cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.2.25.60 Par Nicolas Coolman (2016/02/25)
~ Démarré par Hakim.dz (Administrator) (2016/03/02 18:59:14)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\Hakim.dz\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Hakim.dz\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Pro, 32-bit (Build 10586)

---\\ Navigateurs Internet (3) - 0s
MFIE: Mozilla Firefox 44.0.2 (x86 fr)
OPIE: Opera 35.0.2066.37
MSIE: Internet Explorer v11.103.10586.0

---\\ Informations sur les produits Windows (7) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, VOLUME_MAK channel
~ Windows Partial Key : 6MT6Y
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ Logiciels de protection (3) - 14s
ESET Smart Security v9.0.349.14
Malwarebytes Anti-Malware version 2.2.0.1024
Windows Defender (Deactivate)

---\\ Logiciels d'optimisation (1) - 15s
CCleaner v5.14

---\\ Surveillance de Logiciels (1) - 15s
Adobe Flash Player 20 PPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 4 Stepping 1, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2096.372 MB (31% free)
System Restore: Activé (Enable)
System drive C: has 62 GB () free of 116 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: HAKIM_PC
~ User Name: Hakim.dz
~ Logged in as Administrator

---\\ Enumération des unités disques (5) - 0s
~ Drive C: has 62 GB free of 116 GB (System)
~ Drive D: has 8 GB free of 199 GB
~ Drive E: has 8 GB free of 52 GB
~ Drive F: has 20 GB free of 116 GB
~ Drive H: has 105 GB free of 105 GB

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (24) - 2s
[MD5.FCBCED2A237DCD7EF86CED551B731742] - 29/01/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4064320] =>.Microsoft Windows®
[MD5.2DBCA4E4BB09FF7F8F171CC364DFAF67] - 30/10/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [53760] =>.Microsoft Corporation
[MD5.DE3A10032AE77199B1E7FBC8D6E21636] - 30/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [192200] =>.Microsoft Windows Publisher®
[MD5.FBF8BBB141504F661FA7F6864D95C16B] - 27/01/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2230784] =>.Microsoft Corporation
[MD5.66FC7843E349C68F424EB79E0A17D8D2] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [493056] =>.Microsoft Corporation
[MD5.97FA4FB31B988CFA3E8F39788BC16562] - 30/10/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [419328] =>.Microsoft Corporation
[MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [535088] =>.Microsoft Windows®
[MD5.09F38BE73FDD29C6C20ED33AD349B991] - 30/10/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.0E423A5854E1265F3B6D27332601355F] - 28/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [471392] =>.Microsoft Windows®
[MD5.845E9A40B9B3CAD20B5EE45A2A58EE11] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [23392] =>.Microsoft Windows®
[MD5.40FF3DCC427730779DDF301A0F9FC0E1] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74752] =>.Microsoft Corporation
[MD5.568DF0072AD005D29D6E987698C8225A] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [130560] =>.Microsoft Corporation
[MD5.903EC9934C38FA7357C1DC83339A0D55] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [113664] =>.Microsoft Corporation
[MD5.1CB5E8AA58EE45207109AD07D50BB7D2] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [68096] =>.Microsoft Corporation
[MD5.14DDBB0CBE11A736C089A4F2813A5EDF] - 30/10/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [90624] =>.Microsoft Corporation
[MD5.F97C1D68DE39952F880F98CFCE0DAF1A] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [124416] =>.Microsoft Corporation
[MD5.95848668B7DB1638D83391CE56E2B517] - 30/10/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [381272] =>.Microsoft Windows®
[MD5.1CA44BC32773FCB9FE4ADAA077AB642E] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [211968] =>.Microsoft Corporation
[MD5.67CC605D5DDF5D9DC8BF5FBED1FF89B7] - 01/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [1821024] =>.Microsoft Windows®
[MD5.B69B323395ABC1303EB9F69E9B8460F8] - 30/10/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [81408] =>.Microsoft Corporation
[MD5.BE374F3DBF29B4094C25679081B22D79] - 30/10/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [80896] =>.Microsoft Corporation
[MD5.288DA2E52BFE6A90937FF9A994FA56ED] - 30/10/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [132608] =>.Microsoft Corporation
[MD5.1683BCB69B9950CD8C97865F3EC6781E] - 28/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [95072] =>.Microsoft Windows®
[MD5.2E5522E831E616B37F06908B7B56C3B3] - 30/10/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [349536] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (12) - 7s
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) . (.Acronis - Acronis Scheduler 2.) - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe =>.Acronis International GmbH®
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher®
O23 - Service: DNSExitService (DNSExitService) . (...) - C:\Program Files\DNSExit IP Updater\DNSExitService.exe
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
O23 - Service: FLService (FLService) . (.New Softwares.net - Service Application.) - C:\Windows\System32\WinFLService.exe {1121122E787653A63021DDD46D487F7F3B5B}
O23 - Service: MBAMScheduler (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
O23 - Service: MBAMService (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: Mobizen plugin (Mobizen plugin) . (.Rsupport Corporation - Mobizen service.) - C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe =>.Rsupport Co., Ltd.®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Acronis Sync Agent Service (syncagentsrv) . (.Acronis - TrueImage Sync Agent Service.) - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe =>.Acronis International GmbH®
O23 - Service: TechSmith Uploader Service (TechSmith Uploader Service) . (.TechSmith Corporation - TechSmith Uploader Service.) - C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe =>.TechSmith Corporation
O23 - Service: Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com - Wise BootTime Service.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Ltd.®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 84s

SR - Auto [14/08/2014] [ 860312] Acronis Scheduler2 Service (AcrSch2Svc) . (.Acronis.) - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe =>.Acronis International GmbH®
SS - Demand [14/02/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [16/12/2015] [ 223216] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher®
SR - Auto [05/11/2009] [ 45056] DNSExitService (DNSExitService) . (...) - C:\Program Files\DNSExit IP Updater\DNSExitService.exe
SR - Auto [19/11/2015] [ 1983424] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
SR - Auto [10/08/2015] [ 93064] FLService (FLService) . (.New Softwares.net.) - C:\Windows\System32\WinFLService.exe {1121122E787653A63021DDD46D487F7F3B5B}
SS - Demand [22/07/2015] [ 509408] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files\Common Files\LENOVO\easyplussdk\bin\EPHotspot.exe =>.LENOVO®
SR - Auto [05/10/2015] [ 1513784] MBAMScheduler (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
SR - Auto [05/10/2015] [ 1135416] MBAMService (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Auto [29/12/2015] [ 3353872] Mobizen plugin (Mobizen plugin) . (.Rsupport Corporation.) - C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe =>.Rsupport Co., Ltd.®
SS - Demand [11/02/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Auto [25/06/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [13/09/2014] [ 6856336] Acronis Sync Agent Service (syncagentsrv) . (.Acronis.) - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe =>.Acronis International GmbH®
SR - Auto [26/01/2015] [ 3408384] TechSmith Uploader Service (TechSmith Uploader Service) . (.TechSmith Corporation.) - C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe =>.TechSmith Corporation
SS - Auto [06/08/2015] [ 580144] Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Ltd.®
SS - Demand [12/08/2015] [ 13264] WiseHDInfo (WiseHDInfo) . (.wisecleaner.com.) - C:\Windows\WiseHDInfo32.dll =>.Lespeed Technology Ltd.®

---\\ Tâches planifiées en automatique (14) - 5s
[MD5.5925F7B74F6D668D1E390550D90FBA2F] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_20_0_0_306_pepper.exe [1163968] =>.Adobe Systems Incorporated®
[MD5.7FCC00F1AB44098D5FBDEDB2A9D5384A] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated®
[MD5.7E49CB7F9BB53542F2944A527BC4E24D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] =>.Piriform Ltd®
[MD5.00000000000000000000000000000000] [APT] [Driver Booster SkipUAC (Hakim.dz)] (...) -- C:\Program Files\IObit\Driver Booster\DriverBooster.exe (.not file.) [0]
[MD5.F72C9E2349DD7E855F7ABBB20F306395] [APT] [Opera scheduled Autoupdate 1439157088] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [704120] =>.Opera Software ASA®
[MD5.F72C9E2349DD7E855F7ABBB20F306395] [APT] [TechSmith Updater] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [704120] =>.Opera Software ASA®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job [1064] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier [4204] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] =>.Adobe Systems Incorporated®
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2862] =>.Piriform Ltd®
O39 - APT: Driver Booster SkipUAC (Hakim.dz) - (...) -- C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Hakim.dz) [3070] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: Opera scheduled Autoupdate 1439157088 - (.Opera Software.) -- C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1439157088 [3970] =>.Opera Software ASA®
O39 - APT: TechSmith Updater - (.Opera Software.) -- C:\WINDOWS\System32\Tasks\TechSmith Updater [3100] =>.Opera Software ASA®

