~ ZHPDiag v2016.2.25.60 Par Nicolas Coolman (2016/02/25) ~ Démarré par Hakim.dz (Administrator) (2016/03/02 18:59:14) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\Hakim.dz\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Hakim.dz\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 32-bit (Build 10586) ---\\ Navigateurs Internet (3) - 0s MFIE: Mozilla Firefox 44.0.2 (x86 fr) OPIE: Opera 35.0.2066.37 MSIE: Internet Explorer v11.103.10586.0 ---\\ Informations sur les produits Windows (7) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, VOLUME_MAK channel ~ Windows Partial Key : 6MT6Y Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ Logiciels de protection (3) - 14s ESET Smart Security v9.0.349.14 Malwarebytes Anti-Malware version 2.2.0.1024 Windows Defender (Deactivate) ---\\ Logiciels d'optimisation (1) - 15s CCleaner v5.14 ---\\ Surveillance de Logiciels (1) - 15s Adobe Flash Player 20 PPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 4 Stepping 1, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2096.372 MB (31% free) System Restore: Activé (Enable) System drive C: has 62 GB () free of 116 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: HAKIM_PC ~ User Name: Hakim.dz ~ Logged in as Administrator ---\\ Enumération des unités disques (5) - 0s ~ Drive C: has 62 GB free of 116 GB (System) ~ Drive D: has 8 GB free of 199 GB ~ Drive E: has 8 GB free of 52 GB ~ Drive F: has 20 GB free of 116 GB ~ Drive H: has 105 GB free of 105 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (24) - 2s [MD5.FCBCED2A237DCD7EF86CED551B731742] - 29/01/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4064320] =>.Microsoft Windows® [MD5.2DBCA4E4BB09FF7F8F171CC364DFAF67] - 30/10/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [53760] =>.Microsoft Corporation [MD5.DE3A10032AE77199B1E7FBC8D6E21636] - 30/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [192200] =>.Microsoft Windows Publisher® [MD5.FBF8BBB141504F661FA7F6864D95C16B] - 27/01/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2230784] =>.Microsoft Corporation [MD5.66FC7843E349C68F424EB79E0A17D8D2] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [493056] =>.Microsoft Corporation [MD5.97FA4FB31B988CFA3E8F39788BC16562] - 30/10/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [419328] =>.Microsoft Corporation [MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [535088] =>.Microsoft Windows® [MD5.09F38BE73FDD29C6C20ED33AD349B991] - 30/10/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.0E423A5854E1265F3B6D27332601355F] - 28/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [471392] =>.Microsoft Windows® [MD5.845E9A40B9B3CAD20B5EE45A2A58EE11] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [23392] =>.Microsoft Windows® [MD5.40FF3DCC427730779DDF301A0F9FC0E1] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74752] =>.Microsoft Corporation [MD5.568DF0072AD005D29D6E987698C8225A] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [130560] =>.Microsoft Corporation [MD5.903EC9934C38FA7357C1DC83339A0D55] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [113664] =>.Microsoft Corporation [MD5.1CB5E8AA58EE45207109AD07D50BB7D2] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [68096] =>.Microsoft Corporation [MD5.14DDBB0CBE11A736C089A4F2813A5EDF] - 30/10/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [90624] =>.Microsoft Corporation [MD5.F97C1D68DE39952F880F98CFCE0DAF1A] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [124416] =>.Microsoft Corporation [MD5.95848668B7DB1638D83391CE56E2B517] - 30/10/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [381272] =>.Microsoft Windows® [MD5.1CA44BC32773FCB9FE4ADAA077AB642E] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [211968] =>.Microsoft Corporation [MD5.67CC605D5DDF5D9DC8BF5FBED1FF89B7] - 01/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [1821024] =>.Microsoft Windows® [MD5.B69B323395ABC1303EB9F69E9B8460F8] - 30/10/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [81408] =>.Microsoft Corporation [MD5.BE374F3DBF29B4094C25679081B22D79] - 30/10/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [80896] =>.Microsoft Corporation [MD5.288DA2E52BFE6A90937FF9A994FA56ED] - 30/10/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [132608] =>.Microsoft Corporation [MD5.1683BCB69B9950CD8C97865F3EC6781E] - 28/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [95072] =>.Microsoft Windows® [MD5.2E5522E831E616B37F06908B7B56C3B3] - 30/10/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [349536] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (12) - 7s O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) . (.Acronis - Acronis Scheduler 2.) - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe =>.Acronis International GmbH® O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® O23 - Service: DNSExitService (DNSExitService) . (...) - C:\Program Files\DNSExit IP Updater\DNSExitService.exe O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: FLService (FLService) . (.New Softwares.net - Service Application.) - C:\Windows\System32\WinFLService.exe {1121122E787653A63021DDD46D487F7F3B5B} O23 - Service: MBAMScheduler (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® O23 - Service: MBAMService (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: Mobizen plugin (Mobizen plugin) . (.Rsupport Corporation - Mobizen service.) - C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe =>.Rsupport Co., Ltd.® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Acronis Sync Agent Service (syncagentsrv) . (.Acronis - TrueImage Sync Agent Service.) - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe =>.Acronis International GmbH® O23 - Service: TechSmith Uploader Service (TechSmith Uploader Service) . (.TechSmith Corporation - TechSmith Uploader Service.) - C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe =>.TechSmith Corporation O23 - Service: Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com - Wise BootTime Service.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Ltd.® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 84s SR - Auto [14/08/2014] [ 860312] Acronis Scheduler2 Service (AcrSch2Svc) . (.Acronis.) - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe =>.Acronis International GmbH® SS - Demand [14/02/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [16/12/2015] [ 223216] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - Auto [05/11/2009] [ 45056] DNSExitService (DNSExitService) . (...) - C:\Program Files\DNSExit IP Updater\DNSExitService.exe SR - Auto [19/11/2015] [ 1983424] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® SR - Auto [10/08/2015] [ 93064] FLService (FLService) . (.New Softwares.net.) - C:\Windows\System32\WinFLService.exe {1121122E787653A63021DDD46D487F7F3B5B} SS - Demand [22/07/2015] [ 509408] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files\Common Files\LENOVO\easyplussdk\bin\EPHotspot.exe =>.LENOVO® SR - Auto [05/10/2015] [ 1513784] MBAMScheduler (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SR - Auto [05/10/2015] [ 1135416] MBAMService (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [29/12/2015] [ 3353872] Mobizen plugin (Mobizen plugin) . (.Rsupport Corporation.) - C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe =>.Rsupport Co., Ltd.® SS - Demand [11/02/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Auto [25/06/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [13/09/2014] [ 6856336] Acronis Sync Agent Service (syncagentsrv) . (.Acronis.) - C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe =>.Acronis International GmbH® SR - Auto [26/01/2015] [ 3408384] TechSmith Uploader Service (TechSmith Uploader Service) . (.TechSmith Corporation.) - C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe =>.TechSmith Corporation SS - Auto [06/08/2015] [ 580144] Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Ltd.® SS - Demand [12/08/2015] [ 13264] WiseHDInfo (WiseHDInfo) . (.wisecleaner.com.) - C:\Windows\WiseHDInfo32.dll =>.Lespeed Technology Ltd.® ---\\ Tâches planifiées en automatique (14) - 5s [MD5.5925F7B74F6D668D1E390550D90FBA2F] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_20_0_0_306_pepper.exe [1163968] =>.Adobe Systems Incorporated® [MD5.7FCC00F1AB44098D5FBDEDB2A9D5384A] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.7E49CB7F9BB53542F2944A527BC4E24D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] =>.Piriform Ltd® [MD5.00000000000000000000000000000000] [APT] [Driver Booster SkipUAC (Hakim.dz)] (...) -- C:\Program Files\IObit\Driver Booster\DriverBooster.exe (.not file.) [0] [MD5.F72C9E2349DD7E855F7ABBB20F306395] [APT] [Opera scheduled Autoupdate 1439157088] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [704120] =>.Opera Software ASA® [MD5.F72C9E2349DD7E855F7ABBB20F306395] [APT] [TechSmith Updater] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [704120] =>.Opera Software ASA® O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job [1064] =>.Adobe Systems Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated® O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier [4204] =>.Adobe Systems Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] =>.Adobe Systems Incorporated® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2862] =>.Piriform Ltd® O39 - APT: Driver Booster SkipUAC (Hakim.dz) - (...) -- C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Hakim.dz) [3070] (.Orphean.) =>.Superfluous.Orphean O39 - APT: Opera scheduled Autoupdate 1439157088 - (.Opera Software.) -- C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1439157088 [3970] =>.Opera Software ASA® O39 - APT: TechSmith Updater - (.Opera Software.) -- C:\WINDOWS\System32\Tasks\TechSmith Updater [3100] =>.Opera Software ASA® ---\\ Processus lancés (29) - 12s [MD5.96A19820229EF943A1CCCCB7D19428D5] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983424] [PID.1420] =>.ESET, spol. s r.o.® [MD5.19D471AF835F3ED0283A03E0277A4545] - (.Acronis - Acronis Scheduler 2.) -- C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [860312] [PID.2116] =>.Acronis International GmbH® [MD5.BE2497FECD99DF61DFD839324B6A5F62] - (.Acronis - File Level CDP Manager Service.) -- C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [4017144] [PID.2124] =>.Acronis International GmbH® [MD5.5F62CC1C0D788B06CEF3B2DDADEE4CC8] - (.New Softwares.net - Service Application.) -- C:\Windows\System32\WinFLService.exe [93064] [PID.2180] {1121122E787653A63021DDD46D487F7F3B5B} [MD5.E54CF98F6A6CDAF0DE1C6685307AC4B5] - (...) -- C:\Program Files\DNSExit IP Updater\DNSExitService.exe [45056] [PID.2200] [MD5.40C126CB15FAB7D6C66490DCA9C1AED2] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416] [PID.2376] =>.Malwarebytes Corporation® [MD5.AB176B9E59C0435499D83047D84EDD59] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784] [PID.2384] =>.Malwarebytes Corporation® [MD5.199B01E6C37E56261FEACC6D315A36AF] - (.Rsupport Corporation - Mobizen service.) -- C:\Program Files\RSUPPORT\MobizenService\MobizenService.exe [3353872] [PID.2432] =>.Rsupport Co., Ltd.