cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.5.29.100 Par Nicolas Coolman (2016/05/29)
~ Démarré par mahmoud (Administrator) (2016/05/30 18:11:17)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\mahmoud\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\mahmoud\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (3) - 0s
MFIE: Mozilla Firefox 46.0.1 (x86 fr)
OPIE: Opera 37.0.2178.43
MSIE: Internet Explorer v11.0.9600.18314

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Surveillance de Logiciels (1) - 2s
Adobe Flash Player 21 PPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8368.992 MB (64% free)
System Restore: Activé (Enable)
System drive C: has 64 GB () free of 216 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: MAHMOUD-HP
~ User Name: mahmoud
~ Logged in as Administrator

---\\ Enumération des unités disques (7) - 0s
~ Drive C: has 64 GB free of 216 GB (System)
~ Drive D: has 1 GB free of 12 GB
~ Drive E: has 0 GB free of 0 GB
~ Drive F: has 599 GB free of 940 GB
~ Drive G: has 1 GB free of 12 GB
~ Drive H: has 64 GB free of 190 GB
~ Drive O: has 17 GB free of 30 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 0s
[MD5.9D77CC4A36FEEA644D002CFB9B2D42C0] - 22/01/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3231232] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.D88379C0F2BDCEA5ADBDAD175B2F23E9] - 23/04/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2596864] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 04/02/2012 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 04/02/2012 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 04/02/2012 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.035C0A9A63DF3F3A52B90D8F6BF0F166] - 09/04/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation
[MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation
[MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 05/03/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.DF8126BD41180351A093A3AD2FC8903B] - 04/02/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [296320] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (13) - 1s
O23 - Service: BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation - Bluetooth Application.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Client Services (HPClientSvc) . (.Hewlett-Packard Company - HP Client Services.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe =>.Hewlett-Packard Company®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
O23 - Service: NAS PM Service (NasPmService) . (.BUFFALO INC. - NAS Power Management Service.) - C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe {5C247EB65F6E19C0D4AB38195485906C} =>.BUFFALO INC.
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 368.2.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: Internet Pass-Through Service (PassThru Service) . (.Copyright (C) 2012 - PassThruSvr Application.) - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe =>.NVIDIA Corporation®
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (35) - 12s

SS - Demand [06/02/2009] [ 109056] ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe =>.ArcSoft, Inc.®
SS - Demand [13/05/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [07/04/2016] [ 4032816] BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
SR - Demand [07/04/2016] [ 160560] BsHelpCS (BsHelpCS) . (.IVT Corporation.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
SR - Demand [03/11/2014] [ 279968] cPhoneSDKCS (cPhoneSDKCS) . (.IVT Corporation.) - C:\Program Files (x86)\IVT Corporation\BlueSoleil\cPhoneSDKCS.exe {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
SS - Demand [11/09/2015] [ 101872] EpsonBidirectionalService (EpsonBidirectionalService) . (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe =>.SEIKO EPSON CORPORATION®
SS - Demand [12/12/2011] [ 135824] Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation.) - C:\Windows\system32\EscSvc64.exe =>.Seiko Epson Corporation
SS - Demand [21/02/2012] [ 151648] EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) . (.SEIKO EPSON CORPORATION.) - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE =>.SEIKO EPSON Corporation®
SR - Auto [02/05/2016] [ 1165368] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
SS - Auto [07/03/2016] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [07/03/2016] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [06/01/2014] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SS - Demand [25/01/2011] [ 69120] Hauppauge WinTV Extender (Hauppauge WinTV Extender) . (.Hauppauge Computer Works, Inc.) - C:\Program Files (x86)\WinTV\Extend\WinTVExtender.exe =>.Hauppauge Computer Works, Inc
SS - Demand [17/01/2011] [ 558592] HauppaugeTVServer (HauppaugeTVServer) . (.Hauppauge Computer Works.) - C:\Program Files (x86)\WinTV\TVServer\HauppaugeTVServer.exe =>.Hauppauge Computer Works
SR - Auto [11/10/2010] [ 346168] HP Client Services (HPClientSvc) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe =>.Hewlett-Packard Company®
SR - Demand [28/04/2015] [ 1102472] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company®
SR - Demand [26/04/2016] [ 28552] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company®
SS - Demand [22/10/2004] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe =>.Macrovision Corporation
SR - Auto [01/02/2011] [ 326168] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
SS - Demand [06/05/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [17/11/2009] [ 251184] NAS PM Service (NasPmService) . (.BUFFALO INC..) - C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe {5C247EB65F6E19C0D4AB38195485906C} =>.BUFFALO INC.
SR - Auto [02/05/2016] [ 1881144] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
SR - Demand [02/05/2016] [ 3634232] NVIDIA Streamer Network Service (NvStreamNetworkSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe =>.NVIDIA Corporation®
SR - Auto [02/05/2016] [ 2522680] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
SR - Auto [20/05/2016] [ 1352760] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe =>.NVIDIA Corporation
SR - Auto [07/12/2012] [ 167424] Internet Pass-Through Service (PassThru Service) . (.Copyright (C) 2012.) - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
SS - Demand [06/05/2011] [ 1128952] PDF Document Manager (pdfcDispatcher) . (.PDF Complete Inc.) - C:\Program Files (x86)\PDF Complete\pdfsvc.exe =>.PDF Complete®
SS - Demand [26/07/2012] [ 3153984] ShareCenterSync (ShareCenterSync) . (.D-Link Crop..) - C:\Program Files (x86)\ShareCenterSync\daemon.exe
SS - Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [20/05/2016] [ 426040] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe =>.NVIDIA Corporation®
SS - Demand [15/12/2011] [ 450848] (UMVPFSrv) . (.Logitech Inc..) - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe =>.Logitech, Inc.®
SR - Auto [01/02/2011] [ 2656280] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®
SS - Demand [09/05/2016] [ 582584] Windows Care Genius Service (WCGBootAssistant) . (.Tenorshare.com.) - C:\Program Files (x86)\Windows Care Genius\BootTime.exe =>.Tenorshare Co.,Ltd.®
SS - Demand [12/05/2016] [ 14800] WiseHDInfo (WiseHDInfo) . (.wisecleaner.com.) - C:\Windows\WiseHDInfo64.dll =>.Lespeed Technology Ltd.®

---\\ Tâches planifiées en automatique (34) - 4s
[MD5.A69361C2D172496A291AE2B23DF42654] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_242_pepper.exe [1173184] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.561E13867AEA0E9755CEB1EEC9D0EC76] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.C856B04ABD5A57CA688EF6CC2964DFBD] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6638296] (.Activate.) =>.Piriform Ltd®
[MD5.ACCC81DCE8FB79B086297E75D0F279D1] [APT] [GlaryInitialize 5] (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [125392] (.Activate.) =>.Glarysoft LTD®
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
[MD5.059FFF571F796E052F7E5992BF822AF0] [APT] [GU5SkipUAC] (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [896464] (.Activate.) =>.Glarysoft LTD®
[MD5.3DA2B70325A5947E981387DB9A9BD843] [APT] [HPCeeScheduleFormahmoud] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568] (.Activate.) =>.Hewlett-Packard Company®
[MD5.00000000000000000000000000000000] [APT] [mahmoudPandowdyHelpingV2] (...) -- rundll32.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.29F4B4BE2D33C2A01C4F232C54544B40] [APT] [Opera scheduled Autoupdate 1451309350] (.Opera Software.) -- C:\Program Files (x86)\Opera\launcher.exe [705064] (.Activate.) =>.Opera Software ASA®
[MD5.DA17803791C335E35942584ACD0BDD4D] [APT] [ServicePlan] (.Copyright © 2006.) -- C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [38456] (.Activate.) =>.Hewlett-Packard Company®
[MD5.6FECD766B8837CA7C4BA77C68CE28565] [APT] [Windows Care Genius] (.Tenorshare.com.) -- C:\Program Files (x86)\Windows Care Genius\WCGTray.exe [2180536] (.Activate.) =>.Tenorshare Co.,Ltd.®
[MD5.01FB00A7F24325A53C1D2ABE913C7C1A] [APT] [Wise Turbo Checker] (.Tenorshare.com.) -- C:\Program Files (x86)\Windows Care Genius\WCGTurbo.exe [1273272] (.Activate.) =>.Tenorshare Co.,Ltd.®
[MD5.3E206E3BFB27E5D0220B1D84D6A5E465] [APT] [{2684281D-245F-5DA8-95BD-3E499453CD0D}] (...) -- C:\Users\mahmoud\AppData\Roaming\PriceFountainUpdateVer\syncversion.exe [349696] (.Activate.) =>PUP.Optional.PriceFountain
[MD5.00000000000000000000000000000000] [APT] [{791E4CB4-A033-4C0C-806B-86C941911E37}] (...) -- I:\Packet\PCCS.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{7D1B3931-34E8-41F2-815E-3F385035F236}] (...) -- I:\Launcher.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.6C2C1D699AD877212F17DE48131B98ED] [APT] [Hewlett-Packard] (.HP Inc..) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [200104] (.Activate.) =>.Hewlett-Packard Company®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job [1064] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc®
O39 - APT: HPCeeScheduleFormahmoud - (.Hewlett-Packard.) -- C:\Windows\Tasks\HPCeeScheduleFormahmoud.job [340] =>.Hewlett-Packard Company®
O39 - APT: Windows Care Genius - (.Tenorshare.com.) -- C:\Windows\Tasks\Windows Care Genius.job [418] =>.Tenorshare Co.,Ltd.®
O39 - APT: Wise Turbo Checker - (.Tenorshare.com.) -- C:\Windows\Tasks\Wise Turbo Checker.job [434] =>.Tenorshare Co.,Ltd.®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier [4066] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated®
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2798] =>.Piriform Ltd®
O39 - APT: GlaryInitialize 5 - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GlaryInitialize 5 [3320] =>.Glarysoft LTD®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc®
O39 - APT: GU5SkipUAC - (.Glarysoft Ltd.) -- C:\Windows\System32\Tasks\GU5SkipUAC [2980] =>.Glarysoft LTD®
O39 - APT: HPCeeScheduleFormahmoud - (.Hewlett-Packard.) -- C:\Windows\System32\Tasks\HPCeeScheduleFormahmoud [3198] =>.Hewlett-Packard Company®
O39 - APT: mahmoudPandowdyHelpingV2 - (...) -- C:\Windows\System32\Tasks\mahmoudPandowdyHelpingV2 [3452] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: Opera scheduled Autoupdate 1451309350 - (.Opera Software.) -- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1451309350 [3876] =>.Opera Software ASA®
O39 - APT: ServicePlan - (.Copyright © 2006.) -- C:\Windows\System32\Tasks\ServicePlan [3414] =>.Hewlett-Packard Company®
O39 - APT: Windows Care Genius - (.Tenorshare.com.) -- C:\Windows\System32\Tasks\Windows Care Genius [2848] =>.Tenorshare Co.,Ltd.®
O39 - APT: Wise Turbo Checker - (.Tenorshare.com.) -- C:\Windows\System32\Tasks\Wise Turbo Checker [3106] =>.Tenorshare Co.,Ltd.®

