~ ZHPDiag v2015.10.2.147 Par Nicolas Coolman (2015/10/02) ~ Démarré par imad eddine (Administrator) (2015/10/02 21:34:25) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\imad eddine\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\imad eddine\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8 Pro, 64-bit (Build 9200) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v45.0.2454.101 MFIE: Mozilla Firefox 41.0.1 (x86 fr) v41.0.1 MSIE: Internet Explorer v10.0.9200.16384 ---\\ Informations sur les produits Windows (3) - 4s ~ Windows Server License Manager Script : OK System - VBScript Engine not found Windows Automatic Updates : OK ---\\ Logiciels de protection (3) - 3s Kaspersky Internet Security v15.0.0.463 Malwarebytes Anti-Malware version 2.1.8.1057 Windows Defender W8 (Deactivate) ---\\ Surveillance de Logiciels (2) - 3s Adobe Flash Player 19 NPAPI Adobe Reader 9.3 ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8349.648 MB (50% free) ~ System Restore: Activé (Enable) ~ System drive C: has 374 GB free of 953 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: INTEL ~ User Name: imad eddine ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 374 GB free of 953 GB (System) ~ Drive D: has 666 GB free of 953 GB ~ Drive E: has 216 GB free of 953 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.928791755FDDEA721B053535EF84FA17] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2380440] © [MD5.3A6209AC494296C24C2065CB4392B5F4] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [51712] © [MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [132608] © [MD5.3DA7E6053DB9BE3EADC70CE20B1FB92B] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2246656] © [MD5.93AB226C07A9789B2EC7B41F73602F76] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [516608] © [MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [273408] © [MD5.4D10F9BB8243BCBF39774BF4D6B0D108] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [604672] © [MD5.6356C0630362CC80E4318A672FF66804] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [461312] © [MD5.65AA2DE8787146679BB8A7D14BFFB6A3] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [18944] © [MD5.9E975BDC89C83900B2C534C4E1B018F8] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [561152] © [MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [25840] © [MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [108544] © [MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [174080] © [MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [118784] © [MD5.8D6810577E9C4F56DCB8E9BACAC7287B] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [71168] © [MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [112640] © [MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [145920] © [MD5.1EEAA5A62E8C49DDF58798F06F78BFFA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\Windows\System32\drivers\MRxSmb.sys [368128] © [MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [331776] © [MD5.4A7EEA9C4AD5CBFDA3C0E5B821C99CAD] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1934064] © [MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [105984] © [MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [124928] © [MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\Windows\System32\drivers\rdpdr.sys [179712] © [MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [117248] © [MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [332016] © ---\\ Processus lancés (59) - 6s [MD5.7B9B5B31CB5BF1C023F7A0EDC85B9EF0] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 355.9.) -- C:\Windows\system32\nvvsvc.exe [937776] [PID.972] © [MD5.359D8117AC40C673651680E7817CEDE9] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [410744] [PID.1000] © [MD5.8218F1FCF946D51266B7ED39F3A52312] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1250936] [PID.1280] © [MD5.7B9B5B31CB5BF1C023F7A0EDC85B9EF0] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 355.9.) -- C:\Windows\system32\nvvsvc.exe [937776] [PID.1288] © [MD5.7DAA33AAEE034AE62EF631A3F13A027B] - (.Creative Technology Ltd - Creative Audio Service.) -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720] [PID.1460] © [MD5.650D03E40F93FAE323CB841F80368E5C] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [60744] [PID.2028] © [MD5.058734C95991F6BEBF3D3075B8776234] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [233552] [PID.964] © [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.916] © [MD5.1E09B83B6DF400E50C6C79D6DB9AD6E4] - (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [388824] [PID.1568] © [MD5.21B28A888711F30582142A031D4E0CCE] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [798424] [PID.1616] © [MD5.53B8D9B905223CBB6317B0FFF61D155A] - (...) -- C:\ProgramData\Djezzy connect\OnlineUpdate\ouc.exe [651856] [PID.2108] [MD5.B5581646636759D0DAFA8B008881C079] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE [163840] [PID.2124] © [MD5.1E345F2A2D95DA3190596E691CDE9342] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE [126464] [PID.2156] © [MD5.21931B9C5FDE6087F47F710AC1BE16E9] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192] [PID.2176] © [MD5.C08814014290BF3AD581C0E9C5919269] - (.Copyright (C) 2014 - DCSHOST.) -- C:\ProgramData\DatacardService\HWDeviceService64.exe [351824] [PID.2236] [MD5.72DD6225BA6055472522195F96473639] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504] [PID.2528] © [MD5.E14F52B60581EE71849CD45186892046] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568] [PID.2612] © [MD5.D358E077A0A05D9B12DA22D137EE8464] - (.Microsoft Corp. - Microsoft SeaPort Search Enhancement Broker.) -- C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [226656] [PID.2644] © [MD5.E8400E36F5D606DE8563EC3EA010E3F5] - (.Rsupport corporation - MobizenTray.) -- C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenTray.exe [788752] [PID.2696] [MD5.2AA61246A5B813C1B12BCCFAA6F23DD8] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416] [PID.2764] © [MD5.05D6657A9CCFD269D05D41BFFDCE9498] - (.VIA Technologies, Inc. - Service binary.) -- C:\Windows\system32\viakaraokesrv.exe [27760] [PID.2916] © [MD5.F13B73E932CACDDE5ED825BDF7AA9637] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [437976] [PID.2952] © [MD5.2562943B90AFA9829097FB4274276D1D] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [86744] [PID.688] © [MD5.05A869D1B12B08B5601487CA534B5021] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [359128] [PID.2520] © [MD5.41FAE6618768DC93D98DDAF3F8282D3E] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [906432] [PID.3024] © [MD5.5591F0BB3713AB911D4021124D1FDB54] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [14407384] [PID.3600] [MD5.A446F3898F1CE9989ACB3F6E758E179B] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avpui.exe [192160] [PID.3988] © [MD5.6BFDC6964D6C579700D16BBF4E6B9175] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [238160] [PID.3872] © [MD5.690EB331346D7ADFDA18E50042DEA4B4] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984] [PID.3252] © [MD5.1EDDF0810028E44C1B385B18B0291F48] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2447992] [PID.4908] © [MD5.463C40BFC0FB8FF59049E2CA78695A40] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872] [PID.5004] © [MD5.8C906888992D9199404FBAAA34BE9696] - (.Rsupport Corporation - Mobizen service.) -- C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe [3353360] [PID.3632] [MD5.E8400E36F5D606DE8563EC3EA010E3F5] - (.Rsupport corporation - MobizenTray.) -- C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenTray.exe [788752] [PID.4280] [MD5.F5607BA615A64C61E866B5D671E3AAEB] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7548024] [PID.2212] © [MD5.4ADFD5C3B2371B4FEB1381E63BF71638] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [21934200] [PID.5368] © [MD5.8BB7EC71029066CF86B2E674A68A816F] - (...) -- C:\Program Files (x86)\RSUPPORT\MobizenService\dat\adb.exe [1016104] [PID.5440] [MD5.B12E97C2BE89CBBC1718D59062D7E388] - (.Copyright © 2012 - DUC40.) -- C:\Program Files (x86)\No-IP\DUC40.exe [346624] [PID.3184] [MD5.69ECEA647BABA2D07D76452AF4D1FD1B] - (.Mobo, Inc. - MoboDeviceService.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe [68872] [PID.5304] [MD5.669A87D4C14DCD42DA9442DA70FBA25F] - (.VMware, Inc. - VMware Workstation VMX.) -- C:\Program Files (x86)\VMware\VMware Workstation\x64\vmware-vmx.exe [19761880] [PID.6944] © [MD5.98F101E69EA59EFAE909EEDD16E434B5] - (.Gsi Technologies - .) -- C:\Program Files (x86)\Golden Filter Premium\GFPro.exe [1650688] [PID.6256] [MD5.E0E4A1F81A7D69C595A8A9DDAD084C19] - (.Nero AG - NeroUpdate.) -- C:\Program Files (x86)\Nero\Update\NASvc.exe [769432] [PID.4160] © [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [269848] [PID.4556] © [MD5.C8A2DE7077F97D4BCE1A44317B49EF41] - (.Oracle Corporation - VirtualBox Interface.) -- C:\Program Files\Oracle\VirtualBox\VBoxSVC.exe [3559696] [PID.5460] © [MD5.A6820864FB4C1E1FF89EC3B3DD01880E] - (.VMware, Inc. - VMware VPrint Proxy.) -- C:\Program Files (x86)\VMware\VMware Workstation\vprintproxy.exe [19160] [PID.6872] © [MD5.001C8273B6A21A4B8DA10CDCE833EC4A] - (.Gsi Technologies - .) -- C:\Windows\SysWOW64\mssvr32.exe [77824] [PID.6276] [MD5.4671BC1C97506FF54B9A80444AF9CCF5] - (.Mobo - Provide Data Support For MoboMarket.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceProxy.exe [2008328] [PID.3744] [MD5.64B7BD1A715DE947BE3E72E8FAB0D77C] - (.Fuzhou BoYuan Wireless Websoft Technology Co., Ltd. - iOS Device Communication Manager.) -- C:\Program Files (x86)\Mobo\Service\IDCM32.exe [2632968] [PID.4948] [MD5.446B56461D4B04AE4231CD5E29D2C541] - (.Oracle Corporation - Oracle VM VirtualBox Manager.) -- C:\Program Files\Oracle\VirtualBox\VirtualBox.exe [8154896] [PID.8048] © [MD5.547E975DC8F8EDEBE832009EC04A37B9] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3907152] [PID.2972] © [MD5.601C233CDC2422AD7244D423ED8DFB50] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [377000] [PID.10744] © [MD5.79E195C249126C970C90CCD5EE3882C2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [278184] [PID.10600] © [MD5.79E195C249126C970C90CCD5EE3882C2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [278184] [PID.9328] © [MD5.79E195C249126C970C90CCD5EE3882C2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [278184] [PID.9400] © [MD5.79E195C249126C970C90CCD5EE3882C2] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [278184] [PID.6832] © [MD5.ED51CB30657A6C3217A03D1628FB9038] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe [3425992] [PID.10740] © [MD5.ED51CB30657A6C3217A03D1628FB9038] - (.Adobe Systems, Inc. - Adobe Flash Player 19.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe [3425992] [PID.8804] © [MD5.48FFC67BB5124B2726EE088B2DFCE67F] - (...) -- C:\Program Files (x86)\ProgDVB\winlirc.exe [38400] [PID.7220] [MD5.1A2C008775B2B9ABA3B906B3A8DDF831] - (.Prog - ProgDvbNet.) -- C:\Program Files (x86)\ProgDVB\ProgDvbNet.exe [1684928] [PID.9132] [MD5.DD7DAC8A6913EB893372091E96871F95] - (.Nicolas Coolman - ZHPDiag.) -- D:\Programs\ZHPDiag3.exe [1940992] [PID.11180] © ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (10) - 1s P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class P2 - EXT FILE: (...) -- C:\Users\imad eddine\AppData\Roaming\Mozilla\Firefox\Profiles\q6iqk5rn.default\extensions\useragentoverrider@qixinglu.com.xpi P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\dlsecuretb.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM integration.) -- C:\Users\imad eddine\AppData\Roaming\Mozilla\Firefox\Profiles\q6iqk5rn.default\extensions\mozilla_cc2@internetdownloadmanager.com © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll © P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll © P2 - FPN: [HKLM] [@kaspersky.com/content_blocker] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com © P2 - FPN: [HKLM] [@kaspersky.com/online_banking] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com © P2 - FPN: [HKLM] [@kaspersky.com/virtual_keyboard] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (10) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll © O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll © O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer32.dll © O2 - BHO: ContentBlockerBrowserHelperObject [64Bits] - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} . (.Kaspersky Lab ZAO - Content Blocker Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll © O2 - BHO: VirtualKeyboardBrowserHelperObject [64Bits] - {73455575-E40C-433C-9784-C78DC7761455} . (.Kaspersky Lab ZAO - Virtual Keyboard Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll © O2 - BHO: Safe Money Plugin [64Bits] - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} . (.Kaspersky Lab ZAO - Safe Money Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll © O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL © O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O2 - BHO: link filter bho [64Bits] - {E33CF602-D945-461A-83F0-819F76A199F8} . (.Kaspersky Lab ZAO - URL Advisor Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll © O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.IvoSoft - Customizations for the title bar and status.) -- C:\Program Files\Classic Shell\ClassicIEDLL_32.dll © ---\\ Applications lancées au démarrage du système (42) - 1s O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe © O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe © O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKLM\..