® [MD5.439BD966130226F464DC15F55ABD266E] - (.TechSmith Corporation - TechSmith Uploader Service.) -- C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe [3408384] [PID.2728] =>.TechSmith Corporation [MD5.6250CC260D6D35DCDB98CEA17378D1E2] - (.Acronis - TrueImage Sync Agent Service.) -- C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [6856336] [PID.968] =>.Acronis International GmbH® [MD5.C5DA4C98AFD65A3451DC8D0E3C7E2082] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [223216] [PID.4288] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.F1E6DD5362156FA7E969AB9168CAF860] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [553456] [PID.2352] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.8BB7EC71029066CF86B2E674A68A816F] - (...) -- C:\Program Files\RSUPPORT\MobizenService\dat\adb.exe [1016104] [PID.8188] =>.Rsupport Co., Ltd.® [MD5.2177F5B6C2172D6DA69C66528DDF7D5B] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5556424] [PID.7636] =>.ESET, spol. s r.o.® [MD5.E21F66D454C3C549A64F619A82D773F1] - (.WiseCleaner.com - Wise Memory Optimizer.) -- C:\Program Files\Wise\Wise Memory Optimizer\WiseMemoryOptimzer.exe [1443352] [PID.4804] =>.Lespeed Technology Ltd.® [MD5.BABBBDEF9DBB5E012EE5210FCB47C33B] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe [9832760] [PID.7712] =>.Malwarebytes Corporation® [MD5.163E43BC69AE78F468024EC2133C94A8] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [594992] [PID.1640] =>.Oracle America, Inc.® [MD5.CC436BB2A26391F3DEBE316F6FB0474F] - (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008] [PID.9512] =>.Microsoft Corporation® [MD5.E90CD93D1D2E7D383252BF49C4900AF2] - (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe [275848] [PID.4852] {1121122E787653A63021DDD46D487F7F3B5B} [MD5.32769CC5333CDEF270513E1B1203091C] - (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServ.exe [1238408] [PID.4580] {1121122E787653A63021DDD46D487F7F3B5B} [MD5.7E49CB7F9BB53542F2944A527BC4E24D] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] [PID.3576] =>.Piriform Ltd® [MD5.E3D991C8B9F7756538DE5C0A26647F65] - (.TechSmith Corporation - Snagit.) -- C:\Program Files\TechSmith\Snagit 12\Snagit32.exe [7432512] [PID.8912] =>.TechSmith Corporation® [MD5.11C79E0D1A1B332B79D1A1402052A4D0] - (.TechSmith Corporation - Snagit RPC Helper.) -- C:\Program Files\TechSmith\Snagit 12\SnagPriv.exe [151872] [PID.6856] =>.TechSmith Corporation® [MD5.0A1810F3CF866F67856C8A4E98194493] - (.TechSmith Corporation - TechSmith HTML Help Helper.) -- C:\Program Files\TechSmith\Snagit 12\TscHelp.exe [46080] [PID.2412] =>.TechSmith Corporation [MD5.27954CE3A3AFDBC91C91303AF50FADF7] - (.TechSmith Corporation - Snagit Editor.) -- C:\Program Files\TechSmith\Snagit 12\snagiteditor.exe [8587072] [PID.5900] =>.TechSmith Corporation® [MD5.904CA475F6ADD4080B0EA5144D23FDF1] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.8572] [MD5.55614FB0B2A27A4467651F5FB1F9D3E5] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.201.11370.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe [16384] [PID.7424] =>.Copyright Microsoft Corporation [MD5.3F5D16001092088D73090DA4F19CD3D2] - (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe [1907712] [PID.3516] [MD5.E69EB056AC988D1F77F1D59AF4BEFE4E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Hakim.dz\ZHPDiag3.exe [2132480] [PID.5020] =>.Nicolas Coolman ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 4s M0 - MFSP: prefs.js [Hakim.dz - u7lo3jcx.default] https://www.malwarebytes.org/restorebrowser//?type=hp&ts=1445451161&z=71cb356d260cecbd6dc5550g0zbzdw8zbw4gegfqbg&from=smt&uid=maxtorx6l300s0_l61be2wg P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\ipinfo@hidemyass.com.xpi P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\jid0-zXo3XFGyiDalgkeEO4UYJTUwo2I@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\searchplugins\bing-.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.Microsoft Corporation - Bing Search.) -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla\Firefox\Profiles\u7lo3jcx.default\extensions\bingsearch.full@microsoft.com =>.Microsoft Corporation P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_20_0_0_306.dll =>.Adobe Systems Incorporated ---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s B2 - EXT: [Opera Stable] C:\Users\Hakim.dz\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (2) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 1s ~ Le fichier hôte est sain (The hosts file is clean) (30) ---\\ Browser Helper Object de navigateur (BHO) (6) - 0s O2 - BHO: bteagleget.com - {1E871FF8-029C-4732-8AA7-39E3D3872057} . (.EagleGet.com - IEGrab.) -- C:\Program Files\EagleGet\eagleSniffer.dll O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O2 - BHO: Microsoft OneDrive for Business Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Applications lancées au démarrage du système (18) - 4s O4 - HKLM\..\Run: [Acronis Scheduler2 Service] . (.Acronis - Acronis Scheduler Helper.) -- C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe =>.Acronis International GmbH® O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [FLBackup] . (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe {1121122E787653A63021DDD46D487F7F3B5B} O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [FLBackup] . (.New Softwares.net - .) -- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe {1121122E787653A63021DDD46D487F7F3B5B} O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2139754169-3034164883-1752876728-1001\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files\EagleGet\EagleGet.exe ---\\ Raccourcis Global Startup (116) - 41s O4 - GS\Desktop [Administrateur]: 2015_Anis+.lnk . (...) F:\Hacker_pc\2015_Anis+.txt O4 - GS\Desktop [Administrateur]: Admin FiNd3r.lnk . (.Chaos Theory - Security Reaserch - 1337 Admin P4Ge FiNd3r by BK.) F:\Hacker_web\Logiciel_Hack\1337_Admin_P4Ge_FiNd3r\Admin FiNd3r.exe O4 - GS\Desktop [Administrateur]: AIDA64 Extreme.lnk . (.FinalWire Ltd. - AIDA64 Extreme.) C:\Program Files\FinalWire\AIDA64 Extreme\aida64.exe =>.FinalWire Kft.® O4 - GS\Desktop [Administrateur]: ALEX-PC_Alexander.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ALEX-PC_Alexander_24F258C3%5CPASS.txt O4 - GS\Desktop [Administrateur]: Anis+2015.lnk . (...) F:\Hacker_pc\Anis+2015.txt O4 - GS\Desktop [Administrateur]: Anis+2016.lnk . (...) F:\Hacker_pc\Anis+2016.txt O4 - GS\Desktop [Administrateur]: Anis_2014.lnk . (...) F:\Hacker_pc\Anis_2014.txt O4 - GS\Desktop [Administrateur]: Anis_2015.22.06.lnk . (...) F:\Hacker_pc\Anis_2015.22.06M.txt O4 - GS\Desktop [Administrateur]: Anis_2015.lnk . (...) F:\Hacker_pc\Anis_2015.txt O4 - GS\Desktop [Administrateur]: BH2002.lnk . (...) D:\Jeux_exe\المقاتل 2002\المقاتل 2002\BH2002.exe O4 - GS\Desktop [Administrateur]: EVEREST Ultimate Edition.lnk . (.Lavalys, Inc. - EVEREST Ultimate Edition.) C:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe =>.LAVALYS® O4 - GS\Desktop [Administrateur]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Open Source Developer, Tim Kosse® O4 - GS\Desktop [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\Desktop [Administrateur]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe O4 - GS\Desktop [Administrateur]: Hack.lnk . (...) F:\Hacker_web\Hack.txt O4 - GS\Desktop [Administrateur]: Hack_2.lnk . (...) F:\Hacker_web\Hack_2.txt O4 - GS\Desktop [Administrateur]: Hakim_Shells-2014.lnk . (...) F:\Hacker_web\Hakim_Shells-2014.txt O4 - GS\Desktop [Administrateur]: intellitamper.lnk . (.LaCaveProds - http://www.chez.com/cavemania - IntelliTamper.) C:\Program Files\IntelliTamper\intellitamper.exe O4 - GS\Desktop [Administrateur]: Jardin_L.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alhorouf\اسطوانة حديقة الحروف\Jardin_L.EXE O4 - GS\Desktop [Administrateur]: Jardin_N.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alalrkam\اسطوانة حديقة الأرقام\Jardin_N.EXE O4 - GS\Desktop [Administrateur]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {106CB8E1A76002B367F8EC4EAD341212} O4 - GS\Desktop [Administrateur]: Kodi.lnk . (.XBMC-Foundation - Kodi.) C:\Program Files\Kodi\Kodi.exe =>.XBMC-Foundation O4 - GS\Desktop [Administrateur]: LiLi USB Creator.lnk . (.CopyLeft Thibaut Lauziere a.k.a Slÿm - Easily create a Linux Live USB.) C:\Program Files\LinuxLive USB Creator\LiLi USB Creator.exe O4 - GS\Desktop [Administrateur]: Microwork.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\Microwork.txt O4 - GS\Desktop [Administrateur]: mio.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\OSCAR_OSCAR-A_C49DB124%5CDownloads\mio (2).txt O4 - GS\Desktop [Administrateur]: my passwords.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\MACHIT-PC_LocalAdmin_28D7E31D%5CDownloads\my passwords.txt O4 - GS\Desktop [Administrateur]: New Text Document.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ROMEL-PC_Romel_28FEF939%5CDownloads\New Text Document (2).txt O4 - GS\Desktop [Administrateur]: PASS.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.7d\nj_users\NIDOUGLAS-M_Nidouglas_CBA9ED7_Ha\PASS.txt O4 - GS\Desktop [Administrateur]: PenTester.lnk . (...) F:\Hacker_web\Logiciel_Hack\Daman-dz_all\Pentester\PenTester.exe O4 - GS\Desktop [Administrateur]: Photoshop2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [Administrateur]: Process Explorer.lnk . (.Sysinternals - www.sysinternals.com - Sysinternals Process Explorer.) E:\Logiciel_PC\procexp.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: Qurany.lnk . (.www.sa3eka.com - Qurany.) E:\Logiciel_PC\Qurany1.3\Qurany1.3\Qurany.exe O4 - GS\Desktop [Administrateur]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software O4 - GS\Desktop [Administrateur]: rufus-2.7.lnk . (.Akeo Consulting (http://akeo.ie) - Rufus.) D:\All_Windows\USB Creator Tool\rufus-2.7.exe =>.Akeo Consulting® O4 - GS\Desktop [Administrateur]: Subway Surfers.lnk . (...) C:\Program Files\Subway Surfers\Subway_Surfers.exe O4 - GS\Desktop [Administrateur]: work dairy.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\work dairy.txt O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Hakim.dz\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: FlashPeak SlimBrowser.lnk . (.FlashPeak Inc. - FlashPeak SlimBrowser.) C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc. O4 - GS\Quicklaunch [Administrateur]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\sendTo [Administrateur]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Administrateur]: VirusTotal.lnk . (...) C:\Program Files\VirusTotalUploader2\VirusTotalUploader2.2.exe O4 - GS\TaskBar [Administrateur]: NowSmart ARW.lnk . (.NowSmart Studio - NowSmart ARW.) C:\Program Files\ARW5\arw5.exe {7EA06A38F10DA929794950EB7FA2E2E9} O4 - GS\TaskBar [Administrateur]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA® O4 - GS\Desktop [Hakim.dz]: 2015_Anis+.lnk . (...) F:\Hacker_pc\2015_Anis+.txt O4 - GS\Desktop [Hakim.dz]: Admin FiNd3r.lnk . (.Chaos Theory - Security Reaserch - 1337 Admin P4Ge FiNd3r by BK.) F:\Hacker_web\Logiciel_Hack\1337_Admin_P4Ge_FiNd3r\Admin FiNd3r.exe O4 - GS\Desktop [Hakim.dz]: AIDA64 Extreme.lnk . (.FinalWire Ltd. - AIDA64 Extreme.) C:\Program Files\FinalWire\AIDA64 Extreme\aida64.exe =>.FinalWire Kft.® O4 - GS\Desktop [Hakim.dz]: ALEX-PC_Alexander.