:48:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2014/01/01 21:48:40 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2014/01/01 21:48:19 | 000,000,000 | ---D | C] -- C:\Program Files\Bing Bar Installer
[2014/01/01 21:48:17 | 000,000,000 | ---D | C] -- C:\ProgramData\HP Photo Creations
[2014/01/01 21:48:17 | 000,000,000 | ---D | C] -- C:\Program Files\HP Photo Creations
[2014/01/01 21:48:10 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\HpUpdate
[2014/01/01 21:47:53 | 000,000,000 | ---D | C] -- C:\ProgramData\HP
[2014/01/01 21:47:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
[2014/01/01 21:46:36 | 000,000,000 | ---D | C] -- C:\Program Files\HP
[2014/01/01 21:46:05 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\HP
[2014/01/01 21:35:02 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\OpenOffice
[2014/01/01 21:34:08 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1
[2014/01/01 21:32:57 | 000,000,000 | ---D | C] -- C:\Program Files\OpenOffice 4
[2014/01/01 21:31:15 | 000,000,000 | ---D | C] -- C:\Users\ba nous\Desktop\OpenOffice 4.0.1 (fr) Installation Files
[2014/01/01 20:54:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam
[2014/01/01 20:52:27 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft LifeCam
[2014/01/01 20:50:34 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
[2014/01/01 20:50:33 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\AMD
[2014/01/01 20:50:15 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\ATI
[2014/01/01 20:50:15 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\ATI
[2014/01/01 20:50:15 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2014/01/01 20:49:38 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Adobe
[2014/01/01 19:53:05 | 000,000,000 | ---D | C] -- C:\Windows\System32\MRT
[2014/01/01 18:53:22 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2014/01/01 18:51:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014/01/01 18:35:48 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2014/01/01 18:33:57 | 000,000,000 | ---D | C] -- C:\Program Files\Plus-HD-3.5
[2014/01/01 18:33:54 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam
[2014/01/01 18:33:51 | 000,000,000 | ---D | C] -- C:\Program Files\Wajam
[2014/01/01 18:33:48 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\Google
[2014/01/01 18:29:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM
[2014/01/01 18:28:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
[2014/01/01 18:28:50 | 000,000,000 | ---D | C] -- C:\Program Files\MSI
[2014/01/01 18:28:09 | 001,783,056 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesLib.dll
[2014/01/01 18:28:08 | 001,725,784 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesGUILib.dll
[2014/01/01 18:28:08 | 000,345,328 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSXT.dll
[2014/01/01 18:28:08 | 000,214,368 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFNHK.dll
[2014/01/01 18:28:08 | 000,185,584 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSHD.dll
[2014/01/01 18:28:08 | 000,173,296 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP360.dll
[2014/01/01 18:28:08 | 000,140,528 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW.dll
[2014/01/01 18:28:08 | 000,074,080 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFCOM.dll
[2014/01/01 18:28:08 | 000,068,960 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFAPO.dll
[2014/01/01 18:28:03 | 003,296,600 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEP32A.dll
[2014/01/01 18:28:03 | 000,359,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEP32A.dll
[2014/01/01 18:28:03 | 000,295,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT32.dll
[2014/01/01 18:28:03 | 000,295,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA32.dll
[2014/01/01 18:28:03 | 000,170,840 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEED32A.dll
[2014/01/01 18:28:03 | 000,103,256 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEL32A.dll
