cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.4.1.81 By Nicolas Coolman (2016/04/01)
~ Run by nabil tebib (Administrator) (2016/04/03 01:10:39)
~ Web: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ State version:
~ Mode: Scan
~ Report: C:\Users\nabil tebib\Desktop\ZHPDiag.txt
~ Report: C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 10586)

---\\ Internet Browsers (3) - 0s
GCIE: Google Chrome v49.0.2623.110
MFIE: Mozilla Firefox 39.0.3 (x86 en-US)
MSIE: Internet Explorer v11.162.10586.0

---\\ Windows Product Information (3) - 3s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK

---\\ System protection software (1) - 12s
Windows Defender (Deactivate)

---\\ Information on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3888.668 MB (27% free)
System Restore: Activé (Enable)
System drive C: has 58 GB () free of 99 GB

---\\ Connection to the system mode (3) - 0s
~ Computer Name: NABIL
~ User Name: nabil tebib
~ Logged in as Administrator

---\\ Enumeration of the disk units (5) - 0s
~ Drive C: has 58 GB free of 99 GB (System)
~ Drive D: has 74 GB free of 149 GB
~ Drive E: has 116 GB free of 160 GB
~ Drive F: has 0 GB free of 0 GB
~ Drive Q: has 66 GB free of 66 GB

---\\ State of the Windows Security Center (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (24) - 2s
[MD5.95D730526EF81792CD6848D8D10FAA1C] - 13/02/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4502352] =>.Microsoft Windows®
[MD5.0DCB89B1F3689BC6262FF30BBD603171] - 30/10/2015 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation
[MD5.CAD491DD9EC00BB841EA407D9C498C4A] - 30/10/2015 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [290856] =>.Microsoft Windows Publisher®
[MD5.6807A6D971AA7A26245397ADDFE3B5D8] - 23/02/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [2755584] =>.Microsoft Corporation
[MD5.7B24B823404D53DA4748F21AD2BF04C9] - 13/02/2016 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [584704] =>.Microsoft Corporation
[MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - 30/10/2015 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation
[MD5.E7B524818100B0FDE2B057C74B0C0DCD] - 30/10/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [686984] =>.Microsoft Windows®
[MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535088] =>.Microsoft Windows®
[MD5.70148EFA9A562E7185B75BBE7D376BF7] - 13/02/2016 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [578912] =>.Microsoft Windows®
[MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows®
[MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation
[MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173568] =>.Microsoft Corporation
[MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [148480] =>.Microsoft Corporation
[MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [79872] =>.Microsoft Corporation
[MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation
[MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation
[MD5.0B3B0C1D86050355676640488FA897D3] - 23/02/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [430944] =>.Microsoft Windows®
[MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [279552] =>.Microsoft Corporation
[MD5.58BFFEF692A47FCE3FAAEDBC8F3DCBBB] - 23/02/2016 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2152288] =>.Microsoft Windows®
[MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation
[MD5.E3C82823B22463BC38AA4F8ADA852624] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation
[MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 13/02/2016 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [173056] =>.Microsoft Corporation
[MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 13/02/2016 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows®
[MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [414560] =>.Microsoft Windows®

---\\ Non Microsoft non disabled Windows Services (10) - 4s
O23 - Service: Camfrog Update Service (camfrog_update_service) . (.Camshare Inc. - Camfrog Video Chat update service.) - C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe {09626DC47048211BE34315BAF35A16F7} =>.Camshare Inc.
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation®
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
O23 - Service: ManyCam Service (ManyCam Service) . (.Visicom Media Inc. - ManyCam Service.) - C:\ProgramData\ManyCam\Service\service.exe =>.Superfluous.VisicomManyCam
O23 - Service: rscp (rscp) . (.Copyright Reason Software Company Inc. - Reason Core Security Bundle Protection.) - C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_svc.exe =>.Reason Software Company Inc.®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 11.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
O23 - Service: Update service (Update service) . (.Popcorn Time - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time

---\\ Services not Microsoft (SR=Run, SS=Stop) (15) - 29s

SS - Demand [23/03/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [15/03/2016] [ 1063968] Camfrog Update Service (camfrog_update_service) . (.Camshare Inc..) - C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe {09626DC47048211BE34315BAF35A16F7} =>.Camshare Inc.
SR - Demand [19/02/2016] [ 290880] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [19/11/2015] [ 2521080] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.®
SR - Auto [07/09/2015] [ 131288] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation®
SS - Auto [28/02/2016] [ 154440] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [28/02/2016] [ 154440] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [19/02/2016] [ 329280] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation
SR - Auto [15/12/2015] [ 77528] ManyCam Service (ManyCam Service) . (.Visicom Media Inc..) - C:\ProgramData\ManyCam\Service\service.exe =>.Superfluous.VisicomManyCam
SS - Demand [06/08/2015] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [18/03/2016] [ 254904] rscp (rscp) . (.Copyright Reason Software Company Inc..) - C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_svc.exe =>.Reason Software Company Inc.®
SS - Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [16/02/2016] [ 6940944] TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
SS - Auto [19/10/2015] [ 339968] Update service (Update service) . (.Popcorn Time.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time