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ALEX-PC_Alexander_24F258C3%5CPASS.txt O4 - GS\Desktop [Hakim.dz]: Anis+2015.lnk . (...) F:\Hacker_pc\Anis+2015.txt O4 - GS\Desktop [Hakim.dz]: Anis+2016.lnk . (...) F:\Hacker_pc\Anis+2016.txt O4 - GS\Desktop [Hakim.dz]: Anis_2014.lnk . (...) F:\Hacker_pc\Anis_2014.txt O4 - GS\Desktop [Hakim.dz]: Anis_2015.22.06.lnk . (...) F:\Hacker_pc\Anis_2015.22.06M.txt O4 - GS\Desktop [Hakim.dz]: Anis_2015.lnk . (...) F:\Hacker_pc\Anis_2015.txt O4 - GS\Desktop [Hakim.dz]: BH2002.lnk . (...) D:\Jeux_exe\المقاتل 2002\المقاتل 2002\BH2002.exe O4 - GS\Desktop [Hakim.dz]: EVEREST Ultimate Edition.lnk . (.Lavalys, Inc. - EVEREST Ultimate Edition.) C:\Program Files\Lavalys\EVEREST Ultimate Edition\everest.exe =>.LAVALYS® O4 - GS\Desktop [Hakim.dz]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Open Source Developer, Tim Kosse® O4 - GS\Desktop [Hakim.dz]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\Desktop [Hakim.dz]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe O4 - GS\Desktop [Hakim.dz]: Hack.lnk . (...) F:\Hacker_web\Hack.txt O4 - GS\Desktop [Hakim.dz]: Hack_2.lnk . (...) F:\Hacker_web\Hack_2.txt O4 - GS\Desktop [Hakim.dz]: Hakim_Shells-2014.lnk . (...) F:\Hacker_web\Hakim_Shells-2014.txt O4 - GS\Desktop [Hakim.dz]: intellitamper.lnk . (.LaCaveProds - http://www.chez.com/cavemania - IntelliTamper.) C:\Program Files\IntelliTamper\intellitamper.exe O4 - GS\Desktop [Hakim.dz]: Jardin_L.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alhorouf\اسطوانة حديقة الحروف\Jardin_L.EXE O4 - GS\Desktop [Hakim.dz]: Jardin_N.lnk . (...) E:\Logiciel_PC\برامج الأطفال\alalrkam\اسطوانة حديقة الأرقام\Jardin_N.EXE O4 - GS\Desktop [Hakim.dz]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {106CB8E1A76002B367F8EC4EAD341212} O4 - GS\Desktop [Hakim.dz]: Kodi.lnk . (.XBMC-Foundation - Kodi.) C:\Program Files\Kodi\Kodi.exe =>.XBMC-Foundation O4 - GS\Desktop [Hakim.dz]: LiLi USB Creator.lnk . (.CopyLeft Thibaut Lauziere a.k.a Slÿm - Easily create a Linux Live USB.) C:\Program Files\LinuxLive USB Creator\LiLi USB Creator.exe O4 - GS\Desktop [Hakim.dz]: Microwork.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\Microwork.txt O4 - GS\Desktop [Hakim.dz]: mio.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\OSCAR_OSCAR-A_C49DB124%5CDownloads\mio (2).txt O4 - GS\Desktop [Hakim.dz]: my passwords.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\MACHIT-PC_LocalAdmin_28D7E31D%5CDownloads\my passwords.txt O4 - GS\Desktop [Hakim.dz]: New Text Document.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\ROMEL-PC_Romel_28FEF939%5CDownloads\New Text Document (2).txt O4 - GS\Desktop [Hakim.dz]: PASS.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.7d\nj_users\NIDOUGLAS-M_Nidouglas_CBA9ED7_Ha\PASS.txt O4 - GS\Desktop [Hakim.dz]: PenTester.lnk . (...) F:\Hacker_web\Logiciel_Hack\Daman-dz_all\Pentester\PenTester.exe O4 - GS\Desktop [Hakim.dz]: Photoshop2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [Hakim.dz]: Process Explorer.lnk . (.Sysinternals - www.sysinternals.com - Sysinternals Process Explorer.) E:\Logiciel_PC\procexp.exe =>.Microsoft Corporation® O4 - GS\Desktop [Hakim.dz]: Qurany.lnk . (.www.sa3eka.com - Qurany.) E:\Logiciel_PC\Qurany1.3\Qurany1.3\Qurany.exe O4 - GS\Desktop [Hakim.dz]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software O4 - GS\Desktop [Hakim.dz]: rufus-2.7.lnk . (.Akeo Consulting (http://akeo.ie) - Rufus.) D:\All_Windows\USB Creator Tool\rufus-2.7.exe =>.Akeo Consulting® O4 - GS\Desktop [Hakim.dz]: Subway Surfers.lnk . (...) C:\Program Files\Subway Surfers\Subway_Surfers.exe O4 - GS\Desktop [Hakim.dz]: work dairy.lnk . (...) F:\Hacker_pc\Logiciel\njRAT-v0.6.4\nJRAT-v0.6.4\nj_users\SAHINUR-PC_sahinur_369DBD92%5CDownloads\work dairy.txt O4 - GS\Desktop [Hakim.dz]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Hakim.dz\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Hakim.dz]: FlashPeak SlimBrowser.lnk . (.FlashPeak Inc. - FlashPeak SlimBrowser.) C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc. O4 - GS\Quicklaunch [Hakim.dz]: GreenBrowser.lnk . (.MoreQuick.com - GreenBrowser Web Browser.) C:\Program Files\GreenBrowser\GreenBrowser.exe O4 - GS\sendTo [Hakim.dz]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\sendTo [Hakim.dz]: Resource Tuner.lnk . (.Heaventools Software - Resource Tuner.) C:\Program Files\Resource Tuner\restuner.exe =>.Heaventools Software O4 - GS\sendTo [Hakim.dz]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Hakim.dz]: VirusTotal.lnk . (...) C:\Program Files\VirusTotalUploader2\VirusTotalUploader2.2.exe O4 - GS\TaskBar [Hakim.dz]: NowSmart ARW.lnk . (.NowSmart Studio - NowSmart ARW.) C:\Program Files\ARW5\arw5.exe {7EA06A38F10DA929794950EB7FA2E2E9} O4 - GS\TaskBar [Hakim.dz]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA® O4 - GS\CommonDesktop [Public]: Acronis True Image 2015.lnk . (.Acronis - Acronis True Image.) C:\Program Files\Acronis\TrueImageHome\TrueImageLauncher.exe =>.Acronis International GmbH® O4 - GS\CommonDesktop [Public]: Advanced IP Scanner.lnk . (.Famatech Corp. - Advanced IP Scanner.) C:\Program Files\Advanced IP Scanner\advanced_ip_scanner.exe =>.Famatech Corp.® O4 - GS\CommonDesktop [Public]: ARWizard.lnk . (.NowSmart Studio - NowSmart ARW.) C:\Program Files\ARW5\arw5.exe {7EA06A38F10DA929794950EB7FA2E2E9} O4 - GS\CommonDesktop [Public]: Camtasia Studio 8.lnk . (.TechSmith Corporation - Camtasia Studio.) C:\Program Files\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe =>.TechSmith Corporation® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Condition Zero.lnk . (.Valve - Condition Zero Launcher.) C:\Program Files\RYS PLANET\Condition zero\czero.exe =>.Valve O4 - GS\CommonDesktop [Public]: DNSExit IP Updater.lnk . (.DNSExit - DNSExit IP Updater.) C:\Program Files\DNSExit IP Updater\ipupdater.exe O4 - GS\CommonDesktop [Public]: Doom 3.lnk . (.id Software - DOOM 3.) C:\Program Files\Doom 3\doom3.exe =>.ID Software O4 - GS\CommonDesktop [Public]: EagleGet.lnk . (.EagleGet.com - EagleGet Free Downloader.) C:\Program Files\EagleGet\EagleGet.exe O4 - GS\CommonDesktop [Public]: EaseUS Partition Master 9.3.0.lnk . (.EaseUS - EaseUS Partition Master Loader Application.) C:\Program Files\EaseUS\EaseUS Partition Master 9.3.0\bin\epm0.exe =>.EaseUS O4 - GS\CommonDesktop [Public]: EasyBCD 2.2.lnk . (.NeoSmart Technologies - EasyBCD.) C:\Program Files\NeoSmart Technologies\EasyBCD\EasyBCD.exe =>.NeoSmart Technologies® O4 - GS\CommonDesktop [Public]: ESET Protection des transactions bancaires.lnk . (.ESET - ESET command line interface.) C:\Program Files\ESET\ESET Smart Security\ecmd.exe =>.ESET, spol. s r.o.® O4 - GS\CommonDesktop [Public]: FlashPeak SlimBrowser.lnk . (.FlashPeak Inc. - FlashPeak SlimBrowser.) C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc. O4 - GS\CommonDesktop [Public]: Folder Lock.lnk . (.New Softwares.net. - Folder Lock Application.) C:\Program Files\NewSoftware's\Folder Lock\Folder Lock.exe {1121122E787653A63021DDD46D487F7F3B5B} O4 - GS\CommonDesktop [Public]: Kingo ROOT.lnk . (.Kingosoft - Kingo Root.) C:\Program Files\Kingo ROOT\Kingo Root.exe {4BA0711A8EBE6D481E1846163BA3D2FD} O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: MegaDownloader.lnk . (.Copyright © 2015 - MegaDownloader.) C:\Program Files\MegaDownloader\MegaDownloader.exe O4 - GS\CommonDesktop [Public]: Mobizen.lnk . (.RSUPPORT Co., Ltd. - Rsupport Mobizen.) C:\Program Files\RSUPPORT\Mobizen\Mobizen.exe =>.Rsupport Co., Ltd.® O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) C:\Program Files\Notepad++\notepad++.exe =>.Don HO don.h@free.fr O4 - GS\CommonDesktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA® O4 - GS\CommonDesktop [Public]: SHAREit.lnk . (.Lenovo - SHAREit.) C:\Program Files\Lenovo\SHAREit\Shareit.exe =>.LENOVO® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\WINDOWS\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe O4 - GS\CommonDesktop [Public]: Wise Care 365.lnk . (.WiseCleaner.com - Wise Care 365.) C:\Program Files\Wise\Wise Care 365\WiseCare365.exe =>.Lespeed Technology Ltd.® O4 - GS\CommonDesktop [Public]: Wise Memory Optimizer.lnk . (.WiseCleaner.com - Wise Memory Optimizer.) C:\Program Files\Wise\Wise Memory Optimizer\WiseMemoryOptimzer.exe =>.Lespeed Technology Ltd.® O4 - GS\Startup [Public]: Snagit 12.lnk . (.TechSmith Corporation - Snagit.) C:\Program Files\TechSmith\Snagit 12\Snagit32.exe =>.TechSmith Corporation® ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9D9EC7A3-5A67-497F-83F0-1D7906B205C5}: NameServer = 41.110.32.3 8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{fe03d988-30e1-4d46-ae6b-c3f4c21e86e0}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{fe03d988-30e1-4d46-ae6b-c3f4c21e86e0}: DhcpDomain = domain.name ---\\ Protocole additionnel (27) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O18 - Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ---\\ Logiciels installés (144) - 77s O42 - Logiciel: Acronis True Image 2015 - (.Acronis.) [HKLM] -- {0174F517-0B1C-4969-B7C1-03A04EC64A21} =>.Acronis O42 - Logiciel: Acronis True Image 2015 - (.Acronis.) [HKLM] -- {0174F517-0B1C-4969-B7C1-03A04EC64A21}Visible =>.Acronis International GmbH® O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CC 2015 (32 Bit) - (.Adobe Systems Incorporated.) [HKLM] -- {2614BC86-757D-4293-9E25-E4E16F370A9E} =>.Adobe Systems Incorporated® O42 - Logiciel: Advanced IP Scanner 2.4 - (.Famatech.) [HKLM] -- {D273E7E9-79F3-40FE-AD24-5AC6DF9A1784} =>.Famatech O42 - Logiciel: AIDA64 Extreme v5.60 - (.FinalWire Ltd..) [HKLM] -- AIDA64 Extreme_is1 =>.FinalWire Kft.® O42 - Logiciel: AMD Catalyst Control Center - (.AMD.) [HKLM] -- WUCCCApp =>.Advanced Micro Devices, Inc.