---\\ Processus lancés (29) - 12s
[MD5.96A19820229EF943A1CCCCB7D19428D5] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983424] [PID.1420] =>.ESET, spol. s r.o.®
[MD5.19D471AF835F3ED0283A03E0277A4545] - (.Acronis - Acronis Scheduler 2.) -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [860312] [PID.2116] =>.Acronis International GmbH®
[MD5.BE2497FECD99DF61DFD839324B6A5F62] - (.Acronis - File Level CDP Manager Service.) -- C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [4017144] [PID.2124] =>.Acronis International GmbH®
[MD5.5F62CC1C0D788B06CEF3B2DDADEE4CC8] - (.New Softwares.net - Service Application.) -- C:\Windows\System32\WinFLService.exe [93064] [PID.2180] {1121122E787653A63021DDD46D487F7F3B5B}
[MD5.E54CF98F6A6CDAF0DE1C6685307AC4B5] - (...) -- C:\Program Files\DNSExit IP Updater\DNSExitService.exe [45056] [PID.2200]
[MD5.40C126CB15FAB7D6C66490DCA9C1AED2] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416] [PID.2376] =>.Malwarebytes Corporation®
[MD5.AB176B9E59C0435499D83047D84EDD59] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784] [PID.2384] =>.Malwarebytes Corporation®
[MD5.199B01E6C37E56261FEACC6D315A36AF] - (.Rsupport Corporation - Mobizen service.) -- C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe [3353872] [PID.2432] =>.Rsupport Co., Ltd.®
[MD5.439BD966130226F464DC15F55ABD266E] - (.TechSmith Corporation - TechSmith Uploader Service.) -- C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe [3408384] [PID.2728] =>.TechSmith Corporation
[MD5.6250CC260D6D35DCDB98CEA17378D1E2] - (.Acronis - TrueImage Sync Agent Service.) -- C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [6856336] [PID.968] =>.Acronis International GmbH®
[MD5.C5DA4C98AFD65A3451DC8D0E3C7E2082] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [223216] [PID.4288] =>.Microsoft Windows Hardware Compatibility Publisher®
[MD5.F1E6DD5362156FA7E969AB9168CAF860] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [553456] [PID.2352] =>.Microsoft Windows Hardware Compatibility Publisher®
[MD5.8BB7EC71029066CF86B2E674A68A816F] - (...) -- C:\Program Files\RSUPPORT\MobizenService\dat\adb.exe [1016104] [PID.8188] =>.Rsupport Co., Ltd.®
[MD5.2177F5B6C2172D6DA69C66528DDF7D5B] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5556424] [PID.7636] =>.ESET, spol. s r.o.®
[MD5.E21F66D454C3C549A64F619A82D773F1] - (.WiseCleaner.com - Wise Memory Optimizer.) -- C:\Program Files\Wise\Wise Memory Optimizer\WiseMemoryOptimzer.exe [1443352] [PID.4804] =>.Lespeed Technology Ltd.®
[MD5.BABBBDEF9DBB5E012EE5210FCB47C33B] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe [9832760] [PID.7712] =>.Malwarebytes Corporation®
[MD5.163E43BC69AE78F468024EC2133C94A8] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [594992] [PID.1640] =>.Oracle America, Inc.®
[MD5.CC436BB2A26391F3DEBE316F6FB0474F] - (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008] [PID.9512] =>.Microsoft Corporation®
[MD5.E90CD93D1D2E7D383252BF49C4900AF2] - (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe [275848] [PID.4852] {1121122E787653A63021DDD46D487F7F3B5B}
[MD5.32769CC5333CDEF270513E1B1203091C] - (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServ.exe [1238408] [PID.4580] {1121122E787653A63021DDD46D487F7F3B5B}
[MD5.7E49CB7F9BB53542F2944A527BC4E24D] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] [PID.3576] =>.Piriform Ltd®
[MD5.E3D991C8B9F7756538DE5C0A26647F65] - (.TechSmith Corporation - Snagit.) -- C:\Program Files\TechSmith\Snagit 12\Snagit32.exe [7432512] [PID.8912] =>.TechSmith Corporation®
[MD5.11C79E0D1A1B332B79D1A1402052A4D0] - (.TechSmith Corporation - Snagit RPC Helper.) -- C:\Program Files\TechSmith\Snagit 12\SnagPriv.exe [151872] [PID.6856] =>.TechSmith Corporation®
[MD5.0A1810F3CF866F67856C8A4E98194493] - (.TechSmith Corporation - TechSmith HTML Help Helper.) -- C:\Program Files\TechSmith\Snagit 12\TscHelp.exe [46080] [PID.2412] =>.TechSmith Corporation
[MD5.27954CE3A3AFDBC91C91303AF50FADF7] - (.TechSmith Corporation - Snagit Editor.) -- C:\Program Files\TechSmith\Snagit 12\snagiteditor.exe [8587072] [PID.5900] =>.TechSmith Corporation®
[MD5.904CA475F6ADD4080B0EA5144D23FDF1] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.8572]
[MD5.55614FB0B2A27A4467651F5FB1F9D3E5] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.201.11370.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe [16384] [PID.7424] =>.Copyright Microsoft Corporation
[MD5.3F5D16001092088D73090DA4F19CD3D2] - (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe [1907712] [PID.3516]
[MD5.E69EB056AC988D1F77F1D59AF4BEFE4E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Hakim.dz\ZHPDiag3.exe [2132480] [PID.5020] =>.Nicolas Coolman

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 4s
M0 - MFSP: prefs.js [Hakim.dz - u7lo3jcx.default] https://www.malwarebytes.org/restorebrowser//?type=hp&ts=1445451161&z=71cb356d260cecbd6dc5550g0zbzdw8zbw4gegfqbg&from=smt&uid=maxtorx6l300s0_l61be2wg
P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\ipinfo@hidemyass.com.xpi
P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\jid0-zXo3XFGyiDalgkeEO4UYJTUwo2I@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\searchplugins\bing-.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - EXT: (.Microsoft Corporation - Bing Search.) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\bingsearch.full@microsoft.com =>.Microsoft Corporation
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_20_0_0_306.dll =>.Adobe Systems Incorporated

---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s
B2 - EXT: [Opera Stable] C:\Users\Hakim.dz\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (2) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 1s
~ Le fichier hôte est sain (The hosts file is clean) (30)

---\\ Browser Helper Object de navigateur (BHO) (6) - 0s
O2 - BHO: bteagleget.com - {1E871FF8-029C-4732-8AA7-39E3D3872057} . (.EagleGet.com - IEGrab.) -- C:\Program Files\EagleGet\eagleSniffer.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Applications lancées au démarrage du système (18) - 4s
O4 - HKLM\..\Run: [Acronis Scheduler2 Service] . (.Acronis - Acronis Scheduler Helper.) -- C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe =>.Acronis International GmbH®
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [FLBackup] . (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe {1121122E787653A63021DDD46D487F7F3B5B}
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [FLBackup] . (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe {1121122E787653A63021DDD46D487F7F3B5B}
O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe

---\\ Raccourcis Global Startup (116) - 41s
O4 - GS\Desktop [Administrateur]: 2015_Anis+.lnk . (...) F:\Hacker_pc\2015_Anis+.txt
O4 - GS\Desktop [Administrateur]: Admin FiNd3r.lnk . (.Chaos Theory - Security Reaserch - 1337 Admin P4Ge FiNd3r by BK.) F:\Hacker_web\Logiciel_Hack\1337_Admin_P4Ge_FiNd3r\Admin FiNd3r.exe
O4 - GS\Desktop [Administrateur]: AIDA64 Extreme.lnk . (.FinalWire Ltd. - AIDA64 Extreme.) C:\Program Files\FinalWire\AIDA64 Extreme\aida64.exe =>.FinalWire Kft.®
O4 - GS\Desktop [Administrateur]: ALEX-PC_Alexander.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ALEX-PC_Alexander_24F258C3%5CPASS.txt
O4 - GS\Desktop [Administrateur]: Anis+2015.lnk . (...) F:\Hacker_pc\Anis+2015.txt
O4 - GS\Desktop [Administrateur]: Anis+2016.lnk . (...) F:\Hacker_pc\Anis+2016.txt
O4 - GS\Desktop [Administrateur]: Anis_2014.lnk . (...) F:\Hacker_pc\Anis_2014.txt
O4 - GS\Desktop [Administrateur]: Anis_2015.22.06.lnk . (...) F:\Hacker_pc\Anis_2015.22.06M.txt
O4 - GS\Desktop [Administrateur]: Anis_2015.lnk . (...) F:\Hacker_pc\Anis_2015.txt
O4 - GS\Desktop [Administrateur]: BH2002.lnk . (...) D:\Jeux_exe\المقاتل 2002\المقاتل 2002\BH2002.exe
O4 - GS\Desktop [Administrateur]: EVEREST Ultimate Edition.lnk . (.Lavalys, Inc. - EVEREST Ultimate Edition.) C:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe =>.LAVALYS®
O4 - GS\Desktop [Administrateur]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Open Source Developer, Tim Kosse®
O4 - GS\Desktop [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao®
O4 - GS\Desktop [Administrateur]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe
O4 - GS\Desktop [Administrateur]: Hack.lnk . (...) F:\Hacker_web\Hack.txt
O4 - GS\Desktop [Administrateur]: Hack_2.lnk . (...) F:\Hacker_web\Hack_2.txt
O4 - GS\Desktop [Administrateur]: Hakim_Shells-2014.lnk . (...) F:\Hacker_web\Hakim_Shells-2014.txt
O4 - GS\Desktop [Administrateur]: intellitamper.lnk . (.LaCaveProds - http://www.chez.com/cavemania - IntelliTamper.) C:\Program Files\IntelliTamper\intellitamper.exe
O4 - GS\Desktop [Administrateur]: Jardin_L.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alhorouf\اسطوانة حديقة الحروف\Jardin_L.EXE
O4 - GS\Desktop [Administrateur]: Jardin_N.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alalrkam\اسطوانة حديقة الأرقام\Jardin_N.EXE
O4 - GS\Desktop [Administrateur]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {106CB8E1A76002B367F8EC4EAD341212}
O4 - GS\Desktop [Administrateur]: Kodi.lnk . (.XBMC-Foundation - Kodi.) C:\Program Files\Kodi\Kodi.exe =>.XBMC-Foundation
O4 - GS\Desktop [Administrateur]: LiLi USB Creator.lnk . (.CopyLeft Thibaut Lauziere a.k.a Slÿm - Easily create a Linux Live USB.) C:\Program Files\LinuxLive USB Creator\LiLi USB Creator.exe
O4 - GS\Desktop [Administrateur]: Microwork.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\Microwork.txt
O4 - GS\Desktop [Administrateur]: mio.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\OSCAR_OSCAR-A_C49DB124%5CDownloads\mio (2).txt
O4 - GS\Desktop [Administrateur]: my passwords.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\MACHIT-PC_LocalAdmin_28D7E31D%5CDownloads\my passwords.txt
O4 - GS\Desktop [Administrateur]: New Text Document.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ROMEL-PC_Romel_28FEF939%5CDownloads\New Text Document (2).txt
O4 - GS\Desktop [Administrateur]: PASS.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.7d\nj_users\NIDOUGLAS-M_Nidouglas_CBA9ED7_Ha\PASS.txt
O4 - GS\Desktop [Administrateur]: PenTester.lnk . (...) F:\Hacker_web\Logiciel_Hack\Daman-dz_all\Pentester\PenTester.exe
O4 - GS\Desktop [Administrateur]: Photoshop2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrateur]: Process Explorer.lnk . (.Sysinternals - www.sysinternals.com - Sysinternals Process Explorer.) E:\Logiciel_PC\procexp.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: Qurany.lnk . (.www.sa3eka.com - Qurany.) E:\Logiciel_PC\Qurany1.3\Qurany1.3\Qurany.exe
O4 - GS\Desktop [Administrateur]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software
O4 - GS\Desktop [Administrateur]: rufus-2.7.lnk . (.Akeo Consulting (http://akeo.ie) - Rufus.) D:\All_Windows\USB Creator Tool\rufus-2.7.exe =>.Akeo Consulting®
O4 - GS\Desktop [Administrateur]: Subway Surfers.lnk . (...) C:\Program Files\Subway Surfers\Subway_Surfers.exe
O4 - GS\Desktop [Administrateur]: work dairy.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\work dairy.txt
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Hakim.dz\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: FlashPeak SlimBrowser.lnk . (.FlashPeak Inc. - FlashPeak SlimBrowser.) C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc.
O4 - GS\Quicklaunch [Administrateur]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe
O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao®
O4 - GS\sendTo [Administrateur]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: VirusTotal.lnk . (...) C:\Program Files\VirusTotalUploader2\VirusTotalUploader2.2.exe
O4 - GS\TaskBar [Administrateur]: NowSmart ARW.lnk . (.NowSmart Studio - NowSmart ARW.) C:\Program Files\ARW5\arw5.exe {7EA06A38F10DA929794950EB7FA2E2E9}
O4 - GS\TaskBar [Administrateur]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\Desktop [Hakim.dz]: 2015_Anis+.lnk . (...) F:\Hacker_pc\2015_Anis+.txt
O4 - GS\Desktop [Hakim.dz]: Admin FiNd3r.lnk . (.Chaos Theory - Security Reaserch - 1337 Admin P4Ge FiNd3r by BK.) F:\Hacker_web\Logiciel_Hack\1337_Admin_P4Ge_FiNd3r\Admin FiNd3r.exe
O4 - GS\Desktop [Hakim.dz]: AIDA64 Extreme.lnk . (.FinalWire Ltd. - AIDA64 Extreme.) C:\Program Files\FinalWire\AIDA64 Extreme\aida64.exe =>.FinalWire Kft.®
O4 - GS\Desktop [Hakim.dz]: ALEX-PC_Alexander.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ALEX-PC_Alexander_24F258C3%5CPASS.txt
O4 - GS\Desktop [Hakim.dz]: Anis+2015.lnk . (...) F:\Hacker_pc\Anis+2015.txt
O4 - GS\Desktop [Hakim.dz]: Anis+2016.lnk . (...) F:\Hacker_pc\Anis+2016.txt
O4 - GS\Desktop [Hakim.dz]: Anis_2014.lnk . (...) F:\Hacker_pc\Anis_2014.txt
O4 - GS\Desktop [Hakim.dz]: Anis_2015.22.06.lnk . (...) F:\Hacker_pc\Anis_2015.22.06M.txt
O4 - GS\Desktop [Hakim.dz]: Anis_2015.lnk . (...) F:\Hacker_pc\Anis_2015.txt
O4 - GS\Desktop [Hakim.dz]: BH2002.lnk . (...) D:\Jeux_exe\المقاتل 2002\المقاتل 2002\BH2002.exe
O4 - GS\Desktop [Hakim.dz]: EVEREST Ultimate Edition.lnk . (.Lavalys, Inc. - EVEREST Ultimate Edition.) C:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe =>.LAVALYS®
O4 - GS\Desktop [Hakim.dz]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Open Source Developer, Tim Kosse®
O4 - GS\Desktop [Hakim.dz]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao®
O4 - GS\Desktop [Hakim.dz]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe
O4 - GS\Desktop [Hakim.dz]: Hack.lnk . (...) F:\Hacker_web\Hack.txt
O4 - GS\Desktop [Hakim.dz]: Hack_2.lnk . (...) F:\Hacker_web\Hack_2.txt
O4 - GS\Desktop [Hakim.dz]: Hakim_Shells-2014.lnk . (...) F:\Hacker_web\Hakim_Shells-2014.txt