[2014/01/01 18:28:03 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEL32A.dll
[2014/01/01 18:28:03 | 000,064,856 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEG32A.dll
[2014/01/01 18:28:02 | 000,345,944 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EED32A.dll
[2014/01/01 18:28:02 | 000,252,760 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxVolumeSDAPO.dll
[2014/01/01 18:28:02 | 000,088,408 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEA32A.dll
[2014/01/01 18:28:02 | 000,061,272 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEG32A.dll
[2014/01/01 18:28:01 | 003,327,320 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioRealtek.dll
[2014/01/01 18:28:01 | 001,938,704 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll
[2014/01/01 18:28:01 | 000,259,928 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO30.dll
[2014/01/01 18:28:01 | 000,232,792 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll
[2014/01/01 18:28:01 | 000,132,368 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO.dll
[2014/01/01 18:28:00 | 000,357,200 | ---- | C] (Knowles Acoustics ) -- C:\Windows\System32\KAAPORT.dll
[2014/01/01 18:27:56 | 001,740,352 | ---- | C] (Fortemedia Corporation) -- C:\Windows\System32\FMAPO.dll
[2014/01/01 18:27:56 | 001,509,480 | ---- | C] (DTS) -- C:\Windows\System32\DTSS2SpeakerDLL.dll
[2014/01/01 18:27:56 | 001,292,904 | ---- | C] (DTS) -- C:\Windows\System32\DTSS2HeadphoneDLL.dll
[2014/01/01 18:27:56 | 000,631,400 | ---- | C] (DTS) -- C:\Windows\System32\DTSSymmetryDLL.dll
[2014/01/01 18:27:56 | 000,601,704 | ---- | C] (DTS) -- C:\Windows\System32\DTSVoiceClarityDLL.dll
[2014/01/01 18:27:55 | 001,220,200 | ---- | C] (DTS) -- C:\Windows\System32\DTSBoostDLL.dll
[2014/01/01 18:27:55 | 000,654,952 | ---- | C] (DTS) -- C:\Windows\System32\DTSBassEnhancementDLL.dll
[2014/01/01 18:27:55 | 000,458,344 | ---- | C] (DTS) -- C:\Windows\System32\DTSNeoPCDLL.dll
[2014/01/01 18:27:55 | 000,389,736 | ---- | C] (DTS) -- C:\Windows\System32\DTSGainCompensatorDLL.dll
[2014/01/01 18:27:55 | 000,375,400 | ---- | C] (DTS) -- C:\Windows\System32\DTSLimiterDLL.dll
[2014/01/01 18:27:55 | 000,218,728 | ---- | C] (DTS) -- C:\Windows\System32\DTSGFXAPONS.dll
[2014/01/01 18:27:55 | 000,218,728 | ---- | C] (DTS) -- C:\Windows\System32\DTSGFXAPO.dll
[2014/01/01 18:27:55 | 000,218,216 | ---- | C] (DTS) -- C:\Windows\System32\DTSLFXAPO.dll
[2014/01/01 18:27:53 | 000,000,000 | -H-D | C] -- C:\Program Files\Temp
[2014/01/01 18:27:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2014/01/01 18:26:58 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2014/01/01 18:26:56 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2014/01/01 18:25:59 | 000,000,000 | ---D | C] -- C:\Program Files\AMD APP
[2014/01/01 18:25:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2014/01/01 18:25:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
[2014/01/01 18:24:59 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
[2014/01/01 18:24:14 | 000,050,176 | ---- | C] (AMD) -- C:\Windows\System32\coinst.dll
[2014/01/01 18:24:06 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2014/01/01 18:24:03 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2014/01/01 18:23:53 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2014/01/01 18:16:45 | 000,000,000 | R--D | C] -- C:\Users\ba nous\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2014/01/01 18:16:45 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Searches
[2014/01/01 18:16:45 | 000,000,000 | R--D | C] -- C:\Users\ba nous\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2014/01/01 18:16:44 | 000,000,000 | -H-D | C] -- C:\Users\ba nous\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2014/01/01 18:16:35 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Identities
[2014/01/01 18:16:33 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Contacts
[2014/01/01 18:16:24 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\VirtualStore
