cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.3.2.62 Par Nicolas Coolman (2016/03/02)
~ Démarré par GARAH Mourad (Administrator) (2016/03/04 19:59:26)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\GARAH Mourad\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\GARAH Mourad\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Ultimate, 64-bit (Build 7600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v48.0.2564.116
MFIE: Mozilla Firefox 44.0.2 (x86 en-US)
MSIE: Internet Explorer v8.0.7600.16385

---\\ Informations sur les produits Windows (4) - 4s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (1) - 1s
Avast Free Antivirus v11.1.2253

---\\ Surveillance de Logiciels (1) - 2s
Adobe Acrobat Reader DC

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4065.124 MB (19% free)
System Restore: Activé (Enable)
System drive C: has 7 GB () free of 56 GB =>Alerte espace disque inférieur à 20 Go

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: GARAHMOURAD-PC
~ User Name: GARAH Mourad
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 7 GB free of 56 GB (System)
~ Drive E: has 189 GB free of 209 GB
~ Drive F: has 184 GB free of 210 GB

---\\ Etat du Centre de Sécurité Windows (13) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (26) - 2s
[MD5.C235A51CB740E45FFA0EBFB9BAFCDA64] - 14/07/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2868224] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.B1037F0131C9A010D611F6914E03CD92] - 14/07/2009 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1193472] =>.Microsoft Corporation
[MD5.132328DF455B0028F13BF0ABEE51A63A] - 14/07/2009 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [389120] =>.Microsoft Corporation
[MD5.75341574F21E766748732BDF530C74BD] - 14/07/2009 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [231936] =>.Microsoft Corporation
[MD5.05A2D26ACF0939A4E97160315F1FA12E] - 14/07/2009 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [356352] =>.Microsoft Corporation
[MD5.6D5A49D6479EB753C7879F73A4C35E0F] - 14/07/2009 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [269824] =>.Microsoft Corporation
[MD5.F2521C3173E6027B3FBD5E44272BDF6C] - 14/07/2009 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.B9384E03479D2506BC924C16A3DB87BC] - 14/07/2009 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [500224] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Corporation
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.83D2D75E1EFB81B3450C18131443F7DB] - 14/07/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.3F1DC527070ACB87E40AFE46EF6DA749] - 14/07/2009 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation
[MD5.0A49913402747A0B67DE940FB42CBDBB] - 14/07/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.CFDCD8CA87C2A657DEBC150AC35B5E08] - 14/07/2009 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [157184] =>.Microsoft Corporation
[MD5.9162B273A44AB9DCE5B44362731D062A] - 14/07/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [259072] =>.Microsoft Corporation
[MD5.356698A13C4630D5B31C37378D469196] - 14/07/2009 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1659984] =>.Microsoft Corporation
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.87A6E852A22991580D6D39ADC4790463] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [130048] =>.Microsoft Corporation
[MD5.9706B84DBABFC4B4CA46C5A82B14DFA3] - 14/07/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165376] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - 14/07/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [99840] =>.Microsoft Corporation
[MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - 14/07/2009 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [294992] =>.Microsoft Corporation

---\\ Liste des services NT non Microsoft et non désactivés (22) - 7s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) . (.Intel Corporation - Intel® Centrino® Wireless Bluetooth® + High.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Qualcomm Atheros Commnucations
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Sec (BTHSSecurityMgr) . (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: egGetSvc (egGetSvc) . (.Copyright (C) eagleGet 2014 - EGMonito Application.) - C:\Program Files (x86)\EagleGet\EGMonitor.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: GLArab.com HTTP Proxy (glarab_http_proxy) . (. - http_proxy.exe.) - C:\Program Files (x86)\GLArab.com\Proxy\http_proxy.exe {2B20137DFF09D1}
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Mobile Wireless Group®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O23 - Service: SW Update Service (SWUpdateService) . (.Samsung Electronics CO., LTD. - SW Update Agent.) - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe =>.Samsung Electronics CO., LTD.®
O23 - Service: The Calendar Service (TheCalendarService) . (.Copyright (C) 2015 - The Calendar Service.) - C:\Program Files (x86)\CalendarTool\2.0.0.10764\CalendarServ.exe {6726020D51A8625A1F9F13803B1FE9EE}
O23 - Service: Torch Crash Handler (TorchCrashHandler) . (.TorchMedia Inc. - TorchCrashHandler.) - C:\Users\GARAH Mourad\AppData\Local\Torch\Update\TorchCrashHandler.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Mobile Wireless Group®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (35) - 61s

SR - Auto [13/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [11/04/2013] [ 772064] Intel® Centrino® Wireless Bluetooth® + High Speed Service (AMPPALR3) . (.Intel Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe =>.Intel Corporation-Mobile Wireless Group®
SR - Auto [25/01/2013] [ 227456] AtherosSvc (AtherosSvc) . (.Qualcomm Atheros Commnucations.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Qualcomm Atheros Commnucations
SR - Auto [22/02/2016] [ 237096] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
SR - Demand [26/10/2012] [ 282112] BrYNSvc (BrYNSvc) . (.Brother Industries, Ltd..) - C:\Program Files (x86)\Browny02\BrYNSvc.exe =>.Brother Industries, Ltd.
SR - Auto [12/09/2012] [ 135984] Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Sec (BTHSSecurityMgr) . (.Intel(R) Corporation.) - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe =>.Intel Corporation-Mobile Wireless Group®
SS - Demand [27/07/2013] [ 277488] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - Software and Firmware Products®
SR - Auto [19/08/2015] [ 235520] egGetSvc (egGetSvc) . (.Copyright (C) eagleGet 2014.) - C:\Program Files (x86)\EagleGet\EGMonitor.exe
SR - Auto [18/04/2013] [ 621296] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Mobile Wireless Group®
SR - Auto [20/12/2012] [ 2255984] GLArab.com HTTP Proxy (glarab_http_proxy) . (...) - C:\Program Files (x86)\GLArab.com\Proxy\http_proxy.exe {2B20137DFF09D1}
SS - Auto [29/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [29/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [20/11/2008] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SR - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation®
SS - Demand [03/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe =>.Macrovision Corporation
SR - Auto [10/12/2012] [ 732160] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
SS - Demand [10/12/2012] [ 803872] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Auto [27/07/2013] [ 131032] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SS - Demand [25/09/2015] [ 178312] Intel(R) Update Manager (iumsvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe =>.Intel(R) Update Manager®
SR - Auto [27/07/2013] [ 165336] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [27/07/2013] [ 279000] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SS - Demand [13/02/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [18/04/2013] [ 273136] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation-Mobile Wireless Group®
SR - Auto [18/04/2013] [ 149744] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Mobile Wireless Group®
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Demand [23/10/2012] [ 73728] Sony SCSI Helper Service (Sony SCSI Helper Service) . (.Sony Corporation.) - C:\Program Files (x86)\Common Files\Sony Shared\Fsk\SonySCSIHelperService.exe =>.Sony Corporation
SR - Auto [20/10/2015] [ 97080] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
SS - Demand [20/10/2015] [ 1372472] Baidu Spark Updater (SparkUpdater) . (.Baidu.com, Inc..) - C:\Program Files (x86)\baidu\SparkUpdate\Sparkupdate.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
SR - Auto [21/10/2013] [ 3018800] SW Update Service (SWUpdateService) . (.Samsung Electronics CO., LTD..) - C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe =>.Samsung Electronics CO., LTD.®
SR - Auto [21/07/2015] [ 149432] The Calendar Service (TheCalendarService) . (.Copyright (C) 2015.) - C:\Program Files (x86)\CalendarTool\2.0.0.10764\CalendarServ.exe {6726020D51A8625A1F9F13803B1FE9EE}
SR - Auto [24/02/2015] [ 1217032] Torch Crash Handler (TorchCrashHandler) . (.TorchMedia Inc..) - C:\Users\GARAH Mourad\AppData\Local\Torch\Update\TorchCrashHandler.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
SR - Auto [27/07/2013] [ 366040] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [24/01/2013] [ 323584] ZAtheros Bt and Wlan Coex Agent (ZAtheros Bt and Wlan Coex Agent) . (.Atheros.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe =>.Atheros
SR - Auto [18/04/2013] [ 3388144] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Mobile Wireless Group®

