cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.5.6.94 Par Nicolas Coolman (2016/05/06)
~ Démarré par ahmed (Administrator) (2016/05/08 15:28:11)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Documents and Settings\ahmed\Bureau\ZHPDiag.txt
~ Rapport: C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows XP, 32-bit Service Pack 3 (Build 2600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 40.0 (x86 fr)
MSIE: Internet Explorer v6.0.2900.5512

---\\ Informations sur les produits Windows (3) - 0s
Windows Automatic Updates : OK
Windows Activation Technologies : KO
Windows Genuine Advantage : KO

---\\ Logiciels de protection (1) - 3s
ESET Smart Security v5.2.15.1

---\\ Surveillance de Logiciels (2) - 4s
Adobe Flash Player 21 NPAPI
Adobe Reader X

---\\ Logiciels de partage P2P (1) - 5s
µTorrent v3.4.5.41372

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 14 Stepping 8, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1564.012 MB (25% free)
System Restore: Activé (Enable)
System drive C: has 6 GB () free of 40 GB =>Alerte espace disque inférieur à 20 Go

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: TAZI-C3DF0B3B29
~ User Name: ahmed
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 6 GB free of 40 GB (System)
~ Drive D: has 0 GB free of 17 GB
~ Drive G: has 1 GB free of 3 GB

---\\ Etat du Centre de Sécurité Windows (8) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.0E27A305F86583A1F5B61F3C7DDCC5A2] - 18/08/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [1859584] =>.Microsoft Corporation
[MD5.93AD0B78C7357A05F50E594EC7C22300] - 18/08/2015 - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) -- C:\WINDOWS\System32\rundll32.exe [33792] =>.Microsoft Corporation
[MD5.4A6E04EA20F48D750D9BFED8600D516B] - 18/08/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [670208] =>.Microsoft Corporation
[MD5.DD73D6B9F6B4CB630CF35B438B540174] - 18/08/2015 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [512000] =>.Microsoft Corporation
[MD5.F640F61A063DD79BD4D2F6C9509FB958] - 18/08/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [147968] =>.Microsoft Corporation
[MD5.322D0E36693D6E24A2398BEE62A268CD] - 18/08/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [138112] =>.Microsoft Corporation
[MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 18/08/2015 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [96512] =>.Microsoft Corporation
[MD5.C885B02847F5D2FD45A24E219ED93B32] - 18/08/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] =>.Microsoft Corporation
[MD5.1F4260CC5B42272D71F79E570A27A4FE] - 18/08/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] =>.Microsoft Corporation
[MD5.31F923EB2170FC172C81ABDA0045D18C] - 18/08/2015 - (.Microsoft Corporation - Pilote de cryptographie FIPS.) -- C:\WINDOWS\System32\drivers\Fips.sys [44672] =>.Microsoft Corporation
[MD5.573C7D0A32852B48F3058CFD8026F511] - 18/08/2015 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384]
[MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - 18/08/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] =>.Microsoft Corporation
[MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 18/08/2015 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] =>.Microsoft Corporation
[MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 18/08/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] =>.Microsoft Corporation
[MD5.23C74D75E36E7158768DD63D92789A91] - 18/08/2015 - (.Microsoft Corporation - IPSec Driver.) -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] =>.Microsoft Corporation
[MD5.68755F0FF16070178B54674FE5B847B0] - 18/08/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456576] =>.Microsoft Corporation
[MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 18/08/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [162816] =>.Microsoft Corporation
[MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 18/08/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] =>.Microsoft Corporation
[MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - 18/08/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [80384] =>.Microsoft Corporation
[MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 18/08/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] =>.Microsoft Corporation
[MD5.15CABD0F7C00C47C70124907916AF3F1] - 13/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] =>.Microsoft Corporation
[MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - 13/04/2008 - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) -- C:\WINDOWS\System32\drivers\redbook.sys [58752] =>.Microsoft Corporation
[MD5.46DE1126684369BACE4849E4FC8C43CA] - 18/08/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] =>.Microsoft Corporation

---\\ Liste des services NT non Microsoft et non désactivés (6) - 47s
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
O23 - Service: Unsigned Themes (UnsignedThemes) . (.The Within Network, LLC - Unsigned Themes Service.) - C:\WINDOWS\UnsignedThemesSvc.exe {010000000001208BB72C6F}
O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\WINDOWS\system32\vmnetdhcp.exe =>.VMware, Inc.®
O23 - Service: VMware Virtual Mount Manager Extended (vmount2) . (.VMware, Inc. - virtual disk mount service.) - C:\Program Files\Fichiers communs\VMware\VMware Virtual Image Editing\vmount2.exe =>.VMware, Inc.®
O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\WINDOWS\system32\vmnat.exe =>.VMware, Inc.®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (11) - 20s

SS - Demand [08/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [16/11/2012] [ 913184] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
SS - Demand [16/10/2015] [ 1175040] (KLCPU) . (...) - C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe
SS - Demand [04/05/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [30/11/2007] [ 186928] VMware Agent Service (ufad-ws60) . (.VMware, Inc..) - C:\Program Files\VMware\VMware Workstation\vmware-ufad.exe =>.VMware, Inc.®
SR - Auto [13/07/2009] [ 21096] Unsigned Themes (UnsignedThemes) . (.The Within Network, LLC.) - C:\WINDOWS\UnsignedThemesSvc.exe {010000000001208BB72C6F}
SR - Auto [16/05/2008] [ 109104] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
SR - Auto [16/05/2008] [ 121392] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\WINDOWS\system32\vmnetdhcp.exe =>.VMware, Inc.®
SR - Auto [23/03/2007] [ 269104] VMware Virtual Mount Manager Extended (vmount2) . (.VMware, Inc..) - C:\Program Files\Fichiers communs\VMware\VMware Virtual Image Editing\vmount2.exe =>.VMware, Inc.®
SR - Auto [16/05/2008] [ 150064] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\WINDOWS\system32\vmnat.exe =>.VMware, Inc.®

---\\ Tâches planifiées en automatique (6) - 4s
[MD5.00000000000000000000000000000000] [APT] [Adobe Flash Player Updater] (...) -- Adobe Systems Incorporated (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [NIUpdateServiceRetryCheckTask] (...) -- C:\Program Files\National Instruments\Shared\Update Service\NIUpdateService.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [NIUpdateServiceStartupTask] (...) -- D‚marrer … l'ouverture de session (.not file.) [0] (.Activate.) =>.Superfluous.Empty
O39 - APT: Adobe Flash Player Updater - (...) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: NIUpdateServiceRetryCheckTask - (...) -- C:\WINDOWS\Tasks\NIUpdateServiceRetryCheckTask.job [332] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: NIUpdateServiceStartupTask - (...) -- C:\WINDOWS\Tasks\NIUpdateServiceStartupTask.job [340] (.Orphean.) =>.Superfluous.Orphean

---\\ Processus lancés (17) - 1s
[MD5.3D571A3CBF127E9555EAD2F8598F425F] - (.The Within Network, LLC - Unsigned Themes Service.) -- C:\WINDOWS\UnsignedThemesSvc.exe [21096] [PID.256] {010000000001208BB72C6F}
[MD5.BC28D386DA9C677A65A011BD27B63EDD] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [3117384] [PID.640] =>.ESET
[MD5.255E405D801CF01247390F38F92D8042] - (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe [17408] [PID.676]
[MD5.5A2ACF51061006946037725593E97892] - (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files\VMware\VMware Workstation\vmware-tray.exe [72240] [PID.684] =>.VMware, Inc.®
[MD5.F6987FF6C6D683F79FDCE707B071A997] - (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe [955392] [PID.728] =>.SFX TEAM
[MD5.8256AF2DD2BAAFDD2A5DE345FEBA3A4B] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3924024] [PID.756] =>.Tonec Inc.
[MD5.D68AE8C031B370538F917AF176A947F6] - (.ta2027 - Style Change Application.) -- C:\Program Files\Styler\Styler.exe [307200] [PID.784] =>.ta2027
[MD5.6576CDEF9945DFA6BAE25FA0119468E9] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [913184] [PID.1316] =>.ESET, spol. s r.o.®
[MD5.7BECF16932ABBCD71627C500E31A8BE6] - (.VMware, Inc. - virtual disk mount service.) -- C:\Program Files\Fichiers communs\VMware\VMware Virtual Image Editing\vmount2.exe [269104] [PID.940] =>.VMware, Inc.®
[MD5.2DF4B82B45E6048935DBEAD2F2B311A4] - (.VMware, Inc. - VMware NAT Service.) -- C:\WINDOWS\system32\vmnat.exe [150064] [PID.1132] =>.VMware, Inc.®
[MD5.0FC048682527CA6EAB939A3A3FDFB4CD] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\WINDOWS\system32\vmnetdhcp.exe [121392] [PID.1188] =>.VMware, Inc.®
[MD5.557A2B18FE116161A6F24F0F4C5C9A85] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files\VMware\VMware Workstation\vmware-authd.exe [109104] [PID.1268] =>.VMware, Inc.®
[MD5.EE9F3BCAF6DDBAC6CFB57C6FF8365260] - (.Intel Corporation - igfxsrvc Module.) -- C:\WINDOWS\system32\igfxsrvc.exe [256536] [PID.932] =>.Intel Corporation®
[MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [275608] [PID.3616] =>.Tonec Inc.®
[MD5.AE04039C7E08B0AB9152DA7DE3C0738B] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [377000] [PID.3896] =>.Mozilla Corporation®
[MD5.61235926FD247508BFAC3F697DCC2C94] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [277672] [PID.2160] =>.Mozilla Corporation®
[MD5.9B232B25474B8592999632F346C0B12B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\ZHPDiag3.exe [2201600] [PID.3768] =>.Nicolas Coolman

