cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

äáÇÍÙ åäÇ Çäå áã íÊã ÇáÊÃßíÏ Úáì ÊÍÏíË ÇáÇÕÏÇÑ

~ ZHPDiag v2016.9.7.153 Par Nicolas Coolman (2016/09/07)
~ Démarré par ben chakell (Administrator) (2016/09/07 20:02:57)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version:
~ Mode: Scanner
~ Rapport: C:\Users\ben chakell\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\ben chakell\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601)
..................................................................................
äáÇÌÙ Çäå áã íÞã ÈÊÍÏíË ÇáãÊÕÝÍÇÊ ÇáËáÇË

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v52.0.2743.116
MFIE: Mozilla Firefox 44.0 (x86 en-US)
MSIE: Internet Explorer v9.0.8112.16421
....................................................................................
äáÇÍÙ åäÇ áã íÊã ÇáÚËæÑ Úáì ÇáÓßÑíÈÊ æÇáÈÇÞí ÊãÇã

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK
Windows Activation Technologies : KO
....................................................................................
äáÇÍÙ åäÇ Çäå áÇ íÓÊÚãá ÈÑäÇãÌ ÍãÇíÉ ÇáÇ ÈÑäÇãÌ ÇáãÓÇÚÏ

---\\ Logiciels de protection (1) - 1s
Malwarebytes Anti-Malware version 2.2.1.1043
...................................................................................

ãÑÇÞÈÉ ÇáÈÑÇãÍ

---\\ Surveillance de Logiciels (1) - 1s
Adobe Reader 8.1.0 - Français
.....................................................................................

åäÇ ßá ÔíÆ ÚÇÏí ÈÎÕæÕ ãÓÇÍÉ ÇáÇÞÑÇÕ æÇÓÊåáÇß ÇáÑÇã

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 69 Stepping 1, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4119.92 MB (27% free)
System Restore: Activé (Enable)
System drive C: has 36 GB () free of 99 GB
........................................................................................

ãÚáæãÇÊ ÇÊÕÇá ÇáäÙÇã

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: BENCHAKELL-PC
~ User Name: ben chakell
~ Logged in as Administrator
........................................................................................

ÎÇÕ ÈÍÌã ÇáÇÞÑÇÕ

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 36 GB free of 99 GB (System)
~ Drive D: has 188 GB free of 189 GB
~ Drive E: has 186 GB free of 186 GB
..........................................................................................

åÐÇ ÇáÌÒÁ åäÇ íÏá Úáí ãßæäÇÊ ÇáÍãÇíÉ ÇáÊí ÈÇÇáÌåÇÒ æ ßá ãÇÇãÇãå OK íÚäí Çäå íÔÊÛá ÈÔßá ØÈíÚí ÑÛã Çäå áÇ
Çã ÇáÊí ÇãÇãåÇ ÊÚÏíá Ýåí ÎÇÕíÉ Ýí ÇáæíäÏæÒ áÊÃãíä ÇáÍÓÇÈ æãäÚ ÊÔÛíá ÈÚÖ ÇáÊØÈíÞÇÊ ÇáÇ ÈãæÇÝÞÉ ÇáãÓÊÎÏã

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: Modified
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
..................................................................................................
åäÇ äÌÏ ãÚáæãÇÊ ÊãËá MD5 ÇáÎÇÕÉ
ÈÇáÈÑÇãÌ æ ÇáãáÝÇÊ ÇáÃÓÇÓíÉ Ýí ÇáäÙÇã ãËá Explorer.exe æ Rundll32
æÊßæä ËÇÈÊÉ æ ÅÐÇ ßÇä åäÇß Çí ÊÛííÑ ÝåÐÇ íÏá Úáì Ãä äÙÇã íÚÇäí ãä ãÔßáÉ ãÚíäÉ

---\\ Recherche particulière de fichiers génériques (26) - 1s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - 26/04/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2871808] =>.Microsoft Corporation
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation
[MD5.A1236375B74EA63C75657D564890C436] - 25/04/2011 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1126912] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [0] =>.Microsoft Corporation
[MD5.E3AE23569749DE12D45BA3B489A036AE] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 25/04/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 25/04/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 21/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [0] =>.Microsoft Windows®
[MD5.] - 0 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [0] =>.Microsoft Windows®
[MD5.] - 0 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [0] =>.Microsoft Windows®
......................................................................................................

åäÇ ÇáÌÒÁ ÇáÎÇÕ ÈÇáÎÏãÇÊ ÇáÎÇÕÉ ÈÇáÌåÇÒ æÊæÌÏ ßËíÑ ãä ÇáÇÕÇÈÇÊ
ÇÓÊÚäÊ ÈÇáãæÞÚ http://www.systemlookup.com/ ãäåÇ ãÇ áã íÊã ÇáÊÚÑÝ Úáíå ...
ØÈÚÇ íÌÈ ÇáÇÚÊãÇÏ Úáì ÇáÎÈÑÉ ÝåäÇ ÇáÇãæÑ ÊÕÈÍ ÍÓÇÓÉ
---\\ Liste des services NT non Microsoft et non désactivés (26) - 2s
O23 - Service: AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider - Windows Setup API.) - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider
O23 - Service: AVG Firewall (avgfws) . (.AVG Technologies CZ, s.r.o. - AVG Firewall Service.) - C:\Program Files (x86)\AVG\Av\avgfwsa.exe =>.AVG Technologies CZ, s.r.o.®
O23 - Service: AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o. - AVG Identity Protection Service.) - C:\Program Files (x86)\AVG\Av\avgidsagenta.exe =>.AVG Technologies CZ, s.r.o.®
O23 - Service: AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o. - AVG Service Process.) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.®
O23 - Service: AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) - C:\Program Files (x86)\AVG\Av\avgwdsvca.exe =>.AVG Technologies CZ, s.r.o.®
O23 - Service: Baidu MoboMarket Service (BASSVC) . (.Baidu, Inc. - Baidu MoboMarket Service.) - C:\Program Files (x86)\Baidu Security\MoboMarket\1.2.8.4379\bassvc.exe =>.Baidu Online Network Technology (Beijing)Co., Ltd®
O23 - Service: BSSoEasySvc3 (BSSoEasySvc3) . (.Copyright (C) 2016 - .) - C:\Program Files (x86)\SOEasy.3\SSoEasyySvc3.exe =>.Superfluous.SoEasyHelper
O23 - Service: BSSoEasySvc4 (BSSoEasySvc4) . (.Copyright (C) 2016 - .) - C:\Program Files (x86)\SOEasy.4\SSoEasyySvc4.exe =>.Superfluous.SoEasyHelper
O23 - Service: BSSoEasySvc5 (BSSoEasySvc5) . (.Copyright (C) 2016 - .) - C:\Program Files (x86)\SOEasy.5\SSoEasyySvc5.exe =>.Superfluous.SoEasyHelper
O23 - Service: BSSoEasySvc6 (BSSoEasySvc6) . (.Copyright (C) 2016 - .) - C:\Program Files (x86)\SOEasy.6\SSoEasyySvc6.exe =>.Superfluous.SoEasyHelper
O23 - Service: mlnyLUhZFM (BTJILPIc) . (...) - C:\Program Files (x86)\WebShield\WebShield.exe =>PUP.Optional.WebShield
O23 - Service: CloudPrinter (CloudPrinter) . (...) - C:\ProgramData\CloudPrinter\CloudPrinter.exe =>.Superfluous.Linkury
O23 - Service: DCHP (DCHP) . (...) - C:\ProgramData\DCHP\DCHP.exe =>PUP.Optional.Salus
O23 - Service: Drogoghtsocerse Helper (DrgHelperGrp.exe) . (...) - C:\Program Files (x86)\Lercerentclertsy\DrgHelperGrp.exe {59A2827FE485DDD96ACAAC98C78869D5}
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: MaohaWiFiService (MaohaWifiSvr) . (.???? ???? - ????WiFi????.) - C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe =>.???????????????®
O23 - Service: Baidu PC Faster Service 5.1.0.0 (PCFasterSvc_{PCFaster_5.1.0.0}) . (.Baidu, Inc. - Baidu PC Faster Service.) - C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O23 - Service: RelevantKnowledge (RelevantKnowledge) . (.TMRG, Inc. - Relevant-Knowledge.) - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
O23 - Service: rtop (rtop) . (.Copyright Byte Technologies LLC. - ByteFence Real-time Protection.) - C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe =>.Superfluous.ByteFence
O23 - Service: Trescof (Trescof) . (...) - C:\ProgramData\Trescof\Trescof.exe =>PUP.Optional.Salus
O23 - Service: Extension Cable Track Changes (xyrirege) . (...) - C:\Program Files (x86)\79B99FEE-1473216853-E411-85C7-F0761C78D3C2\knsg5D8E.tmpfs =>PUP.Optional.CrossRider
O23 - Service: Double Spaced Firewall (zigipyro) . (...) - C:\Users\ben chakell\AppData\Local\79B99FEE-1473278109-E411-85C7-F0761C78D3C2\qnsm653A.tmp =>PUP.Optional.CrossRider
O23 - Service: ZSHelper33 (ZSHelper33) . (.Copyright (C) 2016 - .) - D:\Program Files\MS.Default\Helper.3\Helper33.exe
O23 - Service: ZSHelper44 (ZSHelper44) . (.Copyright (C) 2016 - .) - D:\Program Files\MS.Default\Helper.4\Helper44.exe
O23 - Service: ZSHelper55 (ZSHelper55) . (.Copyright (C) 2016 - .) - D:\Program Files\MS.Default\Helper.5\Helper55.exe
O23 - Service: ZSHelper66 (ZSHelper66) . (.Copyright (C) 2016 - .) - D:\Program Files\MS.Default\Helper.6\Helper66.exe

........................................................................

åäÇ äáÇÍÙ ÇáÎÏãÇÊ ÇáÊí ÊÔÊÛá æÇáãÊæÞÝÉ
åäÇß ÎÏãÇÊ ãÔÈæåÉ ãäåÇ (.Baidu, Inc..) + PUP.Optional.Salus

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (34) - 29s

SR - Auto [25/02/2014] [ 319104] AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider.) - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider
SS - Demand [26/08/2016] [ 674552] AvgAMPS (AvgAMPS) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgamps.exe =>.AVG Technologies CZ, s.r.o.®
SS - Auto [26/08/2016] [ 2048920] AVG Firewall (avgfws) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgfwsa.exe =>.AVG Technologies CZ, s.r.o.®
SS - Auto [26/08/2016] [ 5285344] AVGIDSAgent (AVGIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgidsagenta.exe =>.AVG Technologies CZ, s.r.o.®
SR - Auto [18/08/2016] [ 1097488] AVG Service (avgsvc) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe =>.AVG Technologies CZ, s.r.o.®
SR - Auto [26/08/2016] [ 760024] AVG WatchDog (avgwd) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files (x86)\AVG\Av\avgwdsvca.exe =>.AVG Technologies CZ, s.r.o.®
SR - Auto [17/12/2014] [ 208928] Baidu MoboMarket Service (BASSVC) . (.Baidu, Inc..) - C:\Program Files (x86)\Baidu Security\MoboMarket\1.2.8.4379\bassvc.exe =>.Baidu Online Network Technology (Beijing)Co., Ltd®
SR - Auto [07/09/2016] [ 176644] BSSoEasySvc3 (BSSoEasySvc3) . (.Copyright (C) 2016.) - C:\Program Files (x86)\SOEasy.3\SSoEasyySvc3.exe =>.Superfluous.SoEasyHelper
SR - Auto [07/09/2016] [ 176644] BSSoEasySvc4 (BSSoEasySvc4) . (.Copyright (C) 2016.) - C:\Program Files (x86)\SOEasy.4\SSoEasyySvc4.exe =>.Superfluous.SoEasyHelper
SR - Auto [07/09/2016] [ 176644] BSSoEasySvc5 (BSSoEasySvc5) . (.Copyright (C) 2016.) - C:\Program Files (x86)\SOEasy.5\SSoEasyySvc5.exe =>.Superfluous.SoEasyHelper
SR - Auto [07/09/2016] [ 176644] BSSoEasySvc6 (BSSoEasySvc6) . (.Copyright (C) 2016.) - C:\Program Files (x86)\SOEasy.6\SSoEasyySvc6.exe =>.Superfluous.SoEasyHelper
SR - Auto [12/08/2016] [ 360448] mlnyLUhZFM (BTJILPIc) . (...) - C:\Program Files (x86)\WebShield\WebShield.exe =>PUP.Optional.WebShield
SR - Auto [28/03/2016] [ 1176064] CloudPrinter (CloudPrinter) . (...) - C:\ProgramData\CloudPrinter\CloudPrinter.exe =>.Superfluous.Linkury
SS - Demand [09/01/2014] [ 279024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - Software and Firmware Products®
SR - Auto [12/04/2016] [ 400384] DCHP (DCHP) . (...) - C:\ProgramData\DCHP\DCHP.exe =>PUP.Optional.Salus
SS - Auto [07/09/2016] [ 472160] Drogoghtsocerse Helper (DrgHelperGrp.exe) . (...) - C:\Program Files (x86)\Lercerentclertsy\DrgHelperGrp.exe {59A2827FE485DDD96ACAAC98C78869D5}
SS - Auto [05/03/2016] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [05/03/2016] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation®
SR - Auto [18/12/2014] [ 170464] MaohaWiFiService (MaohaWifiSvr) . (.???? ????.) - C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe =>.???????????????®
SS - Demand [07/09/2016] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [07/05/2015] [ 1714448] Baidu PC Faster Service 5.1.0.0 (PCFasterSvc_{PCFaster_5.1.0.0}) . (.Baidu, Inc..) - C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
SR - Auto [17/08/2013] [ 186136] RelevantKnowledge (RelevantKnowledge) . (.TMRG, Inc..) - C:\Program Files (x86)\RelevantKnowledge\rlservice.exe {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
SR - Auto [23/08/2016] [ 254280] rtop (rtop) . (.Copyright Byte Technologies LLC..) - C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe =>.Superfluous.ByteFence
SS - Demand [02/02/2016] [ 31192] (ShareItSvc) . (.SHAREit Technologies Co.Ltd.) - C:\Program Files (x86)\SHAREit\SHAREit\Shareit.Service.exe =>.LENOVO®
SS - Demand [10/03/2016] [ 835152] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [28/03/2016] [ 1176064] Trescof (Trescof) . (...) - C:\ProgramData\Trescof\Trescof.exe =>PUP.Optional.Salus
SR - Auto [07/09/2016] [ 799232] Extension Cable Track Changes (xyrirege) . (...) - C:\Program Files (x86)\79B99FEE-1473216853-E411-85C7-F0761C78D3C2\knsg5D8E.tmpfs =>PUP.Optional.CrossRider
SR - Auto [26/12/2015] [ 158720] Double Spaced Firewall (zigipyro) . (...) - C:\Users\ben chakell\AppData\Local\79B99FEE-1473278109-E411-85C7-F0761C78D3C2\qnsm653A.tmp =>PUP.Optional.CrossRider
SR - Auto [07/09/2016] [ 176644] ZSHelper33 (ZSHelper33) . (.Copyright (C) 2016.) - D:\Program Files\MS.Default\Helper.3\Helper33.exe
SR - Auto [07/09/2016] [ 176644] ZSHelper44 (ZSHelper44) . (.Copyright (C) 2016.) - D:\Program Files\MS.Default\Helper.4\Helper44.exe
SR - Auto [07/09/2016] [ 176644] ZSHelper55 (ZSHelper55) . (.Copyright (C) 2016.) - D:\Program Files\MS.Default\Helper.5\Helper55.exe
SR - Auto [07/09/2016] [ 176644] ZSHelper66 (ZSHelper66) . (.Copyright (C) 2016.) - D:\Program Files\MS.Default\Helper.6\Helper66.exe
................................................................................................................
æåäÇ ÇáÎÏãÇÊ ÇáãÈÑãÌÉ ááÚãá íÏæíÇ ãËá ÇáÊÍÏíËÇÊ Çæ ÇáÝÍÕ
æåäÇ äáÇÍÙ Çä åÐÇ ÇáãÓÊÎÏã íÚÇäí ÇáßËíÑ ãä ãä ÇáÇÕÇÈÇÊ