[2014/01/01 18:16:20 | 000,000,000 | --SD | C] -- C:\Users\ba nous\AppData\Roaming\Microsoft
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Videos
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Saved Games
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Pictures
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Music
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Links
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Favorites
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Downloads
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Documents
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\Desktop
[2014/01/01 18:16:20 | 000,000,000 | R--D | C] -- C:\Users\ba nous\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Voisinage réseau
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Voisinage d'impression
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\AppData\Local\Temporary Internet Files
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\SendTo
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Recent
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Modèles
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Documents\Mes vidéos
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Documents\Mes images
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Mes documents
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Menu Démarrer
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Documents\Ma musique
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Local Settings
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\AppData\Local\Historique
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Cookies
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\Application Data
[2014/01/01 18:16:20 | 000,000,000 | -HSD | C] -- C:\Users\ba nous\AppData\Local\Application Data
[2014/01/01 18:16:20 | 000,000,000 | -H-D | C] -- C:\Users\ba nous\AppData
[2014/01/01 18:16:20 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\Temp
[2014/01/01 18:16:20 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Local\Microsoft
[2014/01/01 18:16:20 | 000,000,000 | ---D | C] -- C:\Users\ba nous\AppData\Roaming\Media Center Programs
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\ProgramData\Modèles
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mes vidéos
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Mes images
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Démarrer
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Ma musique
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\Program Files\Fichiers communs
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoris
[2014/01/01 18:16:06 | 000,000,000 | -HSD | C] -- C:\ProgramData\Bureau
[2014/01/01 17:59:36 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2014/01/01 17:56:46 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2014/01/01 17:55:17 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2014/01/01 17:43:22 | 000,000,000 | ---D | C] -- C:\Windows.old
========== Files - Modified Within 30 Days ==========
[2014/01/04 01:09:00 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/01/04 01:04:00 | 000,001,058 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/01/04 00:46:36 | 000,001,922 | ---- | M] () -- C:\Windows\tasks\Plus-HD-3.5-chromeinstaller.job
[2014/01/04 00:41:52 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\SoftwareUpdateTaskMachineUA.job
[2014/01/04 00:41:37 | 000,002,052 | ---- | M] () -- C:\Windows\tasks\Plus-HD-3.5-firefoxinstaller.job
[2014/01/04 00:41:36 | 000,001,288 | ---- | M] () -- C:\Windows\tasks\Plus-HD-3.5-updater.job
[2014/01/04 00:41:36 | 000,001,190 | ---- | M] () -- C:\Windows\tasks\Plus-HD-3.5-codedownloader.job
[2014/01/04 00:41:36 | 000,001,090 | ---- | M] () -- C:\Windows\tasks\Plus-HD-3.5-enabler.job
[2014/01/04 00:41:28 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/01/03 23:33:00 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\SoftwareUpdateTaskMachineCore.job