---\\ Processus lancés (45) - 3s
[MD5.A63CAFB74A09F6D32A80B2B2C883F77B] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 368.2.) -- C:\Windows\System32\nvvsvc.exe [1352760] [PID.868] =>.NVIDIA Corporation®
[MD5.215AC49E16A2E5E31CEA79C6E20B0860] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe [426040] [PID.892] =>.NVIDIA Corporation®
[MD5.B0B066142BD31A068749F597FAD81EA2] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1273400] [PID.1372] =>.NVIDIA Corporation®
[MD5.3FE49EC6CCCDDA999C2DA12AF7EA30C7] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [4032816] [PID.1676] {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
[MD5.CA793DCC1D5F619021EF1D37CC7A831E] - (.EasyBits Software AS - Shared EasyBits services for Windows.) -- C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232] [PID.1748] =>.EasyBits Software AS
[MD5.4CEDC66C726F7BE116BE7694B3CD22CD] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1165368] [PID.1844] =>.NVIDIA Corporation®
[MD5.6A181452D4E240B8ECC7614B9A19BDE9] - (.Hewlett-Packard Company - HP Client Services.) -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [346168] [PID.1944] =>.Hewlett-Packard Company®
[MD5.15E5ABD9E03D57671BB74EB5CBAB8019] - (.BUFFALO INC. - NAS Power Management Service.) -- C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe [251184] [PID.1996] {5C247EB65F6E19C0D4AB38195485906C} =>.BUFFALO INC.
[MD5.FA9BC0048ED46C5FB5C93EAFFC97F63D] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144] [PID.1920] =>.NVIDIA Corporation®
[MD5.77BE9E1AFCE995652A1C4FF4C8A0F839] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680] [PID.2104] =>.NVIDIA Corporation®
[MD5.3CAE2BBC86FCF7F94C9696994AF30386] - (.Copyright (C) 2012 - PassThruSvr Application.) -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424] [PID.2140]
[MD5.357CABBF155AFD1D3926E62539D2A3A7] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480] [PID.2252] =>.Microsoft Corporation®
[MD5.D790CAFEFF0291D0AF8C76F5A1EE2E4E] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223488] [PID.2416] =>.Microsoft Corporation®
[MD5.B0B6F51FA46793A4A230B3117A20D3FD] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BsHelpCS.exe [160560] [PID.2876] {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
[MD5.D133C6B679965C5F5AACCB415C094E68] - (.IVT Corporation - BlueSoleil cPhone Server Application.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\cPhoneSDKCS.exe [279968] [PID.2912] {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
[MD5.AF5BE3694A76365874B8967331049F2C] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232] [PID.3008] =>.NVIDIA Corporation®
[MD5.3E7E1E950F123521C5CE072E61929DA4] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [21328952] [PID.3380] =>.NVIDIA Corporation®
[MD5.6FECD766B8837CA7C4BA77C68CE28565] - (.Tenorshare.com - Windows Care Genius Tray.) -- C:\Program Files (x86)\Windows Care Genius\WCGTray.exe [2180536] [PID.3504] =>.Tenorshare Co.,Ltd.®
[MD5.C8AC55CCB8AB33713522B4CAAFAC0F59] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776] [PID.3848] =>.NVIDIA Corporation®
[MD5.13049C525CAA19B18168FA13ECCB8467] - (.ZONER software - Zoner Photo Studio Autoupdate.) -- C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe [563416] [PID.3956] =>.ZONER software, a.s.®
[MD5.3F8DADF839EF7F8F5B9B59EB70E94599] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2456632] [PID.4428] =>.NVIDIA Corporation®
[MD5.56FE3C885B0901601549E23E7A435984] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler.exe [250008] [PID.4600] =>.Google Inc®
[MD5.A425CDCEB9D26E9A5ABAFA259799D447] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler64.exe [312472] [PID.4620] =>.Google Inc®
[MD5.D75C4B4A8FE6D7FD74A7EECDBAEC729F] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [326168] [PID.5504] =>.Intel Corporation®
[MD5.758C2CE427C343F780A205E28555C98D] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2656280] [PID.5656] =>.Intel Corporation®
[MD5.E60B8915796784DE61CE1AD17DDC5B17] - (.Hewlett-Packard Company - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28552] [PID.5824] =>.Hewlett-Packard Company®
[MD5.7B7DE6B3DC30F3246958F42C67A6F7BB] - (.Hewlett-Packard Company - HP Software Framework WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [1102472] [PID.2540] =>.Hewlett-Packard Company®
[MD5.23037BE3BE1E4CDF76F605D8F0A87941] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe [488240] [PID.5108] {787221A2BFFFFA99D5B719FC919776F0} =>.IVT Corporation
[MD5.6EF5AB8303763DED027C40F905AED25A] - (.3nity Softwares - 3nity Media Player.) -- C:\Program Files (x86)\3nity Media Player\3nity.exe [3547648] [PID.5880] =>.3nity Softwares
[MD5.5BEBE4378A91C2EF2C1F43FAB84FB256] - (.(C) 2000-2011 MPlayer Team - MPlayer - Movie Player.) -- C:\Program Files (x86)\3nity Media Player\mplayer.exe [6636032] [PID.440]
[MD5.4DBF68D2781130163F0087AA25F6D60D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera.exe [655400] [PID.4348] =>.Opera Software ASA®
[MD5.64ECA7751897164CD398CA614B802635] - (.Opera Software - Opera crash-reporter.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera_crashreporter.exe [546344] [PID.2616] =>.Opera Software ASA®
[MD5.4DBF68D2781130163F0087AA25F6D60D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera.exe [655400] [PID.2128] =>.Opera Software ASA®
[MD5.4DBF68D2781130163F0087AA25F6D60D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera.exe [655400] [PID.5544] =>.Opera Software ASA®
[MD5.4DBF68D2781130163F0087AA25F6D60D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera.exe [655400] [PID.3396] =>.Opera Software ASA®
[MD5.4DBF68D2781130163F0087AA25F6D60D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera.exe [655400] [PID.4984] =>.Opera Software ASA®
[MD5.4DBF68D2781130163F0087AA25F6D60D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera.exe [655400] [PID.6100] =>.Opera Software ASA®
[MD5.4DBF68D2781130163F0087AA25F6D60D] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\37.0.2178.43\opera.exe [655400] [PID.3876] =>.Opera Software ASA®
[MD5.71C364A14091298B8857EF40D070FE5F] - (.Mozilla Corporation - Thunderbird.) -- C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe [491464] [PID.5752] =>.Mozilla Corporation®
[MD5.A94BF16EA36A307897850CE7317C73CF] - (.Viber Media S.à r.l. - Viber.) -- C:\Users\mahmoud\AppData\Local\Viber\Viber.exe [69528656] [PID.4452] {5AECF5A58104948997EF21A8F3D44AAE}
[MD5.7DF8845A1CF92C227E81DBBC6F6434DF] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.4588] =>.Mozilla Corporation®
[MD5.2F7F595945B6F2E23D1B1423AF8C5186] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [276936] [PID.1480] =>.Mozilla Corporation®
[MD5.65C301B21772EC0F3824AF53E6C615AD] - (.Adobe Systems, Inc. - Adobe Flash Player 21.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_242.exe [3448000] [PID.1760] =>.Adobe Systems Incorporated®
[MD5.65C301B21772EC0F3824AF53E6C615AD] - (.Adobe Systems, Inc. - Adobe Flash Player 21.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_242.exe [3448000] [PID.5696] =>.Adobe Systems Incorporated®
[MD5.2D5C8C564EBE3BCAA7B8B10DCCE38799] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\mahmoud\Downloads\ZHPDiag3.exe [2211840] [PID.6188] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (13) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.findizer.fr
G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients4.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.audienceinsights.net =>.Superfluous.AudienceInsights
G0 - GCSP: Preferences [User Data\Default][HomePage] http://tags.clickintext.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [boadgeojelhgndaghljhdicfkmllpafd] Google Cast
G2 - GCE: Preference [User Data\Default] [gfngnhjhnkdhhnjleaagneglppolohdo] Les bons plans d'Iti-maps
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (6) - 1s
M0 - MFSP: prefs.js [mahmoud - 6mqbu32t.default] https://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_tchfld_16_21¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDzztB0EyD0FtD0CyE0Fzz0D0CtA0BzztN0D0Tzu0StCyCtDzytN1L2XzutAtFtBtCtFtCtFyCtN1L1Czu1BtAtN1L1G1B1V1N2Y1L1Qzu2SyDtB0F0CtBtA0C0DtGyE0D0B0BtGyC0A0E0CtGyDzyyE0DtGzz0D0AtCtAzzzy0ByE0CtB0A2QtN1M1F1B2Z1V1N2Y1L1Qzu2StAtCzz0D0F0FtC0CtG0B0AtB0BtGyEyDtDtCtGzyyB0DzztGzzzzzz0DtCzyyCyCtB0AzytD2QtN0A0LzutB%26cr%3D1559016997%26a%3Dwbf_tchfld_16_21%26os_ver%3D6.1%26os%3DWindows%2B7%2BHome%2BPremium
P2 - EXT FILE: (...) -- C:\Users\mahmoud\AppData\Roaming\Mozilla\Firefox\Profiles\6mqbu32t.default\extensions\bingsearch.full@microsoft.com.xpi
P2 - EXT FILE: (...) -- C:\Users\mahmoud\AppData\Roaming\Mozilla\Firefox\Profiles\6mqbu32t.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\mahmoud\AppData\Roaming\Mozilla\Firefox\Profiles\6mqbu32t.default\searchplugins\bing-.xml
P2 - EXT FILE: (...) -- C:\Users\mahmoud\AppData\Roaming\Mozilla\Firefox\Profiles\6mqbu32t.default\searchplugins\Search Provided by Yahoo.xml =>.Superfluous.SearchProvided
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll =>.Adobe Systems Incorporated

---\\ Opera, Démarrage,Recherche,Plugins (4) - 0s
B2 - EXT: [weboftrust] C:\Users\mahmoud\AppData\Roaming\Opera Software\Opera Stable\Extensions\eeokceolphhfjdfcibaiiopmekmcbedp
B2 - EXT: [extensible] C:\Users\mahmoud\AppData\Roaming\Opera Software\Opera Stable\Extensions\fopbkiidibcjjlcpnpldcpdiiafeclci
B2 - EXT: [HOTCLEANER.COM] C:\Users\mahmoud\AppData\Roaming\Opera Software\Opera Stable\Extensions\lfpoajlbkhlfoeeokbppmecpplmieedm
B2 - EXT: [__MSG_appName__] C:\Users\mahmoud\AppData\Roaming\Opera Software\Opera Stable\Extensions\mmmbddcnnndpbdflpccgcknaaabgldak

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.search.yahoo.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.search.yahoo.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.HP - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll =>.Hewlett-Packard Company®

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA0074060000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (16) - 1s
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe =>.Glarysoft LTD®
O4 - HKCU\..\Run: [Viber] . (.Viber Media S.à r.l. - Viber.) -- C:\Users\mahmoud\AppData\Local\Viber\Viber.exe {5AECF5A58104948997EF21A8F3D44AAE}
O4 - HKCU\..\Run: [Chromium] . (.The Chromium Authors - Chromium.) -- c:\Users\mahmoud\AppData\Local\Chromium\application\chrome.exe =>.The Chromium Authors
O4 - HKCU\..\Run: [ALLUpdate] . (.ALLPlayer Group Ltd. - ALLPlayer Update.) -- C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe {1104A4EA3E885200E53E6F94CF42B9EB} =>.ALLPlayer Group Ltd.
O4 - HKCU\..\Run: [Zoner Photo Studio Autoupdate] . (.ZONER software - Zoner Photo Studio Autoupdate.) -- C:\PROGRAM FILES\Zoner\PHOTO STUDIO 17\Program32\ZPSTray.exe =>.ZONER software, a.s.®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-4039502128-2205901324-2775840650-1001\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe =>.Glarysoft LTD®
O4 - HKUS\S-1-5-21-4039502128-2205901324-2775840650-1001\..\Run: [Viber] . (.Viber Media S.à r.l. - Viber.) -- C:\Users\mahmoud\AppData\Local\Viber\Viber.exe {5AECF5A58104948997EF21A8F3D44AAE}
O4 - HKUS\S-1-5-21-4039502128-2205901324-2775840650-1001\..\Run: [Chromium] . (.The Chromium Authors - Chromium.) -- c:\Users\mahmoud\AppData\Local\Chromium\application\chrome.exe =>.The Chromium Authors
O4 - HKUS\S-1-5-21-4039502128-2205901324-2775840650-1001\..\Run: [ALLUpdate] . (.ALLPlayer Group Ltd. - ALLPlayer Update.) -- C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe {1104A4EA3E885200E53E6F94CF42B9EB} =>.ALLPlayer Group Ltd.
O4 - HKUS\S-1-5-21-4039502128-2205901324-2775840650-1001\..\Run: [Zoner Photo Studio Autoupdate] . (.ZONER software - Zoner Photo Studio Autoupdate.) -- C:\PROGRAM FILES\Zoner\PHOTO STUDIO 17\Program32\ZPSTray.exe =>.ZONER software, a.s.®

