cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.5.6.94 By Nicolas Coolman (2016/05/06)
~ Run by رياض (Administrator) (2016/05/08 16:11:04)
~ Web: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\رياض\Desktop\ZHPDiag.txt
~ Report: C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601)

---\\ Internet Browsers (3) - 1s
GCIE: Google Chrome v50.0.2661.94
MFIE: Mozilla Firefox 6.0 (x86 ar)
MSIE: Internet Explorer v11.0.9600.17107

---\\ Windows Product Information (5) - 0s
Windows Server License Manager Script : Absent (Not found)
Windows ID Activation : Inconnue (Unknown)
Windows Licence : Inconnue (Unknown)
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System protection software (1) - 1s
Kaspersky Internet Security v15.0.0.463

---\\ System optimization software (1) - 1s
CCleaner v4.04

---\\ Surveillance software (1) - 1s
Adobe Flash Player 21 NPAPI

---\\ Information on the system (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 1038.84 MB (15% free)
System Restore: Activé (Enable)
System drive C: has 54 GB () free of 80 GB

---\\ Connection to the system mode (3) - 0s
~ Computer Name: رياض-PC
~ User Name: رياض
~ Logged in as Administrator

---\\ Enumeration of the disk units (4) - 10s
~ Drive C: has 54 GB free of 80 GB (System)
~ Drive D: has 53 GB free of 80 GB
~ Drive E: has 72 GB free of 80 GB
~ Drive F: has 231 GB free of 236 GB

---\\ State of the Windows Security Center (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (25) - 1s
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 25/02/2011 - (.Microsoft Corporation - مستكشف Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - عملية مضيف Windows (Rundll32)‎.) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - ‎‎تطبيق بدء تشغيل Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation
[MD5.E4E829EE073E046B0EB19B5FECB19B8C] - 20/05/2014 - (.Microsoft Corporation - ملحقات الإنترنت لـ Win32.) -- C:\Windows\System32\wininet.dll [1789440] =>.Microsoft Corporation
[MD5.998507B046BA314CE8245364C686FA67] - 04/03/2014 - (.Microsoft Corporation - تطبيق تسجيل دخول Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation
[MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - مكتبة تراخيص البرامج.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - مكتبة الارتباط الديناميكي لواجهة برمجة تطبي.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.4A1DDEFCD5C41BFABF2AFE14AE5D91CF] - 24/04/2012 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - 20/05/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation
[MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - برنامج تشغيل منفذ i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation
[MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - 27/04/2011 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123904] =>.Microsoft Corporation
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation
[MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - 12/04/2013 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1211752] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - برنامج تشغيل المنفذ المتوازي.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation
[MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation
[MD5.B459575348C20E8121D6039DA063C704] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation
[MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - برنامج تشغيل خدمة ملفات الظل الاحتياطية لوح.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows®

---\\ Non Microsoft non disabled Windows Services (7) - 2s
O23 - Service: Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe =>.Kaspersky Lab®
O23 - Service: خدمة Google Update (gupdate) (gupdate) . (.Google Inc. - مثبِّت Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService.exe =>.HUAWEI Technologies Co., Ltd.®
O23 - Service: JumpStart Push-Button Service (jswpbapi) . (.Atheros Communications, Inc. - JumpStart PushButton Service.) - C:\Program Files\Jumpstart\jswpbapi.exe =>.Atheros Communications, Inc.
O23 - Service: MobiConnect. OUC (MobiConnect. RunOuc) . (...) - C:\Program Files\MobiConnect\UpdateDog\ouc.exe =>.Huawei Technologies Co., Ltd.®
O23 - Service: NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe =>.Nitro PDF Software®
O23 - Service: Ralink Registry Writer (RalinkRegistryWriter) . (.Ralink Technology, Corp. - RalinkRegistryWriter.) - C:\Program Files\Ralink\Common\RaRegistry.exe =>.Ralink Technology Corporation®

---\\ Services not Microsoft (SR=Run, SS=Stop) (13) - 150s

SS - Demand [30/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [20/04/2014] [ 233552] Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO.) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe =>.Kaspersky Lab®
SS - Auto [29/04/2016] [ 154440] خدمة Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [29/04/2016] [ 154440] خدمة Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [14/03/2011] [ 271712] HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008.) - C:\ProgramData\DatacardService\HWDeviceService.exe =>.HUAWEI Technologies Co., Ltd.®
SR - Auto [26/09/2008] [ 188416] JumpStart Push-Button Service (jswpbapi) . (.Atheros Communications, Inc..) - C:\Program Files\Jumpstart\jswpbapi.exe =>.Atheros Communications, Inc.
SS - Demand [26/09/2008] [ 954368] JumpStart Wi-Fi Protected Setup (jswpsapi) . (.Atheros Communications, Inc..) - C:\Program Files\Jumpstart\jswpsapi.exe =>.Atheros Communications, Inc.
SS - Auto [21/05/2013] [ 656976] MobiConnect. OUC (MobiConnect. RunOuc) . (...) - C:\Program Files\MobiConnect\UpdateDog\ouc.exe =>.Huawei Technologies Co., Ltd.®
SR - Auto [05/03/2013] [ 196616] NitroPDFDriverCreatorReadSpool8 (NitroDriverReadSpool8) . (.Nitro PDF Software.) - C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe =>.Nitro PDF Software®
SR - Auto [11/11/2010] [ 374112] Ralink Registry Writer (RalinkRegistryWriter) . (.Ralink Technology, Corp..) - C:\Program Files\Ralink\Common\RaRegistry.exe =>.Ralink Technology Corporation®
SS - Demand [31/12/2010] [ 619872] RaMediaServer (RaMediaServer) . (...) - C:\Program Files\Ralink\Common\RaMediaServer.exe =>.Ralink Technology Corporation®
SS - Demand [01/03/2013] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.®

