~ ZHPDiag v2016.2.20.56 By Nicolas Coolman (2016/02/20) ~ Run by tqyeb (Administrator) (2016/02/22 00:48:58) ~ Web: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: D:\Documents and Settings\tqyeb\سطح المكتب\ZHPDiag.txt ~ Report: D:\Documents and Settings\tqyeb\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ System startup: Normal (Normal boot) Windows XP, 32-bit Service Pack 3 (Build 2600) ---\\ Internet Browsers (2) - 0s MFIE: Mozilla Firefox 37.0 (x86 en-US) MSIE: Internet Explorer v8.0.6001.18702 ---\\ Windows Product Information (3) - 0s Windows Automatic Updates : OK Windows Activation Technologies : KO Windows Genuine Advantage : KO ---\\ System protection software (1) - 0s SMADAV version 10.5.1 v10.5.1 ---\\ Surveillance software (2) - 0s Adobe Flash Player 11 ActiveX Adobe Reader 9.3 - Français ---\\ Information on the system (6) - 0s ~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3649.192 MB (45% free) System Restore: Activé (Enable) System drive D: has 107 GB () free of 119 GB ---\\ Connection to the system mode (3) - 0s ~ Computer Name: TAYEB-8790BDE1C ~ User Name: tqyeb ~ Logged in as Administrator ---\\ Enumeration of the disk units (6) - 0s ~ Drive C: has 0 GB free of 0 GB ~ Drive D: has 107 GB free of 119 GB (System) ~ Drive E: has 355 GB free of 356 GB ~ Drive G: has 99 GB free of 99 GB ~ Drive H: has 139 GB free of 187 GB ~ Drive I: has 99 GB free of 188 GB ---\\ State of the Windows Security Center (8) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Search Generic System Files (23) - 1s [MD5.CA3445DCE9EB70A2CA2504E0AF5C543F] - 15/04/2008 - (.Microsoft Corporation - Windows Explorer.) -- D:\WINDOWS\Explorer.exe [1031168] =>.Microsoft Corporation [MD5.2E1D9DC86EDD12BDFC90E6D24AD821D1] - 15/04/2008 - (.Microsoft Corporation - Run a DLL as an App.) -- D:\WINDOWS\System32\rundll32.exe [33280] =>.Microsoft Corporation [MD5.E68AA31DA41BAE070C550CE6AD51D3D4] - 14/04/2012 - (.Microsoft Corporation - Internet Extensions for Win32.) -- D:\WINDOWS\System32\wininet.dll [919552] =>.Microsoft Corporation [MD5.BCEDF9DCCBC807108CE34C9834074C34] - 15/04/2008 - (.Microsoft Corporation - Windows NT Logon Application.) -- D:\WINDOWS\System32\Winlogon.exe [506880] =>.Microsoft Corporation [MD5.2C9081C0D2A64BCD700E59530DDA7F4D] - 14/04/2012 - (.Microsoft Corporation - DNS Client API DLL.) -- D:\WINDOWS\System32\dnsapi.dll [149504] =>.Microsoft Corporation [MD5.F6B7B1ECD7B41736BDB6FF4B092BCB79] - 14/04/2012 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- D:\WINDOWS\System32\drivers\AFD.sys [138496] =>.Microsoft Corporation [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - 14/04/2008 - (.Microsoft Corporation - IDE/ATAPI Port Driver.) -- D:\WINDOWS\System32\drivers\atapi.sys [96512] =>.Microsoft Corporation [MD5.C885B02847F5D2FD45A24E219ED93B32] - 15/04/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- D:\WINDOWS\System32\drivers\Cdfs.sys [63744] =>.Microsoft Corporation [MD5.1F4260CC5B42272D71F79E570A27A4FE] - 15/04/2008 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- D:\WINDOWS\System32\drivers\Cdrom.sys [62976] =>.Microsoft Corporation [MD5.9B6AF9E7E172249AFC4AF5576B506233] - 15/04/2008 - (.Microsoft Corporation - FIPS Crypto Driver.) -- D:\WINDOWS\System32\drivers\Fips.sys [44672] =>.Microsoft Corporation [MD5.573C7D0A32852B48F3058CFD8026F511] - 15/04/2008 - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- D:\WINDOWS\System32\drivers\HDAudBus.sys [144384] [MD5.9354FAA5F4084CCB31A868BFA4BC2ED0] - 15/04/2008 - (.Microsoft Corporation - i8042 Port Driver.) -- D:\WINDOWS\System32\drivers\i8042prt.sys [51712] =>.Microsoft Corporation [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - 15/04/2008 - (.Microsoft Corporation - IMAPI Kernel Driver.) -- D:\WINDOWS\System32\drivers\Imapi.sys [42112] =>.Microsoft Corporation [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - 15/04/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- D:\WINDOWS\System32\drivers\IpNat.sys [152832] =>.Microsoft Corporation [MD5.23C74D75E36E7158768DD63D92789A91] - 15/04/2008 - (.Microsoft Corporation - IPSec Driver.) -- D:\WINDOWS\System32\drivers\IPSec.sys [75264] =>.Microsoft Corporation [MD5.FB2FCCC70F7174C7BF64F48E96D3ADF4] - 14/04/2012 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- D:\WINDOWS\System32\drivers\MRxSmb.sys [457856] =>.Microsoft Corporation [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - 15/04/2008 - (.Microsoft Corporation - MBT Transport driver.) -- D:\WINDOWS\System32\drivers\netBT.sys [162816] =>.Microsoft Corporation [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - 15/04/2008 - (.Microsoft Corporation - NT File System Driver.) -- D:\WINDOWS\System32\drivers\ntfs.sys [574976] =>.Microsoft Corporation [MD5.88FFA60E94CA89C489DB4C6A38994EBF] - 14/04/2012 - (.Microsoft Corporation - Parallel Port Driver.) -- D:\WINDOWS\System32\drivers\Parport.sys [79872] =>.Microsoft Corporation [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - 15/04/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- D:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] =>.Microsoft Corporation [MD5.15CABD0F7C00C47C70124907916AF3F1] - 14/04/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- D:\WINDOWS\System32\drivers\rdpdr.sys [196224] =>.Microsoft Corporation [MD5.1AAFCAEED86CD38DB3C501610F28F131] - 15/04/2008 - (.Microsoft Corporation - Redbook Audio Filter Driver.) -- D:\WINDOWS\System32\drivers\redbook.sys [57472] =>.Microsoft Corporation [MD5.E3EED80ADEA08F324A3722AB81E136D0] - 15/04/2008 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- D:\WINDOWS\System32\drivers\volsnap.sys [52352] =>.Microsoft Corporation ---\\ Non Microsoft non disabled Windows Services (11) - 0s O23 - Service: (Ati HotKey Poller) . (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) - D:\WINDOWS\system32\ati2evxx.exe =>.ATI Technologies Inc. O23 - Service: خدمة Google Update (gupdate) (gupdate) . (...) - D:\Program Files\Google\Update\GoogleUpdate.exe" /svc (.not file.) O23 - Service: HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V. - HitmanPro Scheduler.) - D:\Program Files\HitmanPro\hmpsched.exe {62C8976F3B1E76427F2D7F26FBE61C21} =>.SurfRight B.V. O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - D:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - D:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - D:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: Splashtop Connect Service (SCBackService) . (.Splashtop Inc. - Splashtop Connect Back Service..) - D:\Program Files\Splashtop\Splashtop Connect\BackService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} O23 - Service: Baidu Spark Service (SparkSvc) . (...) - D:\Program Files\baidu\Spark\sparkservice.exe" -r (.not file.) O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - D:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® O23 - Service: Splashtop Connect Firefox Software Updater Service (WCUService_STC_FF) . (.Splashtop Inc. - Splashtop Connect Firefox Software Updater.) - D:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} O23 - Service: Splashtop Connect IE Software Updater Service (WCUService_STC_IE) . (.Splashtop Inc. - Splashtop Connect IE Software Updater Servi.) - D:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} ---\\ Services not Microsoft (SR=Run, SS=Stop) (16) - 13s SS - Demand [20/02/2016] [ 253088] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - D:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Demand [06/04/2010] [ 31272] AppleChargerSrv (AppleChargerSrv) . (...) - D:\WINDOWS\system32\AppleChargerSrv.exe =>.Giga-Byte Technology® SR - Auto [06/04/2011] [ 643072] (Ati HotKey Poller) . (.ATI Technologies Inc..) - D:\WINDOWS\system32\ati2evxx.exe =>.ATI Technologies Inc. SS - Demand [20/02/2016] [ 194032] Google Software Updater (gusvc) . (.Google.) - D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [22/02/2016] [ 113632] HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V..) - D:\Program Files\HitmanPro\hmpsched.exe {62C8976F3B1E76427F2D7F26FBE61C21} =>.SurfRight B.V. SS - Demand [30/08/2011] [ 160256] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - D:\Program Files\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation SS - Demand [04/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - D:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe =>.Macrovision Corporation SR - Auto [08/12/2011] [ 423136] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - D:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® SR - Auto [16/12/2011] [ 161560] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - D:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® SR - Auto [16/12/2011] [ 277784] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - D:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Demand [25/03/2015] [ 148080] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - D:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [15/11/2010] [ 477000] Splashtop Connect Service (SCBackService) . (.Splashtop Inc..) - D:\Program Files\Splashtop\Splashtop Connect\BackService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} SR - Auto [16/12/2011] [ 363800] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - D:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SR - Auto [30/11/2010] [ 493384] Splashtop Connect Firefox Software Updater Service (WCUService_STC_FF) . (.Splashtop Inc..) - D:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} SR - Auto [04/11/2010] [ 493384] Splashtop Connect IE Software Updater Service (WCUService_STC_IE) . (.Splashtop Inc..) - D:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} ---\\ Process running (43) - 2s [MD5.64DA279C055AA91403449A8FAFFA57EB] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- D:\WINDOWS\system32\ati2evxx.exe [643072] [PID.1224] =>.ATI Technologies Inc. [MD5.64DA279C055AA91403449A8FAFFA57EB] - (.ATI Technologies Inc. - ATI External Event Utility EXE Module.) -- D:\WINDOWS\system32\ati2evxx.exe [643072] [PID.232] =>.ATI Technologies Inc. [MD5.E7D75EC4BBD08FF5B16F875BA4EA810D] - (.Splashtop Inc. - Splashtop Connect ZyngaGames Agent..) -- D:\Program Files\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe [841544] [PID.1420] {4A4F37014523F3A5CD159F8AFA7CAD2D} [MD5.E7704CBF568815C1CAA6E513387BD3F2] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [65536] [PID.1460] =>.Advanced Micro Devices Inc. [MD5.88A5D104AB29EC5BF3C74F608A6C2335] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- D:\WINDOWS\RTHDCPL.EXE [16851968] [PID.1504] =>.Realtek Semiconductor Corp. [MD5.2BEBF108686A4867209DA7E55987201A] - (.Tonec Inc. - Internet Download Manager (IDM).) -- D:\Program Files\Internet Download Manager\IDMan.exe [3929296] [PID.1616] =>.Tonec Inc. [MD5.2398C51C991139EB4254395D6368BC0B] - (.Copyright (C) 2013 - ProgLauncher Application.) -- D:\Program Files\ProgDVB\ProgLauncher.exe [383424] [PID.460] {00D0692F249426EFCD637DC8AD31F26A72} [MD5.28B3162EC8D01114313D7F447D8E157E] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- D:\Program Files\Intel\iCLS Client\HeciServer.exe [423136] [PID.260] =>.Intel® Upgrade Service® [MD5.166FC0B36842135BC2D3C32DF70ED0D6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- D:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.572] =>.Intel Corporation® [MD5.ADB8BFFB7FE27AE4EAE53D27C1B08B87] - (.TechniSat Digital, S.A. - Server4PC.) -- D:\Program Files\TechniSat DVB\bin\Server4PC.exe [313432] [PID.316] {2C5D42FC43A12D70F325CE92FC95048C} [MD5.C56E64BA70DC822B84D100A6F8D690D3] - (.Intel Corporation - Local Manageability Service.) -- D:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.776] =>.Intel Corporation® [MD5.8475E746EB72D04F1015E6F091F50E09] - (.Splashtop Inc. - Splashtop Connect Back Service..) -- D:\Program Files\Splashtop\Splashtop Connect\BackService.exe [477000] [PID.1252] {4A4F37014523F3A5CD159F8AFA7CAD2D} [MD5.4C4EA569565C06C12C02A08A600667C0] - (.Baidu Inc. - spark.) -- D:\Program Files\baidu\Spark\sparkservice.exe [80576] [PID.1640] [MD5.ADB8BFFB7FE27AE4EAE53D27C1B08B87] - (.TechniSat Digital, S.A. - Server4PC.) -- D:\Program Files\TechniSat DVB\bin\Server4PC.exe [313432] [PID.816] {2C5D42FC43A12D70F325CE92FC95048C} [MD5.CCE5D71F19AB70D969F9819B5C88438D] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [65536] [PID.928] =>.ATI Technologies Inc. [MD5.0F9E1BC7E2BEA1A4108EC9736CF0C2D9] - (.Intel Corporation - User Notification Service.) -- D:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.1496] =>.Intel Corporation® [MD5.DBF0D60BA1FB075A25884B65071B1B82] - (.Splashtop Inc. - Splashtop Connect Firefox Software Updater.) -- D:\Program Files\Splashtop\Splashtop Connect Firefox Software Updater\WCUService.exe [493384] [PID.2380] {4A4F37014523F3A5CD159F8AFA7CAD2D} [MD5.FB8FA36625FDEB6A056B11414ACFA552] - (.Splashtop Inc. - Splashtop Connect IE Software Updater Servi.) -- D:\Program Files\Splashtop\Splashtop Connect IE Software Updater\WCUService.exe [493384] [PID.2472] {4A4F37014523F3A5CD159F8AFA7CAD2D} [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- D:\Program Files\Internet Download Manager\IEMonitor.exe [269848] [PID.1432] =>.Tonec Inc.® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.1652] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3028] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3108] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3124] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3168] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3176] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3184] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3752] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.280] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.2760] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.568] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.3552] =>.Google Inc® [MD5.808A7BB8C03A3F52966AD06F42368343] - (.Nicolas Coolman - ZHPDiag.) -- D:\Documents and Settings\tqyeb\سطح المكتب\ZHPDiag3.exe [2126336] [PID.2584] =>.Nicolas Coolman [MD5.6CFA5046023865F47E93394E30C78ECB] - (.Prog - ProgDvbNet.) -- D:\Program Files\ProgDVB\ProgDVBNet.exe [1393088] [PID.524] {00D0692F249426EFCD637DC8AD31F26A72} [MD5.4B8E156A310F35D2E435CF981F7B50B6] - (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) -- D:\Program Files\SMADAV\SMΔRTP.exe [1716224] [PID.2120] [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.2544] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.940] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.1984] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.176] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.2608] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe [746648] [PID.2100] =>.Google Inc® [MD5.808A7BB8C03A3F52966AD06F42368343] - (.Nicolas Coolman - ZHPDiag.) -- D:\Documents and Settings\tqyeb\سطح المكتب\ZHPDiag3.exe [2126336] [PID.4356] =>.Nicolas Coolman [MD5.CBDD370C3664CCD13B891C2A0652D9C7] - (.SurfRight B.V. - HitmanPro 3.7.) -- D:\Documents and Settings\tqyeb\My Documents\Downloads\Programs\HitmanPro.exe [10459376] [PID.3984] {62C8976F3B1E76427F2D7F26FBE61C21} =>.SurfRight B.V. [MD5.53CAA3A9722676B2B3C551A9350C9013] - (.SurfRight B.V. - HitmanPro Scheduler.) -- D:\Program Files\HitmanPro\hmpsched.exe [113632] [PID.4292] {62C8976F3B1E76427F2D7F26FBE61C21} =>.SurfRight B.V. ---\\ Google Chrome, Start,Search,Extensions (25) - 1s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.linkzb.