---\\ Raccourcis Global Startup (86) - 8s
O4 - GS\Desktop [Administrateur]: 4K Video Downloader.lnk . (.Open Media LLC - 4K Video Downloader.) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC®
O4 - GS\Desktop [Administrateur]: ALLPlayer Radio.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Desktop [Administrateur]: ALLPlayer.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Desktop [Administrateur]: Auslogics DiskDefrag.lnk . (.Auslogics - Disk Defrag.) C:\Program Files (x86)\Auslogics\DiskDefrag\DiskDefrag.exe =>.Auslogics Labs Pty Ltd®
O4 - GS\Desktop [Administrateur]: Documents - Raccourci.lnk . (...) C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms
O4 - GS\Desktop [Administrateur]: KCleaner.lnk . (.KC Softwares - KCleaner.) C:\Program Files (x86)\KC Softwares\KCleaner\KCleaner.exe =>.KC Softwares®
O4 - GS\Desktop [Administrateur]: Main Console.lnk . (.D-Link Corporation - D-ViewCam 3.3.) C:\Program Files (x86)\D-Link\D-ViewCam\MainConsole.exe =>.D-Link Corporation
O4 - GS\Desktop [Administrateur]: MPC-HC x64.lnk . (.MPC-HC Team - .) C:\Program Files (x86)\MPC-HC\mpc-hc64.exe =>.MPC-HC Team
O4 - GS\Desktop [Administrateur]: ShareCenterSync.lnk . (...) C:\Program Files (x86)\ShareCenterSync\ShareCenterSync.exe
O4 - GS\Desktop [Administrateur]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\mahmoud\AppData\Local\Viber\Viber.exe {5AECF5A58104948997EF21A8F3D44AAE}
O4 - GS\Desktop [Administrateur]: VSO Media Player 1.lnk . (.VSO Software SARL - VSO Media Player.) C:\Program Files (x86)\VSO\VSO Media Player\1\VMP.exe =>.VSO Software SARL®
O4 - GS\Desktop [Administrateur]: XYplorerFree.lnk . (.www.xyplorer.com - XYplorer.) C:\Program Files (x86)\XYplorerFree\XYplorerFree.exe {2769688BFEC6837F82E83BD24CE55EA9}
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\mahmoud\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: ALLPlayer Remote Control.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe =>.ALLPlayer Group®
O4 - GS\Quicklaunch [Administrateur]: ALLPlayer.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Quicklaunch [Administrateur]: ALLPlayer.Radio.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Quicklaunch [Administrateur]: Bandizip.lnk . (.Bandisoft.com - Bandizip.) C:\Program Files\Bandizip\Bandizip64.exe =>.Bandisoft®
O4 - GS\Quicklaunch [Administrateur]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\mahmoud\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [Administrateur]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Administrateur]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD®
O4 - GS\Quicklaunch [Administrateur]: KCleaner.lnk . (.KC Softwares - KCleaner.) C:\Program Files (x86)\KC Softwares\KCleaner\KCleaner.exe =>.KC Softwares®
O4 - GS\Quicklaunch [Administrateur]: VSO Media Player 1.lnk . (.VSO Software SARL - VSO Media Player.) C:\Program Files (x86)\VSO\VSO Media Player\1\VMP.exe =>.VSO Software SARL®
O4 - GS\Quicklaunch [Administrateur]: XnView.lnk . (.XnView, http://www.xnview.com - XnView for Windows.) C:\Program Files (x86)\XnView\xnview.exe =>.XnView, http://www.xnview.com
O4 - GS\Quicklaunch [Administrateur]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe =>.Yahoo! Inc.®
O4 - GS\Quicklaunch [Administrateur]: Zoner Photo Studio 17 x64.lnk . (.ZONER software - Zoner Photo Studio 17.) C:\Program Files\Zoner\Photo Studio 17\Program64\Zps.exe =>.ZONER software, a.s.®
O4 - GS\sendTo [Administrateur]: Add to archive.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [Administrateur]: Android (ALLPlayer Remote Control).lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe =>.ALLPlayer Group®
O4 - GS\sendTo [Administrateur]: Browse path with PeaZip.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [Administrateur]: Extract here (in new folder).lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [Administrateur]: Extract here.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [Administrateur]: Extract....lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [Administrateur]: Open as archive.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: Test archive(s).lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\Desktop [mahmoud]: 4K Video Downloader.lnk . (.Open Media LLC - 4K Video Downloader.) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC®
O4 - GS\Desktop [mahmoud]: ALLPlayer Radio.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Desktop [mahmoud]: ALLPlayer.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Desktop [mahmoud]: Auslogics DiskDefrag.lnk . (.Auslogics - Disk Defrag.) C:\Program Files (x86)\Auslogics\DiskDefrag\DiskDefrag.exe =>.Auslogics Labs Pty Ltd®
O4 - GS\Desktop [mahmoud]: Documents - Raccourci.lnk . (...) C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms
O4 - GS\Desktop [mahmoud]: KCleaner.lnk . (.KC Softwares - KCleaner.) C:\Program Files (x86)\KC Softwares\KCleaner\KCleaner.exe =>.KC Softwares®
O4 - GS\Desktop [mahmoud]: Main Console.lnk . (.D-Link Corporation - D-ViewCam 3.3.) C:\Program Files (x86)\D-Link\D-ViewCam\MainConsole.exe =>.D-Link Corporation
O4 - GS\Desktop [mahmoud]: MPC-HC x64.lnk . (.MPC-HC Team - .) C:\Program Files (x86)\MPC-HC\mpc-hc64.exe =>.MPC-HC Team
O4 - GS\Desktop [mahmoud]: ShareCenterSync.lnk . (...) C:\Program Files (x86)\ShareCenterSync\ShareCenterSync.exe
O4 - GS\Desktop [mahmoud]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\mahmoud\AppData\Local\Viber\Viber.exe {5AECF5A58104948997EF21A8F3D44AAE}
O4 - GS\Desktop [mahmoud]: VSO Media Player 1.lnk . (.VSO Software SARL - VSO Media Player.) C:\Program Files (x86)\VSO\VSO Media Player\1\VMP.exe =>.VSO Software SARL®
O4 - GS\Desktop [mahmoud]: XYplorerFree.lnk . (.www.xyplorer.com - XYplorer.) C:\Program Files (x86)\XYplorerFree\XYplorerFree.exe {2769688BFEC6837F82E83BD24CE55EA9}
O4 - GS\Desktop [mahmoud]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\mahmoud\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [mahmoud]: ALLPlayer Remote Control.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe =>.ALLPlayer Group®
O4 - GS\Quicklaunch [mahmoud]: ALLPlayer.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Quicklaunch [mahmoud]: ALLPlayer.Radio.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer\ALLPlayer.exe =>.ALLPlayer Group®
O4 - GS\Quicklaunch [mahmoud]: Bandizip.lnk . (.Bandisoft.com - Bandizip.) C:\Program Files\Bandizip\Bandizip64.exe =>.Bandisoft®
O4 - GS\Quicklaunch [mahmoud]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\mahmoud\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [mahmoud]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [mahmoud]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD®
O4 - GS\Quicklaunch [mahmoud]: KCleaner.lnk . (.KC Softwares - KCleaner.) C:\Program Files (x86)\KC Softwares\KCleaner\KCleaner.exe =>.KC Softwares®
O4 - GS\Quicklaunch [mahmoud]: VSO Media Player 1.lnk . (.VSO Software SARL - VSO Media Player.) C:\Program Files (x86)\VSO\VSO Media Player\1\VMP.exe =>.VSO Software SARL®
O4 - GS\Quicklaunch [mahmoud]: XnView.lnk . (.XnView, http://www.xnview.com - XnView for Windows.) C:\Program Files (x86)\XnView\xnview.exe =>.XnView, http://www.xnview.com
O4 - GS\Quicklaunch [mahmoud]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe =>.Yahoo! Inc.®
O4 - GS\Quicklaunch [mahmoud]: Zoner Photo Studio 17 x64.lnk . (.ZONER software - Zoner Photo Studio 17.) C:\Program Files\Zoner\Photo Studio 17\Program64\Zps.exe =>.ZONER software, a.s.®
O4 - GS\sendTo [mahmoud]: Add to archive.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [mahmoud]: Android (ALLPlayer Remote Control).lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe =>.ALLPlayer Group®
O4 - GS\sendTo [mahmoud]: Browse path with PeaZip.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [mahmoud]: Extract here (in new folder).lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [mahmoud]: Extract here.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [mahmoud]: Extract....lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [mahmoud]: Open as archive.lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\sendTo [mahmoud]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [mahmoud]: Test archive(s).lnk . (.Giorgio Tani - PeaZip, file and archive manager.) C:\Program Files\PeaZip\peazip.exe =>.Giorgio Tani
O4 - GS\CommonDesktop [Public]: 3nity Media Player.lnk . (.3nity Softwares - 3nity Media Player.) C:\Program Files (x86)\3nity Media Player\3nity.exe =>.3nity Softwares
O4 - GS\CommonDesktop [Public]: ALLPlayer Remote Control.lnk . (.ALLPlayer Group Ltd. - .) C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe =>.ALLPlayer Group®
O4 - GS\CommonDesktop [Public]: AV Music Morpher.lnk . (.AVSoft Corp. (VN) - AV Music Morpher 5.0.) C:\Program Files (x86)\AV Music Morpher\AV Music Morpher.exe =>.AVSOFT CORP.®
O4 - GS\CommonDesktop [Public]: BlueSoleil Space.lnk . (.Copyright (C) 2014 - ShowBsui MFC Application.) C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleil.exe {787221A2BFFFFA99D5B719FC919776F0}
O4 - GS\CommonDesktop [Public]: Crescendo Music Notation Editor.lnk . (.NCH Software - Crescendo Music Notation Editor.) C:\Program Files (x86)\NCH Software\Crescendo\crescendo.exe =>.NCH Software®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Icecream Screen Recorder.lnk . (.Icecream - Icecream Screen Recorder.) C:\Program Files (x86)\Icecream Screen Recorder\recorder.exe =>.Icecream
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\CommonDesktop [Public]: RogueKiller.lnk . (...) C:\Program Files (x86)\RogueKiller\RogueKiller64.exe
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: TotalMedia 3.5.lnk . (.ArcSoft, Inc. - ArcSoft TotalMedia.) C:\Program Files (x86)\ArcSoft\TotalMedia 3.5\TotalMedia.exe =>.ArcSoft, Inc.
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: WinTV 7.lnk . (.Hauppauge Computer Works, Inc. - WinTV7.) C:\Program Files (x86)\WinTV\WinTV7\WinTV7.exe =>.Hauppauge Computer Works, Inc.
O4 - GS\CommonDesktop [Public]: Yahoo! Messenger.lnk . (.Yahoo! Inc. - Yahoo! Messenger.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe =>.Yahoo! Inc.®
O4 - GS\Programs [Public]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\mahmoud\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{9CE8B42E-59A3-4C03-81D5-783FC8AA876D}: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (26) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl®
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Logiciels installés (152) - 20s
O42 - Logiciel: 3nity Media Player version 3.15.4.85 - (.3nity Softwares.) [HKLM][64Bits] -- {D3D81DF1-2CD5-4501-9887-0FF48ACBD25F}_is1 =>.3nity Softwares
O42 - Logiciel: 4K Video Downloader 3.8 - (.Open Media LLC.) [HKLM][64Bits] -- 4K Video Downloader_is1 =>.Open Media LLC
O42 - Logiciel: 7-Zip 15.14 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AFF7E080-1974-45BF-9310-10DE1A1F5ED0} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 21 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: ALLPlayer Remote Control - (.ALLPlayer Group, Ltd..) [HKLM][64Bits] -- {146BDBDD-ACD9-4B04-A286-C27471841E8E}_is1 =>.ALLPlayer Group, Ltd.
O42 - Logiciel: ALLPlayer V6.X - (.ALLPlayer Group, Ltd..) [HKLM][64Bits] -- ALLPlayer_is1 =>.ALLPlayer Group, Ltd.
O42 - Logiciel: ArcSoft TotalMedia 3.5 - (.ArcSoft.) [HKLM][64Bits] -- {74292F90-895A-4FC6-A692-9641532B1B63} =>.ArcSoft
O42 - Logiciel: Ashampoo Burning Studio 2016 v.16.0.0 - (.Ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- {91B33C97-B4A4-B41A-6B97-C62C82CEB6A9}_is1 =>.Ashampoo GmbH & Co. KG®
O42 - Logiciel: Auslogics DiskDefrag - (.Auslogics Labs Pty Ltd.) [HKLM][64Bits] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 =>.Auslogics Labs Pty Ltd®
O42 - Logiciel: AutoUpdate - (...) [HKLM][64Bits] -- {18D10072035C4515918F7E37EAFAACFC}
O42 - Logiciel: AV Music Morpher - (...) [HKLM][64Bits] -- AV Music Morpher
O42 - Logiciel: Bandizip - (.Bandisoft.com.) [HKLM][64Bits] -- Bandizip =>.Bandisoft®
O42 - Logiciel: Bluesoleil 10.0.494.0 - (.IVT Corporation.) [HKLM][64Bits] -- {C84D7B29-FFAF-4380-A63C-C7B5EC2861E1} =>.IVT Corporation
O42 - Logiciel: BUFFALO NAS Navigator - (.Buffalo Inc..) [HKLM][64Bits] -- UN060501 {5C247EB65F6E19C0D4AB38195485906C} =>.BUFFALO INC.
O42 - Logiciel: CameraHelperMsi - (.Logitech.) [HKLM][64Bits] -- {15634701-BACE-4449-8B25-1567DA8C9FD3} =>.Logitech
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Chromium - (.Chromium.) [HKCU][64Bits] -- Chromium =>.Chromium
O42 - Logiciel: Crescendo Music Notation Editor - (.NCH Software.) [HKLM][64Bits] -- Crescendo =>.NCH Software®
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: Device Pack - (.D-Link.) [HKLM][64Bits] -- {D54D4A22-4382-4485-92DF-00C39F123E87} =>.D-Link
O42 - Logiciel: DivX Codec - (.DivX, Inc..) [HKLM][64Bits] -- {7B63B2922B174135AFC0E1377DD81EC2} =>.DivX, Inc.
O42 - Logiciel: D-Link D-ViewCam - (.D-Link.) [HKLM][64Bits] -- {440E9F90-0619-4E84-8226-65AD5073AD24} =>.D-Link
O42 - Logiciel: DScaler - (...) [HKLM][64Bits] -- DScaler_is1
O42 - Logiciel: Epic Pen version Epic Pen - (.TANK Media.) [HKLM][64Bits] -- Epic Pen_is1
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner =>.SEIKO EPSON Corporation®
O42 - Logiciel: EPSON Universal Print Driver Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON Universal Print Driver =>.SEIKO EPSON CORPORATION®
O42 - Logiciel: EPSON XP-700 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON XP-700 Series =>.SEIKO EPSON Corporation®
O42 - Logiciel: erLT - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} =>.Logitech, Inc.
O42 - Logiciel: FastStone Image Viewer 5.5 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Image Viewer =>.FastStone Soft
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} =>.Microsoft Corporation
O42 - Logiciel: Glary Utilities 5.49 - (.Glarysoft Ltd.) [HKLM][64Bits] -- Glary Utilities 5 =>.Glarysoft LTD®
O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM][64Bits] -- {93EB1D27-3378-36DD-ACEC-380FEDB2297B} =>.Google, Inc.
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} =>.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: GSplit 3 - (.G.D.G. Software.) [HKLM][64Bits] -- GSplit3Set
O42 - Logiciel: Hauppauge WinTV 7 - (.Hauppauge Computer Works.) [HKLM][64Bits] -- Hauppauge WinTV 7 =>.Hauppauge Computer Works
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company
O42 - Logiciel: HotShots - (.TheHive.) [HKLM][64Bits] -- HotShots
O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1} =>.Hewlett-Packard Company
O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM][64Bits] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2} =>.Hewlett-Packard
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {C9EF1AAF-B542-41C8-A537-1142DA5D4AEC} =>.Hewlett-Packard
O42 - Logiciel: HP Odometer - (.Hewlett-Packard.) [HKLM][64Bits] -- {B8AC1A89-FFD1-4F97-8051-E505A160F562} =>.Hewlett-Packard
O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {D35B72B6-F0E4-462B-BDEB-E08032B3B681} =>.Hewlett-Packard Company
O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C} =>.Hewlett-Packard Company
O42 - Logiciel: HP Support Information - (.Hewlett-Packard.) [HKLM][64Bits] -- {7F2A11F4-EAE8-4325-83EC-E3E99F85169E} =>.Hewlett-Packard
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {ED5CE45D-842B-4C18-A002-87E16EA39BB3} =>.Hewlett-Packard Company
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard
O42 - Logiciel: HP Vision Hardware Diagnostics - (.Hewlett-Packard.) [HKLM][64Bits] -- {D79A02E9-6713-4335-9668-AAC7474C0C0E} =>.Hewlett-Packard
O42 - Logiciel: Icecream Screen Recorder version 3.13 - (.Icecream Apps.) [HKLM][64Bits] -- {7ADEC622-3230-4C9A-9DCE-9BD462B74095}_is1 =>.Icecream Apps
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation®
O42 - Logiciel: IPTInstaller - (.HTC.) [HKLM][64Bits] -- {08208143-777D-4A06-BB54-71BF0AD1BB70} =>.HTC
O42 - Logiciel: Jarte - (.Carolina Road Software L.L.C..) [HKLM][64Bits] -- Jarte_is1 {3FEC7B978AB28E3473C5CF94B226D9D7}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {0BE9E708-5DC0-4963-9CFD-0AA519090E79} =>.Microsoft Corporation
O42 - Logiciel: KC Softwares KCleaner - (.KC Softwares.) [HKLM][64Bits] -- KC Softwares KCleaner_is1 =>.KC Softwares®
O42 - Logiciel: LibreOffice 5.1.0.3 - (.The Document Foundation.) [HKLM][64Bits] -- {C7F3829A-D959-417F-8A0A-EFAA5D484BE1} =>.The Document Foundation
O42 - Logiciel: Logitech Options - (.Logitech.) [HKLM][64Bits] -- LogiOptions =>.Logitech Inc®
O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM][64Bits] -- {D40EB009-0499-459c-A8AF-C9C110766215} =>.Logitech®
O42 - Logiciel: LWS Facebook - (.Logitech.) [HKLM][64Bits] -- {FF167195-9EE4-46C0-8CD7-FBA3457E88AB} =>.Logitech
O42 - Logiciel: LWS Gallery - (.Logitech.) [HKLM][64Bits] -- {6F76EC3C-34B1-436E-97FB-48C58D7BEDCD} =>.Logitech
O42 - Logiciel: LWS Help_main - (.Logitech.) [HKLM][64Bits] -- {1651216E-E7AD-4250-92A1-FB8ED61391C9} =>.Logitech
O42 - Logiciel: LWS Launcher - (.Logitech.) [HKLM][64Bits] -- {83C8FA3C-F4EA-46C4-8392-D3CE353738D6} =>.Logitech
O42 - Logiciel: LWS Motion Detection - (.Logitech.) [HKLM][64Bits] -- {71E66D3F-A009-44AB-8784-75E2819BA4BA} =>.Logitech
O42 - Logiciel: LWS Pictures And Video - (.Logitech.) [HKLM][64Bits] -- {08610298-29AE-445B-B37D-EFBE05802967} =>.Logitech
O42 - Logiciel: LWS Twitter - (.Logitech.) [HKLM][64Bits] -- {174A3B31-4C43-43DD-866F-73C9DB887B48} =>.Logitech
O42 - Logiciel: LWS Video Mask Maker - (.Logitech.) [HKLM][64Bits] -- {EED027B7-0DB6-404B-8F45-6DFEE34A0441} =>.Logitech
O42 - Logiciel: LWS VideoEffects - (.Logitech.) [HKLM][64Bits] -- {138A4072-9E64-46BD-B5F9-DB2BB395391F} =>.Logitech
O42 - Logiciel: LWS Webcam Software - (.Logitech.) [HKLM][64Bits] -- {8937D274-C281-42E4-8CDB-A0B2DF979189} =>.Logitech
O42 - Logiciel: LWS WLM Plugin - (.Logitech.) [HKLM][64Bits] -- {9DAEA76B-E50F-4272-A595-0124E826553D} =>.Logitech
O42 - Logiciel: LWS YouTube Plugin - (.Logitech.) [HKLM][64Bits] -- {21DF0294-6B9D-4741-AB6F-B2ABFBD2387E} =>.Logitech
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Mathematics - (.Microsoft Corporation.) [HKLM][64Bits] -- {4D090F70-6F08-4B60-9357-A1DFD4458F09} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {3061DCA5-2D0B-48F9-800F-9D7C1FEB5E78} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mises à jour NVIDIA 2.11.3.5 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Mozilla Firefox 46.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 46.0.1 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: Mozilla Thunderbird 45.1.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 45.1.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: MPC-HC 1.7.10 (64-bit) - (.MPC-HC Team.) [HKLM][64Bits] -- {2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1 =>.Open Source Developer, Fotis ZAFIROPOULOS®
O42 - Logiciel: MSVC80_x64_v2 - (.Nokia.) [HKLM][64Bits] -- {4D668D4F-FAA2-4726-834C-31F4614F312E} =>.Nokia
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM][64Bits] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} =>.Nokia
O42 - Logiciel: MSVC90_x64 - (.Nokia.) [HKLM][64Bits] -- {AB071C8B-873C-459F-ACA9-9EBE03C3E89B} =>.Nokia
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM][64Bits] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D} =>.Nokia
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: MuseScore 2 - (.Werner Schweer and Others.) [HKLM][64Bits] -- {D0969A82-E79E-45D9-95D2-B2824880F780} =>.Werner Schweer and Others
O42 - Logiciel: MusicBee 3.0 - (.Steven Mayall.) [HKLM][64Bits] -- MusicBee =>.Steven Mayall
O42 - Logiciel: mydlink services plugin - (.D-Link Corporation.) [HKLM][64Bits] -- {1A9B665A-5F27-4F71-BF90-22FDFE7A1635} =>.D-Link Corporation
O42 - Logiciel: NVIDIA GeForce Experience 2.11.3.5 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.16.0318 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote 3D Vision 368.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.14 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 364.44 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 368.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 2.11.3.5 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 1.2.40 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: OpenOffice 4.1.2 - (.Apache Software Foundation.) [HKLM][64Bits] -- {DCB1B348-C94E-4D6D-8CE0-7D9DA5CF663E} =>.Apache Software Foundation
O42 - Logiciel: Opera Stable 37.0.2178.43 - (.Opera Software.) [HKLM][64Bits] -- Opera 37.0.2178.43 =>.Opera Software ASA®
O42 - Logiciel: Panneau de configuration NVIDIA 368.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PDF Complete Special Edition - (.PDF Complete, Inc.) [HKLM][64Bits] -- PDF Complete =>.PDF Complete®
O42 - Logiciel: PDFCreator - (.pdfforge GmbH.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.pdfforge GmbH
O42 - Logiciel: PeaZip 6.0.0 (WIN64) - (.Giorgio Tani.) [HKLM][64Bits] -- {5A2BC38A-406C-4A5B-BF45-6991F9A05325}_is1 =>.Giorgio Tani
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 =>.Google Inc®
O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} =>.Microsoft Corporation
O42 - Logiciel: PriceFountain - (...) [HKCU][64Bits] -- PandowdyHelping =>PUP.Optional.PriceFountain
O42 - Logiciel: Project Dogwaffle Artist version 9 - (.Daniel Ritchie.) [HKLM][64Bits] -- {F81E2343-94FC-4D41-B90F-45461FEC8503}_is1 =>.Daniel Ritchie
O42 - Logiciel: REALTEK DTV USB DEVICE - (.Realtek.) [HKLM][64Bits] -- {DDBB7C89-1A09-441E-AA0F-6AA465755C17} =>.Macrovision Corporation®
O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} =>.CyberLink®
O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva =>.Piriform Ltd®
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller =>.VS Revo Group
O42 - Logiciel: RogueKiller version 12 - (.Adlice Software.) [HKLM][64Bits] -- 8B3D7924-ED89-486B-8322-E8594065D5CB_is1 =>.Adlice®
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} =>.Microsoft Corporation
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 =>.Microsoft Corporation
O42 - Logiciel: SFR - Media Center - (.SFR.) [HKLM][64Bits] -- SFR_Media Center =>.SFR
O42 - Logiciel: ShareCenterSync - (...) [HKLM][64Bits] -- ShareCenterSync_is1
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.24 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Smart Organizing Monitor - (.RICOH.) [HKLM][64Bits] -- {AD66DDE3-33AC-4F26-9EC6-A37454423C4F} =>.RICOH
O42 - Logiciel: SumatraPDF - (.Krzysztof Kowalczyk.) [HKLM][64Bits] -- SumatraPDF =>.Krzysztof Kowalczyk®
O42 - Logiciel: theRenamer 7.69 - (.theRenamer.) [HKLM][64Bits] -- {55B6344C-AE4F-4DA8-BF32-D7AE0CB4D2BE}_is1 =>.theRenamer
O42 - Logiciel: Update for PriceFountain - (.Update for PriceFountain.) [HKCU][64Bits] -- {2684281D-245F-5DA8-95BD-3E499453CD0D} =>PUP.Optional.PriceFountain
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKCU][64Bits] -- {acc83058-83b0-41e2-b372-266672a1af16} {5AECF5A58104948997EF21A8F3D44AAE}
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKLM][64Bits] -- {D65DDA75-2C0A-46BA-807D-127BD5638490}
O42 - Logiciel: Video to Video - (.Media Converters.) [HKLM][64Bits] -- {7F95A744-78DA-4AED-A8F0-A0AF330B8411}_is1 =>.Media Converters
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: VSO Media Player 1.5.4.512 - (.VSO Software.) [HKLM][64Bits] -- {59F1E8E6-60EC-4CC1-8C72-E0F38E585215}_is1 =>.VSO Software
O42 - Logiciel: Vulkan Run Time Libraries 1.0.11.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.11.1 =>.LunarG, Inc.®
O42 - Logiciel: Windows Care Genius 3.95 - (.tenorshare.com, Inc..) [HKLM][64Bits] -- Windows Care Genius_is1 =>.Tenorshare Co.,Ltd.®
O42 - Logiciel: XnView 2.35 - (.Gougelet Pierre-e.) [HKLM][64Bits] -- XnView_is1 =>.Gougelet Pierre-e
O42 - Logiciel: XnViewMP 0.78 - (.Gougelet Pierre-e.) [HKLM][64Bits] -- XnViewMP_is1 =>.Pierre GOUGELET®
O42 - Logiciel: XYplorerFree 16.40 - (.Donald Lessau.) [HKLM][64Bits] -- XYplorerFree =>.Donald Lessau
O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger =>.Yahoo! Inc.
O42 - Logiciel: Zoner Photo Studio 17 - (.ZONER software.) [HKLM][64Bits] -- ZonerPhotoStudio17_EN_is1 {65E8F5332C3C9E28F930BD0A45A0CDCA} =>.ZONER software
O42 - Logiciel: Zortam Mp3 Media Studio 20.35 - (.Zortam.) [HKLM][64Bits] -- Zortam Mp3 Media Studio_is1 =>.Zortam