---\\ Processus lancés (65) - 10s
[MD5.501E11AE85EE28D305D228F5931AC76C] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [237096] [PID.1468] =>.AVAST Software a.s.®
[MD5.DC694B4D6F870095E56B0A9CEB3EC5EE] - (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [131712] [PID.1888] =>.Qualcomm Atheros Commnucations
[MD5.668232EFD0C3C6DCC32126005924A426] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13263072] [PID.1900] =>.Realtek Semiconductor Corp®
[MD5.0C046846A7EEBC5262D9FE8C8BB5D03C] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1260256] [PID.1908] =>.Realtek Semiconductor Corp®
[MD5.9FB6A3960695F55EF96A6B1BD9C67D1F] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [442352] [PID.1956] =>.Intel Corporation - Software and Firmware Products®
[MD5.8F284C688EB8893B3B5A7927AE7302F9] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [399856] [PID.1424] =>.Intel Corporation - Software and Firmware Products®
[MD5.A78E04CC727A3833DDAB16BAE33643AC] - (.CANON INC. - Canon Advanced Printing Technology Printer.) -- C:\Windows\System32\spool\drivers\x64\3\CNAP2LAK.EXE [226784] [PID.2008] =>.CANON INC.®
[MD5.EE026D4B2287739C11D70C91482A77FF] - (.Nico Mak Computing - File Association Helper.) -- C:\Program Files\File Association Helper\FAHWindow.exe [292528] [PID.2160] =>.WinZip Computing LLC®
[MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2348] =>.Adobe Systems, Incorporated®
[MD5.96A4E4D623716CAAF41CB696EDA0BE3B] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2917688] [PID.2360] =>.Synaptics Incorporated®
[MD5.A917E4F753B90A5181ECBFA56D5C154A] - (.Qualcomm Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227456] [PID.2512] =>.Qualcomm Atheros Commnucations
[MD5.683A0A709D3860FABDB394333ABFFBF6] - (.Copyright (C) eagleGet 2014 - EGMonito Application.) -- C:\Program Files (x86)\EagleGet\EGMonitor.exe [235520] [PID.2548]
[MD5.A8CD357E339539F12D6B562F025F509A] - (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files (x86)\EagleGet\EagleGet.exe [1891328] [PID.2660]
[MD5.0D5310077802070B276C471C4FA8881D] - (.Copyright 2011 - Earth Weather.) -- C:\Program Files (x86)\WeatherDesktop\WeatherDesktop.exe [922112] [PID.2668]
[MD5.36F3E9E10575020A835E234054651071] - (.Sony Corporation - Reader Application Helper.) -- C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe [898952] [PID.2964] =>.Sony Corporation®
[MD5.504AAB0AF82973329CAEF8FFC595C05D] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744] [PID.2988] =>.Oracle America, Inc.®
[MD5.E7ECD510AED32C19477976310173FAC3] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [621296] [PID.2024] =>.Intel Corporation-Mobile Wireless Group®
[MD5.22310E2C6AE375142ABBB9EF384ECD40] - (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496] [PID.2436] =>.Brother Industries, Ltd.
[MD5.7D7143C3A23EAF4D71552B0808D08B9E] - (.CANON INC. - Canon Advanced Printing Technology Status M.) -- C:\Windows\System32\spool\drivers\x64\3\CNAP2RPK.EXE [181696] [PID.3204] =>.CANON INC.®
[MD5.80D00EE21E7F7CBC3AE2E05EC731FA44] - (.CANON INC. - Canon Advanced Printing Technology Printer.) -- C:\Windows\System32\spool\drivers\x64\3\CNABCSWK.EXE [1304016] [PID.3328] =>.CANON INC.®
[MD5.38FDB0D155F2BDB8A3147ABB00304FA3] - (. - http_proxy.exe.) -- C:\Program Files (x86)\GLArab.com\Proxy\http_proxy.exe [2255984] [PID.3880] {2B20137DFF09D1}
[MD5.C6128F2E3DC6156C6F8828F9F1B96010] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160] [PID.4024] =>.Intel(R) Corporation
[MD5.08B14887C0B98101F8EC207817A0D734] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165336] [PID.3160] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.46D01172EDDACDD1EB75648D5E17D5E2] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [149744] [PID.3540] =>.Intel Corporation-Mobile Wireless Group®
[MD5.B214711806863B629B001948E5FB5420] - (.Baidu Inc. - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe [97080] [PID.3492] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.476D9CEC2F1C57D5DDB8C2134F224866] - (.Copyright (C) 2015 - The Calendar Service.) -- C:\Program Files (x86)\CalendarTool\2.0.0.10764\CalendarServ.exe [149432] [PID.3556] {6726020D51A8625A1F9F13803B1FE9EE}
[MD5.27A46B52BB66FC500F3756E8FE591FD6] - (.TorchMedia Inc. - TorchCrashHandler.) -- C:\Users\GARAH Mourad\AppData\Local\Torch\Update\TorchCrashHandler.exe [1217032] [PID.2136] {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
[MD5.819594D26957FF2F1A1EDFBDD556DFC8] - (.Copyright (C) 2015 - calendar Application.) -- C:\Program Files (x86)\CalendarTool\2.0.0.10764\calendar.exe [3925432] [PID.1940] {6726020D51A8625A1F9F13803B1FE9EE}
[MD5.357CABBF155AFD1D3926E62539D2A3A7] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480] [PID.3920] =>.Microsoft Corporation®
[MD5.86B8B1F5C1189D68B07666784BE882FE] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584] [PID.3048] =>.Atheros
[MD5.17E44886E695DBC78AC33854BD5EA6D2] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3388144] [PID.3976] =>.Intel Corporation-Mobile Wireless Group®
[MD5.D790CAFEFF0291D0AF8C76F5A1EE2E4E] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223488] [PID.2444] =>.Microsoft Corporation®
[MD5.683A0A709D3860FABDB394333ABFFBF6] - (.Copyright (C) eagleGet 2014 - EGMonito Application.) -- C:\Program Files (x86)\EagleGet\EGMonitor.exe [235520] [PID.4344]
[MD5.065818B8A2CD7F08D6DC8C598191548C] - (.Brother Industries, Ltd. - BrYNCSvc.) -- C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112] [PID.4356] =>.Brother Industries, Ltd.
[MD5.51FCBED690165271C413DC8A1E734849] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [123704] [PID.4808] =>.Synaptics Incorporated®
[MD5.3EE970DF32D49E8C8D511C4C8E4AAA80] - (.Samsung Electronics CO., LTD. - S Agent.) -- C:\Program Files\Samsung\S Agent\CommonAgent.exe [2975816] [PID.4820] =>.Samsung Electronics CO., LTD.®
[MD5.83FF82FE209E7997067B375DAD6CF23D] - (.Intel Corporation - Intel(R) Integrated Clock Controller Servic.) -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [169752] [PID.4852] =>.Intel Corporation®
[MD5.EED665FF8003D08E3A0F16E3EA216BF3] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [7139768] [PID.6252] =>.AVAST Software a.s.®
[MD5.F67991C4EE448C5FF03F148E0A79EF9D] - (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files (x86)\Athan\Athan.exe [1216512] [PID.6264] =>.www.IslamicFinder.org
[MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.6272] =>.Google Inc®
[MD5.0C0DD390CF53D506414AC2CAA68E7F34] - (.Brother Industries, Ltd. - Brother Help Application.) -- C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088] [PID.6356] =>.Brother Industries, Ltd.
[MD5.A98D23910862BE46A333D9EB1398C57E] - (.Brother Industries, Ltd. - ControlCenter Main Process.) -- C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe [505856] [PID.6364] =>.Brother Industries, Ltd.
[MD5.8EE66B490856B2823DF82BF1B747A738] - (.Brother Industries, Ltd. - ControlCenter UX System.) -- C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe [1448960] [PID.6496] =>.Brother Industries, Ltd.
[MD5.7DBA1F4E48C3FEAA34F6648A469F210D] - (.Baidu.com, Inc. - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\SparkUpdate.exe [1372472] [PID.6200] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.CCB61487A9D9416EC8985279E37608BF] - (.Intel Corporation - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [772064] [PID.2440] =>.Intel Corporation-Mobile Wireless Group®
[MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.6028] =>.Google Inc®
[MD5.D30286FF3C7B6318C024D2BC2955C1BF] - (.Intel(R) Corporation - Intel(R) BlueTooth(R) HS Security Manager S.) -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [135984] [PID.916] =>.Intel Corporation-Mobile Wireless Group®
[MD5.B32A84262049E43DB2FDB70F2EAF3BEE] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131032] [PID.6048] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.920F6774762DE8D8477088B6F38FBD6C] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [279000] [PID.3188] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.C8BCD5C6BACF41B849F2646611A0007E] - (.Samsung Electronics CO., LTD. - SW Update Agent.) -- C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3018800] [PID.5752] =>.Samsung Electronics CO., LTD.®
[MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.1452] =>.Google Inc®
[MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.6040] =>.Google Inc®
[MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.5820] =>.Google Inc®
[MD5.9B8C9350985983E9760E1786731A8728] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [366040] [PID.5536] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.6096] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.4048] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.6636] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.7328] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.7820] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.3792] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.7924] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.5624] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.B284E0F20811226BC0211BF742247542] - (...) -- C:\Program Files (x86)\WinRAR\WinRAR.exe [1039360] [PID.7248]
[MD5.56E52535F4CF96E42DB1140E2B18731F] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe [983352] [PID.5212] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.5BFC7693CA6F48358FC2631AF4631DEA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\GARAH Mourad\Downloads\ZHPDiag3.exe [2139136] [PID.5632] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (7) - 0s
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ndibdjnfmopecpmkdieinmbadjfpblof]
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda]
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (17) - 7s
M0 - MFSP: prefs.js [GARAH Mourad - pedcg0yn.default] https://www.google.com/?trackid=sp-006
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\extensions\eagleget_ffext@eagleget.com.xpi
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\ask-web-search.xml
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\askcom.xml
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\bingp.xml
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\google-avast.xml
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\my-homepage.xml
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\safesearch.xml
P2 - EXT FILE: (...) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\trovi-search.xml =>PUP.Optional.TroviCom
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - EXT: (.Microsoft - Microsoft Choice Guard.) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\extensions\ChoiceGuard@Microsoft =>.Microsoft
P2 - EXT: (. - jid19tZMAIdeuiEjHgjetpack.) -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\extensions\jid1-9tZMAIdeuiEjHg@jetpack
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp] - (...) -- C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf] - (...) -- C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.80.2] - (.Oracle Corp..) -- C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll =>.Oracle Corp.
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.80.2] - (.Oracle Corp..) -- C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll =>.Oracle Corp.