O4 - GS\Desktop [Hakim.dz]: intellitamper.lnk . (.LaCaveProds - http://www.chez.com/cavemania - IntelliTamper.) C:\Program Files\IntelliTamper\intellitamper.exe
O4 - GS\Desktop [Hakim.dz]: Jardin_L.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alhorouf\اسطوانة حديقة الحروف\Jardin_L.EXE
O4 - GS\Desktop [Hakim.dz]: Jardin_N.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alalrkam\اسطوانة حديقة الأرقام\Jardin_N.EXE
O4 - GS\Desktop [Hakim.dz]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {106CB8E1A76002B367F8EC4EAD341212}
O4 - GS\Desktop [Hakim.dz]: Kodi.lnk . (.XBMC-Foundation - Kodi.) C:\Program Files\Kodi\Kodi.exe =>.XBMC-Foundation
O4 - GS\Desktop [Hakim.dz]: LiLi USB Creator.lnk . (.CopyLeft Thibaut Lauziere a.k.a Slÿm - Easily create a Linux Live USB.) C:\Program Files\LinuxLive USB Creator\LiLi USB Creator.exe
O4 - GS\Desktop [Hakim.dz]: Microwork.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\Microwork.txt
O4 - GS\Desktop [Hakim.dz]: mio.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\OSCAR_OSCAR-A_C49DB124%5CDownloads\mio (2).txt
O4 - GS\Desktop [Hakim.dz]: my passwords.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\MACHIT-PC_LocalAdmin_28D7E31D%5CDownloads\my passwords.txt
O4 - GS\Desktop [Hakim.dz]: New Text Document.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ROMEL-PC_Romel_28FEF939%5CDownloads\New Text Document (2).txt
O4 - GS\Desktop [Hakim.dz]: PASS.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.7d\nj_users\NIDOUGLAS-M_Nidouglas_CBA9ED7_Ha\PASS.txt
O4 - GS\Desktop [Hakim.dz]: PenTester.lnk . (...) F:\Hacker_web\Logiciel_Hack\Daman-dz_all\Pentester\PenTester.exe
O4 - GS\Desktop [Hakim.dz]: Photoshop2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Hakim.dz]: Process Explorer.lnk . (.Sysinternals - www.sysinternals.com - Sysinternals Process Explorer.) E:\Logiciel_PC\procexp.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Hakim.dz]: Qurany.lnk . (.www.sa3eka.com - Qurany.) E:\Logiciel_PC\Qurany1.3\Qurany1.3\Qurany.exe
O4 - GS\Desktop [Hakim.dz]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software
O4 - GS\Desktop [Hakim.dz]: rufus-2.7.lnk . (.Akeo Consulting (http://akeo.ie) - Rufus.) D:\All_Windows\USB Creator Tool\rufus-2.7.exe =>.Akeo Consulting®
O4 - GS\Desktop [Hakim.dz]: Subway Surfers.lnk . (...) C:\Program Files\Subway Surfers\Subway_Surfers.exe
O4 - GS\Desktop [Hakim.dz]: work dairy.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\work dairy.txt
O4 - GS\Desktop [Hakim.dz]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Hakim.dz\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Hakim.dz]: FlashPeak SlimBrowser.lnk . (.FlashPeak Inc. - FlashPeak SlimBrowser.) C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc.
O4 - GS\Quicklaunch [Hakim.dz]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe
O4 - GS\sendTo [Hakim.dz]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao®
O4 - GS\sendTo [Hakim.dz]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software
O4 - GS\sendTo [Hakim.dz]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Hakim.dz]: VirusTotal.lnk . (...) C:\Program Files\VirusTotalUploader2\VirusTotalUploader2.2.exe
O4 - GS\TaskBar [Hakim.dz]: NowSmart ARW.lnk . (.NowSmart Studio - NowSmart ARW.) C:\Program Files\ARW5\arw5.exe {7EA06A38F10DA929794950EB7FA2E2E9}
O4 - GS\TaskBar [Hakim.dz]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\CommonDesktop [Public]: Acronis True Image 2015.lnk . (.Acronis - Acronis True Image.) C:\Program Files\Acronis\TrueImageHome\TrueImageLauncher.exe =>.Acronis International GmbH®
O4 - GS\CommonDesktop [Public]: Advanced IP Scanner.lnk . (.Famatech Corp. - Advanced IP Scanner.) C:\Program Files\Advanced IP Scanner\advanced_ip_scanner.exe =>.Famatech Corp.®
O4 - GS\CommonDesktop [Public]: ARWizard.lnk . (.NowSmart Studio - NowSmart ARW.) C:\Program Files\ARW5\arw5.exe {7EA06A38F10DA929794950EB7FA2E2E9}
O4 - GS\CommonDesktop [Public]: Camtasia Studio 8.lnk . (.TechSmith Corporation - Camtasia Studio.) C:\Program Files\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe =>.TechSmith Corporation®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Condition Zero.lnk . (.Valve - Condition Zero Launcher.) C:\Program Files\RYS PLANET\Condition zero\czero.exe =>.Valve
O4 - GS\CommonDesktop [Public]: DNSExit IP Updater.lnk . (.DNSExit - DNSExit IP Updater.) C:\Program Files\DNSExit IP Updater\ipupdater.exe
O4 - GS\CommonDesktop [Public]: Doom 3.lnk . (.id Software - DOOM 3.) C:\Program Files\Doom 3\doom3.exe =>.ID Software
O4 - GS\CommonDesktop [Public]: EagleGet.lnk . (.EagleGet.com - EagleGet Free Downloader.) C:\Program Files\EagleGet\EagleGet.exe
O4 - GS\CommonDesktop [Public]: EaseUS Partition Master 9.3.0.lnk . (.EaseUS - EaseUS Partition Master Loader Application.) C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\epm0.exe =>.EaseUS
O4 - GS\CommonDesktop [Public]: EasyBCD 2.2.lnk . (.NeoSmart Technologies - EasyBCD.) C:\Program Files\NeoSmart Technologies\EasyBCD\EasyBCD.exe =>.NeoSmart Technologies®
O4 - GS\CommonDesktop [Public]: ESET Protection des transactions bancaires.lnk . (.ESET - ESET command line interface.) C:\Program Files\ESET\ESET Smart Security\ecmd.exe =>.ESET, spol. s r.o.®
O4 - GS\CommonDesktop [Public]: FlashPeak SlimBrowser.lnk . (.FlashPeak Inc. - FlashPeak SlimBrowser.) C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc.
O4 - GS\CommonDesktop [Public]: Folder Lock.lnk . (.New Softwares.net. - Folder Lock Application.) C:\Program Files\NewSoftware's\Folder Lock\Folder Lock.exe {1121122E787653A63021DDD46D487F7F3B5B}
O4 - GS\CommonDesktop [Public]: Kingo ROOT.lnk . (.Kingosoft - Kingo Root.) C:\Program Files\Kingo ROOT\Kingo Root.exe {4BA0711A8EBE6D481E1846163BA3D2FD}
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: MegaDownloader.lnk . (.Copyright © 2015 - MegaDownloader.) C:\Program Files\MegaDownloader\MegaDownloader.exe
O4 - GS\CommonDesktop [Public]: Mobizen.lnk . (.RSUPPORT Co., Ltd. - Rsupport Mobizen.) C:\Program Files\RSUPPORT\Mobizen\Mobizen.exe =>.Rsupport Co., Ltd.®
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) C:\Program Files\Notepad++\notepad++.exe =>.Don HO don.h@free.fr
O4 - GS\CommonDesktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\CommonDesktop [Public]: SHAREit.lnk . (.Lenovo - SHAREit.) C:\Program Files\Lenovo\SHAREit\Shareit.exe =>.LENOVO®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\WINDOWS\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: Wise Care 365.lnk . (.WiseCleaner.com - Wise Care 365.) C:\Program Files\Wise\Wise Care 365\WiseCare365.exe =>.Lespeed Technology Ltd.®
O4 - GS\CommonDesktop [Public]: Wise Memory Optimizer.lnk . (.WiseCleaner.com - Wise Memory Optimizer.) C:\Program Files\Wise\Wise Memory Optimizer\WiseMemoryOptimzer.exe =>.Lespeed Technology Ltd.®
O4 - GS\Startup [Public]: Snagit 12.lnk . (.TechSmith Corporation - Snagit.) C:\Program Files\TechSmith\Snagit 12\Snagit32.exe =>.TechSmith Corporation®