---\\ Process running (20) - 6s
[MD5.98F101E69EA59EFAE909EEDD16E434B5] - (.Gsi Technologies - .) -- C:\Program Files\Golden Filter Premium\GFPro.exe [1650688] [PID.1728]
[MD5.B70BCC55743C5A5BD7C7C6D6A02BB6F9] - (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\Windows\SOUNDMAN.EXE [604704] [PID.1736] =>.Realtek Semiconductor Corp®
[MD5.3C3B12E14B24EFB6A52B5582240B8946] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3405208] [PID.1752] =>.Tonec Inc.
[MD5.A1F86A5A0DA1BEC12B7DD19C6234BB15] - (...) -- C:\Users\رياض\Local Settings\Apps\F.lux\flux.exe [966656] [PID.1760]
[MD5.DF37DE4EB253CC67CB6B9D0B1BC69463] - (.Ralink Technology, Corp. - Ralink Wireless LAN Card Utility.) -- C:\Program Files\Ralink\Common\RaUI.exe [11474272] [PID.1776] =>.Ralink Technology Corporation®
[MD5.058734C95991F6BEBF3D3075B8776234] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [233552] [PID.1988] =>.Kaspersky Lab®
[MD5.001C8273B6A21A4B8DA10CDCE833EC4A] - (.Gsi Technologies - .) -- C:\Windows\System32\mssvr32.exe [77824] [PID.1996]
[MD5.5EF3427AE503B5C03A48F7C9FF458B69] - (.Copyright (C) 2008 - DCSHOST.) -- C:\ProgramData\DatacardService\HWDeviceService.exe [271712] [PID.352] =>.HUAWEI Technologies Co., Ltd.®
[MD5.670D6F56BA218AE78CD526AFCC530E2A] - (.Atheros Communications, Inc. - JumpStart PushButton Service.) -- C:\Program Files\Jumpstart\jswpbapi.exe [188416] [PID.492] =>.Atheros Communications, Inc.
[MD5.349AB4F70E2AC44970894E7F03E1576E] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [236384] [PID.856] =>.HUAWEI Technologies Co., Ltd.®
[MD5.29DF2514FCED0B7F8E449933EF6E6918] - (...) -- C:\ProgramData\MobiConnect\OnlineUpdate\ouc.exe [656976] [PID.1252] =>.Huawei Technologies Co., Ltd.®
[MD5.162888FC2BE9E4884FEA7481902C5ADC] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616] [PID.1304] =>.Nitro PDF Software®
[MD5.3FC8252625F2574036777D2981F839EE] - (.Ralink Technology, Corp. - RalinkRegistryWriter.) -- C:\Program Files\Ralink\Common\RaRegistry.exe [374112] [PID.2224] =>.Ralink Technology Corporation®
[MD5.A446F3898F1CE9989ACB3F6E758E179B] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avpui.exe [192160] [PID.3132] =>.Kaspersky Lab®
[MD5.ABF64234F3462571E66527828040219B] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.29.5\GoogleCrashHandler.exe [252232] [PID.3240] =>.Google Inc®
[MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3356] =>.Google Inc®
[MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3508] =>.Google Inc®
[MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.3276] =>.Google Inc®
[MD5.17B0ED32D0FD1DAF7839DFD06E80F956] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [881304] [PID.4032] =>.Google Inc®
[MD5.9B232B25474B8592999632F346C0B12B] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\رياض\Downloads\Programs\ZHPDiag3.exe [2201600] [PID.2472] =>.Nicolas Coolman

---\\ Google Chrome, Start,Search,Extensions (4) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://search.speedbit.com/
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://home.speedbit.com/
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (1) - 1s
M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

---\\ Internet Explorer Extensions, Start, Search (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2

---\\ Internet Explorer, Proxy Management (7) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Hosts file redirection (1) - 2s
~ Le fichier hôte est sain (The hosts file is clean) (15516)

---\\ Browser Helper Object (BHO) (7) - 3s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: ContentBlockerBrowserHelperObject - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} . (.Kaspersky Lab ZAO - Content Blocker Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll =>.Kaspersky Lab®
O2 - BHO: VirtualKeyboardBrowserHelperObject - {73455575-E40C-433C-9784-C78DC7761455} . (.Kaspersky Lab ZAO - Virtual Keyboard Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll =>.Kaspersky Lab®
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} . (.Kaspersky Lab ZAO - Safe Money Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll =>.Kaspersky Lab®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll =>.Oracle America, Inc.®
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} . (.Kaspersky Lab ZAO - URL Advisor Plugin.) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll =>.Kaspersky Lab®

---\\ Auto loading programs from Registry and folders (9) - 3s
O4 - HKLM\..\Run: [GoldenFilterPro] . (.Gsi Technologies - .) -- C:\Program Files\Golden Filter Premium\GFPro.exe
O4 - HKLM\..\Run: [SoundMan] . (.Realtek Semiconductor Corp. - Realtek Sound Manager.) -- C:\Windows\SOUNDMAN.EXE =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [jswtrayutil] . (.Atheros Communications, Inc. - Tray Utility for JumpStart for Wireless.) -- C:\Program Files\Jumpstart\jswtrayutil.exe =>.Atheros Communications, Inc.
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [F.lux] . (...) -- C:\Users\رياض\Local Settings\Apps\F.lux\flux.exe
O4 - HKCU\..\Run: [ManyCam] . (.Visicom Media Inc. - ManyCam Virtual Webcam.) -- C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia
O4 - HKUS\S-1-5-21-3488952640-1886036067-2608822963-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-3488952640-1886036067-2608822963-1000\..\Run: [F.lux] . (...) -- C:\Users\رياض\Local Settings\Apps\F.lux\flux.exe
O4 - HKUS\S-1-5-21-3488952640-1886036067-2608822963-1000\..\Run: [ManyCam] . (.Visicom Media Inc. - ManyCam Virtual Webcam.) -- C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia

---\\ Global shortcuts Startup (33) - 12s
O4 - GS\Desktop [Administrator]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Desktop [Administrator]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC}
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrator]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia
O4 - GS\Quicklaunch [Administrator]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [Guest]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Desktop [Guest]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC}
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Guest]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia
O4 - GS\Quicklaunch [Guest]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [رياض]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Desktop [رياض]: Your Unin-staller!.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe {2D52C7CF5E69A633AC3AED0E78F988DC}
O4 - GS\Desktop [رياض]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\رياض\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [رياض]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [رياض]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia
O4 - GS\Quicklaunch [رياض]: QQPlayer.lnk . (.Tencent - كيوكيو بلاير.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\TaskBar [رياض]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [رياض]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Jumpstart.lnk . (.Atheros Communications, Inc. - Jumpstart for Wireless.) C:\Program Files\Jumpstart\jswscapp.exe =>.Atheros Communications, Inc.
O4 - GS\CommonDesktop [Public]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files\ManyCam\ManyCam.exe =>.Superfluous.VisicomMedia
O4 - GS\CommonDesktop [Public]: MobiConnect.lnk . (...) C:\Program Files\MobiConnect\MobiConnect.exe
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Nitro Pro 8.lnk . (.Nitro PDF - Nitro Pro 8.) C:\Program Files\Nitro\Pro 8\NitroPDF.exe =>.Nitro PDF Software®
O4 - GS\Startup [Public]: Ralink Wireless Utility.lnk . (.Ralink Technology, Corp. - Ralink Wireless LAN Card Utility.) C:\Program Files\Ralink\Common\RaUI.exe =>.Ralink Technology Corporation®
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Lop.com/Domain Hijackers (12) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\..\{2EF583AC-4840-43C9-88B8-CE4C80E668B6}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\..\{3D6BB332-A870-48AF-8358-1210F1F3A3BD}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{44FDC2AD-20F2-4EC2-874F-154E3B793A34}: NameServer = 208.67.222.222,41.221.20.4
O17 - HKLM\System\CCS\Services\Tcpip\..\{4FCD83E8-9667-4863-A31B-B91F7416A1E6}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{55FF1682-D814-4285-8A59-11760D20341C}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{59129682-C464-4BEE-B2F3-65FC8FA08609}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\..\{793DEFE7-7CC9-4477-AECF-FA65109AD073}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{93840BFD-602D-4A6C-A81E-B0C84D1E0726}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{B67DFCF3-C04D-4398-A180-EEC0B281F4B2}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{C86BC538-96CF-46BB-BFCC-11C304BEA675}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{DFE741B9-A817-4993-8094-35E688DB06CD}: NameServer = 8.8.8.8 193.251.169.165
O17 - HKLM\System\CCS\Services\Tcpip\..\{44FDC2AD-20F2-4EC2-874F-154E3B793A34}: DhcpNameServer = 192.168.1.1

---\\ Extra protocols (23) - 2s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - عنصر تحكم ActiveX للفيديو المتدفق.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - ملحقات OLE32 لـ Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl®
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - عنصر تحكم ActiveX للفيديو المتدفق.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - عارض Microsoft (R) HTML.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Software installed (29) - 28s
O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} =>.Cisco Systems, Inc.
O42 - Logiciel: F.lux - (...) [HKCU] -- Flux
O42 - Logiciel: Golden Filter Premium 3.1 - (.Gsi Technologies.) [HKLM] -- Golden Filter Premium
O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Java 7 Update 17 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217017FF} =>.Oracle
O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc.
O42 - Logiciel: Jumpstart Installation Program - (.Atheros.) [HKLM] -- {B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13} =>.Atheros
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- {653C1B5A-3287-47B1-8613-0745D4E771C4} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4} =>.Kaspersky Lab
O42 - Logiciel: ManyCam 4.0.77 - (.Visicom Media Inc..) [HKLM] -- ManyCam =>.Superfluous.VisicomMedia
O42 - Logiciel: MobiConnect - (.Huawei Technologies Co.,Ltd.) [HKLM] -- MobiConnect =>.Huawei Technologies Co.,Ltd
O42 - Logiciel: Mozilla Firefox 6.0 (x86 ar) - (.Mozilla.) [HKLM] -- Mozilla Firefox 6.0 (x86 ar) =>.Mozilla Corporation®
O42 - Logiciel: Nitro Pro 8 - (.Nitro.) [HKLM] -- {C41DBC07-C9C2-4B8C-BD85-46ED6853AD6B} =>.Nitro
O42 - Logiciel: PL-2303 USB-to-Serial - (...) [HKLM] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}
O42 - Logiciel: Ralink RT2870 Wireless LAN Card - (.Ralink.) [HKLM] -- {28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D} =>.Ralink Technology Corporation®
O42 - Logiciel: Realtek AC'97 Audio - (...) [HKLM] -- {FB08F381-6533-4108-B7DD-039E11FBC27E}
O42 - Logiciel: TuneUp Utilities 2014 (en-US) - (.TuneUp Software.) [HKLM] -- {14C8CE46-C68C-461B-BCA9-E276A85851C6} =>.TuneUp Software
O42 - Logiciel: TuneUp Utilities Language Pack (en-US) - (.TuneUp Software.) [HKLM] -- {A6F5703D-A4B1-4857-9EDD-DC0ABBBB0D96} =>.TuneUp Software
O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM] -- WinPcapInst =>.Riverbed Technology, Inc.
O42 - Logiciel: WinRAR archiver - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH
O42 - Logiciel: Your Uninstaller! 7 - (.URSoft, Inc..) [HKLM] -- YU2010_is1 {2D52C7CF5E69A633AC3AED0E78F988DC}
O42 - Logiciel: حزمة التوافق لنظام Office 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-0401-0000-0000000FF1CE} =>.Microsoft Corporation