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (23) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://search.us.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://securityresponse.symantec.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://securityresponse.symantec.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://securityresponse.symantec.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://securityresponse.symantec.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKEY_USERS\S-1-5-21-4124992204-2475727212-2111273750-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 1s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\SysWOW64\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (4) - 0s
O2 - BHO: IESpeakDoc [64Bits] - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} (Orphean)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.®
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation®

---\\ Internet Explorer, Barre d'outil (3) - 0s
O3 - Toolbar: 0xFF6BDFE7A555B74EA6734ED3E9456D39 - [HKCU]{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} . (...) -- (.not file.)
O3 - Toolbar: 0x7F7C02D44A156640A1AD4243D8127440 - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.)
O3 - Toolbar: 0x8256C5F6BD811447919C3E4725095F85 - [HKCU]{F6C55682-81BD-4714-919C-3E4725095F85} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (35) - 5s
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation - Software and Firmware Products®
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation - Software and Firmware Products®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation - Software and Firmware Products®
O4 - HKLM\..\Run: [FAHConsole] . (.Nico Mak Computing - File Association Helper.) -- C:\Program Files\File Association Helper\FAHConsole.exe =>.WinZip Computing LLC®
O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation®
O4 - HKLM\..\Run: [CNAP2 Launcher] . (.CANON INC. - Canon Advanced Printing Technology Printer.) -- C:\Windows\System32\spool\drivers\x64\3\CNAP2LAK.EXE =>.CANON INC.®
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated®
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\GARAH Mourad\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.®
O4 - HKCU\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files (x86)\EagleGet\EagleGet.exe
O4 - HKCU\..\Run: [GGWallpaper] . (.Copyright 2011 - Earth Weather.) -- C:\Program Files (x86)\WeatherDesktop\WeatherDesktop.exe
O4 - HKLM\..\Wow6432Node\Run: [Reader Application Helper] . (.Sony Corporation - Reader Application Helper.) -- C:\Program Files (x86)\Sony\ReaderDesktop\appHelper\ReaderAppHelper.exe =>.Sony Corporation®
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [BrStsMon00] . (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe =>.Brother Industries, Ltd.
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.®
O4 - HKLM\..\Wow6432Node\Run: [Athan] . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org
O4 - HKLM\..\Wow6432Node\Run: [ControlCenter4] . (.Brother Industries, Ltd. - ControlCenter Launcher.) -- C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe =>.Brother Industries, Ltd.
O4 - HKLM\..\Wow6432Node\Run: [BrHelp] . (.Brother Industries, Ltd. - Brother Help Application.) -- C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe =>.Brother Industries, Ltd.
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Qualcomm Atheros Commnucations - Extension Core.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe =>.Qualcomm Atheros Commnucations
O4 - HKUS\.DEFAULT\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.®
O4 - HKUS\.DEFAULT\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\.DEFAULT\..\Run: [USB Guardian] C:\Program Files (x86)\USB Guardian\USB Guardian.exe (.not file.)
O4 - HKUS\.DEFAULT\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.®
O4 - HKUS\S-1-5-18\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-18\..\Run: [USB Guardian] C:\Program Files (x86)\USB Guardian\USB Guardian.exe (.not file.)
O4 - HKUS\S-1-5-18\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-4124992204-2475727212-2111273750-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\GARAH Mourad\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.®
O4 - HKUS\S-1-5-21-4124992204-2475727212-2111273750-1000\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files (x86)\EagleGet\EagleGet.exe
O4 - HKUS\S-1-5-21-4124992204-2475727212-2111273750-1000\..\Run: [GGWallpaper] . (.Copyright 2011 - Earth Weather.) -- C:\Program Files (x86)\WeatherDesktop\WeatherDesktop.exe

---\\ Raccourcis Global Startup (86) - 29s
O4 - GS\Desktop [Administrateur]: Any Video Converter.lnk . (.Anvsoft - Any Video Converter.) C:\Program Files (x86)\Anvsoft\Any Video Converter\AVCFree.exe =>.Anvsoft Inc.®
O4 - GS\Desktop [Administrateur]: Athan.lnk . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org
O4 - GS\Desktop [Administrateur]: COED11.lnk . (.Oxford University Press - Concise Oxford English Dictionary (Eleventh.) C:\Program Files (x86)\COED11\coed11.exe
O4 - GS\Desktop [Administrateur]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth Pro\client\googleearth.exe =>.Google Inc®
O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.®
O4 - GS\Desktop [Administrateur]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\Program Files (x86)\The KMPlayer\KMPlayer.exe {2BF6AC6C0932526A56D17EB4F2C776C5}
O4 - GS\Desktop [Administrateur]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: MPC-HC.lnk . (.MPC-HC Team - Media Player Classic - Home Cinema.) C:\Program Files (x86)\MPC-HC\mpc-hc.exe {0C2F63A3753B5B5803222638A058B01E} =>.MPC-HC Team
O4 - GS\Desktop [Administrateur]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\GARAH Mourad\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [Administrateur]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: PDF Eraser.lnk . (.PDF Eraser - PDF Eraser.) C:\Program Files (x86)\PDF Eraser\PDFEraser.exe {360784576150DB306125D534108D8256}
O4 - GS\Quicklaunch [Administrateur]: Picasa 3.lnk . (...) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
O4 - GS\Quicklaunch [Administrateur]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Quicklaunch [Administrateur]: Weather Desktop.lnk . (.Copyright 2011 - Earth Weather.) C:\Program Files (x86)\WeatherDesktop\WeatherDesktop.exe
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrateur]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Desktop [ASPNET]: Any Video Converter.lnk . (.Anvsoft - Any Video Converter.) C:\Program Files (x86)\Anvsoft\Any Video Converter\AVCFree.exe =>.Anvsoft Inc.®
O4 - GS\Desktop [ASPNET]: Athan.lnk . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org
O4 - GS\Desktop [ASPNET]: COED11.lnk . (.Oxford University Press - Concise Oxford English Dictionary (Eleventh.) C:\Program Files (x86)\COED11\coed11.exe
O4 - GS\Desktop [ASPNET]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth Pro\client\googleearth.exe =>.Google Inc®
O4 - GS\Desktop [ASPNET]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.®
O4 - GS\Desktop [ASPNET]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\Program Files (x86)\The KMPlayer\KMPlayer.exe {2BF6AC6C0932526A56D17EB4F2C776C5}
O4 - GS\Desktop [ASPNET]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Desktop [ASPNET]: MPC-HC.lnk . (.MPC-HC Team - Media Player Classic - Home Cinema.) C:\Program Files (x86)\MPC-HC\mpc-hc.exe {0C2F63A3753B5B5803222638A058B01E} =>.MPC-HC Team
O4 - GS\Desktop [ASPNET]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Desktop [ASPNET]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\GARAH Mourad\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ASPNET]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [ASPNET]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [ASPNET]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [ASPNET]: PDF Eraser.lnk . (.PDF Eraser - PDF Eraser.) C:\Program Files (x86)\PDF Eraser\PDFEraser.exe {360784576150DB306125D534108D8256}
O4 - GS\Quicklaunch [ASPNET]: Picasa 3.lnk . (...) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
O4 - GS\Quicklaunch [ASPNET]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Quicklaunch [ASPNET]: Weather Desktop.lnk . (.Copyright 2011 - Earth Weather.) C:\Program Files (x86)\WeatherDesktop\WeatherDesktop.exe
O4 - GS\sendTo [ASPNET]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [ASPNET]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [ASPNET]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [ASPNET]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Desktop [GARAH Mourad]: Any Video Converter.lnk . (.Anvsoft - Any Video Converter.) C:\Program Files (x86)\Anvsoft\Any Video Converter\AVCFree.exe =>.Anvsoft Inc.®
O4 - GS\Desktop [GARAH Mourad]: Athan.lnk . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org
O4 - GS\Desktop [GARAH Mourad]: COED11.lnk . (.Oxford University Press - Concise Oxford English Dictionary (Eleventh.) C:\Program Files (x86)\COED11\coed11.exe
O4 - GS\Desktop [GARAH Mourad]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth Pro\client\googleearth.exe =>.Google Inc®
O4 - GS\Desktop [GARAH Mourad]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.®
O4 - GS\Desktop [GARAH Mourad]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\Program Files (x86)\The KMPlayer\KMPlayer.exe {2BF6AC6C0932526A56D17EB4F2C776C5}
O4 - GS\Desktop [GARAH Mourad]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Desktop [GARAH Mourad]: MPC-HC.lnk . (.MPC-HC Team - Media Player Classic - Home Cinema.) C:\Program Files (x86)\MPC-HC\mpc-hc.exe {0C2F63A3753B5B5803222638A058B01E} =>.MPC-HC Team
O4 - GS\Desktop [GARAH Mourad]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Desktop [GARAH Mourad]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\GARAH Mourad\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [GARAH Mourad]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\Quicklaunch [GARAH Mourad]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [GARAH Mourad]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [GARAH Mourad]: PDF Eraser.lnk . (.PDF Eraser - PDF Eraser.) C:\Program Files (x86)\PDF Eraser\PDFEraser.exe {360784576150DB306125D534108D8256}
O4 - GS\Quicklaunch [GARAH Mourad]: Picasa 3.lnk . (...) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe
O4 - GS\Quicklaunch [GARAH Mourad]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\Quicklaunch [GARAH Mourad]: Weather Desktop.lnk . (.Copyright 2011 - Earth Weather.) C:\Program Files (x86)\WeatherDesktop\WeatherDesktop.exe
O4 - GS\sendTo [GARAH Mourad]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [GARAH Mourad]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\TaskBar [GARAH Mourad]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [GARAH Mourad]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe
O4 - GS\CommonDesktop [Public]: Avast Free Antivirus.lnk . (.AVAST Software - avast! Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.®
O4 - GS\CommonDesktop [Public]: Ayat.lnk . (...) C:\Program Files (x86)\Ayat\Ayat.exe
O4 - GS\CommonDesktop [Public]: Baidu Browser.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\CommonDesktop [Public]: Brother Creative Center.lnk . (...) C:\Program Files (x86)\Brother\CreativeCenter\Brother Creative Center.url
O4 - GS\CommonDesktop [Public]: EagleGet.lnk . (.EagleGet.com - EagleGet Free Downloader.) C:\Program Files (x86)\EagleGet\EagleGet.exe
O4 - GS\CommonDesktop [Public]: Easy Video Maker.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{03EC818F-96E5-497F-AF28-EC6BC4CF32D3}\EasyVideoMaker.exe_96942AE20DCC466DBFC84D044485586E.exe =>.Acresso Software Inc.
O4 - GS\CommonDesktop [Public]: Euro Truck Simulator 2.lnk . (...) C:\Program Files (x86)\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
O4 - GS\CommonDesktop [Public]: FileViewPro.lnk . (.Copyright © 2011-2016 - FileViewPro.) C:\Program Files\FileViewPro\FileViewPro.exe {161DD9A8ED08BBED847F70DA0143AF5F}
O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\CommonDesktop [Public]: Google.lnk . (.Copyright (C) 2011 - spark.) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: OmniJoin Trial.lnk . (...) C:\Program Files (x86)\Brother\OmniJoin\OmniJoin.url
O4 - GS\CommonDesktop [Public]: PDF Eraser.lnk . (.PDF Eraser - PDF Eraser.) C:\Program Files (x86)\PDF Eraser\PDFEraser.exe {360784576150DB306125D534108D8256}
O4 - GS\CommonDesktop [Public]: Reader for PC.lnk . (.Sony Corporation - Reader for PC.) C:\Program Files (x86)\Sony\ReaderDesktop\Reader.exe =>.Sony Corporation®
O4 - GS\CommonDesktop [Public]: SCANIA Truck Driving Simulator.lnk . (.SCS Software - SCANIA Truck Driving Simulator.) C:\Program Files (x86)\SCANIA Truck Driving Simulator\bin\win_x86\scania_truck_driving_simulator.exe =>.SCS Software s.r.o.®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: Weather Desktop.lnk . (.Copyright 2011 - Earth Weather.) C:\Program Files (x86)\WeatherDesktop\WeatherDesktop.exe
O4 - GS\CommonDesktop [Public]: WinThruster.lnk . (.Solvusoft Corporation - WinThruster.) C:\Program Files (x86)\WinThruster\WinThruster.exe {161DD9A8ED08BBED847F70DA0143AF5F} =>.Superfluous.WinThruster
O4 - GS\Programs [Public]: Torch.lnk . (.Torch Media Inc. - Torch.) C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98} =>.Superfluous.Torch
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Modification Domaine/Adresses DNS (8) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = domain.name
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0FF70BF6-B8B0-4B6A-89A0-39FB1F5F65F7}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5ED9AE0A-BD06-46CA-9D7B-4BD69B100936}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CA857B04-6D99-419D-84EE-57212FD94109}: DhcpNameServer = 192.168.0.1 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E70147C1-CD97-40C3-BD30-74DA89A054DF}: DhcpNameServer = 77.234.40.79
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0FF70BF6-B8B0-4B6A-89A0-39FB1F5F65F7}: DhcpDomain = domain.name
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5ED9AE0A-BD06-46CA-9D7B-4BD69B100936}: DhcpDomain = domain.name