---\\ Task Planned Automatically (17) - 4s
[MD5.A9D55370A0CBADD1E1E2B4796ACD26DF] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.00000000000000000000000000000000] [APT] [CreateChoiceProcessTask] (...) -- C:\Windows\BrowserChoice\browserchoice.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
[MD5.00000000000000000000000000000000] [APT] [ReasonSecurityScheduledScan] (...) -- C:\Program Files\Reason\Security\rsUI.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [ReasonSecurityStart] (...) -- C:\Program Files\Reason\Security\rsUI.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.C6992F5730886B6977313918583D13C7] [APT] [RTKCPL] (.Realtek Semiconductor.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296] (.Activate.) =>.Realtek Semiconductor Corp®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [830] =>.Adobe Systems Incorporated®
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1086] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1090] =>.Google Inc®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3816] =>.Adobe Systems Incorporated®
O39 - APT: CreateChoiceProcessTask - (...) -- C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask [2314] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3230] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3458] =>.Google Inc®
O39 - APT: ReasonSecurityScheduledScan - (...) -- C:\WINDOWS\System32\Tasks\ReasonSecurityScheduledScan [2764] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: ReasonSecurityStart - (...) -- C:\WINDOWS\System32\Tasks\ReasonSecurityStart [2476] (.Orphean.) =>.Superfluous.Orphean
O39 - APT: RTKCPL - (.Realtek Semiconductor.) -- C:\WINDOWS\System32\Tasks\RTKCPL [3194] =>.Realtek Semiconductor Corp®

---\\ Process running (38) - 8s
[MD5.2C2469FF10F51572D1F6573751E40462] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2521080] [PID.1244] =>.ESET, spol. s r.o.®
[MD5.83B26CC9279768FE449B287DF5B0AAEA] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [329280] [PID.1436] =>.Intel Corporation - pGFX®
[MD5.B04ABB51DABCFFB49A88923F5B1F8AC0] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe [290880] [PID.1628] =>.Intel Corporation - pGFX®
[MD5.59C3DCCDD00E6EC8D16016BF6B02A554] - (.Visicom Media Inc. - ManyCam Service.) -- C:\ProgramData\ManyCam\Service\service.exe [77528] [PID.2100] =>.Superfluous.VisicomManyCam
[MD5.CABA42EC239DC4B607A43FF9AC43C733] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Program Files\Elantech\ETDService.exe [131288] [PID.2120] =>.ELAN Microelectronics Corporation®
[MD5.A796FB8B38B595444F066C9E8B24004F] - (.Camshare Inc. - Camfrog Video Chat update service.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe [1063968] [PID.2180] {09626DC47048211BE34315BAF35A16F7} =>.Camshare Inc.
[MD5.EDF03B43FE5398EA4AD74DC6A0BABC07] - (.Copyright Reason Software Company Inc. - Reason Core Security Bundle Protection.) -- C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_svc.exe [254904] [PID.2404] =>.Reason Software Company Inc.®
[MD5.2E7EFE9F59DA5EF7AAAE5712324FAAFD] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6940944] [PID.2616] =>.TeamViewer®
[MD5.854FF071683933E4941B32B962B5368D] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [3242712] [PID.10352] =>.ELAN Microelectronics Corporation®
[MD5.36308FBC82BBC18D454BCA671692300F] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5544648] [PID.4244] =>.ESET, spol. s r.o.®
[MD5.32DC5E9AAE80FFB5DEC803A8849DEC1E] - (.Copyright Reason Software Company Inc. - Reason Core Security Bundle Protection.) -- C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_bg.exe [570296] [PID.9112] =>.Reason Software Company Inc.®
[MD5.99A5754FCA1360F5F83AEF06907312FC] - (.ELAN Microelectronics Corp. - ETDTouch.) -- C:\Program Files\Elantech\ETDTouch.exe [132312] [PID.12544] =>.ELAN Microelectronics Corporation®
[MD5.35B2A674E0233229004DE7FDBA7B155B] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [540736] [PID.11252] =>.Intel Corporation - pGFX®
[MD5.8F667ACC8E1B8E19799FF21994DC5A6F] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [257600] [PID.10976] =>.Intel Corporation - pGFX®
[MD5.DAA195AEF4BF15FE7E37BA4B25E341B0] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2581208] [PID.10144] =>.ELAN Microelectronics Corporation®
[MD5.C6992F5730886B6977313918583D13C7] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296] [PID.6592] =>.Realtek Semiconductor Corp®
[MD5.F6987FF6C6D683F79FDCE707B071A997] - (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe [955392] [PID.6260] =>.SFX TEAM
[MD5.163E43BC69AE78F468024EC2133C94A8] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992] [PID.3672] =>.Oracle America, Inc.®
[MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275608] [PID.6580] =>.Tonec Inc.®
[MD5.C53B51794903CDA88CD135014C3E90F5] - (.Oracle Corporation - Java Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [926768] [PID.13936] =>.Oracle America, Inc.®
[MD5.7C49070A87C960C2E39947CDA2612723] - (.Copyright Microsoft Corporation - Phone Companion.) -- C:\Program Files\WindowsApps\Microsoft.WindowsPhone_10.1602.3010.0_x64__8wekyb3d8bbwe\CompanionApp.exe [12288] [PID.9472] =>.Copyright Microsoft Corporation
[MD5.A5C40C25CE9B14257656B4808C661B2F] - (.Copyright © Microsoft Corporation. All rights reserve - Weather.Windows.) -- C:\Program Files\WindowsApps\Microsoft.BingWeather_4.8.277.0_x86__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe [15872] [PID.11692]
[MD5.9D0ADA27215A21E0F38850FAF8C54D85] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [16896] [PID.10596] =>.Copyright Microsoft Corporation
[MD5.65212966BD41D0D037E9D27D4B5AE33E] - (.Visicom Media Inc. - ManyCam Virtual Webcam.) -- C:\Program Files (x86)\ManyCam\ManyCam.exe [10116392] [PID.3024] =>.Superfluous.VisicomManyCam
[MD5.A64B3B32A7D32BF21BDF2ACADDA804C8] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [51665536] [PID.2080] =>.Skype Software Sarl®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.8052] =>.Google Inc®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.11792] =>.Google Inc®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.1596] =>.Google Inc®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.11120] =>.Google Inc®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3768] =>.Google Inc®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.5760] =>.Google Inc®
[MD5.81896B186E0E66F762E1CB1C2E5B25FC] - (.VideoLAN - VLC media player.) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [137152] [PID.11916] =>.VideoLAN®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.7312] =>.Google Inc®
[MD5.DC7B578A97F82AAB19906DAEB3693D1C] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3878480] [PID.13136] =>.Tonec Inc.
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3156] =>.Google Inc®
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.10592] =>.Google Inc®
[MD5.914D4A53A400912E91EC087F66095390] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\nabil tebib\Downloads\ZHPDiag3.exe [2171904] [PID.12552] =>.Nicolas Coolman
[MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.13692] =>.Google Inc®