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (20) - 3s
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\4sharedCopyLinks.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\54c7d9671b9eccd9e5686a73df34ab60@button.codefisher.org.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\adblockpopups@jessehakanen.net.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\jid1-Y5yNCPQbxaTICw@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\s3google@translator.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\thumbnailZoom@dadler.github.com.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\tineye@ideeinc.com.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\{e8f509f0-b677-11de-8a39-0800200c9a66}.xpi
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\searchplugins\search-provided-by-yahoo.xml =>PUP.Optional.BDYahoo
P2 - EXT FILE: (...) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\searchplugins\search-provided-by-yahoo.xml.bak =>PUP.Optional.BDYahoo
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM integration.) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\mozilla_cc2@internetdownloadmanager.com =>.Internet Download Manager, Tonec Inc.
P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM CC.) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\mozilla_cc@internetdownloadmanager(2).com =>.Internet Download Manager, Tonec Inc.
P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM CC.) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\mozilla_cc@internetdownloadmanager(3).com =>.Internet Download Manager, Tonec Inc.
P2 - EXT: (.Eugene G. Suslikov - FireShot.) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}(2) =>.Eugene G. Suslikov
P2 - EXT: (.Mykola Onyschuk - InFormEnter.) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\{5546F97E-11A5-46b0-9082-32AD74AAA920} =>.Mykola Onyschuk
P2 - EXT: (.Linkular LLC - FoxLingo.) -- C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\extensions\{ef62e1ce-d2a4-4cdd-b7ec-92b120366b66}
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_213.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 0

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (1) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®

---\\ Applications lancées au démarrage du système (16) - 0s
O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe =>.ESET
O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe
O4 - HKLM\..\Run: [vmware-tray] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.®
O4 - HKLM\..\Run: [BootSkin Startup Jobs] . (.Copyright 2003-2004 - Stardock BootSkin!.) -- C:\Program Files\Stardock\WinCustomize\BootSkin\BootSkin.exe
O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe =>.SFX TEAM
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- C:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll
O4 - HKUS\S-1-5-21-1177238915-1364589140-1417001333-500\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe =>.SFX TEAM
O4 - HKUS\S-1-5-21-1177238915-1364589140-1417001333-500\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.