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://isearch.omiga-plus.com/ =>PUP.Optional.OmigaPlus G2 - GCE: Preference [User Data\Default] [aapbdbdomjkkjkaonfhkkikfgjllcleb] __MSG_8969005060131950570__ G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cdihkdldaicijakhchgojcokhpamkibi] CPU Monitor G2 - GCE: Preference [User Data\Default] [cigiagpbkapepgklncnajbakkpkopmam] Spry this! G2 - GCE: Preference [User Data\Default] [cnpniohnfphhjihaiiggeabnkjhpaldj] Image Downloader G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ggfgijbpiheegefliciemofobhmofgce] CSSViewer G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [kpdjmbiefanbdgnkcikhllpmjnnllbbc] Save as PDF G2 - GCE: Preference [User Data\Default] [mjafmkicbmhcbapadecadciafbkecofl] Until AM for Chrome G2 - GCE: Preference [User Data\Default] [mjocghlclkpgheifflemilcnblodjohg] __MSG_name__ G2 - GCE: Preference [User Data\Default] [mlikepnkghhlnkgeejmlkfeheihlehne] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ngbcgifdaopbfflfhbcfeomijfbbcadi] Downloads G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pgphcomnlaojlmmcjmiddhdapjpbgeoc] Send from Gmail (by Google) G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pnnfemgpilpdaojpnkjdgfgbnnjojfik] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (14) - 2s M1 - SPR:Search Page Redirection - D:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT FILE: (...) -- D:\Documents and Settings\tqyeb\Application Data\Mozilla\Firefox\Profiles\uruzghnp.default\searchplugins\bing.xml P2 - EXT FILE: (...) -- D:\Documents and Settings\tqyeb\Application Data\Mozilla\Firefox\Profiles\uruzghnp.default\searchplugins\google.xml P2 - EXT FILE: (...) -- D:\Documents and Settings\tqyeb\Application Data\Mozilla\Firefox\Profiles\uruzghnp.default\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\amazondotcom.xml P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\eBay.xml P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\twitter.xml P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia.xml P2 - EXT: (...) -- D:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo P2 - EXT: (.Mozilla - Default.) -- D:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla ---\\ Internet Explorer Extensions, Start, Search (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {0F3DC9E0-C459-4a40-BCF8-747BD9322E10} Orphean R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit=D:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=D:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl" ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (19) ---\\ Browser Helper Object (BHO) (5) - 0s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- D:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: Splashtop Connect VisualBookmark - {0E5680D1-BF44-4929-94AF-FD30D784AD1D} . (.Splashtop Inc. - Splashtop Connect IE Extension..) -- D:\Program Files\Splashtop\Splashtop Connect IE\STC.dll {4A4F37014523F3A5CD159F8AFA7CAD2D} O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>.Google Inc® ---\\ Auto loading programs from Registry and folders (24) - 1s O4 - HKLM\..\Run: [IMJPMIG8.1] D:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 (.not file.) O4 - HKLM\..\Run: [MSPY2002] . (...) -- D:\WINDOWS\system32\IME\PINTLGNT\IMSCINST.EXE O4 - HKLM\..\Run: [PHIME2002ASync] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE =>.Microsoft Corporation O4 - HKLM\..\Run: [PHIME2002A] . (.Microsoft Corporation - 微軟新注音輸入法 2002a.) -- D:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE =>.Microsoft Corporation O4 - HKLM\..\Run: [STCAgent] . (.Splashtop Inc. - Splashtop Connect IE Agent..) -- D:\Program Files\Splashtop\Splashtop Connect IE\STCAgent.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} O4 - HKLM\..\Run: [ZyngaGamesAgent] . (.Splashtop Inc. - Splashtop Connect ZyngaGames Agent..) -- D:\Program Files\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe {4A4F37014523F3A5CD159F8AFA7CAD2D} O4 - HKLM\..\Run: [StartCCC] D:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun (.not file.) O4 - HKLM\..\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- D:\WINDOWS\RTHDCPL.EXE =>.Realtek Semiconductor Corp. O4 - HKLM\..\Run: [Alcmtr] . (.Realtek Semiconductor Corp. - Realtek Azalia Audio - Event Monitor.) -- D:\WINDOWS\ALCMTR.EXE =>.Realtek Semiconductor Corp. O4 - HKLM\..\Run: [KernelFaultCheck] D:\WINDOWS\system32\dumprep 0 -k (.not file.) O4 - HKLM\..\Run: [SMΔRT-Protection] . (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) -- D:\Program Files\SMADAV\SMΔRTP.exe O4 - HKCU\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [ProgLauncher] . (.Copyright (C) 2013 - ProgLauncher Application.) -- D:\Program Files\ProgDVB\ProgLauncher.exe {00D0692F249426EFCD637DC8AD31F26A72} O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-484763869-1965331169-1417001333-1003\..\Run: [CTFMON.EXE] . (.Microsoft Corporation - CTF Loader.) -- D:\WINDOWS\system32\ctfmon.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-484763869-1965331169-1417001333-1003\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-484763869-1965331169-1417001333-1003\..\Run: [ProgLauncher] . (.Copyright (C) 2013 - ProgLauncher Application.) -- D:\Program Files\ProgDVB\ProgLauncher.exe {00D0692F249426EFCD637DC8AD31F26A72} ---\\ Global shortcuts Startup (77) - 3s O4 - GS\Desktop [Administrator]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Desktop [Administrator]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Desktop [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrator]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) D:\Documents and Settings\tqyeb\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Quicklaunch [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrator]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [Administrator]: Spark Browser.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\Desktop [ASPNET]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Desktop [ASPNET]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Desktop [ASPNET]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [ASPNET]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [ASPNET]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) D:\Documents and Settings\tqyeb\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [ASPNET]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Quicklaunch [ASPNET]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [ASPNET]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Quicklaunch [ASPNET]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [ASPNET]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [ASPNET]: Spark Browser.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\Desktop [Guest]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Desktop [Guest]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Desktop [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Guest]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) D:\Documents and Settings\tqyeb\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Quicklaunch [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Guest]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [Guest]: Spark Browser.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\Desktop [HelpAssistant]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Desktop [HelpAssistant]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Desktop [HelpAssistant]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [HelpAssistant]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [HelpAssistant]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) D:\Documents and Settings\tqyeb\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [HelpAssistant]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Quicklaunch [HelpAssistant]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [HelpAssistant]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Quicklaunch [HelpAssistant]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [HelpAssistant]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [HelpAssistant]: Spark Browser.