® O42 - Logiciel: Audio Record Wizard - (.NowSmart Studio.) [HKLM] -- {1870D936-BF91-48DD-8B66-A5E7E09C0086} O42 - Logiciel: AzureTools.Notifications - (.Microsoft Corporation.) [HKLM] -- {3FBFCF2C-392A-4632-9442-14C305B44D5E} =>.Microsoft Corporation O42 - Logiciel: Behaviors SDK (Windows) for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {28C7344F-E894-4CF5-8D05-EDC7ED71796C} =>.Microsoft Corporation O42 - Logiciel: Blend for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {EBC890A6-DE7C-44B4-AA03-119B6190D3E1} =>.Microsoft Corporation O42 - Logiciel: Blend for Visual Studio 2013 FRA resources - (.Microsoft Corporation.) [HKLM] -- {ECFA0084-5700-4B99-92F7-934470EF3C51} =>.Microsoft Corporation O42 - Logiciel: Blend for Visual Studio SDK for .NET 4.5 - (.Microsoft Corporation.) [HKLM] -- {37E53780-3944-4A6A-842F-727128E8616E} =>.Microsoft Corporation O42 - Logiciel: Blend for Visual Studio SDK for Silverlight 5 - (.Microsoft Corporation.) [HKLM] -- {0C03A66F-1FF0-45F9-8D67-0D806EBFFBA1} =>.Microsoft Corporation O42 - Logiciel: Build Tools - x86 - (.Microsoft Corporation.) [HKLM] -- {A1CFE5F7-07CA-44D6-B553-BE22B180F660} =>.Microsoft Corporation O42 - Logiciel: Build Tools Language Resources - x86 - (.Microsoft Corporation.) [HKLM] -- {7754915B-C85B-458C-B531-48E286DE96E6} =>.Microsoft Corporation O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM] -- {904AC0F0-F69E-467E-A719-B083940F608A} =>.TechSmith Corporation O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Composants requis pour SSDT - (.Microsoft Corporation.) [HKLM] -- {D2B694C7-21FB-4E7C-B207-EBC1CB0EBA79} =>.Microsoft Corporation O42 - Logiciel: Condition zero - (...) [HKLM] -- Condition zero O42 - Logiciel: DNSExit IP Updater 2.0 - (.DNSExit.) [HKLM] -- {69193CF5-F192-42C2-9E6E-E964068DC757}_is1 O42 - Logiciel: Doom 3 - (.Activision.) [HKLM] -- {EEFB15EB-FE8B-47DF-A496-1C4D1420294A} =>.Activision O42 - Logiciel: Doom 3 - (.Activision.) [HKLM] -- InstallShield_{EEFB15EB-FE8B-47DF-A496-1C4D1420294A} =>.Activision O42 - Logiciel: Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM] -- {2386192E-D6DB-4AD2-9564-65586A0AE53E} =>.PreEmptive Solutions O42 - Logiciel: EagleGet version 2.0.4.8 - (.EagleGet.) [HKLM] -- {F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1 =>.EagleGet O42 - Logiciel: EaseUS Partition Master 9.3.0 - (.EaseUS.) [HKLM] -- EaseUS Partition Master_is1 =>.EaseUS O42 - Logiciel: EasyBCD 2.2 - (.NeoSmart Technologies.) [HKLM] -- EasyBCD =>.NeoSmart Technologies O42 - Logiciel: Entity Framework 6.1.1 Tools for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {85253F13-EE42-4850-A3A5-79B90E92D7AC} =>.Microsoft Corporation O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM] -- {CE9DD4DB-7DE9-42D2-9F9E-6DB538B97471} =>.ESET, spol. s r.o. O42 - Logiciel: EVEREST Ultimate Edition v5.02 - (.Lavalys, Inc..) [HKLM] -- EVEREST Ultimate Edition_is1 =>.Lavalys, Inc. O42 - Logiciel: FileZilla Client 3.14.1 - (.Tim Kosse.) [HKCU] -- FileZilla Client =>.Tim Kosse O42 - Logiciel: FlashPeak SlimBrowser - (.FlashPeak Inc..) [HKLM] -- SlimBrowser =>.FlashPeak Inc. O42 - Logiciel: Folder Lock - (.New Softwares.net.) [HKLM] -- Folder Lock {1121122E787653A63021DDD46D487F7F3B5B} O42 - Logiciel: FormatFactory 3.7.0.0 - (.Format Factory.) [HKLM] -- FormatFactory =>.Format Factory O42 - Logiciel: GreenBrowser - (.MoreQuick.com.) [HKLM] -- GreenBrowser_is1 O42 - Logiciel: IIS 8.0 Express - (.Microsoft Corporation.) [HKLM] -- {B8FFB7D6-6ABD-47C3-8BAD-86FF5D8F3EDC} =>.Microsoft Corporation O42 - Logiciel: IIS Express Application Compatibility Database for x86 - (...) [HKLM] -- {fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb O42 - Logiciel: Java 8 Update 73 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218073F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Kingo ROOT version 1.3.9.2351 - (.Kingosoft Technology Ltd..) [HKLM] -- {AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1 =>.Kingosoft Technology Ltd. O42 - Logiciel: Kit SDK de vérification de Visual Studio 2012 - fra - (.Microsoft Corporation.) [HKLM] -- {8A3862F9-F587-3DFA-AAFC-C1F0E116F05C} =>.Microsoft Corporation O42 - Logiciel: KMPlayer (remove only) - (.PandoraTV.) [HKLM] -- The KMPlayer O42 - Logiciel: Kodi - (.XBMC-Foundation.) [HKCU] -- Kodi =>.XBMC-Foundation O42 - Logiciel: LinuxLive USB Creator - (.Thibaut Lauziere.) [HKLM] -- LinuxLive USB Creator =>.Thibaut Lauziere O42 - Logiciel: Live Media Plugin (Todae) - (.Todae.fr.) [HKLM] -- Live Media =>.Todae.fr O42 - Logiciel: LocalESPC - (.Microsoft Corporation.) [HKLM] -- {62910715-63E3-0AB0-0B29-99140DE1C15E} =>.Microsoft Corporation O42 - Logiciel: LocalESPC Dev12 - (.Microsoft Corporation.) [HKLM] -- {492498A3-F88C-FE2F-755C-9B1B91724CA5} =>.Microsoft Corporation O42 - Logiciel: LocalESPCui for fr-fr - (.Microsoft.) [HKLM] -- {8788EA27-D5D2-14EC-FEFF-1BF351DF6DBD} =>.Microsoft O42 - Logiciel: LocalESPCui for fr-fr Dev12 - (.Microsoft.) [HKLM] -- {CB1D5B0B-5F6C-D267-8729-494D5B676E37} =>.Microsoft O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: MegaDownloader 1.5 - (.AppsForMega.info.) [HKLM] -- {C12C2297-65A4-4E64-9AE1-29F0D947FDA0}}_is1 O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited O42 - Logiciel: Microsoft Advertising SDK for Windows 8.1 - ENU - (.Microsoft Corporation.) [HKLM] -- {6AB13C21-C3EC-46E1-8009-6FD5EBEE515B} =>.Microsoft Corporation O42 - Logiciel: Microsoft Advertising Service Extension for Visual Studio - (.Microsoft Corporation.) [HKLM] -- {EBD9DB6D-180B-4C59-9622-B75CC4B32C94} =>.Microsoft Corporation O42 - Logiciel: Microsoft Azure Mobile Services SDK - (.Microsoft Corporation.) [HKLM] -- {CACAE653-28F5-4DDC-8720-E4B9BC792CC8} =>.Microsoft Corporation O42 - Logiciel: Microsoft Azure Mobile Services Tools for Visual Studio - v1.2 - (.Microsoft Corporation.) [HKLM] -- {258D234C-B230-4B97-AAA6-6A17E63254E2} =>.Microsoft Corporation O42 - Logiciel: Microsoft Azure Shared Components for Visual Studio 2013 - v1.2 - (.Microsoft Corporation.) [HKLM] -- {30CA1298-0F2A-45CD-8720-6AD0DC3283AD} =>.Microsoft Corporation O42 - Logiciel: Microsoft C++ Azure Mobile SDK for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {D8DEAAC1-A503-4C97-90F7-EF1E58A3E509} =>.Microsoft Corporation O42 - Logiciel: Microsoft C++ REST SDK for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {4781443E-204D-4D98-8899-18A123C13B1E} =>.Microsoft Corporation O42 - Logiciel: Microsoft Exchange Web Services Managed API 2.1 - (.Microsoft Corporation.) [HKLM] -- {24CA683D-8174-4EBF-AD4D-3F2DD7814716} =>.Microsoft Corporation O42 - Logiciel: Microsoft Expression Blend SDK for .NET 4 - (.Microsoft Corporation.) [HKLM] -- {7B6B35D5-404D-498E-95D0-3CCB2B2FC6F9} =>.Microsoft Corporation O42 - Logiciel: Microsoft Identity Extensions - (.Microsoft Corporation.) [HKLM] -- {F99F24BF-0B90-463E-9658-3FD2EFC3C992} =>.Microsoft Corporation O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 Core - (.Microsoft Corporation.) [HKLM] -- {CD9E8281-2C2C-4383-9EAE-926F787BC22F} =>.Microsoft Corporation O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 v4.5 Tools - (.Microsoft Corporation.) [HKLM] -- {C0B7DA6F-29E2-4C99-84BC-836E7AE76883} =>.Microsoft Corporation O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 v4.5 ToolsRes - FRA - (.Microsoft Corporation.) [HKLM] -- {DC14CC17-CABF-41A8-A42F-09543E2D2595} =>.Microsoft Corporation O42 - Logiciel: Microsoft LightSwitch pour Visual Studio 2013 CoreRes - FRA - (.Microsoft Corporation.) [HKLM] -- {D30F2E93-C09F-3C99-A976-9421D9C557D5} =>.Microsoft Corporation O42 - Logiciel: Microsoft LightSwitch v4.5 SDK - (.Microsoft Corporation.) [HKLM] -- {AF727A94-CAF6-4795-B379-C81229A5A34F} =>.Microsoft Corporation O42 - Logiciel: Microsoft NuGet - Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {99FE08AA-78DF-3A2D-8E90-D6F7938298A2} =>.Microsoft Corporation O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM] -- {205A8E25-7ABE-30AB-929E-80A63A7AFBE3} =>.Microsoft Corporation O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - fra - (.Microsoft Corporation.) [HKLM] -- {047DE480-49E4-3AB9-903A-1238B36F114C} =>.Microsoft Corporation O42 - Logiciel: Microsoft Report Viewer Add-On for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {73629F80-9DFE-421A-908B-C71FBD243E5A} =>.Microsoft Corporation O42 - Logiciel: Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Pack - (.Microsoft Corporation.) [HKLM] -- {4B6634DC-5879-394F-8951-F339F29DE21C} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight 5 SDK - FRA - (.Microsoft Corporation.) [HKLM] -- {80125E8C-304D-4637-974A-2547049B0E24} =>.Microsoft Corporation O42 - Logiciel: Microsoft Team Foundation Server 2013 Update 3 Object Model (x86) - (.Microsoft Corporation.) [HKLM] -- {A336824A-C380-386C-B293-C30C84B57826} =>.Microsoft Corporation O42 - Logiciel: Microsoft Web Deploy 3.5 - (.Microsoft Corporation.) [HKLM] -- {D58573E7-F82D-41E4-B10B-3041202A51D2} =>.Microsoft Corporation O42 - Logiciel: Mobizen - (.RSUPPORT.) [HKLM] -- {BA0D3A44-BCEE-4C8B-BCD4-F7F1E64F41E3} =>.RSUPPORT O42 - Logiciel: Modèle de redirection de Python Tools - (.Microsoft Corporation.) [HKLM] -- {D3A51ED1-96AF-4F84-A472-AAB848E9E21D} =>.Microsoft Corporation O42 - Logiciel: Module linguistique de Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM] -- {C59A62B8-8CA8-4DEC-843B-E7E0F72CCE75} =>.PreEmptive Solutions O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM] -- {4727EDB7-0478-31CF-AD6C-346D29254144} =>.Microsoft Corporation O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM] -- Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA =>.Microsoft Corporation O42 - Logiciel: Module linguistique du modèle objet Microsoft Team Foundation Server 2013 U - (.Microsoft Corporation.) [HKLM] -- {ABE27F98-A4F5-3D5B-9601-D7601B9467E5} =>.Microsoft Corporation O42 - Logiciel: Module Microsoft Report Viewer pour Visual Studio 2013 - (.Microsoft Corporation.) [HKLM] -- {3F1B78AC-9A93-4707-AE7A-08E8FF351B61} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 44.0.2 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 44.0.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM] -- {90160000-007E-0000-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Opera Stable 35.0.2066.37 - (.Opera Software.) [HKLM] -- Opera 35.0.2066.37 =>.Opera Software ASA® O42 - Logiciel: Package de pilotes Windows - Condor (gnusbnet) Net (11/11/2013 1.2.0.0) - (.Condor.) [HKLM] -- 350179D4FEEF8D83146365E4FD7427A21F5D955A =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - Condor Communication Equipment Co.,Ltd. (gnusb - (.Condor Communication Equipment Co.,Ltd..) [HKLM] -- 760ECD7B4391C69CC34B300D57CAAE1D7BF4D16B =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - Condor Communication Equipment Co.,Ltd. (gnusb - (.Condor Communication Equipment Co.,Ltd..) [HKLM] -- FD4B3DDA263F0DD0154678E963EE8341AB29EAFE =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - Condor Corporation Net (11/11/2013 1.2.0.0) - (.Condor Corporation.) [HKLM] -- E304C591E3B27BA4FEDE756A7033259C81448FE5 =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - MediaTek Inc. (usbser) Ports (01/05/2012 2.00 - (.MediaTek Inc..) [HKLM] -- 49D9ABA9270C5BDFD7AE1BEB607D36B26BB90235 =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - MediaTek Inc. (usbser) Ports (12/24/2011 2.00 - (.MediaTek Inc..) [HKLM] -- D0E6296D177F42BB31C0200E49412003DB6C4633 =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - Microsoft (WUDFRd) WPD (11/11/2013 1.2.0.0) - (.Microsoft.) [HKLM] -- 0DB207BF709605C62C08D44DD3A953D00A924560 =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - SPA Condor Electronics (WinUSB) AndroidUsbDevi - (.SPA Condor Electronics.) [HKLM] -- EA52A0024D67167EA2BC865080C775727661BB60 =>.Microsoft Windows® O42 - Logiciel: PreEmptive Analytics Client French Language Pack - (.PreEmptive Solutions.) [HKLM] -- {6C78BF87-3840-401B-A8CE-6BC30496A75D} =>.PreEmptive Solutions O42 - Logiciel: PreEmptive Analytics Visual Studio Components - (.PreEmptive Solutions.) [HKLM] -- {943F3FB1-3F9C-4FB7-A4E2-6D53617068C3} =>.PreEmptive Solutions O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Resource Tuner 1.99 R6 - (.Heaventools Software.) [HKLM] -- Resource Tuner_is1 =>.Heaventools Software O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM] -- SHAREit_is1 =>.LENOVO® O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM] -- {95150002-1163-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM] -- {95160001-1163-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Shark007 ADVANCED Codecs - (.Shark007.) [HKLM] -- {8C0CAA7A-3272-4991-A808-2C7559DE3409} =>.Shark007 O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation O42 - Logiciel: Skype™ 7.7 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A. O42 - Logiciel: Snagit 12 - (.TechSmith Corporation.) [HKLM] -- {ae5218bf-cfcc-4099-818d-7e16ce0d97df} =>.TechSmith