---\\ Raccourcis Global Startup (154) - 70s
O4 - GS\Desktop [__vmware_user__]: Continuer Installation de JavaScript QuickLink.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\JavaScript QuickLinkInstaller.exe
O4 - GS\Desktop [__vmware_user__]: CrystalDiskMark 5.lnk . (.Crystal Dew World - CrystalDiskMark.) C:\Program Files\CrystalDiskMark5\DiskMark32.exe {11218B069CCBEDB332B1EC4560BEE4BF2C14} =>.Crystal Dew World
O4 - GS\Desktop [__vmware_user__]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [__vmware_user__]: Raccourci vers fx9860emulator.exe.lnk . (.CASIO COMPUTER CO., LTD. - fx-9860emulator.) D:\logiciels Portable\fx9860emulator.exe =>.CASIO COMPUTER CO., LTD.
O4 - GS\Desktop [__vmware_user__]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [__vmware_user__]: Clean Space 2015.lnk . (.Clean-Space.com - Remove computer tracks.) C:\Program Files\Clean Space 2015\cleanspace.exe
O4 - GS\Quicklaunch [__vmware_user__]: Downloads.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads
O4 - GS\Quicklaunch [__vmware_user__]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Quicklaunch [__vmware_user__]: Kinovea.lnk . (.Kinovea - Kinovea.) C:\Program Files\Kinovea\Kinovea.exe =>.Kinovea
O4 - GS\Quicklaunch [__vmware_user__]: MC34063 Universal Calculator.lnk . (...) C:\WINDOWS\Installer\{FFC12E35-0FF8-4E41-B703-0DB1487895DF}\_46C6D603938B8CF4413367.exe
O4 - GS\Quicklaunch [__vmware_user__]: Mes documents.lnk . (...) C:\Documents and Settings\ahmed\Mes documents
O4 - GS\Quicklaunch [__vmware_user__]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [__vmware_user__]: Movavi Video Suite 12.lnk . (.http://www.movavi.com - MOVAVI Video Suite.) C:\Program Files\Movavi Video Suite 12\Suite.exe
O4 - GS\Quicklaunch [__vmware_user__]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [__vmware_user__]: NeoDownloader.lnk . (.Neowise Software - NeoDownloader.) C:\Program Files\NeoDownloader\NeoDownloader.exe
O4 - GS\Quicklaunch [__vmware_user__]: Offline Explorer Enterprise.lnk . (.MetaProducts corp. - Offline Explorer executable.) C:\Program Files\Offline Explorer Enterprise\OE.exe
O4 - GS\Quicklaunch [__vmware_user__]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd®
O4 - GS\Quicklaunch [__vmware_user__]: Raccourci vers DwnlData.lnk . (...) C:\Documents and Settings\ahmed\Application Data\IDM\DwnlData
O4 - GS\Quicklaunch [__vmware_user__]: SolveigMM Video Splitter Business Edition.lnk . (.Solveig Multimedia - SolveigMM Video Splitter Business Edition.) C:\Program Files\Solveig Multimedia\SolveigMM Video Splitter Business Edition\SMMVSplitter_Business.exe {0763F0746A5427757119E833B4192CDE}
O4 - GS\Quicklaunch [__vmware_user__]: Sublime Text 3.lnk . (.Copyright (C) 2006 - 2016 Sublime HQ Pty Ltd - Sublime Text.) C:\Program Files\Sublime Text 3\sublime_text.exe
O4 - GS\Quicklaunch [__vmware_user__]: UltraISO.lnk . (.EZB Systems, Inc. - UltraISO Premium.) C:\Program Files\UltraISO\UltraISO.exe {11211B6C1D7687D789B2B9118C0D9622C42F}
O4 - GS\Quicklaunch [__vmware_user__]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [__vmware_user__]: WinASO Registry Optimizer.lnk . (.X.M.Y International, LLC - WinASO Registry Optimizer.) C:\Program Files\WinASO\Registry Optimizer\RegOpt.exe
O4 - GS\Quicklaunch [__vmware_user__]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Documents and Settings\ahmed\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Startup [__vmware_user__]: Styler Elkbab.lnk . (.ta2027 - Style Change Application.) C:\Program Files\Styler\Styler.exe =>.ta2027
O4 - GS\Desktop [ahmed]: Continuer Installation de JavaScript QuickLink.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\JavaScript QuickLinkInstaller.exe
O4 - GS\Desktop [ahmed]: CrystalDiskMark 5.lnk . (.Crystal Dew World - CrystalDiskMark.) C:\Program Files\CrystalDiskMark5\DiskMark32.exe {11218B069CCBEDB332B1EC4560BEE4BF2C14} =>.Crystal Dew World
O4 - GS\Desktop [ahmed]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [ahmed]: Raccourci vers fx9860emulator.exe.lnk . (.CASIO COMPUTER CO., LTD. - fx-9860emulator.) D:\logiciels Portable\fx9860emulator.exe =>.CASIO COMPUTER CO., LTD.
O4 - GS\Desktop [ahmed]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ahmed]: Clean Space 2015.lnk . (.Clean-Space.com - Remove computer tracks.) C:\Program Files\Clean Space 2015\cleanspace.exe
O4 - GS\Quicklaunch [ahmed]: Downloads.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads
O4 - GS\Quicklaunch [ahmed]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Quicklaunch [ahmed]: Kinovea.lnk . (.Kinovea - Kinovea.) C:\Program Files\Kinovea\Kinovea.exe =>.Kinovea
O4 - GS\Quicklaunch [ahmed]: MC34063 Universal Calculator.lnk . (...) C:\WINDOWS\Installer\{FFC12E35-0FF8-4E41-B703-0DB1487895DF}\_46C6D603938B8CF4413367.exe
O4 - GS\Quicklaunch [ahmed]: Mes documents.lnk . (...) C:\Documents and Settings\ahmed\Mes documents
O4 - GS\Quicklaunch [ahmed]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [ahmed]: Movavi Video Suite 12.lnk . (.http://www.movavi.com - MOVAVI Video Suite.) C:\Program Files\Movavi Video Suite 12\Suite.exe
O4 - GS\Quicklaunch [ahmed]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [ahmed]: NeoDownloader.lnk . (.Neowise Software - NeoDownloader.) C:\Program Files\NeoDownloader\NeoDownloader.exe
O4 - GS\Quicklaunch [ahmed]: Offline Explorer Enterprise.lnk . (.MetaProducts corp. - Offline Explorer executable.) C:\Program Files\Offline Explorer Enterprise\OE.exe
O4 - GS\Quicklaunch [ahmed]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd®
O4 - GS\Quicklaunch [ahmed]: Raccourci vers DwnlData.lnk . (...) C:\Documents and Settings\ahmed\Application Data\IDM\DwnlData
O4 - GS\Quicklaunch [ahmed]: SolveigMM Video Splitter Business Edition.lnk . (.Solveig Multimedia - SolveigMM Video Splitter Business Edition.) C:\Program Files\Solveig Multimedia\SolveigMM Video Splitter Business Edition\SMMVSplitter_Business.exe {0763F0746A5427757119E833B4192CDE}
O4 - GS\Quicklaunch [ahmed]: Sublime Text 3.lnk . (.Copyright (C) 2006 - 2016 Sublime HQ Pty Ltd - Sublime Text.) C:\Program Files\Sublime Text 3\sublime_text.exe
O4 - GS\Quicklaunch [ahmed]: UltraISO.lnk . (.EZB Systems, Inc. - UltraISO Premium.) C:\Program Files\UltraISO\UltraISO.exe {11211B6C1D7687D789B2B9118C0D9622C42F}
O4 - GS\Quicklaunch [ahmed]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [ahmed]: WinASO Registry Optimizer.lnk . (.X.M.Y International, LLC - WinASO Registry Optimizer.) C:\Program Files\WinASO\Registry Optimizer\RegOpt.exe
O4 - GS\Quicklaunch [ahmed]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Documents and Settings\ahmed\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Startup [ahmed]: Styler Elkbab.lnk . (.ta2027 - Style Change Application.) C:\Program Files\Styler\Styler.exe =>.ta2027
O4 - GS\Desktop [ASPNET]: Continuer Installation de JavaScript QuickLink.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\JavaScript QuickLinkInstaller.exe
O4 - GS\Desktop [ASPNET]: CrystalDiskMark 5.lnk . (.Crystal Dew World - CrystalDiskMark.) C:\Program Files\CrystalDiskMark5\DiskMark32.exe {11218B069CCBEDB332B1EC4560BEE4BF2C14} =>.Crystal Dew World
O4 - GS\Desktop [ASPNET]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [ASPNET]: Raccourci vers fx9860emulator.exe.lnk . (.CASIO COMPUTER CO., LTD. - fx-9860emulator.) D:\logiciels Portable\fx9860emulator.exe =>.CASIO COMPUTER CO., LTD.
O4 - GS\Desktop [ASPNET]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ASPNET]: Clean Space 2015.lnk . (.Clean-Space.com - Remove computer tracks.) C:\Program Files\Clean Space 2015\cleanspace.exe
O4 - GS\Quicklaunch [ASPNET]: Downloads.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads
O4 - GS\Quicklaunch [ASPNET]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Quicklaunch [ASPNET]: Kinovea.lnk . (.Kinovea - Kinovea.) C:\Program Files\Kinovea\Kinovea.exe =>.Kinovea
O4 - GS\Quicklaunch [ASPNET]: MC34063 Universal Calculator.lnk . (...) C:\WINDOWS\Installer\{FFC12E35-0FF8-4E41-B703-0DB1487895DF}\_46C6D603938B8CF4413367.exe
O4 - GS\Quicklaunch [ASPNET]: Mes documents.lnk . (...) C:\Documents and Settings\ahmed\Mes documents
O4 - GS\Quicklaunch [ASPNET]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [ASPNET]: Movavi Video Suite 12.lnk . (.http://www.movavi.com - MOVAVI Video Suite.) C:\Program Files\Movavi Video Suite 12\Suite.exe
O4 - GS\Quicklaunch [ASPNET]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [ASPNET]: NeoDownloader.lnk . (.Neowise Software - NeoDownloader.) C:\Program Files\NeoDownloader\NeoDownloader.exe
O4 - GS\Quicklaunch [ASPNET]: Offline Explorer Enterprise.lnk . (.MetaProducts corp. - Offline Explorer executable.) C:\Program Files\Offline Explorer Enterprise\OE.exe
O4 - GS\Quicklaunch [ASPNET]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd®
O4 - GS\Quicklaunch [ASPNET]: Raccourci vers DwnlData.lnk . (...) C:\Documents and Settings\ahmed\Application Data\IDM\DwnlData
O4 - GS\Quicklaunch [ASPNET]: SolveigMM Video Splitter Business Edition.lnk . (.Solveig Multimedia - SolveigMM Video Splitter Business Edition.) C:\Program Files\Solveig Multimedia\SolveigMM Video Splitter Business Edition\SMMVSplitter_Business.exe {0763F0746A5427757119E833B4192CDE}
O4 - GS\Quicklaunch [ASPNET]: Sublime Text 3.lnk . (.Copyright (C) 2006 - 2016 Sublime HQ Pty Ltd - Sublime Text.) C:\Program Files\Sublime Text 3\sublime_text.exe
O4 - GS\Quicklaunch [ASPNET]: UltraISO.lnk . (.EZB Systems, Inc. - UltraISO Premium.) C:\Program Files\UltraISO\UltraISO.exe {11211B6C1D7687D789B2B9118C0D9622C42F}
O4 - GS\Quicklaunch [ASPNET]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [ASPNET]: WinASO Registry Optimizer.lnk . (.X.M.Y International, LLC - WinASO Registry Optimizer.) C:\Program Files\WinASO\Registry Optimizer\RegOpt.exe
O4 - GS\Quicklaunch [ASPNET]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Documents and Settings\ahmed\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Startup [ASPNET]: Styler Elkbab.lnk . (.ta2027 - Style Change Application.) C:\Program Files\Styler\Styler.exe =>.ta2027
O4 - GS\Desktop [HelpAssistant]: Continuer Installation de JavaScript QuickLink.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\JavaScript QuickLinkInstaller.exe