---\\ Tâches planifiées en automatique (258) - 15s
[MD5.909A77678E447339DB1880CDB1EA2F47] [APT] [Baidu PC Faster Service] (.Baidu, Inc..) -- C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe [1714448] (.Activate.) =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.1E5F6A7543B676324A95E4474762F363] [APT] [Baidu PC Faster Update] (.Baidu, Inc..) -- C:\Program Files (x86)\PC Faster\5.1.0.0\Updater.exe [1359120] (.Activate.) =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.C97739179527669A158C678DA6F2531F] [APT] [ByteFence] (.Byte Technologies LLC.) -- C:\Program Files\ByteFence\ByteFence.exe [1393976] (.Activate.) =>.Superfluous.ByteFence
[MD5.C97739179527669A158C678DA6F2531F] [APT] [ByteFence Scan] (.Byte Technologies LLC.) -- C:\Program Files\ByteFence\ByteFence.exe [1393976] (.Activate.) =>.Superfluous.ByteFence
[MD5.EBEDE718F2AFEA1BBF2243AC701894AD] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6854360] (.Activate.) =>.Piriform Ltd®
[MD5.16C46593345F43D8389AD5A7F12281DD] [APT] [Drogoghtsocerse Helper] (...) -- C:\Program Files (x86)\Lercerentclertsy\DrgHelperKlc.exe [385120] (.Activate.) {59A2827FE485DDD96ACAAC98C78869D5}
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
[MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
[MD5.DEA1AB165C6F0C197CD55B1D1B55D5DB] [APT] [KuaiZip_Update] (.Shanghai Guangle Network Technology Ltd.) -- C:\Program Files\???¹\X86\Update.exe [879552] (.Activate.) =>.Superfluous.Tencent
[MD5.00000000000000000000000000000000] [APT] [psv_AlphaDonplus] (...) -- C:\ProgramData\Trescof\Kan-It.reg & del C:\ProgramData\Trescof\Kan-It.reg & SCHTASKS /Delete /TN psv_AlphaDonplus /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_AlphaWarm] (...) -- C:\ProgramData\Trescof\Freshnimtough.reg & del C:\ProgramData\Trescof\Freshnimtough.reg & SCHTASKS /Delete /TN psv_AlphaWarm /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Anlam] (...) -- C:\ProgramData\Trescof\MatPhase.reg & del C:\ProgramData\Trescof\MatPhase.reg & SCHTASKS /Delete /TN psv_Anlam /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Bioing] (...) -- C:\ProgramData\Trescof\Vilala.reg & del C:\ProgramData\Trescof\Vilala.reg & SCHTASKS /Delete /TN psv_Bioing /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Canex] (...) -- C:\ProgramData\Trescof\Kinsolotip.reg & del C:\ProgramData\Trescof\Kinsolotip.reg & SCHTASKS /Delete /TN psv_Canex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Cantrax] (...) -- C:\ProgramData\Trescof\Zontip.reg & del C:\ProgramData\Trescof\Zontip.reg & SCHTASKS /Delete /TN psv_Cantrax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Condom] (...) -- C:\ProgramData\Trescof\FixCof.reg & del C:\ProgramData\Trescof\FixCof.reg & SCHTASKS /Delete /TN psv_Condom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Conflex] (...) -- C:\ProgramData\Trescof\Tiptam.reg & del C:\ProgramData\Trescof\Tiptam.reg & SCHTASKS /Delete /TN psv_Conflex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Dalt-Is] (...) -- C:\ProgramData\Trescof\QvoFix.reg & del C:\ProgramData\Trescof\QvoFix.reg & SCHTASKS /Delete /TN psv_Dalt-Is /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Damnix] (...) -- C:\ProgramData\Trescof\Treefresh.reg & del C:\ProgramData\Trescof\Treefresh.reg & SCHTASKS /Delete /TN psv_Damnix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_DomStrong] (...) -- C:\ProgramData\Trescof\Unaanlux.reg & del C:\ProgramData\Trescof\Unaanlux.reg & SCHTASKS /Delete /TN psv_DomStrong /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Domtop] (...) -- C:\ProgramData\Trescof\VillaIs.reg & del C:\ProgramData\Trescof\VillaIs.reg & SCHTASKS /Delete /TN psv_Domtop /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Dondox] (...) -- C:\ProgramData\Trescof\SailWarm.reg & del C:\ProgramData\Trescof\SailWarm.reg & SCHTASKS /Delete /TN psv_Dondox /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Dong-Job] (...) -- C:\ProgramData\Trescof\HotDinsing.reg & del C:\ProgramData\Trescof\HotDinsing.reg & SCHTASKS /Delete /TN psv_Dong-Job /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_DonNix] (...) -- C:\ProgramData\Trescof\Xxx--Air.reg & del C:\ProgramData\Trescof\Xxx--Air.reg & SCHTASKS /Delete /TN psv_DonNix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Donstrong] (...) -- C:\ProgramData\Trescof\Inzap.reg & del C:\ProgramData\Trescof\Inzap.reg & SCHTASKS /Delete /TN psv_Donstrong /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Doublecore] (...) -- C:\ProgramData\Trescof\Latjob.reg & del C:\ProgramData\Trescof\Latjob.reg & SCHTASKS /Delete /TN psv_Doublecore /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Duo-Fan] (...) -- C:\ProgramData\Trescof\Trisfan.reg & del C:\ProgramData\Trescof\Trisfan.reg & SCHTASKS /Delete /TN psv_Duo-Fan /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Duolux] (...) -- C:\ProgramData\Trescof\X-Fresh.reg & del C:\ProgramData\Trescof\X-Fresh.reg & SCHTASKS /Delete /TN psv_Duolux /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Fax-Dax] (...) -- C:\ProgramData\Trescof\Labfax.reg & del C:\ProgramData\Trescof\Labfax.reg & SCHTASKS /Delete /TN psv_Fax-Dax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Faxhome] (...) -- C:\ProgramData\Trescof\Viadom.reg & del C:\ProgramData\Trescof\Viadom.reg & SCHTASKS /Delete /TN psv_Faxhome /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Fin-Is] (...) -- C:\ProgramData\Trescof\Lighthome.reg & del C:\ProgramData\Trescof\Lighthome.reg & SCHTASKS /Delete /TN psv_Fin-Is /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Fix-Core] (...) -- C:\ProgramData\Trescof\TrustHotphase.reg & del C:\ProgramData\Trescof\TrustHotphase.reg & SCHTASKS /Delete /TN psv_Fix-Core /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Fix-Find] (...) -- C:\ProgramData\Trescof\TampTax.reg & del C:\ProgramData\Trescof\TampTax.reg & SCHTASKS /Delete /TN psv_Fix-Find /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Fixkix] (...) -- C:\ProgramData\Trescof\Statlab.reg & del C:\ProgramData\Trescof\Statlab.reg & SCHTASKS /Delete /TN psv_Fixkix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Freetouch] (...) -- C:\ProgramData\Trescof\Lam-Home.reg & del C:\ProgramData\Trescof\Lam-Home.reg & SCHTASKS /Delete /TN psv_Freetouch /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Freshbam] (...) -- C:\ProgramData\Trescof\RoundLattip.reg & del C:\ProgramData\Trescof\RoundLattip.reg & SCHTASKS /Delete /TN psv_Freshbam /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Freshing] (...) -- C:\ProgramData\Trescof\Kintax.reg & del C:\ProgramData\Trescof\Kintax.reg & SCHTASKS /Delete /TN psv_Freshing /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Funfind] (...) -- C:\ProgramData\Trescof\Indigonix.reg & del C:\ProgramData\Trescof\Indigonix.reg & SCHTASKS /Delete /TN psv_Funfind /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Geo-Kix] (...) -- C:\ProgramData\Trescof\GoodFax.reg & del C:\ProgramData\Trescof\GoodFax.reg & SCHTASKS /Delete /TN psv_Geo-Kix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Geonamdom] (...) -- C:\ProgramData\Trescof\Subphase.reg & del C:\ProgramData\Trescof\Subphase.reg & SCHTASKS /Delete /TN psv_Geonamdom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Good-Light] (...) -- C:\ProgramData\Trescof\Dingtam.reg & del C:\ProgramData\Trescof\Dingtam.reg & SCHTASKS /Delete /TN psv_Good-Light /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Greendex] (...) -- C:\ProgramData\Trescof\Stannix.reg & del C:\ProgramData\Trescof\Stannix.reg & SCHTASKS /Delete /TN psv_Greendex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Hatron] (...) -- C:\ProgramData\Trescof\Runlab.reg & del C:\ProgramData\Trescof\Runlab.reg & SCHTASKS /Delete /TN psv_Hatron /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Hold-Dax] (...) -- C:\ProgramData\Trescof\MedGotip.reg & del C:\ProgramData\Trescof\MedGotip.reg & SCHTASKS /Delete /TN psv_Hold-Dax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Holdtone] (...) -- C:\ProgramData\Trescof\Warmtop.reg & del C:\ProgramData\Trescof\Warmtop.reg & SCHTASKS /Delete /TN psv_Holdtone /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Hotdax] (...) -- C:\ProgramData\Trescof\Plusdax.reg & del C:\ProgramData\Trescof\Plusdax.reg & SCHTASKS /Delete /TN psv_Hotdax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Hotdom] (...) -- C:\ProgramData\Trescof\Tamfix.reg & del C:\ProgramData\Trescof\Tamfix.reg & SCHTASKS /Delete /TN psv_Hotdom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Icetone] (...) -- C:\ProgramData\Trescof\Superhome.reg & del C:\ProgramData\Trescof\Superhome.reg & SCHTASKS /Delete /TN psv_Icetone /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Icetrax] (...) -- C:\ProgramData\Trescof\Lamtouch.reg & del C:\ProgramData\Trescof\Lamtouch.reg & SCHTASKS /Delete /TN psv_Icetrax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Inis] (...) -- C:\ProgramData\Trescof\U-rantone.reg & del C:\ProgramData\Trescof\U-rantone.reg & SCHTASKS /Delete /TN psv_Inis /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_ItDom] (...) -- C:\ProgramData\Trescof\Lammatron.reg & del C:\ProgramData\Trescof\Lammatron.reg & SCHTASKS /Delete /TN psv_ItDom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Itkix] (...) -- C:\ProgramData\Trescof\Supereco.reg & del C:\ProgramData\Trescof\Supereco.reg & SCHTASKS /Delete /TN psv_Itkix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Jayflex] (...) -- C:\ProgramData\Trescof\Redfind.reg & del C:\ProgramData\Trescof\Redfind.reg & SCHTASKS /Delete /TN psv_Jayflex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Jobdox] (...) -- C:\ProgramData\Trescof\Trans-Fax.reg & del C:\ProgramData\Trescof\Trans-Fax.reg & SCHTASKS /Delete /TN psv_Jobdox /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Jobtax] (...) -- C:\ProgramData\Trescof\Zoodonla.reg & del C:\ProgramData\Trescof\Zoodonla.reg & SCHTASKS /Delete /TN psv_Jobtax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Joyex] (...) -- C:\ProgramData\Trescof\Trustfind.reg & del C:\ProgramData\Trescof\Trustfind.reg & SCHTASKS /Delete /TN psv_Joyex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Kancom] (...) -- C:\ProgramData\Trescof\Warmfax.reg & del C:\ProgramData\Trescof\Warmfax.reg & SCHTASKS /Delete /TN psv_Kancom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Kandex] (...) -- C:\ProgramData\Trescof\K-Tanit.reg & del C:\ProgramData\Trescof\K-Tanit.reg & SCHTASKS /Delete /TN psv_Kandex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_KinIt] (...) -- C:\ProgramData\Trescof\ConZap.reg & del C:\ProgramData\Trescof\ConZap.reg & SCHTASKS /Delete /TN psv_KinIt /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_KonkDox] (...) -- C:\ProgramData\Trescof\Overit.reg & del C:\ProgramData\Trescof\Overit.reg & SCHTASKS /Delete /TN psv_KonkDox /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Laeco] (...) -- C:\ProgramData\Trescof\LatRundom.reg & del C:\ProgramData\Trescof\LatRundom.reg & SCHTASKS /Delete /TN psv_Laeco /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Lam-Dox] (...) -- C:\ProgramData\Trescof\Plushome.reg & del C:\ProgramData\Trescof\Plushome.reg & SCHTASKS /Delete /TN psv_Lam-Dox /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_LaString] (...) -- C:\ProgramData\Trescof\Duosanis.reg & del C:\ProgramData\Trescof\Duosanis.reg & SCHTASKS /Delete /TN psv_LaString /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Lattip] (...) -- C:\ProgramData\Trescof\Templax.reg & del C:\ProgramData\Trescof\Templax.reg & SCHTASKS /Delete /TN psv_Lattip /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Lightex] (...) -- C:\ProgramData\Trescof\Newin.reg & del C:\ProgramData\Trescof\Newin.reg & SCHTASKS /Delete /TN psv_Lightex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Lotfresh] (...) -- C:\ProgramData\Trescof\Can-Dom.reg & del C:\ProgramData\Trescof\Can-Dom.reg & SCHTASKS /Delete /TN psv_Lotfresh /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Medcom] (...) -- C:\ProgramData\Trescof\Tanflex.reg & del C:\ProgramData\Trescof\Tanflex.reg & SCHTASKS /Delete /TN psv_Medcom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Move-Core] (...) -- C:\ProgramData\Trescof\Double-Plus.reg & del C:\ProgramData\Trescof\Double-Plus.reg & SCHTASKS /Delete /TN psv_Move-Core /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_MoveTozap] (...) -- C:\ProgramData\Trescof\Danlight.reg & del C:\ProgramData\Trescof\Danlight.reg & SCHTASKS /Delete /TN psv_MoveTozap /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Namcom] (...) -- C:\ProgramData\Trescof\Hatwarm.reg & del C:\ProgramData\Trescof\Hatwarm.reg & SCHTASKS /Delete /TN psv_Namcom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_NewZoofix] (...) -- C:\ProgramData\Trescof\Tempair.reg & del C:\ProgramData\Trescof\Tempair.reg & SCHTASKS /Delete /TN psv_NewZoofix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Ontofind] (...) -- C:\ProgramData\Trescof\IndigoIn.reg & del C:\ProgramData\Trescof\IndigoIn.reg & SCHTASKS /Delete /TN psv_Ontofind /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_OpeTinfax] (...) -- C:\ProgramData\Trescof\Spanplus.reg & del C:\ProgramData\Trescof\Spanplus.reg & SCHTASKS /Delete /TN psv_OpeTinfax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Pluskeykix] (...) -- C:\ProgramData\Trescof\Haydox.reg & del C:\ProgramData\Trescof\Haydox.reg & SCHTASKS /Delete /TN psv_Pluskeykix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Quoity] (...) -- C:\ProgramData\Trescof\Volthome.reg & del C:\ProgramData\Trescof\Volthome.reg & SCHTASKS /Delete /TN psv_Quoity /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Quotam] (...) -- C:\ProgramData\Trescof\Spantough.reg & del C:\ProgramData\Trescof\Spantough.reg & SCHTASKS /Delete /TN psv_Quotam /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Quote-Dex] (...) -- C:\ProgramData\Trescof\Inlux.reg & del C:\ProgramData\Trescof\Inlux.reg & SCHTASKS /Delete /TN psv_Quote-Dex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Quotefax] (...) -- C:\ProgramData\Trescof\Subzap.reg & del C:\ProgramData\Trescof\Subzap.reg & SCHTASKS /Delete /TN psv_Quotefax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Rankhome] (...) -- C:\ProgramData\Trescof\Y--Home.reg & del C:\ProgramData\Trescof\Y--Home.reg & SCHTASKS /Delete /TN psv_Rankhome /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Rantop] (...) -- C:\ProgramData\Trescof\Hoteco.reg & del C:\ProgramData\Trescof\Hoteco.reg & SCHTASKS /Delete /TN psv_Rantop /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Redax] (...) -- C:\ProgramData\Trescof\Zonjaylab.reg & del C:\ProgramData\Trescof\Zonjaylab.reg & SCHTASKS /Delete /TN psv_Redax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_RedNix] (...) -- C:\ProgramData\Trescof\Pluskix.reg & del C:\ProgramData\Trescof\Pluskix.reg & SCHTASKS /Delete /TN psv_RedNix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Refind] (...) -- C:\ProgramData\Trescof\Overlab.reg & del C:\ProgramData\Trescof\Overlab.reg & SCHTASKS /Delete /TN psv_Refind /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Ronlight] (...) -- C:\ProgramData\Trescof\Kinhold.reg & del C:\ProgramData\Trescof\Kinhold.reg & SCHTASKS /Delete /TN psv_Ronlight /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Ronphase] (...) -- C:\ProgramData\Trescof\Zonstathold.reg & del C:\ProgramData\Trescof\Zonstathold.reg & SCHTASKS /Delete /TN psv_Ronphase /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Runtech] (...) -- C:\ProgramData\Trescof\Ton-Soft.reg & del C:\ProgramData\Trescof\Ton-Soft.reg & SCHTASKS /Delete /TN psv_Runtech /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Saltfix] (...) -- C:\ProgramData\Trescof\TechSing.reg & del C:\ProgramData\Trescof\TechSing.reg & SCHTASKS /Delete /TN psv_Saltfix /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Sanlight] (...) -- C:\ProgramData\Trescof\Laity.reg & del C:\ProgramData\Trescof\Laity.reg & SCHTASKS /Delete /TN psv_Sanlight /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Sanron] (...) -- C:\ProgramData\Trescof\Lamlight.reg & del C:\ProgramData\Trescof\Lamlight.reg & SCHTASKS /Delete /TN psv_Sanron /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_SanTough] (...) -- C:\ProgramData\Trescof\Hatdex.reg & del C:\ProgramData\Trescof\Hatdex.reg & SCHTASKS /Delete /TN psv_SanTough /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Singledex] (...) -- C:\ProgramData\Trescof\Kondex.reg & del C:\ProgramData\Trescof\Kondex.reg & SCHTASKS /Delete /TN psv_Singledex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Soft-Tip] (...) -- C:\ProgramData\Trescof\NimLam.reg & del C:\ProgramData\Trescof\NimLam.reg & SCHTASKS /Delete /TN psv_Soft-Tip /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Solocore] (...) -- C:\ProgramData\Trescof\Zonefix.reg & del C:\ProgramData\Trescof\Zonefix.reg & SCHTASKS /Delete /TN psv_Solocore /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Sonfresh] (...) -- C:\ProgramData\Trescof\Home-Dom.reg & del C:\ProgramData\Trescof\Home-Dom.reg & SCHTASKS /Delete /TN psv_Sonfresh /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Strongfresh] (...) -- C:\ProgramData\Trescof\Haytex.reg & del C:\ProgramData\Trescof\Haytex.reg & SCHTASKS /Delete /TN psv_Strongfresh /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Subjob] (...) -- C:\ProgramData\Trescof\Flex-Tom.reg & del C:\ProgramData\Trescof\Flex-Tom.reg & SCHTASKS /Delete /TN psv_Subjob /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Sumlab] (...) -- C:\ProgramData\Trescof\U-eco.reg & del C:\ProgramData\Trescof\U-eco.reg & SCHTASKS /Delete /TN psv_Sumlab /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_SumSolojob] (...) -- C:\ProgramData\Trescof\Danfresh.reg & del C:\ProgramData\Trescof\Danfresh.reg & SCHTASKS /Delete /TN psv_SumSolojob /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Sumstatflex] (...) -- C:\ProgramData\Trescof\Hatjob.reg & del C:\ProgramData\Trescof\Hatjob.reg & SCHTASKS /Delete /TN psv_Sumstatflex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Superair] (...) -- C:\ProgramData\Trescof\Tamp-Tam.reg & del C:\ProgramData\Trescof\Tamp-Tam.reg & SCHTASKS /Delete /TN psv_Superair /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Superfan] (...) -- C:\ProgramData\Trescof\Reeco.reg & del C:\ProgramData\Trescof\Reeco.reg & SCHTASKS /Delete /TN psv_Superfan /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_SuperRunhome] (...) -- C:\ProgramData\Trescof\Y-zap.reg & del C:\ProgramData\Trescof\Y-zap.reg & SCHTASKS /Delete /TN psv_SuperRunhome /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Tampdamtone] (...) -- C:\ProgramData\Trescof\KayDax.reg & del C:\ProgramData\Trescof\KayDax.reg & SCHTASKS /Delete /TN psv_Tampdamtone /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_TampHome] (...) -- C:\ProgramData\Trescof\GeoNix.reg & del C:\ProgramData\Trescof\GeoNix.reg & SCHTASKS /Delete /TN psv_TampHome /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Temp-Find] (...) -- C:\ProgramData\Trescof\Ran-Eco.reg & del C:\ProgramData\Trescof\Ran-Eco.reg & SCHTASKS /Delete /TN psv_Temp-Find /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Tontone] (...) -- C:\ProgramData\Trescof\Fixcom.reg & del C:\ProgramData\Trescof\Fixcom.reg & SCHTASKS /Delete /TN psv_Tontone /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Touchdox] (...) -- C:\ProgramData\Trescof\Sundonlam.reg & del C:\ProgramData\Trescof\Sundonlam.reg & SCHTASKS /Delete /TN psv_Touchdox /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Transfax] (...) -- C:\ProgramData\Trescof\Tempex.reg & del C:\ProgramData\Trescof\Tempex.reg & SCHTASKS /Delete /TN psv_Transfax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Treedom] (...) -- C:\ProgramData\Trescof\Konphase.reg & del C:\ProgramData\Trescof\Konphase.reg & SCHTASKS /Delete /TN psv_Treedom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Treelab] (...) -- C:\ProgramData\Trescof\Quotebam.reg & del C:\ProgramData\Trescof\Quotebam.reg & SCHTASKS /Delete /TN psv_Treelab /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Trisair] (...) -- C:\ProgramData\Trescof\Techstock.reg & del C:\ProgramData\Trescof\Techstock.reg & SCHTASKS /Delete /TN psv_Trisair /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Trisfresh] (...) -- C:\ProgramData\Trescof\Triojob.reg & del C:\ProgramData\Trescof\Triojob.reg & SCHTASKS /Delete /TN psv_Trisfresh /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_UniTraxtip] (...) -- C:\ProgramData\Trescof\SonLa.reg & del C:\ProgramData\Trescof\SonLa.reg & SCHTASKS /Delete /TN psv_UniTraxtip /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Vivatrax] (...) -- C:\ProgramData\Trescof\Donstock.reg & del C:\ProgramData\Trescof\Donstock.reg & SCHTASKS /Delete /TN psv_Vivatrax /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Voyacom] (...) -- C:\ProgramData\Trescof\Hometex.reg & del C:\ProgramData\Trescof\Hometex.reg & SCHTASKS /Delete /TN psv_Voyacom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_X-Cof] (...) -- C:\ProgramData\Trescof\Trustfind.reg & del C:\ProgramData\Trescof\Trustfind.reg & SCHTASKS /Delete /TN psv_X-Cof /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Yearcom] (...) -- C:\ProgramData\Trescof\Hotstrong.reg & del C:\ProgramData\Trescof\Hotstrong.reg & SCHTASKS /Delete /TN psv_Yearcom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Zaamfind] (...) -- C:\ProgramData\Trescof\Fixtip.reg & del C:\ProgramData\Trescof\Fixtip.reg & SCHTASKS /Delete /TN psv_Zaamfind /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Zimtip] (...) -- C:\ProgramData\Trescof\Softdom.reg & del C:\ProgramData\Trescof\Softdom.reg & SCHTASKS /Delete /TN psv_Zimtip /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_ZoneTough] (...) -- C:\ProgramData\Trescof\Runstring.reg & del C:\ProgramData\Trescof\Runstring.reg & SCHTASKS /Delete /TN psv_ZoneTough /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Zoomcom] (...) -- C:\ProgramData\Trescof\Trusting.reg & del C:\ProgramData\Trescof\Trusting.reg & SCHTASKS /Delete /TN psv_Zoomcom /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_Zootam] (...) -- C:\ProgramData\Trescof\K-dox.reg & del C:\ProgramData\Trescof\K-dox.reg & SCHTASKS /Delete /TN psv_Zootam /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_ZumAir] (...) -- C:\ProgramData\Trescof\KayLex.reg & del C:\ProgramData\Trescof\KayLex.reg & SCHTASKS /Delete /TN psv_ZumAir /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.00000000000000000000000000000000] [APT] [psv_ZumTex] (...) -- C:\ProgramData\Trescof\Icestock.reg & del C:\ProgramData\Trescof\Icestock.reg & SCHTASKS /Delete /TN psv_ZumTex /F (.not file.) [0] (.Activate.) =>PUP.Optional.Salus
[MD5.2F21F99FB50F779ABC4C4F9FDCF9D2EE] [APT] [WinUtilities_History_Cleaner_D81CDF27E9284403] (.YL Software.) -- C:\Program Files (x86)\WinUtilities\ToolHistoryCleaner.exe [391936] (.Activate.) =>.SuiNing Yilong Software Store®
[MD5.00000000000000000000000000000000] [APT] [{2A387A78-EEB3-4A29-8C14-B22313FA8E6D}] (...) -- C:\Users\ben chakell\Downloads\Star_Racing.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{C183B657-302B-4DE3-86B3-0B7C38599E72}] (...) -- C:\Users\ben chakell\Downloads\lf2_v19c_Setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{F5093F6F-F5DB-4B65-B425-0D53C5CE23B8}] (...) -- C:\Users\ben chakell\Downloads\citymotoracer_setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [Games] (...) -- Gestionnaire COM (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [] (...) -- Gestionnaire COM (.not file.) [0] (..) =>.Superfluous.Empty
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc®
O39 - APT: WinUtilities_History_Cleaner_D81CDF27E9284403 - (.YL Software.) -- C:\Windows\Tasks\WinUtilities_History_Cleaner_D81CDF27E9284403.job [494] =>.SuiNing Yilong Software Store®
O39 - APT: Baidu PC Faster Service - (.Baidu, Inc..) -- C:\Windows\System32\Tasks\Baidu PC Faster Service [3670] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O39 - APT: Baidu PC Faster Update - (.Baidu, Inc..) -- C:\Windows\System32\Tasks\Baidu PC Faster Update [3722] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O39 - APT: ByteFence - (.Byte Technologies LLC.) -- C:\Windows\System32\Tasks\ByteFence [3416] =>.Superfluous.ByteFence
O39 - APT: ByteFence Scan - (.Byte Technologies LLC.) -- C:\Windows\System32\Tasks\ByteFence Scan [3498] =>.Superfluous.ByteFence
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2812] =>.Piriform Ltd®
O39 - APT: Drogoghtsocerse Helper - (...) -- C:\Windows\System32\Tasks\Drogoghtsocerse Helper [9006] {59A2827FE485DDD96ACAAC98C78869D5}
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc®
O39 - APT: KuaiZip_Update - (.Shanghai Guangle Network Technology Ltd.) -- C:\Windows\System32\Tasks\KuaiZip_Update [3396] =>.Superfluous.Tencent
O39 - APT: psv_AlphaDonplus - (...) -- C:\Windows\System32\Tasks\psv_AlphaDonplus [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_AlphaWarm - (...) -- C:\Windows\System32\Tasks\psv_AlphaWarm [3292] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Anlam - (...) -- C:\Windows\System32\Tasks\psv_Anlam [3264] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Bioing - (...) -- C:\Windows\System32\Tasks\psv_Bioing [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Canex - (...) -- C:\Windows\System32\Tasks\psv_Canex [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Cantrax - (...) -- C:\Windows\System32\Tasks\psv_Cantrax [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Condom - (...) -- C:\Windows\System32\Tasks\psv_Condom [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Conflex - (...) -- C:\Windows\System32\Tasks\psv_Conflex [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Dalt-Is - (...) -- C:\Windows\System32\Tasks\psv_Dalt-Is [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Damnix - (...) -- C:\Windows\System32\Tasks\psv_Damnix [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_DomStrong - (...) -- C:\Windows\System32\Tasks\psv_DomStrong [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Domtop - (...) -- C:\Windows\System32\Tasks\psv_Domtop [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Dondox - (...) -- C:\Windows\System32\Tasks\psv_Dondox [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Dong-Job - (...) -- C:\Windows\System32\Tasks\psv_Dong-Job [3278] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_DonNix - (...) -- C:\Windows\System32\Tasks\psv_DonNix [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Donstrong - (...) -- C:\Windows\System32\Tasks\psv_Donstrong [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Doublecore - (...) -- C:\Windows\System32\Tasks\psv_Doublecore [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Duo-Fan - (...) -- C:\Windows\System32\Tasks\psv_Duo-Fan [3264] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Duolux - (...) -- C:\Windows\System32\Tasks\psv_Duolux [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Fax-Dax - (...) -- C:\Windows\System32\Tasks\psv_Fax-Dax [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Faxhome - (...) -- C:\Windows\System32\Tasks\psv_Faxhome [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Fin-Is - (...) -- C:\Windows\System32\Tasks\psv_Fin-Is [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Fix-Core - (...) -- C:\Windows\System32\Tasks\psv_Fix-Core [3290] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Fix-Find - (...) -- C:\Windows\System32\Tasks\psv_Fix-Find [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Fixkix - (...) -- C:\Windows\System32\Tasks\psv_Fixkix [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Freetouch - (...) -- C:\Windows\System32\Tasks\psv_Freetouch [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Freshbam - (...) -- C:\Windows\System32\Tasks\psv_Freshbam [3282] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Freshing - (...) -- C:\Windows\System32\Tasks\psv_Freshing [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Funfind - (...) -- C:\Windows\System32\Tasks\psv_Funfind [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Geo-Kix - (...) -- C:\Windows\System32\Tasks\psv_Geo-Kix [3264] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Geonamdom - (...) -- C:\Windows\System32\Tasks\psv_Geonamdom [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Good-Light - (...) -- C:\Windows\System32\Tasks\psv_Good-Light [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Greendex - (...) -- C:\Windows\System32\Tasks\psv_Greendex [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Hatron - (...) -- C:\Windows\System32\Tasks\psv_Hatron [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Hold-Dax - (...) -- C:\Windows\System32\Tasks\psv_Hold-Dax [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Holdtone - (...) -- C:\Windows\System32\Tasks\psv_Holdtone [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Hotdax - (...) -- C:\Windows\System32\Tasks\psv_Hotdax [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Hotdom - (...) -- C:\Windows\System32\Tasks\psv_Hotdom [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Icetone - (...) -- C:\Windows\System32\Tasks\psv_Icetone [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Icetrax - (...) -- C:\Windows\System32\Tasks\psv_Icetrax [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Inis - (...) -- C:\Windows\System32\Tasks\psv_Inis [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_ItDom - (...) -- C:\Windows\System32\Tasks\psv_ItDom [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Itkix - (...) -- C:\Windows\System32\Tasks\psv_Itkix [3264] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Jayflex - (...) -- C:\Windows\System32\Tasks\psv_Jayflex [3264] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Jobdox - (...) -- C:\Windows\System32\Tasks\psv_Jobdox [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Jobtax - (...) -- C:\Windows\System32\Tasks\psv_Jobtax [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Joyex - (...) -- C:\Windows\System32\Tasks\psv_Joyex [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Kancom - (...) -- C:\Windows\System32\Tasks\psv_Kancom [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Kandex - (...) -- C:\Windows\System32\Tasks\psv_Kandex [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_KinIt - (...) -- C:\Windows\System32\Tasks\psv_KinIt [3256] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_KonkDox - (...) -- C:\Windows\System32\Tasks\psv_KonkDox [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Laeco - (...) -- C:\Windows\System32\Tasks\psv_Laeco [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Lam-Dox - (...) -- C:\Windows\System32\Tasks\psv_Lam-Dox [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_LaString - (...) -- C:\Windows\System32\Tasks\psv_LaString [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Lattip - (...) -- C:\Windows\System32\Tasks\psv_Lattip [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Lightex - (...) -- C:\Windows\System32\Tasks\psv_Lightex [3256] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Lotfresh - (...) -- C:\Windows\System32\Tasks\psv_Lotfresh [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Medcom - (...) -- C:\Windows\System32\Tasks\psv_Medcom [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Move-Core - (...) -- C:\Windows\System32\Tasks\psv_Move-Core [3284] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_MoveTozap - (...) -- C:\Windows\System32\Tasks\psv_MoveTozap [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Namcom - (...) -- C:\Windows\System32\Tasks\psv_Namcom [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_NewZoofix - (...) -- C:\Windows\System32\Tasks\psv_NewZoofix [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Ontofind - (...) -- C:\Windows\System32\Tasks\psv_Ontofind [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_OpeTinfax - (...) -- C:\Windows\System32\Tasks\psv_OpeTinfax [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Pluskeykix - (...) -- C:\Windows\System32\Tasks\psv_Pluskeykix [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Quoity - (...) -- C:\Windows\System32\Tasks\psv_Quoity [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Quotam - (...) -- C:\Windows\System32\Tasks\psv_Quotam [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Quote-Dex - (...) -- C:\Windows\System32\Tasks\psv_Quote-Dex [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Quotefax - (...) -- C:\Windows\System32\Tasks\psv_Quotefax [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Rankhome - (...) -- C:\Windows\System32\Tasks\psv_Rankhome [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Rantop - (...) -- C:\Windows\System32\Tasks\psv_Rantop [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Redax - (...) -- C:\Windows\System32\Tasks\psv_Redax [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_RedNix - (...) -- C:\Windows\System32\Tasks\psv_RedNix [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Refind - (...) -- C:\Windows\System32\Tasks\psv_Refind [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Ronlight - (...) -- C:\Windows\System32\Tasks\psv_Ronlight [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Ronphase - (...) -- C:\Windows\System32\Tasks\psv_Ronphase [3282] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Runtech - (...) -- C:\Windows\System32\Tasks\psv_Runtech [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Saltfix - (...) -- C:\Windows\System32\Tasks\psv_Saltfix [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Sanlight - (...) -- C:\Windows\System32\Tasks\psv_Sanlight [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Sanron - (...) -- C:\Windows\System32\Tasks\psv_Sanron [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_SanTough - (...) -- C:\Windows\System32\Tasks\psv_SanTough [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Singledex - (...) -- C:\Windows\System32\Tasks\psv_Singledex [3264] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Soft-Tip - (...) -- C:\Windows\System32\Tasks\psv_Soft-Tip [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Solocore - (...) -- C:\Windows\System32\Tasks\psv_Solocore [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Sonfresh - (...) -- C:\Windows\System32\Tasks\psv_Sonfresh [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Strongfresh - (...) -- C:\Windows\System32\Tasks\psv_Strongfresh [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Subjob - (...) -- C:\Windows\System32\Tasks\psv_Subjob [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Sumlab - (...) -- C:\Windows\System32\Tasks\psv_Sumlab [3254] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_SumSolojob - (...) -- C:\Windows\System32\Tasks\psv_SumSolojob [3274] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Sumstatflex - (...) -- C:\Windows\System32\Tasks\psv_Sumstatflex [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Superair - (...) -- C:\Windows\System32\Tasks\psv_Superair [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Superfan - (...) -- C:\Windows\System32\Tasks\psv_Superfan [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_SuperRunhome - (...) -- C:\Windows\System32\Tasks\psv_SuperRunhome [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Tampdamtone - (...) -- C:\Windows\System32\Tasks\psv_Tampdamtone [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_TampHome - (...) -- C:\Windows\System32\Tasks\psv_TampHome [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Temp-Find - (...) -- C:\Windows\System32\Tasks\psv_Temp-Find [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Tontone - (...) -- C:\Windows\System32\Tasks\psv_Tontone [3260] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Touchdox - (...) -- C:\Windows\System32\Tasks\psv_Touchdox [3274] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Transfax - (...) -- C:\Windows\System32\Tasks\psv_Transfax [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Treedom - (...) -- C:\Windows\System32\Tasks\psv_Treedom [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Treelab - (...) -- C:\Windows\System32\Tasks\psv_Treelab [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Trisair - (...) -- C:\Windows\System32\Tasks\psv_Trisair [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Trisfresh - (...) -- C:\Windows\System32\Tasks\psv_Trisfresh [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_UniTraxtip - (...) -- C:\Windows\System32\Tasks\psv_UniTraxtip [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Vivatrax - (...) -- C:\Windows\System32\Tasks\psv_Vivatrax [3270] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Voyacom - (...) -- C:\Windows\System32\Tasks\psv_Voyacom [3264] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_X-Cof - (...) -- C:\Windows\System32\Tasks\psv_X-Cof [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Yearcom - (...) -- C:\Windows\System32\Tasks\psv_Yearcom [3272] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Zaamfind - (...) -- C:\Windows\System32\Tasks\psv_Zaamfind [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Zimtip - (...) -- C:\Windows\System32\Tasks\psv_Zimtip [3262] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_ZoneTough - (...) -- C:\Windows\System32\Tasks\psv_ZoneTough [3276] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Zoomcom - (...) -- C:\Windows\System32\Tasks\psv_Zoomcom [3268] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_Zootam - (...) -- C:\Windows\System32\Tasks\psv_Zootam [3254] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_ZumAir - (...) -- C:\Windows\System32\Tasks\psv_ZumAir [3258] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: psv_ZumTex - (...) -- C:\Windows\System32\Tasks\psv_ZumTex [3266] (.Orphan.) =>PUP.Optional.Salus
O39 - APT: WinUtilities_History_Cleaner_D81CDF27E9284403 - (.YL Software.) -- C:\Windows\System32\Tasks\WinUtilities_History_Cleaner_D81CDF27E9284403 [3376] =>.SuiNing Yilong Software Store®
................................................................................................................
æåÐÇ ÇáÌÒÁ ÇáÎÇÕ ÈÇáÈÑæÓíÓ æåæ íæÖÍ ÇáÚãáíÇÊ ÇáÌÇÑíÉ Ýí ÇáÍÇÓæÈ