Corporation® O42 - Logiciel: Snagit 12 - (.TechSmith Corporation.) [HKLM] -- {BDFD9ADC-3F97-4A8A-A533-987B21776449} =>.TechSmith Corporation O42 - Logiciel: Subway Surfers - (...) [HKLM] -- Subway Surfers O42 - Logiciel: Tools for .Net 3.5 - (.Microsoft Corporation.) [HKLM] -- {1690CE56-2231-4E59-9006-A0876D949EA8} =>.Microsoft Corporation O42 - Logiciel: Tools for .Net 3.5 - FRA Lang Pack - (.Microsoft Corporation.) [HKLM] -- {C37962EE-EE24-4E9F-8A41-514ACD79177C} =>.Microsoft Corporation O42 - Logiciel: Types CLR du système Microsoft pour SQL Server 2012 - (.Microsoft Corporation.) [HKLM] -- {06E862CA-3920-4745-9C26-2DE51B50057E} =>.Microsoft Corporation O42 - Logiciel: Update for (KB2504637) - (.Microsoft Corporation.) [HKLM] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637 =>.Microsoft Corporation O42 - Logiciel: VirusTotal Uploader 2.2 - (...) [HKLM] -- VTUploader O42 - Logiciel: Visual F# 3.1 SDK - (.Microsoft Corporation.) [HKLM] -- {06EEE072-B561-38E5-85D9-485ABCBE8342} =>.Microsoft Corporation O42 - Logiciel: Visual F# 3.1 SDK Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {EB5BF5DA-F4DC-3C75-A818-14E9545544B5} =>.Microsoft Corporation O42 - Logiciel: Visual F# 3.1 VS - (.Microsoft Corporation.) [HKLM] -- {6321F2D4-366B-3AE4-877A-8E539EC3331A} =>.Microsoft Corporation O42 - Logiciel: Visual F# 3.1 VS Language Pack - FRA - (.Microsoft Corporation.) [HKLM] -- {2F00A3D0-6FB3-3DD5-A2AD-DCC199AD84D5} =>.Microsoft Corporation O42 - Logiciel: Visual Studio 2012 Verification SDK - (.Microsoft Corporation.) [HKLM] -- {C4CAE1DE-77C8-32A7-A347-52DB738F0DE1} =>.Microsoft Corporation O42 - Logiciel: Visual Studio Extensions for Windows Library for JavaScript - (.Microsoft Corporation.) [HKLM] -- {7AE61976-6FE2-4B65-9E1C-4DE44288772B} =>.Microsoft Corporation O42 - Logiciel: WCF Data Services 5.6.0 FRA Language Pack - (.Microsoft Corporation.) [HKLM] -- {35BCEC03-6257-4E45-8C63-FDA427202ADD} =>.Microsoft Corporation O42 - Logiciel: WCF Data Services 5.6.0 Runtime - (.Microsoft Corporation.) [HKLM] -- {46910786-E4AC-41E4-A4A0-C086EA85242D} =>.Microsoft Corporation O42 - Logiciel: WCF RIA Services V1.0 SP2 - (.Microsoft Corporation.) [HKLM] -- {5D8DD6A8-C4D7-4554-93F9-F1CC28C72600} =>.Microsoft Corporation O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation O42 - Logiciel: Windows 8 Development Essentials - (.Microsoft Corporation.) [HKLM] -- {B4D3393A-68BE-4A5C-B963-93FFE1128E9E} =>.Microsoft Corporation O42 - Logiciel: Windows App Certification Kit Native Components - (.Microsoft Corporation.) [HKLM] -- {550760A2-DC4A-CD2B-3C1B-01E0F9F1279E} =>.Microsoft Corporation O42 - Logiciel: Windows App Certification Kit x86 - (.Microsoft Corporation.) [HKLM] -- {76FF502F-6811-F75B-2FEB-0B69BB584031} =>.Microsoft Corporation O42 - Logiciel: Windows Desktop Gadgets - (.http://gadgetsrevived.com.) [HKLM] -- Windows Desktop Gadgets_is1 O42 - Logiciel: Windows Runtime Intellisense Content - fr-fr - (.Microsoft Corporation.) [HKLM] -- {EA9520C3-B047-4B93-72A6-F94E25762421} =>.Microsoft Corporation O42 - Logiciel: Windows Software Development Kit - (.Microsoft Corporation.) [HKLM] -- {984022F2-9BCA-A41D-6A38-1AE658F01415} =>.Microsoft Corporation O42 - Logiciel: Windows Software Development Kit DirectX x86 Remote - (.Microsoft Corporation.) [HKLM] -- {A1CB8286-CFB3-A985-D799-721A0F2A27F3} =>.Microsoft Corporation O42 - Logiciel: Windows Software Development Kit for Windows Store Apps - (.Microsoft Corporation.) [HKLM] -- {37464E70-B0B9-9DFF-649A-CBE169BAD657} =>.Microsoft Corporation O42 - Logiciel: Windows Software Development Kit for Windows Store Apps - (.Microsoft Corporation.) [HKLM] -- {99FCCA2B-F1FD-E66E-E3B9-AA57FBBF2E66} =>.Microsoft Corporation O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x86 Remote - (.Microsoft Corporation.) [HKLM] -- {56AD3004-0B49-967F-F682-B05650B61A78} =>.Microsoft Corporation O42 - Logiciel: Windows XP Targeting with C++ - (.Microsoft Corporation.) [HKLM] -- {F361FE04-789E-42F3-BBAB-E7B380AA5E06} =>.Microsoft Corporation O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wise Care 365 3.88 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Care 365_is1 =>.Lespeed Technology Ltd.® O42 - Logiciel: Wise Memory Optimizer 3.42 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Memory Optimizer_is1 =>.WiseCleaner.com, Inc. O42 - Logiciel: Workflow Manager Client 1.0 - (.Microsoft Corporation.) [HKLM] -- {345B16F0-4BF6-495F-80B0-C0726040642D} =>.Microsoft Corporation O42 - Logiciel: Workflow Manager Tools 1.0 for Visual Studio - (.Microsoft Corporation.) [HKLM] -- {E0617FCD-1F3C-4FC2-9FEB-684DB5682975} =>.Microsoft Corporation ---\\ HKCU & HKLM Software Keys (158) - 77s HKLM\SOFTWARE\Acronis HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AMD HKLM\SOFTWARE\AMI HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\Baidu HKLM\SOFTWARE\Baidu Security HKLM\SOFTWARE\Baidu_Drp_pos HKLM\SOFTWARE\BSPACode HKLM\SOFTWARE\CloudOPTInfo HKLM\SOFTWARE\Dell HKLM\SOFTWARE\Dolby HKLM\SOFTWARE\drpsu HKLM\SOFTWARE\DTS HKLM\SOFTWARE\EagleGet HKLM\SOFTWARE\EASEUS HKLM\SOFTWARE\ESET HKLM\SOFTWARE\famatech HKLM\SOFTWARE\FileZilla 3 HKLM\SOFTWARE\FlashPeak HKLM\SOFTWARE\Fortemedia HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Icaros HKLM\SOFTWARE\id HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstallShield HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\IObit HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\KMPlayer HKLM\SOFTWARE\Knowles HKLM\SOFTWARE\Lenovo HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\LinuxLive USB Creator HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\MAGIX HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\MegaDownloader HKLM\SOFTWARE\MimarSinan HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nahimic HKLM\SOFTWARE\NeoSmart Technologies HKLM\SOFTWARE\NewSoftware's HKLM\SOFTWARE\Notepad++ HKLM\SOFTWARE\NowSmart HKLM\SOFTWARE\Nuance HKLM\SOFTWARE\NuGet HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OEM HKLM\SOFTWARE\Opera Software HKLM\SOFTWARE\Partner HKLM\SOFTWARE\Piriform HKLM\SOFTWARE\PreEmptive Solutions HKLM\SOFTWARE\Radmin_Install HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SlimWare Utilities Inc HKLM\SOFTWARE\SlimWare Utilities, Inc. HKLM\SOFTWARE\Software HKLM\SOFTWARE\SonicFocus HKLM\SOFTWARE\SoundResearch HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\TechSmith HKLM\SOFTWARE\TopLang HKLM\SOFTWARE\Virustotal HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\VST HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\WiseCleaner HKLM\SOFTWARE\Wow6432Node HKLM\SOFTWARE\Xara HKCU\SOFTWARE\AC3filter HKCU\SOFTWARE\Acronis HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Akeo Consulting HKCU\SOFTWARE\AMD HKCU\SOFTWARE\Andy HKCU\SOFTWARE\APN PIP =>.Superfluous.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Baidu HKCU\SOFTWARE\Baidu Security HKCU\SOFTWARE\Codemasters Software Ltd HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\DriverUpdaterPro =>PUP.Optional.DriverUpdaterPro HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\EagleGet HKCU\SOFTWARE\EaseUS HKCU\SOFTWARE\ESET HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\famatech HKCU\SOFTWARE\FileZilla Client HKCU\SOFTWARE\FinalWire HKCU\SOFTWARE\FlashPeak HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Heaventools HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Kiloo Games HKCU\SOFTWARE\KMPlayer HKCU\SOFTWARE\Kodi HKCU\SOFTWARE\LAV HKCU\SOFTWARE\Lavalys HKCU\SOFTWARE\Lenovo HKCU\SOFTWARE\LinuxLive HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madFlac HKCU\SOFTWARE\Magix HKCU\SOFTWARE\MAGIX AG HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\MedaFan Technology HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-BE Filters HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\MTK HKCU\SOFTWARE\MyLanViewer HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewSoftware's HKCU\SOFTWARE\njRAT v0.6.4 HKCU\SOFTWARE\njRAT v0.7d HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Raptr HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\RSUPPORT HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SlimWare Utilities Inc HKCU\SOFTWARE\SyncEngines HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (307) - 261s O43 - CFD: 09/11/2015 - [] D -- C:\Program Files\Acoustica Mixcraft 7 O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Acronis =>.Acronis International GmbH® O43 - CFD: 07/08/2015 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 05/08/2015 - [] AD -- C:\Program Files\Advanced IP Scanner =>.Famatech Corp.® O43 - CFD: 29/02/2016 - [] AD -- C:\Program Files\AMD O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Application Verifier O43 - CFD: 30/09/2015 - [] D -- C:\Program Files\ARW5 {7EA06A38F10DA929794950EB7FA2E2E9} O43 - CFD: 28/11/2015 - [] AD -- C:\Program Files\ATI Technologies O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\baidu O43 - CFD: 11/08/2015 - [] D -- C:\Program Files\Baidu Security O43 - CFD: 12/01/2016 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows® O43 - CFD: 03/10/2015 - [] AD -- C:\Program Files\DNSExit IP Updater O43 - CFD: 12/11/2015 - [] AD -- C:\Program Files\Doom 3 O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\Droid4Xext O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\EagleGet O43 - CFD: 18/02/2016 - [] D -- C:\Program Files\EaseUS O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.® O43 - CFD: 22/02/2016 - [] D -- C:\Program Files\eSupport.com =>PUP.Optional.eSupport O43 - CFD: 02/08/2015 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 22/12/2015 - [] D -- C:\Program Files\FileZilla FTP Client =>.Open Source Developer, Tim Kosse® O43 - CFD: 26/02/2016 - [] D -- C:\Program Files\FinalWire =>.FinalWire Kft.® O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\FormatFactory =>.chen jun hao® O43 - CFD: 02/08/2015 - [] AD -- C:\Program Files\GreenBrowser O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\HTML Help Workshop =>.Microsoft Corporation® O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\IIS =>.Microsoft Corporation® O43 - CFD: 10/01/2016 - [] AD -- C:\Program Files\IIS Express =>.Microsoft Corporation® O43 - CFD: 26/02/2016 - [] D -- C:\Program Files\InstallShield Installation Information O43 - CFD: 12/08/2015 - [] D -- C:\Program Files\Intel O43 - CFD: 23/12/2015 - [] D -- C:\Program Files\IntelliTamper O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 06/02/2016 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.