O4 - GS\Desktop [HelpAssistant]: CrystalDiskMark 5.lnk . (.Crystal Dew World - CrystalDiskMark.) C:\Program Files\CrystalDiskMark5\DiskMark32.exe {11218B069CCBEDB332B1EC4560BEE4BF2C14} =>.Crystal Dew World
O4 - GS\Desktop [HelpAssistant]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [HelpAssistant]: Raccourci vers fx9860emulator.exe.lnk . (.CASIO COMPUTER CO., LTD. - fx-9860emulator.) D:\logiciels Portable\fx9860emulator.exe =>.CASIO COMPUTER CO., LTD.
O4 - GS\Desktop [HelpAssistant]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [HelpAssistant]: Clean Space 2015.lnk . (.Clean-Space.com - Remove computer tracks.) C:\Program Files\Clean Space 2015\cleanspace.exe
O4 - GS\Quicklaunch [HelpAssistant]: Downloads.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads
O4 - GS\Quicklaunch [HelpAssistant]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Quicklaunch [HelpAssistant]: Kinovea.lnk . (.Kinovea - Kinovea.) C:\Program Files\Kinovea\Kinovea.exe =>.Kinovea
O4 - GS\Quicklaunch [HelpAssistant]: MC34063 Universal Calculator.lnk . (...) C:\WINDOWS\Installer\{FFC12E35-0FF8-4E41-B703-0DB1487895DF}\_46C6D603938B8CF4413367.exe
O4 - GS\Quicklaunch [HelpAssistant]: Mes documents.lnk . (...) C:\Documents and Settings\ahmed\Mes documents
O4 - GS\Quicklaunch [HelpAssistant]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [HelpAssistant]: Movavi Video Suite 12.lnk . (.http://www.movavi.com - MOVAVI Video Suite.) C:\Program Files\Movavi Video Suite 12\Suite.exe
O4 - GS\Quicklaunch [HelpAssistant]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [HelpAssistant]: NeoDownloader.lnk . (.Neowise Software - NeoDownloader.) C:\Program Files\NeoDownloader\NeoDownloader.exe
O4 - GS\Quicklaunch [HelpAssistant]: Offline Explorer Enterprise.lnk . (.MetaProducts corp. - Offline Explorer executable.) C:\Program Files\Offline Explorer Enterprise\OE.exe
O4 - GS\Quicklaunch [HelpAssistant]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd®
O4 - GS\Quicklaunch [HelpAssistant]: Raccourci vers DwnlData.lnk . (...) C:\Documents and Settings\ahmed\Application Data\IDM\DwnlData
O4 - GS\Quicklaunch [HelpAssistant]: SolveigMM Video Splitter Business Edition.lnk . (.Solveig Multimedia - SolveigMM Video Splitter Business Edition.) C:\Program Files\Solveig Multimedia\SolveigMM Video Splitter Business Edition\SMMVSplitter_Business.exe {0763F0746A5427757119E833B4192CDE}
O4 - GS\Quicklaunch [HelpAssistant]: Sublime Text 3.lnk . (.Copyright (C) 2006 - 2016 Sublime HQ Pty Ltd - Sublime Text.) C:\Program Files\Sublime Text 3\sublime_text.exe
O4 - GS\Quicklaunch [HelpAssistant]: UltraISO.lnk . (.EZB Systems, Inc. - UltraISO Premium.) C:\Program Files\UltraISO\UltraISO.exe {11211B6C1D7687D789B2B9118C0D9622C42F}
O4 - GS\Quicklaunch [HelpAssistant]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [HelpAssistant]: WinASO Registry Optimizer.lnk . (.X.M.Y International, LLC - WinASO Registry Optimizer.) C:\Program Files\WinASO\Registry Optimizer\RegOpt.exe
O4 - GS\Quicklaunch [HelpAssistant]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Documents and Settings\ahmed\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Startup [HelpAssistant]: Styler Elkbab.lnk . (.ta2027 - Style Change Application.) C:\Program Files\Styler\Styler.exe =>.ta2027
O4 - GS\Desktop [SUPPORT_388945a0]: Continuer Installation de JavaScript QuickLink.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\JavaScript QuickLinkInstaller.exe
O4 - GS\Desktop [SUPPORT_388945a0]: CrystalDiskMark 5.lnk . (.Crystal Dew World - CrystalDiskMark.) C:\Program Files\CrystalDiskMark5\DiskMark32.exe {11218B069CCBEDB332B1EC4560BEE4BF2C14} =>.Crystal Dew World
O4 - GS\Desktop [SUPPORT_388945a0]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [SUPPORT_388945a0]: Raccourci vers fx9860emulator.exe.lnk . (.CASIO COMPUTER CO., LTD. - fx-9860emulator.) D:\logiciels Portable\fx9860emulator.exe =>.CASIO COMPUTER CO., LTD.
O4 - GS\Desktop [SUPPORT_388945a0]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Clean Space 2015.lnk . (.Clean-Space.com - Remove computer tracks.) C:\Program Files\Clean Space 2015\cleanspace.exe
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Downloads.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Kinovea.lnk . (.Kinovea - Kinovea.) C:\Program Files\Kinovea\Kinovea.exe =>.Kinovea
O4 - GS\Quicklaunch [SUPPORT_388945a0]: MC34063 Universal Calculator.lnk . (...) C:\WINDOWS\Installer\{FFC12E35-0FF8-4E41-B703-0DB1487895DF}\_46C6D603938B8CF4413367.exe
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Mes documents.lnk . (...) C:\Documents and Settings\ahmed\Mes documents
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Movavi Video Suite 12.lnk . (.http://www.movavi.com - MOVAVI Video Suite.) C:\Program Files\Movavi Video Suite 12\Suite.exe
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [SUPPORT_388945a0]: NeoDownloader.lnk . (.Neowise Software - NeoDownloader.) C:\Program Files\NeoDownloader\NeoDownloader.exe
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Offline Explorer Enterprise.lnk . (.MetaProducts corp. - Offline Explorer executable.) C:\Program Files\Offline Explorer Enterprise\OE.exe
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd®
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Raccourci vers DwnlData.lnk . (...) C:\Documents and Settings\ahmed\Application Data\IDM\DwnlData
O4 - GS\Quicklaunch [SUPPORT_388945a0]: SolveigMM Video Splitter Business Edition.lnk . (.Solveig Multimedia - SolveigMM Video Splitter Business Edition.) C:\Program Files\Solveig Multimedia\SolveigMM Video Splitter Business Edition\SMMVSplitter_Business.exe {0763F0746A5427757119E833B4192CDE}
O4 - GS\Quicklaunch [SUPPORT_388945a0]: Sublime Text 3.lnk . (.Copyright (C) 2006 - 2016 Sublime HQ Pty Ltd - Sublime Text.) C:\Program Files\Sublime Text 3\sublime_text.exe
O4 - GS\Quicklaunch [SUPPORT_388945a0]: UltraISO.lnk . (.EZB Systems, Inc. - UltraISO Premium.) C:\Program Files\UltraISO\UltraISO.exe {11211B6C1D7687D789B2B9118C0D9622C42F}
O4 - GS\Quicklaunch [SUPPORT_388945a0]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [SUPPORT_388945a0]: WinASO Registry Optimizer.lnk . (.X.M.Y International, LLC - WinASO Registry Optimizer.) C:\Program Files\WinASO\Registry Optimizer\RegOpt.exe
O4 - GS\Quicklaunch [SUPPORT_388945a0]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Documents and Settings\ahmed\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Startup [SUPPORT_388945a0]: Styler Elkbab.lnk . (.ta2027 - Style Change Application.) C:\Program Files\Styler\Styler.exe =>.ta2027
O4 - GS\Desktop [VUSR_TAZI-C3DF0B3B29]: Continuer Installation de JavaScript QuickLink.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\JavaScript QuickLinkInstaller.exe
O4 - GS\Desktop [VUSR_TAZI-C3DF0B3B29]: CrystalDiskMark 5.lnk . (.Crystal Dew World - CrystalDiskMark.) C:\Program Files\CrystalDiskMark5\DiskMark32.exe {11218B069CCBEDB332B1EC4560BEE4BF2C14} =>.Crystal Dew World
O4 - GS\Desktop [VUSR_TAZI-C3DF0B3B29]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [VUSR_TAZI-C3DF0B3B29]: Raccourci vers fx9860emulator.exe.lnk . (.CASIO COMPUTER CO., LTD. - fx-9860emulator.) D:\logiciels Portable\fx9860emulator.exe =>.CASIO COMPUTER CO., LTD.
O4 - GS\Desktop [VUSR_TAZI-C3DF0B3B29]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Documents and Settings\ahmed\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Clean Space 2015.lnk . (.Clean-Space.com - Remove computer tracks.) C:\Program Files\Clean Space 2015\cleanspace.exe
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Downloads.lnk . (...) C:\Documents and Settings\ahmed\Mes documents\Downloads
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Kinovea.lnk . (.Kinovea - Kinovea.) C:\Program Files\Kinovea\Kinovea.exe =>.Kinovea
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: MC34063 Universal Calculator.lnk . (...) C:\WINDOWS\Installer\{FFC12E35-0FF8-4E41-B703-0DB1487895DF}\_46C6D603938B8CF4413367.exe
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Mes documents.lnk . (...) C:\Documents and Settings\ahmed\Mes documents
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Movavi Video Suite 12.lnk . (.http://www.movavi.com - MOVAVI Video Suite.) C:\Program Files\Movavi Video Suite 12\Suite.exe
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: NeoDownloader.lnk . (.Neowise Software - NeoDownloader.) C:\Program Files\NeoDownloader\NeoDownloader.exe
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Offline Explorer Enterprise.lnk . (.MetaProducts corp. - Offline Explorer executable.) C:\Program Files\Offline Explorer Enterprise\OE.exe
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd®
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Raccourci vers DwnlData.lnk . (...) C:\Documents and Settings\ahmed\Application Data\IDM\DwnlData
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: SolveigMM Video Splitter Business Edition.lnk . (.Solveig Multimedia - SolveigMM Video Splitter Business Edition.) C:\Program Files\Solveig Multimedia\SolveigMM Video Splitter Business Edition\SMMVSplitter_Business.exe {0763F0746A5427757119E833B4192CDE}
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: Sublime Text 3.lnk . (.Copyright (C) 2006 - 2016 Sublime HQ Pty Ltd - Sublime Text.) C:\Program Files\Sublime Text 3\sublime_text.exe
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: UltraISO.lnk . (.EZB Systems, Inc. - UltraISO Premium.) C:\Program Files\UltraISO\UltraISO.exe {11211B6C1D7687D789B2B9118C0D9622C42F}
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: WinASO Registry Optimizer.lnk . (.X.M.Y International, LLC - WinASO Registry Optimizer.) C:\Program Files\WinASO\Registry Optimizer\RegOpt.exe
O4 - GS\Quicklaunch [VUSR_TAZI-C3DF0B3B29]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Documents and Settings\ahmed\Application Data\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Startup [VUSR_TAZI-C3DF0B3B29]: Styler Elkbab.lnk . (.ta2027 - Style Change Application.) C:\Program Files\Styler\Styler.exe =>.ta2027
O4 - GS\CommonDesktop [Public]: Circuit Wizard.lnk . (.New Wave Concepts Limited - CktWiz.) C:\Program Files\New Wave Concepts\Circuit Wizard\CktWiz.exe
O4 - GS\CommonDesktop [Public]: Mixxx.lnk . (...) C:\Program Files\Mixxx\mixxx.exe
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Programs [Public]: MiscEl.lnk . (...) C:\Program Files\HKJUtils\MiscEl.exe