---\\ HKCU & HKLM Software Keys (177) - 20s
HKLM\SOFTWARE\Wow6432Node\Ada2
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ArcSoft
HKLM\SOFTWARE\Wow6432Node\Ashampoo
HKLM\SOFTWARE\Wow6432Node\Auslogics
HKLM\SOFTWARE\Wow6432Node\Avisynth
HKLM\SOFTWARE\Wow6432Node\Avnex
HKLM\SOFTWARE\Wow6432Node\BlueSoleil cPhone
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\BSAddins
HKLM\SOFTWARE\Wow6432Node\BSPACode
HKLM\SOFTWARE\Wow6432Node\BSProductManage
HKLM\SOFTWARE\Wow6432Node\Carolina Road Software
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Cygwin
HKLM\SOFTWARE\Wow6432Node\D-Link
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\DlinkViewCam
HKLM\SOFTWARE\Wow6432Node\EaseUS Todo Backup
HKLM\SOFTWARE\Wow6432Node\EasyBits
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\FastStone Image Viewer
HKLM\SOFTWARE\Wow6432Node\Foxit Software
HKLM\SOFTWARE\Wow6432Node\GlarySoft
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\GSplit
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Hauppauge
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\IObit
HKLM\SOFTWARE\Wow6432Node\IVT Corporation
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\LICEcap
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\logishrd
HKLM\SOFTWARE\Wow6432Node\Logitech
HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MELCO INC
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Napiprojekt
HKLM\SOFTWARE\Wow6432Node\NCH Software
HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Neuf
HKLM\SOFTWARE\Wow6432Node\NewspaperDirect
HKLM\SOFTWARE\Wow6432Node\Nokia
HKLM\SOFTWARE\Wow6432Node\Nuclear Coffee
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenOffice
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Outertech
HKLM\SOFTWARE\Wow6432Node\Panda Software
HKLM\SOFTWARE\Wow6432Node\PCTV Systems
HKLM\SOFTWARE\Wow6432Node\PDFComplete
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SoftVTU
HKLM\SOFTWARE\Wow6432Node\SOFTWARE
HKLM\SOFTWARE\Wow6432Node\Symantec
HKLM\SOFTWARE\Wow6432Node\TheHive
HKLM\SOFTWARE\Wow6432Node\ThinPrint
HKLM\SOFTWARE\Wow6432Node\USB2800
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\VMware, Inc.
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\VSO
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\Win32 Services
HKLM\SOFTWARE\Wow6432Node\WiseCleaner
HKLM\SOFTWARE\Wow6432Node\Wizard_Media_Recovery
HKLM\SOFTWARE\Wow6432Node\XnView
HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo!
HKLM\SOFTWARE\Wow6432Node\ZONER
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\4kdownload.com
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\AC3filter
HKCU\SOFTWARE\ALLPlayer Remote
HKCU\SOFTWARE\Andy
HKCU\SOFTWARE\Aplusfreepdftool
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Applications
HKCU\SOFTWARE\ArcSoft
HKCU\SOFTWARE\Ashampoo
HKCU\SOFTWARE\Avnex
HKCU\SOFTWARE\Bandisoft
HKCU\SOFTWARE\Bandizip
HKCU\SOFTWARE\BlackParrot
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Clementine
HKCU\SOFTWARE\csastats
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\D-Link
HKCU\SOFTWARE\Debug
HKCU\SOFTWARE\Digital Photo Software
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\EpmNewsInfo
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\Explorer++
HKCU\SOFTWARE\FlashPeak
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Glarysoft
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GSettings
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\Icecream
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IvoSoft
HKCU\SOFTWARE\KC Softwares
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept (HCW)
HKCU\SOFTWARE\MarBit
HKCU\SOFTWARE\MELCO INC
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\MuseScore2
HKCU\SOFTWARE\NCH Software
HKCU\SOFTWARE\NCH Swift Sound
HKCU\SOFTWARE\Neuf
HKCU\SOFTWARE\Nokia
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\paint.net
HKCU\SOFTWARE\PC SOFT
HKCU\SOFTWARE\PCTV Systems
HKCU\SOFTWARE\PDFComplete
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Symantec
HKCU\SOFTWARE\System Healer =>PUP.Optional.SystemHealer
HKCU\SOFTWARE\The Document Foundation
HKCU\SOFTWARE\TheHive
HKCU\SOFTWARE\theRenamer
HKCU\SOFTWARE\Thunderbird
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Viber
HKCU\SOFTWARE\VideoConverter-Media
HKCU\SOFTWARE\VOB
HKCU\SOFTWARE\VSO
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\Werner Schweer and Others
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wintertree
HKCU\SOFTWARE\WizardRecovery Company
HKCU\SOFTWARE\Wizard_Media_Recovery
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Yahoo =>.Yahoo!
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\ZONER
HKCU\SOFTWARE\Zortam
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\Yahoo