---\\ Google Chrome, Start,Search,Extensions (15) - 1s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf]
G2 - GCE: Preference [User Data\Default] [bifidglkmlbfohchohkkpdkjokajibgg] Direct APK Downloader
G2 - GCE: Preference [User Data\Default] [bldgenmjegcnjebiongilahhcjldgmlm] __MSG_title__
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [enddmcjcfojolegmdogekfpfbobmkioo] MediaCore Capture
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl]
G2 - GCE: Preference [User Data\Default] [mgoehlfmhfafaiepckjikpphoklijedl] Bing2Google
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pekcnopmdcbjdgmpnpkndppflpldnkkp] Hide My IP
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (19) - 4s
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\adguardadblocker@adguard.com.xpi
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\bingsearch.full@microsoft.com.xpi
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid0-zXo3XFGyiDalgkeEO4UYJTUwo2I@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid1-aEL04CgHfwCOwA@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid1-HdwPLukcGQeOSh@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid1-rs90nxQtPi3Asg@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\searchplugins\bing-.xml
P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\searchplugins\hma-proxy.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer Extensions, Start, Search (7) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (60)

---\\ Browser Helper Object (BHO) (2) - 0s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®

---\\ Internet Explorer Toolbars (1) - 0s
O3 - Toolbar: 0xD6BC5BC5AD41AD4899533609C48EACC7 - [HKCU]{C55BBCD6-41AD-48AD-9953-3609C48EACC7} . (...) -- (.not file.)

---\\ Auto loading programs from Registry and folders (26) - 5s
O4 - HKLM\..\Run: [RtsCM] . (.Realtek Semiconductor Corp. - Realtek Camera Man.) -- C:\WINDOWS\RTSCM64.EXE =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation®
O4 - HKCU\..\Run: [Viber] . (. - Viber.) -- C:\Users\nabil tebib\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [Speech Recognition] . (.Microsoft Corporation - Speech Recognition.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe =>.SFX TEAM
O4 - HKCU\..\Run: [download.ninja] . (.Copyright © vpnscout.org 2015 - downloadninja.) -- C:\Program Files\Ninja Download Manager\download.ninja.exe =>.Websecure Ltd®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [Camfrog] . (.Camshare, Inc. - Camfrog Video Chat.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Viber] . (. - Viber.) -- C:\Users\nabil tebib\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l®
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Speech Recognition] . (.Microsoft Corporation - Speech Recognition.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe =>.SFX TEAM
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [download.ninja] . (.Copyright © vpnscout.org 2015 - downloadninja.) -- C:\Program Files\Ninja Download Manager\download.ninja.exe =>.Websecure Ltd®
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Camfrog] . (.Camshare, Inc. - Camfrog Video Chat.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\RunOnce: [Uninstall C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 (.not file.)