æãÇ ßÐáß äáÇÍÙ Çäå åäÇß ÚãáíÇÊ ßËíÑÉ ãÔÈæåÉ ÝíÏ ÇáÊäÝíÐ

---\\ Processus lancés (61) - 13s
[MD5.909A77678E447339DB1880CDB1EA2F47] - (.Baidu, Inc. - Baidu PC Faster Service.) -- C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe [1714448] [PID.336] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.BBF78A7D6F9BFF37927303ED2539FAB7] - (.Windows (R) Win 7 DDK provider - Windows Setup API.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104] [PID.1784] =>.Windows (R) Win 7 DDK provider
[MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\ContentPush\app\bin\nw.exe [46344704] [PID.2012]
[MD5.8CD64A981787F589D867B275CCAA9E2E] - (.AVG Technologies CZ, s.r.o. - AVG Service Process.) -- C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1097488] [PID.2036] =>.AVG Technologies CZ, s.r.o.®
[MD5.49B7481C3D50FAABAF07F775E077FD8B] - (.Qualcomm®Atheros® - Extension Core.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784] [PID.1764] =>.Qualcomm®Atheros®
[MD5.00000000000000000000000000000000] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [0] [PID.1824] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [0] [PID.2052] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [0] [PID.2096] =>.Intel Corporation
[MD5.ED7334150A8DBC73A57FCF7084F6B9BA] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [53271680] [PID.2164] =>.Skype Software Sarl®
[MD5.342AF339936BAF334D259C1AB8812071] - (...) -- C:\Program Files (x86)\Crytek\GFACE Launcher\live\gflauncher.exe [46350968] [PID.2240] =>.Crytek GmbH®
[MD5.7702959B378203E98ED340FD83CA160B] - (.Viber Media S.? r.l. - Viber.) -- C:\Users\ben chakell\AppData\Local\Viber\Viber.exe [71876176] [PID.2348] =>.Viber Media S.à r.l.®
[MD5.F2AD1B265908797F8A5E21E0312F2F25] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\ben chakell\AppData\Local\Akamai\netsession_win.exe [4691384] [PID.2436] =>.Superfluous.AkamaiHD
[MD5.D06ED6BF86CD5A0E930FD71760FB6CE4] - (.AVG Technologies CZ, s.r.o. - AVG Watchdog Service.) -- C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [760024] [PID.2444] =>.AVG Technologies CZ, s.r.o.®
[MD5.A825448472028D772AF86A7DAD699DC6] - (.Copyright (C) 2016 - .) -- C:\Program Files (x86)\SOEasy.3\SSoEasyySvc3.exe [176644] [PID.2524] =>.Superfluous.SoEasyHelper
[MD5.2D28D370D4CD1234AA8A8AA592336FAF] - (.Copyright (C) 2016 - .) -- C:\Program Files (x86)\SOEasy.4\SSoEasyySvc4.exe [176644] [PID.2640] =>.Superfluous.SoEasyHelper
[MD5.107B8F73193B01EAC1988322EE57D77D] - (.Copyright (C) 2016 - .) -- C:\Program Files (x86)\SOEasy.5\SSoEasyySvc5.exe [176644] [PID.2668] =>.Superfluous.SoEasyHelper
[MD5.A6BB6667A2D1F5065235E24E3BE77ED8] - (.Copyright (C) 2015 - .) -- C:\Users\ben chakell\AppData\Local\Temp\msiql.exe [1882624] [PID.2676]
[MD5.843DEC5B8117F8384FFEB8F576D1C82A] - (.Copyright (C) 2016 - .) -- C:\Program Files (x86)\SOEasy.6\SSoEasyySvc6.exe [176644] [PID.2784] =>.Superfluous.SoEasyHelper
[MD5.C9CD5863916D6211A608302625E5A318] - (...) -- C:\Program Files (x86)\WebShield\WebShield.exe [360448] [PID.2828] =>PUP.Optional.WebShield
[MD5.854AE1687E2DD764023B5153AADC9529] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [293872] [PID.2952] =>.Intel Corporation - Software and Firmware Products®
[MD5.40F8A5684A385602AB3056998FCD10EA] - (...) -- C:\ProgramData\CloudPrinter\CloudPrinter.exe [1176064] [PID.3000] =>.Superfluous.Linkury
[MD5.0A529C58D60780CF87FC751557C187A2] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1469712] [PID.1632] =>.AVG Technologies CZ, s.r.o.®
[MD5.686BA35F44B03929DBFEE91F237CFE46] - (.AVG Technologies CZ, s.r.o. - AVG User Interface.) -- C:\Program Files (x86)\AVG\Av\avgui.exe [6718224] [PID.2928] =>.AVG Technologies CZ, s.r.o.®
[MD5.F2AD1B265908797F8A5E21E0312F2F25] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\ben chakell\AppData\Local\Akamai\netsession_win.exe [4691384] [PID.3196] =>.Superfluous.AkamaiHD
[MD5.2A63F81CB49B2B90584EE90152BE6337] - (...) -- C:\ProgramData\DCHP\DCHP.exe [400384] [PID.3380] =>PUP.Optional.Salus
[MD5.710C517D863BDBD036B72BF94D4F8517] - (.???? ???? - ????WiFi????.) -- C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWifiSvr.exe [170464] [PID.3496] =>.???????????????®
[MD5.F81F345586F08409752FC89EE3C02B17] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8894680] [PID.3568] =>.Piriform Ltd®
[MD5.6805DC3ABFBC00E575E8E424D20BDA61] - (.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [186136] [PID.3680] {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
[MD5.1E3B00B7645272F9033DDA2E26A0285B] - (.Copyright Byte Technologies LLC. - ByteFence Real-time Protection.) -- C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe [254280] [PID.3752] =>.Superfluous.ByteFence
[MD5.78D4E35044D83BC5F16E574ADDDC148B] - (.Copyright Byte Technologies LLC. - ByteFence Real-time Protection.) -- C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe [565064] [PID.3848] =>.Superfluous.ByteFence
[MD5.40F8A5684A385602AB3056998FCD10EA] - (...) -- C:\ProgramData\Trescof\Trescof.exe [1176064] [PID.3884] =>PUP.Optional.Salus
[MD5.938CA801531475E7A7FE295A496C44CD] - (.AVG Technologies CZ, s.r.o. - AVG E-mail Scanner.) -- C:\Program Files (x86)\AVG\Av\avgemca.exe [972560] [PID.3988] =>.AVG Technologies CZ, s.r.o.®
[MD5.39127B4F90B1FA27A8546B39DB998C46] - (...) -- C:\Program Files (x86)\79B99FEE-1473216853-E411-85C7-F0761C78D3C2\knsg5D8E.tmpfs [799232] [PID.2944] =>PUP.Optional.CrossRider
[MD5.1CF45B67AF6370CAF2E7622B3EBC34AC] - (.Baidu, Inc. - PC Faster Tray.) -- C:\Program Files (x86)\PC Faster\5.1.0.0\PCFTray.exe [2333152] [PID.4144] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.8D2703BDABC94EA643F300582FB8AD28] - (.Copyright (C) 2016 - .) -- D:\Program Files\MS.Default\Helper.3\Helper33.exe [176644] [PID.4476]
[MD5.EC82E8EF71B9B4BD85E101ECFDC00A86] - (.Copyright (C) 2016 - .) -- D:\Program Files\MS.Default\Helper.4\Helper44.exe [176644] [PID.4504]
[MD5.4658515931A9F0B636D8E57C46037FD2] - (.Copyright (C) 2016 - .) -- D:\Program Files\MS.Default\Helper.5\Helper55.exe [176644] [PID.4548]
[MD5.BBD00C5878F04EF843D98FC8E9375B2F] - (.Copyright (C) 2016 - .) -- D:\Program Files\MS.Default\Helper.6\Helper66.exe [176644] [PID.4580]
[MD5.063F9922AFE621303447F9595BF335DD] - (.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe [3502360] [PID.5836] {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
[MD5.342AF339936BAF334D259C1AB8812071] - (...) -- C:\Program Files (x86)\Crytek\GFACE Launcher\live\gflauncher.exe [46350968] [PID.4844] =>.Crytek GmbH®
[MD5.54251189DB507367E193F7A68DAA99AD] - (.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg64.exe [189720] [PID.3932] {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
[MD5.A13286846DB9AF7A43BE7CFB5CC6E1F6] - (.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg32.exe [157464] [PID.5652] {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
[MD5.342AF339936BAF334D259C1AB8812071] - (...) -- C:\Program Files (x86)\Crytek\GFACE Launcher\live\gflauncher.exe [46350968] [PID.5600] =>.Crytek GmbH®
[MD5.342AF339936BAF334D259C1AB8812071] - (...) -- C:\Program Files (x86)\Crytek\GFACE Launcher\live\gflauncher.exe [46350968] [PID.2560] =>.Crytek GmbH®
[MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\ContentPush\app\bin\nw.exe [46344704] [PID.7160]
[MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\ContentPush\app\bin\nw.exe [46344704] [PID.5036]
[MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\ContentPush\app\bin\nw.exe [46344704] [PID.3284]
[MD5.342AF339936BAF334D259C1AB8812071] - (...) -- C:\Program Files (x86)\Crytek\GFACE Launcher\live\gflauncher.exe [46350968] [PID.1416] =>.Crytek GmbH®
[MD5.C97739179527669A158C678DA6F2531F] - (.Byte Technologies LLC - ByteFence Anti-Malware.) -- C:\Program Files\ByteFence\ByteFence.exe [1393976] [PID.6200] =>.Superfluous.ByteFence
[MD5.8F311A272AAE611BFFAAC88CC0CA3F43] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1152840] [PID.6540] =>.Google Inc®
[MD5.8F311A272AAE611BFFAAC88CC0CA3F43] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1152840] [PID.6536] =>.Google Inc®
[MD5.8F311A272AAE611BFFAAC88CC0CA3F43] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1152840] [PID.1868] =>.Google Inc®
[MD5.909A77678E447339DB1880CDB1EA2F47] - (.Baidu, Inc. - Baidu PC Faster Service.) -- C:\Program Files (x86)\PC Faster\5.1.0.0\PCFasterSvc.exe [1714448] [PID.7792] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.8E06998A4ED01F1289D00F3EF0527409] - (.Baidu, Inc. - Baidu MoboMarket Service.) -- C:\Program Files (x86)\Baidu Security\MoboMarket\1.2.8.4379\bassvc.exe [208928] [PID.1516] =>.Baidu Online Network Technology (Beijing)Co., Ltd®
[MD5.7172E394D61CE38BB4D862CBB2F28A74] - (.Baidu, Inc. - Baidu AndroidStore Helper.) -- C:\Program Files (x86)\Baidu Security\MoboMarket\1.2.8.4379\bas_helper.exe [2201632] [PID.7236] =>.Baidu Online Network Technology (Beijing)Co., Ltd®
[MD5.909A77678E447339DB1880CDB1EA2F47] - (.Baidu, Inc. - Baidu PC Faster Service.) -- C:\Program Files (x86)\PC Faster\5.1.0.0\SysOptEngineSvc.exe [1714448] [PID.692] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
[MD5.8F311A272AAE611BFFAAC88CC0CA3F43] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1152840] [PID.7376] =>.Google Inc®
[MD5.093A1451EB40EC5B56CC0475792DBC68] - (...) -- C:\Windows\Temp\3620.tmp [1893888] [PID.7864]
[MD5.542199EC8FAA7CB170B8F663D62ADA99] - (...) -- C:\Users\ben chakell\AppData\Local\79B99FEE-1473278109-E411-85C7-F0761C78D3C2\qnsm653A.tmp [158720] [PID.1260] =>PUP.Optional.CrossRider
[MD5.8F311A272AAE611BFFAAC88CC0CA3F43] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1152840] [PID.7720] =>.Google Inc®
[MD5.709DFC5CF96C8218D8CCB497725EBFA5] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\ben chakell\Downloads\ZHPDiag3.exe [2320896] [PID.6284] =>.Nicolas Coolman

..............................................................................................

æåäÇ ÇáÇÖÇÝÇÊ ÇáÎÇÕÉ ÈÇáãÊÕÝÍ æÇáãÓÊÎÏã íÓÊÚãá Firefox
PUP.Optional.SmartBar +yandex ...

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (10) - 4s
M0 - MFSP: prefs.js [ben chakell - nahd6ha2.default] http://www.google.com/
P2 - EXT FILE: (.MyPlayCity Gametab - Provides wide opportunities for both e.) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\myplaycitycom@gametab.xpi
P2 - EXT FILE: (.?????????? ???????? - ?????????? ???????? – ???? ????????, ?.) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\vb@yandex.ru.xpi
P2 - EXT FILE: (.????????? ???????? ??????? - ????? ?????? ?? ???? ??????????? ?????.) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\extensions\yasearch@yandex.ru.xpi
P2 - EXT FILE: (.findit - findit description.) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\findit.xml =>PUP.Optional.SmartBar
P2 - EXT FILE: (...) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\myplaycity.xml
P2 - EXT FILE: (.Yandex - Search in Yandex.) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\yqs-barff-yandex.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\findit.xml =>PUP.Optional.SmartBar
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll =>.Adobe Systems Incorporated

.................................................................................................

åäÇ ÇáÇÖÇÝÇÊ ÇáÎÇÕÉ ÈÇáÇäÊÑäÊ ÇßÓÈáæÑÑ
æäáÇÍÙ ÚäÇæíä ÛíÑ ãÚÑæÝÉ æÇáÓÈÈ ÑÇÍÚ Çáì ÈÑÇãÌÌ ÖÇÑÉ
ßÐáß äáÇÍÙ ÙåæÑ ÇáÓØÑ R3
æíÏá Úáì ÇÙÇÝÉ Ëíã ÌÏíÏÉ ÈÇáÑÌíÓÊÑí


---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBP-OqRkK_4g5H3zXx0q0R8gn5OyIpimjoinfQ0HBzHIaGKar5SDsInM5hF6Ld3so5SMAcdzKCCC84B5ZzZKvx-s1jwMSM5EeS2fjwyYENna6dV7wJyp45CfG2z1wr-IA5XoHLGHKftG8bLYmBaOF_JeqlZm3L8RWsH-zHspwRMjzBz7QEhXd35R7eNsQ,, =>.Superfluous.Linkury
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://start.myplaycity.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://start.myplaycity.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbp-oqrkk_4g5h3zxx0q0r8gn5oyipimjoinfq0hbzhiagkar5sdsinm5hf6ld3so5smacdzkccc84b5zzzkvx-s1jwmsm5ees6hsaqld5aarzngbx_hbclhtqikzpkqj2qstzfirsmphlsyipwjapljoz_dwzglhyrjrls7_3f0jcxfra8eohhlfztcw,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbp-oqrkk_4g5h3zxx0q0r8gn5oyipimjoinfq0hbzhiagkar5sdsinm5hf6ld3so5smacdzkccc84b5zzzkvx-s1jwmsm5ees6hsaqld5aarzngbx_hbclhtqikzpkqj2qstzfirsmphlsyipwjapljoz_dwzglhyrjrls7_3f0jcxfra8eohhlfztcw,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbp-oqrkk_4g5h3zxx0q0r8gn5oyipimjoinfq0hbzhiagkar5sdsinm5hf6ld3so5smacdzkccc84b5zzzkvx-s1jwmsm5ees6hsaqld5aarzngbx_hbclhtqikzpkqj2qstzfirsmphlsyipwjapljoz_dwzglhyrjrls7_3f0jcxfra8eohhlfztcw,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbp-oqrkk_4g5h3zxx0q0r8gn5oyipimjoinfq0hbzhiagkar5sdsinm5hf6ld3so5smacdzkccc84b5zzzkvx-s1jwmsm5ees6hsaqld5aarzngbx_hbclhtqikzpkqj2qstzfirsmphlsyipwjapljoz_dwzglhyrjrls7_3f0jcxfra8eohhlfztcw,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKEY_USERS\S-1-5-21-3211689868-3037088147-3885857918-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbp-oqrkk_4g5h3zxx0q0r8gn5oyipimjoinfq0hbzhiagkar5sdsinm5hf6ld3so5smacdzkccc84b5zzzkvx-s1jwmsm5ees6hsaqld5aarzngbx_hbclhtqikzpkqj2qstzfirsmphlsyipwjapljoz_dwzglhyrjrls7_3f0jcxfra8eohhlfztcw,,&q={searchterms} =>.Superfluous.Linkury
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
.......................................................................................................

æåäÇ ÇáÈÑæßÓ ÇáÎÇÕ ÈÇáÇÊÕÇá
ÇáÞíã ØÈÚíÉ

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride =
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
...................................................................................................................

åäÇ ÇáãÝÇÊíÍ ÇáãÓÄæáÉ Úä ÇáÑíÍíÓÊÑí ÇáÎÇÕÉ ÈÇÞáÇÚ ÇáäÙÇã
æÇáãáÇÍÙ ÊÚÏíá Ýí ãÝÊÇÍíä íÚäí æÌæÏ ÊÚÏíá Ýí ÑÌíÓÊÑí

---\\ Internet Explorer,IniFiles, Autoloading programs (4) - 0s
F2 - REG:system.ini: UserInit=wscript C:\Windows\run.vbs
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F3 - REG:win.ini: load=C:\ProgramData\msqrdbtif.exe
.....................................................................................................................

æåäÇ ÇáÇÓØÑ ÇáÎÇÕÉ ÈÇáåæÓÊ Ýí ÇáäÙÇã
æåí äÙíÝÉ

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (69)
.............................................................................

åäÇ ÇáÓØÑ 04 æåæ ÎÇÕ ÈÇÇáÈÑÇãÌ ÇáÊí ÊÔÊÛá ÈÔßá ÊáÞÇÆí ãÚ ÊÔÛíá ÇáäÙÇã
æåãÇß ÇÓØÑ ãÔÈæåÉ ãäåÇ Baidu Online Network Technology + PUP.Optional.ChedotBrowser ....

---\\ Applications lancées au démarrage du système (31) - 5s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe =>.Intel Corporation
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe =>.Intel Corporation
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe =>.Intel Corporation
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKCU\..\Run: [{13AAD219-6F80-44A2-9504-65AE4B2DEDE2}] . (.Microsoft Corporation - Windows PowerShell.) -- C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [gflauncher] . (...) -- C:\Program Files (x86)\Crytek\GFACE Launcher\live\gflauncher.exe =>.Crytek GmbH®
O4 - HKCU\..\Run: [Viber] . (.Viber Media S.? r.l. - Viber.) -- C:\Users\ben chakell\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\ben chakell\AppData\Local\Akamai\netsession_win.exe =>.Superfluous.AkamaiHD
O4 - HKCU\..\Run: [msiql] . (.Copyright (C) 2015 - .) -- C:\Users\ben chakell\AppData\Local\Temp\msiql.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe =>.Intel Corporation - Software and Firmware Products®
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe =>.Adobe Systems, Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [syshost32] . (...) -- C:\Windows\Installer\{A2E032B5-E45E-5AE5-F632-2221D5A1A429}\syshost.exe
O4 - HKLM\..\Wow6432Node\Run: [Chedot] . (.The Chedot Authors - Chedot.) -- C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O4 - HKLM\..\Wow6432Node\Run: [AvgUi] . (.AVG Technologies CZ, s.r.o. - AVG Ui (Re)Starter.) -- C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe =>.AVG Technologies CZ, s.r.o.®
O4 - HKLM\..\Wow6432Node\Run: [AVG_UI] . (.AVG Technologies CZ, s.r.o. - None.) -- C:\Program Files (x86)\AVG\Av\avuirunnerx.exe =>.AVG Technologies CZ, s.r.o.®
O4 - HKLM\..\Wow6432Node\Run: [Baidu PC Faster 5.1.0.0] . (.Baidu, Inc. - PC Faster Tray.) -- C:\Program Files (x86)\PC Faster\5.1.0.0\PCFTray.exe =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O4 - HKLM\..\policies\Explorer\Run: [BtvStack] . (.Qualcomm®Atheros® - Extension Core.) -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe =>.Qualcomm®Atheros®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [{13AAD219-6F80-44A2-9504-65AE4B2DEDE2}] . (.Microsoft Corporation - Windows PowerShell.) -- C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [gflauncher] . (...) -- C:\Program Files (x86)\Crytek\GFACE Launcher\live\gflauncher.exe =>.Crytek GmbH®
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [Viber] . (.Viber Media S.? r.l. - Viber.) -- C:\Users\ben chakell\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\ben chakell\AppData\Local\Akamai\netsession_win.exe =>.Superfluous.AkamaiHD
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [msiql] . (.Copyright (C) 2015 - .) -- C:\Users\ben chakell\AppData\Local\Temp\msiql.exe
O4 - HKUS\S-1-5-21-3211689868-3037088147-3885857918-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
......................................................................................................................


ßÐáß åäÇ ÇáÈÑÇãÌ ÇáÚÇãÉ Ýí ÈÏÁ ÇáÊÔÚÛíá
æåäÇß ÇÓØÑ ÖÇÑÉ ....