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\Desktop [SUPPORT_388945a0]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Desktop [SUPPORT_388945a0]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Desktop [SUPPORT_388945a0]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [SUPPORT_388945a0]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [SUPPORT_388945a0]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) D:\Documents and Settings\tqyeb\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [SUPPORT_388945a0]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Quicklaunch [SUPPORT_388945a0]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [SUPPORT_388945a0]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Quicklaunch [SUPPORT_388945a0]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [SUPPORT_388945a0]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [SUPPORT_388945a0]: Spark Browser.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\Desktop [tqyeb]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Desktop [tqyeb]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Desktop [tqyeb]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) D:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [tqyeb]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Desktop [tqyeb]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) D:\Documents and Settings\tqyeb\Application Data\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [tqyeb]: DVBViewer TE2.lnk . (.CM&V Hackbart - DVBViewer TE2.) D:\Program Files\DVBViewer TE2\DVBViewerTE.exe O4 - GS\Quicklaunch [tqyeb]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [tqyeb]: Hard Disk Low Level Format Tool.lnk . (...) D:\Program Files\HDDGURU LLF Tool\LLFTOOL.EXE O4 - GS\Quicklaunch [tqyeb]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [tqyeb]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) D:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent O4 - GS\Quicklaunch [tqyeb]: Spark Browser.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\CommonDesktop [Public]: Adobe Reader 9.lnk . (.Adobe Systems Incorporated - Adobe Reader 9.3.) D:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: ET6.lnk . (.Copyright (C) 2011 - ET6SC MFC Application.) D:\Program Files\GIGABYTE\ET6\ET6SC.exe =>.Giga-Byte Technology® O4 - GS\CommonDesktop [Public]: Facebook.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Google.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe O4 - GS\CommonDesktop [Public]: HitmanPro.lnk . (.SurfRight B.V. - HitmanPro 3.7.) D:\Program Files\HitmanPro\HitmanPro.exe {62C8976F3B1E76427F2D7F26FBE61C21} =>.SurfRight B.V. O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: ProgDVB 7.lnk . (.Prog - ProgDvbNet.) D:\Program Files\ProgDVB\ProgDvbNet.exe {00D0692F249426EFCD637DC8AD31F26A72} O4 - GS\CommonDesktop [Public]: ProgTV.lnk . (.Prog - ProgTV.) D:\Program Files\ProgDVB\ProgTV.exe {00D0692F249426EFCD637DC8AD31F26A72} O4 - GS\CommonDesktop [Public]: SMADΔV.lnk . (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) D:\Program Files\SMADAV\SMΔRTP.exe O4 - GS\CommonDesktop [Public]: Spark Browser.lnk . (.Copyright (C) 2011 - spark.) D:\Program Files\baidu\Spark\Spark.exe ---\\ Lop.com/Domain Hijackers (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B34E3969-F64F-4B73-BCF5-8552DCA19981}: DhcpNameServer = 192.168.1.1 ---\\ Extra protocols (28) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- D:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- D:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation® O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- D:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- D:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- D:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API.) -- D:\WINDOWS\system32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- D:\WINDOWS\system32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- D:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- D:\WINDOWS\system32\msvidctl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- D:\WINDOWS\system32\mshtml.dll =>.Microsoft Corporation O18 - Handler: wia - {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} . (.Microsoft Corporation - WIA Scripting Layer.) -- D:\WINDOWS\system32\wiascr.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- D:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- D:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- D:\WINDOWS\system32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- D:\WINDOWS\system32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/webviewhtml - {733AC4CB-F1A4-11d0-B951-00A0C90312E1} . (.Microsoft Corporation - Windows Shell Common Dll.) -- D:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (76) - 9s O42 - Logiciel: @BIOS - (.GIGABYTE.) [HKLM] -- {B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83} =>.Gigabyte O42 - Logiciel: Adobe Flash Player 11 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader 9.3 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A93000000001} =>.Adobe Systems Incorporated O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM] -- {A25FF1C0-80B6-4B8B-A551-DC525697A408} =>.Advanced Micro Devices Inc. O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Atheros Communications Inc. O42 - Logiciel: ATI AVIVO Codecs - (.ATI Technologies Inc..) [HKLM] -- {179FCA78-56FE-E18A-F7AA-7400D27015DF} =>.ATI Technologies Inc. O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM] -- {ED25F140-5B9E-AF84-D538-659CFE06F802} =>.ATI Technologies, Inc. O42 - Logiciel: ATI Problem Report Wizard - (.ATI Technologies.) [HKLM] -- {645B12E8-392A-B19F-75A4-BC47A27395F6} =>.ATI Technologies O42 - Logiciel: AutoGreen B12.0206.1 - (.GIGABYTE.) [HKLM] -- {C75FAD21-EC08-42F3-92D6-C9C0AB355345} =>.Gigabyte O42 - Logiciel: AutoGreen B12.0206.1 - (.GIGABYTE.) [HKLM] -- InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345} =>.Gigabyte O42 - Logiciel: Catalyst Control Center - (.Nom de votre société.) [HKLM] -- {23D25EE0-C3EA-C20C-DE9D-7B0B42E4E273} O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM] -- {19A492A0-888F-44A0-9B21-D91700763F62} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.ATI.) [HKLM] -- {580DCC99-006E-2DBC-5B72-E05A377522E9} =>.ATI O42 - Logiciel: Catalyst Control Center InstallProxy - (.ATI Technologies, Inc..) [HKLM] -- {CDCC1ACA-4790-7C82-8942-B8BFAC78B27C} =>.ATI Technologies, Inc. O42 - Logiciel: Catalyst Control Center Localization All - (.ATI.) [HKLM] -- {E0644D70-E91D-0993-7E04-B8F153948767} =>.ATI O42 - Logiciel: CCC Help Chinese Standard - (.ATI.) [HKLM] -- {76F30390-5EAA-A6BD-12FA-59EE07BD46DC} =>.ATI O42 - Logiciel: CCC Help Chinese Traditional - (.ATI.) [HKLM] -- {B7C96566-4DC2-42E6-E836-7F6572986F67} =>.ATI O42 - Logiciel: CCC Help Czech - (.ATI.) [HKLM] -- {C9459960-561E-A0D0-E89B-A3867998D20A} =>.ATI O42 - Logiciel: CCC Help Danish - (.ATI.) [HKLM] -- {8D11F34C-076E-B55F-BEF4-3B84249CEDF2} =>.ATI O42 - Logiciel: CCC Help Dutch - (.ATI.) [HKLM] -- {1C2C2014-5286-B004-3DB7-CB90326A641D} =>.ATI O42 - Logiciel: CCC Help English - (.ATI.) [HKLM] -- {2D3AE811-A39F-222C-410F-569DEFB832CA} =>.ATI O42 - Logiciel: CCC Help Finnish - (.ATI.) [HKLM] -- {73A0C5FD-F7E3-058C-EC2C-5BA858FFEF3A} =>.ATI O42 - Logiciel: CCC Help French - (.ATI.) [HKLM] -- {E43E0F37-5652-0A5A-C70D-47C1628B7A0D} =>.ATI O42 - Logiciel: CCC Help German - (.ATI.) [HKLM] -- {AFD199E8-E25E-4461-76EB-36C23637E9A6} =>.ATI O42 - Logiciel: CCC Help Greek - (.ATI.) [HKLM] -- {6CCE3112-A21B-8516-54A9-3EDDF12CF969} =>.ATI O42 - Logiciel: CCC Help Hungarian - (.ATI.) [HKLM] -- {DDC00002-5F04-2FA1-694F-E3E23471C62D} =>.ATI O42 - Logiciel: CCC Help Italian - (.ATI.) [HKLM] -- {848666E7-7BF4-143C-D25B-979C4BCA60A9} =>.ATI O42 - Logiciel: CCC Help Japanese - (.ATI.) [HKLM] -- {29285630-15B0-6385-C769-2AD640BDAF19} =>.ATI O42 - Logiciel: CCC Help Korean - (.ATI.) [HKLM] -- {5A4A211A-4036-58AA-2E80-1B1793C7380A} =>.ATI O42 - Logiciel: CCC Help Norwegian - (.ATI.) [HKLM] -- {2794ADC1-3F26-E48F-41AD-708412A2146E} =>.ATI O42 - Logiciel: CCC Help Polish - (.ATI.) [HKLM] -- {E77DB7A7-02A8-001B-E985-09BDA8A8FEBC} =>.ATI O42 - Logiciel: CCC Help Portuguese - (.ATI.) [HKLM] -- {5BD41020-9A55-4782-5545-0AED766B0F18} =>.ATI O42 - Logiciel: CCC Help Russian - (.ATI.) [HKLM] -- {13EFCF3F-A4B1-2728-D833-F97652BF8815} =>.ATI O42 - Logiciel: CCC Help Spanish - (.ATI.) [HKLM] -- {01254DEC-46CB-B823-BACD-5F6BD9AD0FA9} =>.ATI O42 - Logiciel: CCC Help Swedish - (.ATI.) [HKLM] -- {47BBB614-298D-F1DB-63C9-56DA56916E8F} =>.ATI O42 - Logiciel: CCC Help Thai - (.ATI.) [HKLM] -- {4EDB252E-BBC0-72F9-0F83-562722F554CE} =>.ATI O42 - Logiciel: CCC Help Turkish - (.ATI.) [HKLM] -- {36CDAD74-6764-AEF1-FF2F-7A574290FCCA} =>.ATI O42 - Logiciel: ccc-utility - (.ATI.) [HKLM] -- {EC1867F7-506B-48B7-5BF3-4FEFC3694696} =>.ATI O42 - Logiciel: DVBViewer TE2 - (.CM&V.) [HKLM] -- DVBViewer TE2_is1 O42 - Logiciel: Easy Tune 6 B12.0320.1 - (.GIGABYTE.) [HKLM] -- {457D7505-D665-4F95-91C3-ECB8C56E9ACA} =>.Gigabyte O42 - Logiciel: Easy Tune 6 B12.0320.1 - (.GIGABYTE.) [HKLM] -- InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA} =>.Gigabyte O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM] -- {D325A4AE-0EAB-3726-912C-6D0A56A95505} =>.Google, Inc. O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>.Google Inc. O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Hard Disk Low Level Format Tool 4.40 - (.HDDGURU.) [HKLM] -- Hard Disk Low Level Format Tool_is1 =>.HDDGURU O42 - Logiciel: HitmanPro 3.7 - (.SurfRight B.V..) [HKLM] -- HitmanPro37 =>.SurfRight B.V. O42 - Logiciel: Hotfix for Windows XP (KB954550-v5) - (.Microsoft Corporation.) [HKLM] -- KB954550-v5 =>.Microsoft Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM] -- {852F940A-BE93-4DF9-98E5-6F5FA7AFF3EE} =>.Intel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: MainConcept DTV Decoder Pro - (.MainConcept GmbH.) [HKLM] -- {793FCE60-DE5E-4977-A942-A7B69A45B17D} =>.MainConcept GmbH O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 - (.Microsoft Corporation.) [HKLM] -- Wdf01009 =>.Microsoft Corporation® O42 - Logiciel: Microsoft Software Update for Web Folders (Arabic) 12 - (.Microsoft Corporation.) [HKLM] -- {90120000-0010-0401-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 37.0 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 37.0 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: ON_OFF Charge B11.0110.1 - (.GIGABYTE.) [HKLM] -- {3DECD372-76A1-4483-BF10-B547790A3261} =>.Gigabyte O42 - Logiciel: ProgDVB - (.Prog.) [HKLM] -- ProgDVB {00D0692F249426EFCD637DC8AD31F26A72} O42 - Logiciel: Realtek HDMI Audio Driver for ATI - (.Realtek Semiconductor Corp..) [HKLM] -- {5449FB4F-1802-4D5B-A6D8-087DB1142147} =>.Realtek Semiconductor Corp. O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: SMADAV version 10.5.1 - (.SmadSoft.) [HKLM] -- {8B9FA5FF-3E61-4658-B0DA-E6DDB46D6BAD}_is1 O42 - Logiciel: Spark Browser - (.Baidu Inc..) [HKLM] -- Spark O42 - Logiciel: Splashtop Connect for Firefox - (.Splashtop Inc..) [HKLM] -- {45D49CA7-D7D8-4659-B35A-EBD98C30AF28} O42 - Logiciel: Splashtop Connect IE - (.Splashtop Inc..) [HKLM] -- {3B983EFD-6E37-4AD9-9A7D-8C83E61674F7} O42 - Logiciel: Star(dvb) Codecs V3.7.0 - (.Stardvb, Inc..) [HKLM] -- {CA1B9ABE-0C40-43E0-8965-0DA206D56EBD}_is1 O42 - Logiciel: TechniSat DVB-PC TV Star - (.TechniSat.) [HKLM] -- {D032A7F0-8B5C-4603-8B46-235025D5F9C1} O42 - Logiciel: WebFldrs XP - (.Microsoft Corporation.) [HKLM] -- {350C97B7-3D7C-4EE8-BAA9-00BCB3D54227} =>.Microsoft Corporation O42 - Logiciel: WinRAR 4.10 (32-بت) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH O42 - Logiciel: برنامج إصلاح (Hotfix) لـ Windows XP (KB2633952)‎ - (.Microsoft Corporation.) [HKLM] -- KB2633952 =>.Microsoft Corporation O42 - Logiciel: تحديث الأمان لـ Microsoft Windows ‏(KB2564958) - (.Microsoft Corporation.) [HKLM] -- KB2564958 =>.Microsoft Corporation O42 - Logiciel: تحديث أمان لـ Windows XP (KB2570947)‎ - (.Microsoft Corporation.) [HKLM] -- KB2570947 =>.Microsoft Corporation O42 - Logiciel: تحديث أمان لـ Windows XP (KB2603381)‎ - (.Microsoft Corporation.) [HKLM] -- KB2603381 =>.Microsoft Corporation O42 - Logiciel: تحديث أمان لـ Windows XP (KB2647518)‎ - (.Microsoft Corporation.) [HKLM] -- KB2647518 =>.Microsoft Corporation O42 - Logiciel: تحديث أمان لـ Windows XP (KB2661637)‎ - (.Microsoft Corporation.) [HKLM] -- KB2661637 =>.Microsoft Corporation O42 - Logiciel: تحديث أمان لـ Windows XP (KB979687)‎ - (.Microsoft Corporation.) [HKLM] -- KB979687 =>.Microsoft Corporation O42 - Logiciel: تحديث لـ Windows XP (KB898461)‎ - (.Microsoft Corporation.) [HKLM] -- KB898461 =>.Microsoft Corporation ---\\ HKCU & HKLM Software Keys (72) - 9s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\Atheros Communications Inc. HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\Baidu HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\CoreCodec HKLM\SOFTWARE\Creative Tech HKLM\SOFTWARE\Debug HKLM\SOFTWARE\Elecard HKLM\SOFTWARE\Gemplus HKLM\SOFTWARE\GIGABYTE HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HitmanPro HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\NVIDIA Corporation HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Program Groups HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\S3R521 HKLM\SOFTWARE\Schlumberger HKLM\SOFTWARE\Secure HKLM\SOFTWARE\Splashtop Inc. HKLM\SOFTWARE\Stardvb HKLM\SOFTWARE\TDS HKLM\SOFTWARE\TechniSat HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent HKLM\SOFTWARE\Windows 3.1 Migration Status HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Wow6432Node HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\ATI HKCU\SOFTWARE\AVS HKCU\SOFTWARE\Baidu HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\DivX HKCU\SOFTWARE\DownloadCenter HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\DScaler5 HKCU\SOFTWARE\Elecard HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\Gigabyte HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SMADΔV HKCU\SOFTWARE\Splashtop Inc. HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper ---\\ Contents of the Common Files folders (129) - 9s O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\AMD O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\AMD APP O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\ATI =>.ATI Technologies, Inc® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\ATI Technologies =>.ATI Technologies, Inc® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\baidu O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files O43 - CFD: 20/02/2016 - [0] D -- D:\Program Files\ComPlus Applications O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\DVBViewer TE2 O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\GIGABYTE =>.Giga-Byte Technology® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Google =>.Google Inc® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\HDDGURU LLF Tool O43 - CFD: 22/02/2016 - [] D -- D:\Program Files\HitmanPro {62C8976F3B1E76427F2D7F26FBE61C21} O43 - CFD: 