---\\ Global shortcuts Startup (55) - 12s
O4 - GS\Desktop [Administrator]: Any DVD Converter Professional.lnk . (.Any-Video-Converter.com - Any DVD Converter.) C:\Program Files (x86)\AnvSoft\Any DVD Converter Professional\DVDConvPro.exe =>.AnvSoft Co., Ltd.®
O4 - GS\Desktop [Administrator]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - GS\Desktop [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrator]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe
O4 - GS\Desktop [Administrator]: Skype - Shortcut.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\Desktop [Administrator]: Tixati.lnk . (.Tixati Software Inc. - Tixati.) C:\Program Files\tixati\tixati.exe {0FFE} =>.Tixati Software Inc.
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrator]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrator]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrator]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\TaskBar [Administrator]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Desktop [Guest]: Any DVD Converter Professional.lnk . (.Any-Video-Converter.com - Any DVD Converter.) C:\Program Files (x86)\AnvSoft\Any DVD Converter Professional\DVDConvPro.exe =>.AnvSoft Co., Ltd.®
O4 - GS\Desktop [Guest]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - GS\Desktop [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Guest]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe
O4 - GS\Desktop [Guest]: Skype - Shortcut.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\Desktop [Guest]: Tixati.lnk . (.Tixati Software Inc. - Tixati.) C:\Program Files\tixati\tixati.exe {0FFE} =>.Tixati Software Inc.
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Guest]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Guest]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Guest]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Guest]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\TaskBar [Guest]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Desktop [nabil tebib]: Any DVD Converter Professional.lnk . (.Any-Video-Converter.com - Any DVD Converter.) C:\Program Files (x86)\AnvSoft\Any DVD Converter Professional\DVDConvPro.exe =>.AnvSoft Co., Ltd.®
O4 - GS\Desktop [nabil tebib]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - GS\Desktop [nabil tebib]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [nabil tebib]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe
O4 - GS\Desktop [nabil tebib]: Skype - Shortcut.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\Desktop [nabil tebib]: Tixati.lnk . (.Tixati Software Inc. - Tixati.) C:\Program Files\tixati\tixati.exe {0FFE} =>.Tixati Software Inc.
O4 - GS\Desktop [nabil tebib]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [nabil tebib]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7}
O4 - GS\Quicklaunch [nabil tebib]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [nabil tebib]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\sendTo [nabil tebib]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [nabil tebib]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [nabil tebib]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [nabil tebib]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\TaskBar [nabil tebib]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: Camtasia Studio 8.lnk . (.TechSmith Corporation - Camtasia Studio.) C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe =>.TechSmith Corporation®
O4 - GS\CommonDesktop [Public]: CPUID HWMonitor.lnk . (.CPUID - HWMonitor.) C:\Program Files\CPUID\HWMonitor\HWMonitor.exe =>.CPUID®
O4 - GS\CommonDesktop [Public]: FastStone Capture.lnk . (.FastStone Soft - FastStone Capture.) C:\Program Files (x86)\FastStone Capture\FSCapture.exe =>.FastStone Soft
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Ninja Download Manager.lnk . (.Copyright © vpnscout.org 2015 - downloadninja.) C:\Program Files\Ninja Download Manager\download.ninja.exe =>.Websecure Ltd®
O4 - GS\CommonDesktop [Public]: TeamViewer 11.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\Programs [Public]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe
O4 - GS\Programs [Public]: Viber.lnk . (...) C:\Users\nabil tebib\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l®

---\\ Lop.com/Domain Hijackers (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 8.8.8.8 8.8.4.4
O17 - HKLM\System\CCS\Services\Tcpip\..\{0f0c177b-e03b-4abc-bd2b-80886a81b50e}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\..\{72b7bba4-4e68-4589-a877-3be2b0716a11}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\..\{99e38fa7-dac9-4541-a8ea-ade9c201891d}: DhcpNameServer = 8.8.8.8 8.8.4.4

---\\ Extra protocols (23) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation

---\\ Software installed (44) - 15s
O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Any DVD Converter Professional 4.1.5 - (.Any-DVD-Converter.com.) [HKLM][64Bits] -- Any DVD Converter Professional_is1 =>.AnvSoft Co., Ltd.®
O42 - Logiciel: Bit Che - (.Convivea Inc..) [HKLM][64Bits] -- {D9DA5C41-964F-455F-B5E7-3664519440E8}_is1 {009653223240219E4230D33C46AECC7E93}
O42 - Logiciel: Camfrog Video Chat 6.11 - (.Camshare, Inc..) [HKLM][64Bits] -- Camfrog
O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM][64Bits] -- {474DFABF-E55B-4905-ABAA-40791A6AC77F} =>.TechSmith Corporation
O42 - Logiciel: CPUID HWMonitor 1.28 - (...) [HKLM][64Bits] -- CPUID HWMonitor_is1
O42 - Logiciel: EasyBCD 2.3 - (.NeoSmart Technologies.) [HKLM][64Bits] -- EasyBCD =>.NeoSmart Technologies®
O42 - Logiciel: EDS Google Books Downloader version 1.0.5.5 - (.EveryDaySoft.) [HKLM][64Bits] -- EDS Google Books Downloader_is1
O42 - Logiciel: EDS Video Downloader version 2.0.1.2 - (.EveryDaySoft.) [HKLM][64Bits] -- EDS Video Downloader_is1 =>PUP.Optional.VideoDownloader
O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM][64Bits] -- {C7967963-BE1C-4ABA-839F-3CB206E50697} =>.ESET, spol. s r.o.
O42 - Logiciel: ETDWare X64 15.7.0.1_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation®
O42 - Logiciel: FastStone Capture 7.6 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Capture =>.FastStone Soft
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc.
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Java 8 Update 73 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218073F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: LINE - (.LINE Corporation.) [HKLM][64Bits] -- LINE =>.LINE Corporation®
O42 - Logiciel: ManyCam 5.1.0 - (.Visicom Media Inc..) [HKLM][64Bits] -- ManyCam =>.Superfluous.VisicomManyCam
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 39.0.3 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0.3 (x86 en-US) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MPC-HC 1.7.9 (64-bit) - (.MPC-HC Team.) [HKLM][64Bits] -- {2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1 =>.Open Source Developer, Fotis ZAFIROPOULOS®
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {33C19CDE-E935-11E0-A0DA-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation
O42 - Logiciel: Ninja Download Manager build 33 - (.Ninja Download Manager.) [HKLM][64Bits] -- DownloadNinja_is1 =>.Websecure Ltd®
O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM][64Bits] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} =>.Prolific Technology INC
O42 - Logiciel: PL-2303 Vista Driver Installer - (.Prolific.) [HKLM][64Bits] -- {EEC010D0-1252-4E1D-BAD9-F1B8F414535C} =>.Prolific
O42 - Logiciel: PL-2303HXD Vista Driver Installer - (.Prolific Technology Inc..) [HKLM][64Bits] -- {503C86BF-22CB-4806-B2AE-AA79DFD8BA35} =>.Prolific Technology Inc.
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek PC Camera - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {E0A7ED39-8CD6-4351-93C3-69CCA00D12B4} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.22 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: SuperCopier2 - (...) [HKLM][64Bits] -- SuperCopier2
O42 - Logiciel: TeamViewer 11 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer®
O42 - Logiciel: Tixati - (...) [HKLM][64Bits] -- tixati
O42 - Logiciel: Vegas Pro 11.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {317ED8CF-E935-11E0-A689-F04DA23A5C58} =>.Sony
O42 - Logiciel: Viber - (.Viber Media Inc.) [HKCU][64Bits] -- Viber =>.Viber Media S.a.r.l®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (124) - 15s
HKLM\SOFTWARE\Wow6432Node\Adguard
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Auslogics
HKLM\SOFTWARE\Wow6432Node\Camfrog
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\DC-Unlocker
HKLM\SOFTWARE\Wow6432Node\DropboxUpdate
HKLM\SOFTWARE\Wow6432Node\ESET
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hagel
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\LINE Corporation
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MAGIX
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Naver
HKLM\SOFTWARE\Wow6432Node\NeoSmart Technologies
HKLM\SOFTWARE\Wow6432Node\NHN Corporation
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Orange
HKLM\SOFTWARE\Wow6432Node\Prolific
HKLM\SOFTWARE\Wow6432Node\Prolific Technology INC
HKLM\SOFTWARE\Wow6432Node\Prolific Technology Inc.
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Reason
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\SRS Labs
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\TechSmith
HKLM\SOFTWARE\Wow6432Node\TVInstallTemp
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visicom Media
HKLM\SOFTWARE\Wow6432Node\VMware, Inc.
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Xara
HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo!
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\8322898
HKCU\SOFTWARE\AnvSoft
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Atheros
HKCU\SOFTWARE\Camfrog
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\DirectShow
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\Driver Magician
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\DropboxUpdate
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\Elantech
HKCU\SOFTWARE\Enigma Protector
HKCU\SOFTWARE\ESET
HKCU\SOFTWARE\Extensoft
HKCU\SOFTWARE\FastStone
HKCU\SOFTWARE\FlashPeak
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Initex
HKCU\SOFTWARE\Initex Software
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\LINE Corporation
HKCU\SOFTWARE\Lyrics Plugin
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magix
HKCU\SOFTWARE\MAGIX AG
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\ManyCam
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Naver
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NHN Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Pokki
HKCU\SOFTWARE\Popcorn Time
HKCU\SOFTWARE\PopcornTime
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\ProgSense =>PUP.Optional.ProgSense
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Reason
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\SeriousBit
HKCU\SOFTWARE\SFX TEAM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\SyncEngines
HKCU\SOFTWARE\SYNCJM
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\TechSmith
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TVT
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Viber
HKCU\SOFTWARE\Visicom Media
HKCU\SOFTWARE\VMware, Inc.
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WLAN Optimizer .NET
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Yandex
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\ThinPrint