---\\ Raccourcis Global Startup (121) - 23s
O4 - GS\Desktop [Administrateur]: 8 Ball Pool.lnk . (...) C:\Program Files (x86)\GameTop.com\8 Ball Pool\game.exe
O4 - GS\Desktop [Administrateur]: Alien Hallway.lnk . (.Copyright (C) Sigma Team 2011 - Alien Hallway preloader.) C:\Program Files (x86)\GameTop.com\AlienHallway\Preloader.exe
O4 - GS\Desktop [Administrateur]: Alien Wars.lnk . (.AWEM Studio - Alien Stars.) C:\Program Files (x86)\GameTop.com\Alien Wars\Alien Wars.exe =>.AWEM Studio
O4 - GS\Desktop [Administrateur]: AutoTime.lnk . (.???? (C) 2008 - AutoShut Microsoft ???????.) C:\Users\ben chakell\AppData\Local\Temp\is-90N04.tmp\AutoTime.exe
O4 - GS\Desktop [Administrateur]: Chedot.lnk . (.The Chedot Authors - Chedot.) C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O4 - GS\Desktop [Administrateur]: City Racing.lnk . (.EA Group - City Racing.) C:\Program Files (x86)\GameTop.com\City Racing\game.exe
O4 - GS\Desktop [Administrateur]: Dragon.lnk . (...) C:\Program Files (x86)\GameTop.com\Dragon\game.exe
O4 - GS\Desktop [Administrateur]: Gambit Chess.lnk . (...) C:\Program Files (x86)\GameTop.com\Gambit Chess\game.exe
O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (...) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
O4 - GS\Desktop [Administrateur]: Iron Fist.lnk . (...) C:\Program Files (x86)\Cure Productions\Iron Fist 1.5.5\ironfist.bat
O4 - GS\Desktop [Administrateur]: Milky Bear Riches Rider 3.lnk . (.Aliasworlds Entertainment - Milky Bear: Riches Raider 3.) C:\Program Files (x86)\GameTop.com\Milky Bear Riches Rider 3\game.exe
O4 - GS\Desktop [Administrateur]: Silicone 2.lnk . (...) C:\Program Files (x86)\Silicone 2\Game.exe
O4 - GS\Desktop [Administrateur]: Spider-Man Movie DEMO.lnk . (.Treyarch LLC - steel_debug.) C:\Program Files (x86)\Activision\Spider-Man(tm) Movie DEMO\SpiderMan.exe
O4 - GS\Desktop [Administrateur]: Star Raid.lnk . (...) C:\Program Files (x86)\GameTop.com\Star Raid\game.exe
O4 - GS\Desktop [Administrateur]: Streetsof Rage 3.lnk . (...) C:\Program Files (x86)\Streetsof Rage 3\Fusion.exe StreetsofRage3.zip
O4 - GS\Desktop [Administrateur]: Viber.lnk . (.Viber Media S.? r.l. - Viber.) C:\Users\ben chakell\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - GS\Desktop [Administrateur]: WhatsApp.lnk . (.GitHub - Update.) C:\Users\ben chakell\AppData\Local\WhatsApp\Update.exe --processStart WhatsApp.exe =>.WhatsApp, Inc.®
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ben chakell\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: 123 Flash Chat.lnk . (.123 FlashChat Software Corp. - 123 FlashChat- Windows Client.) C:\Program Files (x86)\123 FlashChat\123flashchat.exe
O4 - GS\Quicklaunch [Administrateur]: Chedot.lnk . (.The Chedot Authors - Chedot.) C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O4 - GS\Quicklaunch [Administrateur]: City Moto Racer.lnk . (...) C:\Program Files (x86)\MyPlayCity.com\City Moto Racer\City Moto Racer.exe {20D4740D43CF48A9A8582DA77C404F18}
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\BENCHA~1\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe http://yeabests.cc =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: MaohaWiFi.lnk . (.???? ???? - ????WiFi.) C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWiFi.exe
O4 - GS\Quicklaunch [Administrateur]: Streetsof Rage 3.lnk . (...) C:\Program Files (x86)\Streetsof Rage 3\Fusion.exe StreetsofRage3.zip
O4 - GS\Quicklaunch [Administrateur]: Yandex.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\BENCHA~1\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: Chedot.lnk . (.The Chedot Authors - Chedot.) C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O4 - GS\TaskBar [Administrateur]: G??gl? ?hr?m?.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Int?rn?t ???l?r?r.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: PotPlayer.lnk . (.Daum Communications - PotPlayer.) C:\Program Files (x86)\Daum\PotPlayer\PotPlayerMini.exe {0A5167251C4CAB51BECDA4B87B48CAE1} =>.Daum Communications
O4 - GS\TaskBar [Administrateur]: Skype.lnk . (...) C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
O4 - GS\TaskBar [Administrateur]: Viber.lnk . (.Viber Media S.? r.l. - Viber.) C:\Users\ben chakell\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - GS\TaskBar [Administrateur]: WhatsApp.lnk . (.GitHub - Update.) C:\Users\ben chakell\AppData\Local\WhatsApp\Update.exe --processStart WhatsApp.exe =>.WhatsApp, Inc.®
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: ??zill? Fir?f??.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Programs [Administrateur]: Int?rn?t ???l?r?r (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Int?rn?t ???l?r?r.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [ben chakell]: 8 Ball Pool.lnk . (...) C:\Program Files (x86)\GameTop.com\8 Ball Pool\game.exe
O4 - GS\Desktop [ben chakell]: Alien Hallway.lnk . (.Copyright (C) Sigma Team 2011 - Alien Hallway preloader.) C:\Program Files (x86)\GameTop.com\AlienHallway\Preloader.exe
O4 - GS\Desktop [ben chakell]: Alien Wars.lnk . (.AWEM Studio - Alien Stars.) C:\Program Files (x86)\GameTop.com\Alien Wars\Alien Wars.exe =>.AWEM Studio
O4 - GS\Desktop [ben chakell]: AutoTime.lnk . (.???? (C) 2008 - AutoShut Microsoft ???????.) C:\Users\ben chakell\AppData\Local\Temp\is-90N04.tmp\AutoTime.exe
O4 - GS\Desktop [ben chakell]: Chedot.lnk . (.The Chedot Authors - Chedot.) C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O4 - GS\Desktop [ben chakell]: City Racing.lnk . (.EA Group - City Racing.) C:\Program Files (x86)\GameTop.com\City Racing\game.exe
O4 - GS\Desktop [ben chakell]: Dragon.lnk . (...) C:\Program Files (x86)\GameTop.com\Dragon\game.exe
O4 - GS\Desktop [ben chakell]: Gambit Chess.lnk . (...) C:\Program Files (x86)\GameTop.com\Gambit Chess\game.exe
O4 - GS\Desktop [ben chakell]: Internet Download Manager.lnk . (...) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
O4 - GS\Desktop [ben chakell]: Iron Fist.lnk . (...) C:\Program Files (x86)\Cure Productions\Iron Fist 1.5.5\ironfist.bat
O4 - GS\Desktop [ben chakell]: Milky Bear Riches Rider 3.lnk . (.Aliasworlds Entertainment - Milky Bear: Riches Raider 3.) C:\Program Files (x86)\GameTop.com\Milky Bear Riches Rider 3\game.exe
O4 - GS\Desktop [ben chakell]: Silicone 2.lnk . (...) C:\Program Files (x86)\Silicone 2\Game.exe
O4 - GS\Desktop [ben chakell]: Spider-Man Movie DEMO.lnk . (.Treyarch LLC - steel_debug.) C:\Program Files (x86)\Activision\Spider-Man(tm) Movie DEMO\SpiderMan.exe
O4 - GS\Desktop [ben chakell]: Star Raid.lnk . (...) C:\Program Files (x86)\GameTop.com\Star Raid\game.exe
O4 - GS\Desktop [ben chakell]: Streetsof Rage 3.lnk . (...) C:\Program Files (x86)\Streetsof Rage 3\Fusion.exe StreetsofRage3.zip
O4 - GS\Desktop [ben chakell]: Viber.lnk . (.Viber Media S.? r.l. - Viber.) C:\Users\ben chakell\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - GS\Desktop [ben chakell]: WhatsApp.lnk . (.GitHub - Update.) C:\Users\ben chakell\AppData\Local\WhatsApp\Update.exe --processStart WhatsApp.exe =>.WhatsApp, Inc.®
O4 - GS\Desktop [ben chakell]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ben chakell\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ben chakell]: 123 Flash Chat.lnk . (.123 FlashChat Software Corp. - 123 FlashChat- Windows Client.) C:\Program Files (x86)\123 FlashChat\123flashchat.exe
O4 - GS\Quicklaunch [ben chakell]: Chedot.lnk . (.The Chedot Authors - Chedot.) C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O4 - GS\Quicklaunch [ben chakell]: City Moto Racer.lnk . (...) C:\Program Files (x86)\MyPlayCity.com\City Moto Racer\City Moto Racer.exe {20D4740D43CF48A9A8582DA77C404F18}
O4 - GS\Quicklaunch [ben chakell]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\BENCHA~1\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\Quicklaunch [ben chakell]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe http://yeabests.cc =>.Microsoft Corporation®
O4 - GS\Quicklaunch [ben chakell]: MaohaWiFi.lnk . (.???? ???? - ????WiFi.) C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWiFi.exe
O4 - GS\Quicklaunch [ben chakell]: Streetsof Rage 3.lnk . (...) C:\Program Files (x86)\Streetsof Rage 3\Fusion.exe StreetsofRage3.zip
O4 - GS\Quicklaunch [ben chakell]: Yandex.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\BENCHA~1\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\sendTo [ben chakell]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [ben chakell]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [ben chakell]: Chedot.lnk . (.The Chedot Authors - Chedot.) C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O4 - GS\TaskBar [ben chakell]: G??gl? ?hr?m?.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [ben chakell]: Int?rn?t ???l?r?r.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [ben chakell]: PotPlayer.lnk . (.Daum Communications - PotPlayer.) C:\Program Files (x86)\Daum\PotPlayer\PotPlayerMini.exe {0A5167251C4CAB51BECDA4B87B48CAE1} =>.Daum Communications
O4 - GS\TaskBar [ben chakell]: Skype.lnk . (...) C:\Windows\Installer\{1845470B-EB14-4ABC-835B-E36C693DC07D}\SkypeIcon.exe
O4 - GS\TaskBar [ben chakell]: Viber.lnk . (.Viber Media S.? r.l. - Viber.) C:\Users\ben chakell\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.®
O4 - GS\TaskBar [ben chakell]: WhatsApp.lnk . (.GitHub - Update.) C:\Users\ben chakell\AppData\Local\WhatsApp\Update.exe --processStart WhatsApp.exe =>.WhatsApp, Inc.®
O4 - GS\TaskBar [ben chakell]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [ben chakell]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\TaskBar [ben chakell]: ??zill? Fir?f??.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Programs [ben chakell]: Int?rn?t ???l?r?r (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [ben chakell]: Int?rn?t ???l?r?r.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Adobe Reader 8.lnk . (.Adobe Systems Incorporated - Adobe Reader 8.1.) C:\Program Files (x86)\Adobe\Reader 8.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: AIMP3.lnk . (.AIMP DevTeam - AIMP3.) C:\Program Files (x86)\AIMP3\AIMP3.exe =>.AIMP DevTeam
O4 - GS\CommonDesktop [Public]: AVG Protection.lnk . (.AVG Technologies CZ, s.r.o. - AVG User Interface.) C:\Program Files (x86)\AVG\Av\avgui.exe =>.AVG Technologies CZ, s.r.o.®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (...) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Corporation®
O4 - GS\CommonDesktop [Public]: G??gl? ?hr?m?.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Pro Evolution Soccer 2015.lnk . (.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2015.) C:\Program Files (x86)\Pro Evolution Soccer 2015\PES2015.exe =>.Konami Digital Entertainment Co., Ltd.
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: ??zill? Fir?f??.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: ???r?.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Int?rn?t ???l?r?r (N? ?dd-?ns).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Editeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: Int?rn?t ???l?r?r (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Int?rn?t ???l?r?r.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
.................................................................................................................

åÐÇ ÇáÓØÑ ÎÇÕ ÈÜãÒæÏ ÇáÎÏãÉ DNS
æäáÇÍÙ ÊÛíÑ ããÇ íÏá Çä åäÇß ÇÊÕÇá ÎÇÑÌí


---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 4.2.2.4 4.2.2.3
O17 - HKLM\System\CCS\Services\Tcpip\..\{AD31301B-2B32-4813-94A5-112B92922D18}: NameServer = 188.120.239.115,8.8.8.8 =>.Google DNS
O17 - HKLM\System\CCS\Services\Tcpip\..\{AD31301B-2B32-4813-94A5-112B92922D18}: DhcpNameServer = 4.2.2.4 4.2.2.3
.............................................................................................................................

åäÇ ÇÓØÑ ÎÇÕÉ ÈÈÑæÊæßæáÇÊ ÇáÇÊÕÇáÇÊ
æÇáãáÇÍÙ ÇäåÇ Ûí ãÕÇÈÉ

---\\ Protocole additionnel (22) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®
......................................................................................................

åäÇ ÎÇÕ ÈÇÇáÈÑÇãÌ ÇáÊí íÊã ÊÔÛíáåÇ ÚÈÑ åÐå ÇáÏÇáÉ user32.dll
æäáÇÍÙ Çäå ãÕÇÈ


---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s
O20 - AppInit_DLLs: . (...) - C:\ProgramData\Trescof\Qvoity.dll =>PUP.Optional.Salus
.......................................................................................................


åäÇ ÇááÇÓØÑÎÇÕÉ ÈßÇÝÉ ÇáÈÑÇãÌ ÇáãËÈÊÉ ÈÇáÌåÇÒ
æÇáãáÇÍÙ ÈÚÖ ãä ÇáÇÕÇÈÇÊ

PUP.Optional.RelevantKnowledge + PUP.Optional.SmartBar

---\\ Logiciels installés (68) - 23s
O42 - Logiciel: 123 FlashChat - Windows Client - (.123 FlashChat Corp..) [HKLM][64Bits] -- 123 FlashChat_is1
O42 - Logiciel: 7-Zip 9.30 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0930-000001000000} =>.Igor Pavlov
O42 - Logiciel: 8 Ball Pool - (.GameTop Pte. Ltd..) [HKLM][64Bits] -- 8 Ball Pool_is1
O42 - Logiciel: Adobe Flash Player 13 ActiveX & Plugin 64-bit - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader 8.1.0 - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-A81000000003} =>.Adobe Systems Incorporated
O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM][64Bits] -- AIMP3 =>.AIMP DevTeam
O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU][64Bits] -- Akamai =>.Superfluous.AkamaiHD
O42 - Logiciel: Alien Wars - (.Media Contact LLC.) [HKLM][64Bits] -- Alien Wars_is1 =>.Media Contact LLC
O42 - Logiciel: AlienHallway - (.Media Contact LLC.) [HKLM][64Bits] -- AlienHallway_is1 =>.Media Contact LLC
O42 - Logiciel: Arafiesta - (.Game Power 7.) [HKLM][64Bits] -- Arafiesta
O42 - Logiciel: AVG - (.AVG Technologies.) [HKLM][64Bits] -- {A3E10CD4-8B55-404F-8AEE-9BB74B631E2C} =>.AVG Technologies
O42 - Logiciel: AVG 2016 - (.AVG Technologies.) [HKLM][64Bits] -- {F2B1673B-11B9-4C69-871C-D303070ACFCB} =>.AVG Technologies
O42 - Logiciel: AVG Protection - (.AVG Technologies.) [HKLM][64Bits] -- AVG =>.AVG Technologies CZ, s.r.o.®
O42 - Logiciel: Baidu PC Faster - (.Baidu, Inc..) [HKLM][64Bits] -- Baidu PC Faster 5.1.0.0 =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O42 - Logiciel: Body Text Feathering - (.Body Text Feathering.) [HKLM][64Bits] -- PopupProduct =>.Body Text Feathering
O42 - Logiciel: ByteFence Anti-Malware - (.Byte Technologies LLC.) [HKLM][64Bits] -- ByteFence =>.Byte Technologies LLC
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Chedot - (.Chedot Publisher.) [HKCU][64Bits] -- Chedot =>PUP.Optional.ChedotBrowser
O42 - Logiciel: City Moto Racer - (.MyPlayCity, Inc..) [HKLM][64Bits] -- City Moto Racer_is1 =>.MyPlayCity, Inc.
O42 - Logiciel: City Racing - (.Media Contact LLC.) [HKLM][64Bits] -- City Racing_is1 =>.Media Contact LLC
O42 - Logiciel: Clash Shadow Apex - (...) [HKCU][64Bits] -- Clash Shadow Apex
O42 - Logiciel: CrossFire - (.Z8Games.com.) [HKLM][64Bits] -- CrossFire_is1
O42 - Logiciel: Dirt Bikes Super Racing - (.GameTop Pte. Ltd..) [HKLM][64Bits] -- Dirt Bikes Super Racing_is1
O42 - Logiciel: Dragon - (.GameTop Pte. Ltd..) [HKLM][64Bits] -- Dragon_is1
O42 - Logiciel: DrivingSpeed - (...) [HKLM][64Bits] -- DrivingSpeed
O42 - Logiciel: FastStone Image Viewer, ?????? 5.0.0.0 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Image Viewer_is1 =>.FastStone Soft
O42 - Logiciel: Fire and Forget - (.GameTop Pte. Ltd..) [HKLM][64Bits] -- Fire and Forget_is1
O42 - Logiciel: FlvPlayer - (...) [HKCU][64Bits] -- FlvPlayer =>PUP.Optional.FLVPlayer
O42 - Logiciel: FMW 1 - (.AVG Technologies.) [HKLM][64Bits] -- {B0279F65-ADAA-4AB4-9068-EAEFB1346BD4} =>.AVG Technologies
O42 - Logiciel: Foxit Reader 6.2.0.0429 - (.oszone.net.) [HKLM][64Bits] -- Foxit Reader
O42 - Logiciel: FreeGamia Game Player 1.0 - (.FreeGamia Software, Inc..) [HKLM][64Bits] -- FreeGamia Game Player_is1
O42 - Logiciel: Gambit Chess - (.Media Contact LLC.) [HKLM][64Bits] -- Gambit Chess_is1 =>.Media Contact LLC
O42 - Logiciel: Goodgame Empire - (.GameTop Pte. Ltd..) [HKLM][64Bits] -- Goodgame Empire_is1 =>.Superfluous.GoodGameEmpire
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: iFreeTV v1.0 - (...) [HKLM][64Bits] -- iFreeTV_is1
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Iron Fist 1.5.5 - (...) [HKLM][64Bits] -- Iron Fist 1.5.5
O42 - Logiciel: Launcher GFACE - (.Crytek GmbH.) [HKLM][64Bits] -- {28D1723C-31C4-4A83-9799-DFFB3739026D} =>.Crytek GmbH
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Microsoft XNA Framework Redistributable 3.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20} =>.Microsoft Corporation
O42 - Logiciel: Milky Bear Riches Rider 3 - (.Media Contact LLC.) [HKLM][64Bits] -- Milky Bear Riches Rider 3_is1 =>.Media Contact LLC
O42 - Logiciel: Mozilla Firefox 44.0 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 44.0 (x86 en-US) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: My Total TV 3.1.891 - (.Crystal Reality LLC.) [HKLM][64Bits] -- My Total TV
O42 - Logiciel: PotPlayer v1.6.47846 x86 - (.Daum Corp..) [HKLM][64Bits] -- PotPlayer
O42 - Logiciel: Pro Evolution Soccer 2015 - (.????? ?? R.G. Steamgames.) [HKLM][64Bits] -- Pro Evolution Soccer 2015_is1
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros Communications.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros Communications
O42 - Logiciel: Qualcomm Atheros WLAN and Bluetooth Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros
O42 - Logiciel: Real Pool - (.Media Contact LLC.) [HKLM][64Bits] -- RealPool_is1 =>.Media Contact LLC
O42 - Logiciel: RelevantKnowledge - (.TMRG, Inc..) [HKLM][64Bits] -- {d08d9f98-1c78-4704-87e6-368b0023d831} {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
O42 - Logiciel: SafeFinder - (.Linkury.) [HKLM][64Bits] -- {096646B4-BE14-4259-915D-9CACD4B81036} =>PUP.Optional.SmartBar
O42 - Logiciel: SHAREit - (.Lenovo.) [HKLM][64Bits] -- SHAREit_is1 =>.Lenovo
O42 - Logiciel: Silicone 2 1.0 - (.FreeGamia, Inc..) [HKLM][64Bits] -- Silicone 2_is1 =>.FreeGamia, Inc.
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {1845470B-EB14-4ABC-835B-E36C693DC07D} =>.Skype Technologies S.A.
O42 - Logiciel: Spider-Man Movie DEMO - (.Activision Publishing, Inc..) [HKLM][64Bits] -- Spider-Man Movie DEMO
O42 - Logiciel: Star Raid - (.GameTop Pte. Ltd..) [HKLM][64Bits] -- Star Raid_is1
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: Streetsof Rage 3 1.0 - (...) [HKLM][64Bits] -- Streetsof Rage 3_is1
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKCU][64Bits] -- {ba1c2a92-5adc-4318-8ed2-9e2643b021db} =>.Viber Media S.à r.l.®
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKLM][64Bits] -- {343DC4E5-7388-4F60-961A-E3FE4A579E83} =>.Viber Media Inc.
O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o.
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: WhatsApp - (.WhatsApp.) [HKCU][64Bits] -- WhatsApp =>.WhatsApp, Inc.®
O42 - Logiciel: WinRAR archiver - (...) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: WinUtilities Professional Edition 12.4 - (.YL Computing, Inc.) [HKLM][64Bits] -- {FC274982-5AAD-4C20-848D-4424A5043009}_is1 =>.YL Computing, Inc
.....................................................................................................