---\\ HKCU & HKLM Software Keys (117) - 28s
HKLM\SOFTWARE\AceTools
HKLM\SOFTWARE\Atheros
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\csc22
HKLM\SOFTWARE\CyberGhost
HKLM\SOFTWARE\Dolby
HKLM\SOFTWARE\Elcom
HKLM\SOFTWARE\ESET
HKLM\SOFTWARE\Flash Memory Toolkit
HKLM\SOFTWARE\Foxit Software
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\Huawei technologies
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\KasperskyLab
HKLM\SOFTWARE\Knowles
HKLM\SOFTWARE\LexmarkLaser
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\magnet
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\MeadCo
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nitro
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Piriform
HKLM\SOFTWARE\Prolific Technology INC
HKLM\SOFTWARE\Ralink
HKLM\SOFTWARE\RealNetworks
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\Safer Networking Limited
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\SSoftware Downloader
HKLM\SOFTWARE\Swearware
HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent
HKLM\SOFTWARE\TrendMicro
HKLM\SOFTWARE\TuneUp
HKLM\SOFTWARE\uTorrent Turbo Accelerator
HKLM\SOFTWARE\Visicom Media
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\Windows
HKLM\SOFTWARE\WinPcap
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\AceTools
HKCU\SOFTWARE\alexpage.de
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\BugSplat
HKCU\SOFTWARE\ChromeExtension
HKCU\SOFTWARE\CoreAAC
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Cygnus Solutions
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\Dz4-EvEr
HKCU\SOFTWARE\Elcom
HKCU\SOFTWARE\eviacam
HKCU\SOFTWARE\FileOpen
HKCU\SOFTWARE\FlashPeak
HKCU\SOFTWARE\Flux
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameHouse
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\INTEL
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\KGB Archiver
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\MFPT
HKCU\SOFTWARE\MGSoft
HKCU\SOFTWARE\Michael Herf
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MP_ALL
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NITRO
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\SeriousBit
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\SpeedBit
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\TechSmith
HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\URSoft
HKCU\SOFTWARE\uTorrent Turbo Accelerator
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visicom Media
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Monitored
HKCU\SOFTWARE\AppDataLow\Software\settings