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{A02EE01A-3C31-403A-82E2-68D7E7EBC03A}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\..\{A02EE01A-3C31-403A-82E2-68D7E7EBC03A}: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (30) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- C:\WINDOWS\system32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\system32\itss.dll =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: sysimage - {76E67A63-06E9-11D2-A840-006008059382} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- C:\WINDOWS\system32\wiascr.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: Class Install Handler - {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: lzdhtml - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (70) - 35s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: 7-Zip 9.20 - (...) [HKLM] -- 7-Zip
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {0274D240-4D1D-4FDA-9A36-09F0BECD288F} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader X (10.1.11) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc.) [HKLM] -- {B0B387B2-B1E4-43F2-961D-08ABFD759E1A} =>.Adobe Systems, Inc
O42 - Logiciel: Agere Systems HDA Modem - (...) [HKLM] -- Agere Systems Soft Modem
O42 - Logiciel: Allgemeine Runtime Files (x86) - (.Sereby Corporation.) [HKLM] -- {1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1 =>.Sereby Corporation
O42 - Logiciel: BootSkin - (...) [HKLM] -- BootSkin
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 =>.CDBurnerXP
O42 - Logiciel: Circuit Wizard - (.New Wave Concepts Limited.) [HKLM] -- {66220469-8515-401E-A0E2-8F424852C1EF}
O42 - Logiciel: Circuit Wizard - (.New Wave Concepts Limited.) [HKLM] -- InstallShield_{66220469-8515-401E-A0E2-8F424852C1EF}
O42 - Logiciel: Clean Space 2015.03 - (...) [HKLM] -- Clean Space 2015
O42 - Logiciel: CrystalDiskMark 5.1.2 - (.Crystal Dew World.) [HKLM] -- CrystalDiskMark5_is1 =>.Crystal Dew World
O42 - Logiciel: DirectX 9.0c Extra Files (x86, x64) - (.Sereby Corporation.) [HKLM] -- {8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1 =>.Sereby Corporation
O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM] -- {28727A62-DA56-489D-8E1C-456A6B5909AB} =>.ESET, spol. s r.o.
O42 - Logiciel: Fast Duplicate File Finder 4.7.0.1 - (.MindGems, Inc..) [HKLM] -- {AFECFED6-0A43-488F-8511-1DC6B52F31C3}_is1
O42 - Logiciel: FastStone Image Viewer 5.3 - (.FastStone Soft.) [HKLM] -- FastStone Image Viewer =>.FastStone Soft
O42 - Logiciel: Folder Size 3.4.0.0 - (.MindGems, Inc..) [HKLM] -- {2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1
O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 =>.Microsoft Corporation
O42 - Logiciel: IDM Crack 6.25 build 15 - (.SandySeedings Team.) [HKLM] -- IDM Crack 6.25 build 15 =>.Superfluous.CrackSetup
O42 - Logiciel: illiPro - (.Legrand.) [HKLM] -- {1415C886-C0F1-47F0-954D-78DD8C6CFFA4} =>.Legrand
O42 - Logiciel: illiPro - (.Legrand.) [HKLM] -- {19F97176-E992-4B44-85A1-C8CCFD261147} =>.Legrand
O42 - Logiciel: illiPro - (.Legrand.) [HKLM] -- {45531EBE-5EAF-41E5-92FC-CE56A2107A6B} =>.Legrand
O42 - Logiciel: illiPro - (.Legrand.) [HKLM] -- {CE206556-3776-4134-B403-1B921D1522D9} =>.Legrand
O42 - Logiciel: illiPro - (.Legrand.) [HKLM] -- {F68E34E3-3B33-4850-BD94-17E36A043375} =>.Legrand
O42 - Logiciel: illiPro - (.Legrand.) [HKLM] -- {FCAFC493-C4D2-47BB-A9BD-B95BDDF3AC68} =>.Legrand
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Java 8 Update 51 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218051F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Kinovea - (.Kinovea.) [HKLM] -- Kinovea =>.Kinovea
O42 - Logiciel: K-Lite Codec Pack 11.5.5 Standard - (...) [HKLM] -- KLiteCodecPack_is1
O42 - Logiciel: LogonStudio - (.Stardock Corporation.) [HKLM] -- LogonStudio =>.Stardock Corporation®
O42 - Logiciel: MC34063 Universal Calculator - (.---.) [HKLM] -- {FFC12E35-0FF8-4E41-B703-0DB1487895DF}
O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM] -- MEGAsync =>.MEGA Limited
O42 - Logiciel: MetaProducts Offline Explorer Enterprise - (...) [HKLM] -- MetaProducts Offline Explorer Enterprise
O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 - (.Microsoft Corporation.) [HKLM] -- Wdf01005 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft National Language Support Downlevel APIs - (.Microsoft Corporation.) [HKLM] -- NLSDownlevelMapping =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Software Update for Web Folders (French) 12 - (.Microsoft Corporation.) [HKLM] -- {90120000-0010-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft VM for Java - (...) [HKLM] -- MsJavaVM
O42 - Logiciel: Microsoft Web Publishing Wizard 1.53 - (...) [HKLM] -- WebPost
O42 - Logiciel: Microsoft XNA Framework Redistributable 3.0 - (.Microsoft Corporation.) [HKLM] -- {3898934B-05AE-41CD-96BE-70DA9BFBCE1F} =>.Microsoft Corporation
O42 - Logiciel: Mixxx 2.0.0 - (.The Mixxx Development Team.) [HKLM] -- Mixxx (2.0.0) =>.The Mixxx Development Team
O42 - Logiciel: Movavi Video Suite 12 - (.Movavi.) [HKLM] -- Movavi Video Suite 12 =>.Taukonsalt OOO®
O42 - Logiciel: Mozilla Firefox 40.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 40.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSXML 6.0 Parser - (.Microsoft Corporation.) [HKLM] -- {AEB9948B-4FF2-47C9-990E-47014492A0FE} =>.Microsoft Corporation
O42 - Logiciel: NeoDownloader v.2.9.4 - (.Neowise Software.) [HKLM] -- {E76CDDCE-EFC0-4FE5-9972-9489CE49AA55}_is1 {672252D92D221E530A9121684418D96B}
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: Parallels runtime modules - (.Parallels.) [HKLM] -- {362A43F1-D2C1-4C89-98B7-B9BD894D160D} =>.Parallels
O42 - Logiciel: Picture Collage Maker Pro 4.1.3 - (.PearlMountain Technology Co., Ltd.) [HKLM] -- {6D308A90-6C14-4A02-9B04-CB0EF17894A9}_is1 =>.PearlMountain Technology Co., Ltd
O42 - Logiciel: PrivaZer - (.Goversoft LLC.) [HKLM] -- PrivaZer =>.Goversoft®
O42 - Logiciel: Reload Icons Cache 1.00 - (.Mr Blade Design's.) [HKLM] -- Reload Icons Cache 1.00
O42 - Logiciel: SFX Compiler - (...) [HKLM] -- SFX Compiler
O42 - Logiciel: SkinPack Windows10 V10.0 - (.SkinPack.) [HKLM] -- SkinPack =>.SkinPack
O42 - Logiciel: SolveigMM Video Splitter Business Edition - (.Solveig Multimedia.) [HKLM] -- SolveigMM Video Splitter Business Edition 4.0.1401.28
O42 - Logiciel: Sublime Text Build 3083 - (.Sublime HQ Pty Ltd.) [HKLM] -- Sublime Text 3_is1 =>.Sublime HQ Pty Ltd®
O42 - Logiciel: SuperCopier2 - (...) [HKLM] -- SuperCopier2
O42 - Logiciel: UltraISO Premium V9.6 - (...) [HKLM] -- UltraISO_is1
O42 - Logiciel: Unlocker 1.9.1 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb
O42 - Logiciel: UxStyle Core Beta - (.The Within Network, LLC.) [HKLM] -- {8E363055-15E5-4D8A-9C69-A0A9DE9A3337}
O42 - Logiciel: Visual Similarity Duplicate Image Finder Demo 6.1.0.1 - (.MindGems, Inc..) [HKLM] -- {72D6BE71-2A6F-4D01-809E-A3174D1738A0}_is1
O42 - Logiciel: VMware Workstation Lite - (.VMware, Inc..) [HKLM] -- {A3FF5CB2-FB35-4658-8751-9EDE1D65B3AA} =>.VMware, Inc.
O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C940c-3D7C-4EE8-BAA9-00BCB3D54227} =>.Microsoft Corporation
O42 - Logiciel: WinASO Registry Optimizer 5.0.1 - (.X.M.Y International LLC.) [HKLM] -- WinASO Registry Optimizer_is1 =>PUP.Optional.WinZipRegistry
O42 - Logiciel: WinCDEmu - (.Bazis.) [HKLM] -- WinCDEmu =>.Sysprogs UG (haftungsbeschraenkt)®
O42 - Logiciel: Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray - (.Microsoft Corporation.) [HKLM] -- KB952011 =>.Microsoft Corporation®
O42 - Logiciel: WinRAR 5.11 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (154) - 35s
HKLM\SOFTWARE\7-Zip
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Agere
HKLM\SOFTWARE\ahead
HKLM\SOFTWARE\Ainishare
HKLM\SOFTWARE\Analog Devices
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\C07ft5Y
HKLM\SOFTWARE\CloudOPTInfo
HKLM\SOFTWARE\Conduit =>.Superfluous.Conduit
HKLM\SOFTWARE\Debug
HKLM\SOFTWARE\DesignSoft
HKLM\SOFTWARE\DVDVideoSoft
HKLM\SOFTWARE\EasyBoot Systems
HKLM\SOFTWARE\ej-technologies
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\FastStone Image Viewer
HKLM\SOFTWARE\FolderProtect
HKLM\SOFTWARE\Gemplus
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GPL Ghostscript
HKLM\SOFTWARE\GridinSoft
HKLM\SOFTWARE\GSLLC
HKLM\SOFTWARE\HI-TECH Software
HKLM\SOFTWARE\Icaros
HKLM\SOFTWARE\InstalledOptions
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\INTEL
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\KLCodecPack
HKLM\SOFTWARE\kpzs
HKLM\SOFTWARE\LAV
HKLM\SOFTWARE\Legrand
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Microchip
HKLM\SOFTWARE\MOVAVI
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\MyProg
HKLM\SOFTWARE\National Instruments
HKLM\SOFTWARE\NCH Software
HKLM\SOFTWARE\NCH Swift Sound
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\Notepad++
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\Parallels
HKLM\SOFTWARE\PDF Architect 3
HKLM\SOFTWARE\PowerTechnology
HKLM\SOFTWARE\Program Groups
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Schlumberger
HKLM\SOFTWARE\simplefiles =>PUP.Optional.SimpleFiles
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\Solveig Multimedia
HKLM\SOFTWARE\Solvusoft =>.Superfluous.Solvusoft
HKLM\SOFTWARE\SourceCodeControlProvider
HKLM\SOFTWARE\Stardock
HKLM\SOFTWARE\SWSoft
HKLM\SOFTWARE\ThinPrint
HKLM\SOFTWARE\VMware, Inc.
HKLM\SOFTWARE\WanDrv
HKLM\SOFTWARE\Windows 3.1 Migration Status
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wondershare
HKLM\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Ada99
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\Akeo Consulting
HKCU\SOFTWARE\Analog Devices
HKCU\SOFTWARE\Apowersoft
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\Baidu
HKCU\SOFTWARE\BasicScript Program Settings
HKCU\SOFTWARE\BDUSBImmunizer
HKCU\SOFTWARE\Canneverbe Limited
HKCU\SOFTWARE\CASIO
HKCU\SOFTWARE\conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\David Esperalta
HKCU\SOFTWARE\DesignSoft
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\DVDVideoSoft
HKCU\SOFTWARE\EasyBoot Systems
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Elecard
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport
HKCU\SOFTWARE\FolderProtect
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Geek Uninstaller
HKCU\SOFTWARE\giveawayoftheday.com
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GRETECH
HKCU\SOFTWARE\HKJ
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Karlis Blumentals
HKCU\SOFTWARE\Kinovea
HKCU\SOFTWARE\LEGRAND
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MediaChance
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\MetaProducts
HKCU\SOFTWARE\MindGems
HKCU\SOFTWARE\MOVAVI
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\Mozilla Backup
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\National Instruments
HKCU\SOFTWARE\NCH Software
HKCU\SOFTWARE\NCH Swift Sound
HKCU\SOFTWARE\Neowise
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\New Wave Concepts
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Orban
HKCU\SOFTWARE\Parallels Software
HKCU\SOFTWARE\PDF Architect 3
HKCU\SOFTWARE\PearlMountain
HKCU\SOFTWARE\PrivaZer
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Schematica
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\simplefiles =>PUP.Optional.SimpleFiles
HKCU\SOFTWARE\Simply Super Software
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Softwrap
HKCU\SOFTWARE\Solveig Multimedia
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\SysProgs
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wondershare
HKCU\SOFTWARE\Xenocode
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\Macromedia