åãÇ äáÇÍÙ ãÝÇÊíÍ ÇáÈÑãÌíÇÊ
æåäÇß ÇÕÇÈÇÊ ßËíÑÉ

---\\ HKCU & HKLM Software Keys (114) - 23s
HKLM\SOFTWARE\Wow6432Node\360Safe
HKLM\SOFTWARE\Wow6432Node\Activision =>.Activision
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\ATHEROS =>.Atheros
HKLM\SOFTWARE\Wow6432Node\AVG
HKLM\SOFTWARE\Wow6432Node\Baidu =>.Baidu
HKLM\SOFTWARE\Wow6432Node\Baidu Security
HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos
HKLM\SOFTWARE\Wow6432Node\ByteFence =>.Superfluous.ByteFence
HKLM\SOFTWARE\Wow6432Node\C4E97DBDB13BAC89954320269024036F =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\Wow6432Node\CloudOPTInfo
HKLM\SOFTWARE\Wow6432Node\FastStone Soft =>.FastStone Soft
HKLM\SOFTWARE\Wow6432Node\FlvPlayer =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\Iron Fist 1.5.5
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\LiveUpdate360
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\Maoha
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\mtTrescof =>PUP.Optional.Salus
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\ompndb
HKLM\SOFTWARE\Wow6432Node\Opera Software =>.Opera Software
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros WLAN and Bluetooth Client Installation Program
HKLM\SOFTWARE\Wow6432Node\SHAREit
HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
HKLM\SOFTWARE\Wow6432Node\UCBrowserPID
HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\xvb`lj
HKLM\SOFTWARE\Wow6432Node\youndooSoftware =>PUP.Optional.Youndoo
HKLM\SOFTWARE\Wow6432Node\Z8Games
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\123 FlashChat Software Corp.
HKCU\SOFTWARE\23206df3b5fc7205 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\360Iniconfig
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Aeria Games =>.Aeria Games
HKCU\SOFTWARE\Akamai
HKCU\SOFTWARE\Anuman
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Atheros =>.Atheros
HKCU\SOFTWARE\AutoTime =>Adware.TopTools
HKCU\SOFTWARE\Avg
HKCU\SOFTWARE\Baidu =>.Baidu
HKCU\SOFTWARE\Baidu Security
HKCU\SOFTWARE\ByteFence =>.Superfluous.ByteFence
HKCU\SOFTWARE\C4E97DBDB13BAC89954320269024036F =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Chedot =>PUP.Optional.ChedotBrowser
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Crystal Reality
HKCU\SOFTWARE\csastats
HKCU\SOFTWARE\Daum
HKCU\SOFTWARE\DefaultCompany
HKCU\SOFTWARE\dlr
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\drpsu
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\Gametop
HKCU\SOFTWARE\GfaceGmbh
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\HowardMedia
HKCU\SOFTWARE\ICSW1.18 =>Adware.InstallCore
HKCU\SOFTWARE\IM
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallMonster
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\KuaiZip
HKCU\SOFTWARE\KuaiZipSFX
HKCU\SOFTWARE\Lenovo =>.Lenovo
HKCU\SOFTWARE\LiveUpdate360
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Maoha
HKCU\SOFTWARE\Media Research Group
HKCU\SOFTWARE\Meridian93
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\mtTrescof =>PUP.Optional.Salus
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NSIS
HKCU\SOFTWARE\OCS
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\PopWnd
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Revenger inc.
HKCU\SOFTWARE\Rtp
HKCU\SOFTWARE\SHAREit
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\SNDA
HKCU\SOFTWARE\UCBrowserPID
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\Viber
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Yandex
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Yandex
..................................................................................................................

åäÇ ÇáÓØÑ ÎÇÕ ÈãÓÇÑÇÊ ßÇÝÉ ÇáÈÑÇãÌ ÇáãËÈÊÉ Ýí ÇáÍÇÓÈ
æÇáãáÇÍÙ ÇÕÇÈÇÊ ãäåÇ PUP.Optional.RelevantKnowledge+ PUP.Optional.CrossRider+ PUP.Optional.FLVPlayer
Baidu ....

---\\ Contenu des dossiers Programmes (274) - 70s
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files\ByteFence =>.Superfluous.ByteFence
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 02/03/2016 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Intel =>.Intel
O43 - CFD: 25/04/2011 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 14/03/2016 - [] D -- C:\Program Files\Motherbase Studios
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files\???¹ =>.Superfluous.Tencent
O43 - CFD: 12/07/2016 - [] D -- C:\Program Files (x86)\123 FlashChat
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\79B99FEE-1473216853-E411-85C7-F0761C78D3C2 =>PUP.Optional.CrossRider
O43 - CFD: 27/03/2016 - [] D -- C:\Program Files (x86)\Activision =>.Activision
O43 - CFD: 06/03/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\AIMP3
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\AVG =>.AVG Technologies CZ, s.r.o.®
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\baidu =>.Baidu
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Baidu Security =>.Baidu Online Network Technology (Beijing)Co., Ltd®
O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\ContentPush
O43 - CFD: 31/07/2016 - [] D -- C:\Program Files (x86)\Crytek =>.Crytek GmbH®
O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Cure Productions
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\Daum {0A5167251C4CAB51BECDA4B87B48CAE1}
O43 - CFD: 27/03/2016 - [] D -- C:\Program Files (x86)\DrivingSpeed
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\FastStone Image Viewer
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Corporation®
O43 - CFD: 14/03/2016 - [] D -- C:\Program Files (x86)\FreeGamia Game Player
O43 - CFD: 10/06/2016 - [] D -- C:\Program Files (x86)\GameTop.com
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\GreatMaker =>.???????????????®
O43 - CFD: 22/05/2016 - [] D -- C:\Program Files (x86)\iFreeTV
O43 - CFD: 05/03/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - Software and Firmware Products®
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc.®
O43 - CFD: 25/04/2011 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 06/03/2016 - [] D -- C:\Program Files (x86)\ISO Opener
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Lercerentclertsy {59A2827FE485DDD96ACAAC98C78869D5}
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 19/03/2016 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation®
O43 - CFD: 06/08/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft.NET
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 27/03/2016 - [] D -- C:\Program Files (x86)\My Total TV
O43 - CFD: 19/03/2016 - [] D -- C:\Program Files (x86)\MyPlayCity.com {20D4740D43CF48A9A8582DA77C404F18}
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\PC Faster =>.Baidu Online Network Technology (Beijing)Co., Ltd®
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Pro Evolution Soccer 2015
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 04/09/2016 - [] D -- C:\Program Files (x86)\RelevantKnowledge {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\SHAREit =>.LENOVO®
O43 - CFD: 14/03/2016 - [] D -- C:\Program Files (x86)\Silicone 2
O43 - CFD: 06/03/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 07/09/2016 - [] HD -- C:\Program Files (x86)\SOEasy.3 =>.Superfluous.SoEasyHelper
O43 - CFD: 07/09/2016 - [] HD -- C:\Program Files (x86)\SOEasy.4 =>.Superfluous.SoEasyHelper
O43 - CFD: 07/09/2016 - [] HD -- C:\Program Files (x86)\SOEasy.5 =>.Superfluous.SoEasyHelper
O43 - CFD: 07/09/2016 - [] HD -- C:\Program Files (x86)\SOEasy.6 =>.Superfluous.SoEasyHelper
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve®
O43 - CFD: 19/03/2016 - [] D -- C:\Program Files (x86)\Streetsof Rage 3
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 26/04/2016 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLAN
O43 - CFD: 07/09/2016 - [0] D -- C:\Program Files (x86)\WeatherChickn =>.Superfluous.WeatherChickn
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\WebShield =>PUP.Optional.WebShield
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\WinRAR =>.WinRAR
O43 - CFD: 14/03/2016 - [] D -- C:\Program Files (x86)\WinUtilities =>.SuiNing Yilong Software Store®
O43 - CFD: 22/03/2016 - [] D -- C:\Program Files (x86)\Z8Games =>.Neowiz CORPORATION®
O43 - CFD: 07/09/2016 - [0] D -- C:\Program Files (x86)\{516D9F5A-D8E3-485A-838A-AE688ED07E5C}
O43 - CFD: 12/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\123 FlashChat - Windows Client
O43 - CFD: 02/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 05/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 02/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 02/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3
O43 - CFD: 31/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arafiesta
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG =>.AVG Software
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu PC Faster
O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware =>.Superfluous.ByteFence
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Image Viewer
O43 - CFD: 29/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeGamia Game Player
O43 - CFD: 05/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 10/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameTop.com
O43 - CFD: 22/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iFreeTV
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MaohaWiFi
O43 - CFD: 05/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My Total TV
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPlayCity.com
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pro Evolution Soccer 2015
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
O43 - CFD: 19/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHAREit
O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silicone 2
O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spider-Man Movie DEMO
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streetsof Rage 3
O43 - CFD: 21/11/2010 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 06/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UC Browser
O43 - CFD: 26/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLAN
O43 - CFD: 05/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinUtilities
O43 - CFD: 22/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Z8Games
O43 - CFD: 06/03/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 22/05/2016 - [] D -- C:\ProgramData\Aliasworlds
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 05/03/2016 - [] D -- C:\ProgramData\Atheros =>.Atheros
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Avg =>.AVG Software
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Avira =>.Avira
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Baidu =>.Baidu
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Baidu Security
O43 - CFD: 02/03/2016 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\ByteFence =>.Superfluous.ByteFence
O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\CloudPrinter =>.Superfluous.Linkury
O43 - CFD: 07/09/2016 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 12/04/2016 - [] D -- C:\ProgramData\DCHP =>PUP.Optional.Salus
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 02/03/2016 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\GFACE
O43 - CFD: 06/03/2016 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\KONAMI =>.Konami
O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Lenovo =>.Lenovo
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 02/03/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 18/03/2016 - [] D -- C:\ProgramData\Meridian93
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\MFAData
O43 - CFD: 21/08/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft
O43 - CFD: 05/03/2016 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 02/03/2016 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 06/03/2016 - [] D -- C:\ProgramData\Mozilla =>.Mozilla
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\PC Faster
O43 - CFD: 05/03/2016 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 06/03/2016 - [0] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Steam
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Trescof =>PUP.Optional.Salus
O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Trescofs =>PUP.Optional.Salus
O43 - CFD: 05/03/2016 - [] D -- C:\ProgramData\{EB5F5A55-037A-4E47-806B-2C8AA9374701}
O43 - CFD: 06/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Atheros
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel
O43 - CFD: 28/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Joylight
O43 - CFD: 07/09/2016 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 06/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 19/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 05/03/2016 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 07/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\AIMP3
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Atheros =>.Atheros
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\AVG =>.AVG Software
O43 - CFD: 06/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Baidu =>.Baidu
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\DMCache
O43 - CFD: 02/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\FastStone
O43 - CFD: 29/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\FlvPlayer =>PUP.Optional.FLVPlayer
O43 - CFD: 02/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 07/09/2016 - [0] D -- C:\Users\ben chakell\AppData\Roaming\GameLauncher
O43 - CFD: 02/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Identities
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\IDM =>.IDM
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Kuaizip
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 21/11/2010 - [0] D -- C:\Users\ben chakell\AppData\Roaming\Media Center Programs
O43 - CFD: 18/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Meridian93
O43 - CFD: 07/09/2016 - [] SD -- C:\Users\ben chakell\AppData\Roaming\Microsoft =>.Microsoft
O43 - CFD: 06/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Mozilla =>.Mozilla
O43 - CFD: 27/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\MyTotalTV
O43 - CFD: 28/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\PC Faster
O43 - CFD: 26/04/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\PotPlayerMini
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Profiles
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Skype =>.Skype
O43 - CFD: 07/09/2016 - [0] D -- C:\Users\ben chakell\AppData\Roaming\Softlink
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\TuneUp Software =>.TuneUp Software
O43 - CFD: 07/09/2016 - [0] D -- C:\Users\ben chakell\AppData\Roaming\UPUpdata
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\uTorrent
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\ViberPC
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\vlc
O43 - CFD: 22/08/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\WhatsApp =>.WhatsApp
O43 - CFD: 05/03/2016 - [0] D -- C:\Users\ben chakell\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Yandex
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\ZHP
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\79B99FEE-1473278109-E411-85C7-F0761C78D3C2
O43 - CFD: 07/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Adobe =>.Adobe
O43 - CFD: 09/08/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Akamai
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\app =>PUP.Optional.CrossRider
O43 - CFD: 02/03/2016 - [0] SHD -- C:\Users\ben chakell\AppData\Local\Application Data
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Apps
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Avg =>.AVG Software
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\AvgSetupLog
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\BMExplorer
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\CEF
O43 - CFD: 22/07/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Chedot
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\CrashDumps
O43 - CFD: 05/03/2016 - [0] D -- C:\Users\ben chakell\AppData\Local\Deployment
O43 - CFD: 30/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Diagnostics
O43 - CFD: 24/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\ElevatedDiagnostics
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Google =>.Google
O43 - CFD: 02/03/2016 - [0] SHD -- C:\Users\ben chakell\AppData\Local\Historique
O43 - CFD: 22/05/2016 - [] D -- C:\Users\ben chakell\AppData\Local\iFreeTV
O43 - CFD: 19/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Intel_Corporation
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\jervitheranaqientviriied
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\MFAData
O43 - CFD: 19/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Microsoft =>.Microsoft
O43 - CFD: 07/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Microsoft Games
O43 - CFD: 05/03/2016 - [0] D -- C:\Users\ben chakell\AppData\Local\Microsoft Help
O43 - CFD: 06/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Mozilla =>.Mozilla
O43 - CFD: 28/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 02/08/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Package Cache
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Profiles
O43 - CFD: 02/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Programs
O43 - CFD: 15/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\SHAREit
O43 - CFD: 06/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Skype =>.Skype
O43 - CFD: 06/08/2016 - [] D -- C:\Users\ben chakell\AppData\Local\SquirrelTemp
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Steam
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Temp
O43 - CFD: 02/03/2016 - [0] SHD -- C:\Users\ben chakell\AppData\Local\Temporary Internet Files
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\u-launcher
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Local\UCBrowser
O43 - CFD: 02/08/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Viber
O43 - CFD: 22/05/2016 - [] D -- C:\Users\ben chakell\AppData\Local\VirtualStore
O43 - CFD: 06/08/2016 - [] D -- C:\Users\ben chakell\AppData\Local\WhatsApp =>.WhatsApp
O43 - CFD: 02/03/2016 - [] D -- C:\Users\ben chakell\AppData\Local\Yandex
O43 - CFD: 02/03/2016 - [0] D -- C:\Users\ben chakell\AppData\Local\Programs\Common
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 02/03/2016 - [] RD -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Baidu PC Faster
O43 - CFD: 14/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chedot
O43 - CFD: 14/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Clash Shadow Apex
O43 - CFD: 27/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DrivingSpeed
O43 - CFD: 31/07/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GFACE Launcher
O43 - CFD: 28/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Iron Fist 1.5.5
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 27/03/2016 - [0] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spider-Man Movie DEMO
O43 - CFD: 03/08/2016 - [] RD -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 02/08/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber
O43 - CFD: 06/08/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp =>.WhatsApp
O43 - CFD: 05/03/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 07/09/2016 - [] D -- C:\Users\ben chakell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yandex
O43 - CFD: 07/09/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software
O43 - CFD: 14/07/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft
O43 - CFD: 07/09/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\UCBrowser
........................................................................................................................

åäÇ ÇáÓØÑ íÙåÑ áäÇ ÞÇÆãÉ áÂÎÑ ÇáÊÛííÑÇÊ Çæ ÇáãáÝÇÊ ÇáãäÔÃÉ Ýí ãÌáÏ Prefetch

Ýí ÇáãÓÇÑ C:\WINDOWS\Prefetch
áã ÇÝåãå

---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 12s
O45 - LFCP:[MD5.84F3F353CFEA1E2A78E2DBECE1ACDB5F] 07/09/2016 A -- C:\Windows\Prefetch\BYTEFENCE.EXE-FAC31F78.pf =>.Superfluous.ByteFence
......................................................................