---\\ Contenu des dossiers Programmes (431) - 28s
O43 - CFD: 07/03/2016 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 29/02/2016 - [] D -- C:\Program Files\Bandizip =>.Bandisoft®
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files\Bulk Crap Uninstaller
O43 - CFD: 31/03/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 25/05/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 24/03/2016 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows®
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 23/01/2016 - [] D -- C:\Program Files\Hewlett-Packard
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files\hp
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation®
O43 - CFD: 08/03/2016 - [] D -- C:\Program Files\LibreOffice 5 =>.The Document Foundation®
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Logitech =>.Logitech Inc®
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 24/02/2016 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation®
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 26/12/2015 - [] D -- C:\Program Files\MPC-HC =>.Open Source Developer, Fotis ZAFIROPOULOS®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 11/05/2016 - [] D -- C:\Program Files\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 25/12/2015 - [] RD -- C:\Program Files\Online Services
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\PDFCreator =>.pdfforge GmbH®
O43 - CFD: 07/03/2016 - [] D -- C:\Program Files\PeaZip
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files\PlayReady
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files\Recuva =>.Piriform Ltd®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files\RogueKiller =>.Adlice®
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 10/02/2016 - [] D -- C:\Program Files\VideoLAN
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 02/02/2016 - [] D -- C:\Program Files\Windows Live
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\XnViewMP
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files\ZinioReader4
O43 - CFD: 24/05/2016 - [] D -- C:\Program Files\Zoner {65E8F5332C3C9E28F930BD0A45A0CDCA}
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files (x86)\3nity Media Player
O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\4KDownload =>.Open Media LLC®
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files (x86)\ALLPlayer {569643B8827B0FF8BF76A119AD869752}
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files (x86)\ALLPlayer Remote =>.ALLPlayer Group®
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\ArcSoft
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\Ashampoo =>.Ashampoo GmbH & Co. KG®
O43 - CFD: 22/02/2016 - [] D -- C:\Program Files (x86)\Auslogics =>.Auslogics Labs Pty Ltd®
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\AV Music Morpher =>.AVSOFT CORP.®
O43 - CFD: 10/05/2016 - [] D -- C:\Program Files (x86)\BUFFALO {2A6CD1F901AE7FF079D31E9741DA4008}
O43 - CFD: 25/05/2016 - [] D -- C:\Program Files (x86)\CaptureWiz
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files (x86)\Clementine
O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\Cyberlink =>.CyberLink Corp.®
O43 - CFD: 20/05/2016 - [] D -- C:\Program Files (x86)\D-Link
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\DivX
O43 - CFD: 24/05/2016 - [] D -- C:\Program Files (x86)\DScaler
O43 - CFD: 18/05/2016 - [] D -- C:\Program Files (x86)\EaseUS =>.CHENGDU YIWO Tech Development Co., Ltd.®
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files (x86)\Epic Pen
O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\epson =>.SEIKO EPSON CORPORATION®
O43 - CFD: 31/01/2016 - [] D -- C:\Program Files (x86)\FastStone Image Viewer
O43 - CFD: 07/03/2016 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software Incorporated®
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\Glary Utilities 5 =>.Glarysoft LTD®
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 25/02/2016 - [] D -- C:\Program Files (x86)\GSplit =>.G.D.G. Software SARL®
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files (x86)\HDD Health
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company®
O43 - CFD: 10/05/2016 - [] D -- C:\Program Files (x86)\Hp =>.Hewlett-Packard Company®
O43 - CFD: 29/01/2016 - [] D -- C:\Program Files (x86)\HTC
O43 - CFD: 11/02/2016 - [] D -- C:\Program Files (x86)\Icecream Screen Recorder
O43 - CFD: 23/05/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Hauppauge Computer Works®
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation®
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\IObit =>.IObit Information Technology®
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files (x86)\IVT Corporation {787221A2BFFFFA99D5B719FC919776F0}
O43 - CFD: 03/05/2016 - [] D -- C:\Program Files (x86)\Jarte {3FEC7B978AB28E3473C5CF94B226D9D7}
O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\KC Softwares =>.KC Softwares®
O43 - CFD: 03/04/2016 - [] D -- C:\Program Files (x86)\LICEcap
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Logitech =>.Logitech, Inc.®
O43 - CFD: 08/03/2016 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET
O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Microsoft Mathematics =>.Microsoft Corporation®
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 02/02/2016 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation®
O43 - CFD: 24/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Security Client
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 11/02/2011 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 07/05/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 01/02/2016 - [] D -- C:\Program Files (x86)\MuseScore 2
O43 - CFD: 13/05/2016 - [] D -- C:\Program Files (x86)\MusicBee
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\MUSICSTATION
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software®
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\Norton Security Scan
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\NortonInstaller
O43 - CFD: 27/03/2016 - [] D -- C:\Program Files (x86)\NSIS Uninstall Information
O43 - CFD: 11/05/2016 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 25/12/2015 - [] RD -- C:\Program Files (x86)\Online Services =>.Skype Technologies SA®
O43 - CFD: 07/01/2016 - [] D -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 19/05/2016 - [] D -- C:\Program Files (x86)\Opera =>.Opera Software ASA®
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\PCTV Systems
O43 - CFD: 21/05/2016 - [] D -- C:\Program Files (x86)\PDArtist
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\PDF Complete =>.PDF Complete®
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 11/01/2016 - [] D -- C:\Program Files (x86)\ScanMyReg =>.SuiNing Yilong Software Store®
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files (x86)\SFR =>.Societe Francaise de Radiotelephone (SFR)®
O43 - CFD: 22/05/2016 - [] D -- C:\Program Files (x86)\ShareCenterSync
O43 - CFD: 26/05/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Smart Organizing Monitor for SP 110 Series
O43 - CFD: 07/03/2016 - [] D -- C:\Program Files (x86)\SumatraPDF =>.Krzysztof Kowalczyk®
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\SymSilent =>.Symantec Corporation®
O43 - CFD: 11/05/2016 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 10/04/2016 - [] D -- C:\Program Files (x86)\TheHive
O43 - CFD: 22/05/2016 - [] D -- C:\Program Files (x86)\theRenamer
O43 - CFD: 24/05/2016 - [] D -- C:\Program Files (x86)\TV 3L PC
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\Video to Video
O43 - CFD: 27/05/2016 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 09/05/2016 - [] D -- C:\Program Files (x86)\VS Revo Group =>.VS Revo Group®
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files (x86)\VSO
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc.®
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files (x86)\Windows Care Genius =>.Tenorshare Co.,Ltd.®
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 02/02/2016 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation®
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 25/05/2016 - [] D -- C:\Program Files (x86)\Windows Media Adapter v615
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 30/05/2016 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\WinTV
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files (x86)\WizardRecovery Company
O43 - CFD: 09/05/2016 - [] D -- C:\Program Files (x86)\WonderFox Soft {7039274945301F3B1BA91C32579BBC3C}
O43 - CFD: 06/01/2016 - [] D -- C:\Program Files (x86)\XnView
O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\XYplorerFree {2769688BFEC6837F82E83BD24CE55EA9}
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files (x86)\Yahoo!
O43 - CFD: 19/05/2016 - [] D -- C:\Program Files (x86)\Zortam Mp3 Media Studio
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3nity Media Player
O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K Download
O43 - CFD: 07/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 06/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer Remote Control
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft TotalMedia 3.5
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
O43 - CFD: 22/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AV Music Morpher
O43 - CFD: 29/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandizip
O43 - CFD: 10/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BUFFALO
O43 - CFD: 24/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 25/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
O43 - CFD: 21/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power2Go 9
O43 - CFD: 20/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\D-Link D-ViewCam
O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
O43 - CFD: 24/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DScaler
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Pen
O43 - CFD: 26/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 26/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eReaders and Document Viewers
O43 - CFD: 31/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Image Viewer
O43 - CFD: 19/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
O43 - CFD: 26/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 19/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5
O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GSplit 3
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hauppauge WinTV
O43 - CFD: 10/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 09/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Manuels de l'utilisateur
O43 - CFD: 11/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Screen Recorder
O43 - CFD: 03/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jarte
O43 - CFD: 26/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KC Softwares
O43 - CFD: 08/03/2016 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.1
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mathematics
O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 26/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
O43 - CFD: 13/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MusicBee
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 25/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
O43 - CFD: 07/01/2016 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2
O43 - CFD: 23/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools
O43 - CFD: 12/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
O43 - CFD: 07/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 21/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
O43 - CFD: 21/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project Dogwaffle Artist
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REALTEK DTV USB DEVICE
O43 - CFD: 04/02/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
O43 - CFD: 12/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR
O43 - CFD: 22/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShareCenterSync
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Organizing Monitor for SP 110 Series
O43 - CFD: 24/05/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 24/05/2016 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-Disabled
O43 - CFD: 21/11/2010 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 10/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TheHive
O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video
O43 - CFD: 27/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
O43 - CFD: 12/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Care Genius
O43 - CFD: 02/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 06/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView
O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnViewMP
O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XYplorerFree
O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger
O43 - CFD: 19/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zortam
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\2460407b-20b3-1 =>.Superfluous.Polluteware
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\2460407b-56e3-0 =>.Superfluous.Polluteware
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\ALLPlayer
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\Apple
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\ArcSoft
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\Ashampoo
O43 - CFD: 22/02/2016 - [] D -- C:\ProgramData\Auslogics
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\Avnex
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\ClassicShell
O43 - CFD: 27/01/2016 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Easybits Magic Desktop for HP
O43 - CFD: 10/02/2016 - [] D -- C:\ProgramData\eMedia
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\Foxit ContentPlatform
O43 - CFD: 26/04/2016 - [] D -- C:\ProgramData\GlarySoft
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\Google
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Installations
O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 04/02/2012 - [] D -- C:\ProgramData\intel
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\IObit
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\LogiShrd
O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\Logitech
O43 - CFD: 30/05/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\NCH Software
O43 - CFD: 24/03/2016 - [] D -- C:\ProgramData\NokiaInstallerCache
O43 - CFD: 26/05/2016 - [] D -- C:\ProgramData\Norton
O43 - CFD: 04/02/2012 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 11/05/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 22/04/2016 - [] D -- C:\ProgramData\Panda Security
O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\panda_url_filtering
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\PC Suite
O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\PCTV Systems
O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\ProductData
O43 - CFD: 26/05/2016 - [] D -- C:\ProgramData\Recovery
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 24/05/2016 - [] D -- C:\ProgramData\ShareCenter
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\SUPPORTDIR
O43 - CFD: 29/05/2016 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\TP-LINK
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\Vintager
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\VMware
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\VSO
O43 - CFD: 30/05/2016 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\Yahoo!
O43 - CFD: 24/05/2016 - [] D -- C:\ProgramData\Zoner
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 07/03/2016 - [0] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft
O43 - CFD: 15/04/2016 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\EPSON
O43 - CFD: 25/02/2016 - [] D -- C:\Program Files (x86)\Common Files\GSplit
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 25/02/2016 - [] D -- C:\Program Files (x86)\Common Files\IObit
O43 - CFD: 20/05/2016 - [] D -- C:\Program Files (x86)\Common Files\logishrd
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\LWS
O43 - CFD: 02/02/2016 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\Common Files\PCTV Systems
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 22/05/2016 - [0] D -- C:\Program Files (x86)\Common Files\SWF Studio
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 21/04/2016 - [0] D -- C:\Program Files (x86)\Common Files\WebM Project
O43 - CFD: 04/02/2012 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 03/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Adobe
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Andy
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Apple Computer
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\ArcSoft
O43 - CFD: 28/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Ashampoo
O43 - CFD: 21/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\CyberLink
O43 - CFD: 20/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\D-Link
O43 - CFD: 01/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\DigitalVolcano
O43 - CFD: 20/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\DlinkViewCam
O43 - CFD: 24/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\DScaler4
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\dvdcss
O43 - CFD: 14/01/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Easy Image Modifier
O43 - CFD: 10/02/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\eMedia
O43 - CFD: 11/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\epm
O43 - CFD: 31/01/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\FastStone
O43 - CFD: 19/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\FolderColorize
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Foxit Software
O43 - CFD: 19/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\GlarySoft
O43 - CFD: 25/02/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\GSplit
O43 - CFD: 01/03/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\HDDHealth
O43 - CFD: 21/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Hewlett-Packard
O43 - CFD: 02/01/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\HP Support Assistant
O43 - CFD: 03/01/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\hpqLog
O43 - CFD: 10/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\HpUpdate
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Identities
O43 - CFD: 05/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\ImprimCheques
O43 - CFD: 27/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\INB Concept
O43 - CFD: 25/02/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\IObit
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Jarte
O43 - CFD: 26/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\KC Softwares
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\Leadertech
O43 - CFD: 09/03/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\LibreOffice
O43 - CFD: 27/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\Logishrd
O43 - CFD: 04/02/2012 - [] D -- C:\Users\mahmoud\AppData\Roaming\Macromedia
O43 - CFD: 28/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\Maxthon3
O43 - CFD: 30/05/2016 - [] SD -- C:\Users\mahmoud\AppData\Roaming\Microsoft
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Mozilla
O43 - CFD: 07/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\MPC-HC
O43 - CFD: 14/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\MuseScore
O43 - CFD: 13/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\MusicBee
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\NAPS2
O43 - CFD: 21/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\NCH Software
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\NewspaperDirect
O43 - CFD: 16/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\NVIDIA
O43 - CFD: 07/01/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\OpenOffice
O43 - CFD: 28/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\Opera Software
O43 - CFD: 24/03/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\PC Suite
O43 - CFD: 04/04/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\PeaZip
O43 - CFD: 25/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\PixelMetrics
O43 - CFD: 24/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Pouchin TV Mod
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\PriceFountainUpdateVer =>PUP.Optional.PriceFountain
O43 - CFD: 28/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\ProductData
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Skype
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Roaming\Thunderbird
O43 - CFD: 07/01/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\TP
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\ViberPC
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\vlc
O43 - CFD: 19/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Voralent
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\VSO
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Windows Care Genius
O43 - CFD: 05/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\XnSketch
O43 - CFD: 26/03/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\XnView
O43 - CFD: 19/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\XnViewMP
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\XYplorerFree
O43 - CFD: 09/03/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Yahoo!
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\ZHP
O43 - CFD: 24/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Zoner
O43 - CFD: 19/01/2016 - [] D -- C:\Users\mahmoud\AppData\Local\4kdownload.com
O43 - CFD: 10/02/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Apple
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Apple Computer
O43 - CFD: 25/12/2015 - [0] SHD -- C:\Users\mahmoud\AppData\Local\Application Data
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\ashampoo
O43 - CFD: 23/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\autorun
O43 - CFD: 27/01/2016 - [] D -- C:\Users\mahmoud\AppData\Local\AvgSetupLog
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\AVSoft_Corp._(VN)
O43 - CFD: 12/02/2016 - [] D -- C:\Users\mahmoud\AppData\Local\BlackParrot
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\bluesoleil
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\BlueSoleil_cPhone
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Bluestacks
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Chromium
O43 - CFD: 07/01/2016 - [] D -- C:\Users\mahmoud\AppData\Local\ClassicShell
O43 - CFD: 28/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\CrashDumps
O43 - CFD: 15/04/2016 - [] D -- C:\Users\mahmoud\AppData\Local\CyberLink
O43 - CFD: 18/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Diagnostics
O43 - CFD: 24/01/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Downloaded Installations
O43 - CFD: 11/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\ElevatedDiagnostics
O43 - CFD: 24/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Geckofx
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Google
O43 - CFD: 26/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\GWX
O43 - CFD: 16/01/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Hewlett-Packard
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\Hewlett-Packard_Company
O43 - CFD: 25/12/2015 - [0] SHD -- C:\Users\mahmoud\AppData\Local\Historique
O43 - CFD: 21/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Howler
O43 - CFD: 11/02/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Icecream
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\Logitech® Webcam Software
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Macromedia
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Microsoft
O43 - CFD: 14/01/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Monotype Imaging Inc
O43 - CFD: 28/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\Mozilla
O43 - CFD: 01/02/2016 - [] D -- C:\Users\mahmoud\AppData\Local\MuseScore
O43 - CFD: 12/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Neuf
O43 - CFD: 24/03/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Nokia
O43 - CFD: 18/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\NokiaAccount
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\NVIDIA
O43 - CFD: 08/03/2016 - [] D -- C:\Users\mahmoud\AppData\Local\NVIDIA Corporation
O43 - CFD: 28/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\Opera Software
O43 - CFD: 13/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Package Cache
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\paint.net
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\PandowdyHelping
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\PCTV Systems
O43 - CFD: 15/04/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Power2Go9
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\RemEngine
O43 - CFD: 24/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Smart_PC_Soft
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Temp
O43 - CFD: 25/12/2015 - [0] SHD -- C:\Users\mahmoud\AppData\Local\Temporary Internet Files
O43 - CFD: 25/12/2015 - [] D -- C:\Users\mahmoud\AppData\Local\Thunderbird
O43 - CFD: 22/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Viber
O43 - CFD: 30/03/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Viber Media S.à r.l
O43 - CFD: 18/03/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Vintager
O43 - CFD: 23/02/2016 - [] D -- C:\Users\mahmoud\AppData\Local\VirtualStore
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Windows Live
O43 - CFD: 30/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\Zoner
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Local\{776C4130-53C4-2D88-3E5C-08601A34F4F8}
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 11/02/2016 - [] RD -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 10/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BUFFALO
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 01/02/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MuseScore 2
O43 - CFD: 09/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 18/05/2016 - [] RD -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 22/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\theRenamer
O43 - CFD: 13/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber
O43 - CFD: 29/05/2016 - [] D -- C:\Users\mahmoud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WizardRecovery Company
O43 - CFD: 0 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Apps
O43 - CFD: 16/05/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps
O43 - CFD: 04/02/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft
O43 - CFD: 0 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Monotype Imaging Inc