---\\ Contents of the Common Files folders (270) - 42s
O43 - CFD: 29/12/2015 - [0] D -- C:\Program Files\Bitdefender
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 01/02/2016 - [] D -- C:\Program Files\CPUID =>.CPUID®
O43 - CFD: 23/12/2015 - [] D -- C:\Program Files\DIFX {5EB707539E398E4A4DBB8E8E267E8753}
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation®
O43 - CFD: 18/01/2016 - [] D -- C:\Program Files\Enigma Software Group =>.Enigma Software Group USA, LLC®
O43 - CFD: 29/12/2015 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Intel
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 26/01/2016 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 09/08/2015 - [] AD -- C:\Program Files\MPC-HC =>.Open Source Developer, Fotis ZAFIROPOULOS®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 24/01/2016 - [] AD -- C:\Program Files\Ninja Download Manager =>.Websecure Ltd®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Reason =>.Reason Software Company Inc.®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 02/04/2016 - [] D -- C:\Program Files\Sony =>.Sony Creative Software Inc®
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\tixati
O43 - CFD: 13/02/2016 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 03/04/2016 - [] HD -- C:\Program Files\WindowsApps
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files\WindowsPowerShell
O43 - CFD: 01/02/2016 - [0] D -- C:\Program Files (x86)\Adguard
O43 - CFD: 02/04/2016 - [] D -- C:\Program Files (x86)\AnvSoft
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files (x86)\Artisteer 4
O43 - CFD: 06/03/2016 - [] AD -- C:\Program Files (x86)\Bit Che {009653223240219E4230D33C46AECC7E93}
O43 - CFD: 03/02/2016 - [] D -- C:\Program Files (x86)\Camfrog {09626DC47048211BE34315BAF35A16F7}
O43 - CFD: 23/03/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 29/12/2015 - [] D -- C:\Program Files (x86)\Dropbox
O43 - CFD: 01/03/2016 - [] D -- C:\Program Files (x86)\EveryDaySoft
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\FastStone Capture
O43 - CFD: 28/02/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 23/03/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Macrovision Corporation®
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - pGFX®
O43 - CFD: 03/04/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 28/02/2016 - [] D -- C:\Program Files (x86)\LINE =>.LINE Corporation®
O43 - CFD: 13/03/2016 - [] AD -- C:\Program Files (x86)\ManyCam =>.Superfluous.VisicomManyCam
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Messenger for Desktop
O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 15/03/2016 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 25/12/2015 - [] AD -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\NeoSmart Technologies =>.NeoSmart Technologies®
O43 - CFD: 15/12/2015 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\Orange
O43 - CFD: 23/03/2016 - [] D -- C:\Program Files (x86)\PL2303
O43 - CFD: 09/02/2016 - [] D -- C:\Program Files (x86)\Popcorn Time
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Prolific
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Prolific Technology Inc
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\QuickTime
O43 - CFD: 01/02/2016 - [0] D -- C:\Program Files (x86)\RarmaRadio
O43 - CFD: 14/08/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 27/03/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 02/04/2016 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 12/01/2016 - [] D -- C:\Program Files (x86)\SuperCopier2
O43 - CFD: 02/03/2016 - [] AD -- C:\Program Files (x86)\TeamViewer =>.TeamViewer®
O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\TechSmith =>.TechSmith Corporation®
O43 - CFD: 14/08/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 08/08/2015 - [] AD -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\ZTE ZXDSL 852
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 13/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 02/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Port Scanner
O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bit Che
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EveryDaySoft
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture
O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LINE
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ninja Download Manager
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 13/02/2016 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZXDSL 852
O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 29/11/2015 - [] D -- C:\ProgramData\BDLogging
O43 - CFD: 23/09/2015 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Camfrog Update
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Dropbox
O43 - CFD: 29/12/2015 - [] D -- C:\ProgramData\ESET
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\FastStone
O43 - CFD: 31/12/2015 - [] D -- C:\ProgramData\Hagel Technologies
O43 - CFD: 08/08/2015 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 15/01/2016 - [] D -- C:\ProgramData\IP-TV Player
O43 - CFD: 26/12/2015 - [] D -- C:\ProgramData\MAGIX
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 13/03/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 17/01/2016 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\Reason
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 13/03/2016 - [] AD -- C:\ProgramData\regid.1995-08.com.techsmith
O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\Screaming Bee
O43 - CFD: 12/01/2016 - [] D -- C:\ProgramData\SeriousBit
O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Sony
O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 02/03/2016 - [] AD -- C:\ProgramData\TechSmith
O43 - CFD: 02/04/2016 - [0] D -- C:\ProgramData\TEMP
O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Thunder Network
O43 - CFD: 01/03/2016 - [] D -- C:\ProgramData\UpdaterService
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\VMware
O43 - CFD: 14/08/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Services
O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Shared
O43 - CFD: 13/03/2016 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 23/03/2016 - [] AD -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\Common Files\TechSmith Shared
O43 - CFD: 29/02/2016 - [0] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Adobe
O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\AnvSoft
O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Apple Computer
O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Artisteer
O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\BlogDesk
O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Camfrog
O43 - CFD: 06/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Convivea
O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\DMCache
O43 - CFD: 01/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\DownloadNinja
O43 - CFD: 24/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Dropbox
O43 - CFD: 18/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Enigma Software Group
O43 - CFD: 11/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\FastStone
O43 - CFD: 25/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\GrabPro
O43 - CFD: 07/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\gtk-2.0
O43 - CFD: 29/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\HaiYuInst
O43 - CFD: 07/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Identities
O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\IDM
O43 - CFD: 17/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\livestreamer
O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Macromedia
O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\MAGIX
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 13/03/2016 - [] SD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft
O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Mozilla
O43 - CFD: 09/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\MPC-HC
O43 - CFD: 24/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\Nox
O43 - CFD: 15/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\Opera Software
O43 - CFD: 29/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Orbit
O43 - CFD: 17/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Performix LLC
O43 - CFD: 10/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\PowerISO
O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ProgSense =>PUP.Optional.ProgSense
O43 - CFD: 31/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\Publish Providers
O43 - CFD: 06/08/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\QuickScan
O43 - CFD: 12/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Screaming Bee
O43 - CFD: 14/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Shortcut
O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Skype
O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Sony
O43 - CFD: 22/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Sun
O43 - CFD: 30/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\TeamViewer
O43 - CFD: 26/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\TechSmith
O43 - CFD: 20/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\tixati
O43 - CFD: 16/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Todae
O43 - CFD: 17/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ViberPC
O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\vlc
O43 - CFD: 02/09/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\VMware
O43 - CFD: 10/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\WinRAR
O43 - CFD: 01/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Yandex
O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ZHP
O43 - CFD: 18/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\27431ADNSoftware.Media_1vdhwzxdtmqt2!App
O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\ActiveSync
O43 - CFD: 06/08/2015 - [0] D -- C:\Users\nabil tebib\AppData\Local\Adobe
O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Apple Computer
O43 - CFD: 13/03/2016 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\Application Data
O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Camfrog
O43 - CFD: 10/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\CherryPlayer
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Comms
O43 - CFD: 12/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\CrashDumps
O43 - CFD: 06/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 21/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Diagnostics
O43 - CFD: 29/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Dropbox
O43 - CFD: 07/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\EDSComponents
O43 - CFD: 21/08/2015 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\EmieSiteList
O43 - CFD: 21/08/2015 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\EmieUserList
O43 - CFD: 29/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\ESET
O43 - CFD: 11/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\FastStone
O43 - CFD: 22/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Google
O43 - CFD: 12/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\GWX
O43 - CFD: 13/03/2016 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\History
O43 - CFD: 21/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\LINE
O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Macromedia
O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Magix
O43 - CFD: 01/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\ManyCam =>.Superfluous.VisicomMedia
O43 - CFD: 14/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Messenger
O43 - CFD: 27/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Microsoft
O43 - CFD: 12/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Microsoft Help
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\MicrosoftEdge
O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Mozilla
O43 - CFD: 13/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\NeoSmart_Technologies
O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\NetworkTiles
O43 - CFD: 24/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Nox
O43 - CFD: 15/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Local\Opera Software
O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Packages
O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\PackageStaging
O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\PeerDistRepub
O43 - CFD: 03/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\PopcornTimeDesktop
O43 - CFD: 09/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Programs
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Publishers
O43 - CFD: 11/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Local\Skype
O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Sony
O43 - CFD: 18/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\TechSmith
O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Temp
O43 - CFD: 13/03/2016 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\Temporary Internet Files
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\TileDataLayer
O43 - CFD: 17/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Viber
O43 - CFD: 02/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\VirtualStore
O43 - CFD: 01/09/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\VMware
O43 - CFD: 29/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Windows Live
O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Xara
O43 - CFD: 18/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\__SHARED
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/03/2016 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camfrog Video Chat
O43 - CFD: 14/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 30/10/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 13/03/2016 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tixati
O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Latest files created in Prefetcher (1) - 12s
O45 - LFCP:[MD5.B64391506BED96FAD75E1DDFA58C655D] 02/04/2016 A -- C:\WINDOWS\Prefetch\MANYCAM.EXE-02685C45.pf =>.Superfluous.VisicomMedia