---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
..............................................................................................

åäÇ ÇáÓØÑ ÎÇÕ ÎÇÕ ÈÊÚÇÑíÝ ÇáÏÑÇíÝÑÇÊ ÇáÎÇÕ ÈÇáäÙÇã


---\\ Liste des pilotes du système (244) - 13s
O58 - SDL:2016/03/09 20:36:36 A . (...) -- C:\Windows\System32\drivers\658049d1bfe1203e.sys [71640]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2011/04/26 21:34:24 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2011/04/26 21:34:24 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2014/02/21 01:49:14 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [4044800] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2016/05/13 07:52:10 A . (.AVG Technologies CZ, s.r.o. - AVG File Vault Driver.) -- C:\Windows\System32\drivers\avgdiska.sys [163072] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/06/06 08:24:44 A . (.AVG Technologies CZ, s.r.o. - AVG Filter Driver.) -- C:\Windows\System32\drivers\avgfwd6a.sys [73480] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/08/23 16:31:14 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Driver.) -- C:\Windows\System32\drivers\avgidsdrivera.sys [310016] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/07/27 15:24:26 A . (.AVG Technologies CZ, s.r.o. - AVG Application Activity Monitor Helper Dri.) -- C:\Windows\System32\drivers\avgidsha.sys [272640] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/06/01 13:28:02 A . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) -- C:\Windows\System32\drivers\avgldx64.sys [260352] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/02/16 16:05:56 A . (.AVG Technologies CZ, s.r.o. - AVG Logging Driver.) -- C:\Windows\System32\drivers\avgloga.sys [360736] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/08/02 11:41:18 A . (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Minifilter Driver.) -- C:\Windows\System32\drivers\avgmfx64.sys [262400] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/06/01 13:16:40 A . (.AVG Technologies CZ, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\Windows\System32\drivers\avgrkx64.sys [52992] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/07/27 15:24:54 A . (.AVG Technologies CZ, s.r.o. - AVG Network connection watcher.) -- C:\Windows\System32\drivers\avgtdia.sys [299264] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2016/06/20 15:22:20 A . (.AVG Technologies CZ, s.r.o. - AVG Universal Driver.) -- C:\Windows\System32\drivers\avguniva.sys [77056] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2015/03/31 08:22:56 A . (.Baidu, Inc. - Baidu Antivirus Minifilter Driver.) -- C:\Windows\System32\drivers\BprotectEx.sys [93512] =>.Baidu Online Network Technology (Beijing) Co.,Ltd.®
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros A2DP driver.) -- C:\Windows\System32\drivers\btath_a2dp.sys [338120] =>.Qualcomm Atheros®
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros Bluetooth AVDT driver.) -- C:\Windows\System32\drivers\btath_avdt.sys [116424] =>.Qualcomm Atheros®
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros BUS driver.) -- C:\Windows\System32\drivers\btath_bus.sys [35016] =>.Qualcomm Atheros®
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_flt.sys [89800] =>.Qualcomm Atheros®
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [179432] =>.Atheros Communications Inc.®
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros FILTER driver.) -- C:\Windows\System32\drivers\btath_lwflt.sys [77464] =>.Atheros Communications Inc.®
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros AVRCP driver.) -- C:\Windows\System32\drivers\btath_rcp.sys [137928] =>.Qualcomm Atheros®
O58 - SDL:2014/02/25 22:53:00 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [597192] =>.Qualcomm Atheros®
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2011/04/26 21:34:24 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2015/04/18 03:06:24 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [195056] =>.Tonec Inc.®
O58 - SDL:2014/01/09 11:09:50 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4220416] =>.Intel Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:19:25 A . (...) -- C:\Windows\System32\drivers\intelppm.sys [62464]
O58 - SDL:2010/11/21 05:24:27 A . (...) -- C:\Windows\System32\drivers\ipfltdrv.sys [82944]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\IPMIDrv.sys [78848]
O58 - SDL:2009/07/14 02:10:03 A . (...) -- C:\Windows\System32\drivers\ipnat.sys [116224]
O58 - SDL:2009/07/14 02:09:02 A . (...) -- C:\Windows\System32\drivers\irda.sys [120320]
O58 - SDL:2009/07/14 02:08:59 A . (...) -- C:\Windows\System32\drivers\irenum.sys [17920]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\isapnp.sys [20544]
O58 - SDL:2014/08/25 12:49:22 A . (...) -- C:\Windows\System32\drivers\iusb3hcs.sys [20464]
O58 - SDL:2014/08/25 12:49:14 A . (...) -- C:\Windows\System32\drivers\iusb3hub.sys [383984]
O58 - SDL:2014/08/25 12:49:14 A . (...) -- C:\Windows\System32\drivers\iusb3xhc.sys [795120]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\kbdclass.sys [50768]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\kbdhid.sys [33280]
O58 - SDL:2010/11/21 05:24:16 A . (...) -- C:\Windows\System32\drivers\ks.sys [243712]
O58 - SDL:2010/11/21 05:24:08 A . (...) -- C:\Windows\System32\drivers\ksecdd.sys [95616]
O58 - SDL:2010/11/21 05:24:08 A . (...) -- C:\Windows\System32\drivers\ksecpkg.sys [152960]
O58 - SDL:2009/07/14 02:00:19 A . (...) -- C:\Windows\System32\drivers\ksthunk.sys [20992]
O58 - SDL:2016/09/07 05:04:06 A . (.WinMount International Inc - WinMount Driver for x64.) -- C:\Windows\System32\drivers\KuaiZipDrive.sys [92872] =>.Superfluous.Tencent
O58 - SDL:2009/07/14 02:08:51 A . (...) -- C:\Windows\System32\drivers\lltdio.sys [60928]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\lsi_fc.sys [114752]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\lsi_sas.sys [106560]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776]
O58 - SDL:2009/07/14 01:26:13 A . (...) -- C:\Windows\System32\drivers\luafv.sys [113152]
O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation®
O58 - SDL:2016/09/07 16:10:55 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 02:01:06 A . (...) -- C:\Windows\System32\drivers\mcd.sys [22016]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\megasas.sys [35392]
O58 - SDL:2009/07/14 03:48:04 A . (...) -- C:\Windows\System32\drivers\MegaSR.sys [284736]
O58 - SDL:2009/07/14 02:10:48 A . (...) -- C:\Windows\System32\drivers\modem.sys [40448]
O58 - SDL:2009/07/14 01:38:52 A . (...) -- C:\Windows\System32\drivers\monitor.sys [30208]
O58 - SDL:2009/07/14 03:48:27 A . (...) -- C:\Windows\System32\drivers\mouclass.sys [49216]
O58 - SDL:2009/07/14 02:00:20 A . (...) -- C:\Windows\System32\drivers\mouhid.sys [31232]
O58 - SDL:2010/11/21 05:23:53 A . (...) -- C:\Windows\System32\drivers\mountmgr.sys [94592]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\mpio.sys [155008]
O58 - SDL:2009/07/14 02:08:25 A . (...) -- C:\Windows\System32\drivers\mpsdrv.sys [77312]
O58 - SDL:2010/11/21 05:24:36 A . (...) -- C:\Windows\System32\drivers\mrxdav.sys [140800]
O58 - SDL:2011/04/25 17:41:10 A . (...) -- C:\Windows\System32\drivers\mrxsmb.sys [158208]
O58 - SDL:2011/04/25 17:41:10 A . (...) -- C:\Windows\System32\drivers\mrxsmb10.sys [287744]
O58 - SDL:2011/04/25 17:41:10 A . (...) -- C:\Windows\System32\drivers\mrxsmb20.sys [128000]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\msahci.sys [31104]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\msdsm.sys [140672]
O58 - SDL:2009/07/14 01:19:47 A . (...) -- C:\Windows\System32\drivers\msfs.sys [26112]
O58 - SDL:2009/07/14 02:06:24 A . (...) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192]
O58 - SDL:2009/07/14 03:48:27 A . (...) -- C:\Windows\System32\drivers\msisadrv.sys [15424]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\msiscsi.sys [273792]
O58 - SDL:2009/07/14 02:00:18 A . (...) -- C:\Windows\System32\drivers\mskssrv.sys [11136]
O58 - SDL:2009/07/14 02:00:17 A . (...) -- C:\Windows\System32\drivers\mspclock.sys [7168]
O58 - SDL:2009/07/14 02:00:17 A . (...) -- C:\Windows\System32\drivers\mspqm.sys [6784]
O58 - SDL:2010/11/21 05:24:15 A . (...) -- C:\Windows\System32\drivers\msrpc.sys [366976]
O58 - SDL:2009/07/14 03:48:27 A . (...) -- C:\Windows\System32\drivers\mssmbios.sys [32320]
O58 - SDL:2009/07/14 02:00:17 A . (...) -- C:\Windows\System32\drivers\mstee.sys [8064]
O58 - SDL:2009/07/14 02:02:08 A . (...) -- C:\Windows\System32\drivers\MTConfig.sys [15360]
O58 - SDL:2009/07/14 03:48:27 A . (...) -- C:\Windows\System32\drivers\mup.sys [60496]
O58 - SDL:2016/03/10 14:09:06 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [64896] =>.Malwarebytes Corporation®
O58 - SDL:2010/11/21 05:23:55 A . (...) -- C:\Windows\System32\drivers\ndis.sys [951680]
O58 - SDL:2009/07/14 02:08:13 A . (...) -- C:\Windows\System32\drivers\ndiscap.sys [35328]
O58 - SDL:2009/07/14 02:10:00 A . (...) -- C:\Windows\System32\drivers\ndistapi.sys [24064]
O58 - SDL:2010/11/21 05:24:32 A . (...) -- C:\Windows\System32\drivers\ndisuio.sys [56832]
O58 - SDL:2010/11/21 05:24:08 A . (...) -- C:\Windows\System32\drivers\ndiswan.sys [164352]
O58 - SDL:2010/11/21 05:24:14 A . (...) -- C:\Windows\System32\drivers\ndproxy.sys [57856]
O58 - SDL:2009/07/14 02:09:26 A . (...) -- C:\Windows\System32\drivers\netbios.sys [44544]
O58 - SDL:2010/11/21 05:23:51 A . (...) -- C:\Windows\System32\drivers\netbt.sys [261632]
O58 - SDL:2010/11/21 05:24:26 A . (...) -- C:\Windows\System32\drivers\netio.sys [376192]
O58 - SDL:2009/06/10 22:35:38 A . (...) -- C:\Windows\System32\drivers\netr7364.sys [707072]
O58 - SDL:2009/07/14 03:48:26 A . (...) -- C:\Windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2009/07/14 01:19:48 A . (...) -- C:\Windows\System32\drivers\npfs.sys [44032]
O58 - SDL:2009/07/14 01:21:02 A . (...) -- C:\Windows\System32\drivers\nsiproxy.sys [24576]
O58 - SDL:2011/04/26 21:34:24 A . (...) -- C:\Windows\System32\drivers\ntfs.sys [1659776]
O58 - SDL:2009/07/14 01:19:38 A . (...) -- C:\Windows\System32\drivers\null.sys [6144]
O58 - SDL:2011/04/26 21:34:24 A . (...) -- C:\Windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2011/04/26 21:34:24 A . (...) -- C:\Windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2009/07/14 03:48:26 A . (...) -- C:\Windows\System32\drivers\NV_AGP.SYS [122960]
O58 - SDL:2009/07/14 02:07:23 A . (...) -- C:\Windows\System32\drivers\nwifi.sys [318976]
O58 - SDL:2009/07/14 02:06:45 A . (...) -- C:\Windows\System32\drivers\ohci1394.sys [72832]
O58 - SDL:2010/11/21 05:24:08 A . (...) -- C:\Windows\System32\drivers\pacer.sys [131584]
O58 - SDL:2009/07/14 02:00:41 A . (...) -- C:\Windows\System32\drivers\parport.sys [97280]
O58 - SDL:2010/11/21 05:24:26 A . (...) -- C:\Windows\System32\drivers\partmgr.sys [75136]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\pci.sys [184704]
O58 - SDL:2009/07/14 03:45:45 A . (...) -- C:\Windows\System32\drivers\pciide.sys [12352]
O58 - SDL:2009/07/14 03:45:46 A . (...) -- C:\Windows\System32\drivers\pciidex.sys [48720]
O58 - SDL:2009/07/14 03:45:45 A . (...) -- C:\Windows\System32\drivers\pcmcia.sys [220752]
O58 - SDL:2009/07/14 03:45:45 A . (...) -- C:\Windows\System32\drivers\pcw.sys [50768]
O58 - SDL:2009/07/14 03:01:19 A . (...) -- C:\Windows\System32\drivers\PEAuth.sys [651264]
O58 - SDL:2009/07/14 02:06:29 A . (...) -- C:\Windows\System32\drivers\portcls.sys [230400]
O58 - SDL:2009/07/14 01:19:25 A . (...) -- C:\Windows\System32\drivers\processr.sys [60416]
O58 - SDL:2009/07/14 03:45:46 A . (...) -- C:\Windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/14 03:45:45 A . (...) -- C:\Windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2009/07/14 02:09:48 A . (...) -- C:\Windows\System32\drivers\qwavedrv.sys [46592]
O58 - SDL:2009/07/14 02:10:09 A . (...) -- C:\Windows\System32\drivers\rasacd.sys [14848]
O58 - SDL:2010/11/21 05:24:33 A . (...) -- C:\Windows\System32\drivers\rasl2tp.sys [129536]
O58 - SDL:2009/07/14 02:10:17 A . (...) -- C:\Windows\System32\drivers\raspppoe.sys [92672]
O58 - SDL:2010/11/21 05:24:33 A . (...) -- C:\Windows\System32\drivers\raspptp.sys [111104]
O58 - SDL:2009/07/14 02:10:25 A . (...) -- C:\Windows\System32\drivers\rassstp.sys [83968]
O58 - SDL:2010/11/21 05:24:08 A . (...) -- C:\Windows\System32\drivers\rdbss.sys [309248]
O58 - SDL:2009/07/14 02:17:46 A . (...) -- C:\Windows\System32\drivers\rdpbus.sys [24064]
O58 - SDL:2009/07/14 02:16:34 A . (...) -- C:\Windows\System32\drivers\RDPCDD.sys [7680]
O58 - SDL:2010/11/21 05:25:07 A . (...) -- C:\Windows\System32\drivers\rdpdr.sys [165888]
O58 - SDL:2009/07/14 02:16:34 A . (...) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680]
O58 - SDL:2009/07/14 02:16:35 A . (...) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192]
O58 - SDL:2010/11/21 05:24:29 A . (...) -- C:\Windows\System32\drivers\rdpwd.sys [210944]
O58 - SDL:2010/11/21 05:24:33 A . (...) -- C:\Windows\System32\drivers\rdyboost.sys [213888]
O58 - SDL:2009/07/14 02:06:56 A . (...) -- C:\Windows\System32\drivers\rfcomm.sys [158720]
O58 - SDL:2010/11/21 05:24:15 A . (...) -- C:\Windows\System32\drivers\rmcast.sys [146432]
O58 - SDL:2009/07/14 02:09:48 A . (...) -- C:\Windows\System32\drivers\RNDISMP.sys [41472]
O58 - SDL:2009/07/14 02:10:47 A . (...) -- C:\Windows\System32\drivers\rootmdm.sys [11264]
O58 - SDL:2009/07/14 02:08:51 A . (...) -- C:\Windows\System32\drivers\rspndr.sys [76800]
O58 - SDL:2014/06/20 04:12:22 A . (...) -- C:\Windows\System32\drivers\RtsPer.sys [506072]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\sbp2port.sys [103808]
O58 - SDL:2010/11/21 05:24:09 A . (...) -- C:\Windows\System32\drivers\scfilter.sys [29696]
O58 - SDL:2010/11/21 05:24:00 A . (...) -- C:\Windows\System32\drivers\scsiport.sys [171392]
O58 - SDL:2009/06/10 22:37:19 A . (...) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2009/07/14 02:00:33 A . (...) -- C:\Windows\System32\drivers\serenum.sys [23552]
O58 - SDL:2009/07/14 02:00:40 A . (...) -- C:\Windows\System32\drivers\serial.sys [94208]
O58 - SDL:2009/07/14 02:00:20 A . (...) -- C:\Windows\System32\drivers\sermouse.sys [26624]
O58 - SDL:2009/07/14 02:01:01 A . (...) -- C:\Windows\System32\drivers\sffdisk.sys [14336]
O58 - SDL:2009/07/14 02:01:03 A . (...) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\sffp_sd.sys [14336]
O58 - SDL:2009/07/14 02:01:02 A . (...) -- C:\Windows\System32\drivers\sfloppy.sys [16896]
O58 - SDL:2009/07/14 03:45:45 A . (...) -- C:\Windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/14 03:45:46 A . (...) -- C:\Windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2009/07/14 02:09:09 A . (...) -- C:\Windows\System32\drivers\smb.sys [93184]
O58 - SDL:2009/07/14 02:00:35 A . (...) -- C:\Windows\System32\drivers\smclib.sys [20992]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\spldr.sys [19008]
O58 - SDL:2009/06/10 22:48:43 A . (...) -- C:\Windows\System32\drivers\spsys.sys [426496]
O58 - SDL:2011/04/25 17:39:58 A . (...) -- C:\Windows\System32\drivers\srv.sys [467456]
O58 - SDL:2011/04/25 17:39:58 A . (...) -- C:\Windows\System32\drivers\srv2.sys [411648]
O58 - SDL:2011/04/25 17:39:58 A . (...) -- C:\Windows\System32\drivers\srvnet.sys [167936]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2011/04/26 21:34:24 A . (...) -- C:\Windows\System32\drivers\storport.sys [189824]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\storvsc.sys [34688]
O58 - SDL:2009/07/14 02:06:18 A . (...) -- C:\Windows\System32\drivers\stream.sys [68864]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\swenum.sys [12496]
O58 - SDL:2009/07/14 02:01:04 A . (...) -- C:\Windows\System32\drivers\tape.sys [29184]
O58 - SDL:2010/11/21 05:24:08 A . (...) -- C:\Windows\System32\drivers\tcpip.sys [1924480]
O58 - SDL:2010/11/21 05:23:52 A . (...) -- C:\Windows\System32\drivers\tcpipreg.sys [45056]
O58 - SDL:2010/11/21 05:24:01 A . (...) -- C:\Windows\System32\drivers\tdi.sys [26624]
O58 - SDL:2009/07/14 02:16:32 A . (...) -- C:\Windows\System32\drivers\tdpipe.sys [15872]
O58 - SDL:2009/07/14 02:16:32 A . (...) -- C:\Windows\System32\drivers\tdtcp.sys [23552]
O58 - SDL:2010/11/21 05:24:32 A . (...) -- C:\Windows\System32\drivers\tdx.sys [119296]
O58 - SDL:2013/12/10 01:27:36 A . (...) -- C:\Windows\System32\drivers\TeeDriverx64.sys [100312]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\termdd.sys [63360]
O58 - SDL:2010/11/21 05:23:51 A . (...) -- C:\Windows\System32\drivers\tssecsrv.sys [39424]
O58 - SDL:2010/11/21 05:24:33 A . (...) -- C:\Windows\System32\drivers\TsUsbFlt.sys [59392]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\TsUsbGD.sys [31232]
O58 - SDL:2010/11/21 05:24:15 A . (...) -- C:\Windows\System32\drivers\tunnel.sys [125440]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\UAGP35.SYS [64080]
O58 - SDL:2010/11/21 05:23:55 A . (...) -- C:\Windows\System32\drivers\udfs.sys [328192]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [64592]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\umbus.sys [48640]
O58 - SDL:2009/07/14 02:06:52 A . (...) -- C:\Windows\System32\drivers\umpass.sys [9728]
O58 - SDL:2009/07/14 02:09:49 A . (...) -- C:\Windows\System32\drivers\usb8023.sys [19968]
O58 - SDL:2010/11/21 05:24:11 A . (...) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\usbccgp.sys [98816]
O58 - SDL:2009/07/14 02:06:37 A . (...) -- C:\Windows\System32\drivers\usbcir.sys [100352]
O58 - SDL:2009/07/14 02:06:23 A . (...) -- C:\Windows\System32\drivers\usbd.sys [7936]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\usbehci.sys [52224]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\usbhub.sys [343040]
O58 - SDL:2009/07/14 02:06:30 A . (...) -- C:\Windows\System32\drivers\usbohci.sys [25600]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\usbport.sys [325120]
O58 - SDL:2009/07/14 02:38:18 A . (...) -- C:\Windows\System32\drivers\usbprint.sys [25088]
O58 - SDL:2010/11/21 05:24:39 A . (...) -- C:\Windows\System32\drivers\usbrpm.sys [31744]
O58 - SDL:2011/04/26 21:34:24 A . (...) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648]
O58 - SDL:2009/07/14 02:06:27 A . (...) -- C:\Windows\System32\drivers\usbuhci.sys [30720]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\usbvideo.sys [184960]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\vdrvroot.sys [36432]
O58 - SDL:2009/07/14 01:38:47 A . (...) -- C:\Windows\System32\drivers\vga.sys [29184]
O58 - SDL:2009/07/14 01:38:47 A . (...) -- C:\Windows\System32\drivers\vgapnp.sys [29184]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\vhdmp.sys [215936]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2009/07/14 01:38:51 A . (...) -- C:\Windows\System32\drivers\videoprt.sys [129024]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\vmbus.sys [199552]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\VMBusHID.sys [21760]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\vms3cap.sys [6656]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\vmstorfl.sys [46464]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\volmgr.sys [71552]
O58 - SDL:2010/11/21 05:24:15 A . (...) -- C:\Windows\System32\drivers\volmgrx.sys [363392]
O58 - SDL:2010/11/21 05:23:47 A . (...) -- C:\Windows\System32\drivers\volsnap.sys [295808]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\vsmraid.sys [161872]
O58 - SDL:2009/07/14 02:07:21 A . (...) -- C:\Windows\System32\drivers\vwifibus.sys [24576]
O58 - SDL:2009/07/14 02:07:22 A . (...) -- C:\Windows\System32\drivers\vwififlt.sys [59904]
O58 - SDL:2009/07/14 02:07:28 A . (...) -- C:\Windows\System32\drivers\vwifimp.sys [17920]
O58 - SDL:2009/07/14 02:02:07 A . (...) -- C:\Windows\System32\drivers\wacompen.sys [27776]
O58 - SDL:2010/11/21 05:24:11 A . (...) -- C:\Windows\System32\drivers\wanarp.sys [88576]
O58 - SDL:2009/07/14 01:37:35 A . (...) -- C:\Windows\System32\drivers\watchdog.sys [42496]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\wd.sys [21056]
O58 - SDL:2012/07/26 06:55:47 A . (...) -- C:\Windows\System32\drivers\Wdf01000.sys [785512]
O58 - SDL:2012/07/26 06:55:47 A . (...) -- C:\Windows\System32\drivers\WdfLdr.sys [54376]
O58 - SDL:2009/07/14 02:09:26 A . (...) -- C:\Windows\System32\drivers\wfplwf.sys [12800]
O58 - SDL:2010/11/21 05:23:48 A . (...) -- C:\Windows\System32\drivers\winhv.sys [52096]
O58 - SDL:2009/07/14 01:31:02 A . (...) -- C:\Windows\System32\drivers\wmiacpi.sys [14336]
O58 - SDL:2009/07/14 03:45:55 A . (...) -- C:\Windows\System32\drivers\wmilib.sys [16464]
O58 - SDL:2009/07/14 02:10:33 A . (...) -- C:\Windows\System32\drivers\ws2ifsl.sys [21504]
O58 - SDL:2010/11/21 05:23:50 A . (...) -- C:\Windows\System32\drivers\WUDFPf.sys [112128]
O58 - SDL:2010/11/21 05:23:50 A . (...) -- C:\Windows\System32\drivers\WUDFRd.sys [172544]
O58 - SDL:2009/07/14 03:52:31 A . (...) -- C:\Windows\System32\clfs.sys [367696]
O58 - SDL:2011/04/25 17:39:04 A . (...) -- C:\Windows\System32\win32k.sys [3135488]
....................................................................................................................