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: UpToDateOverlayHandler Class [ SkyDrive1] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\mahmoud\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ SkyDrive2] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\mahmoud\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll =>.Microsoft Corporation®
O106 - SIOI: ErrorOverlayHandler Class [ SkyDrive3] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\mahmoud\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll =>.Microsoft Corporation®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (28) - 2s
O53 - SMSR:HKLM\...\startupreg\Advanced SystemCare 9 [Key] . (...) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (...) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\BingSvc [Key] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\mahmoud\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.© 2015 Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\BtTray [Key] . (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BtTray.exe =>.IVT Corporation
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd
O53 - SMSR:HKLM\...\startupreg\EaseUS Cleanup [Key] . (...) -- C:\Program Files (x86)\EaseUS\EaseUS Partition Master 11.0\bin\CleanUpUI.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\EaseUS EPM tray [Key] . (...) -- C:\Program Files (x86)\EaseUS\EaseUS Partition Master 11.0\bin\EpmNews.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Easybits Recovery [Key] . (...) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Eyeline [Key] . (...) -- C:\Program Files (x86)\NCH Software\Eyeline\eyeline.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Google Photos Backup [Key] . (...) -- C:\Users\mahmoud\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (...) -- C:\Users\mahmoud\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\GUDelayStartup [Key] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe =>.Glarysoft Ltd
O53 - SMSR:HKLM\...\startupreg\HP Software Update [Key] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard
O53 - SMSR:HKLM\...\startupreg\hpsysdrv [Key] . (.Hewlett-Packard - hpsysdrv.) -- c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe =>.Hewlett-Packard
O53 - SMSR:HKLM\...\startupreg\Icecream_Screen_Recorder_Prefetcher [Key] . (.Icecream - Icecream Screen Recorder.) -- C:\Program Files (x86)\Icecream Screen Recorder\recorder.exe =>.Icecream
O53 - SMSR:HKLM\...\startupreg\LogiOptions [Key] . (.Logitech, Inc. - LogiOptions.exe (UNICODE).) -- C:\Program Files\Logitech\LogiOptions\LogiOptions.exe =>.Logitech, Inc.
O53 - SMSR:HKLM\...\startupreg\LWS [Key] . (.Logitech Inc. - Logitech Webcam Software.) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe =>.Logitech Inc.
O53 - SMSR:HKLM\...\startupreg\Magic Desktop for HP notification [Key] . (.Easybits - Software update notification.) -- C:\ProgramData\Easybits Magic Desktop for HP\mdhpSUN.exe =>.EasyBits
O53 - SMSR:HKLM\...\startupreg\Neuf Media Center [Key] . (.SFR - Media Center.) -- C:\Program Files (x86)\SFR\Media Center\MediaCenter.exe =>.SFR
O53 - SMSR:HKLM\...\startupreg\NokiaSuite.exe [Key] . (...) -- C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NvBackend [Key] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation
O53 - SMSR:HKLM\...\startupreg\PDF Complete [Key] . (.PDF Complete Inc - Sentry for PDF.) -- C:\Program Files (x86)\PDF Complete\pdfsty.exe =>.PDF Complete Inc
O53 - SMSR:HKLM\...\startupreg\PSUAMain [Key] . (...) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\ShadowPlay [Key] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O53 - SMSR:HKLM\...\startupreg\Speech Recognition [Key] . (.Microsoft Corporation - Reconnaissance vocale.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\Viber [Key] . (.Viber Media S.à r.l. - Viber.) -- C:\Users\mahmoud\AppData\Local\Viber\Viber.exe
O53 - SMSR:HKLM\...\startupreg\YouCam Service6 [Key] . (...) -- C:\Program Files (x86)\CyberLink\YouCam6\YouCamService6.exe (.not file.)