\Run: [RunDLLEntry] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKLM\..\Run: [CNAP2 Launcher] . (.CANON INC. - Canon Advanced Printing Technology Printer.) -- C:\Windows\system32\spool\DRIVERS\x64\3\CNAP2LAK.EXE © O4 - HKLM\..\Run: [THXCfg64] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe © O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe © O4 - HKCU\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\imad eddine\AppData\Roaming\BitTorrent\BitTorrent.exe O4 - HKCU\..\Run: [NoIPDUCv4] . (.Copyright © 2012 - DUC40.) -- C:\Program Files (x86)\No-IP\DUC40.exe O4 - HKCU\..\Run: [EPSON SX100 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE © O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe © O4 - HKCU\..\Run: [AutoStartNPSAgent] . (.Samsung Electronics Co., Ltd. - NPSAgent.) -- C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe © O4 - HKCU\..\Run: [xwidget] C:\SkinPack\RocketDock\Xwidget\XWidget.exe (.not file.) O4 - HKCU\..\Run: [XLaunchpad] C:\SkinPack\RocketDock\XLaunchPad\XLaunchpad.exe (.not file.) O4 - HKCU\..\Run: [AirDroid 3] . (.Sand Studio - AirDroid 3.) -- C:\Program Files (x86)\AirDroid\AirDroid.exe © O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe © O4 - HKCU\..\Run: [ProgLauncher] . (.Copyright (C) 2012 - ProgLauncher Application.) -- C:\Program Files (x86)\ProgDVB\ProgLauncher.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe © O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe © O4 - HKLM\..\Wow6432Node\Run: [GoldenFilterPro] . (.Gsi Technologies - .) -- C:\Program Files (x86)\Golden Filter Premium\GFPro.exe O4 - HKLM\..\Wow6432Node\Run: [vmware-tray.exe] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe © O4 - HKLM\..\Wow6432Node\Run: [UpdReg] . (.Creative Technology Ltd. - Creative UpdReg.) -- C:\Windows\Updreg.EXE © O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe © O4 - HKLM\..\Wow6432Node\Run: [HDAudDeck] . (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe © O4 - HKLM\..\Wow6432Node\Run: [THX Audio Control Panel] . (.Creative Technology Ltd - THXAudio.) -- C:\Program Files (x86)\Creative\Sound Blaster X-Fi MB 2\THXAudioCP\THXAudio.exe © O4 - HKLM\..\Wow6432Node\Run: [VolPanel] . (.Creative Technology Ltd - VolPanlu.exe.) -- C:\Program Files (x86)\Creative\Sound Blaster Panel\VolPanlu.exe © O4 - HKLM\..\Wow6432Node\Run: [NWEReboot] (Orphean) O4 - HKLM\..\Wow6432Node\Run: [NeroFilterCheck] . (.Ahead Software Gmbh - NeroCheck.) -- C:\Windows\SysWOW64\NeroCheck.exe O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe © O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe © O4 - HKLM\..\Wow6432Node\Run: [NPSStartup] (Orphean) O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe © O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\imad eddine\AppData\Roaming\BitTorrent\BitTorrent.exe O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [NoIPDUCv4] . (.Copyright © 2012 - DUC40.) -- C:\Program Files (x86)\No-IP\DUC40.exe O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [EPSON SX100 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE © O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe © O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [AutoStartNPSAgent] . (.Samsung Electronics Co., Ltd. - NPSAgent.) -- C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe © O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [xwidget] C:\SkinPack\RocketDock\Xwidget\XWidget.exe (.not file.) O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [XLaunchpad] C:\SkinPack\RocketDock\XLaunchPad\XLaunchpad.exe (.not file.) O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [AirDroid 3] . (.Sand Studio - AirDroid 3.) -- C:\Program Files (x86)\AirDroid\AirDroid.exe © O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe © O4 - HKUS\S-1-5-21-3622146361-51898712-2795488063-1001\..\Run: [ProgLauncher] . (.Copyright (C) 2012 - ProgLauncher Application.) -- C:\Program Files (x86)\ProgDVB\ProgLauncher.exe ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 77.88.8.7,77.88.8.3 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 0.0.0.0 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 77.88.8.7,77.88.8.3 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 0.0.0.0 ---\\ Protocole additionnel (26) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (...) -- C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (.not file.) O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (...) -- C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (.not file.) O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (30) - 0s O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe © O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe © O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc. - BlueStacks Service.) - C:\Program Files (x86)\BlueStacks\HD-Service.exe © O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe © O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe © O23 - Service: Creative Audio Service (CTAudSvcService) . (.Creative Technology Ltd - Creative Audio Service.) - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe © O23 - Service: Djezzy connect. OUC (Djezzy connect. RunOuc) . (...) - C:\Program Files (x86)\Djezzy connect\UpdateDog\ouc.exe O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE © O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE © O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: HWDeviceService64.exe (HWDeviceService64.exe) . (.Copyright (C) 2014 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService64.exe O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\system32\igfxCUIService.exe © O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © O23 - Service: Mobizen plugin (Mobizen plugin) . (.Rsupport Corporation - Mobizen service.) - C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe O23 - Service: MoboDeviceService (MoboDeviceService) . (.Mobo, Inc. - MoboDeviceService.) - C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe O23 - Service: @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files (x86)\Nero\Update\NASvc.exe © O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 355.9.) - C:\Windows\system32\nvvsvc.exe © O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe © O23 - Service: @oem51.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixe (VIAKaraokeService) . (.VIA Technologies, Inc. - Service binary.) - C:\Windows\system32\viakaraokesrv.exe © O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe © O23 - Service: VMware DHCP Service (VMnetDHCP) . (...) - C:\Windows\System32\vmnetdhcp.exe (.not file.) O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe © O23 - Service: VMware NAT Service (VMware NAT Service) . (...) - C:\Windows\System32\vmnat.exe (.not file.) O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe ---\\ Tâches planifiées en automatique (10) - 4s [MD5.140237BA8BD1AAC665893A4A456ABDD9] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3732480] =>HackTool.AutoKMS [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] © [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] © [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] © [MD5.C08A5FCEFA5EE421E6146A8F674D1A2A] [APT] [Lenovo\Lenovo Customer Feedback Program 64 35] (.Lenovo.) -- C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [16832] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1084] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1088] © O39 - APT: AutoKMS - (.CODYQX4.) -- C:\Windows\System32\Tasks\AutoKMS [3758] =>HackTool.AutoKMS O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3824] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4060] © ---\\ Logiciels installés (201) - 11s O42 - Logiciel: Canon LBP6000/LBP6018 - (...) [HKLM][64Bits] -- Canon LBP6000/LBP6018 O42 - Logiciel: Codec 8.4a - (...) [HKLM][64Bits] -- Codec_is1 O42 - Logiciel: EPSON SX100 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON SX100 Series © O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {0D94F75A-0EA6-4951-B3AF-B145FA9E05C6} © O42 - Logiciel: PSPPro64 - (.Corel Corporation.) [HKLM][64Bits] -- {1551A29F-B1B0-43CA-90B5-E6E5186F683E} © O42 - Logiciel: Oracle VM VirtualBox 4.2.18 - (.Oracle Corporation.) [HKLM][64Bits] -- {230C9C86-26A9-437F-8152-34D5F4C3F680} © O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {2ABBBD91-91E5-4AD7-929A-FE15D1DC0576} © O42 - Logiciel: CorelDRAW Graphics Suite X5 - Windows Shell Extension 64 Bit - (.Corel Corporation.) [HKLM][64Bits] -- {66C10F29-31F0-4A9B-B2CF-465F488AE086} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} © O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {840C85B7-D3D6-4143-9AF9-DAE80FD54CFC} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: NVIDIA Pilote 3D Vision 355.98 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision © O42 - Logiciel: NVIDIA Pilote graphique 355.98 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver © O42 - Logiciel: NVIDIA GeForce Experience 2.5.14.5 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience © O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB © O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX © O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {BDD99690-3541-4619-9D2A-3CDDB3E15F9E} © O42 - Logiciel: Star(dvb) Codecs V3.4.5 - (.Stardvb, Inc..) [HKLM][64Bits] -- {CA1B9ABE-0C40-43E0-8965-0DA206D56EBD}_is1 O42 - Logiciel: Share64 - (.Corel Corporation.) [HKLM][64Bits] -- {D000D1C0-6E80-4FC4-BE4E-A88872C0616F} © O42 - Logiciel: Active GIF Creator 3.1 - (...) [HKLM][64Bits] -- Active GIF Creator 3.1 O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: AirDroid 3.1.4.1 - (.Sand Studio.) [HKLM][64Bits] -- AirDroid © O42 - Logiciel: Allok 3GP PSP MP4 iPod Video Converter 4.7.1119 - (.Allok Soft .Inc.) [HKLM][64Bits] -- Allok 3GP PSP MP4 iPod Video Converter_is1 O42 - Logiciel: MoboMarket For Android - (.Mobo.) [HKLM][64Bits] -- aMoboMarket O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks App Player © O42 - Logiciel: CodeSite Express 5.0 - (.Raize Software, Inc..) [HKLM][64Bits] -- CodeSite Express 5.0 O42 - Logiciel: CollabNet Subversion Client 1.6.17 - (.CollabNet.) [HKLM][64Bits] -- CollabNet Subversion Client © O42 - Logiciel: CoreAVC Professional Edition (remove only) - (...) [HKLM][64Bits] -- CoreAVC Professional Edition O42 - Logiciel: Djezzy connect - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Djezzy connect © O42 - Logiciel: DVB Dream version 1.5e - (...) [HKLM][64Bits] -- DVB Dream_is1 O42 - Logiciel: EPSON Scan - (...) [HKLM][64Bits] -- EPSON Scanner O42 - Logiciel: FL Studio 11 - (.Image-Line.) [HKLM][64Bits] -- FL Studio 11 © O42 - Logiciel: FlowStone FL 3.0 - (...) [HKLM][64Bits] -- FlowStone O42 - Logiciel: FLV to AVI MPEG WMV 3GP MP4 iPod Converter 3.9.1108 - (.Aone Software.) [HKLM][64Bits] -- FLV to AVI MPEG WMV 3GP MP4 iPod Converter_is1 © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM][64Bits] -- IL Download Manager © O42 - Logiciel: IL Shared Libraries - (.Image-Line.) [HKLM][64Bits] -- IL Shared Libraries © O42 - Logiciel: MoboMarket For iOS - (.Mobo.) [HKLM][64Bits] -- iMoboMarket O42 - Logiciel: VIA Gestionnaire de périphériques de plate-forme - (.VIA Technologies, Inc..) [HKLM][64Bits] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} © O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} © O42 - Logiciel: Easy Tune 6 B12.0210.2 - (.GIGABYTE.) [HKLM][64Bits] -- InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA} © O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} © O42 - Logiciel: AutoGreen B12.0206.1 - (.GIGABYTE.) [HKLM][64Bits] -- InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345} © O42 - Logiciel: Samsung New PC Studio - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{F193FC0E-9E18-40FC-A974-509A1BDD240A} © O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4} © O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager © O42 - Logiciel: K-Lite Codec Pack 10.4.0 Full - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: L'Exode d'Abe - (...) [HKLM][64Bits] -- L'Exode d'Abe O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: Metal Slug Complete PC 1.0 - (.SNK PLAYMORE.) [HKLM][64Bits] -- Metal Slug Complete PC O42 - Logiciel: Microsoft Document Explorer 2008 - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Document Explorer 2008 © O42 - Logiciel: Module linguistique Microsoft Document Explorer 2008 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Document Explorer 2008 Language Pack - FRA © O42 - Logiciel: Mozilla Firefox 41.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.1 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: No-IP DUC - (.Vitalwerks Internet Solutions LLC.) [HKLM][64Bits] -- NoIPDUC O42 - Logiciel: Notepad++ - (...) [HKLM][64Bits] -- Notepad++ O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo © O42 - Logiciel: Paltalk Messenger 11.6 - (.AVM Software Inc..) [HKLM][64Bits] -- Paltalk Messenger O42 - Logiciel: proDAD Route 4.0 - (.proDAD GmbH.) [HKLM][64Bits] -- proDAD-HeroglyphRoute-4.0 © O42 - Logiciel: proDAD Mercalli 2.0 - (.proDAD GmbH.) [HKLM][64Bits] -- proDAD-Mercalli-2.0 © O42 - Logiciel: proDAD Vitascene 2.0 - (.proDAD GmbH.) [HKLM][64Bits] -- proDAD-Vitascene-2.0 © O42 - Logiciel: ProgDVB - (.Prog.) [HKLM][64Bits] -- ProgDVB O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club © O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM][64Bits] -- SHAREit_is1 © O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam © O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer © O42 - Logiciel: Pro Evolution Soccer 2016 - (...) [HKLM][64Bits] -- UHJvRXZvbHV0aW9uU29jY2VyMjAxNg==_is1 O42 - Logiciel: UltraISO Premium V9.53 - (...) [HKLM][64Bits] -- UltraISO_is1 O42 - Logiciel: WRC 4 FIA World Rally Championship - (...) [HKLM][64Bits] -- V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1 O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: VMware Workstation - (.VMware, Inc.) [HKLM][64Bits] -- VMware_Workstation © O42 - Logiciel: Windows Media Encoder 9 Series - (...) [HKLM][64Bits] -- Windows Media Encoder 9 O42 - Logiciel: WinRAR 5.10 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: WinSCP 5.5.4 - (.Martin Prikryl.) [HKLM][64Bits] -- winscp3_is1 © O42 - Logiciel: WRC Powerslide - (.CODEX.) [HKLM][64Bits] -- WRC Powerslide_is1 O42 - Logiciel: Your Uninstaller! 