20/02/2016 - [] HD -- D:\Program Files\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Intel =>.Intel Corporation® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Internet Download Manager O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Internet Explorer O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\MainConcept O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Messenger O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\microsoft frontpage O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Microsoft Visual Studio O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Microsoft Works O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Microsoft.NET O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Movie Maker O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\MSBuild O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\MSN Gaming Zone O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\NetMeeting O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Online Services O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Outlook Express O43 - CFD: 21/02/2016 - [] D -- D:\Program Files\ProgDVB {00D0692F249426EFCD637DC8AD31F26A72} O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Realtek O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Reference Assemblies O43 - CFD: 22/02/2016 - [] D -- D:\Program Files\SMADAV O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Splashtop O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Stardvb O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\TechniSat DVB {2C5D42FC43A12D70F325CE92FC95048C} O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Tencent =>.Superfluous.Tencent O43 - CFD: 20/02/2016 - [0] HD -- D:\Program Files\Uninstall Information O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Windows Media Connect 2 O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Windows Media Player O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Windows NT O43 - CFD: 20/02/2016 - [0] HD -- D:\Program Files\WindowsUpdate O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\WinRAR O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\xerox O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Accessories O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Assistant de signalisation de problèmes ATI O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Catalyst Control Center O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\DVBViewer TE2 O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\GIGABYTE O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\HDD Low Level Format Tool O43 - CFD: 22/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\HitmanPro O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Internet Download Manager O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Microsoft Office O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Mozilla Firefox O43 - CFD: 21/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\ProgDVB O43 - CFD: 22/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\SMADAV Antivirus O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Spark Browser O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\Stardvb O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\TechniSat DVB O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\WinRAR O43 - CFD: 20/02/2016 - [] RD -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\أدوات إدارية O43 - CFD: 20/02/2016 - [] RD -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\البرامج الملحقة O43 - CFD: 20/02/2016 - [] RD -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\بدء التشغيل O43 - CFD: 20/02/2016 - [] RD -- D:\Documents and Settings\All Users\قائمة ابدأ\البرامج\تسالي O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\ArcSoft O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\ATI O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\AVAST Software O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Baidu O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\CMUV O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Google O43 - CFD: 22/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\HitmanPro O43 - CFD: 20/02/2016 - [0] D -- D:\Documents and Settings\All Users\Application Data\IDM O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Intel O43 - CFD: 20/02/2016 - [] SD -- D:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Microsoft Help O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Mozilla O43 - CFD: 21/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\ProgDVB O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Splashtop O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\All Users\Application Data\Technisat O43 - CFD: 20/02/2016 - [] HD -- D:\Documents and Settings\All Users\Application Data\{8533ADFA-85F0-4dc1-946A-2A0BA58E78E3} O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\Adobe O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\ArcSoft O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\ATI Technologies O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\DESIGNER O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\Elecard O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\InstallShield O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\Microsoft Shared O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\MSSoap O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\ODBC O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\postureAgent O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\Services O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\SpeechEngines O43 - CFD: 20/02/2016 - [] D -- D:\Program Files\Common Files\System O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\AC3Filter O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\Adobe O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\ATI O43 - CFD: 21/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\Baidu O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\DMCache O43 - CFD: 21/02/2016 - [0] D -- D:\Documents and Settings\tqyeb\Application Data\Google O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\Identities O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\IDM O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\InstallShield O43 - CFD: 20/02/2016 - [] SD -- D:\Documents and Settings\tqyeb\Application Data\Microsoft O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\Mozilla O43 - CFD: 20/02/2016 - [0] D -- D:\Documents and Settings\tqyeb\Application Data\Smadav O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\Splashtop O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\Tencent =>.Superfluous.Tencent O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\WinRAR O43 - CFD: 22/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Application Data\ZHP O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\ArcSoft O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\ATI O43 - CFD: 21/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\Google O43 - CFD: 20/02/2016 - [] SD -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\Microsoft O43 - CFD: 20/02/2016 - [0] D -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\Microsoft Help O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\Mozilla O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\PCHealth O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\Local Settings\Application Data\Temp O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\Internet Download Manager O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\MainConcept O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\Tencent =>.Superfluous.Tencent