[2014/01/03 23:11:03 | 000,000,666 | ---- | M] () -- C:\Windows\tasks\hpwebreg_CN13B3J1K705D1.job
[2014/01/03 19:04:00 | 000,001,054 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/01/03 14:06:37 | 000,001,043 | ---- | M] () -- C:\Users\ba nous\Desktop\Cheat Engine.lnk
[2014/01/03 14:04:57 | 000,000,391 | ---- | M] () -- C:\Users\ba nous\Desktop\MySearchDial.url
[2014/01/03 14:04:57 | 000,000,386 | ---- | M] () -- C:\Users\ba nous\Desktop\FREE Games.url
[2014/01/03 14:04:50 | 000,351,124 | ---- | M] () -- C:\Users\ba nous\AppData\Local\mysearchdial-speeddial.crx
[2014/01/03 08:46:00 | 000,021,888 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/01/03 08:46:00 | 000,021,888 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/01/03 08:44:36 | 000,704,242 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
[2014/01/03 08:44:36 | 000,615,810 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014/01/03 08:44:36 | 000,130,548 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
[2014/01/03 08:44:36 | 000,106,190 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2014/01/03 08:39:14 | 1810,505,728 | -HS- | M] () -- C:\hiberfil.sys
[2014/01/02 03:01:57 | 000,016,284 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2014/01/02 02:56:43 | 000,000,000 | ---- | M] () -- C:\END
[2014/01/02 00:45:15 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2014/01/02 00:02:17 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/01/01 23:39:22 | 000,002,401 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/01/01 23:39:21 | 000,002,425 | ---- | M] () -- C:\Users\ba nous\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/01/01 23:39:21 | 000,001,625 | ---- | M] () -- C:\Users\ba nous\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/01/01 23:38:56 | 000,000,030 | ---- | M] () -- C:\Windows\System32\${LOGFILE}
[2014/01/01 23:20:02 | 000,294,456 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2014/01/01 21:48:18 | 000,001,055 | ---- | M] () -- C:\Users\Public\Desktop\HP Photo Creations.lnk
[2014/01/01 21:47:50 | 000,002,236 | ---- | M] () -- C:\Users\Public\Desktop\HP Deskjet 2050 J510 series.lnk
[2014/01/01 21:47:50 | 000,001,194 | ---- | M] () -- C:\Users\Public\Desktop\Achat de consommables - HP Deskjet 2050 J510 series.lnk
[2014/01/01 21:47:50 | 000,001,189 | ---- | M] () -- C:\Users\Public\Desktop\HP Deskjet 2050 J510 series Scan.lnk
[2014/01/01 21:34:08 | 000,001,034 | ---- | M] () -- C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
[2014/01/01 20:54:54 | 000,002,049 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2014/01/01 19:33:06 | 000,000,030 | ---- | M] () -- C:\Users\ba nous\AppData\Roaming\WB.CFG
[2014/01/01 18:54:17 | 000,001,912 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014/01/01 18:28:53 | 000,002,029 | ---- | M] () -- C:\Users\Public\Desktop\Super-Charger.lnk
[2014/01/01 18:01:21 | 000,206,462 | ---- | M] () -- C:\Windows\System32\license.rtf
[2014/01/01 17:59:56 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
========== Files Created - No Company Name ==========
[2014/01/03 14:06:37 | 000,001,043 | ---- | C] () -- C:\Users\ba nous\Desktop\Cheat Engine.lnk
[2014/01/03 14:05:05 | 000,351,124 | ---- | C] () -- C:\Users\ba nous\AppData\Local\mysearchdial-speeddial.crx
[2014/01/02 03:01:57 | 000,016,284 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2014/01/02 02:56:43 | 000,000,000 | ---- | C] () -- C:\END
[2014/01/02 00:45:15 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2014/01/01 23:38:56 | 000,000,030 | ---- | C] () -- C:\Windows\System32\${LOGFILE}
[2014/01/01 23:36:46 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/01/01 23:36:45 | 000,001,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014/01/01 23:28:50 | 000,000,908 | ---- | C] () -- C:\Windows\tasks\SoftwareUpdateTaskMachineUA.job
[2014/01/01 23:28:42 | 000,000,904 | ---- | C] () -- C:\Windows\tasks\SoftwareUpdateTaskMachineCore.job