---\\ Contents of the Common Files folders (222) - 39s
O43 - CFD: 27/10/2014 - [0] D -- C:\Program Files\A-FF Find and Mount
O43 - CFD: 19/01/2015 - [0] D -- C:\Program Files\Ace Translator
O43 - CFD: 03/02/2013 - [] D -- C:\Program Files\Adobe
O43 - CFD: 16/04/2016 - [] D -- C:\Program Files\AVG Web TuneUp
O43 - CFD: 06/05/2014 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Cisco
O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 09/02/2015 - [0] D -- C:\Program Files\CyberGhost 5
O43 - CFD: 23/10/2013 - [0] D -- C:\Program Files\DelThumbs
O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 07/02/2015 - [] D -- C:\Program Files\ESET
O43 - CFD: 12/04/2014 - [] D -- C:\Program Files\Foxit Software
O43 - CFD: 28/03/2013 - [] D -- C:\Program Files\GameTop.com
O43 - CFD: 05/04/2014 - [] RASHD -- C:\Program Files\Golden Filter Premium
O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 29/01/2015 - [] D -- C:\Program Files\GUM40A3.tmp =>.Google Inc®
O43 - CFD: 29/01/2015 - [] D -- C:\Program Files\GUM8E47.tmp =>.Google Inc®
O43 - CFD: 22/03/2013 - [] D -- C:\Program Files\GUMCAAF.tmp =>.Google Inc®
O43 - CFD: 04/11/2013 - [] D -- C:\Program Files\GUMF6DB.tmp =>.Google Inc®
O43 - CFD: 08/05/2016 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 08/08/2010 - [] D -- C:\Program Files\Intel
O43 - CFD: 01/10/2012 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 20/05/2014 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 04/01/2012 - [] D -- C:\Program Files\ITE
O43 - CFD: 15/03/2013 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files\Jumpstart
O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Kaspersky Lab =>.Kaspersky Lab®
O43 - CFD: 17/03/2014 - [] D -- C:\Program Files\Lexmark
O43 - CFD: 31/01/2015 - [0] D -- C:\Program Files\ma-config.com
O43 - CFD: 05/04/2013 - [0] D -- C:\Program Files\Magical Jelly Bean
O43 - CFD: 12/09/2014 - [0] D -- C:\Program Files\Malwarebytes Anti-Malware
O43 - CFD: 08/04/2014 - [] D -- C:\Program Files\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 09/01/2014 - [] D -- C:\Program Files\MeadCo Neptune
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 09/03/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 01/01/2014 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 10/05/2014 - [] D -- C:\Program Files\MobiConnect =>.HUAWEI Technologies Co., Ltd.®
O43 - CFD: 06/05/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 15/10/2013 - [] D -- C:\Program Files\MSECache
O43 - CFD: 13/05/2014 - [] D -- C:\Program Files\Nitro =>.Nitro PDF Software®
O43 - CFD: 16/04/2014 - [] D -- C:\Program Files\Participatory Culture Foundation
O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Ralink =>.Ralink Technology Corporation®
O43 - CFD: 20/07/2011 - [] D -- C:\Program Files\Real
O43 - CFD: 08/08/2010 - [] D -- C:\Program Files\Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 24/11/2014 - [] D -- C:\Program Files\SDA
O43 - CFD: 30/06/2014 - [0] RD -- C:\Program Files\Skype
O43 - CFD: 11/04/2014 - [0] D -- C:\Program Files\SlimBrowser
O43 - CFD: 23/10/2011 - [] D -- C:\Program Files\Spybot - Search & Destroy =>.Safer Networking Ltd.®
O43 - CFD: 28/01/2015 - [0] HD -- C:\Program Files\Temp
O43 - CFD: 08/09/2014 - [] D -- C:\Program Files\Tencent =>.Superfluous.Tencent
O43 - CFD: 11/04/2014 - [] D -- C:\Program Files\Tipard Studio
O43 - CFD: 10/01/2014 - [0] D -- C:\Program Files\TuneUp Utilities 2013
O43 - CFD: 13/01/2014 - [0] D -- C:\Program Files\TuneUp Utilities 2014
O43 - CFD: 18/03/2013 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 02/11/2013 - [0] D -- C:\Program Files\uTorrent Turbo Accelerator
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 11/10/2013 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 22/10/2011 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 15/07/2011 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 08/05/2016 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology, Inc.®
O43 - CFD: 20/09/2012 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 27/03/2013 - [] D -- C:\Program Files\Your Uninstaller! 7
O43 - CFD: 05/07/2014 - [0] D -- C:\Program Files\ZHPDiag
O43 - CFD: 19/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 18/03/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atheros
O43 - CFD: 06/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 19/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 03/08/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
O43 - CFD: 19/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 08/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 09/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 10/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MobiConnect
O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ralink Wireless
O43 - CFD: 29/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
O43 - CFD: 20/09/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 27/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7
O43 - CFD: 11/04/2014 - [] D -- C:\ProgramData\ABBYY
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 09/02/2015 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 10/02/2015 - [] D -- C:\ProgramData\AVG Security Toolbar
O43 - CFD: 16/04/2016 - [] D -- C:\ProgramData\AVG2015
O43 - CFD: 25/09/2011 - [] D -- C:\ProgramData\Avira
O43 - CFD: 27/01/2013 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 10/05/2014 - [] D -- C:\ProgramData\DataCardService
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\FileOpen
O43 - CFD: 16/03/2013 - [] D -- C:\ProgramData\Funny Bear Studio
O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 24/04/2014 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 28/08/2011 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 16/04/2016 - [] D -- C:\ProgramData\MFAData
O43 - CFD: 20/06/2014 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 06/02/2014 - [] D -- C:\ProgramData\MobiConnect
O43 - CFD: 15/03/2013 - [] D -- C:\ProgramData\Nitro
O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Ralink
O43 - CFD: 29/04/2016 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 22/10/2011 - [] D -- C:\ProgramData\Real
O43 - CFD: 07/05/2016 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 30/06/2014 - [] D -- C:\ProgramData\Skype
O43 - CFD: 23/10/2011 - [] D -- C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 29/08/2011 - [] D -- C:\ProgramData\Sun
O43 - CFD: 22/10/2011 - [] D -- C:\ProgramData\SuperMP3Download
O43 - CFD: 01/09/2012 - [] D -- C:\ProgramData\SystemSpeedBooster
O43 - CFD: 07/12/2011 - [] D -- C:\ProgramData\TechSmith
O43 - CFD: 07/05/2016 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 06/09/2014 - [] D -- C:\ProgramData\Tencent =>.Superfluous.Tencent
O43 - CFD: 10/01/2014 - [] D -- C:\ProgramData\TuneUp Software
O43 - CFD: 27/01/2013 - [0] SHD -- C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
O43 - CFD: 27/01/2013 - [0] HDC -- C:\ProgramData\{AB2D8F2E-F7AD-4446-A11A-50D846B2CF2A}
O43 - CFD: 10/01/2014 - [0] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 11/07/2011 - [0] SHD -- C:\ProgramData\سطح المكتب
O43 - CFD: 11/07/2011 - [0] SHD -- C:\ProgramData\قائمة ابدأ
O43 - CFD: 16/08/2011 - [] D -- C:\Program Files\Common Files\Akamai
O43 - CFD: 29/04/2016 - [] D -- C:\Program Files\Common Files\AV
O43 - CFD: 08/02/2012 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 01/04/2013 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 15/03/2013 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 15/10/2013 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 13/05/2014 - [] D -- C:\Program Files\Common Files\Nitro
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 03/06/2014 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 23/03/2013 - [] D -- C:\Program Files\Common Files\SpeedBit
O43 - CFD: 09/11/2011 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 13/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Adobe
O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Roaming\AVG2015
O43 - CFD: 26/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\DeviceDoctorSoftware
O43 - CFD: 08/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\DMCache
O43 - CFD: 24/10/2013 - [] D -- C:\Users\رياض\AppData\Roaming\Downloaded Installations
O43 - CFD: 18/04/2012 - [] D -- C:\Users\رياض\AppData\Roaming\driveridentifier
O43 - CFD: 22/07/2011 - [0] D -- C:\Users\رياض\AppData\Roaming\DRPSu
O43 - CFD: 24/09/2011 - [] D -- C:\Users\رياض\AppData\Roaming\ESET
O43 - CFD: 21/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Foxit Software
O43 - CFD: 16/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\gtk-2.0
O43 - CFD: 11/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Identities
O43 - CFD: 07/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\IDM
O43 - CFD: 29/04/2016 - [] D -- C:\Users\رياض\AppData\Roaming\InstallShield
O43 - CFD: 22/10/2011 - [] D -- C:\Users\رياض\AppData\Roaming\IObit
O43 - CFD: 22/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\KumaLLC
O43 - CFD: 13/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Macromedia
O43 - CFD: 24/04/2014 - [0] D -- C:\Users\رياض\AppData\Roaming\Malwarebytes
O43 - CFD: 08/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\رياض\AppData\Roaming\Media Center Programs
O43 - CFD: 25/04/2014 - [] SD -- C:\Users\رياض\AppData\Roaming\Microsoft
O43 - CFD: 06/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\Mozilla
O43 - CFD: 18/03/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Nitro
O43 - CFD: 02/04/2013 - [] D -- C:\Users\رياض\AppData\Roaming\Nitro PDF
O43 - CFD: 16/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Participatory Culture Foundation
O43 - CFD: 09/06/2012 - [] D -- C:\Users\رياض\AppData\Roaming\Passware
O43 - CFD: 18/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\PCF-VLC
O43 - CFD: 23/10/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Real
O43 - CFD: 22/10/2011 - [] D -- C:\Users\رياض\AppData\Roaming\RegistryKeys
O43 - CFD: 26/01/2012 - [] D -- C:\Users\رياض\AppData\Roaming\SeriousBit
O43 - CFD: 30/06/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Skype
O43 - CFD: 11/04/2014 - [] D -- C:\Users\رياض\AppData\Roaming\SlimBrowser
O43 - CFD: 07/09/2011 - [] D -- C:\Users\رياض\AppData\Roaming\SuperMP3Download
O43 - CFD: 01/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\SystemSpeedBooster
O43 - CFD: 08/09/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Tencent =>.Superfluous.Tencent
O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Roaming\TuneUp Software
O43 - CFD: 21/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\URSoft
O43 - CFD: 27/04/2012 - [] D -- C:\Users\رياض\AppData\Roaming\USBSafelyRemove
O43 - CFD: 02/11/2013 - [] D -- C:\Users\رياض\AppData\Roaming\uTorrent
O43 - CFD: 19/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\vlc
O43 - CFD: 11/07/2011 - [] D -- C:\Users\رياض\AppData\Roaming\WinRAR
O43 - CFD: 29/08/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Zbshareware Lab
O43 - CFD: 08/05/2016 - [] D -- C:\Users\رياض\AppData\Roaming\ZHP
O43 - CFD: 11/04/2014 - [] D -- C:\Users\رياض\AppData\Local\Adobe
O43 - CFD: 22/09/2012 - [0] D -- C:\Users\رياض\AppData\Local\Akamai
O43 - CFD: 11/07/2011 - [0] SHD -- C:\Users\رياض\AppData\Local\Application Data
O43 - CFD: 26/04/2012 - [] D -- C:\Users\رياض\AppData\Local\Apps
O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Local\Avg2015
O43 - CFD: 07/05/2016 - [] D -- C:\Users\رياض\AppData\Local\Diagnostics
O43 - CFD: 24/11/2014 - [] D -- C:\Users\رياض\AppData\Local\Downloaded Installations
O43 - CFD: 06/05/2016 - [] D -- C:\Users\رياض\AppData\Local\ElevatedDiagnostics
O43 - CFD: 26/05/2014 - [] SHD -- C:\Users\رياض\AppData\Local\EmieSiteList
O43 - CFD: 26/05/2014 - [] SHD -- C:\Users\رياض\AppData\Local\EmieUserList
O43 - CFD: 24/09/2011 - [] D -- C:\Users\رياض\AppData\Local\ESET
O43 - CFD: 30/06/2014 - [] D -- C:\Users\رياض\AppData\Local\Facebook
O43 - CFD: 29/04/2016 - [] D -- C:\Users\رياض\AppData\Local\Google
O43 - CFD: 11/07/2011 - [0] SHD -- C:\Users\رياض\AppData\Local\History
O43 - CFD: 21/09/2012 - [] D -- C:\Users\رياض\AppData\Local\KumaGames
O43 - CFD: 09/11/2014 - [] D -- C:\Users\رياض\AppData\Local\Macromedia
O43 - CFD: 07/12/2014 - [] D -- C:\Users\رياض\AppData\Local\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 09/02/2015 - [] D -- C:\Users\رياض\AppData\Local\MFAData
O43 - CFD: 04/07/2014 - [] D -- C:\Users\رياض\AppData\Local\Microsoft
O43 - CFD: 29/07/2011 - [] D -- C:\Users\رياض\AppData\Local\Microsoft Games
O43 - CFD: 10/05/2012 - [] D -- C:\Users\رياض\AppData\Local\Microsoft_Corporation
O43 - CFD: 27/03/2013 - [0] DC -- C:\Users\رياض\AppData\Local\MigWiz
O43 - CFD: 29/04/2016 - [] D -- C:\Users\رياض\AppData\Local\MiniService
O43 - CFD: 11/07/2011 - [] D -- C:\Users\رياض\AppData\Local\Mozilla
O43 - CFD: 24/01/2013 - [] D -- C:\Users\رياض\AppData\Local\Programs
O43 - CFD: 03/06/2014 - [] D -- C:\Users\رياض\AppData\Local\Skype
O43 - CFD: 07/12/2011 - [] D -- C:\Users\رياض\AppData\Local\TechSmith
O43 - CFD: 08/05/2016 - [] D -- C:\Users\رياض\AppData\Local\temp
O43 - CFD: 11/07/2011 - [0] SHD -- C:\Users\رياض\AppData\Local\Temporary Internet Files
O43 - CFD: 11/04/2014 - [] D -- C:\Users\رياض\AppData\Local\Tipard Studio
O43 - CFD: 25/07/2011 - [] D -- C:\Users\رياض\AppData\Local\VirtualStore
O43 - CFD: 24/01/2013 - [0] D -- C:\Users\رياض\AppData\Local\Programs\Common
O43 - CFD: 19/07/2011 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 22/05/2014 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 16/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux
O43 - CFD: 10/05/2012 - [0] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 03/08/2011 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 19/07/2011 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 08/09/2014 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QQPlayer
O43 - CFD: 22/05/2014 - [] RD -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 20/09/2012 - [] D -- C:\Users\رياض\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 1s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - مكتبة DLL الخاصة بملحق Shell للتخزين المحسّ.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - واجهة مستخدم ذاكرة التخزين المؤقت من جانب ا.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - امتداد Shell الخاص بالمشاركة.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ System Drivers List (190) - 52s