® O43 - CFD: 16/01/2016 - [] AD -- C:\Program Files\Kingo ROOT {4BA0711A8EBE6D481E1846163BA3D2FD} O43 - CFD: 09/02/2016 - [] D -- C:\Program Files\Kodi O43 - CFD: 27/02/2016 - [] D -- C:\Program Files\Lavalys =>.LAVALYS® O43 - CFD: 04/10/2015 - [] D -- C:\Program Files\Lenovo =>.LENOVO® O43 - CFD: 07/01/2016 - [] AD -- C:\Program Files\LinuxLive USB Creator O43 - CFD: 18/10/2015 - [] AD -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 21/10/2015 - [] AD -- C:\Program Files\MegaDownloader O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Microsoft ASP.NET =>.Microsoft Corporation® O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft Help Viewer =>.Microsoft Corporation® O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft Identity Extensions O43 - CFD: 23/02/2016 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 13/10/2015 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation® O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft SDKs =>.Microsoft Corporation® O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation® O43 - CFD: 08/01/2016 - [] AD -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft Visual Studio 11.0 =>.Microsoft Corporation® O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft Visual Studio 12.0 =>.Microsoft Corporation® O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Microsoft WCF Data Services =>.Microsoft Corporation® O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Microsoft Web Tools =>.Microsoft Corporation® O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\MSBuild =>.Microsoft Corporation® O43 - CFD: 13/11/2015 - [] AD -- C:\Program Files\MSXML 4.0 O43 - CFD: 03/10/2015 - [] D -- C:\Program Files\MyLanViewer {11692443EEAD46} O43 - CFD: 17/02/2016 - [] D -- C:\Program Files\NeoSmart Technologies =>.NeoSmart Technologies® O43 - CFD: 10/08/2015 - [] D -- C:\Program Files\NewSoftware's {1121122E787653A63021DDD46D487F7F3B5B} O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Notepad++ O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\NuGet O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Open XML SDK O43 - CFD: 02/03/2016 - [] AD -- C:\Program Files\Opera =>.Opera Software ASA® O43 - CFD: 10/08/2015 - [] D -- C:\Program Files\QuickTime O43 - CFD: 25/12/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 05/11/2015 - [] AD -- C:\Program Files\Resource Tuner O43 - CFD: 31/01/2016 - [] AD -- C:\Program Files\RSUPPORT =>.Rsupport Co., Ltd.® O43 - CFD: 04/08/2015 - [] D -- C:\Program Files\RYS PLANET O43 - CFD: 10/01/2016 - [] AD -- C:\Program Files\SharePoint Client Components O43 - CFD: 11/08/2015 - [] D -- C:\Program Files\Shark007 O43 - CFD: 31/01/2016 - [] RD -- C:\Program Files\Skype =>.Skype Software Sarl® O43 - CFD: 24/01/2016 - [] AD -- C:\Program Files\SlimBrowser {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\Subway Surfers O43 - CFD: 10/08/2015 - [] D -- C:\Program Files\TechSmith =>.TechSmith Corporation® O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 03/10/2015 - [] D -- C:\Program Files\VirusTotalUploader2 O43 - CFD: 11/10/2015 - [0] D -- C:\Program Files\VST O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Windows Identity Foundation O43 - CFD: 14/02/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 08/01/2016 - [] D -- C:\Program Files\Windows Kits =>.Microsoft Corporation® O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 29/01/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Multimedia Platform O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\Windows NT O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 28/11/2015 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 28/02/2016 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation® O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files\WindowsPowerShell O43 - CFD: 02/08/2015 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 09/10/2015 - [] D -- C:\Program Files\Wise =>.Lespeed Technology Ltd.® O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Workflow Manager Tools {330000001A77BB74B307D116B800000000001A} O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced IP Scanner v2 O43 - CFD: 29/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Record Wizard O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DNSExit IP Updater O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Doom 3 O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EagleGet O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 9.3.0 O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FinalWire O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlashPeak SlimBrowser O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Folder Lock O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GreenBrowser O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT O43 - CFD: 27/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MegaDownloader O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Français O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012 O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Tuner O43 - CFD: 31/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RSUPPORT O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RYS PLANET O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shark007 Codecs O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 28/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subway Surfers O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013 O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Care 365 O43 - CFD: 03/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Memory Optimizer O43 - CFD: 11/10/2015 - [] D -- C:\ProgramData\Acoustica O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Acronis O43 - CFD: 07/08/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Advanced O43 - CFD: 21/09/2015 - [0] D -- C:\ProgramData\AMD O43 - CFD: 28/11/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Baidu O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Baidu Security O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 02/08/2015 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 28/11/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\EagleGet O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\ESET O43 - CFD: 03/08/2015 - [0] D -- C:\ProgramData\IDM O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\IObit O43 - CFD: 02/08/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 02/08/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 09/02/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 02/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 03/08/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 02/08/2015 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 03/08/2015 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\NuGet O43 - CFD: 06/02/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\PreEmptive Solutions O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\ProductData O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 23/02/2016 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 28/11/2015 - [] AD -- C:\ProgramData\regid.1995-08.com.techsmith O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 08/08/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\SlimWare Utilities, Inc O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 15/01/2016 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 07/08/2015 - [] D -- C:\ProgramData\Sun O43 - CFD: 10/08/2015 - [] AD -- C:\ProgramData\TechSmith O43 - CFD: 31/12/2015 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 03/08/2015 - [] D -- C:\ProgramData\Thunder Network O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\TopLang O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 02/03/2016 - [] D -- C:\ProgramData\VMware O43 - CFD: 22/01/2016 - [] AD -- C:\ProgramData\Windows App Certification Kit O43 - CFD: 23/02/2016 - [] HDC -- C:\ProgramData\{54711293-A5E4-4D56-8A6E-67C869A26BF0} O43 - CFD: 07/08/2015 - [] AD -- C:\Program Files\Common Files\Acronis O43 - CFD: 07/08/2015 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 24/02/2016 - [] D -- C:\Program Files\Common Files\ATI Technologies O43 - CFD: 23/02/2016 - [] AD -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\Common Files\EagleGet O43 - CFD: 05/11/2015 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 06/02/2016 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 04/10/2015 - [] D -- C:\Program Files\Common Files\LENOVO O43 - CFD: 22/01/2016 - [] AD -- C:\Program Files\Common Files\Merge Modules O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Common Files\Microsoft O43 - CFD: 23/02/2016 - [] AD -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 11/10/2015 - [] D -- C:\Program Files\Common Files\Propellerhead Software O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 08/08/2015 - [] AD -- C:\Program Files\Common Files\Skype O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 10/08/2015 - [] AD -- C:\Program Files\Common Files\TechSmith Shared O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Common Files\VMware O43 - CFD: 07/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Acronis O43 - CFD: 07/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Adobe O43 - CFD: 11/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Advanced O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\AMD O43 - CFD: 13/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Andy O43 - CFD: 13/08/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Andy_44_Online O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\ATI O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Baidu O43 - CFD: 22/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\BaiduYunGuanjia O43 - CFD: 22/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\BaiduYunKernel O43 - CFD: 25/02/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Roaming\DMCache O43 - CFD: 29/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\DRPSu O43 - CFD: 25/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\EagleGet O43 - CFD: 02/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\FileZilla O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\HaiYuInst O43 - CFD: 09/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\IObit O43 - CFD: 16/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Kingosoft O43 - CFD: 14/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Kodi O43 - CFD: 13/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\library_dir O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Macromedia O43 - CFD: 22/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\MAGIX O43 - CFD: 21/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Meda MP3 Splitter Gold 4.2 O43 - CFD: 08/01/2016 - [] SD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft O43 - CFD: 11/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Million O43 - CFD: 15/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Mobogenie =>PUP.Optional.Mobogenie O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Mozilla O43 - CFD: 08/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Notepad++ O43 - CFD: 08/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\NuGet O43 - CFD: 09/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Opera Software O43 - CFD: 05/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Resource Tuner O43 - CFD: 31/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Rsupport O43 - CFD: 03/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Skype O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\SlimBrowser O43 - CFD: 29/09/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Sun O43 - CFD: 12/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\TechSmith O43 - CFD: 29/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Todae O43 - CFD: 03/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\WinRAR