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9D9EC7A3-5A67-497F-83F0-1D7906B205C5}: NameServer = 41.110.32.3 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{fe03d988-30e1-4d46-ae6b-c3f4c21e86e0}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{fe03d988-30e1-4d46-ae6b-c3f4c21e86e0}: DhcpDomain = domain.name

---\\ Protocole additionnel (27) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O18 - Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation

---\\ Logiciels installés (144) - 77s
O42 - Logiciel: Acronis True Image 2015 - (.Acronis.) [HKLM] -- {0174F517-0B1C-4969-B7C1-03A04EC64A21} =>.Acronis
O42 - Logiciel: Acronis True Image 2015 - (.Acronis.) [HKLM] -- {0174F517-0B1C-4969-B7C1-03A04EC64A21}Visible =>.Acronis International GmbH®
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 20 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CC 2015 (32 Bit) - (.Adobe Systems Incorporated.) [HKLM] -- {2614BC86-757D-4293-9E25-E4E16F370A9E} =>.Adobe Systems Incorporated®
O42 - Logiciel: Advanced IP Scanner 2.4 - (.Famatech.) [HKLM] -- {D273E7E9-79F3-40FE-AD24-5AC6DF9A1784} =>.Famatech
O42 - Logiciel: AIDA64 Extreme v5.60 - (.FinalWire Ltd..) [HKLM] -- AIDA64 Extreme_is1 =>.FinalWire Kft.®
O42 - Logiciel: AMD Catalyst Control Center - (.AMD.) [HKLM] -- WUCCCApp =>.Advanced Micro Devices, Inc.®
O42 - Logiciel: Audio Record Wizard - (.NowSmart Studio.) [HKLM] -- {1870D936-BF91-48DD-8B66-A5E7E09C0086}
O42 - Logiciel: AzureTools.Notifications - (.Microsoft Corporation.) [HKLM] -- {3FBFCF2C-392A-4632-9442-14C305B44D5E} =>.Microsoft Corporation
O42 - Logiciel: Behaviors SDK (Windows) for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {28C7344F-E894-4CF5-8D05-EDC7ED71796C} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {EBC890A6-DE7C-44B4-AA03-119B6190D3E1} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio 2013 FRA resources - (.Microsoft Corporation.) [HKLM] -- {ECFA0084-5700-4B99-92F7-934470EF3C51} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio SDK for .NET 4.5 - (.Microsoft Corporation.) [HKLM] -- {37E53780-3944-4A6A-842F-727128E8616E} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio SDK for Silverlight 5 - (.Microsoft Corporation.) [HKLM] -- {0C03A66F-1FF0-45F9-8D67-0D806EBFFBA1} =>.Microsoft Corporation
O42 - Logiciel: Build Tools - x86 - (.Microsoft Corporation.) [HKLM] -- {A1CFE5F7-07CA-44D6-B553-BE22B180F660} =>.Microsoft Corporation
O42 - Logiciel: Build Tools Language Resources - x86 - (.Microsoft Corporation.) [HKLM] -- {7754915B-C85B-458C-B531-48E286DE96E6} =>.Microsoft Corporation
O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM] -- {904AC0F0-F69E-467E-A719-B083940F608A} =>.TechSmith Corporation
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Composants requis pour SSDT - (.Microsoft Corporation.) [HKLM] -- {D2B694C7-21FB-4E7C-B207-EBC1CB0EBA79} =>.Microsoft Corporation
O42 - Logiciel: Condition zero - (...) [HKLM] -- Condition zero
O42 - Logiciel: DNSExit IP Updater 2.0 - (.DNSExit.) [HKLM] -- {69193CF5-F192-42C2-9E6E-E964068DC757}_is1
O42 - Logiciel: Doom 3 - (.Activision.) [HKLM] -- {EEFB15EB-FE8B-47DF-A496-1C4D1420294A} =>.Activision
O42 - Logiciel: Doom 3 - (.Activision.) [HKLM] -- InstallShield_{EEFB15EB-FE8B-47DF-A496-1C4D1420294A} =>.Activision
O42 - Logiciel: Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM] -- {2386192E-D6DB-4AD2-9564-65586A0AE53E} =>.PreEmptive Solutions
O42 - Logiciel: EagleGet version 2.0.4.8 - (.EagleGet.) [HKLM] -- {F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1 =>.EagleGet
O42 - Logiciel: EaseUS Partition Master 9.3.0 - (.EaseUS.) [HKLM] -- EaseUS Partition Master_is1 =>.EaseUS
O42 - Logiciel: EasyBCD 2.2 - (.NeoSmart Technologies.) [HKLM] -- EasyBCD =>.NeoSmart Technologies
O42 - Logiciel: Entity Framework 6.1.1 Tools for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {85253F13-EE42-4850-A3A5-79B90E92D7AC} =>.Microsoft Corporation
O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM] -- {CE9DD4DB-7DE9-42D2-9F9E-6DB538B97471} =>.ESET, spol. s r.o.
O42 - Logiciel: EVEREST Ultimate Edition v5.02 - (.Lavalys, Inc..) [HKLM] -- EVEREST Ultimate Edition_is1 =>.Lavalys, Inc.
O42 - Logiciel: FileZilla Client 3.14.1 - (.Tim Kosse.) [HKCU] -- FileZilla Client =>.Tim Kosse
O42 - Logiciel: FlashPeak SlimBrowser - (.FlashPeak Inc..) [HKLM] -- SlimBrowser =>.FlashPeak Inc.
O42 - Logiciel: Folder Lock - (.New Softwares.net.) [HKLM] -- Folder Lock {1121122E787653A63021DDD46D487F7F3B5B}
O42 - Logiciel: FormatFactory 3.7.0.0 - (.Format Factory.) [HKLM] -- FormatFactory =>.Format Factory
O42 - Logiciel: GreenBrowser - (.MoreQuick.com.) [HKLM] -- GreenBrowser_is1
O42 - Logiciel: IIS 8.0 Express - (.Microsoft Corporation.) [HKLM] -- {B8FFB7D6-6ABD-47C3-8BAD-86FF5D8F3EDC} =>.Microsoft Corporation
O42 - Logiciel: IIS Express Application Compatibility Database for x86 - (...) [HKLM] -- {fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb
O42 - Logiciel: Java 8 Update 73 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218073F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Kingo ROOT version 1.3.9.2351 - (.Kingosoft Technology Ltd..) [HKLM] -- {AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1 =>.Kingosoft Technology Ltd.
O42 - Logiciel: Kit SDK de vérification de Visual Studio 2012 - fra - (.Microsoft Corporation.) [HKLM] -- {8A3862F9-F587-3DFA-AAFC-C1F0E116F05C} =>.Microsoft Corporation
O42 - Logiciel: KMPlayer (remove only) - (.PandoraTV.) [HKLM] -- The KMPlayer
O42 - Logiciel: Kodi - (.XBMC-Foundation.) [HKCU] -- Kodi =>.XBMC-Foundation
O42 - Logiciel: LinuxLive USB Creator - (.Thibaut Lauziere.) [HKLM] -- LinuxLive USB Creator =>.Thibaut Lauziere
O42 - Logiciel: Live Media Plugin (Todae) - (.Todae.fr.) [HKLM] -- Live Media =>.Todae.fr
O42 - Logiciel: LocalESPC - (.Microsoft Corporation.) [HKLM] -- {62910715-63E3-0AB0-0B29-99140DE1C15E} =>.Microsoft Corporation
O42 - Logiciel: LocalESPC Dev12 - (.Microsoft Corporation.) [HKLM] -- {492498A3-F88C-FE2F-755C-9B1B91724CA5} =>.Microsoft Corporation
O42 - Logiciel: LocalESPCui for fr-fr - (.Microsoft.) [HKLM] -- {8788EA27-D5D2-14EC-FEFF-1BF351DF6DBD} =>.Microsoft
O42 - Logiciel: LocalESPCui for fr-fr Dev12 - (.Microsoft.) [HKLM] -- {CB1D5B0B-5F6C-D267-8729-494D5B676E37} =>.Microsoft
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: MegaDownloader 1.5 - (.AppsForMega.info.) [HKLM] -- {C12C2297-65A4-4E64-9AE1-29F0D947FDA0}}_is1
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited
O42 - Logiciel: Microsoft Advertising SDK for Windows 8.1 - ENU - (.Microsoft Corporation.) [HKLM] -- {6AB13C21-C3EC-46E1-8009-6FD5EBEE515B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Advertising Service Extension for Visual Studio - (.Microsoft Corporation.) [HKLM] -- {EBD9DB6D-180B-4C59-9622-B75CC4B32C94} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Mobile Services SDK - (.Microsoft Corporation.) [HKLM] -- {CACAE653-28F5-4DDC-8720-E4B9BC792CC8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Mobile Services Tools for Visual Studio - v1.2 - (.Microsoft Corporation.) [HKLM] -- {258D234C-B230-4B97-AAA6-6A17E63254E2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Shared Components for Visual Studio 2013 - v1.2 - (.Microsoft Corporation.) [HKLM] -- {30CA1298-0F2A-45CD-8720-6AD0DC3283AD} =>.Microsoft Corporation
O42 - Logiciel: Microsoft C++ Azure Mobile SDK for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {D8DEAAC1-A503-4C97-90F7-EF1E58A3E509} =>.Microsoft Corporation
O42 - Logiciel: Microsoft C++ REST SDK for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {4781443E-204D-4D98-8899-18A123C13B1E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Exchange Web Services Managed API 2.1 - (.Microsoft Corporation.) [HKLM] -- {24CA683D-8174-4EBF-AD4D-3F2DD7814716} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Expression Blend SDK for .NET 4 - (.Microsoft Corporation.) [HKLM] -- {7B6B35D5-404D-498E-95D0-3CCB2B2FC6F9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Identity Extensions - (.Microsoft Corporation.) [HKLM] -- {F99F24BF-0B90-463E-9658-3FD2EFC3C992} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 Core - (.Microsoft Corporation.) [HKLM] -- {CD9E8281-2C2C-4383-9EAE-926F787BC22F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 v4.5 Tools - (.Microsoft Corporation.) [HKLM] -- {C0B7DA6F-29E2-4C99-84BC-836E7AE76883} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 v4.5 ToolsRes - FRA - (.Microsoft Corporation.) [HKLM] -- {DC14CC17-CABF-41A8-A42F-09543E2D2595} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch pour Visual Studio 2013 CoreRes - FRA - (.Microsoft Corporation.) [HKLM] -- {D30F2E93-C09F-3C99-A976-9421D9C557D5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch v4.5 SDK - (.Microsoft Corporation.) [HKLM] -- {AF727A94-CAF6-4795-B379-C81229A5A34F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft NuGet - Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {99FE08AA-78DF-3A2D-8E90-D6F7938298A2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM] -- {205A8E25-7ABE-30AB-929E-80A63A7AFBE3} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - fra - (.Microsoft Corporation.) [HKLM] -- {047DE480-49E4-3AB9-903A-1238B36F114C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Report Viewer Add-On for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {73629F80-9DFE-421A-908B-C71FBD243E5A} =>.Microsoft Corporation