2010 - (.URSoft, Inc..) [HKLM][64Bits] -- YU2010_is1 O42 - Logiciel: Corel PaintShop Pro X5 - (.Corel Corporation.) [HKLM][64Bits] -- _{1563C6F2-E9B5-42DE-9EA6-207C9A8C2DFB} © O42 - Logiciel: Corel VideoStudio Ultimate X5 - (.Corel Corporation.) [HKLM][64Bits] -- _{1A1BD41E-9854-4957-8959-F9559A8862A7} © O42 - Logiciel: Corel Graphics - Windows Shell Extension - (.Corel Corporation.) [HKLM][64Bits] -- _{51DD370C-6690-424E-9674-5F14468B323F} © O42 - Logiciel: CorelDRAW(R) Graphics Suite X5 - (.Corel Corporation.) [HKLM][64Bits] -- _{CE54DCE1-E00A-4D91-ACB9-A2D916C24051} © O42 - Logiciel: tools-freebsd - (.VMware, Inc..) [HKLM][64Bits] -- {003BFBBD-6C67-419E-A24D-0DCAFC3A5249} © O42 - Logiciel: FastReport 4 Embarcadero edition - (.FastReports.) [HKLM][64Bits] -- {005A77C2-A389-446a-A6EB-00FFF871FF4B} O42 - Logiciel: Nero Kwik Media - (.Nero AG.) [HKLM][64Bits] -- {052A1E34-A54B-458C-A4E3-24C3E054754A} © O42 - Logiciel: Nero Express Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0708FF30-78C0-47B0-81F0-C84604DC769C} © O42 - Logiciel: Mortal Kombat Komplete Edition version 5.1 - (.Black_Box.) [HKLM][64Bits] -- {09D919A4-6EB8-472E-95AD-FEC958317A8E}_is1 © O42 - Logiciel: Nero RescueAgent Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0B311221-05A5-4766-8D03-7A6446794156} © O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {0E4630AF-0AB7-440E-A978-1A78FC4F43B9} © O42 - Logiciel: Setup - (.Nom de votre société.) [HKLM][64Bits] -- {15002A1B-C1E7-4E91-A3EC-5502BF924A32} O42 - Logiciel: Corel PaintShop Pro X5 - (.Corel Corporation.) [HKLM][64Bits] -- {15180A90-1FC0-47E4-A150-3AECEF07B3B6} © O42 - Logiciel: PSPPContent - (.Corel Corporation.) [HKLM][64Bits] -- {1522E36C-3739-41E4-8CD3-A4AFEA70086A} © O42 - Logiciel: PSPPHelp - (.Corel Corporation.) [HKLM][64Bits] -- {153DD765-C8C6-4893-8CEF-D965351D82EC} © O42 - Logiciel: IPM_PSP_COM - (.Corel Corporation.) [HKLM][64Bits] -- {154B0B16-ABCD-4A06-B0B7-8146B7A89B25} © O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {1563C6F2-E9B5-42DE-9EA6-207C9A8C2DFB} © O42 - Logiciel: 8GadgetPack - (.Helmut Buhler.) [HKLM][64Bits] -- {180B50DF-B2C8-43A1-AB97-2101AA62DDD3} © O42 - Logiciel: Nero Recode - (.Nero AG.) [HKLM][64Bits] -- {1943C3BD-4462-4612-92C3-D36DD917C447} © O42 - Logiciel: tools-netware - (.VMware, Inc..) [HKLM][64Bits] -- {197597A7-AD33-4898-9D8E-73066818B464} © O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {1A1BD41E-9854-4957-8959-F9559A8862A7} © O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM][64Bits] -- {1B6F5E51-575E-4693-BCA2-7543570D076D} © O42 - Logiciel: Nero Kwik Media Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {1F16820E-D0E7-4636-939E-45CBFEFB06E1} © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} © O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM][64Bits] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0} © O42 - Logiciel: Skype™ 7.4 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} © O42 - Logiciel: Nero Burning ROM Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {2890E324-6F3B-4975-8B95-E7D6D80E0226} © O42 - Logiciel: Nero Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {29F67D84-3A70-456E-806A-52301B02070B} © O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F} © O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} © O42 - Logiciel: Pinnacle Studio 17 - (.Corel Corporation.) [HKLM][64Bits] -- {3DA8F808-72E2-4361-82EC-433081D23005} © O42 - Logiciel: InstallShield Express Borland Limited Edition - (.InstallShield Software Corp..) [HKLM][64Bits] -- {3EDFF716-CC65-11D4-8BE7-006097C9A3ED} O42 - Logiciel: Sound Blaster X-Fi MB 2 - (.Creative Technology Limited.) [HKLM][64Bits] -- {44DA67A9-C906-4316-94CB-61B036BBDCE5} © O42 - Logiciel: Nero 7 Premium - (.Nero AG.) [HKLM][64Bits] -- {4781569D-5404-1F26-4B2B-6DF444441031} © O42 - Logiciel: Boris Graffiti for Corel - (.Boris FX, Inc..) [HKLM][64Bits] -- {48A00644-2D97-43B5-A614-603DECF3E5F6} O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} © O42 - Logiciel: Corel Graphics - Windows Shell Extension - (.Corel Corporation.) [HKLM][64Bits] -- {51DD370C-6690-424E-9674-5F14468B323F} © O42 - Logiciel: Grand Theft Auto IV - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-1110000D8301} © O42 - Logiciel: Grand Theft Auto IV - (.Rockstar Games Inc..) [HKLM][64Bits] -- {5454083B-1308-4485-BF17-1110000D8302} © O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} © O42 - Logiciel: AGEIA PhysX v6.10.05 - (.AGEIA Technologies, Inc..) [HKLM][64Bits] -- {582876EC-A178-44D4-9823-C10D6C62EAFF} © O42 - Logiciel: Nero Burning ROM - (.Nero AG.) [HKLM][64Bits] -- {5963F4B4-D138-47CD-ADEF-470E87E185BD} © O42 - Logiciel: Nero Blu-ray Player Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {5B79E730-D897-4B8F-A1AD-7BB2D1F22B96} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {653C1B5A-3287-47B1-8613-0745D4E771C4} © O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} © O42 - Logiciel: IPM_VS_Pro - (.Corel Corporation.) [HKLM][64Bits] -- {66C70B5F-730F-4C5D-9FC5-8E56D0FE7D53} © O42 - Logiciel: Microsoft Document Explorer 2008 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6753B40C-0FBD-3BED-8A9D-0ACAC2DCD85D} © O42 - Logiciel: VSHelp - (.Corel Corporation.) [HKLM][64Bits] -- {6A6F7B28-E178-47AC-8654-A654ADA6C777} © O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM][64Bits] -- {72144B9D-58C4-4C09-A5CF-C6A914B912E8} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {78BF00E5-9FD7-4ACD-B7DE-D6CECED1D29A} © O42 - Logiciel: MainConcept DTV Decoder Pro - (.MainConcept GmbH.) [HKLM][64Bits] -- {793FCE60-DE5E-4977-A942-A7B69A45B17D} O42 - Logiciel: PolarEditOctagon 10x8 v 0.7.2.6 - (.Polarstern.) [HKLM][64Bits] -- {7AA2C7DA-ECDD-46CC-9716-313B0EA050EB}_is1 O42 - Logiciel: Air Tivi+ - (.Fortis, Inc..) [HKLM][64Bits] -- {7D913459-2F7A-49B5-B3DB-9849900A32CA} O42 - Logiciel: Welcome App (Start-up experience) - (.Nero AG.) [HKLM][64Bits] -- {828175FA-7307-4DBF-95AD-9CEE086B6F45} © O42 - Logiciel: Nero Video - (.Nero AG.) [HKLM][64Bits] -- {83FCCFCD-46E3-43FB-A397-78BFD5A8980A} © O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {848A7C68-0ADC-4193-8A89-2CEA78E56A0C} © O42 - Logiciel: Nero Recode Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {86847081-B387-4F49-AED1-C9B0A090D66C} © O42 - Logiciel: Microsoft Sync Framework Runtime Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8A74E887-8F0F-4017-AF53-CBA42211AAA5} © O42 - Logiciel: VSClassic - (.Corel Corporation.) [HKLM][64Bits] -- {8AA4F966-EF4B-44D8-99AA-C4EA93B46863} © O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {8E5233E1-7495-44FB-8DEB-4BE906D59619} © O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE} © O42 - Logiciel: CorelDRAW Graphics Suite X5 - WT - (. Corel Corporation.) [HKLM][64Bits] -- {9244E956-5939-4B88-930C-0699D4AB2B95} O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {9C9CEB9D-53FD-49A7-85D2-FE674F72F24E} © O42 - Logiciel: Nero Blu-ray Player - (.Nero AG.) [HKLM][64Bits] -- {A2FE691E-3F8E-4E30-AA7D-FF17AC77EA87} © O42 - Logiciel: Nero Audio Pack 1 - (.Nero AG.) [HKLM][64Bits] -- {A7A0BF2E-31CC-49E3-9913-52C503EB969D} © O42 - Logiciel: Setup - (.Corel Corporation.) [HKLM][64Bits] -- {A8887C7B-0BCC-4FBF-BCEB-9BB4D4B14999} © O42 - Logiciel: Microsoft Document Explorer 2008 Language Pack - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {AACA7728-BE87-3D11-8A3F-773664BFCF1B} © O42 - Logiciel: tools-solaris - (.VMware, Inc..) [HKLM][64Bits] -- {AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4} © O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {ABC88553-8770-4B97-B43E-5A90647A5B63} © O42 - Logiciel: Adobe Reader 9.3 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-A93000000001} © O42 - Logiciel: Nero PiP Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {ACE49D50-19CD-44A6-B192-46F985283B26} © O42 - Logiciel: tools-winPre2k - (.VMware, Inc..) [HKLM][64Bits] -- {AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D} © O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {AFA1153A-F547-409B-B837-3A0D6C5A3FEC} © O42 - Logiciel: Nero Video Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {B128179D-A5E1-43AC-9422-12A109ECD2A0} © O42 - Logiciel: @BIOS - (.GIGABYTE.) [HKLM][64Bits] -- {B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83} © O42 - Logiciel: Shank 2 - (.Electronic Arts.) [HKLM][64Bits] -- {B7B8D9A9-EFCB-4c2f-8117-7A2A32D0BC58} © O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- {B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} © O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {B953732D-B623-4E84-B369-CFFF7B1AE06F} © O42 - Logiciel: GTA IV + EFLC version 1.5 - (.Black_Box.) [HKLM][64Bits] -- {B95T9A00-40176-4AC6-N973-5A8AB71A09DJ}_is1 © O42 - Logiciel: Mobizen - (.RSUPPORT.) [HKLM][64Bits] -- {BA0D3A44-BCEE-4C8B-BCD4-F7F1E64F41E3} O42 - Logiciel: Microsoft Sync Framework Services Native v1.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD64AF4A-8C80-4152-AD77-FCDDF05208AB} © O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} © O42 - Logiciel: Dazzle Video Capture DVC100 X64 Driver 1.06 - (.Pinnacle.) [HKLM][64Bits] -- {BFF23267-1D19-444E-93E2-E5059BE805EA} © O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} © O42 - Logiciel: VSUltimate - (.Corel Corporation.) [HKLM][64Bits] -- {C717B4D4-2EFA-4DC3-8EDB-79543E43666C} © O42 - Logiciel: Nero ControlCenter Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {C994C746-C6D0-4EBA-B09E-DF7B18381B69} © O42 - Logiciel: Contents - (.Corel Corporation.) [HKLM][64Bits] -- {CA486743-5F44-40D5-A38B-77911FB27579} © O42 - Logiciel: TechniSat DVB-PC TV Star - (.TechniSat.) [HKLM][64Bits] -- {D032A7F0-8B5C-4603-8B46-235025D5F9C1} O42 - Logiciel: tools-linux - (.VMware, Inc..) [HKLM][64Bits] -- {D102611A-6466-4101-A51D-51069303AC65} © O42 - Logiciel: Nero 12 - (.Nero AG.) [HKLM][64Bits] -- {D529E699-7753-46E7-8B73-C5556EF5B486} © O42 - Logiciel: Adobe Photoshop CC 2014 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {D7A4F897-B20A-42D0-862D-CB5F6DB7391D} © O42 - Logiciel: Nero BackItUp - (.Nero AG.) [HKLM][64Bits] -- {DA2D3078-A58C-45E8-8EE0-18B8BE6B34F7} © O42 - Logiciel: ISCOM - (.Corel Corporation.) [HKLM][64Bits] -- {DCDC6934-7428-489E-8651-90B53191488B} © O42 - Logiciel: CorelDRAW Graphics Suite X5 - IPM - (.Corel Corporation.) [HKLM][64Bits] -- {DE6CBC04-8673-4DBA-BA81-07F1639CEB5F} © O42 - Logiciel: jetAudio - (...) [HKLM][64Bits] -- {DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A} O42 - Logiciel: Need for Speed™ Rivals - (.Electronic Arts.) [HKLM][64Bits] -- {E0A32336-AA27-4053-99B2-C3380B7B95AC} © O42 - Logiciel: Nero Disc Menus Basic - (.Nero AG.) [HKLM][64Bits] -- {E17BCB76-9924-4BD5-B6D6-50D3407B4E74} © O42 - Logiciel: Windows Media Encoder 9 Series - (.Microsoft Corporation.) [HKLM][64Bits] -- {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E} © O42 - Logiciel: Share - (.Corel Corporation.) [HKLM][64Bits] -- {EEBEF66A-70FD-4DF6-B173-82D07E61853E} © O42 - Logiciel: Nero BackItUp Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {EF0D1292-8FC1-41BE-9740-DBC134F66415} © O42 - Logiciel: Pinnacle Studio 17 - Install Manager - (.Corel Corporation.) [HKLM][64Bits] -- {F04D92CC-5C3A-46FA-9C98-6EACBDD262FF} © O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Samsung New PC Studio - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {F193FC0E-9E18-40FC-A974-509A1BDD240A} © O42 - Logiciel: Aiseesoft MKV Convertisseur 6.3.28 - (.Aiseesoft Studio.) [HKLM][64Bits] -- {F402DFCC-74A8-4f97-BE5B-D839AA290420}_is1 O42 - Logiciel: DevJET Documentation Insight Express Edition V2.0.1.232 - (.DevJET.) [HKLM][64Bits] -- {F62B6FC9-BECA-4209-9F8E-09528DC143BE}_is1 O42 - Logiciel: tools-windows - (.VMware, Inc..) [HKLM][64Bits] -- {FFD9383C-01D5-4897-A954-43AF599AED30} © O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox © O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe © ---\\ HKCU & HKLM Software Keys (240) - 11s HKLM\SOFTWARE\Wow6432Node\8GadgetPack HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\ahead HKLM\SOFTWARE\Wow6432Node\alltomp3 HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Avid HKLM\SOFTWARE\Wow6432Node\Bitstream HKLM\SOFTWARE\Wow6432Node\BlueStacks HKLM\SOFTWARE\Wow6432Node\Boris FX, Inc. HKLM\SOFTWARE\Wow6432Node\Borland HKLM\SOFTWARE\Wow6432Node\Carnegie Mellon HKLM\SOFTWARE\Wow6432Node\CollabNet HKLM\SOFTWARE\Wow6432Node\CoreCodec HKLM\SOFTWARE\Wow6432Node\Corel HKLM\SOFTWARE\Wow6432Node\Corel Corporation HKLM\SOFTWARE\Wow6432Node\COWON HKLM\SOFTWARE\Wow6432Node\Creative Labs HKLM\SOFTWARE\Wow6432Node\Creative Tech HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Debug HKLM\SOFTWARE\Wow6432Node\DSPRobotics HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\EasyBoot Systems HKLM\SOFTWARE\Wow6432Node\Elecard HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\Embarcadero HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\Forward Development HKLM\SOFTWARE\Wow6432Node\Gigabyte HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Group FPEdit HKLM\SOFTWARE\Wow6432Node\GTA Mod Installer HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Huawei technologies HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Image-Line HKLM\SOFTWARE\Wow6432Node\Inprise Corporation HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\InterVideo HKLM\SOFTWARE\Wow6432Node\iTinySoft HKLM\SOFTWARE\Wow6432Node\JetAudio, Inc. HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\Lenovo HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\LIRC HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\MarkAny HKLM\SOFTWARE\Wow6432Node\Martin Prikryl HKLM\SOFTWARE\Wow6432Node\Maxis HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\MimarSinan HKLM\SOFTWARE\Wow6432Node\Mobo HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\mtZonelam HKLM\SOFTWARE\Wow6432Node\MUSICMATCH HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\NeutronGames HKLM\SOFTWARE\Wow6432Node\Nevrona Designs HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Oddworld Inhabitants HKLM\SOFTWARE\Wow6432Node\OpenAL HKLM\SOFTWARE\Wow6432Node\Origin HKLM\SOFTWARE\Wow6432Node\Pegasus Imaging HKLM\SOFTWARE\Wow6432Node\Pinnacle HKLM\SOFTWARE\Wow6432Node\Pinnacle Systems HKLM\SOFTWARE\Wow6432Node\proDAD HKLM\SOFTWARE\Wow6432Node\Prog HKLM\SOFTWARE\Wow6432Node\Propellerhead Software HKLM\SOFTWARE\Wow6432Node\Protexis HKLM\SOFTWARE\Wow6432Node\Raize HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Rockstar Games HKLM\SOFTWARE\Wow6432Node\S3R521 HKLM\SOFTWARE\Wow6432Node\SiteSee HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SmartSound Software HKLM\SOFTWARE\Wow6432Node\SNK PLAYMORE HKLM\SOFTWARE\Wow6432Node\SoftVoice HKLM\SOFTWARE\Wow6432Node\Stardvb HKLM\SOFTWARE\Wow6432Node\TDS HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\TechniSat HKLM\SOFTWARE\Wow6432Node\TechSmith HKLM\SOFTWARE\Wow6432Node\The Silicon Realms Toolworks HKLM\SOFTWARE\Wow6432Node\ThinPrint HKLM\SOFTWARE\Wow6432Node\THQ HKLM\SOFTWARE\Wow6432Node\Ulead Systems HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VIA Technologies, Inc HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\VMware, Inc. HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\VSoft HKLM\SOFTWARE\Wow6432Node\WebUpdate HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wise Solutions HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\2K Sports HKCU\SOFTWARE\8GadgetPack HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\Aiseesoft Studio HKCU\SOFTWARE\AnvSoft HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Avid HKCU\SOFTWARE\Baidu HKCU\SOFTWARE\Bigasoft HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Borland HKCU\SOFTWARE\Canon HKCU\SOFTWARE\Clipboarder HKCU\SOFTWARE\CoreAAC HKCU\SOFTWARE\Corel HKCU\SOFTWARE\CoreVorbis HKCU\SOFTWARE\COWON HKCU\SOFTWARE\Creative Tech HKCU\SOFTWARE\CYBERLINK HKCU\SOFTWARE\DigitByteStudio HKCU\SOFTWARE\DivX HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DScaler5 HKCU\SOFTWARE\DSPRobotics HKCU\SOFTWARE\EasyBoot Systems HKCU\SOFTWARE\EffectMgr HKCU\SOFTWARE\Elecard HKCU\SOFTWARE\Embarcadero HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\epsxe HKCU\SOFTWARE\Eric Provan - Ayyo Games HKCU\SOFTWARE\FLT HKCU\SOFTWARE\Fortis HKCU\SOFTWARE\Forward Development HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Gigabyte HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GTA IV Vehicle Mod Installer HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\iLivid =>PUP.Optional.Bandoo HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Image-Line HKCU\SOFTWARE\ImTOO HKCU\SOFTWARE\InstallShield HKCU\SOFTWARE\Intel HKCU\SOFTWARE\InterVideo HKCU\SOFTWARE\IvoSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Lake HKCU\SOFTWARE\LAV HKCU\SOFTWARE\Lenovo HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madFlac HKCU\SOFTWARE\madshi HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Martin Prikryl HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\Mediachance HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mobileleader HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\mtZonelam HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NeutronGames HKCU\SOFTWARE\NewBlue HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Oddworld HKCU\SOFTWARE\Odin Game Studio HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Oracle HKCU\SOFTWARE\Paltalk HKCU\SOFTWARE\Pinnacle Systems HKCU\SOFTWARE\Polarstern HKCU\SOFTWARE\proDAD HKCU\SOFTWARE\pth264 HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\RSUPPORT HKCU\SOFTWARE\Rtp HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SmartSound Software HKCU\SOFTWARE\SoftVoice HKCU\SOFTWARE\Spoon HKCU\SOFTWARE\StackDocklet HKCU\SOFTWARE\SuperDownloads.com.br HKCU\SOFTWARE\SWiSHzone.com HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\THEGFW HKCU\SOFTWARE\Tihiy HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ulead HKCU\SOFTWARE\Ulead Systems HKCU\SOFTWARE\Unity HKCU\SOFTWARE\URSoft HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VIA HKCU\SOFTWARE\Vision Thing HKCU\SOFTWARE\Vitalwerks HKCU\SOFTWARE\VMware, Inc. HKCU\SOFTWARE\VOB HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Xara HKCU\SOFTWARE\Xilisoft HKCU\SOFTWARE\Z-Software GmbH HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\ThinPrint ---\\ Contenu des dossiers Programmes (447) - 15s O43 - CFD: 2015/05/11 16:27:26 - [] D -- C:\Program Files (x86)\$RC631UJ O43 - CFD: 2015/09/30 14:32:30 - [] D -- C:\Program Files (x86)\Active GIF Creator 3.1 O43 - CFD: 2015/05/21 20:20:20 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/05/25 17:13:19 - [] D -- C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 2015/09/27 18:22:04 - [] D -- C:\Program Files (x86)\AirDroid O43 - CFD: 2015/09/19 18:04:17 - [] D -- C:\Program Files (x86)\Aiseesoft MKV Converter O43 - CFD: 2015/08/11 23:12:39 - [] D -- C:\Program Files (x86)\Aiseesoft Studio O43 - CFD: 2015/05/16 10:46:04 - [] D -- C:\Program Files (x86)\Allok 3GP PSP MP4 iPod Video Converter O43 - CFD: 2015/04/25 14:43:22 - [] D -- C:\Program Files (x86)\AMD O43 - CFD: 2015/04/07 15:27:01 - [] D -- C:\Program Files (x86)\AnvSoft O43 - CFD: 2015/05/05 07:31:47 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2015/09/22 09:29:50 - [] D -- C:\Program Files (x86)\BdTips O43 - CFD: 2015/05/05 16:48:26 - [] D -- C:\Program Files (x86)\Black_Box O43 - CFD: 2015/04/18 17:08:02 - [] D -- C:\Program Files (x86)\BlueStacks O43 - CFD: 2015/05/05 16:09:15 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2015/04/18 12:55:26 - [] D -- C:\Program Files (x86)\Boris FX, Inc O43 - CFD: 2015/04/18 22:24:42 - [] D -- C:\Program Files (x86)\Canon O43 - CFD: 2015/03/06 10:21:48 - [] D -- C:\Program Files (x86)\CollabNet O43 - CFD: 2015/09/30 14:32:34 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2015/03/03 21:10:53 - [] D -- C:\Program Files (x86)\CoreCodec O43 - CFD: 2015/05/30 10:47:16 - [] D -- C:\Program Files (x86)\Corel O43 - CFD: 2015/04/25 14:09:07 - [] D -- C:\Program Files (x86)\Creative O43 - CFD: 2015/03/06 10:21:41 - [] D -- C:\Program Files (x86)\DevJet O43 - CFD: 2015/04/11 15:41:31 - [] D -- C:\Program Files (x86)\Djezzy connect O43 - CFD: 2015/03/04 17:02:10 - [] D -- C:\Program Files (x86)\DSPRobotics O43 - CFD: 2015/08/29 12:41:51 - [] D -- C:\Program Files (x86)\dvbdream O43 - CFD: 2015/03/06 10:53:12 - [] D -- C:\Program Files (x86)\epson O43 - CFD: 2015/03/06 10:21:36 - [] D -- C:\Program Files (x86)\FastReports O43 - CFD: 2015/05/16 11:00:16 - [] D -- C:\Program Files (x86)\FLV to AVI MPEG WMV 3GP MP4 iPod Converter O43 - CFD: 2015/03/06 10:53:48 - [] D -- C:\Program Files (x86)\Fortis O43 - CFD: 2015/04/25 14:44:12 - [] D -- C:\Program Files (x86)\GIGABYTE O43 - CFD: 2015/04/08 19:57:03 - [] RASHD -- C:\Program Files (x86)\Golden Filter Premium O43 - CFD: 2015/09/27 15:24:05 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/08/23 11:09:46 - [] D -- C:\Program Files (x86)\GTA V O43 - CFD: 2015/03/04 17:02:26 - [] D -- C:\Program Files (x86)\Image-Line O43 - CFD: 2015/03/06 09:58:55 - [] D -- C:\Program Files (x86)\InstallShield O43 - CFD: 2015/03/06 09:55:49 - [] D -- C:\Program Files (x86)\InstallShield Express - Borland Limited Edition O43 - CFD: 2015/07/18 16:04:15 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/04/25 14:43:25 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/08/18 18:24:05 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 2012/07/26 11:08:59 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/06/06 11:58:39 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 2015/03/06 09:57:43 - [] D -- C:\Program Files (x86)\JavaSoft O43 - CFD: 2015/05/16 10:28:11 - [] D -- C:\Program Files (x86)\JetAudio O43 - CFD: 2015/06/21 13:55:54 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 2015/03/03 20:42:55 - [] D -- C:\Program Files (x86)\Kaspersky Lab O43 - CFD: 2015/05/06 18:43:26 - [] D -- C:\Program Files (x86)\L'Exode d'Abe O43 - CFD: 2015/09/02 18:05:29 - [] D -- C:\Program Files (x86)\Lenovo O43 - CFD: 2015/03/04 18:53:45 - [] D -- C:\Program Files (x86)\MainConcept O43 - CFD: 2015/09/30 12:08:31 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 2015/06/06 11:54:27 - [] D -- C:\Program Files (x86)\MarkAny O43 - CFD: 2015/05/04 16:54:53 - [] D -- C:\Program Files (x86)\Metal Slug Complete PC O43 - CFD: 2015/07/04 18:21:56 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2015/03/03 20:54:24 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2015/05/02 22:07:37 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/04/18 11:44:39 - [] D -- C:\Program Files (x86)\Microsoft SDKs O43 - CFD: 2015/07/04 18:47:23 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2015/03/03 20:55:08 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 2015/03/06 10:54:36 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2015/03/06 10:55:29 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework O43 - CFD: 2015/05/02 22:07:36 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 2015/05/02 22:04:21 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2015/04/18 11:44:56 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 9.0 O43 - CFD: 2015/05/02 22:08:02 - [] D -- C:\Program Files (x86)\Microsoft Works O43 - CFD: 2015/03/03 20:55:31 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/08/08 14:55:54 - [] D -- C:\Program Files (x86)\Mobo O43 - CFD: 2015/05/05 19:42:02 - [] D -- C:\Program Files (x86)\Mortal Kombat Komplete Edition O43 - CFD: 2015/09/30 14:38:44 - [0] D -- C:\Program Files (x86)\Movies App =>PUP.Optional.CrossRider O43 - CFD: 2015/09/30 20:51:57 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/10/02 09:09:39 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2015/05/02 22:07:47 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/05/16 10:26:47 - [] D -- C:\Program Files (x86)\MUSICMATCH O43 - CFD: 2015/05/05 16:13:22 - [] D -- C:\Program Files (x86)\Need for Speed Rivals O43 - CFD: 2015/05/13 11:26:41 - [] D -- C:\Program Files (x86)\Nero O43 - CFD: 2015/03/03 20:13:25 - [] D -- C:\Program Files (x86)\No-IP O43 - CFD: 2015/03/03 20:31:51 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 2015/04/17 17:54:45 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2015/05/06 18:36:12 - [] D -- C:\Program Files (x86)\Oddworld Munchs Oddysee O43 - CFD: 2015/07/23 19:06:13 - [] D -- C:\Program Files (x86)\Odin3_v3.10.6 O43 - CFD: 2015/03/14 11:49:30 - [] D -- C:\Program Files (x86)\Paltalk Messenger O43 - CFD: 2015/05/16 11:20:46 - [] D -- C:\Program Files (x86)\Pinnacle O43 - CFD: 2015/08/19 20:14:53 - [] D -- C:\Program Files (x86)\PolarEditOctagon10x8 O43 - CFD: 2015/09/23 08:19:15 - [] D -- C:\Program Files (x86)\Pro Evolution Soccer 2016 O43 - CFD: 2015/04/18 13:00:04 - [] D -- C:\Program Files (x86)\proDAD O43 - CFD: 2015/09/30 11:19:31 - [] D -- C:\Program Files (x86)\ProgDVB O43 - CFD: 2015/05/12 17:39:33 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 2015/03/06 10:36:41 - [] D -- C:\Program Files (x86)\Raize O43 - CFD: 2015/03/12 19:37:03 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2015/03/03 21:11:12 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/08/23 11:38:22 - [] D -- C:\Program Files (x86)\Rockstar Games O43 - CFD: 2015/09/22 18:16:40 - [] D -- C:\Program Files (x86)\RSUPPORT O43 - CFD: 2015/06/06 11:54:19 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 2015/05/04 16:26:49 - [] D -- C:\Program Files (x86)\Shank 2 O43 - CFD: 2015/05/05 18:02:44 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2015/04/08 18:09:02 - [] D -- C:\Program Files (x86)\SmartSound Software O43 - CFD: 2015/03/04 18:24:52 - [] D -- C:\Program Files (x86)\Stardvb O43 - CFD: 2015/09/28 18:37:07 - [] D -- C:\Program Files (x86)\Steam O43 - CFD: 2015/09/28 15:29:37 - [] D -- C:\Program Files (x86)\TeamViewer O43 - CFD: 2015/03/04 18:53:57 - [] D -- C:\Program Files (x86)\TechniSat DVB O43 - CFD: 2015/04/11 13:07:08 - [] D -- C:\Program Files (x86)\TechSmith O43 - CFD: 2015/08/14 10:54:43 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2015/03/03 20:47:57 - [] D -- C:\Program Files (x86)\UltraISO O43 - CFD: 2015/07/18 15:52:40 - [] D -- C:\Program