[2014/01/01 23:27:50 | 000,001,002 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/01/01 21:56:13 | 000,000,666 | ---- | C] () -- C:\Windows\tasks\hpwebreg_CN13B3J1K705D1.job
[2014/01/01 21:48:18 | 000,001,055 | ---- | C] () -- C:\Users\Public\Desktop\HP Photo Creations.lnk
[2014/01/01 21:47:50 | 000,002,236 | ---- | C] () -- C:\Users\Public\Desktop\HP Deskjet 2050 J510 series.lnk
[2014/01/01 21:47:50 | 000,001,194 | ---- | C] () -- C:\Users\Public\Desktop\Achat de consommables - HP Deskjet 2050 J510 series.lnk
[2014/01/01 21:47:50 | 000,001,189 | ---- | C] () -- C:\Users\Public\Desktop\HP Deskjet 2050 J510 series Scan.lnk
[2014/01/01 21:34:08 | 000,001,034 | ---- | C] () -- C:\Users\Public\Desktop\OpenOffice 4.0.1.lnk
[2014/01/01 20:54:54 | 000,002,049 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2014/01/01 19:51:22 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2014/01/01 19:33:05 | 000,000,030 | ---- | C] () -- C:\Users\ba nous\AppData\Roaming\WB.CFG
[2014/01/01 18:59:03 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2014/01/01 18:54:17 | 000,001,912 | ---- | C] () -- C:\Windows\epplauncher.mif
[2014/01/01 18:53:52 | 000,002,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2014/01/01 18:51:45 | 000,002,425 | ---- | C] () -- C:\Users\ba nous\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/01/01 18:51:45 | 000,002,401 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/01/01 18:50:19 | 000,001,058 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/01/01 18:50:17 | 000,001,054 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/01/01 18:34:34 | 000,001,288 | ---- | C] () -- C:\Windows\tasks\Plus-HD-3.5-updater.job
[2014/01/01 18:34:27 | 000,001,090 | ---- | C] () -- C:\Windows\tasks\Plus-HD-3.5-enabler.job
[2014/01/01 18:34:19 | 000,001,190 | ---- | C] () -- C:\Windows\tasks\Plus-HD-3.5-codedownloader.job
[2014/01/01 18:34:12 | 000,002,052 | ---- | C] () -- C:\Windows\tasks\Plus-HD-3.5-firefoxinstaller.job
[2014/01/01 18:34:00 | 000,001,922 | ---- | C] () -- C:\Windows\tasks\Plus-HD-3.5-chromeinstaller.job
[2014/01/01 18:33:48 | 000,000,391 | ---- | C] () -- C:\Users\ba nous\Desktop\MySearchDial.url
[2014/01/01 18:33:48 | 000,000,386 | ---- | C] () -- C:\Users\ba nous\Desktop\FREE Games.url
[2014/01/01 18:28:52 | 000,002,029 | ---- | C] () -- C:\Users\Public\Desktop\Super-Charger.lnk
[2014/01/01 18:27:04 | 000,080,416 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll
[2014/01/01 18:24:14 | 000,031,696 | ---- | C] () -- C:\Windows\System32\atiapfxx.blb
[2014/01/01 18:24:14 | 000,020,692 | ---- | C] () -- C:\Windows\atiogl.xml
[2014/01/01 18:24:14 | 000,001,035 | ---- | C] () -- C:\Windows\System32\atipblag.dat
[2014/01/01 18:18:41 | 000,001,625 | ---- | C] () -- C:\Users\ba nous\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/01/01 18:16:46 | 000,001,631 | ---- | C] () -- C:\Users\ba nous\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014/01/01 18:16:20 | 000,000,290 | ---- | C] () -- C:\Users\ba nous\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2014/01/01 18:16:20 | 000,000,272 | ---- | C] () -- C:\Users\ba nous\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2014/01/01 18:01:05 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2014/01/01 18:00:56 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2014/01/01 17:59:56 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
========== ZeroAccess Check ==========
[2009/07/14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 22:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2014/01/01 23:28:02 | 000,000,000 | ---D | M] -- C:\Users\ba nous\AppData\Roaming\IminentToolbar
[2014/01/03 14:05:06 | 000,000,000 | ---D | M] -- C:\Users\ba nous\AppData\Roaming\mysearchdial
[2014/01/03 14:06:25 | 000,000,000 | ---D | M] -- C:\Users\ba nous\AppData\Roaming\OpenCandy
[2014/01/01 21:35:02 | 000,000,000 | ---D | M] -- C:\Users\ba nous\AppData\Roaming\OpenOffice
[2014/01/01 23:48:13 | 000,000,000 | ---D | M] -- C:\Users\ba nous\AppData\Roaming\Systweak
========== Purity Check ==========
< End of report >