---\\ Contenu des dossiers Programmes (278) - 60s
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files\---
O43 - CFD: 22/02/2016 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 25/10/2015 - [0] D -- C:\Program Files\Abdio
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Analog Devices
O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\baidu
O43 - CFD: 05/11/2015 - [0] D -- C:\Program Files\BlueSprig
O43 - CFD: 26/10/2015 - [] D -- C:\Program Files\CDBurnerXP =>.Canneverbe Limited®
O43 - CFD: 22/09/2015 - [] D -- C:\Program Files\Clean Space 2015
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files\ComPlus Applications
O43 - CFD: 03/05/2016 - [] D -- C:\Program Files\CrystalDiskMark5 {11218B069CCBEDB332B1EC4560BEE4BF2C14}
O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\DMXControl3
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.®
O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\Fast Duplicate File Finder
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\FastStone Image Viewer
O43 - CFD: 15/02/2016 - [] D -- C:\Program Files\Fichiers communs
O43 - CFD: 22/04/2016 - [] D -- C:\Program Files\Folder Protect =>.Newsoftwares.net, Inc SDN BHD®
O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\Folder Size
O43 - CFD: 16/04/2016 - [] D -- C:\Program Files\Google
O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\GPLGS
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\HI-TECH Software
O43 - CFD: 27/08/2015 - [] D -- C:\Program Files\HKJUtils
O43 - CFD: 12/01/2016 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 04/05/2016 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 25/09/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\K-Lite Codec Pack
O43 - CFD: 20/03/2016 - [] D -- C:\Program Files\Kinovea
O43 - CFD: 20/02/2016 - [0] D -- C:\Program Files\Legrand
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Messenger
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\microsoft frontpage
O43 - CFD: 17/10/2015 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 25/09/2015 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\Microsoft XNA =>.Microsoft Corporation®
O43 - CFD: 17/10/2015 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 07/05/2016 - [] D -- C:\Program Files\Mixxx
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Movavi Core 5.1.0 =>.Taukonsalt OOO®
O43 - CFD: 22/04/2016 - [] D -- C:\Program Files\Movavi Video Suite 12
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Movie Maker
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 17/10/2015 - [] D -- C:\Program Files\MSECache
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\MSN
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\MSN Gaming Zone
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\National Instruments
O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\NCH Software
O43 - CFD: 22/04/2016 - [] D -- C:\Program Files\NeoDownloader
O43 - CFD: 26/10/2015 - [0] D -- C:\Program Files\Nero
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\NetMeeting
O43 - CFD: 18/10/2015 - [] D -- C:\Program Files\New Wave Concepts
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Notepad++
O43 - CFD: 01/10/2015 - [] D -- C:\Program Files\Offline Explorer Enterprise
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Online Services
O43 - CFD: 15/10/2015 - [] D -- C:\Program Files\Opera =>.Opera Software ASA®
O43 - CFD: 22/08/2015 - [] D -- C:\Program Files\Outlook Express
O43 - CFD: 23/01/2016 - [] D -- C:\Program Files\Picture Collage Maker Pro =>.Chengdu PearlMountain Technology Co., Ltd®
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\PrivaZer =>.Goversoft®
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Services en ligne
O43 - CFD: 17/03/2016 - [] D -- C:\Program Files\SFX Compiler
O43 - CFD: 13/09/2015 - [] D -- C:\Program Files\Solveig Multimedia {0763F0746A5427757119E833B4192CDE}
O43 - CFD: 15/02/2016 - [] D -- C:\Program Files\Stardock
O43 - CFD: 10/09/2015 - [] D -- C:\Program Files\Styler
O43 - CFD: 05/04/2016 - [] D -- C:\Program Files\Sublime Text 3
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\SuperCopier2
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files\UltraISO {11211B6C1D7687D789B2B9118C0D9622C42F}
O43 - CFD: 19/08/2015 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 22/08/2015 - [] D -- C:\Program Files\UX Pack
O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\Visual Similarity Duplicate Image Finder
O43 - CFD: 03/12/2015 - [] D -- C:\Program Files\VMware =>.VMware, Inc.®
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files\Web Publish
O43 - CFD: 15/02/2016 - [] D -- C:\Program Files\WinASO
O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\WinCDEmu
O43 - CFD: 20/04/2016 - [] D -- C:\Program Files\Windows Loader =>HackTool.WinActivator
O43 - CFD: 11/01/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 19/08/2015 - [0] HD -- C:\Program Files\WindowsUpdate
O43 - CFD: 10/10/2015 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Wondershare =>.Shenzhen Wondershare Information Technology Co., Ltd.®
O43 - CFD: 26/10/2015 - [0] D -- C:\Program Files\Xenocode
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\xerox
O43 - CFD: 22/02/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\7-Zip
O43 - CFD: 28/09/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 14/02/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\BitTorrent PRO
O43 - CFD: 18/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Circuit Wizard
O43 - CFD: 18/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Clean Space 2015
O43 - CFD: 03/05/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\CrystalDiskMark5
O43 - CFD: 27/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DMXControl 3
O43 - CFD: 12/02/2016 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ESET
O43 - CFD: 12/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Fast Duplicate File Finder
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\FastStone Image Viewer
O43 - CFD: 12/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Folder Size
O43 - CFD: 30/04/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 25/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java
O43 - CFD: 19/08/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux
O43 - CFD: 10/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\K-Lite Codec Pack
O43 - CFD: 20/03/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Kinovea
O43 - CFD: 20/02/2016 - [0] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Legrand
O43 - CFD: 24/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MC34063 Universal Calculator
O43 - CFD: 21/08/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\MEGAsync
O43 - CFD: 17/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office
O43 - CFD: 25/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Silverlight
O43 - CFD: 04/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Visual Studio 6.0
O43 - CFD: 07/05/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Mixxx
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Movavi Video Suite 12
O43 - CFD: 22/04/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\NeoDownloader
O43 - CFD: 14/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Notepad++
O43 - CFD: 19/08/2015 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration
O43 - CFD: 23/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Picture Collage Maker Pro
O43 - CFD: 14/02/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SkinPack
O43 - CFD: 13/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Solveig Multimedia
O43 - CFD: 15/02/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Stardock
O43 - CFD: 21/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Tina 9 - Industrial
O43 - CFD: 24/09/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\UltraISO
O43 - CFD: 12/01/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Visual Similarity Duplicate Image Finder
O43 - CFD: 03/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VMware
O43 - CFD: 15/02/2016 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinASO
O43 - CFD: 14/12/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinCDEmu
O43 - CFD: 10/10/2015 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR
O43 - CFD: 09/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe
O43 - CFD: 04/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Apowersoft
O43 - CFD: 24/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Autodesk
O43 - CFD: 12/02/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Baidu
O43 - CFD: 24/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\BatteryOptimizer.exe
O43 - CFD: 13/01/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Blumentals
O43 - CFD: 23/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\boost_interprocess
O43 - CFD: 24/09/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited
O43 - CFD: 22/02/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Downloaded Installations
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\ESET
O43 - CFD: 21/04/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\GridinSoft
O43 - CFD: 19/08/2015 - [0] D -- C:\Documents and Settings\All Users\Application Data\IDM
O43 - CFD: 21/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\IsolatedStorage
O43 - CFD: 04/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Licenses
O43 - CFD: 20/04/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Logs
O43 - CFD: 26/02/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\MEGAsync
O43 - CFD: 19/01/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Micrelec
O43 - CFD: 17/10/2015 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft
O43 - CFD: 18/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
O43 - CFD: 13/01/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\MindGems
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Movavi
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Movavi Video Converter 16
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Movavi Video Suite 12
O43 - CFD: 16/01/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\National Instruments
O43 - CFD: 12/01/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\NCH Software
O43 - CFD: 25/09/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle
O43 - CFD: 07/05/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache
O43 - CFD: 12/10/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\PDF Architect 2
O43 - CFD: 02/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\PearlMountain
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\privazer
O43 - CFD: 27/08/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Schematica
O43 - CFD: 04/11/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Simply Super Software
O43 - CFD: 15/02/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\Stardock
O43 - CFD: 25/09/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun
O43 - CFD: 21/04/2016 - [] AD -- C:\Documents and Settings\All Users\Application Data\TEMP
O43 - CFD: 08/05/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\VMware
O43 - CFD: 06/12/2015 - [] D -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
O43 - CFD: 12/02/2016 - [] D -- C:\Documents and Settings\All Users\Application Data\wondershare
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\Fichiers communs\Adobe
O43 - CFD: 14/10/2015 - [] D -- C:\Program Files\Fichiers communs\Adobe AIR
O43 - CFD: 26/10/2015 - [] D -- C:\Program Files\Fichiers communs\Ahead
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files\Fichiers communs\Bcgsoft
O43 - CFD: 28/09/2015 - [] D -- C:\Program Files\Fichiers communs\designer
O43 - CFD: 28/09/2015 - [] D -- C:\Program Files\Fichiers communs\DVDVideoSoft
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files\Fichiers communs\EZB Systems
O43 - CFD: 10/10/2015 - [] D -- C:\Program Files\Fichiers communs\InstallShield
O43 - CFD: 25/09/2015 - [] D -- C:\Program Files\Fichiers communs\Java
O43 - CFD: 12/01/2016 - [] D -- C:\Program Files\Fichiers communs\Legrand
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\Fichiers communs\Merge Modules
O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Fichiers communs\MSSoap
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Fichiers communs\ODBC
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Fichiers communs\Services
O43 - CFD: 13/09/2015 - [] D -- C:\Program Files\Fichiers communs\Solveig Multimedia
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines
O43 - CFD: 15/02/2016 - [] D -- C:\Program Files\Fichiers communs\Stardock
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files\Fichiers communs\System
O43 - CFD: 03/12/2015 - [] D -- C:\Program Files\Fichiers communs\VMware
O43 - CFD: 12/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Adobe
O43 - CFD: 26/10/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Ahead
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Apowersoft
O43 - CFD: 24/10/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Autodesk
O43 - CFD: 03/02/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Baidu
O43 - CFD: 13/02/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\BitTorrent Pro
O43 - CFD: 10/09/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\BlueSprig
O43 - CFD: 13/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Blumentals
O43 - CFD: 24/09/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Canneverbe Limited
O43 - CFD: 11/09/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\CLSP2014
O43 - CFD: 29/04/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\CLSP2015
O43 - CFD: 14/02/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\CrystalIdea Software
O43 - CFD: 25/10/2015 - [0] D -- C:\Documents and Settings\ahmed\Application Data\dll-files.com =>PUP.Optional.DllFilesFixer
O43 - CFD: 04/05/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\DMCache
O43 - CFD: 26/02/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\DRPSu
O43 - CFD: 28/09/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\DVDVideoSoft
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\ESET
O43 - CFD: 23/12/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\FastStone
O43 - CFD: 26/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Geek Uninstaller
O43 - CFD: 11/10/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\GeoGebra 4.4
O43 - CFD: 12/01/2016 - [0] D -- C:\Documents and Settings\ahmed\Application Data\GiliSoft
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Identities
O43 - CFD: 04/05/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\IDM
O43 - CFD: 03/05/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\IsMyHdOK
O43 - CFD: 21/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\IsolatedStorage
O43 - CFD: 12/02/2016 - [0] D -- C:\Documents and Settings\ahmed\Application Data\JAM Software
O43 - CFD: 20/03/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Kinovea
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Macromedia
O43 - CFD: 18/04/2016 - [] SD -- C:\Documents and Settings\ahmed\Application Data\Microsoft
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Movavi
O43 - CFD: 01/05/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Mozilla
O43 - CFD: 10/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\MPC-HC
O43 - CFD: 13/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\National Instruments
O43 - CFD: 11/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\NCH Software
O43 - CFD: 23/12/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\NeoDownloader
O43 - CFD: 15/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Notepad++
O43 - CFD: 07/05/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Offline Explorer
O43 - CFD: 15/10/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Opera Software
O43 - CFD: 25/09/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Oracle
O43 - CFD: 15/10/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\PDF Architect 2
O43 - CFD: 02/11/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\PearlMountain
O43 - CFD: 15/02/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\PhoXo
O43 - CFD: 27/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Schematica
O43 - CFD: 13/09/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Solveig Multimedia
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Styler
O43 - CFD: 17/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Sublime Text 2
O43 - CFD: 17/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\Sublime Text 3
O43 - CFD: 25/09/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Sun
O43 - CFD: 10/10/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\Thinstall
O43 - CFD: 15/02/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\uTorrent
O43 - CFD: 10/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\vlc
O43 - CFD: 08/05/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\VMware
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Application Data\WinRAR
O43 - CFD: 15/01/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\YCanPDF
O43 - CFD: 08/05/2016 - [] D -- C:\Documents and Settings\ahmed\Application Data\ZHP
O43 - CFD: 23/02/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Adobe
O43 - CFD: 26/10/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Ahead
O43 - CFD: 04/12/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Apowersoft
O43 - CFD: 27/12/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\DFX
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\ESET
O43 - CFD: 19/08/2015 - [0] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\eSupport.com =>PUP.Optional.eSupport
O43 - CFD: 21/08/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Google
O43 - CFD: 05/09/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Identities
O43 - CFD: 20/03/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Kinovea
O43 - CFD: 21/08/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Mega Limited
O43 - CFD: 25/12/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Microsoft
O43 - CFD: 17/10/2015 - [0] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Microsoft Help
O43 - CFD: 12/01/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\MindGems
O43 - CFD: 03/02/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\MiniService
O43 - CFD: 07/05/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Mixxx
O43 - CFD: 17/12/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Movavi
O43 - CFD: 01/05/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Mozilla
O43 - CFD: 15/10/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Opera Software
O43 - CFD: 07/05/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\PrivaZer
O43 - CFD: 30/10/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Spoon
O43 - CFD: 27/02/2016 - [0] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\StormFall =>PUP.Optional.StormFall
O43 - CFD: 09/02/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Sublime Text 3
O43 - CFD: 25/09/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Sun
O43 - CFD: 03/02/2016 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Temp
O43 - CFD: 10/10/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Thinstall
O43 - CFD: 25/12/2015 - [0] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\WMTools Downloaded Files
O43 - CFD: 27/12/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Wondershare
O43 - CFD: 26/10/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\Xenocode
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\_Converter
O43 - CFD: 21/08/2015 - [] D -- C:\Documents and Settings\ahmed\Local Settings\Application Data\_
O43 - CFD: 19/08/2015 - [] RD -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\Accessoires
O43 - CFD: 16/10/2015 - [] RD -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\Démarrage
O43 - CFD: 13/01/2016 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\HI-TECH Software
O43 - CFD: 30/04/2016 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\Internet Download Manager
O43 - CFD: 01/10/2015 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\MetaProducts Offline Explorer Enterprise
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\PrivaZer
O43 - CFD: 17/03/2016 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\SFX Compiler
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\Styler Elkbab
O43 - CFD: 19/08/2015 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\SuperCopier2
O43 - CFD: 11/12/2015 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\Unlocker
O43 - CFD: 15/02/2016 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\WinCustomize
O43 - CFD: 10/10/2015 - [] D -- C:\Documents and Settings\ahmed\Menu Démarrer\Programmes\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s
O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: IDM Shell Extension [! IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: ###MegaShellExtPending [###MegaShellExtPending] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\Documents and Settings\All Users\Application Data\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSynced [###MegaShellExtSynced] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\Documents and Settings\All Users\Application Data\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSyncing [###MegaShellExtSyncing] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\Documents and Settings\All Users\Application Data\MEGAsync\ShellExtX32.dll
O106 - SIOI: Offline Files Menu [Fichiers hors connexion] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\system32\cscui.dll =>.Microsoft Corporation