---\\ Protocole additionnel (24) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: gopher [64Bits] - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s
O20 - AppInit_DLLs: . (...) - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll (.not file.) =>PUP.Optional.SearchProtect

---\\ Logiciels installés (87) - 34s
O42 - Logiciel: 7-Zip 15.14 - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2701-1514-000001000000} =>.Igor Pavlov
O42 - Logiciel: 7-Zip 9.22beta - (...) [HKLM][64Bits] -- 7-Zip
O42 - Logiciel: Adobe Acrobat Reader DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {78DFDC88-FA40-408F-8397-1D7908A6DA21} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player 12.2 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc.
O42 - Logiciel: Advanced Calendar 2.0 - (.TopTools100.) [HKLM][64Bits] -- {D9BAB2C9-5236-48c3-AF02-67E799F09BBD} {6726020D51A8625A1F9F13803B1FE9EE}
O42 - Logiciel: Any Video Converter 5.8.6 - (.Any-Video-Converter.com.) [HKLM][64Bits] -- Any Video Converter_is1 =>.Anvsoft Inc.®
O42 - Logiciel: Athan Basic 4.5 - (...) [HKLM][64Bits] -- Athan
O42 - Logiciel: Audacity 2.1.2 - (.Audacity Team.) [HKLM][64Bits] -- Audacity®_is1 =>.Audacity Team
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast =>.AVAST Software a.s.®
O42 - Logiciel: Ayat - (.UNKNOWN.) [HKLM][64Bits] -- {D1566597-887B-6FAB-A761-018A5D75D6EC}
O42 - Logiciel: Ayat - (.UNKNOWN.) [HKLM][64Bits] -- sa.edu.ksa.ayat
O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM][64Bits] -- Spark =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O42 - Logiciel: Brother MFL-Pro Suite DCP-J132W - (.Brother Industries, Ltd..) [HKLM][64Bits] -- {B742757A-7658-4E09-A51A-085CF0F7F4D3} =>.Macrovision Corporation®
O42 - Logiciel: Canon LBP6000/LBP6018 - (...) [HKLM][64Bits] -- Canon LBP6000/LBP6018 =>.CANON INC.®
O42 - Logiciel: CDisplay 1.8 - (.dvd8n.) [HKLM][64Bits] -- CDisplay_is1 =>.dvd8n
O42 - Logiciel: Concise Oxford English Dictionary (Eleventh Edition) - (...) [HKLM][64Bits] -- Concise Oxford English Dictionary (Eleventh Edition)
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: EagleGet version 2.0.4.4 - (.EagleGet.) [HKLM][64Bits] -- {F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1 =>.EagleGet
O42 - Logiciel: EasyVideoMaker - (.Easy Video Maker.) [HKLM][64Bits] -- {03EC818F-96E5-497F-AF28-EC6BC4CF32D3}
O42 - Logiciel: ETDWare X64 11.7.14.4_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation®
O42 - Logiciel: Euro Truck Simulator 2 - (.SCS Software.) [HKLM][64Bits] -- {1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1 =>.SCS Software s.r.o.®
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited
O42 - Logiciel: File Association Helper - (.WinZip Computing International, LLC.) [HKLM][64Bits] -- {C168639F-5810-4EC8-B1E8-0251AA8A771C} =>.WinZip Computing International, LLC
O42 - Logiciel: File Type Assistant - (...) [HKLM][64Bits] -- Trusted Software Assistant_is1 =>Adware.InstallCore
O42 - Logiciel: FileViewPro - (.Solvusoft Corporation.) [HKLM][64Bits] -- FileViewPro_is1 {161DD9A8ED08BBED847F70DA0143AF5F} =>.Superfluous.Solvusoft
O42 - Logiciel: Firefox Free Download Packages - (...) [HKCU][64Bits] -- Firefox Free Download Packages =>Adware.InstallCore
O42 - Logiciel: FlvPlayer - (...) [HKCU][64Bits] -- FlvPlayer =>PUP.Optional.FLVPlayer
O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM][64Bits] -- Foxit Reader_is1 =>.Foxit Software Incorporated®
O42 - Logiciel: Foxit Reader Free Download Packages - (...) [HKCU][64Bits] -- Foxit Reader Free Download Packages
O42 - Logiciel: GLArab.com HTTP Proxy - (.GLArab.com.) [HKLM][64Bits] -- GLArab.com HTTP Proxy
O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} =>.Google
O42 - Logiciel: Google Earth Pro - (.Google.) [HKLM][64Bits] -- {35DAA04C-1720-4BE3-A920-A03731EC6A1D} =>.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation - Intel® Management Engine Firmware®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed - (.Intel Corporation.) [HKLM][64Bits] -- {B0169FD6-8590-451E-AEFF-A6253C0A850C} =>.Intel Corporation
O42 - Logiciel: Intel(R) PROSet/Wireless WiFi Software Driver - (.Intel Corporation.) [HKLM][64Bits] -- {1EAE3FBF-E39F-4B65-ACEE-560A16CD1F44} =>.Intel Corporation
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} =>.Intel Corporation
O42 - Logiciel: Intel(R) Update Manager - (.Intel Corporation.) [HKLM][64Bits] -- {B991A1BC-DE0F-41B3-9037-B2F948F706EC} =>.Intel Corporation
O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {E7EBB2A5-8C76-4C16-95A3-2FC74BEDE270} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {FA00A3CC-7440-4938-A271-F186F50DD40D} =>.Intel Corporation
O42 - Logiciel: Java 7 Update 80 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F03217080FF} =>.Oracle
O42 - Logiciel: Java Auto Updater - (.Oracle, Inc..) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle, Inc.
O42 - Logiciel: K-Lite Codec Pack 5.9.0 (64-bit) - (...) [HKLM][64Bits] -- KLiteCodecPack64_is1
O42 - Logiciel: K-Lite Mega Codec Pack 6.3.0 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Logiciel Intel® PROSet/Wireless - (.Intel Corporation.) [HKLM][64Bits] -- {e6d17d96-ddaa-476f-bb07-db601024ffb1} =>.Intel Corporation-Mobile Wireless Group®
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Mozilla Firefox 44.0.2 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 44.0.2 (x86 en-US) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MPC-HC 1.7.0 - (.MPC-HC Team.) [HKLM][64Bits] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1 {0C2F63A3753B5B5803222638A058B01E} =>.MPC-HC Team
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {1C4551A6-4743-4093-91E4-1477CD655043} =>.NVIDIA Corporation
O42 - Logiciel: Package de pilotes Windows - Samsung Electronics Co. Ltd. (RadioHIDMini) HI - (.Samsung Electronics Co. Ltd..) [HKLM][64Bits] -- 9F04C462DAB591BDCCE784F77E4D4F1736010B92 =>.Microsoft Windows®
O42 - Logiciel: PDF Eraser V1.4 - (.http://www.PDFEraser.net.) [HKLM][64Bits] -- PDF Eraser_is1
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros Communications
O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros
O42 - Logiciel: Reader for PC - (.Sony Corporation.) [HKLM][64Bits] -- {BAE1CCA6-AB32-4D27-AE69-203436D54EC8} =>.Sony Corporation
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.
O42 - Logiciel: S Agent - (.Samsung Electronics CO., LTD..) [HKLM][64Bits] -- {CFEA455B-E368-45B2-A01E-1C3A6C0F06B6} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: SCANIA Truck Driving Simulator 1.5.0 - (.SCS Software.) [HKLM][64Bits] -- SCANIA Truck Driving Simulator =>.SCS Software s.r.o.®
O42 - Logiciel: Skype Download Packages - (...) [HKCU][64Bits] -- Skype Download Packages
O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated
O42 - Logiciel: TELL ME MORE - (...) [HKLM][64Bits] -- TMM80
O42 - Logiciel: TELL ME MORE - (...) [HKLM][64Bits] -- TMM90 =>.AURALOG®
O42 - Logiciel: TeraCopy 2.27 - (.Code Sector.) [HKLM][64Bits] -- TeraCopy_is1 {27FDC908767179534AB3EBBA1D098533} =>.Code Sector
O42 - Logiciel: The KMPlayer (remove only) - (.PandoraTV.) [HKLM][64Bits] -- The KMPlayer
O42 - Logiciel: TNT2-11147 Toolbar - (.Search.us.com.) [HKCU][64Bits] -- {FDE35249-9C68-49DC-998D-B007674BF33A}
O42 - Logiciel: Torch - (.Torch Media, Inc.) [HKCU][64Bits] -- Torch {5821499C775314DC773DE210C0E1B8FB} =>.Superfluous.Torch
O42 - Logiciel: Total Builder - (.Bus Style corp.) [HKCU][64Bits] -- {9563BC59-9556-4805-8CD4-886781779D8D} =>PUP.Optional.TotalBuilder*
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer =>.Unity Technologies ApS
O42 - Logiciel: Utility Chest Toolbar Chrome Extension - (.Mindspark Interactive Network.) [HKLM][64Bits] -- UtilityChest_49 Chrome Extension Uninstall =>.Superfluous.MindSpark
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Weather Desktop 7.4.2 - (.GimmeGoody Software.) [HKLM][64Bits] -- {CA34578D-F50D-43DF-9464-6A78FACE7E80}_is1
O42 - Logiciel: WinDjView 1.0.3 - (.Andrew Zhezherun.) [HKLM][64Bits] -- WinDjView =>.Andrew Zhezherun
O42 - Logiciel: WinThruster - (.solvusoft Corporation.) [HKLM][64Bits] -- WinThruster_is1 {161DD9A8ED08BBED847F70DA0143AF5F} =>.Superfluous.WinThruster