O42 - Logiciel: Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Pack - (.Microsoft Corporation.) [HKLM] -- {4B6634DC-5879-394F-8951-F339F29DE21C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight 5 SDK - FRA - (.Microsoft Corporation.) [HKLM] -- {80125E8C-304D-4637-974A-2547049B0E24} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Team Foundation Server 2013 Update 3 Object Model (x86) - (.Microsoft Corporation.) [HKLM] -- {A336824A-C380-386C-B293-C30C84B57826} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Web Deploy 3.5 - (.Microsoft Corporation.) [HKLM] -- {D58573E7-F82D-41E4-B10B-3041202A51D2} =>.Microsoft Corporation
O42 - Logiciel: Mobizen - (.RSUPPORT.) [HKLM] -- {BA0D3A44-BCEE-4C8B-BCD4-F7F1E64F41E3} =>.RSUPPORT
O42 - Logiciel: Modèle de redirection de Python Tools - (.Microsoft Corporation.) [HKLM] -- {D3A51ED1-96AF-4F84-A472-AAB848E9E21D} =>.Microsoft Corporation
O42 - Logiciel: Module linguistique de Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM] -- {C59A62B8-8CA8-4DEC-843B-E7E0F72CCE75} =>.PreEmptive Solutions
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM] -- {4727EDB7-0478-31CF-AD6C-346D29254144} =>.Microsoft Corporation
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM] -- Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA =>.Microsoft Corporation
O42 - Logiciel: Module linguistique du modèle objet Microsoft Team Foundation Server 2013 U - (.Microsoft Corporation.) [HKLM] -- {ABE27F98-A4F5-3D5B-9601-D7601B9467E5} =>.Microsoft Corporation
O42 - Logiciel: Module Microsoft Report Viewer pour Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {3F1B78AC-9A93-4707-AE7A-08E8FF351B61} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 44.0.2 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 44.0.2 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM] -- {90160000-007E-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Opera Stable 35.0.2066.37 - (.Opera Software.) [HKLM] -- Opera 35.0.2066.37 =>.Opera Software ASA®
O42 - Logiciel: Package de pilotes Windows - Condor (gnusbnet) Net (11/11/2013 1.2.0.0) - (.Condor.) [HKLM] -- 350179D4FEEF8D83146365E4FD7427A21F5D955A =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - Condor Communication Equipment Co.,Ltd. (gnusb - (.Condor Communication Equipment Co.,Ltd..) [HKLM] -- 760ECD7B4391C69CC34B300D57CAAE1D7BF4D16B =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - Condor Communication Equipment Co.,Ltd. (gnusb - (.Condor Communication Equipment Co.,Ltd..) [HKLM] -- FD4B3DDA263F0DD0154678E963EE8341AB29EAFE =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - Condor Corporation Net (11/11/2013 1.2.0.0) - (.Condor Corporation.) [HKLM] -- E304C591E3B27BA4FEDE756A7033259C81448FE5 =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - MediaTek Inc. (usbser) Ports (01/05/2012 2.00 - (.MediaTek Inc..) [HKLM] -- 49D9ABA9270C5BDFD7AE1BEB607D36B26BB90235 =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - MediaTek Inc. (usbser) Ports (12/24/2011 2.00 - (.MediaTek Inc..) [HKLM] -- D0E6296D177F42BB31C0200E49412003DB6C4633 =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - Microsoft (WUDFRd) WPD (11/11/2013 1.2.0.0) - (.Microsoft.) [HKLM] -- 0DB207BF709605C62C08D44DD3A953D00A924560 =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - SPA Condor Electronics (WinUSB) AndroidUsbDevi - (.SPA Condor Electronics.) [HKLM] -- EA52A0024D67167EA2BC865080C775727661BB60 =>.Microsoft Windows®
O42 - Logiciel: PreEmptive Analytics Client French Language Pack - (.PreEmptive Solutions.) [HKLM] -- {6C78BF87-3840-401B-A8CE-6BC30496A75D} =>.PreEmptive Solutions
O42 - Logiciel: PreEmptive Analytics Visual Studio Components - (.PreEmptive Solutions.) [HKLM] -- {943F3FB1-3F9C-4FB7-A4E2-6D53617068C3} =>.PreEmptive Solutions
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Resource Tuner 1.99 R6 - (.Heaventools Software.) [HKLM] -- Resource Tuner_is1 =>.Heaventools Software
O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM] -- SHAREit_is1 =>.LENOVO®
O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM] -- {95150002-1163-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM] -- {95160001-1163-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Shark007 ADVANCED Codecs - (.Shark007.) [HKLM] -- {8C0CAA7A-3272-4991-A808-2C7559DE3409} =>.Shark007
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.7 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A.
O42 - Logiciel: Snagit 12 - (.TechSmith Corporation.) [HKLM] -- {ae5218bf-cfcc-4099-818d-7e16ce0d97df} =>.TechSmith Corporation®
O42 - Logiciel: Snagit 12 - (.TechSmith Corporation.) [HKLM] -- {BDFD9ADC-3F97-4A8A-A533-987B21776449} =>.TechSmith Corporation
O42 - Logiciel: Subway Surfers - (...) [HKLM] -- Subway Surfers
O42 - Logiciel: Tools for .Net 3.5 - (.Microsoft Corporation.) [HKLM] -- {1690CE56-2231-4E59-9006-A0876D949EA8} =>.Microsoft Corporation
O42 - Logiciel: Tools for .Net 3.5 - FRA Lang Pack - (.Microsoft Corporation.) [HKLM] -- {C37962EE-EE24-4E9F-8A41-514ACD79177C} =>.Microsoft Corporation
O42 - Logiciel: Types CLR du système Microsoft pour SQL Server 2012 - (.Microsoft Corporation.) [HKLM] -- {06E862CA-3920-4745-9C26-2DE51B50057E} =>.Microsoft Corporation
O42 - Logiciel: Update for (KB2504637) - (.Microsoft Corporation.) [HKLM] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637 =>.Microsoft Corporation
O42 - Logiciel: VirusTotal Uploader 2.2 - (...) [HKLM] -- VTUploader
O42 - Logiciel: Visual F# 3.1 SDK - (.Microsoft Corporation.) [HKLM] -- {06EEE072-B561-38E5-85D9-485ABCBE8342} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 3.1 SDK Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {EB5BF5DA-F4DC-3C75-A818-14E9545544B5} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 3.1 VS - (.Microsoft Corporation.) [HKLM] -- {6321F2D4-366B-3AE4-877A-8E539EC3331A} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 3.1 VS Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {2F00A3D0-6FB3-3DD5-A2AD-DCC199AD84D5} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2012 Verification SDK - (.Microsoft Corporation.) [HKLM] -- {C4CAE1DE-77C8-32A7-A347-52DB738F0DE1} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio Extensions for Windows Library for JavaScript - (.Microsoft Corporation.) [HKLM] -- {7AE61976-6FE2-4B65-9E1C-4DE44288772B} =>.Microsoft Corporation
O42 - Logiciel: WCF Data Services 5.6.0 FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {35BCEC03-6257-4E45-8C63-FDA427202ADD} =>.Microsoft Corporation
O42 - Logiciel: WCF Data Services 5.6.0 Runtime - (.Microsoft Corporation.) [HKLM] -- {46910786-E4AC-41E4-A4A0-C086EA85242D} =>.Microsoft Corporation
O42 - Logiciel: WCF RIA Services V1.0 SP2 - (.Microsoft Corporation.) [HKLM] -- {5D8DD6A8-C4D7-4554-93F9-F1CC28C72600} =>.Microsoft Corporation
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation
O42 - Logiciel: Windows 8 Development Essentials - (.Microsoft Corporation.) [HKLM] -- {B4D3393A-68BE-4A5C-B963-93FFE1128E9E} =>.Microsoft Corporation
O42 - Logiciel: Windows App Certification Kit Native Components - (.Microsoft Corporation.) [HKLM] -- {550760A2-DC4A-CD2B-3C1B-01E0F9F1279E} =>.Microsoft Corporation
O42 - Logiciel: Windows App Certification Kit x86 - (.Microsoft Corporation.) [HKLM] -- {76FF502F-6811-F75B-2FEB-0B69BB584031} =>.Microsoft Corporation
O42 - Logiciel: Windows Desktop Gadgets - (.http://gadgetsrevived.com.) [HKLM] -- Windows Desktop Gadgets_is1
O42 - Logiciel: Windows Runtime Intellisense Content - fr-fr - (.Microsoft Corporation.) [HKLM] -- {EA9520C3-B047-4B93-72A6-F94E25762421} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit - (.Microsoft Corporation.) [HKLM] -- {984022F2-9BCA-A41D-6A38-1AE658F01415} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit DirectX x86 Remote - (.Microsoft Corporation.) [HKLM] -- {A1CB8286-CFB3-A985-D799-721A0F2A27F3} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps - (.Microsoft Corporation.) [HKLM] -- {37464E70-B0B9-9DFF-649A-CBE169BAD657} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps - (.Microsoft Corporation.) [HKLM] -- {99FCCA2B-F1FD-E66E-E3B9-AA57FBBF2E66} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x86 Remote - (.Microsoft Corporation.) [HKLM] -- {56AD3004-0B49-967F-F682-B05650B61A78} =>.Microsoft Corporation
O42 - Logiciel: Windows XP Targeting with C++ - (.Microsoft Corporation.) [HKLM] -- {F361FE04-789E-42F3-BBAB-E7B380AA5E06} =>.Microsoft Corporation
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Wise Care 365 3.88 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Care 365_is1 =>.Lespeed Technology Ltd.®
O42 - Logiciel: Wise Memory Optimizer 3.42 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Memory Optimizer_is1 =>.WiseCleaner.com, Inc.
O42 - Logiciel: Workflow Manager Client 1.0 - (.Microsoft Corporation.) [HKLM] -- {345B16F0-4BF6-495F-80B0-C0726040642D} =>.Microsoft Corporation
O42 - Logiciel: Workflow Manager Tools 1.0 for Visual Studio - (.Microsoft Corporation.) [HKLM] -- {E0617FCD-1F3C-4FC2-9FEB-684DB5682975} =>.Microsoft Corporation