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 1s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation®

---\\ System Drivers List (75) - 18s
O58 - SDL:2015/10/30 08:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows®
O58 - SDL:2015/06/02 16:38:12 A . (.Copyright (C) Performix LLC 2015 - Adguard TDI network driver.) -- C:\WINDOWS\System32\drivers\adgnetworktdidrv.sys [61432] {11217943575E821301807A43EAC9AE8FE273}
O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:18 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [4207104] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/03/09 09:48:34 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240] =>.Qualcomm Atheros®
O58 - SDL:2015/10/30 08:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2015/11/16 12:21:22 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [263528] =>.ESET, spol. s r.o.®
O58 - SDL:2015/07/30 11:41:36 A . (.ESET - ESET ELAM driver.) -- C:\WINDOWS\System32\drivers\eelam.sys [14976] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [186784] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\WINDOWS\System32\drivers\ekbdflt.sys [142976] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [206312] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/16 12:21:22 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\WINDOWS\System32\drivers\EpfwLWF.sys [52872] =>.ESET, spol. s r.o.®
O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [69840] =>.ESET, spol. s r.o.®
O58 - SDL:2016/01/18 11:19:00 A . (...) -- C:\WINDOWS\System32\drivers\EsgScanner.sys [22704] =>.Enigma Software Group USA, LLC®
O58 - SDL:2015/09/07 05:33:04 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\WINDOWS\System32\drivers\ETD.sys [483400] =>.ELAN MICROELECTRONICS CORPORATION®
O58 - SDL:2015/09/07 05:34:38 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) -- C:\WINDOWS\System32\drivers\ETDSMBus.sys [32328] =>.ELAN MICROELECTRONICS CORPORATION®
O58 - SDL:2015/10/30 08:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows®
O58 - SDL:2012/07/18 02:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] =>.Intel Corporation®
O58 - SDL:2015/10/30 08:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] =>.Intel Corporation
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows®
O58 - SDL:2016/01/28 10:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.®
O58 - SDL:2016/02/19 03:08:58 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3798080] =>.Intel Corporation - pGFX®
O58 - SDL:2015/08/21 11:50:48 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [463112] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50240] =>.Intel(R) Wireless Display®
O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38976] =>.Intel(R) Wireless Display®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2014/12/29 04:59:36 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\WINDOWS\System32\drivers\mcaudrv_x64.sys [35960] =>.Superfluous.VisicomManyCam
O58 - SDL:2014/12/29 05:05:44 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\WINDOWS\System32\drivers\mcvidrv.sys [49272] =>.Superfluous.VisicomManyCam
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2015/08/04 11:24:30 A . (.SeriousBit - nbdrv helper driver.) -- C:\WINDOWS\System32\drivers\nbdrv.sys [42128] =>.SeriousBit Srl®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:18 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28ux.sys [2196480] =>.MediaTek Inc.
O58 - SDL:2010/06/25 18:07:26 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.®
O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows®
O58 - SDL:2015/09/25 06:29:34 A . (.QUALCOMM Incorporated - Filter Driver for the Qualcomm USB Driver S.) -- C:\WINDOWS\System32\drivers\qcusbfilter.sys [48672] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2015/09/25 06:29:44 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\qcusbser.sys [252448] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2015/07/16 20:14:28 A . (.Windows (R) Win 7 DDK provider - HID Radio Switch mini driver for USB Fx2 De.) -- C:\WINDOWS\System32\drivers\RadioHIDMini.sys [32168] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2015/10/30 08:17:23 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [589824] =>.Realtek
O58 - SDL:2015/08/28 23:16:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4519144] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/09/02 19:13:34 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for XP/Vista/Win7/Win8.) -- C:\WINDOWS\System32\drivers\rtsuvc.sys [8874712] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/07/01 15:21:50 A . (.Screaming Bee LLC - Screaming Bee Audio Driver.) -- C:\WINDOWS\System32\drivers\ScreamingBAudio64.sys [38992] =>.Screaming Bee LLC®
O58 - SDL:2007/07/31 17:04:48 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\WINDOWS\System32\drivers\ser2pl64.sys [90112] =>.Prolific Technology Inc.
O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2015/12/08 04:00:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [122160] =>.DEVGURU CO LTD®
O58 - SDL:2015/12/08 04:00:58 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [214832] =>.DEVGURU CO LTD®
O58 - SDL:2015/10/30 08:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2014/05/16 22:04:46 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [254240] =>.Oracle Corporation®
O58 - SDL:2015/09/16 07:07:12 A . (.BigNox Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys [127432] {5EB707539E398E4A4DBB8E8E267E8753}
O58 - SDL:2015/10/30 08:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows®
O58 - SDL:2015/09/16 04:29:46 A . (.BigNox Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\XQHDrv.sys [253384] {5EB707539E398E4A4DBB8E8E267E8753}