---\\ HKCU & HKLM Software Keys (194) - 34s
HKLM\SOFTWARE\Wow6432Node\7-Zip
HKLM\SOFTWARE\Wow6432Node\73eae394-6752-4acc-a546-d0da937a0b47 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\ActaLogic
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Atheros
HKLM\SOFTWARE\Wow6432Node\Auralog
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Baidu
HKLM\SOFTWARE\Wow6432Node\Baidu Security
HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos
HKLM\SOFTWARE\Wow6432Node\Brother
HKLM\SOFTWARE\Wow6432Node\Brother Industries, Ltd.
HKLM\SOFTWARE\Wow6432Node\CloudOPTInfo
HKLM\SOFTWARE\Wow6432Node\Codec Tweak Tool
HKLM\SOFTWARE\Wow6432Node\Conduit =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\CoreCodec
HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Data Fellows
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\EagleGet
HKLM\SOFTWARE\Wow6432Node\Email Notifier
HKLM\SOFTWARE\Wow6432Node\FlvPlayer =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Foxit Software
HKLM\SOFTWARE\Wow6432Node\GLArab.com
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\InterVideo
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\KMPlayer
HKLM\SOFTWARE\Wow6432Node\LEAD Technologies, Inc.
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MicroWorld
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\mystarttb =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\Norton
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\repkasoft
HKLM\SOFTWARE\Wow6432Node\RZsoft
HKLM\SOFTWARE\Wow6432Node\Samsung
HKLM\SOFTWARE\Wow6432Node\SCS Software
HKLM\SOFTWARE\Wow6432Node\SiteSee =>PUP.Optional.SiteSee
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Solvusoft =>.Superfluous.Solvusoft
HKLM\SOFTWARE\Wow6432Node\Sony Corporation
HKLM\SOFTWARE\Wow6432Node\SPPDCOM =>.Superfluous.PCSpeedUp
HKLM\SOFTWARE\Wow6432Node\SuppHelpDir
HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak
HKLM\SOFTWARE\Wow6432Node\Tencent =>.Superfluous.Tencent
HKLM\SOFTWARE\Wow6432Node\Torch =>.Superfluous.Torch
HKLM\SOFTWARE\Wow6432Node\TrendMicro
HKLM\SOFTWARE\Wow6432Node\Tune =>.Superfluous.Systweak
HKLM\SOFTWARE\Wow6432Node\TuneUp
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visicom Media
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WeatherDesktop
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\64jbvep
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\ActaLogic
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Anvsoft
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Archee
HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\Auralog
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Avg Secure Update
HKCU\SOFTWARE\Baidu
HKCU\SOFTWARE\Baidu Security
HKCU\SOFTWARE\Belltech
HKCU\SOFTWARE\BestSoft
HKCU\SOFTWARE\Bitberry Software =>.Superfluous.Bitberry
HKCU\SOFTWARE\Brother
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\CDisplay
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CinemaP-1.9cV25.10-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\Code Sector
HKCU\SOFTWARE\Conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\CoreAAC
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\EagleGet
HKCU\SOFTWARE\Ectaco
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\FileTypeAssistant =>Adware.InstallCore
HKCU\SOFTWARE\FLT
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Gopolo
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\help4u =>PUP.Optional.CrossRider
HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IMDownloader
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\KMPlayer
HKCU\SOFTWARE\LAV64
HKCU\SOFTWARE\LEAD Technologies, Inc.
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madFlac
HKCU\SOFTWARE\ManyCam
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\MediaChance
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\MMTWN
HKCU\SOFTWARE\MONOGRAM
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nico Mak Computing
HKCU\SOFTWARE\Northcode Inc
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\repkasoft
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SavePass1.1 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Screensaver Factory
HKCU\SOFTWARE\SCS Software
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\SMADΔV
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
HKCU\SOFTWARE\Solvusoft =>.Superfluous.Solvusoft
HKCU\SOFTWARE\Sony Corporation
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\Systweak =>.Superfluous.Systweak
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\Torch =>.Superfluous.Torch
HKCU\SOFTWARE\Tracker Software
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Tune =>.Superfluous.Systweak
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\UbJvdOPtW4eb7K
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\uxxoeCa6BjuHjlz194uc
HKCU\SOFTWARE\Viber
HKCU\SOFTWARE\Visicom Media
HKCU\SOFTWARE\WeatherDesktop
HKCU\SOFTWARE\Winamp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wintertree
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Xilisoft
HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Yandex
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Macromedia
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (326) - 74s
O43 - CFD: 29/01/2016 - [] D -- C:\Program Files (x86)\7-Zip
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\Agricultural Simulator 2013 - Demo
O43 - CFD: 03/12/2015 - [] D -- C:\Program Files (x86)\Anvsoft =>.Anvsoft Inc.®
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Athan
O43 - CFD: 30/01/2016 - [] D -- C:\Program Files (x86)\Audacity
O43 - CFD: 31/03/2014 - [] D -- C:\Program Files (x86)\Auralog =>.AURALOG®
O43 - CFD: 07/11/2014 - [] D -- C:\Program Files (x86)\AVG Security Toolbar =>Toolbar.AVGSafeGuard
O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Ayat
O43 - CFD: 17/11/2015 - [] D -- C:\Program Files (x86)\baidu =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O43 - CFD: 17/11/2015 - [] D -- C:\Program Files (x86)\Baidu Security
O43 - CFD: 09/11/2014 - [] D -- C:\Program Files (x86)\Bluetooth Suite
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files (x86)\Brother
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files (x86)\Browny02
O43 - CFD: 18/11/2015 - [] D -- C:\Program Files (x86)\CalendarTool {6726020D51A8625A1F9F13803B1FE9EE}
O43 - CFD: 20/12/2015 - [] D -- C:\Program Files (x86)\CAM Development {6BA15BF8578F38913E4D1C06EFDD1FF3}
O43 - CFD: 07/05/2014 - [] D -- C:\Program Files (x86)\Canon
O43 - CFD: 11/01/2016 - [] D -- C:\Program Files (x86)\CDisplay
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files (x86)\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider
O43 - CFD: 24/02/2014 - [] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 21/04/2014 - [] D -- C:\Program Files (x86)\COED11
O43 - CFD: 22/02/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files (x86)\ControlCenter4
O43 - CFD: 28/10/2015 - [] D -- C:\Program Files (x86)\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 12/03/2015 - [] D -- C:\Program Files (x86)\dc08b244-ee31-4f57-b337-ad4314ca5152 =>PUP.Optional.CrossRider
O43 - CFD: 01/09/2015 - [] D -- C:\Program Files (x86)\EagleGet
O43 - CFD: 04/12/2015 - [] D -- C:\Program Files (x86)\Easy Video Maker
O43 - CFD: 18/12/2014 - [0] D -- C:\Program Files (x86)\emote
O43 - CFD: 07/05/2015 - [] D -- C:\Program Files (x86)\Euro Truck Simulator 2 =>.SCS Software s.r.o.®
O43 - CFD: 25/04/2014 - [] D -- C:\Program Files (x86)\File Type Assistant =>.Superfluous.Bitberry
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software Incorporated®
O43 - CFD: 04/12/2015 - [] D -- C:\Program Files (x86)\free-mobile-converter
O43 - CFD: 14/03/2014 - [] D -- C:\Program Files (x86)\GLArab.com {2B20137DFF09D1}
O43 - CFD: 25/02/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 03/04/2015 - [0] D -- C:\Program Files (x86)\help4u =>PUP.Optional.CrossRider
O43 - CFD: 01/11/2015 - [0] D -- C:\Program Files (x86)\Hostless Modem
O43 - CFD: 26/04/2014 - [] HD -- C:\Program Files (x86)\InstallJammer Registry
O43 - CFD: 09/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Macrovision Corporation®
O43 - CFD: 24/10/2014 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 21/01/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc.®
O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 10/03/2014 - [] D -- C:\Program Files (x86)\Languages
O43 - CFD: 25/10/2014 - [] D -- C:\Program Files (x86)\ManyCam
O43 - CFD: 28/02/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 28/02/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation®
O43 - CFD: 28/02/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 10/03/2015 - [] D -- C:\Program Files (x86)\Movies App =>PUP.Optional.CrossRider
O43 - CFD: 14/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 13/02/2016 - [0] D -- C:\Program Files (x86)\Mozilla Firefox.bak
O43 - CFD: 14/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 14/04/2014 - [] D -- C:\Program Files (x86)\MPC-HC {0C2F63A3753B5B5803222638A058B01E}
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\NASA
O43 - CFD: 12/03/2014 - [0] D -- C:\Program Files (x86)\Opera
O43 - CFD: 06/02/2016 - [0] D -- C:\Program Files (x86)\Oxford
O43 - CFD: 16/02/2016 - [] D -- C:\Program Files (x86)\PDF Eraser {360784576150DB306125D534108D8256}
O43 - CFD: 27/02/2014 - [] D -- C:\Program Files (x86)\Qualcomm Atheros
O43 - CFD: 27/02/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 19/12/2014 - [0] D -- C:\Program Files (x86)\ROMMY
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 01/05/2015 - [] D -- C:\Program Files (x86)\SCANIA Truck Driving Simulator =>.SCS Software s.r.o.®
O43 - CFD: 22/02/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 30/10/2014 - [0] D -- C:\Program Files (x86)\Smadav
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files (x86)\SogouExtension =>.Superfluous.Sogou
O43 - CFD: 27/02/2014 - [] D -- C:\Program Files (x86)\SogouInput =>.Superfluous.Sogou
O43 - CFD: 01/12/2014 - [] D -- C:\Program Files (x86)\Sony =>.Sony Corporation®
O43 - CFD: 27/02/2014 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 17/11/2015 - [] D -- C:\Program Files (x86)\The KMPlayer
O43 - CFD: 07/05/2015 - [] D -- C:\Program Files (x86)\TNT2
O43 - CFD: 10/03/2014 - [] D -- C:\Program Files (x86)\Toolbar
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 06/05/2014 - [] D -- C:\Program Files (x86)\UtilityChest_49 Chrome Extension =>PUP.Optional.MyWebSearch
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 22/02/2016 - [] D -- C:\Program Files (x86)\WeatherDesktop
O43 - CFD: 12/03/2014 - [] D -- C:\Program Files (x86)\WinDjView
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 31/03/2014 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 05/03/2014 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\WinThruster {161DD9A8ED08BBED847F70DA0143AF5F} =>.Superfluous.WinThruster
O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 27/02/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 20/04/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 03/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft
O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Athan
O43 - CFD: 31/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser
O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother
O43 - CFD: 27/02/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
O43 - CFD: 07/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon LBP6000 LBP6018
O43 - CFD: 11/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDisplay
O43 - CFD: 21/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COED11
O43 - CFD: 01/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EagleGet
O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Video Maker
O43 - CFD: 19/03/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eScan for Windows
O43 - CFD: 07/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2
O43 - CFD: 02/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro
O43 - CFD: 12/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
O43 - CFD: 24/02/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 07/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 24/02/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 12/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack x64
O43 - CFD: 20/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LingvoSoft
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 14/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC
O43 - CFD: 10/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NASA
O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 16/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Eraser
O43 - CFD: 07/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programme de désinstallation de l'imprimante Canon
O43 - CFD: 06/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\reader for pc
O43 - CFD: 01/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SCANIA Truck Driving Simulator
O43 - CFD: 22/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spécial
O43 - CFD: 24/03/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 07/03/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subsystem for UNIX-based Applications
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 31/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TELL ME MORE 8.0
O43 - CFD: 31/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TELL ME MORE Performance
O43 - CFD: 28/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy
O43 - CFD: 01/05/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tricky Truck