---\\ HKCU & HKLM Software Keys (158) - 77s
HKLM\SOFTWARE\Acronis
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AMD
HKLM\SOFTWARE\AMI
HKLM\SOFTWARE\ATI
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\AviSynth
HKLM\SOFTWARE\Baidu
HKLM\SOFTWARE\Baidu Security
HKLM\SOFTWARE\Baidu_Drp_pos
HKLM\SOFTWARE\BSPACode
HKLM\SOFTWARE\CloudOPTInfo
HKLM\SOFTWARE\Dell
HKLM\SOFTWARE\Dolby
HKLM\SOFTWARE\drpsu
HKLM\SOFTWARE\DTS
HKLM\SOFTWARE\EagleGet
HKLM\SOFTWARE\EASEUS
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\famatech
HKLM\SOFTWARE\FileZilla 3
HKLM\SOFTWARE\FlashPeak
HKLM\SOFTWARE\Fortemedia
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Icaros
HKLM\SOFTWARE\id
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\IObit
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\KMPlayer
HKLM\SOFTWARE\Knowles
HKLM\SOFTWARE\Lenovo
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\LinuxLive USB Creator
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\MAGIX
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MegaDownloader
HKLM\SOFTWARE\MimarSinan
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nahimic
HKLM\SOFTWARE\NeoSmart Technologies
HKLM\SOFTWARE\NewSoftware's
HKLM\SOFTWARE\Notepad++
HKLM\SOFTWARE\NowSmart
HKLM\SOFTWARE\Nuance
HKLM\SOFTWARE\NuGet
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OEM
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\Partner
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\PreEmptive Solutions
HKLM\SOFTWARE\Radmin_Install
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SlimWare Utilities Inc
HKLM\SOFTWARE\SlimWare Utilities, Inc.
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\SonicFocus
HKLM\SOFTWARE\SoundResearch
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\TechSmith
HKLM\SOFTWARE\TopLang
HKLM\SOFTWARE\Virustotal
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\VST
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\WiseCleaner
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\Xara
HKCU\SOFTWARE\AC3filter
HKCU\SOFTWARE\Acronis
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Akeo Consulting
HKCU\SOFTWARE\AMD
HKCU\SOFTWARE\Andy
HKCU\SOFTWARE\APN PIP =>.Superfluous.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Baidu
HKCU\SOFTWARE\Baidu Security
HKCU\SOFTWARE\Codemasters Software Ltd
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\DriverUpdaterPro =>PUP.Optional.DriverUpdaterPro
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\EagleGet
HKCU\SOFTWARE\EaseUS
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\famatech
HKCU\SOFTWARE\FileZilla Client
HKCU\SOFTWARE\FinalWire
HKCU\SOFTWARE\FlashPeak
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Heaventools
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Kiloo Games
HKCU\SOFTWARE\KMPlayer
HKCU\SOFTWARE\Kodi
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Lavalys
HKCU\SOFTWARE\Lenovo
HKCU\SOFTWARE\LinuxLive
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madFlac
HKCU\SOFTWARE\Magix
HKCU\SOFTWARE\MAGIX AG
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\MedaFan Technology
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-BE Filters
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\MTK
HKCU\SOFTWARE\MyLanViewer
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NewSoftware's
HKCU\SOFTWARE\njRAT v0.6.4
HKCU\SOFTWARE\njRAT v0.7d
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Raptr
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\RSUPPORT
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SlimWare Utilities Inc
HKCU\SOFTWARE\SyncEngines
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\TechSmith
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contenu des dossiers Programmes (307) - 261s
O43 - CFD: 09/11/2015 - [] D -- C:\Program Files\Acoustica Mixcraft 7
O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Acronis =>.Acronis International GmbH®
O43 - CFD: 07/08/2015 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 05/08/2015 - [] AD -- C:\Program Files\Advanced IP Scanner =>.Famatech Corp.®
O43 - CFD: 29/02/2016 - [] AD -- C:\Program Files\AMD
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Application Verifier
O43 - CFD: 30/09/2015 - [] D -- C:\Program Files\ARW5 {7EA06A38F10DA929794950EB7FA2E2E9}
O43 - CFD: 28/11/2015 - [] AD -- C:\Program Files\ATI Technologies
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\baidu
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files\Baidu Security
O43 - CFD: 12/01/2016 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows®
O43 - CFD: 03/10/2015 - [] AD -- C:\Program Files\DNSExit IP Updater
O43 - CFD: 12/11/2015 - [] AD -- C:\Program Files\Doom 3
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Droid4Xext
O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\EagleGet
O43 - CFD: 18/02/2016 - [] D -- C:\Program Files\EaseUS
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.®
O43 - CFD: 22/02/2016 - [] D -- C:\Program Files\eSupport.com =>PUP.Optional.eSupport
O43 - CFD: 02/08/2015 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 22/12/2015 - [] D -- C:\Program Files\FileZilla FTP Client =>.Open Source Developer, Tim Kosse®
O43 - CFD: 26/02/2016 - [] D -- C:\Program Files\FinalWire =>.FinalWire Kft.®
O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\FormatFactory =>.chen jun hao®
O43 - CFD: 02/08/2015 - [] AD -- C:\Program Files\GreenBrowser
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\HTML Help Workshop =>.Microsoft Corporation®
O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\IIS =>.Microsoft Corporation®
O43 - CFD: 10/01/2016 - [] AD -- C:\Program Files\IIS Express =>.Microsoft Corporation®
O43 - CFD: 26/02/2016 - [] D -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 12/08/2015 - [] D -- C:\Program Files\Intel
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files\IntelliTamper
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 06/02/2016 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 16/01/2016 - [] AD -- C:\Program Files\Kingo ROOT {4BA0711A8EBE6D481E1846163BA3D2FD}
O43 - CFD: 09/02/2016 - [] D -- C:\Program Files\Kodi
O43 - CFD: 27/02/2016 - [] D -- C:\Program Files\Lavalys =>.LAVALYS®
O43 - CFD: 04/10/2015 - [] D -- C:\Program Files\Lenovo =>.LENOVO®
O43 - CFD: 07/01/2016 - [] AD -- C:\Program Files\LinuxLive USB Creator
O43 - CFD: 18/10/2015 - [] AD -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 21/10/2015 - [] AD -- C:\Program Files\MegaDownloader
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft
O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Microsoft ASP.NET =>.Microsoft Corporation®
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft Help Viewer =>.Microsoft Corporation®
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft Identity Extensions
O43 - CFD: 23/02/2016 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation®
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft SDKs =>.Microsoft Corporation®
O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation®
O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft Visual Studio 11.0 =>.Microsoft Corporation®
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft Visual Studio 12.0 =>.Microsoft Corporation®
O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Microsoft WCF Data Services =>.Microsoft Corporation®
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft Web Tools =>.Microsoft Corporation®
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\MSBuild =>.Microsoft Corporation®
O43 - CFD: 13/11/2015 - [] AD -- C:\Program Files\MSXML 4.0
O43 - CFD: 03/10/2015 - [] D -- C:\Program Files\MyLanViewer {11692443EEAD46}
O43 - CFD: 17/02/2016 - [] D -- C:\Program Files\NeoSmart Technologies =>.NeoSmart Technologies®
O43 - CFD: 10/08/2015 - [] D -- C:\Program Files\NewSoftware's {1121122E787653A63021DDD46D487F7F3B5B}
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Notepad++
O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\NuGet
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Open XML SDK
O43 - CFD: 02/03/2016 - [] AD -- C:\Program Files\Opera =>.Opera Software ASA®
O43 - CFD: 10/08/2015 - [] D -- C:\Program Files\QuickTime
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 05/11/2015 - [] AD -- C:\Program Files\Resource Tuner
O43 - CFD: 31/01/2016 - [] AD -- C:\Program Files\RSUPPORT =>.Rsupport Co., Ltd.®
O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\RYS PLANET
O43 - CFD: 10/01/2016 - [] AD -- C:\Program Files\SharePoint Client Components
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files\Shark007
O43 - CFD: 31/01/2016 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl®
O43 - CFD: 24/01/2016 - [] AD -- C:\Program Files\SlimBrowser {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9}
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\Subway Surfers
O43 - CFD: 10/08/2015 - [] D -- C:\Program Files\TechSmith =>.TechSmith Corporation®
O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 03/10/2015 - [] D -- C:\Program Files\VirusTotalUploader2
O43 - CFD: 11/10/2015 - [0] D -- C:\Program Files\VST
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Windows Identity Foundation
O43 - CFD: 14/02/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Windows Kits =>.Microsoft Corporation®
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 29/01/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 28/02/2016 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation®
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files\WindowsPowerShell
O43 - CFD: 02/08/2015 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 09/10/2015 - [] D -- C:\Program Files\Wise =>.Lespeed Technology Ltd.®
O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Workflow Manager Tools {330000001A77BB74B307D116B800000000001A}
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced IP Scanner v2
O43 - CFD: 29/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Record Wizard
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DNSExit IP Updater
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Doom 3
O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EagleGet
O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 9.3.0
O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire
O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlashPeak SlimBrowser
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Folder Lock
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GreenBrowser
O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT
O43 - CFD: 27/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MegaDownloader
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression
O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Français
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies
O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Tuner
O43 - CFD: 31/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RSUPPORT
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RYS PLANET
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shark007 Codecs
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 28/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subway Surfers
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Care 365
O43 - CFD: 03/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Memory Optimizer
O43 - CFD: 11/10/2015 - [] D -- C:\ProgramData\Acoustica
O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Acronis
O43 - CFD: 07/08/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Advanced
O43 - CFD: 21/09/2015 - [0] D -- C:\ProgramData\AMD
O43 - CFD: 28/11/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Baidu
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Baidu Security
O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 02/08/2015 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 28/11/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\EagleGet
O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\ESET
O43 - CFD: 03/08/2015 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\IObit
O43 - CFD: 02/08/2015 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 02/08/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 09/02/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 02/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 03/08/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 02/08/2015 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 03/08/2015 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\NuGet
O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\PreEmptive Solutions
O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\ProductData
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 23/02/2016 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 28/11/2015 - [] AD -- C:\ProgramData\regid.1995-08.com.techsmith
O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 08/08/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\SlimWare Utilities, Inc
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 15/01/2016 - [] D -- C:\ProgramData\SP_FT_Logs
O43 - CFD: 07/08/2015 - [] D -- C:\ProgramData\Sun
O43 - CFD: 10/08/2015 - [] AD -- C:\ProgramData\TechSmith
O43 - CFD: 31/12/2015 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 03/08/2015 - [] D -- C:\ProgramData\Thunder Network
O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\TopLang
O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 02/03/2016 - [] D -- C:\ProgramData\VMware
O43 - CFD: 22/01/2016 - [] AD -- C:\ProgramData\Windows App Certification Kit
O43 - CFD: 23/02/2016 - [] HDC -- C:\ProgramData\{54711293-A5E4-4D56-8A6E-67C869A26BF0}
O43 - CFD: 07/08/2015 - [] AD -- C:\Program Files\Common Files\Acronis
O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 24/02/2016 - [] D -- C:\Program Files\Common Files\ATI Technologies
O43 - CFD: 23/02/2016 - [] AD -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\Common Files\EagleGet
O43 - CFD: 05/11/2015 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 06/02/2016 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 04/10/2015 - [] D -- C:\Program Files\Common Files\LENOVO
O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Common Files\Merge Modules
O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Common Files\Microsoft
O43 - CFD: 23/02/2016 - [] AD -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 11/10/2015 - [] D -- C:\Program Files\Common Files\Propellerhead Software
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 08/08/2015 - [] AD -- C:\Program Files\Common Files\Skype
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 10/08/2015 - [] AD -- C:\Program Files\Common Files\TechSmith Shared
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Common Files\VMware
O43 - CFD: 07/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Acronis
O43 - CFD: 07/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Adobe
O43 - CFD: 11/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Advanced
O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\AMD
O43 - CFD: 13/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Andy
O43 - CFD: 13/08/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Andy_44_Online
O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\ATI
O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Baidu
O43 - CFD: 22/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\BaiduYunGuanjia
O43 - CFD: 22/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\BaiduYunKernel
O43 - CFD: 25/02/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Roaming\DMCache
O43 - CFD: 29/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\DRPSu
O43 - CFD: 25/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\EagleGet
O43 - CFD: 02/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\FileZilla
O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\HaiYuInst
O43 - CFD: 09/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\IObit
O43 - CFD: 16/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Kingosoft
O43 - CFD: 14/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Kodi
O43 - CFD: 13/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\library_dir
O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Macromedia
O43 - CFD: 22/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\MAGIX
O43 - CFD: 21/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Meda MP3 Splitter Gold 4.2
O43 - CFD: 08/01/2016 - [] SD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft
O43 - CFD: 11/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Million
O43 - CFD: 15/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Mobogenie =>PUP.Optional.Mobogenie
O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla
O43 - CFD: 08/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Notepad++
O43 - CFD: 08/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\NuGet
O43 - CFD: 09/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Opera Software
O43 - CFD: 05/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Resource Tuner
O43 - CFD: 31/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Rsupport
O43 - CFD: 03/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Skype
O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\SlimBrowser
O43 - CFD: 29/09/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Sun
O43 - CFD: 12/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\TechSmith
O43 - CFD: 29/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Todae
O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\WinRAR
O43 - CFD: 25/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Wise Care 365
O43 - CFD: 20/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\WiseUpdate
O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\ZHP
O43 - CFD: 28/11/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\ActiveSync
O43 - CFD: 14/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Adobe
O43 - CFD: 22/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\AMD
O43 - CFD: 28/11/2015 - [0] SHD -- C:\Users\Hakim.dz\AppData\Local\Application Data
O43 - CFD: 14/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Apps
O43 - CFD: 30/09/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\arw5
O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\ATI
O43 - CFD: 10/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Comms
O43 - CFD: 28/11/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\CrashDumps
O43 - CFD: 25/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Diagnostics
O43 - CFD: 23/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Downloaded Installations
O43 - CFD: 16/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\ElevatedDiagnostics
O43 - CFD: 29/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\ESET
O43 - CFD: 17/02/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Local\eSupport.com =>PUP.Optional.eSupport
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Facebook
O43 - CFD: 28/11/2015 - [0] SHD -- C:\Users\Hakim.dz\AppData\Local\Historique
O43 - CFD: 16/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Kingosoft
O43 - CFD: 04/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Lenovo
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Macromedia
O43 - CFD: 15/01/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Local\Mediatek
O43 - CFD: 21/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MegaDownloader
O43 - CFD: 08/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Microsoft
O43 - CFD: 21/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Microsoft Help
O43 - CFD: 04/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MicrosoftEdge
O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MiniService
O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Mozilla
O43 - CFD: 19/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MSfree Inc
O43 - CFD: 03/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MyLanViewer
O43 - CFD: 19/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\NeoSmart_Technologies
O43 - CFD: 14/02/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Local\NetworkTiles
O43 - CFD: 14/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\OfficeBSCache-MyComputer
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Opera Software
O43 - CFD: 09/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Packages
O43 - CFD: 04/08/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\PeerDistRepub
O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Programs
O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Publishers
O43 - CFD: 10/08/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\SKIDROW
O43 - CFD: 08/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Skype
O43 - CFD: 12/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\SlimWare Utilities Inc
O43 - CFD: 10/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\TechSmith
O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Temp
O43 - CFD: 28/11/2015 - [0] SHD -- C:\Users\Hakim.dz\AppData\Local\Temporary Internet Files
O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\TileDataLayer
O43 - CFD: 03/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\VirtualStore
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 28/11/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 14/02/2016 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 22/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 23/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IntelliTamper
O43 - CFD: 09/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi
O43 - CFD: 07/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator
O43 - CFD: 29/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Live Media Plugin
O43 - CFD: 30/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 14/02/2016 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 28/11/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirusTotal Uploader 2.2
O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 54s
O45 - LFCP:[MD5.E4C0826F0F97F75F335B1F1DA685D917] 27/02/2016 A -- C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-2B26E1E7.pf =>PUP.Optional.DriverUpdaterPro
O45 - LFCP:[MD5.CB306FFC16626ED40A58CDDE147A2C72] 25/02/2016 A -- C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-5D25DE5F.pf =>PUP.Optional.DriverUpdaterPro
O45 - LFCP:[MD5.8D0683EE166AABF05BC45D2D77249D52] 16/01/2016 A -- C:\WINDOWS\Prefetch\MOBOGENIE.EXE-BD9AF242.pf =>PUP.Optional.Mobogenie