---\\ Liste des pilotes du système (63) - 9s
O58 - SDL:2006/01/31 05:19:34 A . (.Analog Devices, Inc. - High Definition Audio Function Driver(Relea.) -- C:\WINDOWS\System32\drivers\ADIHdAud.sys [176128] =>.Analog Devices, Inc.
O58 - SDL:2005/06/07 08:53:46 A . (.Andrea Electronics Corporation - Audio Noise Filtering Driver.) -- C:\WINDOWS\System32\drivers\aeaudio.sys [152960] =>.Andrea Electronics Corporation
O58 - SDL:2006/09/28 00:00:10 A . (.Agere Systems - SoftModem Device Driver.) -- C:\WINDOWS\System32\drivers\AGRSM.sys [1160320] =>.Agere Systems
O58 - SDL:2010/12/30 15:19:40 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\WINDOWS\System32\drivers\Apowersoft_AudioDevice.sys [16640] =>.Wondershare
O58 - SDL:2008/05/07 18:49:40 A . (.AuthenTec, Inc. - AuthenTec Swipe Sensor WDF USB Driver Prot.) -- C:\WINDOWS\System32\drivers\ATSwpWDF.sys [475136] =>.AuthenTec, Inc.®
O58 - SDL:2008/09/10 18:39:08 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS5.1.) -- C:\WINDOWS\System32\drivers\b57xp32.sys [176640] =>.Broadcom Corporation
O58 - SDL:2011/08/08 18:13:10 A . (.SysProgs.org - WinCDEmu virtual CDROM bus.) -- C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys [117584] =>.Sysprogs UG (haftungsbeschraenkt)®
O58 - SDL:2015/08/18 20:21:48 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] =>.RAVISENT Technologies Inc.
O58 - SDL:2015/08/18 20:21:48 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] =>.Compaq Computer Corporation
O58 - SDL:2015/08/18 20:21:12 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] =>.Microsoft Corp., Veritas Software
O58 - SDL:2015/08/18 20:21:12 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] =>.Microsoft Corp., Veritas Software
O58 - SDL:2015/08/18 20:21:12 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] =>.Microsoft Corp., Veritas Software.
O58 - SDL:2015/08/19 18:01:09 A . (.Phoenix Technologies - DriverAgent Direct I/O for 32-bit Windows.) -- C:\WINDOWS\System32\drivers\DrvAgent32.sys [31832] =>PUP.Optional.eSupport
O58 - SDL:2012/11/16 13:56:48 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamon.sys [160856] =>.ESET, spol. s r.o.®
O58 - SDL:2012/03/14 07:40:02 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [120152] =>.ESET, spol. s r.o.®
O58 - SDL:2012/03/14 07:40:04 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [148504] =>.ESET, spol. s r.o.®
O58 - SDL:2012/03/14 07:40:04 A . (.ESET - ESET Personal Firewall NDIS filter.) -- C:\WINDOWS\System32\drivers\epfwndis.sys [40336] =>.ESET, spol. s r.o.®
O58 - SDL:2012/11/16 13:56:48 A . (.ESET - ESET Personal Firewall TDI filter.) -- C:\WINDOWS\System32\drivers\epfwtdi.sys [62512] =>.ESET, spol. s r.o.®
O58 - SDL:2007/12/16 06:24:28 A . (.Texas Instruments - Texas Instruments PCI GemCore IFD Handler.) -- C:\WINDOWS\System32\drivers\gtipci21.sys [88192] =>.Texas Instruments
O58 - SDL:2008/05/16 06:52:18 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [34864] =>.VMware, Inc.®
O58 - SDL:2015/08/18 20:22:34 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384]
O58 - SDL:2016/01/28 10:20:10 A . (.Tonec Inc. - Internet Download Manager TDI Driver.) -- C:\WINDOWS\System32\drivers\idmtdi.sys [138864] =>.Tonec Inc.®
O58 - SDL:2008/06/18 12:38:20 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd32.sys [2307584] =>.Intel Corporation
O58 - SDL:2008/02/15 13:12:06 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [5854752] =>.Intel Corporation
O58 - SDL:2008/03/13 01:25:36 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETw4x32.sys [2530176] =>.Intel Corporation
O58 - SDL:2015/08/18 20:21:48 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] =>.S3/Diamond Multimedia Systems
O58 - SDL:2011/11/24 08:30:16 A . (.Parallels Holdings, Ltd. and its affiliates. - Parallels directed PCI device with Intel(r).) -- C:\WINDOWS\System32\drivers\prl_vtdhook_32.sys [38408] {3856C7AA705C1895B6249D60A3DDA4DF}
O58 - SDL:2015/08/18 20:27:33 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] =>.Parallel Technologies, Inc.
O58 - SDL:2015/08/18 20:21:48 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] =>.S3/Diamond Multimedia Systems
O58 - SDL:2015/08/18 20:21:48 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] =>.S3/Diamond Multimedia Systems
O58 - SDL:2015/08/18 20:28:31 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2013/08/25 11:30:48 A . (...) -- C:\WINDOWS\System32\drivers\StarOpen.sys [13120] =>.Rocket Division Software Ltd®
O58 - SDL:2007/11/30 23:22:52 A . (.StorageCraft Technology Corporation - StorageCraft Volume Snapshot Driver.) -- C:\WINDOWS\System32\drivers\stcp2v30.sys [64960] =>.VMware, Inc.®
O58 - SDL:2007/12/16 06:24:28 A . (.Texas Instruments - tifm21.sys.) -- C:\WINDOWS\System32\drivers\tifm21.sys [290304] =>.Texas Instruments
O58 - SDL:2015/08/18 20:21:48 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] =>.Toshiba Corporation
O58 - SDL:2009/07/13 01:07:46 A . (...) -- C:\WINDOWS\System32\drivers\uxpatch.sys [25448] {010000000001208BB72C6F}
O58 - SDL:2014/12/11 13:50:56 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [194048] =>.Oracle Corporation
O58 - SDL:2015/08/18 20:21:48 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] =>.RAVISENT Technologies Inc.
O58 - SDL:2016/03/21 09:59:03 A . (...) -- C:\WINDOWS\System32\drivers\vidstub.sys [163712]
O58 - SDL:2008/05/16 06:52:18 A . (.VMware, Inc. - VMware keyboard filter driver (32-bit).) -- C:\WINDOWS\System32\drivers\VMkbd.sys [20912] =>.VMware, Inc.®
O58 - SDL:2008/05/16 06:51:08 RA . (.VMware, Inc. - VMware virtual network driver (32-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [17712] =>.VMware, Inc.®
O58 - SDL:2008/05/16 06:51:08 RA . (.VMware, Inc. - VMware virtual network adapter driver (32-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [16816] =>.VMware, Inc.®
O58 - SDL:2008/05/16 06:51:08 RA . (.VMware, Inc. - VMware bridge driver (32-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [28592] =>.VMware, Inc.®
O58 - SDL:2008/05/16 06:52:16 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [25136] =>.VMware, Inc.®
O58 - SDL:2016/04/22 19:42:02 A . (.VMware, Inc. - VMware parallel port driver.) -- C:\WINDOWS\System32\drivers\VMparport.sys [15920] =>.VMware, Inc.®
O58 - SDL:2008/05/16 06:51:08 RA . (.VMware, Inc. - VMware USB driver.) -- C:\WINDOWS\System32\drivers\vmusb.sys [30768] =>.VMware, Inc.®
O58 - SDL:2008/05/16 06:52:18 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [926000] =>.VMware, Inc.®
O58 - SDL:2015/08/18 20:19:51 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037]
O58 - SDL:2015/08/18 20:20:55 A . (...) -- C:\WINDOWS\System32\country.sys [27097]
O58 - SDL:2015/08/18 20:22:34 A . (...) -- C:\WINDOWS\System32\himem.sys [4912]
O58 - SDL:2015/08/18 20:23:16 A . (...) -- C:\WINDOWS\System32\key01.sys [42809]
O58 - SDL:2015/08/18 20:23:16 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537]
O58 - SDL:2015/08/18 20:26:47 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916]
O58 - SDL:2015/08/18 20:26:47 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146]
O58 - SDL:2015/08/18 20:26:47 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370]
O58 - SDL:2015/08/18 20:26:47 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274]
O58 - SDL:2015/08/18 20:26:47 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146]
O58 - SDL:2015/08/18 20:26:48 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000]
O58 - SDL:2015/08/18 20:26:48 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560]
O58 - SDL:2015/08/18 20:26:48 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648]
O58 - SDL:2015/08/18 20:26:48 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424]
O58 - SDL:2015/08/18 20:26:48 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560]
O58 - SDL:2016/01/11 13:50:18 A . (...) -- C:\WINDOWS\System32\WinFPdrv.sys [30208] =>.Newsoftwares.net, Inc SDN BHD®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 109s
O61 - LFC: 2016/05/02 16:05:17 A . (..) -- C:\Documents and Settings\ahmed\Mes documents\Téléchargements\urDrive_3_0_0_11.exe [91960740]
O61 - LFC: 2016/05/04 14:27:17 A . (.SandySeedings Team.) -- C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\32bit Patch build 15.exe [1947541] =>.Superfluous.CrackSetup
O61 - LFC: 2016/05/07 18:58:00 A . (..) -- C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\mixxx-2.0.0-win32.exe [22662159]
O61 - LFC: 2016/05/02 16:35:46 A . (..) -- C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\urDrive_3_0_0_11.exe [91960740]
O61 - LFC: 2016/05/07 19:29:05 A . (.MetaProducts.) -- C:\Documents and Settings\ahmed\Bureau\ar.kingofsat.netpos-7W.php.exe [13181571]
O61 - LFC: 2016/05/07 19:27:17 A . (.MetaProducts.) -- C:\Documents and Settings\ahmed\Bureau\www.botanic06.comsiteEvolViephysiosang1.htm.exe [576417]