O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\WinRAR O43 - CFD: 20/02/2016 - [] RD -- D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\البرامج الملحقة O43 - CFD: 20/02/2016 - [] RD -- D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\بدء التشغيل O43 - CFD: 20/02/2016 - [] D -- D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\‏تطبيقات Chrome ---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 0s O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- D:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Offline Files Menu [Offline Files] - {750fdf0e-2a26-11d1-a3ea-080036587f03}. (.Microsoft Corporation - Client Side Caching UI.) -- D:\WINDOWS\system32\cscui.dll =>.Microsoft Corporation ---\\ System Drivers List (42) - 2s O58 - SDL:2008/08/05 20:10:12 A . (.Creative - Creative WDM 3D Audio Driver.) -- D:\WINDOWS\System32\drivers\Ambfilt.sys [1684736] =>.Creative O58 - SDL:2011/01/10 18:16:16 A . (...) -- D:\WINDOWS\System32\drivers\AppleCharger.sys [18544] =>.Giga-Byte Technology® O58 - SDL:2011/04/06 05:06:40 A . (.ATI Technologies Inc. - ATI Radeon WindowsNT Miniport Driver.) -- D:\WINDOWS\System32\drivers\ati2mtag.sys [6575616] =>.ATI Technologies Inc. O58 - SDL:2010/11/17 13:03:56 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- D:\WINDOWS\System32\drivers\AtihdXP3.sys [101904] =>.ATI Technologies, Inc® O58 - SDL:2012/04/14 04:39:29 A . (.RAVISENT Technologies Inc. - CineMaster C 1.2 WDM Main Driver.) -- D:\WINDOWS\System32\drivers\cinemst2.sys [262528] =>.RAVISENT Technologies Inc. O58 - SDL:2012/04/14 04:39:29 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- D:\WINDOWS\System32\drivers\cpqdap01.sys [11776] =>.Compaq Computer Corporation O58 - SDL:2008/04/15 12:00:00 A . (.Microsoft Corp., Veritas Software - NT Disk Manager Startup Driver.) -- D:\WINDOWS\System32\drivers\dmboot.sys [799872] =>.Microsoft Corp., Veritas Software O58 - SDL:2008/04/15 12:00:00 A . (.Microsoft Corp., Veritas Software - NT Disk Manager I/O Driver.) -- D:\WINDOWS\System32\drivers\dmio.sys [153600] =>.Microsoft Corp., Veritas Software O58 - SDL:2008/04/15 12:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- D:\WINDOWS\System32\drivers\dmload.sys [5888] =>.Microsoft Corp., Veritas Software. O58 - SDL:2016/02/20 21:38:42 A . (...) -- D:\WINDOWS\System32\drivers\GVTDrv.sys [24944] =>.GIGA-BYTE TECHNOLOGY CO., LTD® O58 - SDL:2008/04/15 12:00:00 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- D:\WINDOWS\System32\drivers\hdaudbus.sys [144384] O58 - SDL:2011/11/10 00:52:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- D:\WINDOWS\System32\drivers\HECI.sys [46080] =>.Intel Corporation O58 - SDL:2016/02/22 00:41:50 A . (.© 2014 SurfRight B.V. - HitmanPro 3.7 Support Driver.) -- D:\WINDOWS\System32\drivers\hitmanpro37.sys [43376] {62C8976F3B1E76427F2D7F26FBE61C21} =>.© 2014 SurfRight B.V. O58 - SDL:2016/01/28 10:20:10 A . (.Tonec Inc. - Internet Download Manager TDI Driver.) -- D:\WINDOWS\System32\drivers\idmtdi.sys [138864] =>.Tonec Inc.® O58 - SDL:2011/03/22 08:58:42 RA . (.Atheros Communications, Inc. - Atheros AR813x/AR815x PCI-E Ethernet Contro.) -- D:\WINDOWS\System32\drivers\l1c51x86.sys [65136] =>.Atheros Communications Inc.® O58 - SDL:2006/01/04 15:41:48 A . (.Creative Technology Ltd. - Creative WDM Audio Driver (32-bit).) -- D:\WINDOWS\System32\drivers\Monfilt.sys [1389056] =>.Creative Technology Ltd. O58 - SDL:2012/04/14 04:39:29 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- D:\WINDOWS\System32\drivers\nikedrv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2008/04/15 12:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- D:\WINDOWS\System32\drivers\ptilink.sys [17792] =>.Parallel Technologies, Inc. O58 - SDL:2012/04/14 04:39:29 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- D:\WINDOWS\System32\drivers\rio8drv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2012/04/14 04:39:29 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- D:\WINDOWS\System32\drivers\riodrv.sys [12032] =>.S3/Diamond Multimedia Systems O58 - SDL:2012/01/17 12:19:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- D:\WINDOWS\System32\drivers\RtkHDAud.sys [7081064] =>.Realtek Semiconductor Corp® O58 - SDL:2011/12/02 11:38:08 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- D:\WINDOWS\System32\drivers\RtKHDMI.sys [4125352] =>.Realtek Semiconductor Corp® O58 - SDL:2008/04/15 12:00:00 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- D:\WINDOWS\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2011/04/13 13:51:52 RA . (.TechniSat Digital, S.A. - TechniSat SkyStar 2 eXpress HD BDA Driver.) -- D:\WINDOWS\System32\drivers\SkyNetNXPBDA.sys [1742424] {2C5D42FC43A12D70F325CE92FC95048C} O58 - SDL:2011/04/13 13:51:54 RA . (.TechniSat Digital, S.A. - NDIS 5.0 driver.) -- D:\WINDOWS\System32\drivers\SkyNetVirtualNetwork.sys [159320] {2C5D42FC43A12D70F325CE92FC95048C} O58 - SDL:2012/04/14 04:39:29 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- D:\WINDOWS\System32\drivers\tsbvcap.sys [21376] =>.Toshiba Corporation O58 - SDL:2012/04/14 04:39:29 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- D:\WINDOWS\System32\drivers\vdmindvd.sys [58112] =>.RAVISENT Technologies Inc. O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ansi.sys [9029] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\country.sys [27097] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\himem.sys [4768] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\key01.sys [42809] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\keyboard.sys [42537] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntdos.sys [27866] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntdos404.sys [29146] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntdos411.sys [29370] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntdos412.sys [29274] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntdos804.sys [29146] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntio.sys [33840] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntio404.sys [34560] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntio411.sys [35648] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntio412.sys [35424] O58 - SDL:2008/04/15 12:00:00 A . (...) -- D:\WINDOWS\System32\ntio804.sys [34560] ---\\ Last modified or created user files (4) - 3s O61 - LFC: 2016/02/20 10:41:09 A . (..) -- D:\Documents and Settings\tqyeb\My Documents\Downloads\Programs\ProgDVB7.12.7Pro.exe [22298464] O61 - LFC: 2016/02/22 00:06:47 A . (.SmadSoft.) -- D:\Documents and Settings\tqyeb\My Documents\Downloads\Programs\smadav105.exe [1392851] O61 - LFC: 2016/02/21 21:12:19 A . (.Copyright (C) 2011.) -- D:\Documents and Settings\tqyeb\Application Data\Baidu\Spark\SysData\ExtApp\SnapImg\screensnapshot.exe [528576] O61 - LFC: 2016/02/21 21:12:19 A . (.Copyright (C) 2011.) -- D:\Documents and Settings\tqyeb\Application Data\Baidu\Spark\SysData\ExtApp\SnapImg\SnapImg.dll [83136] ---\\ File Associations Shell Spawning (9) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Shell Common Dll.) -- D:\WINDOWS\system32\shell32.dll =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- D:\Program Files\baidu\Spark\Spark.