---\\ ShellIconOverlayIdentifiers (SIOI) (13) - 3s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Acronis True Image Shell Sync Error Icon Overlay Extension [AcronisSyncError] - {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED}. (.Acronis - Acronis True Image Shell Extensions.) -- C:\Program Files\Acronis\TrueImageHome\tishell.dll =>.Acronis International GmbH®
O106 - SIOI: Acronis True Image Shell Sync In Progress Icon Overlay Extension [AcronisSyncInProgress] - {00F848DC-B1D4-4892-9C25-CAADC86A215D}. (.Acronis - Acronis True Image Shell Extensions.) -- C:\Program Files\Acronis\TrueImageHome\tishell.dll =>.Acronis International GmbH®
O106 - SIOI: Acronis True Image Shell Sync Ok Icon Overlay Extension [AcronisSyncOk] - {71573297-552E-46fc-BE3D-3DFAF88D47B7}. (.Acronis - Acronis True Image Shell Extensions.) -- C:\Program Files\Acronis\TrueImageHome\tishell.dll =>.Acronis International GmbH®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation

---\\ Liste des pilotes du système (91) - 87s
O58 - SDL:2015/10/12 10:36:41 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\17EA2C78.sys [98520] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/14 10:56:25 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\26F34602.sys [98520] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/30 06:44:28 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [85856] =>.Microsoft Windows®
O58 - SDL:2015/10/03 10:02:55 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\63CA7490.sys [98520] =>.Malwarebytes Corporation®
O58 - SDL:2015/09/30 14:58:53 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\7D2C6654.sys [98520] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/30 06:44:28 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1038176] =>.Microsoft Windows®
O58 - SDL:2015/08/09 06:10:08 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\WINDOWS\System32\drivers\amdacpksd.sys [277240] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2015/06/03 14:35:36 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmafd.sys [26360] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2015/10/30 06:44:28 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [75104] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [215392] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [22880] =>.Microsoft Windows®
O58 - SDL:2016/02/09 20:37:09 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\WINDOWS\System32\drivers\AmUStor.sys [76952] =>.AlcorMicro, Corp.®
O58 - SDL:2015/10/30 06:44:28 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [116576] =>.Microsoft Windows®
O58 - SDL:2014/12/21 04:37:18 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWB3.sys [200704] =>.Advanced Micro Devices
O58 - SDL:2015/07/22 00:42:06 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT3.sys [82432] =>.Advanced Micro Devices
O58 - SDL:2015/12/16 20:01:38 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [19525104] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2015/12/16 20:01:36 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [542192] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2015/10/30 06:44:28 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [8192] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 06:44:28 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [8192] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2013/10/08 17:23:14 A . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\WINDOWS\System32\drivers\BtHidBus.sys [20576] =>.IVT CORPORATION®
O58 - SDL:2012/12/24 15:42:16 A . (.IVT Corporation. - Bluetooth PAN Network Bus Driver.) -- C:\WINDOWS\System32\drivers\btnetBus.sys [27256] =>.IVT CORPORATION®
O58 - SDL:2016/02/17 19:30:07 A . (.Phoenix Technologies - DriverAgent Direct I/O for 32-bit Windows.) -- C:\WINDOWS\System32\drivers\DrvAgent32.sys [31832] =>PUP.Optional.eSupport
O58 - SDL:2016/01/31 21:58:40 A . (.eagleGet - eagleGet Network Filter.) -- C:\WINDOWS\System32\drivers\eagleGet.sys [69432] {5EAA8EA6DE5A4AE14D8CEF6B69520D27} =>.EagleGet
O58 - SDL:2015/12/08 15:25:08 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [205800] =>.ESET, spol. s r.o.®
O58 - SDL:2015/09/23 09:30:22 A . (.ESET - ESET ELAM driver.) -- C:\WINDOWS\System32\drivers\eelam.sys [14464] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [146024] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\WINDOWS\System32\drivers\ekbdflt.sys [111040] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [161992] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/27 13:03:56 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\WINDOWS\System32\drivers\epfwlwf.sys [44608] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [56944] =>.ESET, spol. s r.o.®
O58 - SDL:2015/08/07 18:46:56 A . (.Acronis International GmbH - File tracker minifilter driver.) -- C:\WINDOWS\System32\drivers\file_tracker.sys [214304] =>.Acronis International GmbH®
O58 - SDL:2015/08/07 18:45:57 A . (.Acronis International GmbH - Acronis Storage Filter Management Driver.) -- C:\WINDOWS\System32\drivers\fltsrv.sys [98592] =>.Acronis International GmbH®
O58 - SDL:2015/10/30 06:44:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [56672] =>.Microsoft Windows®
O58 - SDL:2016/02/09 20:29:18 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX®
O58 - SDL:2015/10/30 06:44:25 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [66048] =>.Intel(R) Corporation
O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel(R) Atom(TM) Processor GPIO Controller.) -- C:\WINDOWS\System32\drivers\iaiogpio.sys [22016] =>.Intel Corporation
O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel(R) Atom(TM) Processor I2C Controller.) -- C:\WINDOWS\System32\drivers\iaioi2c.sys [61936] =>.Intel Corporation
O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [524632] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [333664] =>.Microsoft Windows®
O58 - SDL:2015/06/12 03:00:58 N . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [123968] =>.Tonec Inc.®
O58 - SDL:2012/12/24 15:45:36 A . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\WINDOWS\System32\drivers\IvtBtBus.sys [23288] =>.IVT CORPORATION®
O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [94040] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [88928] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [83288] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [69472] =>.Microsoft Windows®
O58 - SDL:2015/10/05 08:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/05 08:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [94936] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/02 13:00:15 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/30 06:44:28 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [52064] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [464728] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/10/05 08:50:20 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [51928] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/30 06:44:25 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28u.sys [1800704] =>.MediaTek Inc.
O58 - SDL:2015/10/30 06:44:28 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [119136] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [142176] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [51040] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [51552] =>.Microsoft Windows®
O58 - SDL:2012/12/18 18:07:30 A . (.Famatech International Corp. - Radmin Mirror Miniport Driver V3.) -- C:\WINDOWS\System32\drivers\rminiv3.sys [3328]
O58 - SDL:2016/02/09 20:38:31 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 32-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x86.sys [789248] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/12/17 22:47:58 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHDA.sys [3688704] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/10/30 06:44:28 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [41312] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [79200] =>.Microsoft Windows®
O58 - SDL:2015/08/07 18:46:02 A . (.Acronis International GmbH - Acronis Snapshot API.) -- C:\WINDOWS\System32\drivers\snapman.sys [208672] =>.Acronis International GmbH®
O58 - SDL:2015/10/30 06:44:28 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/08/07 18:46:11 A . (.Acronis International GmbH - Acronis Backup Archive Explorer.) -- C:\WINDOWS\System32\drivers\tib.sys [685160] =>.Acronis International GmbH®
O58 - SDL:2015/08/07 18:46:16 A . (.Acronis International GmbH - Acronis TIB Mounter Driver.) -- C:\WINDOWS\System32\drivers\tib_mounter.sys [184136] =>.Acronis International GmbH®
O58 - SDL:2015/10/29 18:53:01 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [35064] =>.Adlice®
O58 - SDL:2005/10/09 01:05:16 A . (.EnTech Taiwan - TVicHW32 Driver for Windows NT/2000/XP.) -- C:\WINDOWS\System32\drivers\TVICHW32.SYS [23600] =>.EnTech Taiwan
O58 - SDL:2014/05/16 14:25:48 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [204064] =>.Oracle Corporation®
O58 - SDL:2015/10/30 06:44:28 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [149856] =>.Microsoft Windows®
O58 - SDL:2015/10/30 06:44:28 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [276832] =>.Microsoft Windows®
O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\ANSI.SYS [9029]
O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2013/03/07 09:49:20 A . (...) -- C:\WINDOWS\System32\epmntdrv.sys [14920]
O58 - SDL:2013/03/07 09:49:20 A . (...) -- C:\WINDOWS\System32\EuGdiDrv.sys [9160]
O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\HIMEM.SYS [4768]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\KEY01.SYS [42809]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\KEYBOARD.SYS [42537]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTDOS.SYS [27866]
O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS404.SYS [29146]
O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS411.SYS [29370]
O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS412.SYS [29274]
O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS804.SYS [29146]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO.SYS [33968]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO404.SYS [34688]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO411.SYS [35776]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO412.SYS [35552]
O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO804.SYS [34688]
O58 - SDL:2015/08/10 22:12:34 A . (...) -- C:\WINDOWS\System32\WinFLAdrv.sys [31352] =>.Newsoftwares.net, Inc SDN BHD®
O58 - SDL:2015/08/10 22:12:25 A . (.NewSoftwares.net, Inc. - Virtual Encryption Driver.) -- C:\WINDOWS\System32\WinVDEdrv.sys [228112] =>.NewSoftwares.net Inc. SDN. BHD.®
O58 - SDL:2015/08/10 22:12:32 A . (...) -- C:\WINDOWS\System32\WinVDEdrv6.sys [188176] =>.NewSoftwares.net Inc. SDN. BHD.®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (12) - 62s
O61 - LFC: 2016/02/28 11:03:30 A . (..) -- C:\Users\Hakim.dz\Desktop\aminf329.exe [529908]
O61 - LFC: 2016/02/29 12:19:51 A . (.Kuzyakov Artur.) -- C:\Users\Hakim.dz\Desktop\DriverPack-Online_865317139.1456744711.exe [1979024] {158377DA2BD81EDC1F1DF9B7E343B3CB}
O61 - LFC: 2016/03/01 12:05:49 A . (..) -- C:\Users\Hakim.dz\Desktop\ipm31_103_bios.exe [5994440] {1BA315B89D1AF7C2CB153F29392B2B78}
O61 - LFC: 2016/03/01 12:02:54 A . (..) -- C:\Users\Hakim.dz\Desktop\Win129drv-DSU.exe [5994440] {1BA315B89D1AF7C2CB153F29392B2B78}
O61 - LFC: 2016/03/01 13:53:46 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [24616]
O61 - LFC: 2016/03/02 10:32:48 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2016/03/02 11:33:13 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635925062026092700.bin [50151]
O61 - LFC: 2016/03/02 18:55:31 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148]
O61 - LFC: 2016/03/02 13:37:49 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Windows\INetCache\IE\WNRYOSML\Firefox%20Setup%20Stub%2044.0.2[1].exe [8192]
O61 - LFC: 2016/03/02 14:28:22 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Windows\INetCache\IE\O7O12B2J\VMware-workstation-full-12.1.0-3272444[1].exe [8803]
O61 - LFC: 2016/02/23 19:47:52 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635918397328115513.bin [4064]
O61 - LFC: 2016/02/29 11:11:55 A . (..) -- C:\Users\Hakim.dz\AppData\Local\ATI\ACE\Manifest.Bin [29848]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (14) - 2s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.FlashPeak Inc. - FlashPeak SlimBrowser.) -- C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc.
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =>.Opera Software ASA®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.FlashPeak Inc. - FlashPeak SlimBrowser.) -- C:\Program Files\SlimBrowser\sbframe.exe =>.FlashPeak Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software

---\\ Recherche d'infection sur les navigateurs (2) - 24s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (42) - 5s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [160768] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [160768] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [218624] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1190912] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [742400] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [842752] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [76288] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [116224] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [95232] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [819712] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [185344] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [107520] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [246784] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [313344] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [68608] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1552896] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [144384] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [156160] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [140288] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [47616] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [717312] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [163840] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [538112] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [820224] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [200192] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [45568] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [706048] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [783872] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [307200] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [251392] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [22528] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [93184] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [601088] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [436224] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [396800] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [254976] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1903616] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [857600] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [559616] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [165376] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (3) - 9s
O87 - FAEL: "TCP Query User{7DAA3838-5DDC-4F0C-BF17-6E23EFBE26DD}C:\users\hakim.dz\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe" [In-None-P6-TRUE] .(.深圳市迅雷网络技术有限公司 - 迅雷云加速开放平台.) -- C:\users\hakim.dz\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe {0CFF7B329CFF7F3B8D2D542AB25826BA}
O87 - FAEL: "TCP Query User{94E72C01-A31E-4C74-B973-4FE6C312D81A}E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe" [In-None-P6-TRUE] .(.MTUX Corp - My Mobiler.) -- E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe
O87 - FAEL: "UDP Query User{6EC14214-4600-425E-B797-6EC59AED2D48}E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe" [In-None-P17-TRUE] .(.MTUX Corp - My Mobiler.) -- E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe

---\\ Scan Additionnel (10) - 0s
HKCU\SOFTWARE\APN PIP =>.Superfluous.Conduit
HKCU\SOFTWARE\DriverUpdaterPro =>PUP.Optional.DriverUpdaterPro
HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport
C:\Program Files\eSupport.com =>PUP.Optional.eSupport
C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
C:\Users\Hakim.dz\AppData\Roaming\Mobogenie =>PUP.Optional.Mobogenie
C:\Users\Hakim.dz\AppData\Local\eSupport.com =>PUP.Optional.eSupport
C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-2B26E1E7.pf =>PUP.Optional.DriverUpdaterPro
C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-5D25DE5F.pf =>PUP.Optional.DriverUpdaterPro
C:\WINDOWS\Prefetch\MOBOGENIE.EXE-BD9AF242.pf =>PUP.Optional.Mobogenie

---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DriverUpdaterPro
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.eSupport
http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS
http://www.nicolascoolman.fr/?p=215 =>PUP.Optional.Mobogenie

~ End of the scan, 56558 items in 00h18mn12s (1181)(0)

Publicité


Signaler le contenu de ce document

Publicité