O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Updates
O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 22/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Weather Desktop
O43 - CFD: 12/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDjView
O43 - CFD: 05/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 02/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster =>.Superfluous.WinThruster
O43 - CFD: 22/10/2014 - [] D -- C:\ProgramData\.mono
O43 - CFD: 08/08/2015 - [] D -- C:\ProgramData\ABBYY
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 26/08/2015 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 31/12/2015 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 07/11/2014 - [] D -- C:\ProgramData\Avg_Update_1114tb
O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\Baidu
O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\Baidu Security
O43 - CFD: 07/01/2015 - [] D -- C:\ProgramData\Brother
O43 - CFD: 24/02/2014 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 20/12/2015 - [] D -- C:\ProgramData\CAM Development
O43 - CFD: 07/05/2014 - [] D -- C:\ProgramData\Canon
O43 - CFD: 27/02/2014 - [] D -- C:\ProgramData\ColorMode
O43 - CFD: 19/03/2014 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 05/11/2015 - [] D -- C:\ProgramData\ControlCenter4
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 07/03/2015 - [] D -- C:\ProgramData\EagleGet
O43 - CFD: 24/10/2014 - [] D -- C:\ProgramData\EmailNotifier =>PUP.Optional.EmailNotifier
O43 - CFD: 30/04/2015 - [] D -- C:\ProgramData\F-Secure
O43 - CFD: 24/02/2014 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 07/03/2014 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 07/05/2014 - [] D -- C:\ProgramData\Intel
O43 - CFD: 07/05/2014 - [] D -- C:\ProgramData\Intel(R) Update Manager
O43 - CFD: 02/03/2016 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 24/04/2014 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files
O43 - CFD: 22/03/2015 - [] D -- C:\ProgramData\Logs
O43 - CFD: 04/06/2014 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 24/02/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 07/05/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 28/02/2014 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 26/03/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 28/02/2014 - [] D -- C:\ProgramData\MicroWorld
O43 - CFD: 24/02/2014 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 14/11/2013 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\Norton
O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 28/02/2014 - [0] D -- C:\ProgramData\OEM Links
O43 - CFD: 20/10/2014 - [0] D -- C:\ProgramData\Oracle
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 27/02/2014 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 24/02/2014 - [] D -- C:\ProgramData\Roaming
O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 22/02/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 28/02/2014 - [] D -- C:\ProgramData\Sony Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 04/06/2014 - [] D -- C:\ProgramData\Sun
O43 - CFD: 27/02/2014 - [] D -- C:\ProgramData\Synaptics
O43 - CFD: 17/03/2014 - [0] D -- C:\ProgramData\TEMP
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 06/03/2014 - [] D -- C:\ProgramData\Tencent =>.Superfluous.Tencent
O43 - CFD: 04/03/2016 - [] D -- C:\ProgramData\TorchCrashHandler =>.Superfluous.Torch
O43 - CFD: 24/03/2015 - [] D -- C:\ProgramData\TuneUp Software
O43 - CFD: 13/02/2015 - [0] D -- C:\ProgramData\WinZip
O43 - CFD: 01/11/2015 - [0] D -- C:\ProgramData\ZDSupport
O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\{47735de1-f34c-9220-4773-35de1f347787}
O43 - CFD: 24/03/2015 - [0] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 27/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 27/02/2014 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 03/12/2015 - [] D -- C:\Program Files (x86)\Common Files\AV
O43 - CFD: 01/09/2015 - [] D -- C:\Program Files (x86)\Common Files\EagleGet
O43 - CFD: 04/12/2015 - [] D -- C:\Program Files (x86)\Common Files\EVMMediaCodec
O43 - CFD: 20/04/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 30/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 28/02/2014 - [] D -- C:\Program Files (x86)\Common Files\MicroWorld
O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 27/02/2014 - [] D -- C:\Program Files (x86)\Common Files\QCA_Bluetooth
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 22/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 28/02/2014 - [] D -- C:\Program Files (x86)\Common Files\Sony Shared
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 09/11/2014 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 28/02/2014 - [] D -- C:\Program Files (x86)\Common Files\Tencent =>.Superfluous.Tencent
O43 - CFD: 26/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 22/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\.mono
O43 - CFD: 30/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\0F1L1I1PtF1F1C1N
O43 - CFD: 02/11/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Adobe
O43 - CFD: 07/12/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\AnvSoft
O43 - CFD: 27/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Atheros
O43 - CFD: 04/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Audacity
O43 - CFD: 10/09/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\AVAST Software
O43 - CFD: 28/05/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Baidu
O43 - CFD: 10/01/2015 - [] RD -- C:\Users\GARAH Mourad\AppData\Roaming\Brother
O43 - CFD: 18/11/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\CalendarTool
O43 - CFD: 09/12/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\ControlCenter4
O43 - CFD: 25/11/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\DMCache
O43 - CFD: 16/06/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\dvdcss
O43 - CFD: 27/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\EagleGet
O43 - CFD: 20/04/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Ectaco
O43 - CFD: 12/11/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\FlvPlayer =>PUP.Optional.FLVPlayer
O43 - CFD: 29/01/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Foxit Software
O43 - CFD: 24/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Identities
O43 - CFD: 21/01/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\IDM
O43 - CFD: 27/02/2015 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\iLinker
O43 - CFD: 27/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\InstallShield
O43 - CFD: 24/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Intel
O43 - CFD: 02/03/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\IsolatedStorage
O43 - CFD: 06/03/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Macromedia
O43 - CFD: 24/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\ManyCam
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\Media Center Programs
O43 - CFD: 15/11/2015 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\Media Player Classic
O43 - CFD: 22/04/2014 - [] SD -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft
O43 - CFD: 28/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\MicroWorld
O43 - CFD: 14/11/2013 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Mozilla
O43 - CFD: 06/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\oald8
O43 - CFD: 03/12/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
O43 - CFD: 24/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\RecLib
O43 - CFD: 26/04/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\sa.edu.ksa.ayat
O43 - CFD: 23/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Skype
O43 - CFD: 18/06/2014 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\Smadav
O43 - CFD: 02/03/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Solvusoft
O43 - CFD: 01/12/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Sony Corporation
O43 - CFD: 27/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Synaptics
O43 - CFD: 31/01/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Tencent =>.Superfluous.Tencent
O43 - CFD: 28/03/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\TeraCopy
O43 - CFD: 24/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\TuneUp Software
O43 - CFD: 22/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Unity
O43 - CFD: 09/05/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\uTorrent
O43 - CFD: 14/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\vlc
O43 - CFD: 04/03/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\WeatherDesktop
O43 - CFD: 23/10/2014 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\WebExtend
O43 - CFD: 10/03/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\WinRAR
O43 - CFD: 04/12/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Xilisoft
O43 - CFD: 28/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Yandex
O43 - CFD: 16/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\YCanPDF
O43 - CFD: 24/03/2015 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\YoWindow
O43 - CFD: 04/03/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\ZHP
O43 - CFD: 24/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\{459A0E5A-6097-448B-9D8B-7835E3FF7D00}
O43 - CFD: 02/11/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Adobe
O43 - CFD: 24/02/2014 - [0] SHD -- C:\Users\GARAH Mourad\AppData\Local\Application Data
O43 - CFD: 24/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\ApplicationHistory
O43 - CFD: 30/01/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Audacity
O43 - CFD: 27/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\BMExplorer
O43 - CFD: 25/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Bromium
O43 - CFD: 02/11/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\CEF
O43 - CFD: 03/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\CrashDumps
O43 - CFD: 28/10/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 03/03/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Diagnostics
O43 - CFD: 04/12/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Downloaded Installations
O43 - CFD: 14/02/2016 - [0] D -- C:\Users\GARAH Mourad\AppData\Local\ElevatedDiagnostics
O43 - CFD: 10/03/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Facebook
O43 - CFD: 28/04/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\FileTypeAssistant =>Adware.InstallCore
O43 - CFD: 02/03/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\FileViewPro
O43 - CFD: 30/04/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Foxit Reader
O43 - CFD: 29/09/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Google
O43 - CFD: 24/02/2014 - [0] SHD -- C:\Users\GARAH Mourad\AppData\Local\Historique
O43 - CFD: 06/11/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\IsolatedStorage
O43 - CFD: 28/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\kinoma
O43 - CFD: 04/06/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Macromedia
O43 - CFD: 30/01/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Microsoft
O43 - CFD: 28/07/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Microsoft Games
O43 - CFD: 30/05/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Microsoft Help
O43 - CFD: 28/05/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\MiniService
O43 - CFD: 14/11/2013 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Mozilla
O43 - CFD: 24/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\MétéoMédia
O43 - CFD: 06/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\oald8
O43 - CFD: 24/03/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Programs
O43 - CFD: 24/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Samsung
O43 - CFD: 03/01/2016 - [0] D -- C:\Users\GARAH Mourad\AppData\Local\Skype
O43 - CFD: 28/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Sony Corporation
O43 - CFD: 24/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Systweak =>.Superfluous.Systweak
O43 - CFD: 04/03/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Temp
O43 - CFD: 24/02/2014 - [0] SHD -- C:\Users\GARAH Mourad\AppData\Local\Temporary Internet Files
O43 - CFD: 16/01/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Torch =>.Superfluous.Torch
O43 - CFD: 29/10/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Total Builder =>PUP.Optional.TotalBuilder*
O43 - CFD: 24/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\TuneUp Software
O43 - CFD: 22/10/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Unity
O43 - CFD: 10/09/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\VirtualStore
O43 - CFD: 22/02/2016 - [] D -- C:\Users\GARAH Mourad\AppData\Local\WeatherDesktop
O43 - CFD: 26/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Windows Live
O43 - CFD: 28/02/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Local\Yandex
O43 - CFD: 18/03/2014 - [] RD -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 29/10/2015 - [] RD -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 04/03/2016 - [] RD -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
O43 - CFD: 21/04/2014 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\COED11
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 29/10/2015 - [] RD -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 29/05/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer
O43 - CFD: 10/03/2015 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch =>.Superfluous.Torch
O43 - CFD: 05/03/2014 - [] D -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 24/03/2015 - [0] D -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件