O43 - CFD: 25/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Wise Care 365 O43 - CFD: 20/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\WiseUpdate O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\ZHP O43 - CFD: 28/11/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\ActiveSync O43 - CFD: 14/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Adobe O43 - CFD: 22/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\AMD O43 - CFD: 28/11/2015 - [0] SHD -- C:\Users\Hakim.dz\AppData\Local\Application Data O43 - CFD: 14/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Apps O43 - CFD: 30/09/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\arw5 O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\ATI O43 - CFD: 10/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Comms O43 - CFD: 28/11/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\CrashDumps O43 - CFD: 25/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Diagnostics O43 - CFD: 23/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Downloaded Installations O43 - CFD: 16/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\ElevatedDiagnostics O43 - CFD: 29/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\ESET O43 - CFD: 17/02/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Local\eSupport.com =>PUP.Optional.eSupport O43 - CFD: 01/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Facebook O43 - CFD: 28/11/2015 - [0] SHD -- C:\Users\Hakim.dz\AppData\Local\Historique O43 - CFD: 16/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Kingosoft O43 - CFD: 04/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Lenovo O43 - CFD: 05/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Macromedia O43 - CFD: 15/01/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Local\Mediatek O43 - CFD: 21/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MegaDownloader O43 - CFD: 08/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Microsoft O43 - CFD: 21/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Microsoft Help O43 - CFD: 04/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MicrosoftEdge O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MiniService O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Mozilla O43 - CFD: 19/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MSfree Inc O43 - CFD: 03/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\MyLanViewer O43 - CFD: 19/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\NeoSmart_Technologies O43 - CFD: 14/02/2016 - [0] D -- C:\Users\Hakim.dz\AppData\Local\NetworkTiles O43 - CFD: 14/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\OfficeBSCache-MyComputer O43 - CFD: 12/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Opera Software O43 - CFD: 09/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Packages O43 - CFD: 04/08/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\PeerDistRepub O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Programs O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Publishers O43 - CFD: 10/08/2015 - [0] D -- C:\Users\Hakim.dz\AppData\Local\SKIDROW O43 - CFD: 08/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\Skype O43 - CFD: 12/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\SlimWare Utilities Inc O43 - CFD: 10/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\TechSmith O43 - CFD: 02/03/2016 - [] D -- C:\Users\Hakim.dz\AppData\Local\Temp O43 - CFD: 28/11/2015 - [0] SHD -- C:\Users\Hakim.dz\AppData\Local\Temporary Internet Files O43 - CFD: 02/08/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\TileDataLayer O43 - CFD: 03/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Local\VirtualStore O43 - CFD: 30/10/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 28/11/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 14/02/2016 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 22/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 23/12/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IntelliTamper O43 - CFD: 09/02/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi O43 - CFD: 07/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator O43 - CFD: 29/01/2016 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Live Media Plugin O43 - CFD: 30/10/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 14/02/2016 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 28/11/2015 - [] RD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirusTotal Uploader 2.2 O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 28/11/2015 - [] D -- C:\Users\Hakim.dz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 54s O45 - LFCP:[MD5.E4C0826F0F97F75F335B1F1DA685D917] 27/02/2016 A -- C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-2B26E1E7.pf =>PUP.Optional.DriverUpdaterPro O45 - LFCP:[MD5.CB306FFC16626ED40A58CDDE147A2C72] 25/02/2016 A -- C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-5D25DE5F.pf =>PUP.Optional.DriverUpdaterPro O45 - LFCP:[MD5.8D0683EE166AABF05BC45D2D77249D52] 16/01/2016 A -- C:\WINDOWS\Prefetch\MOBOGENIE.EXE-BD9AF242.pf =>PUP.Optional.Mobogenie ---\\ ShellIconOverlayIdentifiers (SIOI) (13) - 3s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Acronis True Image Shell Sync Error Icon Overlay Extension [AcronisSyncError] - {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED}. (.Acronis - Acronis True Image Shell Extensions.) -- C:\Program Files\Acronis\TrueImageHome\tishell.dll =>.Acronis International GmbH® O106 - SIOI: Acronis True Image Shell Sync In Progress Icon Overlay Extension [AcronisSyncInProgress] - {00F848DC-B1D4-4892-9C25-CAADC86A215D}. (.Acronis - Acronis True Image Shell Extensions.) -- C:\Program Files\Acronis\TrueImageHome\tishell.dll =>.Acronis International GmbH® O106 - SIOI: Acronis True Image Shell Sync Ok Icon Overlay Extension [AcronisSyncOk] - {71573297-552E-46fc-BE3D-3DFAF88D47B7}. (.Acronis - Acronis True Image Shell Extensions.) -- C:\Program Files\Acronis\TrueImageHome\tishell.dll =>.Acronis International GmbH® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (91) - 87s O58 - SDL:2015/10/12 10:36:41 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\17EA2C78.sys [98520] =>.Malwarebytes Corporation® O58 - SDL:2015/10/14 10:56:25 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\26F34602.sys [98520] =>.Malwarebytes Corporation® O58 - SDL:2015/10/30 06:44:28 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [85856] =>.Microsoft Windows® O58 - SDL:2015/10/03 10:02:55 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\63CA7490.sys [98520] =>.Malwarebytes Corporation® O58 - SDL:2015/09/30 14:58:53 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\7D2C6654.sys [98520] =>.Malwarebytes Corporation® O58 - SDL:2015/10/30 06:44:28 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1038176] =>.Microsoft Windows® O58 - SDL:2015/08/09 06:10:08 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\WINDOWS\System32\drivers\amdacpksd.sys [277240] =>.Advanced Micro Devices, Inc.® O58 - SDL:2015/06/03 14:35:36 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmafd.sys [26360] =>.Advanced Micro Devices, Inc.® O58 - SDL:2015/10/30 06:44:28 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [75104] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [215392] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [22880] =>.Microsoft Windows® O58 - SDL:2016/02/09 20:37:09 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\WINDOWS\System32\drivers\AmUStor.sys [76952] =>.AlcorMicro, Corp.® O58 - SDL:2015/10/30 06:44:28 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [116576] =>.Microsoft Windows® O58 - SDL:2014/12/21 04:37:18 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWB3.sys [200704] =>.Advanced Micro Devices O58 - SDL:2015/07/22 00:42:06 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT3.sys [82432] =>.Advanced Micro Devices O58 - SDL:2015/12/16 20:01:38 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [19525104] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/12/16 20:01:36 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [542192] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/10/30 06:44:28 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [8192] =>.Windows (R) Win 7 DDK provider O58 - SDL:2015/10/30 06:44:28 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [8192] =>.Windows (R) Win 7 DDK provider O58 - SDL:2013/10/08 17:23:14 A . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\WINDOWS\System32\drivers\BtHidBus.sys [20576] =>.IVT CORPORATION® O58 - SDL:2012/12/24 15:42:16 A . (.IVT Corporation. - Bluetooth PAN Network Bus Driver.) -- C:\WINDOWS\System32\drivers\btnetBus.sys [27256] =>.IVT CORPORATION® O58 - SDL:2016/02/17 19:30:07 A . (.Phoenix Technologies - DriverAgent Direct I/O for 32-bit Windows.) -- C:\WINDOWS\System32\drivers\DrvAgent32.sys [31832] =>PUP.Optional.eSupport O58 - SDL:2016/01/31 21:58:40 A . (.eagleGet - eagleGet Network Filter.) -- C:\WINDOWS\System32\drivers\eagleGet.sys [69432] {5EAA8EA6DE5A4AE14D8CEF6B69520D27} =>.EagleGet O58 - SDL:2015/12/08 15:25:08 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [205800] =>.ESET, spol. s r.o.® O58 - SDL:2015/09/23 09:30:22 A . (.ESET - ESET ELAM driver.) -- C:\WINDOWS\System32\drivers\eelam.sys [14464] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [146024] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\WINDOWS\System32\drivers\ekbdflt.sys [111040] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [161992] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/27 13:03:56 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\WINDOWS\System32\drivers\epfwlwf.sys [44608] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/27 13:03:56 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [56944] =>.ESET, spol. s r.o.® O58 - SDL:2015/08/07 18:46:56 A . (.Acronis International GmbH - File tracker minifilter driver.) -- C:\WINDOWS\System32\drivers\file_tracker.sys [214304] =>.Acronis International GmbH® O58 - SDL:2015/08/07 18:45:57 A . (.Acronis International GmbH - Acronis Storage Filter Management Driver.) -- C:\WINDOWS\System32\drivers\fltsrv.sys [98592] =>.Acronis International GmbH® O58 - SDL:2015/10/30 06:44:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [56672] =>.Microsoft Windows® O58 - SDL:2016/02/09 20:29:18 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX® O58 - SDL:2015/10/30 06:44:25 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [66048] =>.Intel(R) Corporation O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel(R) Atom(TM) Processor GPIO Controller.) -- C:\WINDOWS\System32\drivers\iaiogpio.sys [22016] =>.Intel Corporation O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel(R) Atom(TM) Processor I2C Controller.) -- C:\WINDOWS\System32\drivers\iaioi2c.sys [61936] =>.Intel Corporation O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [524632] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [333664] =>.Microsoft Windows® O58 - SDL:2015/06/12 03:00:58 N . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [123968] =>.Tonec Inc.® O58 - SDL:2012/12/24 15:45:36 A . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\WINDOWS\System32\drivers\IvtBtBus.sys [23288] =>.IVT CORPORATION® O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [94040] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [88928] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [83288] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [69472] =>.Microsoft Windows® O58 - SDL:2015/10/05 08:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 08:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [94936] =>.Malwarebytes Corporation® O58 - SDL:2016/03/02 13:00:15 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2015/10/30 06:44:28 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [52064] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [464728] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/10/05 08:50:20 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [51928] =>.Malwarebytes Corporation® O58 - SDL:2015/10/30 06:44:25 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28u.sys [1800704] =>.MediaTek Inc. O58 - SDL:2015/10/30 06:44:28 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [119136] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [142176] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [51040] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [51552] =>.Microsoft Windows® O58 - SDL:2012/12/18 18:07:30 A . (.Famatech International Corp. - Radmin Mirror Miniport Driver V3.) -- C:\WINDOWS\System32\drivers\rminiv3.sys [3328] O58 - SDL:2016/02/09 20:38:31 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 32-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x86.sys [789248] =>.Realtek Semiconductor Corp® O58 - SDL:2015/12/17 22:47:58 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHDA.sys [3688704] =>.Realtek Semiconductor Corp® O58 - SDL:2015/10/30 06:44:28 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [41312] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [79200] =>.Microsoft Windows® O58 - SDL:2015/08/07 18:46:02 A . (.Acronis International GmbH - Acronis Snapshot API.) -- C:\WINDOWS\System32\drivers\snapman.sys [208672] =>.Acronis International GmbH® O58 - SDL:2015/10/30 06:44:28 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/08/07 18:46:11 A . (.Acronis International GmbH - Acronis Backup Archive Explorer.) -- C:\WINDOWS\System32\drivers\tib.sys [685160] =>.Acronis International GmbH® O58 - SDL:2015/08/07 18:46:16 A . (.Acronis International GmbH - Acronis TIB Mounter Driver.) -- C:\WINDOWS\System32\drivers\tib_mounter.sys [184136] =>.Acronis International GmbH® O58 - SDL:2015/10/29 18:53:01 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [35064] =>.Adlice® O58 - SDL:2005/10/09 01:05:16 A . (.EnTech Taiwan - TVicHW32 Driver for Windows NT/2000/XP.) -- C:\WINDOWS\System32\drivers\TVICHW32.SYS [23600] =>.EnTech Taiwan O58 - SDL:2014/05/16 14:25:48 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [204064] =>.Oracle Corporation® O58 - SDL:2015/10/30 06:44:28 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [149856] =>.Microsoft Windows® O58 - SDL:2015/10/30 06:44:28 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [276832] =>.Microsoft Windows® O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\ANSI.SYS [9029] O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\country.sys [27097] O58 - SDL:2013/03/07 09:49:20 A . (...) -- C:\WINDOWS\System32\epmntdrv.sys [14920] O58 - SDL:2013/03/07 09:49:20 A . (...) -- C:\WINDOWS\System32\EuGdiDrv.sys [9160] O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\HIMEM.SYS [4768] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\KEY01.SYS [42809] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\KEYBOARD.SYS [42537] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTDOS.SYS [27866] O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS404.SYS [29146] O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS411.SYS [29370] O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS412.SYS [29274] O58 - SDL:2015/11/28 10:30:54 A . (...) -- C:\WINDOWS\System32\NTDOS804.SYS [29146] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO.SYS [33968] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO404.SYS [34688] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO411.SYS [35776] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO412.SYS [35552] O58 - SDL:2015/11/28 10:30:55 A . (...) -- C:\WINDOWS\System32\NTIO804.SYS [34688] O58 - SDL:2015/08/10 22:12:34 A . (...) -- C:\WINDOWS\System32\WinFLAdrv.sys [31352] =>.Newsoftwares.net, Inc SDN BHD® O58 - SDL:2015/08/10 22:12:25 A . (.NewSoftwares.net, Inc. - Virtual Encryption Driver.) -- C:\WINDOWS\System32\WinVDEdrv.sys [228112] =>.NewSoftwares.net Inc. SDN. BHD.® O58 - SDL:2015/08/10 22:12:32 A . (...) -- C:\WINDOWS\System32\WinVDEdrv6.sys [188176] =>.NewSoftwares.net Inc. SDN. BHD.® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (12) - 62s O61 - LFC: 2016/02/28 11:03:30 A . (..) -- C:\Users\Hakim.dz\Desktop\aminf329.exe [529908] O61 - LFC: 2016/02/29 12:19:51 A . (.Kuzyakov Artur.) -- C:\Users\Hakim.dz\Desktop\DriverPack-Online_865317139.1456744711.exe [1979024] {158377DA2BD81EDC1F1DF9B7E343B3CB} O61 - LFC: 2016/03/01 12:05:49 A . (..) -- C:\Users\Hakim.dz\Desktop\ipm31_103_bios.exe [5994440] {1BA315B89D1AF7C2CB153F29392B2B78} O61 - LFC: 2016/03/01 12:02:54 A . (..) -- C:\Users\Hakim.dz\Desktop\Win129drv-DSU.exe [5994440] {1BA315B89D1AF7C2CB153F29392B2B78} O61 - LFC: 2016/03/01 13:53:46 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [24616] O61 - LFC: 2016/03/02 10:32:48 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2016/03/02 11:33:13 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635925062026092700.bin [50151] O61 - LFC: 2016/03/02 18:55:31 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148] O61 - LFC: 2016/03/02 13:37:49 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Windows\INetCache\IE\WNRYOSML\Firefox%20Setup%20Stub%2044.0.2[1].exe [8192] O61 - LFC: 2016/03/02 14:28:22 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Windows\INetCache\IE\O7O12B2J\VMware-workstation-full-12.1.0-3272444[1].exe [8803] O61 - LFC: 2016/02/23 19:47:52 A . (..) -- C:\Users\Hakim.dz\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635918397328115513.bin [4064] O61 - LFC: 2016/02/29 11:11:55 A . (..) -- C:\Users\Hakim.dz\AppData\Local\ATI\ACE\Manifest.Bin [29848] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (14) - 2s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.FlashPeak Inc. - FlashPeak SlimBrowser.) -- C:\Program Files\SlimBrowser\sbframe.exe {3DFE0BA55DE3A30C4BDFC4E79E5D8DC9} =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =>.Opera Software ASA® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.FlashPeak Inc. - FlashPeak SlimBrowser.) -- C:\Program Files\SlimBrowser\sbframe.exe =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software ---\\ Recherche d'infection sur les navigateurs (2) - 24s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (42) - 5s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [160768] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [160768] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [218624] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1190912] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [742400] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [842752] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [76288] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [116224] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [95232] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [819712] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [185344] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [107520] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [246784] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [313344] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [68608] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1552896] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [144384] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [156160] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [140288] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [47616] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [717312] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [163840] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [538112] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [820224] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [200192] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [45568] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [706048] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [783872] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [307200] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [251392] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [22528] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [93184] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [601088] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [436224] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [57856] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [396800] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [254976] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1903616] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [857600] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [559616] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [165376] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (3) - 9s O87 - FAEL: "TCP Query User{7DAA3838-5DDC-4F0C-BF17-6E23EFBE26DD}C:\users\hakim.dz\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe" [In-None-P6-TRUE] .(.深圳市迅雷网络技术有限公司 - 迅雷云加速开放平台.) -- C:\users\hakim.dz\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe {0CFF7B329CFF7F3B8D2D542AB25826BA} O87 - FAEL: "TCP Query User{94E72C01-A31E-4C74-B973-4FE6C312D81A}E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe" [In-None-P6-TRUE] .(.MTUX Corp - My Mobiler.) -- E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe O87 - FAEL: "UDP Query User{6EC14214-4600-425E-B797-6EC59AED2D48}E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe" [In-None-P17-TRUE] .(.MTUX Corp - My Mobiler.) -- E:\logiciel_pc\android_apps\mymobiler_0.9.8.2\mymobiler.exe ---\\ Scan Additionnel (10) - 0s HKCU\SOFTWARE\APN PIP =>.Superfluous.Conduit HKCU\SOFTWARE\DriverUpdaterPro =>PUP.Optional.DriverUpdaterPro HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport C:\Program Files\eSupport.com =>PUP.Optional.eSupport C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\Hakim.dz\AppData\Roaming\Mobogenie =>PUP.Optional.Mobogenie C:\Users\Hakim.dz\AppData\Local\eSupport.com =>PUP.Optional.eSupport C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-2B26E1E7.pf =>PUP.Optional.DriverUpdaterPro C:\WINDOWS\Prefetch\DRIVERUPDATERPRO.EXE-5D25DE5F.pf =>PUP.Optional.DriverUpdaterPro C:\WINDOWS\Prefetch\MOBOGENIE.EXE-BD9AF242.pf =>PUP.Optional.Mobogenie ---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DriverUpdaterPro http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.eSupport http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS http://www.nicolascoolman.fr/?p=215 =>PUP.Optional.Mobogenie ~ End of the scan, 56558 items in 00h18mn12s (1181)(0)