---\\ Associations Shell Spawning (8) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe =>.Microsoft Corporation

---\\ Enumère les services démarrés par Svchost (41) - 2s
O83 - Search Svchost Services: 6to4 (6to4) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\system32\6to4svc.dll [100352] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] =>.Microsoft Corporation
O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824] =>.Microsoft Corporation
O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] =>.Microsoft Corp.
O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] =>.Microsoft Corporation
O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] =>.Microsoft Corporation
O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [246272] =>.Microsoft Corporation
O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation
O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [96768] =>.Microsoft Corporation
O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] =>.Microsoft Corporation
O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] =>.Microsoft Corporation
O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] =>.Microsoft Corporation
O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] =>.Microsoft Corporation
O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] =>.Microsoft Corporation
O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] =>.Microsoft Corporation
O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation
O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] =>.Microsoft Corporation
O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] =>.Microsoft Corporation
O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] =>.Microsoft Corporation
O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] =>.Microsoft Corporation
O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] =>.Microsoft Corporation
O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] =>.Microsoft Corporation
O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] =>.Microsoft Corporation
O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] =>.Microsoft Corporation
O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Fournisseur de services de périphérique mul.) -- C:\WINDOWS\system32\mspmsnsv.dll [52736] =>.Microsoft Corporation

---\\ Scan Additionnel (19) - 0s
C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\searchplugins\search-provided-by-yahoo.xml =>PUP.Optional.BDYahoo
C:\Documents and Settings\ahmed\Application Data\Mozilla\Firefox\Profiles\68gs7czv.default\searchplugins\search-provided-by-yahoo.xml.bak =>PUP.Optional.BDYahoo
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IDM Crack 6.25 build 15 =>.Superfluous.CrackSetup
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinASO Registry Optimizer_is1 =>PUP.Optional.WinZipRegistry
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IDM Crack 6.25 build 15 =>.Superfluous.CrackSetup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinASO Registry Optimizer_is1 =>PUP.Optional.WinZipRegistry
HKLM\SOFTWARE\Conduit =>.Superfluous.Conduit
HKLM\SOFTWARE\simplefiles =>PUP.Optional.SimpleFiles
HKLM\SOFTWARE\Solvusoft =>.Superfluous.Solvusoft
HKCU\SOFTWARE\conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport
HKCU\SOFTWARE\simplefiles =>PUP.Optional.SimpleFiles
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
C:\Program Files\Windows Loader =>HackTool.WinActivator
C:\Documents and Settings\ahmed\Application Data\dll-files.com =>PUP.Optional.DllFilesFixer
C:\Documents and Settings\ahmed\Local Settings\Application Data\eSupport.com =>PUP.Optional.eSupport
C:\Documents and Settings\ahmed\Local Settings\Application Data\StormFall =>PUP.Optional.StormFall
C:\Documents and Settings\ahmed\Mes documents\Downloads\Programs\32bit Patch build 15.exe =>.Superfluous.CrackSetup

---\\ Récapitulatif des éléments trouvés sur votre station (11) - 0s
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BDYahoo
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrackSetup
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.WinZipRegistry
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/pup-optional-simplefiles/ =>PUP.Optional.SimpleFiles
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Solvusoft
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.eSupport
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=1053 =>HackTool.WinActivator
http://www.nicolascoolman.fr/pup-optional-dllfilesfixer/ =>PUP.Optional.DllFilesFixer
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.StormFall

~ End of the scan, 60783 items in 00h07mn26s (1034)(0)

Publicité


Signaler le contenu de ce document

Publicité