---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 13s
O45 - LFCP:[MD5.915481818C55EF9FFD5F36F11D3378CE] 04/03/2016 A -- C:\Windows\Prefetch\TORCH.EXE-A0345332.pf =>.Superfluous.Torch
O45 - LFCP:[MD5.0DD679162058FD061A56B25EACFCED60] 04/03/2016 A -- C:\Windows\Prefetch\TORCHUPDATE.EXE-814FDED6.pf =>.Superfluous.Torch

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 1s
O106 - SIOI: UpToDateOverlayHandler Class [ SkyDrive1] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\GARAH Mourad\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ SkyDrive2] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\GARAH Mourad\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll =>.Microsoft Corporation®
O106 - SIOI: ErrorOverlayHandler Class [ SkyDrive3] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\GARAH Mourad\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\SkyDriveShell.dll =>.Microsoft Corporation®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.®

---\\ Liste des pilotes du système (80) - 17s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [106576] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [28752] =>.Microsoft Windows®
O58 - SDL:2013/04/11 02:13:08 A . (.Windows (R) Win 7 DDK provider - Intel® Centrino® Wireless Bluetooth® + High.) -- C:\Windows\System32\drivers\AmpPal.sys [164832] =>.Intel Corporation-Mobile Wireless Group®
O58 - SDL:2011/11/28 14:51:44 A . (.AnvSoft Inc. - AnvSoft Virtual Audio Device.) -- C:\Windows\System32\drivers\anvsnddrv.sys [33872] =>.AnvSoft Co., Ltd.®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2016/02/22 07:13:00 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [37656] =>.AVAST Software a.s.®
O58 - SDL:2016/02/22 07:13:00 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [107792] =>.AVAST Software a.s.®
O58 - SDL:2016/02/22 07:13:00 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [103064] =>.AVAST Software a.s.®
O58 - SDL:2016/02/22 07:13:00 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [74544] =>.AVAST Software a.s.®
O58 - SDL:2016/02/22 07:12:06 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1065720] =>.AVAST Software a.s.®
O58 - SDL:2016/02/23 19:31:11 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [463744] =>.AVAST Software a.s.®
O58 - SDL:2016/02/22 07:13:02 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [165344] =>.AVAST Software a.s.®
O58 - SDL:2015/09/10 23:23:19 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\aswTap.sys [44640] =>.AVAST Software a.s.®
O58 - SDL:2016/02/22 07:15:06 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswvmm.sys [287016] =>.AVAST Software a.s.®
O58 - SDL:2012/09/18 00:33:32 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [3752448] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2013/01/24 23:45:56 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\Windows\System32\drivers\btath_a2dp.sys [346192] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:45:56 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\Windows\System32\drivers\btath_avdt.sys [115280] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:45:56 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\Windows\System32\drivers\btath_bus.sys [34384] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:45:58 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_flt.sys [89168] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:45:58 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [179432] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:45:58 A . (.Qualcomm Atheros - Qualcomm Atheros HID driver.) -- C:\Windows\System32\drivers\btath_hid.sys [222952] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:45:58 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_lwflt.sys [77464] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:46:00 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\Windows\System32\drivers\btath_rcp.sys [136424] =>.Atheros Communications Inc.®
O58 - SDL:2013/01/24 23:46:02 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [581200] =>.Atheros Communications Inc.®
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2015/07/29 22:04:54 A . (.eagleGet - eagleGet Network Filter.) -- C:\Windows\System32\drivers\eagleGet.sys [77624] {5EAA8EA6DE5A4AE14D8CEF6B69520D27} =>.EagleGet
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2013/07/18 05:20:38 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\Windows\System32\drivers\ETD.sys [370992] =>.ELAN Microelectronics Corporation®
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2012/07/12 11:56:32 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [62784] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:47:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [77888] =>.Microsoft Windows®
O58 - SDL:2012/11/19 12:10:38 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [652344] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2012/11/19 12:10:36 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [28216] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410688] =>.Microsoft Windows®
O58 - SDL:2015/06/12 05:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [197616] =>.Tonec Inc.®
O58 - SDL:2013/01/16 06:30:34 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [5358464] =>.Intel Corporation
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2013/01/23 04:22:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [342528] =>.Intel(R) Corporation
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2011/09/29 08:04:22 A . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture D.) -- C:\Windows\System32\drivers\ManyCam_x64.sys [27136]
O58 - SDL:2014/05/13 14:21:18 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv_x64.sys [35440] {266F9E30991B0C3EFC03DA9B8CDDB68D}
O58 - SDL:2014/07/28 15:06:24 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\Windows\System32\drivers\mcvidrv.sys [49264] {266F9E30991B0C3EFC03DA9B8CDDB68D}
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:27 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [149056] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [167488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2012/09/06 17:25:26 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [719504] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/01/08 13:28:34 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3286240] =>.Realtek Semiconductor Corp®
O58 - SDL:2011/09/08 16:40:24 A . (.Realtek - Realtek 8136/8168/8169 NDIS6 64-bit Driver.) -- C:\Windows\System32\drivers\Rtlh64.sys [508520] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/02/01 11:35:38 A . (.SAMSUNG ELECTRONICS - SAMSUNG Kernel Driver.) -- C:\Windows\System32\drivers\SABI.sys [13824] =>.SAMSUNG Electronics
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2012/10/16 11:02:04 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [457016] =>.Synaptics Incorporated®
O58 - SDL:2015/05/01 19:51:22 A . (.Trend Micro Inc. - TrendMicro Common Module.) -- C:\Windows\System32\drivers\tmcomm.sys [305832] =>.Trend Micro, Inc.®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2012/09/18 00:33:32 N . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\athrx.sys [3752448] =>.Qualcomm Atheros Communications, Inc.

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 167s
O61 - LFC: 2016/03/02 12:57:43 A . (..) -- C:\Users\GARAH Mourad\Desktop\Setup_FileViewPro_2016.exe [2173104] {707FD3377AD86EA3876C353AA78DC382}
O61 - LFC: 2016/02/29 23:08:12 A . (..) -- C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\UProof\CMAdj.9.bin [272]
O61 - LFC: 2016/03/04 17:14:57 A . (..) -- C:\Users\GARAH Mourad\AppData\Local\Torch\User Data\ev_hashes_whitelist.bin [674082] =>.Superfluous.Torch

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®

---\\ Menu de démarrage Internet (24) - 2s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Torch Media Inc. - Torch.) -- C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe {3B5BBD7E1C28C5B63BDEEB9FBC639A98}
O68 - StartMenuInternet: <Хром> <Хром>[HKLM\..\Shell\open\Command] (...) -- C:\Users\GARAH Mourad\AppData\Local\Bromium\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Torch Media Inc. - Torch.) -- C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: <Хром> <Хром>[HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\GARAH Mourad\AppData\Local\Bromium\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Torch Media Inc. - Torch.) -- C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: <Хром> <Хром>[HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\GARAH Mourad\AppData\Local\Bromium\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Torch Media Inc. - Torch.) -- C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
O68 - StartMenuInternet: <Хром> <Хром>[HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\GARAH Mourad\AppData\Local\Bromium\Application\chrome.exe (.not file.)