---\\ Liste des pilotes du système (95) - 4s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2012/02/04 14:25:36 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2012/02/04 14:25:36 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2009/08/24 11:14:30 A . (.AzureWave Technologies, Inc. - Virtual USB Hub.) -- C:\Windows\System32\drivers\azvusb.sys [54784]
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2012/09/24 21:32:10 A . (.Broadcom Corporation. - Broadcom Bluetooth Firmware Download Filter.) -- C:\Windows\System32\drivers\bcbtums.sys [165688] =>.Broadcom Corporation®
O58 - SDL:2013/10/08 18:16:48 A . (.IVT Corporation - Bluelet Audio Adapter Driver.) -- C:\Windows\System32\drivers\blueletaudio.sys [41184] =>.IVT CORPORATION®
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2014/05/06 10:20:42 A . (.IVT Corporation. - Bluetooth Serial Port Bus Driver.) -- C:\Windows\System32\drivers\btcombus.sys [25824] =>.IVT CORPORATION®
O58 - SDL:2014/10/16 15:28:10 A . (.IVT Corporation. - Bluetooth Serial Port Driver.) -- C:\Windows\System32\drivers\btcomport.sys [28456] {787221A2BFFFFA99D5B719FC919776F0}
O58 - SDL:2016/01/25 10:25:04 A . (.IVT Corporation. - Bluetooth USB Device Driver.) -- C:\Windows\System32\drivers\btcusb.sys [53776] {1C7FF6AC3DF87D654E83AD62207196F2}
O58 - SDL:2014/08/12 16:27:38 A . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\Windows\System32\drivers\BtHidBus.sys [22568] {787221A2BFFFFA99D5B719FC919776F0}
O58 - SDL:2012/12/24 17:42:26 A . (.IVT Corporation. - Bluetooth PAN Network Bus Driver.) -- C:\Windows\System32\drivers\btnetBus.sys [31480] =>.IVT CORPORATION®
O58 - SDL:2011/12/21 14:47:46 A . (.IVT Corporation. - Bluetooth PAN Network Adapter Driver.) -- C:\Windows\System32\drivers\btnetdrv.sys [22240] =>.IVT CORPORATION®
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2014/03/12 16:32:08 A . (.CyberLink - CyberLink Virtual CDROM Bus Enumerator.) -- C:\Windows\System32\drivers\CLVirtualBus01.sys [96008] =>.CyberLink Corp.®
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2010/04/27 10:43:50 A . (...) -- C:\Windows\System32\drivers\cpqdfw.sys [24376] =>.Hewlett-Packard Company®
O58 - SDL:2010/04/27 10:43:50 A . (...) -- C:\Windows\System32\drivers\cqcpu.sys [24376] =>.Hewlett-Packard Company®
O58 - SDL:2012/03/22 21:08:36 A . (.Cambridge Silicon Radio Limited - Csr Bluetooth USB Driver filter.) -- C:\Windows\System32\drivers\csrusbfilter.sys [23752] =>.Cambridge Silicon Radio Ltd.®
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2010/08/20 03:45:28 A . (.eMPIA Technology, Inc. - USB 28xx BDA Driver.) -- C:\Windows\System32\drivers\emBDA64.sys [654720]
O58 - SDL:2010/08/20 03:44:48 A . (.eMPIA Technology, Inc. - USB 28xx BDA Lower filter.) -- C:\Windows\System32\drivers\emOEM64.sys [943872]
O58 - SDL:2016/01/06 17:03:24 A . (...) -- C:\Windows\System32\drivers\EsgScanner.sys [22704] =>.Enigma Software Group USA, LLC®
O58 - SDL:2015/12/10 06:10:58 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\Windows\System32\drivers\eubakup.sys [60968] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2015/12/10 06:10:58 A . (...) -- C:\Windows\System32\drivers\EUBKMON.sys [48168] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2015/12/10 06:10:58 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\Windows\System32\drivers\eudskacs.sys [18472] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2015/12/10 06:10:58 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\Windows\System32\drivers\EuFdDisk.sys [192552] =>.CHENGDU YIWO Tech Development Co., Ltd.®
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2009/04/22 04:54:50 R . (.ark - FaceDll.) -- C:\Windows\System32\drivers\FaceDll.sys [381512] {18141A1A7A5BC2518E89D68F7BA9D5AC}
O58 - SDL:2005/09/02 02:40:26 A . (...) -- C:\Windows\System32\drivers\FBIKB_NT.Sys [4352]
O58 - SDL:2009/04/22 04:54:58 R . (.ark - FilterDll.) -- C:\Windows\System32\drivers\FilterDll.sys [14408] {18141A1A7A5BC2518E89D68F7BA9D5AC}
O58 - SDL:2015/07/20 15:53:46 A . (.AVM GmbH - FRITZ!WLAN USB Stick.) -- C:\Windows\System32\drivers\fwlanusb6_860.sys [2274336] =>.MEDIATEK INC.®
O58 - SDL:2016/04/19 17:05:33 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\Windows\System32\drivers\GUBootStartup.sys [20160] =>.Glarysoft Ltd®
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/07/06 15:32:36 A . (.Hauppauge Computer Works, Inc. - HCW 95xxx/68xxx/112xxx BDA Drivers.) -- C:\Windows\System32\drivers\hcw95bda.sys [658432] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/07/06 15:33:50 A . (.Hauppauge Computer Works, Inc. - hcw95bda HID Remote Control driver.) -- C:\Windows\System32\drivers\hcw95rc.sys [19456] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/10/19 13:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation®
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2012/12/07 19:27:50 A . (.Windows (R) Win 7 DDK provider - RawPacket NDIS Protocol Driver.) -- C:\Windows\System32\drivers\htcnprot.sys [36928] =>.HTC Corp.®
O58 - SDL:2010/03/09 05:08:36 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\HtcVComV64.sys [121800] =>.QUALCOMM Incorporated
O58 - SDL:2011/04/26 21:07:36 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [557848] =>.Intel Corporation®
O58 - SDL:2012/02/04 14:25:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2011/01/27 19:57:12 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [12273408] =>.Intel Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2010/02/27 02:32:12 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\drivers\Impcd.sys [158976] =>.Intel Corporation
O58 - SDL:2012/12/24 17:45:48 A . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\Windows\System32\drivers\IvtBtBus.sys [27256] =>.IVT CORPORATION®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2008/07/26 15:22:34 A . (.Logitech Inc. - Logitech QuickCam Driver.) -- C:\Windows\System32\drivers\LV302V64.SYS [2624408] =>.Logitech Inc®
O58 - SDL:2011/12/15 06:15:34 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\Windows\System32\drivers\lvrs64.sys [351392] =>.Logitech, Inc.®
O58 - SDL:2008/07/26 15:26:34 A . (.Logitech Inc. - USB Statistic Driver.) -- C:\Windows\System32\drivers\LVUSBS64.sys [50072] =>.Logitech Inc®
O58 - SDL:2011/12/15 06:15:42 A . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\Windows\System32\drivers\lvuvc64.sys [4862368] =>.Logitech, Inc.®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2010/11/19 11:05:56 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [1077840] =>.DIBCOM S.A.®
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2016/05/21 23:10:34 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [141256] =>.NVIDIA Corporation®
O58 - SDL:2016/05/20 09:01:55 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [13412408] =>.NVIDIA Corporation®
O58 - SDL:2012/02/04 14:25:36 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2012/02/04 14:25:36 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2016/04/14 07:38:19 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [56384] =>.NVIDIA Corporation®
O58 - SDL:2012/10/17 15:53:46 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfdx64.sys [26112] =>.Nokia
O58 - SDL:2009/10/31 08:53:56 R . (.ark - PictureDll.) -- C:\Windows\System32\drivers\PictureDll.sys [8672840] {18141A1A7A5BC2518E89D68F7BA9D5AC}
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2011/04/22 12:17:04 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [471144] =>.Realtek Semiconductor Corp®
O58 - SDL:2016/02/01 13:56:06 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3074664] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/08/12 14:03:28 A . (.Realtek Semiconductor Corporation - Realtek RTL8192C USB NDIS Driver.) -- C:\Windows\System32\drivers\RTL8192cu.sys [748648] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2016/05/12 10:13:31 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [28272] =>.Adlice®
O58 - SDL:2010/11/24 05:18:08 R . (.usb camera - usbcam Device Driver.) -- C:\Windows\System32\drivers\usbcamcl.sys [54088] {18141A1A7A5BC2518E89D68F7BA9D5AC}
O58 - SDL:2009/04/22 04:53:24 R . (.usb camera - Kernel-Mode Dll.) -- C:\Windows\System32\drivers\usbDecode.sys [38472] {18141A1A7A5BC2518E89D68F7BA9D5AC}
O58 - SDL:2014/08/12 16:25:40 A . (.IVT Corporation. - Bluetooth HID Mini driver.) -- C:\Windows\System32\drivers\VHIDMini.sys [18088] {787221A2BFFFFA99D5B719FC919776F0}
O58 - SDL:2014/01/20 10:19:56 A . (.VIA Technologies, Inc. - Framework Version of ViaHub3 Dynamic Bus En.) -- C:\Windows\System32\drivers\ViaHub3.sys [225792] =>.VIA Technologies, Inc.
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2014/01/20 10:19:52 A . (.VIA Technologies, Inc. - WDF Driver for VIA eXtensible Host Controll.) -- C:\Windows\System32\drivers\xhcdrv.sys [297472] =>.VIA Technologies, Inc.
O58 - SDL:2009/07/06 15:33:50 A . (.Hauppauge Computer Works, Inc. - hcw95bda HID Remote Control driver.) -- C:\Windows\System32\hcw95rc.sys [19456] =>.Hauppauge Computer Works, Inc.