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft (R) Windows Based Script Host.) -- D:\WINDOWS\system32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - ‎‎Registry Editor.) -- D:\WINDOWS\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Start Menu Internet (18) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- D:\Program Files\baidu\Spark\Spark.exe O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- D:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- D:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- D:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- D:\Program Files\baidu\Spark\Spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- D:\Program Files\baidu\Spark\Spark.exe" --type=ToolUtilProcess --action=SetEnabled (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- D:\Program Files\Mozilla Firefox\uninstall\helper.exe" /ShowShortcuts (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- D:\Program Files\Google\Chrome\Application\chrome.exe" --show-icons (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- D:\WINDOWS\system32\ie4uinit.exe" -show (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- D:\Program Files\baidu\Spark\Spark.exe" --type=ToolUtilProcess --action=SetDefault (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- D:\Program Files\Mozilla Firefox\uninstall\helper.exe" /SetAsDefaultAppGlobal (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- D:\Program Files\Google\Chrome\Application\chrome.exe" --make-default-browser (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- D:\WINDOWS\system32\ie4uinit.exe" -reinstall (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- D:\Program Files\baidu\Spark\Spark.exe" --type=ToolUtilProcess --action=SetDisabled (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- D:\Program Files\Mozilla Firefox\uninstall\helper.exe" /HideShortcuts (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- D:\Program Files\Google\Chrome\Application\chrome.exe" --hide-icons (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- D:\WINDOWS\system32\ie4uinit.exe" -hide (.not file.) ---\\ Search Browser Infection (6) - 4s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - () - http://search.live.com/ O69 - SBI: SearchScopes [HKCU] {6CFD9E10-107D-41b9-A473-F941C8279C19} - (Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {D1337F1C-FF0A-4123-84DA-C9A8B3C97EAB} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {E31EA858-E249-4fc8-A642-6A4AE0D19353} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://search.live.com/ O69 - SBI: SearchScopes [HKLM] {E31EA858-E249-4fc8-A642-6A4AE0D19353} [DefaultScope] - (Google) - http://www.google.com/ ---\\ Search Svchost Services (40) - 1s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- D:\WINDOWS\system32\appmgmts.dll [162304] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- D:\WINDOWS\system32\audiosrv.dll [42496] =>.Microsoft Corporation O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- D:\WINDOWS\system32\browser.dll [77824] =>.Microsoft Corporation O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- D:\WINDOWS\system32\cryptsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - Logical Disk Manager service dll.) -- D:\WINDOWS\system32\dmserver.dll [23040] =>.Microsoft Corp. O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - DHCP Client Service.) -- D:\WINDOWS\system32\dhcpcsvc.dll [126976] =>.Microsoft Corporation O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- D:\WINDOWS\system32\ersvc.dll [23040] =>.Microsoft Corporation O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- D:\WINDOWS\system32\es.dll [253952] =>.Microsoft Corporation O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - ‎‎Windows Shell Services Dll.) -- D:\WINDOWS\system32\shsvcs.dll [135168] =>.Microsoft Corporation O83 - Search Svchost Services: HidServ (HidServ) . (...) -- D:\WINDOWS\System32\hidserv.dll [0] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- D:\WINDOWS\system32\srvsvc.dll [99840] =>.Microsoft Corporation O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- D:\WINDOWS\system32\wkssvc.dll [134144] =>.Microsoft Corporation O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- D:\WINDOWS\system32\msgsvc.dll [33792] =>.Microsoft Corporation O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - إدارة اتصالات شبكة الاتصال.) -- D:\WINDOWS\system32\netman.dll [197632] =>.Microsoft Corporation O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Microsoft Windows Sockets 2.0 Service Provi.) -- D:\WINDOWS\system32\mswsock.dll [245248] =>.Microsoft Corporation O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Removable Storage Manager.) -- D:\WINDOWS\system32\ntmssvc.dll [435200] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- D:\WINDOWS\system32\rasauto.dll [88576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- D:\WINDOWS\system32\rasmans.dll [186368] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- D:\WINDOWS\system32\mprdim.dll [53248] =>.Microsoft Corporation O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Task Scheduler Engine.) -- D:\WINDOWS\system32\schedsvc.dll [191488] =>.Microsoft Corporation O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- D:\WINDOWS\system32\seclogon.dll [18432] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- D:\WINDOWS\system32\sens.dll [39424] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- D:\WINDOWS\system32\ipnathlp.dll [331264] =>.Microsoft Corporation O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - System Restore Service.) -- D:\WINDOWS\system32\srsvc.dll [170496] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- D:\WINDOWS\system32\tapisrv.dll [249344] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - ‎‎Windows Shell Services Dll.) -- D:\WINDOWS\system32\shsvcs.dll [135168] =>.Microsoft Corporation O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- D:\WINDOWS\system32\trkwks.dll [90112] =>.Microsoft Corporation O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Windows Time Service.) -- D:\WINDOWS\system32\w32time.dll [175104] =>.Microsoft Corporation O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Wireless Zero Configuration Service.) -- D:\WINDOWS\system32\wzcsvc.dll [483840] =>.Microsoft Corporation O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - Advanced Windows 32 Base API.) -- D:\WINDOWS\system32\advapi32.dll [681472] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- D:\WINDOWS\system32\wbem\wmisvc.dll [144896] =>.Microsoft Corporation O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- D:\WINDOWS\system32\wscsvc.dll [80896] =>.Microsoft Corporation O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- D:\WINDOWS\system32\xmlprov.dll [129024] =>.Microsoft Corporation O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Quarantine Agent Service Run-Time.) -- D:\WINDOWS\system32\qagentrt.dll [288768] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- D:\WINDOWS\system32\kmsvc.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- D:\WINDOWS\system32\qmgr.dll [409088] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- D:\WINDOWS\system32\wuauserv.dll [6656] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - ‎‎Windows Shell Services Dll.) -- D:\WINDOWS\system32\shsvcs.dll [135168] =>.Microsoft Corporation O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- D:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] =>.Microsoft Corporation O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- D:\WINDOWS\system32\mspmsnsv.dll [27136] =>.Microsoft Corporation ---\\ Additional Scan (O88) (6) - 0s D:\Documents and Settings\tqyeb\Application Data\Mozilla\Firefox\Profiles\uruzghnp.default\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo D:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent D:\Documents and Settings\tqyeb\Application Data\Tencent =>.Superfluous.Tencent D:\Documents and Settings\tqyeb\قائمة ابدأ\البرامج\Tencent =>.Superfluous.Tencent ---\\ Summary of the elements found (3) - 0s http://www.nicolascoolman.fr/?p=1007 =>PUP.Optional.OmigaPlus http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BDYahoo http://www.nicolascoolman.fr/?p=368 =>.Superfluous.Tencent ~ End of the scan, 20326 items in 00h01mn26s (765)(0)