---\\ Recherche d'infection sur les navigateurs (11) - 10s
O69 - SBI: C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\askcom.xml
O69 - SBI: prefs.js [GARAH Mourad - pedcg0yn.default] user_pref("plugin.state.npconduitfirefoxplugin", 0); =>.Superfluous.Conduit
O69 - SBI: SearchScopes [HKCU] {10289C3B-64B4-4B7D-95B8-757058390CB6} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - (Ask Search) - http://websearch.ask.com/ =>Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {33F6CFE4-052F-43A4-B146-DE90755DBD60} - (Search.us.com) - http://search.us.com/
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Goo) - http://www.google.com/
O69 - SBI: SearchScopes [HKCU] {82D7FDE3-653C-45DC-9EC9-8AB2DCD95E8A} - (AVG Secure Search) - http://mysearch.avg.com/ =>PUP.Optional.MyWebSearch
O69 - SBI: SearchScopes [HKCU] {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} - (Norton Safe Search) - http://nortonsafe.search.ask.com/ =>Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {B4F215F2-2596-4771-931F-A8A820B57DF4} - (Yahoo) - http://search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKCU] - (Conduit Search) - http://search.conduit.com/ =>.Superfluous.Conduit
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (33) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [235520] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [776192] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [845824] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [676864] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [343552] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316416] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [706560] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2418176] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [848384] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [369664] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [565760] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [104960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1104384] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [208384] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (1) - 3s
O87 - FAEL: "{1E36C481-50F3-4051-BC3A-9366E3B1601F}" [In-None-P6-TRUE] .(.Trusted Software ApS - Find software to open your files.) -- C:\Program Files (x86)\File Type Assistant\TSAssist.exe {00DC2E7F902B196FB43F6CBF38ADF41AE8} =>Adware.InstallCore

---\\ Enumère les codes produits des logiciels (1) - 2s
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate

---\\ Recherche de clés de registre Tracing (10) - 15s
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup
HKLM\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASAPI32 =>PUP.Optional.RegistryReviver
HKLM\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASMANCS =>PUP.Optional.RegistryReviver
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_Setup_RASAPI32 =>PUP.Optional.BrowseMark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_Setup_RASMANCS =>PUP.Optional.BrowseMark

---\\ Scan Additionnel (92) - 0s
C:\Users\GARAH Mourad\AppData\Local\Total Builder\xBin\TotalBuilder.dll =>PUP.Optional.TotalBuilder*
HKLM\SYSTEM\CurrentControlSet\Services\TorchCrashHandler =>.Superfluous.Torch
C:\Users\GARAH Mourad\AppData\Local\Torch\Update\TorchCrashHandler.exe =>.Superfluous.Torch
C:\Users\GARAH Mourad\AppData\Roaming\Mozilla\Firefox\Profiles\pedcg0yn.default\searchplugins\trovi-search.xml =>PUP.Optional.TroviCom
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FileViewPro_is1 =>.Superfluous.Solvusoft
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\UtilityChest_49 Chrome Extension Uninstall =>.Superfluous.MindSpark
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinThruster_is1 =>.Superfluous.WinThruster
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\UtilityChest_49 Chrome Extension Uninstall =>.Superfluous.MindSpark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WinThruster_is1 =>.Superfluous.WinThruster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Firefox Free Download Packages =>Adware.InstallCore
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FlvPlayer =>PUP.Optional.FLVPlayer
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Torch =>.Superfluous.Torch
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9563BC59-9556-4805-8CD4-886781779D8D} =>PUP.Optional.TotalBuilder*
HKLM\SOFTWARE\Wow6432Node\73eae394-6752-4acc-a546-d0da937a0b47 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Conduit =>.Superfluous.Conduit
HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\Wow6432Node\FlvPlayer =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\mystarttb =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\SiteSee =>PUP.Optional.SiteSee
HKLM\SOFTWARE\Wow6432Node\Solvusoft =>.Superfluous.Solvusoft
HKLM\SOFTWARE\Wow6432Node\SPPDCOM =>.Superfluous.PCSpeedUp
HKLM\SOFTWARE\Wow6432Node\Systweak =>.Superfluous.Systweak
HKLM\SOFTWARE\Wow6432Node\Tencent =>.Superfluous.Tencent
HKLM\SOFTWARE\Wow6432Node\Torch =>.Superfluous.Torch
HKLM\SOFTWARE\Wow6432Node\Tune =>.Superfluous.Systweak
HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Bitberry Software =>.Superfluous.Bitberry
HKCU\SOFTWARE\CinemaP-1.9cV25.10-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Conduit =>.Superfluous.Conduit
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\FileTypeAssistant =>Adware.InstallCore
HKCU\SOFTWARE\help4u =>PUP.Optional.CrossRider
HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\SavePass1.1 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Softonic =>.Superfluous.Softonic
HKCU\SOFTWARE\Solvusoft =>.Superfluous.Solvusoft
HKCU\SOFTWARE\Systweak =>.Superfluous.Systweak
HKCU\SOFTWARE\Torch =>.Superfluous.Torch
HKCU\SOFTWARE\Tune =>.Superfluous.Systweak
HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider
C:\Program Files (x86)\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Program Files (x86)\dc08b244-ee31-4f57-b337-ad4314ca5152 =>PUP.Optional.CrossRider
C:\Program Files (x86)\help4u =>PUP.Optional.CrossRider
C:\Program Files (x86)\Movies App =>PUP.Optional.CrossRider
C:\Program Files (x86)\UtilityChest_49 Chrome Extension =>PUP.Optional.MyWebSearch
C:\Program Files (x86)\WinThruster =>.Superfluous.WinThruster
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster =>.Superfluous.WinThruster
C:\ProgramData\EmailNotifier =>PUP.Optional.EmailNotifier
C:\ProgramData\Tencent =>.Superfluous.Tencent
C:\ProgramData\TorchCrashHandler =>.Superfluous.Torch
C:\Program Files (x86)\Common Files\Tencent =>.Superfluous.Tencent
C:\Users\GARAH Mourad\AppData\Roaming\FlvPlayer =>PUP.Optional.FLVPlayer
C:\Users\GARAH Mourad\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
C:\Users\GARAH Mourad\AppData\Roaming\Tencent =>.Superfluous.Tencent
C:\Users\GARAH Mourad\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Users\GARAH Mourad\AppData\Local\FileTypeAssistant =>Adware.InstallCore
C:\Users\GARAH Mourad\AppData\Local\Systweak =>.Superfluous.Systweak
C:\Users\GARAH Mourad\AppData\Local\Torch =>.Superfluous.Torch
C:\Users\GARAH Mourad\AppData\Local\Total Builder =>PUP.Optional.TotalBuilder*
C:\Users\GARAH Mourad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch =>.Superfluous.Torch
C:\Windows\Prefetch\TORCH.EXE-A0345332.pf =>.Superfluous.Torch
C:\Windows\Prefetch\TORCHUPDATE.EXE-814FDED6.pf =>.Superfluous.Torch
C:\Users\GARAH Mourad\AppData\Local\Torch\User Data\ev_hashes_whitelist.bin =>.Superfluous.Torch
C:\Users\GARAH Mourad\AppData\Local\Torch\Application\torch.exe =>.Superfluous.Torch
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} =>Toolbar.Ask
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{82D7FDE3-653C-45DC-9EC9-8AB2DCD95E8A} =>PUP.Optional.MyWebSearch
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} =>Toolbar.Ask
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\ =>.Superfluous.Conduit
C:\Program Files (x86)\File Type Assistant\TSAssist.exe =>Adware.InstallCore
HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup
HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup
HKLM64\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASAPI32 =>PUP.Optional.RegistryReviver
HKLM64\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASMANCS =>PUP.Optional.RegistryReviver
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_Setup_RASAPI32 =>PUP.Optional.BrowseMark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\BrowseMark_Setup_RASMANCS =>PUP.Optional.BrowseMark

---\\ Récapitulatif des éléments trouvés sur votre station (33) - 0s
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.TotalBuilder*
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Torch
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.WinThruster
http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/?p=674 =>PUP.Optional.TroviCom
http://www.nicolascoolman.fr/?p=1633 =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Solvusoft
http://www.nicolascoolman.fr/?p=142 =>.Superfluous.MindSpark
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.FLVPlayer
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/pup-optional-crossbrowse =>PUP.Optional.CrossBrowse
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SiteSee
http://www.nicolascoolman.fr/?p=1255 =>.Superfluous.PCSpeedUp
http://www.nicolascoolman.fr/pup-systweak/ =>.Superfluous.Systweak
http://www.nicolascoolman.fr/?p=368 =>.Superfluous.Tencent
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Bitberry
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Softonic
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AVGSafeGuard
http://www.nicolascoolman.fr/?p=1013 =>.Superfluous.Sogou
http://www.nicolascoolman.fr/?p=220 =>PUP.Optional.MyWebSearch
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.EmailNotifier
http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Torch
http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask
http://www.nicolascoolman.fr/?p=316 =>PUP.Optional.MyPCBackup
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.RegistryReviver
http://www.nicolascoolman.fr/?p=336 =>PUP.Optional.AdvancedSystemProtector
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.AskBar
http://www.nicolascoolman.fr/?p=1437 =>PUP.Optional.BrowseMark

~ End of the scan, 20556 items in 00h08mn23s (1353)(0)

Publicité


Signaler le contenu de ce document

Publicité