O58 - SDL:2014/07/05 01:04:15 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\000C0ADF.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/06 19:52:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\014612D8.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/06 23:46:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\045A587D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/30 18:36:44 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\05091CEF.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/29 21:12:39 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\07AD4839.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/30 14:14:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0A4419CD.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/22 22:20:34 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0D906E7E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/15 06:20:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0D9F54BE.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/11 05:39:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0F505691.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/24 13:39:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\100D58C4.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/31 22:11:16 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\121C68CA.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/13 15:30:20 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1407329E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/28 19:29:43 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\143E0261.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/01 17:42:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\166527E5.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/31 11:53:15 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\185528BB.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/20 20:06:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\187C5224.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/26 23:23:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\194B232F.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/04 05:03:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1972619E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/19 13:51:06 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1B701781.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/04 20:39:22 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1C8E042D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/16 23:23:39 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1CA37659.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/12 15:20:21 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1E3A777E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/11 22:04:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\1ED42145.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/26 07:33:07 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\20444DED.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/02 15:43:47 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\21A0337E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/18 22:30:36 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\26B137B9.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/04 12:55:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\27A7322E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/25 16:12:18 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2B693EDB.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/07 08:34:07 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2B9E4E83.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/09 19:02:59 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2C2E1DF7.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/09 22:21:12 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2DE7693B.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/10 08:28:11 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\2E69383D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/23 11:17:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\306044FE.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/02 20:56:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\34F61707.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/14 05:57:39 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\35AF4D68.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/31 21:27:02 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\381D516E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/09 05:55:10 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\38314630.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/22 15:16:58 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3A1D3883.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/30 14:11:42 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3C3C2C32.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/03 06:05:47 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\3D360A14.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/19 13:46:26 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\40522CA3.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/04/29 14:34:00 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\427A7AA6.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/13 04:09:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\42BE082A.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/22 10:36:55 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\48230029.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/23 22:26:33 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\48F64D48.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/30 21:09:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\49AD438E.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/22 23:15:23 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4A983B30.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/06 15:51:23 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4D0D73A1.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/04/29 22:29:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4D6675E7.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/08 15:56:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4E186041.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/02 17:17:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4F957855.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/13 10:08:16 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4FBF5CAC.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/03 16:21:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\4FFE5E45.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/17 14:07:32 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\54B56566.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/19 13:50:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\55525D95.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/08 11:45:43 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\56597BCE.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/27 16:07:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\569048FB.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/28 20:11:42 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\56B70A00.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/04 12:14:53 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\588C643F.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/04 17:32:15 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\58F572AD.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/06 12:41:34 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5951435B.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/04 16:38:12 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\59F45F12.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/05 13:55:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5A9C40B2.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/12 15:58:45 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5AC9246D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/16 09:47:24 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5D534F0A.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/30 11:43:27 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5ED30D06.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/24 06:57:28 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\5F7D458B.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/10 13:40:16 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\605856EE.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/24 12:03:05 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\618B2A7C.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/27 20:56:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\626B0A46.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/08 13:37:14 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\630D0E61.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/09 09:09:35 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\63997A67.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/11 07:13:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\65C62BD7.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/25 07:34:51 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\65F03B44.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/23 21:21:00 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\66617E1D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/10 15:17:47 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\66E535B8.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/04 15:39:26 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\66EB41A4.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/11 13:56:00 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6707683B.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/12 18:03:38 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\67A8466D.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/02 09:31:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\68761779.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/19 20:46:45 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\690300E9.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/07 19:00:41 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6A99598F.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/20 14:19:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6AAB5A6E.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/09 11:57:34 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\6BDE7961.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/03 13:21:44 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\70A93529.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/06/24 13:56:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\715A3720.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/03 20:44:20 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\71CE5FFC.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/28 11:22:48 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\71D22E64.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/08/09 05:42:17 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\73285CF3.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/05/23 08:43:06 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\740230D1.sys [107736] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/09/11 08:01:06 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\79DF4B2A.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/17 14:58:03 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7C3B3E77.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/03 08:42:54 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7C964022.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2014/07/17 21:27:01 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\7DEB7147.sys [110296] =>.Malwarebytes Corporation® (.Superfluous.Orphean)
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows®
O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows®
O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation
O58 - SDL:2005/03/16 07:23:54 RA . (.BIOSTAR Group - I/O Interface driver file.) -- C:\Windows\System32\drivers\BIOS.sys [13696]
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - برنامج تشغيل I/F التسلسلي لـ Brotehr (WDM)‎.) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2010/05/17 16:11:22 A . (.BIOSTAR Group - I/O Interface driver file.) -- C:\Windows\System32\drivers\BS_I2cIo.sys [6272]
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows®
O58 - SDL:2014/09/22 08:20:06 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [37928] =>.ESET, spol. s r.o.®
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation
O58 - SDL:2010/10/08 09:55:06 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [25856] =>.Huawei Tech. Co., Ltd.
O58 - SDL:2013/03/04 09:20:27 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [199168] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2013/03/21 02:55:42 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbwwan.sys [380416] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2010/09/26 11:09:22 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [19200] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2013/01/25 02:16:33 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [95232] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [77824] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [101248] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [70528] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2013/03/04 09:31:10 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [27776] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2013/04/10 09:45:19 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [207872] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2012/12/22 02:46:02 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [11904] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows®
O58 - SDL:2011/03/11 06:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows®
O58 - SDL:2012/08/02 01:23:14 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [97632] =>.Tonec Inc.®
O58 - SDL:2009/06/10 22:19:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [4756480] =>.Intel Corporation
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows®
O58 - SDL:2008/05/15 03:28:44 A . (.Atheros Communications, Inc. - Atheros Security NDIS 6.0 Filter Driver.) -- C:\Windows\System32\drivers\jswpslwf.sys [20384] =>.Atheros Communications, Inc.
O58 - SDL:2014/02/20 12:59:02 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [135264] =>.Kaspersky Lab®
O58 - SDL:2016/04/29 17:00:00 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x86].) -- C:\Windows\System32\drivers\klflt.sys [112136] =>.Kaspersky Lab®
O58 - SDL:2014/04/10 17:25:32 A . (.Kaspersky Lab ZAO - KLHK [fre_wlh_x86].) -- C:\Windows\System32\drivers\klhk.sys [34400] =>.Kaspersky Lab®
O58 - SDL:2016/04/29 17:00:01 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klif.sys [644808] =>.Kaspersky Lab®
O58 - SDL:2014/02/25 13:09:02 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\Windows\System32\drivers\klim6.sys [25696] =>.Kaspersky Lab®
O58 - SDL:2014/03/28 17:51:02 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x8.) -- C:\Windows\System32\drivers\klkbdflt.sys [24672] =>.Kaspersky Lab®
O58 - SDL:2013/08/08 17:10:58 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klmouflt.sys [25696] =>.Kaspersky Lab®
O58 - SDL:2013/04/12 15:34:48 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x86].) -- C:\Windows\System32\drivers\klpd.sys [14432] =>.Kaspersky Lab®
O58 - SDL:2014/03/25 16:26:04 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wxp_x86].) -- C:\Windows\System32\drivers\kltdi.sys [45024] =>.Kaspersky Lab®
O58 - SDL:2014/03/26 17:05:26 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wxp_x86].) -- C:\Windows\System32\drivers\kneps.sys [145888] =>.Kaspersky Lab®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows®
O58 - SDL:2013/12/06 14:37:48 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv.sys [29728] =>.Superfluous.VisicomMedia
O58 - SDL:2013/11/27 02:54:00 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\Windows\System32\drivers\mcvidrv.sys [40736] =>.Superfluous.VisicomMedia
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows®
O58 - SDL:2010/08/06 00:42:34 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [861696] =>.DiBcom SA
O58 - SDL:2010/12/28 19:55:20 A . (.Ralink Technology Corp. - Ralink 802.11n Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28u.sys [1174880] =>.Ralink Technology Corporation®
O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows®
O58 - SDL:2013/03/01 02:48:42 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.®
O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows®
O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:02:52 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [139776] =>.Realtek Corporation
O58 - SDL:2009/06/18 20:45:02 A . (.Realtek Semiconductor Corp. - Realtek AC'97 Audio Driver (WDM).) -- C:\Windows\System32\drivers\RTKVAC.SYS [4172832] =>.Realtek Semiconductor Corp®
O58 - SDL:2012/02/21 20:25:02 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3952680] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/07/13 23:02:52 A . (.Realtek Semiconductor Corporation - Realtek 10/100 NDIS 5.1 Driver.) -- C:\Windows\System32\drivers\Rtnicxp.sys [43008] =>.Realtek Semiconductor Corporation
O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2003/07/16 13:27:40 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\Windows\System32\drivers\ser2pl.sys [43264] =>.Prolific Technology Inc.
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:40:22 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [35288] =>.OpenVPN Technologies, Inc.®
O58 - SDL:2016/05/08 05:32:27 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [24688] =>.Adlice®
O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows®
O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ File Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - ‎‎مشغل الأداة الإضافية لعارض الأحداث.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - ‎‎محرر التسجيل.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Start Menu Internet (8) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.