---\\ Last modified or created user files (14) - 116s
O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-10c4fd9a.bin [82801]
O61 - LFC: 2016/04/02 20:08:54 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-45b24976.bin [5886]
O61 - LFC: 2016/04/02 20:11:31 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-524e185e.bin [95519]
O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-5e70dfb3.bin [86738]
O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-7ee57f8e.bin [210819]
O61 - LFC: 2016/04/02 20:08:55 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-a3b0af79.bin [19812]
O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-a5b9ed64.bin [72172]
O61 - LFC: 2016/04/02 20:08:55 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-d5f436b8.bin [139015]
O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-dc7ab1ce.bin [36037]
O61 - LFC: 2016/04/02 20:10:11 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\plugin_manager_cache.bin [77846]
O61 - LFC: 2016/04/02 20:08:14 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\svfx_plugin_cache.bin [17806]
O61 - LFC: 2016/04/01 16:50:21 A . (..) -- C:\Users\nabil tebib\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2016/04/01 13:19:55 A . (..) -- C:\Users\nabil tebib\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635951037956542372.bin [54863]
O61 - LFC: 2016/04/02 21:17:12 A . (..) -- C:\Users\nabil tebib\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148]

---\\ File Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Start Menu Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.

---\\ Search Browser Infection (2) - 11s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

---\\ Search Svchost Services (42) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\WINDOWS\System32\gpsvc.dll [1338368] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\WINDOWS\System32\ikeext.dll [957952] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\System32\iphlpsvc.dll [958464] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\WINDOWS\System32\appinfo.dll [94720] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\WINDOWS\System32\eapsvc.dll [112640] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\WINDOWS\system32\schedsvc.dll [997376] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [225280] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [134656] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [372736] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\WINDOWS\System32\wercplsupport.dll [96256] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [186880] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\WINDOWS\system32\wlidsvc.dll [2057216] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\WINDOWS\System32\ncasvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\WINDOWS\System32\NetSetupSvc.dll [204288] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1073152] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [696320] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [507904] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\System32\sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\WINDOWS\System32\ipnathlp.dll [456704] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\system32\wuaueng.dll [2273792] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\WINDOWS\System32\qmgr.dll [1144320] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [608768] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\WINDOWS\System32\bdesvc.dll [360448] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1035776] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [360960] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1139712] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [205824] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [912384] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [948736] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [200192] =>.Microsoft Corporation

---\\ Firewall Active Exception List (2) - 5s
O87 - FAEL: "UDP Query User{BB346590-FD53-4C6C-AE52-6274AADE933A}C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe" [In-None-P17-TRUE] .(.Camshare, Inc. - Camfrog Video Chat.) -- C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe {09626DC47048211BE34315BAF35A16F7}
O87 - FAEL: "TCP Query User{307D6058-77E8-41E0-92A3-0E41F412D9F3}C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe" [In-None-P6-TRUE] .(.Camshare, Inc. - Camfrog Video Chat.) -- C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe {09626DC47048211BE34315BAF35A16F7}

---\\ Additional Scan (O88) (14) - 0s
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EDS Video Downloader_is1 =>PUP.Optional.VideoDownloader
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\EDS Video Downloader_is1 =>PUP.Optional.VideoDownloader
HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\ProgSense =>PUP.Optional.ProgSense
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia
C:\ProgramData\ManyCam =>.Superfluous.VisicomMedia
C:\Users\nabil tebib\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia
C:\Users\nabil tebib\AppData\Roaming\ProgSense =>PUP.Optional.ProgSense
C:\Users\nabil tebib\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\Users\nabil tebib\AppData\Local\ManyCam =>.Superfluous.VisicomMedia
C:\WINDOWS\Prefetch\MANYCAM.EXE-02685C45.pf =>.Superfluous.VisicomMedia

---\\ Summary of the elements found (9) - 0s
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.VisicomManyCam
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BDYahoo
http://www.nicolascoolman.com/forum/post33405.html#p33405 =>.Superfluous.VisicomMedia
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.VideoDownloader
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.GreenTreeApp
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.ProgSense
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports

~ End of the scan, 4802 items in 00h05mn39s (950)(0)

Publicité


Signaler le contenu de ce document

Publicité