Files (x86)\USB Vibration O43 - CFD: 2015/09/27 15:54:45 - [0] D -- C:\Program Files (x86)\uTorrent O43 - CFD: 2015/04/25 14:06:10 - [] D -- C:\Program Files (x86)\VIA O43 - CFD: 2015/03/03 20:33:24 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2015/03/06 17:26:20 - [] D -- C:\Program Files (x86)\VMware O43 - CFD: 2015/03/04 17:02:34 - [] D -- C:\Program Files (x86)\VstPlugins O43 - CFD: 2015/06/20 18:20:35 - [] D -- C:\Program Files (x86)\Win7codecs O43 - CFD: 2012/07/26 11:08:59 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2015/03/06 10:58:25 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2015/03/06 10:53:40 - [] D -- C:\Program Files (x86)\Windows Live SkyDrive O43 - CFD: 2012/07/26 11:08:59 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/04/08 18:04:49 - [] D -- C:\Program Files (x86)\Windows Media Components O43 - CFD: 2012/07/26 11:08:59 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2012/07/26 09:13:01 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2012/07/26 09:12:59 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2012/07/26 11:08:59 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2012/07/26 09:13:01 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2015/03/03 19:59:24 - [] SD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/03/03 19:55:01 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2015/03/06 11:03:51 - [] D -- C:\Program Files (x86)\WinSCP O43 - CFD: 2015/05/05 22:44:34 - [] D -- C:\Program Files (x86)\WRC 4 FIA World Rally Championship O43 - CFD: 2015/05/06 16:56:27 - [] D -- C:\Program Files (x86)\WRC Powerslide O43 - CFD: 2015/04/02 14:46:27 - [] D -- C:\Program Files (x86)\Your Uninstaller 2010 O43 - CFD: 2015/09/27 11:34:18 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2K Games O43 - CFD: 2015/03/03 19:59:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack O43 - CFD: 2012/07/26 09:13:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2012/07/26 11:11:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/06/02 20:13:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Active GIF Creator 3.1 O43 - CFD: 2015/05/02 22:08:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/05/06 17:34:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AGEIA O43 - CFD: 2015/09/27 17:56:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid O43 - CFD: 2015/09/19 18:04:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aiseesoft O43 - CFD: 2015/05/16 10:45:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Allok 3GP PSP MP4 iPod Video Converter O43 - CFD: 2015/08/08 14:55:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aMoboMarket O43 - CFD: 2015/05/05 18:34:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black_Box O43 - CFD: 2015/04/18 12:55:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks O43 - CFD: 2015/04/18 12:54:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boris Graffiti 5.4 O43 - CFD: 2015/04/22 17:59:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon LBP6000 LBP6018 O43 - CFD: 2015/04/03 17:50:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell O43 - CFD: 2015/03/03 21:08:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec O43 - CFD: 2015/03/06 10:36:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeSite 5.0 O43 - CFD: 2015/03/06 10:21:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CollabNet Subversion Client O43 - CFD: 2015/03/03 21:11:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CoreCodec O43 - CFD: 2015/04/18 12:39:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro X5 O43 - CFD: 2015/04/18 12:48:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel VideoStudio Pro X5 O43 - CFD: 2015/07/28 17:44:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite X5 O43 - CFD: 2015/04/25 14:08:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative O43 - CFD: 2015/03/06 10:21:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DevJET Documentation Insight Express O43 - CFD: 2015/04/11 15:41:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Djezzy connect O43 - CFD: 2015/08/29 12:41:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVB Dream O43 - CFD: 2015/06/12 12:12:33 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Démarrage O43 - CFD: 2015/04/22 17:58:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Electronic Arts O43 - CFD: 2015/03/07 15:10:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 2015/05/16 11:00:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV to AVI MPEG WMV 3GP MP4 iPod Converter O43 - CFD: 2015/03/06 10:53:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fortis, Inc O43 - CFD: 2015/08/18 19:39:53 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Forward Development O43 - CFD: 2015/08/18 19:24:22 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/04/25 14:44:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE O43 - CFD: 2015/05/03 09:34:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/03/06 09:52:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 2015/03/03 21:11:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 2015/08/26 21:28:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMoboMarket O43 - CFD: 2015/08/18 19:59:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImTOO O43 - CFD: 2015/03/06 09:59:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InstallShield O43 - CFD: 2015/08/18 18:24:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/06/06 12:00:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 2015/05/16 10:28:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\jetAudio O43 - CFD: 2015/06/21 13:56:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2015/03/03 20:43:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security O43 - CFD: 2015/05/06 18:43:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\L'Exode d'Abe O43 - CFD: 2015/09/02 18:04:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo O43 - CFD: 2012/07/26 09:13:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/09/30 12:08:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2015/05/02 22:08:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/03/03 20:55:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2015/07/04 18:21:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in O43 - CFD: 2015/07/04 18:47:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/05/02 22:04:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005 O43 - CFD: 2015/05/05 19:42:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mortal Kombat Komplete Edition O43 - CFD: 2015/05/16 10:26:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MUSICMATCH O43 - CFD: 2015/05/13 11:25:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 2015/05/10 08:21:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Premium O43 - CFD: 2015/03/03 20:31:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2015/09/28 15:34:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 2015/03/03 19:57:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox O43 - CFD: 2015/09/15 13:18:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin O43 - CFD: 2015/05/16 11:28:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 17 O43 - CFD: 2015/05/06 17:34:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playlogic O43 - CFD: 2015/08/19 20:14:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PolarEditor10x8 O43 - CFD: 2015/04/18 12:58:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\proDAD O43 - CFD: 2015/09/20 18:51:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ProgDVB O43 - CFD: 2015/04/22 17:59:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programme de désinstallation de l'imprimante Canon O43 - CFD: 2015/05/12 17:39:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2015/04/22 17:59:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Unlocker O43 - CFD: 2015/03/06 10:21:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rave Reports 10.0 BE O43 - CFD: 2015/09/22 18:16:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RSUPPORT O43 - CFD: 2015/06/06 11:55:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung New PC Studio O43 - CFD: 2015/06/20 18:20:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shark007 Codecs O43 - CFD: 2015/05/05 18:02:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/05/17 18:13:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedFan O43 - CFD: 2015/03/04 18:24:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardvb O43 - CFD: 2015/09/29 13:54:19 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2015/05/03 12:36:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2012/07/26 09:13:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2012/07/26 11:11:33 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/03/04 18:53:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechniSat DVB O43 - CFD: 2015/04/11 13:07:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith O43 - CFD: 2015/03/03 20:47:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO O43 - CFD: 2015/03/03 20:33:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/05/03 16:47:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VisiBroker O43 - CFD: 2015/03/06 17:27:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware O43 - CFD: 2015/03/06 10:58:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 2015/04/08 18:08:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media O43 - CFD: 2015/03/03 19:55:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/05/06 16:56:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WRC Powerslide O43 - CFD: 2015/03/04 18:34:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller 2010 O43 - CFD: 2015/05/21 20:24:21 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/08/11 23:12:39 - [] D -- C:\ProgramData\Aiseesoft Studio O43 - CFD: 2015/05/05 16:08:52 - [] D -- C:\ProgramData\Apple O43 - CFD: 2015/06/06 11:58:16 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2012/07/26 08:22:08 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/03/04 18:24:53 - [] D -- C:\ProgramData\ArcSoft O43 - CFD: 2015/04/18 12:55:35 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 2015/04/18 17:06:38 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 2015/08/05 18:45:32 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 2015/03/03 19:37:00 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/04/18 22:24:43 - [] D -- C:\ProgramData\Canon O43 - CFD: 2015/03/03 20:37:55 - [] D -- C:\ProgramData\ClassicShell O43 - CFD: 2015/05/06 16:57:41 - [] D -- C:\ProgramData\CODEX O43 - CFD: 2015/05/13 19:01:03 - [] D -- C:\ProgramData\Corel O43 - CFD: 2015/04/25 14:07:52 - [] D -- C:\ProgramData\Creative O43 - CFD: 2015/04/09 13:14:14 - [] D -- C:\ProgramData\Creative Labs O43 - CFD: 2015/04/11 15:42:49 - [] D -- C:\ProgramData\DatacardService O43 - CFD: 2015/06/25 15:36:40 - [0] D -- C:\ProgramData\dbg O43 - CFD: 2012/07/26 08:22:08 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/03/03 21:12:11 - [] D -- C:\ProgramData\DivX O43 - CFD: 2015/04/11 15:41:37 - [] D -- C:\ProgramData\Djezzy connect O43 - CFD: 2012/07/26 08:22:08 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/06/06 12:00:41 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2015/09/27 15:33:15 - [] D -- C:\ProgramData\Electronic Arts O43 - CFD: 2015/04/23 21:43:32 - [] D -- C:\ProgramData\Embarcadero O43 - CFD: 2015/03/07 15:10:11 - [] D -- C:\ProgramData\EPSON O43 - CFD: 2015/04/08 18:09:02 - [] D -- C:\ProgramData\eSellerate O43 - CFD: 2015/08/21 21:31:28 - [] D -- C:\ProgramData\Google O43 - CFD: 2015/03/04 16:28:03 - [0] D -- C:\ProgramData\IDM O43 - CFD: 2015/04/08 18:07:35 - [] D -- C:\ProgramData\InterVideo O43 - CFD: 2015/10/02 19:38:38 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 2015/09/21 16:00:01 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 2015/09/30 12:08:28 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2015/03/06 10:25:52 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2015/03/03 19:37:00 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/08/02 20:29:45 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/07/28 17:44:56 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/09/04 19:05:04 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2015/03/03 19:55:51 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 2015/03/03 19:37:00 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/03/03 20:39:32 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/05/13 11:27:03 - [] D -- C:\ProgramData\Nero O43 - CFD: 2015/04/30 08:41:00 - [] D -- C:\ProgramData\NokiaInstallerCache O43 - CFD: 2015/10/02 09:09:48 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2015/09/28 15:34:25 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/05/05 13:49:39 - [] D -- C:\ProgramData\Orbit O43 - CFD: 2015/09/15 13:29:14 - [] D -- C:\ProgramData\Origin O43 - CFD: 2015/09/13 17:40:24 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/05/16 11:18:15 - [] D -- C:\ProgramData\Pinnacle O43 - CFD: 2015/03/03 19:49:49 - [] D -- C:\ProgramData\PRICache O43 - CFD: 2015/04/18 13:03:36 - [] D -- C:\ProgramData\proDAD O43 - CFD: 2015/09/20 18:58:12 - [] D -- C:\ProgramData\ProgDVB O43 - CFD: 2015/04/18 12:42:30 - [] D -- C:\ProgramData\Protexis O43 - CFD: 2015/03/06 10:36:43 - [] D -- C:\ProgramData\Raize O43 - CFD: 2015/05/21 19:21:30 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2015/03/03 20:55:25 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2015/10/01 