---\\ Search Browser Infection (3) - 3s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {95B7759C-8C7F-4BF1-B163-73684A933233} [DefaultScope] - (AVG Secure Search) - http://mysearch.avg.com/ =>PUP.Optional.MyWebSearch
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/

---\\ Search Svchost Services (33) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - خدمة نشر شهادة البطاقة الذكية لـ Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - خدمة نشر شهادة البطاقة الذكية لـ Microsoft.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمة الخادم.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - عميل نهج المجموعة.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - خدمة صوت Windows.) -- C:\Windows\System32\audiosrv.dll [473600] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - إدارة الطلب التلقائي للوصول عن بُعد.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - خدمة الإعلام بأحداث النظام (SENS).) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [521216] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - عامل Windows Update.) -- C:\Windows\System32\wuaueng.dll [1973728] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - خدمة النقل الذكي في الخلفية.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمات Windows Sh.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي الخاصة بخدمة تسجي.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - خدمة معلومات التطبيقات.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - خدمة اكتشاف iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - خدمة جدولة فئات تعدد الوسائط.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - تقارير المشاكل وحلولها.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - خدمة جدولة المهام.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - خدمة تكوين سطح المكتب البعيد.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمة مستعرض الكم.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - مكتبة الارتباط الديناميكي لخدمات نُسق Windo.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - خدمة BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - خدمة تثبت البرامج.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation