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (15) - 41s
O61 - LFC: 2016/05/24 21:40:03 A . (..) -- C:\Users\mahmoud\Downloads\DScaler422.exe [2499811]
O61 - LFC: 2016/05/29 14:39:59 A . (.WizardRecovery Company.) -- C:\Users\mahmoud\Downloads\media_recovery_wizard_setup.exe [6662529]
O61 - LFC: 2016/05/29 00:13:42 A . (..) -- C:\Users\mahmoud\Downloads\mx-player-for-pc.exe [962642]
O61 - LFC: 2016/05/22 21:08:32 A . (..) -- C:\Users\mahmoud\AppData\Roaming\ViberPC\6.0.5.1518\ViberUpdater.cmd [1732]
O61 - LFC: 2016/05/22 21:08:32 A . (..) -- C:\Users\mahmoud\AppData\Roaming\ViberPC\6.0.5.1518\6.0.5.1518\updater.exe [544336] {5AECF5A58104948997EF21A8F3D44AAE}
O61 - LFC: 2016/05/22 21:08:32 A . (..) -- C:\Users\mahmoud\AppData\Roaming\ViberPC\6.0.5.1518\6.0.5.1518\ViberUpdater.cmd [1732]
O61 - LFC: 2016/05/27 19:16:24 A . (..) -- C:\Users\mahmoud\AppData\Roaming\Thunderbird\Profiles\44dtrktf.default\Mail\Local Folders\tectec.com [37301]
O61 - LFC: 2016/05/25 14:24:26 A . (..) -- C:\Users\mahmoud\AppData\Roaming\NVIDIA\GLCache\c923aa359b47cb79a560fdcad24c6480\0f226b5fd0acca38\dd2b9cbd6324a0dd.bin [582]
O61 - LFC: 2016/05/28 08:42:11 A . (..) -- C:\Users\mahmoud\AppData\Roaming\NVIDIA\GLCache\c923aa359b47cb79a560fdcad24c6480\0f226b5fd0acca38\f74fb3f7bc1466f1.bin [88939]
O61 - LFC: 2016/05/29 00:45:15 A . (..) -- C:\Users\mahmoud\AppData\Roaming\NVIDIA\GLCache\a8343c5412b6046ee753243f42a75a90\80916b9b462c8b42\35ada84dca2d06eb.bin [2744]
O61 - LFC: 2016/05/30 14:41:59 A . (..) -- C:\Users\mahmoud\AppData\Roaming\NVIDIA\GLCache\a8343c5412b6046ee753243f42a75a90\80916b9b462c8b42\f74fb3f7bc1466f1.bin [54766]
O61 - LFC: 2016/05/22 21:08:28 A . (..) -- C:\Users\mahmoud\AppData\Local\Viber\libViber.dll [33360] {5AECF5A58104948997EF21A8F3D44AAE}
O61 - LFC: 2016/05/29 00:16:10 A . (.Copyright (C) 2015.) -- C:\Users\mahmoud\AppData\Local\PandowdyHelping\MendacitiesNates.dll [428032]
O61 - LFC: 2016/05/29 00:15:02 A . (..) -- C:\Users\mahmoud\AppData\Local\PandowdyHelping\NosebagBilks.exe [89927]
O61 - LFC: 2016/05/26 07:00:04 A . (..) -- C:\Users\mahmoud\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [6450500]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.FlashPeak Inc. - FlashPeak SlimBrowser.) -- C:\Users\mahmoud\Desktop\slim browser\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc.
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- Bad: (%SystemRoot%\SysWow64\CScript.exe "%1" %*) Good: (WScript.exe "%1" %*) =>Broken.OpenCommand
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (22) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.The Chromium Authors - Chromium.) -- C:\Users\mahmoud\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.FlashPeak Inc. - FlashPeak SlimBrowser.) -- C:\Users\mahmoud\Desktop\slim browser\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc.
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Launcher.exe =>.Opera Software ASA®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\mahmoud\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.The Chromium Authors - Chromium.) -- C:\Users\mahmoud\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.FlashPeak Inc. - FlashPeak SlimBrowser.) -- C:\Users\mahmoud\Desktop\slim browser\SlimBrowser\sbframe.exe =>.FlashPeak Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\mahmoud\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software

---\\ Recherche d'infection sur les navigateurs (10) - 12s
O69 - SBI: prefs.js [mahmoud - 6mqbu32t.default] user_pref("browser.search.defaultenginename", "Search Provided by Yahoo"); =>.Superfluous.SearchProvided
O69 - SBI: prefs.js [mahmoud - 6mqbu32t.default] user_pref("browser.search.selectedEngine", "Search Provided by Yahoo"); =>.Superfluous.SearchProvided
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Search Provided by Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} - (Search Provided by Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKCU] {DECA3892-BA8F-44b8-A993-A466AD694AE4} - (Yahoo!) - http://search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKCU] {fcd9f10e-0daa-405f-bca0-0dd3f37c59d9} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {2f23ab71-4ac6-41f2-a955-ea576e553146} - (Search Provided by Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKLM] {4D8281E9-08B9-4D76-8278-F70AB0C16720} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr/
O69 - SBI: SearchScopes [HKLM] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/

---\\ Enumère les services démarrés par Svchost (32) - 0s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2610688] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (10) - 3s
O87 - FAEL: "{F6FDD37A-60AB-47E4-ABB0-A48B995FBA1A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (.not file.)
O87 - FAEL: "{03C4512F-74E5-4A31-B73D-0DE963469F5F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (.not file.)
O87 - FAEL: "TCP Query User{E48E698B-84A4-450E-9876-F0A39F361375}I:\advanced\setup_wizard.exe" [In-None-P6-TRUE] .(...) -- I:\advanced\setup_wizard.exe (.not file.)
O87 - FAEL: "UDP Query User{0942431E-A26C-4EB3-9666-F6BA17AA8F14}I:\advanced\setup_wizard.exe" [In-None-P17-TRUE] .(...) -- I:\advanced\setup_wizard.exe (.not file.)
O87 - FAEL: "TCP Query User{91D5BE9C-382D-40A4-B038-B354A1B6B976}I:\d-link storage utility(5.1.0.3)_20120717.exe" [In-None-P6-TRUE] .(...) -- I:\d-link storage utility(5.1.0.3)_20120717.exe (.not file.)
O87 - FAEL: "UDP Query User{D2600EA6-E5A8-4403-B381-C2DA6E72A281}I:\d-link storage utility(5.1.0.3)_20120717.exe" [In-None-P17-TRUE] .(...) -- I:\d-link storage utility(5.1.0.3)_20120717.exe (.not file.)
O87 - FAEL: "TCP Query User{90D38346-89B0-44C1-9F82-25A65205CAFB}C:\users\mahmoud\desktop\dlink storage\d-link storage utility(5.1.0.3)_20120717.exe" [In-None-P6-TRUE] .(...) -- C:\users\mahmoud\desktop\dlink storage\d-link storage utility(5.1.0.3)_20120717.exe (.not file.)
O87 - FAEL: "UDP Query User{FF8DFBED-D7CE-4BBC-9B58-089C2AB41493}C:\users\mahmoud\desktop\dlink storage\d-link storage utility(5.1.0.3)_20120717.exe" [In-None-P17-TRUE] .(...) -- C:\users\mahmoud\desktop\dlink storage\d-link storage utility(5.1.0.3)_20120717.exe (.not file.)
O87 - FAEL: "TCP Query User{8AE002E5-06F9-4CDF-8737-D56F8742CE60}C:\program files (x86)\sharecentersync\sharecentersync.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\sharecentersync\sharecentersync.exe
O87 - FAEL: "UDP Query User{34726EA0-961F-4152-983E-BB7A24AE7FB4}C:\program files (x86)\sharecentersync\sharecentersync.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\sharecentersync\sharecentersync.exe

---\\ Recherche de clés de registre Tracing (2) - 2s
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence

---\\ Scan Additionnel (12) - 0s
C:\Users\mahmoud\AppData\Roaming\PriceFountainUpdateVer\syncversion.exe =>PUP.Optional.PriceFountain
C:\Users\mahmoud\AppData\Roaming\Mozilla\Firefox\Profiles\6mqbu32t.default\searchplugins\Search Provided by Yahoo.xml =>.Superfluous.SearchProvided
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PandowdyHelping =>PUP.Optional.PriceFountain
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2684281D-245F-5DA8-95BD-3E499453CD0D} =>PUP.Optional.PriceFountain
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\System Healer =>PUP.Optional.SystemHealer
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
C:\ProgramData\2460407b-20b3-1 =>.Superfluous.Polluteware
C:\ProgramData\2460407b-56e3-0 =>.Superfluous.Polluteware
C:\Users\mahmoud\AppData\Roaming\PriceFountainUpdateVer =>PUP.Optional.PriceFountain
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence

---\\ Récapitulatif des éléments trouvés sur votre station (8) - 0s
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PriceFountain
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.AudienceInsights
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.SearchProvided
http://www.nicolascoolman.info/2016/04/22/adware-installcore/ =>Adware.InstallCore
http://www.nicolascoolman.fr/pup-optional-systemhealer/ =>PUP.Optional.SystemHealer
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Polluteware
http://www.nicolascoolman.info/2016/04/29/superfluous-bytefence/ =>.Superfluous.ByteFence

~ End of the scan, 51040 items in 00h12mn07s (1420)(0)

Publicité


Signaler le contenu de ce document

Publicité