22:04:14 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 2015/06/06 11:55:23 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2015/03/11 19:24:01 - [] SHD -- C:\ProgramData\SecuROM O43 - CFD: 2015/05/05 18:02:56 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/04/08 20:34:52 - [] D -- C:\ProgramData\SmartSound Software Inc O43 - CFD: 2015/05/31 12:58:30 - [] D -- C:\ProgramData\Socialclub O43 - CFD: 2012/07/26 08:22:08 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/03/04 20:33:55 - [] D -- C:\ProgramData\Steam O43 - CFD: 2015/03/04 18:53:53 - [] D -- C:\ProgramData\Technisat O43 - CFD: 2015/04/11 13:07:08 - [] D -- C:\ProgramData\TechSmith O43 - CFD: 2015/09/29 22:29:01 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 2012/07/26 08:22:08 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/10/02 09:10:44 - [] D -- C:\ProgramData\VMware O43 - CFD: 2015/03/06 10:36:09 - [] D -- C:\ProgramData\VSoft O43 - CFD: 2015/06/20 18:20:35 - [] D -- C:\ProgramData\Win7codecs O43 - CFD: 2015/04/22 19:09:13 - [] HDC -- C:\ProgramData\{35EE5E86-AC52-4478-8471-0F555B0FB415} O43 - CFD: 2015/04/23 21:44:15 - [] HD -- C:\ProgramData\{46A13B26-D605-4DC3-8770-D0F4A0C3565D} O43 - CFD: 2015/04/23 21:41:36 - [] HDC -- C:\ProgramData\{EDA307AA-B5A4-4524-B840-2914497A9C3C} O43 - CFD: 2015/05/21 20:21:53 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/05/10 08:20:18 - [] D -- C:\Program Files (x86)\Common Files\Ahead O43 - CFD: 2015/06/06 11:58:16 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2015/03/04 18:24:53 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 2015/04/23 08:11:14 - [] D -- C:\Program Files (x86)\Common Files\Borland Shared O43 - CFD: 2015/04/18 11:44:03 - [] D -- C:\Program Files (x86)\Common Files\Corel O43 - CFD: 2015/03/14 00:08:35 - [] D -- C:\Program Files (x86)\Common Files\Creative Labs Shared O43 - CFD: 2015/05/02 22:07:36 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2015/09/27 10:50:39 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 2015/03/04 18:24:56 - [] D -- C:\Program Files (x86)\Common Files\Elecard O43 - CFD: 2015/03/03 20:47:57 - [] D -- C:\Program Files (x86)\Common Files\EZB Systems O43 - CFD: 2015/04/18 12:48:35 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/04/24 15:47:07 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2015/09/02 18:04:59 - [] D -- C:\Program Files (x86)\Common Files\LENOVO O43 - CFD: 2015/03/14 00:08:09 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 2015/07/04 18:21:44 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2015/05/13 11:24:46 - [] D -- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 2015/05/16 11:19:39 - [] D -- C:\Program Files (x86)\Common Files\Pegasus Imaging O43 - CFD: 2012/07/26 09:13:01 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/05/05 18:02:44 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2015/08/27 08:57:13 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 2015/03/03 20:54:34 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/04/11 13:07:17 - [] D -- C:\Program Files (x86)\Common Files\TechSmith Shared O43 - CFD: 2015/03/06 17:26:20 - [] D -- C:\Program Files (x86)\Common Files\VMware O43 - CFD: 2015/03/06 10:51:12 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2015/05/06 17:34:45 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 2015/04/06 16:51:40 - [] D -- C:\Users\imad eddine\AppData\Roaming\2K Sports O43 - CFD: 2015/03/12 11:34:03 - [] D -- C:\Users\imad eddine\AppData\Roaming\AC3Filter O43 - CFD: 2015/06/14 11:50:38 - [] D -- C:\Users\imad eddine\AppData\Roaming\Adobe O43 - CFD: 2015/05/10 08:20:56 - [] D -- C:\Users\imad eddine\AppData\Roaming\Ahead O43 - CFD: 2015/08/18 19:09:51 - [] D -- C:\Users\imad eddine\AppData\Roaming\Anvsoft O43 - CFD: 2015/05/30 10:57:44 - [] D -- C:\Users\imad eddine\AppData\Roaming\Apowersoft O43 - CFD: 2015/06/06 12:01:38 - [0] D -- C:\Users\imad eddine\AppData\Roaming\Apple Computer O43 - CFD: 2015/04/04 17:01:29 - [] D -- C:\Users\imad eddine\AppData\Roaming\BitTorrent O43 - CFD: 2015/10/02 21:12:24 - [] D -- C:\Users\imad eddine\AppData\Roaming\ClassicShell O43 - CFD: 2015/04/18 11:48:45 - [] D -- C:\Users\imad eddine\AppData\Roaming\Corel O43 - CFD: 2015/05/16 11:07:08 - [] D -- C:\Users\imad eddine\AppData\Roaming\COWON O43 - CFD: 2015/03/07 16:45:21 - [] D -- C:\Users\imad eddine\AppData\Roaming\DivX O43 - CFD: 2015/10/02 20:44:04 - [] D -- C:\Users\imad eddine\AppData\Roaming\DMCache O43 - CFD: 2015/09/04 19:17:52 - [] D -- C:\Users\imad eddine\AppData\Roaming\Dropbox O43 - CFD: 2015/08/17 10:12:02 - [] D -- C:\Users\imad eddine\AppData\Roaming\dvdcss O43 - CFD: 2015/04/23 21:43:32 - [] D -- C:\Users\imad eddine\AppData\Roaming\Embarcadero O43 - CFD: 2015/04/02 14:46:24 - [0] D -- C:\Users\imad eddine\AppData\Roaming\EurekaLog O43 - CFD: 2015/03/16 19:27:59 - [] D -- C:\Users\imad eddine\AppData\Roaming\FlowStone O43 - CFD: 2015/05/04 15:35:32 - [0] D -- C:\Users\imad eddine\AppData\Roaming\fltk.org O43 - CFD: 2015/09/27 16:56:38 - [] D -- C:\Users\imad eddine\AppData\Roaming\Group FPEdit O43 - CFD: 2015/07/19 20:47:30 - [] D -- C:\Users\imad eddine\AppData\Roaming\Identities O43 - CFD: 2015/09/08 14:57:54 - [] D -- C:\Users\imad eddine\AppData\Roaming\IDM O43 - CFD: 2015/03/04 17:02:26 - [] D -- C:\Users\imad eddine\AppData\Roaming\Image-Line O43 - CFD: 2015/08/11 23:11:47 - [] D -- C:\Users\imad eddine\AppData\Roaming\ImTOO O43 - CFD: 2015/08/11 22:47:26 - [] D -- C:\Users\imad eddine\AppData\Roaming\ImTOO Software Studio O43 - CFD: 2015/03/04 18:15:39 - [] D -- C:\Users\imad eddine\AppData\Roaming\Macromedia O43 - CFD: 2015/03/11 18:04:30 - [] D -- C:\Users\imad eddine\AppData\Roaming\Mael O43 - CFD: 2015/06/06 12:05:16 - [] D -- C:\Users\imad eddine\AppData\Roaming\MetroSidebar O43 - CFD: 2015/09/28 14:28:01 - [] SD -- C:\Users\imad eddine\AppData\Roaming\Microsoft O43 - CFD: 2015/07/18 20:35:01 - [] D -- C:\Users\imad eddine\AppData\Roaming\Milestone O43 - CFD: 2015/06/11 12:21:02 - [] D -- C:\Users\imad eddine\AppData\Roaming\MK10 O43 - CFD: 2015/05/04 22:47:39 - [] D -- C:\Users\imad eddine\AppData\Roaming\MKKE O43 - CFD: 2015/06/20 18:11:49 - [] D -- C:\Users\imad eddine\AppData\Roaming\mkvtoolnix O43 - CFD: 2015/03/04 07:42:02 - [] D -- C:\Users\imad eddine\AppData\Roaming\Mozilla O43 - CFD: 2015/09/12 20:07:53 - [] D -- C:\Users\imad eddine\AppData\Roaming\MPC-HC O43 - CFD: 2015/05/13 11:29:04 - [] D -- C:\Users\imad eddine\AppData\Roaming\Nero O43 - CFD: 2015/03/03 20:32:02 - [] D -- C:\Users\imad eddine\AppData\Roaming\Notepad++ O43 - CFD: 2015/03/24 10:24:20 - [] D -- C:\Users\imad eddine\AppData\Roaming\NVIDIA O43 - CFD: 2015/03/16 11:34:55 - [] D -- C:\Users\imad eddine\AppData\Roaming\Opera O43 - CFD: 2015/03/24 20:16:28 - [] D -- C:\Users\imad eddine\AppData\Roaming\Origin O43 - CFD: 2015/03/14 11:51:15 - [] D -- C:\Users\imad eddine\AppData\Roaming\Paltalk O43 - CFD: 2015/04/18 13:00:16 - [] D -- C:\Users\imad eddine\AppData\Roaming\proDAD O43 - CFD: 2015/09/22 18:17:02 - [] D -- C:\Users\imad eddine\AppData\Roaming\Rsupport O43 - CFD: 2015/06/06 11:54:58 - [] D -- C:\Users\imad eddine\AppData\Roaming\Samsung O43 - CFD: 2015/03/12 15:48:37 - [] RHD -- C:\Users\imad eddine\AppData\Roaming\SecuROM O43 - CFD: 2015/05/11 20:01:39 - [] D -- C:\Users\imad eddine\AppData\Roaming\Skype O43 - CFD: 2015/09/22 22:12:42 - [] D -- C:\Users\imad eddine\AppData\Roaming\SmartSteamEmu O43 - CFD: 2015/05/06 16:29:45 - [] D -- C:\Users\imad eddine\AppData\Roaming\Steam O43 - CFD: 2015/09/28 21:39:29 - [] D -- C:\Users\imad eddine\AppData\Roaming\TeamViewer O43 - CFD: 2015/04/11 13:09:38 - [] D -- C:\Users\imad eddine\AppData\Roaming\TechSmith O43 - CFD: 2015/05/03 17:58:40 - [] D -- C:\Users\imad eddine\AppData\Roaming\Ulead Systems O43 - CFD: 2015/03/04 18:32:54 - [] D -- C:\Users\imad eddine\AppData\Roaming\URSoft O43 - CFD: 2015/10/02 16:39:01 - [] D -- C:\Users\imad eddine\AppData\Roaming\vlc O43 - CFD: 2015/08/07 12:05:30 - [] D -- C:\Users\imad eddine\AppData\Roaming\VMware O43 - CFD: 2015/05/16 10:29:08 - [0] D -- C:\Users\imad eddine\AppData\Roaming\Vso O43 - CFD: 2015/06/20 18:20:35 - [] D -- C:\Users\imad eddine\AppData\Roaming\Win7codecs O43 - CFD: 2015/03/03 19:55:39 - [] D -- C:\Users\imad eddine\AppData\Roaming\WinRAR O43 - CFD: 2015/04/08 20:54:55 - [] D -- C:\Users\imad eddine\AppData\Roaming\Xilisoft O43 - CFD: 2015/10/02 21:34:52 - [] D -- C:\Users\imad eddine\AppData\Roaming\ZHP O43 - CFD: 2015/05/05 19:27:19 - [] D -- C:\Users\imad eddine\AppData\Local\2K Games O43 - CFD: 2015/08/29 19:34:43 - [] D -- C:\Users\imad eddine\AppData\Local\Adobe O43 - CFD: 2015/05/10 10:03:10 - [] D -- C:\Users\imad eddine\AppData\Local\Ahead O43 - CFD: 2015/08/11 23:15:50 - [] D -- C:\Users\imad eddine\AppData\Local\Aiseesoft Studio O43 - CFD: 2015/03/04 18:24:27 - [] D -- C:\Users\imad eddine\AppData\Local\Apple O43 - CFD: 2015/03/03 19:49:13 - [0] SHD -- C:\Users\imad eddine\AppData\Local\Application Data O43 - CFD: 2015/03/04 18:24:53 - [] D -- C:\Users\imad eddine\AppData\Local\ArcSoft O43 - CFD: 2015/03/06 10:53:20 - [] D -- C:\Users\imad eddine\AppData\Local\Bluestacks O43 - CFD: 2015/08/26 13:04:49 - [] D -- C:\Users\imad eddine\AppData\Local\CEF O43 - CFD: 2015/03/03 19:59:36 - [] D -- C:\Users\imad eddine\AppData\Local\Clipboarder O43 - CFD: 2015/04/18 12:34:44 - [] D -- C:\Users\imad eddine\AppData\Local\Corel PaintShop Pro O43 - CFD: 2015/10/02 16:38:20 - [] D -- C:\Users\imad eddine\AppData\Local\CrashDumps O43 - CFD: 2015/09/10 08:54:34 - [0] D -- C:\Users\imad eddine\AppData\Local\Diagnostics O43 - CFD: 2015/06/06 11:55:32 - [] D -- C:\Users\imad eddine\AppData\Local\Downloaded Installations O43 - CFD: 2015/09/12 20:01:59 - [] D -- C:\Users\imad eddine\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/03/20 14:17:25 - [] D -- C:\Users\imad eddine\AppData\Local\European Bus Simulator 2012 O43 - CFD: 2015/05/04 22:48:13 - [] D -- C:\Users\imad eddine\AppData\Local\FLT O43 - CFD: 2015/05/05 13:50:56 - [] D -- C:\Users\imad eddine\AppData\Local\Game Updater O43 - CFD: 2015/09/25 09:04:10 - [] D -- C:\Users\imad eddine\AppData\Local\Google O43 - CFD: 2015/03/03 19:49:13 - [0] SHD -- C:\Users\imad eddine\AppData\Local\Historique O43 - CFD: 2015/04/22 17:36:57 - [0] D -- C:\Users\imad eddine\AppData\Local\iLivid =>PUP.Optional.Bandoo O43 - CFD: 2015/09/02 18:15:33 - [] D -- C:\Users\imad eddine\AppData\Local\Lenovo O43 - CFD: 2015/03/06 10:59:23 - [] D -- C:\Users\imad eddine\AppData\Local\Macromedia O43 - CFD: 2015/09/04 19:05:04 - [] D -- C:\Users\imad eddine\AppData\Local\Microsoft O43 - CFD: 2015/03/03 20:54:19 - [0] D -- C:\Users\imad eddine\AppData\Local\Microsoft Help O43 - CFD: 2015/03/04 07:42:03 - [] D -- C:\Users\imad eddine\AppData\Local\Mozilla O43 - CFD: 2015/05/13 11:31:19 - [] D -- C:\Users\imad eddine\AppData\Local\Nero O43 - CFD: 2015/07/14 17:46:13 - [] D -- C:\Users\imad eddine\AppData\Local\Nero_AG O43 - CFD: 2015/03/04 07:58:29 - [] D -- C:\Users\imad eddine\AppData\Local\NVIDIA O43 - CFD: 2015/03/04 07:51:47 - [] D -- C:\Users\imad eddine\AppData\Local\NVIDIA Corporation O43 - CFD: 2015/03/16 11:34:56 - [] D -- C:\Users\imad eddine\AppData\Local\Opera O43 - CFD: 2015/03/06 10:01:48 - [0] D -- C:\Users\imad eddine\AppData\Local\PackageAware =>PUP.Optional.BearShare O43 - CFD: 2015/09/29 10:30:22 - [] D -- C:\Users\imad eddine\AppData\Local\Packages O43 - CFD: 2015/09/30 17:59:59 - [] D -- C:\Users\imad eddine\AppData\Local\Pinnacle O43 - CFD: 2015/05/16 11:30:22 - [] D -- C:\Users\imad eddine\AppData\Local\Pinnacle_Studio_17 O43 - CFD: 2015/03/04 15:54:01 - [] D -- C:\Users\imad eddine\AppData\Local\Programs O43 - CFD: 2015/05/01 10:51:05 - [] D -- C:\Users\imad eddine\AppData\Local\Rockstar Games O43 - CFD: 2015/10/02 21:15:39 - [] D -- C:\Users\imad eddine\AppData\Local\Sidebar7 O43 - CFD: 2015/05/06 16:41:25 - [] D -- C:\Users\imad eddine\AppData\Local\SKIDROW O43 - CFD: 2015/05/05 18:03:05 - [] D -- C:\Users\imad eddine\AppData\Local\Skype O43 - CFD: 2015/03/10 12:42:32 - [] D -- C:\Users\imad eddine\AppData\Local\Steam O43 - CFD: 2015/09/27 18:06:59 - [] D -- C:\Users\imad eddine\AppData\Local\TeamViewer O43 - CFD: 2015/04/11 13:09:41 - [] D -- C:\Users\imad eddine\AppData\Local\TechSmith O43 - CFD: 2015/10/02 21:34:21 - [] D -- C:\Users\imad eddine\AppData\Local\Temp O43 - CFD: 2015/03/03 19:49:13 - [0] SHD -- C:\Users\imad eddine\AppData\Local\Temporary Internet Files O43 - CFD: 2015/09/27 10:53:32 - [] D -- C:\Users\imad eddine\AppData\Local\VirtualStore O43 - CFD: 2015/03/03 21:18:12 - [] D -- C:\Users\imad eddine\AppData\Local\Vitalwerks O43 - CFD: 2015/08/07 12:05:30 - [0] D -- C:\Users\imad eddine\AppData\Local\VMware O43 - CFD: 2012/07/26 09:13:00 - [] RD -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2012/07/26 09:13:00 - [] RD -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/06/02 20:13:51 - [0] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Active GIF Creator 3.1 O43 - CFD: 2015/03/03 19:49:48 - [] RD -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/04 19:16:37 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 2015/06/12 12:12:14 - [0] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Démarrage O43 - CFD: 2015/03/06 10:21:35 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastReports O43 - CFD: 2015/08/21 21:25:23 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/03/04 17:02:26 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line O43 - CFD: 2015/08/11 22:47:07 