---\\ Search Tracing Registry Key (2) - 8s
HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASAPI32 =>.Superfluous.Paretologic
HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASMANCS =>.Superfluous.Paretologic

---\\ Additional Scan (O88) (14) - 0s
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ManyCam =>.Superfluous.VisicomMedia
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ManyCam =>.Superfluous.VisicomMedia
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent
HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia
C:\ProgramData\Tencent =>.Superfluous.Tencent
C:\Users\رياض\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia
C:\Users\رياض\AppData\Roaming\Tencent =>.Superfluous.Tencent
C:\Users\رياض\AppData\Local\ManyCam =>.Superfluous.VisicomMedia
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} =>PUP.Optional.MyWebSearch
HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASAPI32 =>.Superfluous.Paretologic
HKLM\SOFTWARE\Microsoft\Tracing\DriverCure_RASMANCS =>.Superfluous.Paretologic

---\\ Summary of the elements found (6) - 0s
http://www.nicolascoolman.com/forum/post33405.html#p33405 =>.Superfluous.VisicomMedia
http://www.nicolascoolman.info/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect
http://www.nicolascoolman.fr/?p=368 =>.Superfluous.Tencent
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Orphean
http://www.nicolascoolman.fr/?p=220 =>PUP.Optional.MyWebSearch
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Paretologic

~ End of the scan, 16275 items in 00h06mn59s (885)(0)

Publicité


Signaler le contenu de ce document

Publicité