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ImTOO O43 - CFD: 2015/08/18 18:24:00 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/03/11 19:23:46 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IVMP O43 - CFD: 2015/03/04 18:53:46 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MainConcept O43 - CFD: 2012/07/26 09:13:00 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/03/03 20:13:25 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC O43 - CFD: 2015/03/03 20:31:50 - [0] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2015/03/14 11:49:33 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Paltalk Messenger O43 - CFD: 2015/05/04 16:53:19 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SNK PLAYMORE O43 - CFD: 2015/10/02 09:22:59 - [] RD -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/05/05 09:58:23 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2012/07/26 09:13:00 - [] RD -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/03/03 19:55:01 - [] D -- C:\Users\imad eddine\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (15) - 0s O106 - SIOI: UpToDateOverlayHandler Class [ SkyDrive1] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\imad eddine\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714_1\SkyDriveShell.dll © O106 - SIOI: SyncingOverlayHandler Class [ SkyDrive2] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\imad eddine\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714_1\SkyDriveShell.dll © O106 - SIOI: ErrorOverlayHandler Class [ SkyDrive3] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\imad eddine\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714_1\SkyDriveShell.dll © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer32.dll © O106 - SIOI: DropboxExt ["DropboxExt1"] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © O106 - SIOI: DropboxExt ["DropboxExt2"] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © O106 - SIOI: DropboxExt ["DropboxExt3"] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © O106 - SIOI: DropboxExt ["DropboxExt4"] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © O106 - SIOI: DropboxExt ["DropboxExt5"] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © O106 - SIOI: DropboxExt ["DropboxExt6"] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © O106 - SIOI: DropboxExt ["DropboxExt7"] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © O106 - SIOI: DropboxExt ["DropboxExt8"] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\imad eddine\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll © ---\\ Liste des pilotes du système (91) - 6s O58 - SDL:2012/07/26 06:00:49 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [106736] © O58 - SDL:2012/07/26 06:00:49 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [492272] © O58 - SDL:2012/07/26 06:00:48 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [340720] © O58 - SDL:2012/07/26 06:00:49 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [184048] © O58 - SDL:2012/07/26 06:00:49 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [76016] © O58 - SDL:2012/07/26 06:00:49 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [258288] © O58 - SDL:2012/07/26 06:00:48 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [26352] © O58 - SDL:2011/11/28 14:51:44 A . (.AnvSoft Inc. - AnvSoft Virtual Audio Device.) -- C:\Windows\System32\drivers\anvsnddrv.sys [33872] O58 - SDL:2012/07/26 06:00:49 A . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [104688] © O58 - SDL:2012/07/26 06:00:48 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [108272] © O58 - SDL:2015/05/06 17:35:15 A . (...) -- C:\Windows\System32\drivers\atksgt.sys [303616] O58 - SDL:2012/07/26 06:00:49 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [539376] © O58 - SDL:2012/07/26 06:00:52 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3295984] © O58 - SDL:2010/10/08 09:59:40 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [32768] © O58 - SDL:2013/11/30 09:55:06 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [226176] © O58 - SDL:2013/11/30 10:01:06 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbwwan.sys [456704] © O58 - SDL:2013/12/10 06:36:14 A . (.Huawei Technologies Co., Ltd. - ew_cdcacm Driver.) -- C:\Windows\System32\drivers\ew_cdcacm.sys [121728] © O58 - SDL:2010/09/26 11:09:28 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [22016] © O58 - SDL:2013/01/25 02:16:40 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [109568] © O58 - SDL:2013/11/30 10:10:20 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [91648] © O58 - SDL:2013/11/30 10:10:20 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [110592] © O58 - SDL:2013/11/30 10:10:20 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [77312] © O58 - SDL:2013/11/30 10:10:18 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [30720] © O58 - SDL:2013/11/30 10:11:08 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [246272] © O58 - SDL:2012/12/22 02:46:10 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [14976] © O58 - SDL:2013/12/10 06:37:32 A . (.Huawei Technologies Co., Ltd. - ew_cdcndis Driver.) -- C:\Windows\System32\drivers\ew_wwanecm.sys [376704] © O58 - SDL:2012/10/03 16:14:56 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] © O58 - SDL:2014/02/27 18:40:32 A . (.VMware, Inc. - VMware USB monitor.) -- C:\Windows\System32\drivers\hcmon.sys [54464] © O58 - SDL:2012/07/17 18:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [62784] © O58 - SDL:2012/07/26 06:00:52 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64752] © O58 - SDL:2012/07/26 06:00:52 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [411888] © O58 - SDL:2015/06/12 03:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [197616] © O58 - SDL:2014/10/01 19:54:16 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [3828152] © O58 - SDL:2012/07/26 06:00:52 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [45296] © O58 - SDL:2014/02/20 12:59:04 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [457824] © O58 - SDL:2012/07/27 18:38:24 A . (.Kaspersky Lab - Klelam Mini-Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klelam.sys [29616] © O58 - SDL:2015/03/04 17:10:19 A . (.Kaspersky Lab ZAO - Filter Core [fre_win8_x64].) -- C:\Windows\System32\drivers\klflt.sys [142344] © O58 - SDL:2014/04/10 17:25:32 A . (.Kaspersky Lab ZAO - KLHK [fre_win8_x64].) -- C:\Windows\System32\drivers\klhk.sys [243808] © O58 - SDL:2015/03/04 17:10:19 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klif.sys [771272] © O58 - SDL:2014/02/25 13:09:02 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\Windows\System32\drivers\klim6.sys [30304] © O58 - SDL:2014/03/28 17:51:02 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_win8_x.) -- C:\Windows\System32\drivers\klkbdflt.sys [28768] © O58 - SDL:2013/08/08 17:11:00 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [29280] © O58 - SDL:2013/04/12 15:34:48 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [15456] © O58 - SDL:2014/03/19 17:00:38 A . (.Kaspersky Lab ZAO - Network filtering component [fre_win8_x64].) -- C:\Windows\System32\drivers\klwfp.sys [67680] © O58 - SDL:2014/03/26 17:05:28 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) -- C:\Windows\System32\drivers\kneps.sys [179296] © O58 - SDL:2015/05/06 17:35:11 A . (...) -- C:\Windows\System32\drivers\lirsgt.sys [35328] O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [108784] © O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [92400] © O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [116976] © O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [81136] © O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] © O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] © O58 - SDL:2015/10/01 12:50:50 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [113880] © O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [51952] © O58 - SDL:2012/07/26 06:00:52 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [353008] © O58 - SDL:2012/07/26 06:00:55 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [64240] © O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [64216] © O58 - SDL:2014/10/18 16:09:48 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28ux.sys [2217616] O58 - SDL:2012/07/26 06:00:55 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [52464] © O58 - SDL:2015/06/17 10:10:27 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [204648] © O58 - SDL:2015/09/14 01:29:48 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11096696] © O58 - SDL:2012/07/26 06:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150256] © O58 - SDL:2012/07/26 06:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168176] © O58 - SDL:2015/08/11 05:52:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [50472] © O58 - SDL:2012/06/02 15:31:56 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [589824] © O58 - SDL:2012/07/26 09:11:43 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2012/07/26 06:00:55 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44784] © O58 - SDL:2012/07/26 06:00:56 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81648] © O58 - SDL:2010/05/10 08:09:36 A . (.TechniSat Digital, S.A. - NDIS 5.0 driver.) -- C:\Windows\System32\drivers\SkyNET_AMD64.sys [617048] O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [108800] © O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] © O58 - SDL:2014/01/22 08:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\Windows\System32\drivers\ssudserd.sys [206080] © O58 - SDL:2012/07/26 06:00:55 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [30960] © O58 - SDL:2010/06/14 09:32:54 A . (.Teruten Inc - File System Mini Filter Drvier.) -- C:\Windows\System32\drivers\TFsExDisk.sys [16448] © O58 - SDL:2015/10/01 21:17:05 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [35064] O58 - SDL:2013/09/06 14:27:12 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [238352] © O58 - SDL:2013/09/06 14:25:40 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\Windows\System32\drivers\VBoxNetAdp.sys [131856] © O58 - SDL:2013/09/06 14:25:40 A . (.Oracle Corporation - VirtualBox Bridged Networking Driver.) -- C:\Windows\System32\drivers\VBoxNetFlt.sys [146704] © O58 - SDL:2013/09/06 14:25:40 A . (.Oracle Corporation - VirtualBox USB Driver.) -- C:\Windows\System32\drivers\VBoxUSB.sys [106256] © O58 - SDL:2013/09/06 14:25:40 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [119056] © O58 - SDL:2012/01/10 15:09:44 A . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\viahduaa.sys [2184816] © O58 - SDL:2012/07/26 06:00:58 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19184] © O58 - SDL:2013/10/08 18:21:06 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\Windows\System32\drivers\vmci.sys [85584] © O58 - SDL:2014/06/12 18:22:02 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\Windows\System32\drivers\vmnet.sys [24656] © O58 - SDL:2014/06/12 18:22:02 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\Windows\System32\drivers\vmnetadapter.sys [20560] © O58 - SDL:2014/06/12 18:22:02 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\Windows\System32\drivers\vmnetbridge.sys [46160] © O58 - SDL:2014/06/12 18:22:50 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\Windows\System32\drivers\vmnetuserif.sys [31448] © O58 - SDL:2014/06/12 18:23:04 A . (.VMware, Inc. - VMware kernel driver.) -- C:\Windows\System32\drivers\vmx86.sys [64728] © O58 - SDL:2012/07/26 06:00:58 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [164080] © O58 - SDL:2013/10/08 18:21:10 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\Windows\System32\drivers\vsock.sys [73296] © O58 - SDL:2012/07/26 06:00:58 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [322800] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (7) - 55s O61 - LFC: 2015/09/29 11:25:37 A . (..) -- C:\Users\imad eddine\Desktop\registerdll.bat [2906] O61 - LFC: 2015/09/27 17:24:57 A . (..) -- C:\Users\imad eddine\AppData\Roaming\SmartSteamEmu\375960\stats.bin [4] O61 - LFC: 2015/10/01 06:00:40 A . (..) -- C:\Users\imad eddine\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5284082] O61 - LFC: 2015/10/01 11:44:58 A . (..) -- C:\Users\imad eddine\AppData\Local\NVIDIA\NvBackend\Packages\00007f6a\CoProc update.20014793.exe [528632] O61 - LFC: 2015/10/01 11:45:59 A . (..) -- C:\Users\imad eddine\AppData\Local\NVIDIA\NvBackend\Packages\00007f51\DAO.20007618.exe [6369152] O61 - LFC: 2015/09/27 15:22:52 A . (..) -- C:\Users\imad eddine\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714_1\CollectOneDriveLogs.bat [5843] O61 - LFC: 2015/09/26 16:05:53 A . (..) -- C:\Users\imad eddine\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Enumère les services démarrés par Svchost (35) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [190976] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [149504] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [149504] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [309248] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1366016] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1071104] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99840] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [358400] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [107520] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [62976] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [438784] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [305664] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3318784] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [826368] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [565760] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [894464] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [69632] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151552] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [105472] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1282560] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [219648] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [80384] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [291328] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [97792] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [190464] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1968128] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [47104] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [207872] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [161792] © O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [178176] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [187392] © ---\\ Liste des exceptions du parefeu Windows (44) - 5s O87 - FAEL: "{F8612A81-0F7F-46A5-812E-0039442A2B18}" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\imad eddine\AppData\Roaming\BitTorrent\BitTorrent.exe O87 - FAEL: "{5F4E950C-9745-4305-B068-3F0BA5C91060}" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\Users\imad eddine\AppData\Roaming\BitTorrent\BitTorrent.exe O87 - FAEL: "{64166DCF-C72E-4834-914D-5CE70F96A5D5}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{7F4FF955-B7D7-40B8-8810-8D5D6EE2898C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{AF6E7AD1-8E69-4B38-8004-0B65D8A96200}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Windows Live\Messenger\wlcsdk.exe (.not file.) O87 - FAEL: "{9DED5E8D-1683-42FC-BC40-029A5C122266}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.) O87 - FAEL: "{7B31245B-41A5-4F0B-8288-C87EACBF1452}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "{0EFFF596-E63B-460E-BE33-10565C9FDCE8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "{CB6E6E31-16A4-4E55-927F-275B38719305}" [In-None-P6-TRUE] .(...) -- C:\Users\imad eddine\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{79C901B5-EBF2-4FAF-BA9B-E53DF69802F9}" [In-None-P17-TRUE] .(...) -- C:\Users\imad eddine\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{3BD1D2B7-27D5-49ED-B4F4-E012BD85CA28}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Movies App\Datamngr\SRTOOL~1\IE\dtuser.exe (.not file.) =>PUP.Optional.CrossRider O87 - FAEL: "{8D63D3E3-967B-408D-AD9A-F46E3FF0E24B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Movies App\Datamngr\SRTOOL~1\IE\dtuser.exe (.not file.) =>PUP.Optional.CrossRider O87 - FAEL: "{BB1FAFAB-E4EB-4368-BC46-0ECBFA01B207}" [In-None-P6-TRUE] .(...) -- C:\Users\imad eddine\Desktop\3dm-fifa15\fifasetup\fifaconfig.exe (.not file.) O87 - FAEL: "{F930E952-78F2-467B-8D60-268A93962CA6}" [In-None-P17-TRUE] .(...) -- C:\Users\imad eddine\Desktop\3dm-fifa15\fifasetup\fifaconfig.exe (.not file.) O87 - FAEL: "{5CB7D47C-FE10-4911-B7E3-5710D3DF1904}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Shank 2\bin\Shank2.exe O87 - FAEL: "{2DB8D64C-49F8-4C70-AF1C-FEC2ECD8174B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Shank 2\bin\Shank2.exe O87 - FAEL: "TCP Query User{4F994C90-BC8D-4D54-81FB-B1D26C5C9BBE}C:\program files (x86)\progdvb\winlirc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\progdvb\winlirc.exe O87 - FAEL: "UDP Query User{087A9EA6-98BA-48D7-8ABA-B933012C4E77}C:\program files (x86)\progdvb\winlirc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\progdvb\winlirc.exe O87 - FAEL: "{39444DE8-16D0-4563-B294-94C1A1C8EB2D}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\progdvb\winlirc.exe O87 - FAEL: "{A530FBF6-260F-41F4-AB04-355379DE11C1}" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\progdvb\winlirc.exe O87 - FAEL: "{48D274A0-517B-4052-8B35-06D10D64FF1C}" [In-None-P6-TRUE] .(.Mobo - Provide Data Support For MoboMarket.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceProxy.exe O87 - FAEL: "{4B954CE7-5E86-4FC6-AC10-B843FD0EBF7E}" [In-None-P17-TRUE] .(.Mobo - Provide Data Support For MoboMarket.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceProxy.exe O87 - FAEL: "{8F70624C-F3F3-4A87-808D-A4393F12ED8E}" [In-None-P6-TRUE] .(.Mobo - Provide Data Support For MoboMarket.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceProxy.exe O87 - FAEL: "{2045CFF5-1B1A-4AB4-B731-89A6ED2DC079}" [In-None-P17-TRUE] .(.Mobo - Provide Data Support For MoboMarket.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceProxy.exe O87 - FAEL: "{9AFE1E5A-803D-4825-AE5A-FD988D77090E}" [In-None-P6-TRUE] .(.Mobo - Provide Data Support For MoboMarket.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceProxy.exe O87 - FAEL: "{AEACC891-5A82-4A47-9E82-92FAE591F7BE}" [In-None-P17-TRUE] .(.Mobo - Provide Data Support For MoboMarket.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceProxy.exe O87 - FAEL: "{42AEC8D9-D684-4BA8-8F99-66F7765CC91A}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboDeviceService.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe O87 - FAEL: "{6AA01DF5-E148-4C4F-B9FE-BF8554395614}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboDeviceService.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe O87 - FAEL: "{6B36422B-4089-4935-8DCE-66277E89BAD7}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboDeviceService.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe O87 - FAEL: "{DDDDC75F-FDD6-40CF-BAFC-D773B01DAF07}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboDeviceService.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe O87 - FAEL: "{A7B29381-6F01-43CF-8627-2AB7DB5F0B6E}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboDeviceService.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe O87 - FAEL: "{5005C84F-4A24-42CE-B75E-78A36A57ADB3}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboDeviceService.) -- C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe O87 - FAEL: "{B1D5AAE6-64DF-4BF7-B26C-ADA88BEE68B4}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\aMoboMarket\aMoboMarket.exe O87 - FAEL: "{736B6124-DE86-45A3-ABC0-56A7CE5A20A9}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\aMoboMarket\aMoboMarket.exe O87 - FAEL: "{E2E680BF-DF1F-496C-8417-E686CB3BACAB}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\aMoboMarket\aMoboMarket.exe O87 - FAEL: "{153CA553-9D76-4140-888B-F760F568C6C0}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\aMoboMarket\aMoboMarket.exe O87 - FAEL: "{CFA5E25D-CF4C-442E-9BFC-F234AA02E6B5}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\aMoboMarket\aMoboMarket.exe O87 - FAEL: "{5B18F5FA-1FAE-4C77-9982-86E165B232AF}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\aMoboMarket\aMoboMarket.exe O87 - FAEL: "{727255DE-BE0E-4580-A708-B07994C16981}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\iMoboMarket\iMoboMarket.exe O87 - FAEL: "{84969ACE-A7D5-4E80-93B7-82F9723EB620}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\iMoboMarket\iMoboMarket.exe O87 - FAEL: "{441D5FDB-2316-44BA-9EAC-79C605B744A7}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\iMoboMarket\iMoboMarket.exe O87 - FAEL: "{5712C385-3139-4B70-8AEC-8DBF0519CE4D}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\iMoboMarket\iMoboMarket.exe O87 - FAEL: "{660A8054-7F88-4DB4-AEC8-210075E8FC2A}" [In-None-P6-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\iMoboMarket\iMoboMarket.exe O87 - FAEL: "{AB90ED0F-4DA9-4E3B-A4F1-52C1B9456546}" [In-None-P17-TRUE] .(.Mobo, Inc. - MoboMarket.) -- C:\Program Files (x86)\Mobo\iMoboMarket\iMoboMarket.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (41) - 13s SR - Auto [2014/10/07 15:09:50] [ 60744] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [2014/04/20 16:15:58] [ 233552] Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe © SR - Auto [2011/08/30 23:05:32] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SS - Auto [2015/04/06 19:06:22] [ 433880] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-Service.exe © SR - Auto [2015/04/06 19:07:00] [ 388824] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe © SR - Auto [2015/04/06 19:08:38] [ 798424] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe © SS - Demand [2014/10/01 19:54:28] [ 281488] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe © SS - Demand [2015/04/25 14:07:53] [ 79360] Creative ALchemy AL6 Licensing Service (Creative ALchemy AL6 Licensing Service) . (.Creative Labs.) - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe © SS - Demand [2015/03/14 00:09:15] [ 79360] Creative Audio Engine Licensing Service (Creative Audio Engine Licensing Service) . (.Creative Labs.) - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe © SR - Auto [2009/08/28 12:45:56] [ 286720] Creative Audio Service (CTAudSvcService) . (.Creative Technology Ltd.) - C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe © SS - Auto [2013/10/26 10:45:14] [ 651856] Djezzy connect. OUC (Djezzy connect. RunOuc) . (...) - C:\Program Files (x86)\Djezzy connect\UpdateDog\ouc.exe SR - Auto [2009/07/29 09:11:46] [ 163840] EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE © SR - Auto [2009/07/29 09:11:46] [ 126464] EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE © SS - Demand [2015/03/14 00:08:09] [ 1045256] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe © SR - Auto [2015/08/27 01:37:41] [ 1155192] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe © SS - Auto [2015/05/03 09:23:06] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/05/03 09:23:06] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SR - Auto [2014/01/15 04:42:44] [ 351824] HWDeviceService64.exe (HWDeviceService64.exe) . (.Copyright (C) 2014.) - C:\ProgramData\DatacardService\HWDeviceService64.exe SS - Demand [2011/08/30 15:55:54] [ 160256] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe © SS - Demand [2005/04/04 00:41:10] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe © SS - Auto [2014/10/01 19:54:24] [ 319376] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\system32\igfxCUIService.exe © SS - Demand [2014/10/15 05:42:08] [ 643880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe © SS - Demand [2015/06/08 10:12:30] [ 625648] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files (x86)\Common Files\LENOVO\easyplussdk\bin\EPHotspot64.exe © SS - Disabled [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe © SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © SR - Auto [2015/08/14 05:39:42] [ 3353360] Mobizen plugin (Mobizen plugin) . (.Rsupport Corporation.) - C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe SR - Auto [2015/09/18 14:41:34] [ 68872] MoboDeviceService (MoboDeviceService) . (.Mobo, Inc..) - C:\Program Files (x86)\Mobo\Service\MoboDeviceService.exe SS - Demand [2015/09/30 20:51:54] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SR - Auto [2012/07/13 16:27:00] [ 769432] @C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe © SR - Auto [2015/08/27 01:37:41] [ 1872504] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe © SR - Auto [2015/08/27 01:37:39] [ 5544568] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe © SR - Auto [2015/09/13 23:09:13] [ 937776] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe © SS - Auto [2015/02/18 20:11:32] [ 315488] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SS - Demand [2015/08/19 21:39:00] [ 838336] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe © SR - Auto [2015/09/13 22:50:29] [ 410744] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe © SR - Auto [2015/09/11 16:34:16] [ 5702416] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe © SR - Auto [2012/01/10 15:09:50] [ 27760] @oem51.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixe (VIAKaraokeService) . (.VIA Technologies, Inc..) - C:\Windows\system32\viakaraokesrv.exe © SR - Auto [2014/06/12 17:22:10] [ 86744] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe © SR - Auto [2014/02/27 18:40:46] [ 906432] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe © SR - Auto [2014/06/12 17:44:08] [14407384] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe ---\\ Recherche de clés de registre Tracing (2) - 2s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iLividMediaBar_RASAPI32 =>PUP.Optional.Bandoo HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iLividSetup-r2155-n-bf_RASAPI32 =>PUP.Optional.Bandoo ---\\ Scan Additionnel (10) - 0s C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\iLivid =>PUP.Optional.Bandoo C:\Program Files (x86)\Movies App =>PUP.Optional.CrossRider C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\imad eddine\AppData\Local\iLivid =>PUP.Optional.Bandoo C:\Users\imad eddine\AppData\Local\PackageAware =>PUP.Optional.BearShare HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iLividMediaBar_RASAPI32 =>PUP.Optional.Bandoo HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\iLividSetup-r2155-n-bf_RASAPI32 =>PUP.Optional.Bandoo ---\\ Récapitulatif des éléments trouvées sur votre station (6) - 0s http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/adware-bandoo/ =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/pup-bearshare/ =>PUP.Optional.BearShare http://www.nicolascoolman.fr/pup-kmspico/ =>HackTool.KMSpico ~ End of the scan, 52507 items in 218 seconds (1467)(0)()