åäÇ ÇáÓØÑ íÔíÑ Çáì ÇÎÑ ÇáãáÝÇÊ ÇáÊí Êã ÇäÔÇÄåÇ Ýí ÇáÍÇÓÈ

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (14) - 51s
O61 - LFC: 2016/09/07 03:04:03 A . (..) -- C:\Users\ben chakell\Documents\KONAMI\Pro Evolution Soccer 2015\save\SYSTEM.bin [136577]
O61 - LFC: 2016/09/06 23:58:22 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Profiles\reirotfudogethajodom\yandex-vb\backendStorage\logo-sub\youtube.com [791]
O61 - LFC: 2016/09/06 23:58:23 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Profiles\reirotfudogethajodom\yandex-vb\backendStorage\logo\vk.com [4134]
O61 - LFC: 2016/09/06 23:58:22 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Profiles\reirotfudogethajodom\yandex-vb\backendStorage\logo\youtube.com [1351]
O61 - LFC: 2016/09/06 23:58:20 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Profiles\reirotfudogethajodom\yandex-vb\backendStorage\favicons\gametop.com [156]
O61 - LFC: 2016/09/06 23:58:23 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Profiles\reirotfudogethajodom\yandex-vb\backendStorage\favicons\vk.com [366]
O61 - LFC: 2016/09/06 23:58:26 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Profiles\reirotfudogethajodom\yandex-vb\backendStorage\favicons\youtube.com [478]
O61 - LFC: 2016/09/06 23:58:22 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\yandex-vb\backendStorage\logo-sub\youtube.com [791]
O61 - LFC: 2016/09/06 23:58:23 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\yandex-vb\backendStorage\logo\vk.com [4134]
O61 - LFC: 2016/09/06 23:58:22 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\yandex-vb\backendStorage\logo\youtube.com [1351]
O61 - LFC: 2016/09/06 23:58:20 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\yandex-vb\backendStorage\favicons\gametop.com [156]
O61 - LFC: 2016/09/06 23:58:23 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\yandex-vb\backendStorage\favicons\vk.com [366]
O61 - LFC: 2016/09/06 23:58:26 A . (..) -- C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\yandex-vb\backendStorage\favicons\youtube.com [478]
O61 - LFC: 2016/09/07 19:55:20 A . (..) -- C:\Users\ben chakell\AppData\Local\79B99FEE-1473278109-E411-85C7-F0761C78D3C2\Uninstall.exe [51270]
..................................................................................................................................

åäÇ ÇáÓØÑ ÊÇÈÚ áÚãáíÇÊ ãÑÊÈØÉ ÈÇáäÙÇã íÞæã ÈåÇ ÇáæíäÏæÒ Úä ØÑíÞ command prompt
Çæ ÇáÇãÑ ÇáãÚÑæÝ
cmd
ÓáíãÉ


---\\ Associations Shell Spawning (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
..............................................................................................................................

åäÇ ÇáÇÓØÑ ÎÇÕÉ ÊÙåÑ ÇáãÊÕÝÍÇÊ ÇáãËÈÊÉ Ýí ÇáÍÇÓÈ Menu de démarrage Internet

åäÇß ÇÕÇÈÉ PUP.Optional.ChedotBrowser
---\\ Menu de démarrage Internet (16) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.The Chedot Authors - Chedot.) -- C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.The Chedot Authors - Chedot.) -- C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.The Chedot Authors - Chedot.) -- C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.The Chedot Authors - Chedot.) -- C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
............................................................................................

åäÇ ÇáÓØÑ íÙåÑ áäÇ ÇÕÇÈÇÊ ÎÇØÝ ÇáãÊÕÝÍ æÇáÇÏæíÑÇÊ ÇáÊí ÊÙåÑ Ýí ÇáÇÓØÑ R
åäÇ ÓØÑ ãÕÇÈ

---\\ Recherche d'infection sur les navigateurs (3) - 8s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] ielnksrch - (Search the web) - http://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBP-OqRkK_4g5H3zXx0q0R8gn5OyIpimjoinfQ0HBzHIaGKar5SDsInM5hF6Ld3so5SMAcdzKCCC84B5ZzZKvx-s1jwMSM5EeS6hsaQLd5aaRznGBX_HBclhTqIkZPKqJ2QsTzfIrsMPhlSYIPWjApLJoZ_dWZGLhyRjRLS7_3F0jcXFRa8EoHhLfzTcw,,&q={searchTerms} =>.Superfluous.Linkury
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/
...........................................................................................




---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [853504] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [679424] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [680960] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2477536] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [209920] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation
................................................................................................................



---\\ Liste des exceptions du parefeu Windows (19) - 7s
O87 - FAEL: "{4A4F7044-1571-42E0-960D-6127E0E887CE}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe (.not file.)
O87 - FAEL: "{0EE44A82-AC66-48E0-8C38-958E1D20B7AE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\Spark.exe (.not file.)
O87 - FAEL: "{64C2E7E1-BB97-45F7-9281-30034DFE9DF1}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\bdtray.exe (.not file.)
O87 - FAEL: "{E3C85C70-9918-48C7-A497-CAA0A78CC3D3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark\bdtray.exe (.not file.)
O87 - FAEL: "TCP Query User{8F3C2E65-6877-423C-8B0C-BCAE8199AA15}C:\windows\installer\{a2e032b5-e45e-5ae5-f632-2221d5a1a429}\syshost.exe" [In-None-P6-TRUE] .(...) -- C:\windows\installer\{a2e032b5-e45e-5ae5-f632-2221d5a1a429}\syshost.exe
O87 - FAEL: "UDP Query User{28EAD73F-B6E1-473D-92BD-F5598EEBEA52}C:\windows\installer\{a2e032b5-e45e-5ae5-f632-2221d5a1a429}\syshost.exe" [In-None-P17-TRUE] .(...) -- C:\windows\installer\{a2e032b5-e45e-5ae5-f632-2221d5a1a429}\syshost.exe
O87 - FAEL: "TCP Query User{683A6489-0D5E-4E02-986E-617127B1DE96}C:\program files (x86)\gametop.com\star raid\wrapgame.exe" [In-None-P6-TRUE] .(."EA Group" - Star Ride.) -- C:\program files (x86)\gametop.com\star raid\wrapgame.exe
O87 - FAEL: "UDP Query User{2D075298-B8CA-4A1A-BFEA-AF24C5C83DC7}C:\program files (x86)\gametop.com\star raid\wrapgame.exe" [In-None-P17-TRUE] .(."EA Group" - Star Ride.) -- C:\program files (x86)\gametop.com\star raid\wrapgame.exe
O87 - FAEL: "{CBB14C62-EF0A-4200-BC90-847B11F4464E}" [In-None-P17-TRUE] .(.The Chedot Authors - Chedot.) -- C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
O87 - FAEL: "TCP Query User{BF85E2B1-B1FE-4EDE-8A77-504B9F8051B1}C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifserver.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifserver.exe
O87 - FAEL: "UDP Query User{F566E81A-B37B-4464-82F2-E2CED058E12D}C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifserver.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifserver.exe
O87 - FAEL: "TCP Query User{E5C8C39A-6009-41CB-9605-BB82BC71A205}C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifclient.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifclient.exe
O87 - FAEL: "UDP Query User{AC1777FD-DED3-438C-991F-9871D7C2B6B2}C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifclient.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cure productions\iron fist 1.5.5\bin\ifclient.exe
O87 - FAEL: "TCP Query User{C50A68FF-FF2D-4631-A3DE-823CD5AB0CDC}C:\program files (x86)\gametop.com\fire and forget\wrapgame.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\gametop.com\fire and forget\wrapgame.exe
O87 - FAEL: "UDP Query User{AFC7D679-F9D8-41D9-BCAE-9675693E8D01}C:\program files (x86)\gametop.com\fire and forget\wrapgame.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\gametop.com\fire and forget\wrapgame.exe
O87 - FAEL: "{154404F9-5B25-455E-984F-C2B68CE064C0}" [In-None-P6-TRUE] .(.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
O87 - FAEL: "{910E4D7F-CDC4-49D0-A2E6-D72F7BDB6D12}" [In-None-P17-TRUE] .(.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
O87 - FAEL: "{5D98534F-D2ED-4407-AFAC-B98880E4F718}" [In-None-P6-TRUE] .(.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
O87 - FAEL: "{A267D841-9A8D-400E-9D30-BB7ECD00CA92}" [In-None-P17-TRUE] .(.TMRG, Inc. - Relevant-Knowledge.) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe {5DF4DBF0974A7733E43AAA5A09FCB55C} =>PUP.Optional.RelevantKnowledge
......................................................................................




---\\ Recherche de clés de registre Tracing (12) - 7s
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\chedot_RASAPI32 =>PUP.Optional.ChedotBrowser
HKLM\SOFTWARE\Microsoft\Tracing\chedot_RASMANCS =>PUP.Optional.ChedotBrowser
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\CloudPrinter_RASAPI32 =>.Superfluous.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\CloudPrinter_RASMANCS =>.Superfluous.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DCHP_RASAPI32 =>PUP.Optional.Salus
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DCHP_RASMANCS =>PUP.Optional.Salus
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerApp_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerApp_RASMANCS =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASMANCS =>PUP.Optional.FLVPlayer
.......................................................



---\\ Scan Additionnel (199) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\BSSoEasySvc3 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\SOEasy.3\SSoEasyySvc3.exe =>.Superfluous.SoEasyHelper
HKLM\SYSTEM\CurrentControlSet\Services\BSSoEasySvc4 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\SOEasy.4\SSoEasyySvc4.exe =>.Superfluous.SoEasyHelper
HKLM\SYSTEM\CurrentControlSet\Services\BSSoEasySvc5 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\SOEasy.5\SSoEasyySvc5.exe =>.Superfluous.SoEasyHelper
HKLM\SYSTEM\CurrentControlSet\Services\BSSoEasySvc6 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\SOEasy.6\SSoEasyySvc6.exe =>.Superfluous.SoEasyHelper
HKLM\SYSTEM\CurrentControlSet\Services\BTJILPIc =>PUP.Optional.WebShield
C:\Program Files (x86)\WebShield\WebShield.exe =>PUP.Optional.WebShield
HKLM\SYSTEM\CurrentControlSet\Services\CloudPrinter =>.Superfluous.Linkury
C:\ProgramData\CloudPrinter\CloudPrinter.exe =>.Superfluous.Linkury
HKLM\SYSTEM\CurrentControlSet\Services\DCHP =>PUP.Optional.Salus
C:\ProgramData\DCHP\DCHP.exe =>PUP.Optional.Salus
HKLM\SYSTEM\CurrentControlSet\Services\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
C:\Program Files (x86)\RelevantKnowledge\rlservice.exe =>PUP.Optional.RelevantKnowledge
HKLM\SYSTEM\CurrentControlSet\Services\Trescof =>PUP.Optional.Salus
C:\ProgramData\Trescof\Trescof.exe =>PUP.Optional.Salus
HKLM\SYSTEM\CurrentControlSet\Services\xyrirege =>PUP.Optional.CrossRider
C:\Program Files (x86)\79B99FEE-1473216853-E411-85C7-F0761C78D3C2\knsg5D8E.tmpfs =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\zigipyro =>PUP.Optional.CrossRider
C:\Users\ben chakell\AppData\Local\79B99FEE-1473278109-E411-85C7-F0761C78D3C2\qnsm653A.tmp =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\psv_AlphaDonplus =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_AlphaWarm =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Anlam =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Bioing =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Canex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Cantrax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Condom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Conflex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Dalt-Is =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Damnix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_DomStrong =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Domtop =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Dondox =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Dong-Job =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_DonNix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Donstrong =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Doublecore =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Duo-Fan =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Duolux =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Fax-Dax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Faxhome =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Fin-Is =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Fix-Core =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Fix-Find =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Fixkix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Freetouch =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Freshbam =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Freshing =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Funfind =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Geo-Kix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Geonamdom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Good-Light =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Greendex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Hatron =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Hold-Dax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Holdtone =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Hotdax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Hotdom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Icetone =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Icetrax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Inis =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_ItDom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Itkix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Jayflex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Jobdox =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Jobtax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Joyex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Kancom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Kandex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_KinIt =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_KonkDox =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Laeco =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Lam-Dox =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_LaString =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Lattip =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Lightex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Lotfresh =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Medcom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Move-Core =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_MoveTozap =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Namcom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_NewZoofix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Ontofind =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_OpeTinfax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Pluskeykix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Quoity =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Quotam =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Quote-Dex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Quotefax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Rankhome =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Rantop =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Redax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_RedNix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Refind =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Ronlight =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Ronphase =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Runtech =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Saltfix =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Sanlight =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Sanron =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_SanTough =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Singledex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Soft-Tip =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Solocore =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Sonfresh =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Strongfresh =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Subjob =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Sumlab =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_SumSolojob =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Sumstatflex =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Superair =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Superfan =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_SuperRunhome =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Tampdamtone =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_TampHome =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Temp-Find =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Tontone =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Touchdox =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Transfax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Treedom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Treelab =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Trisair =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Trisfresh =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_UniTraxtip =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Vivatrax =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Voyacom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_X-Cof =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Yearcom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Zaamfind =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Zimtip =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_ZoneTough =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Zoomcom =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_Zootam =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_ZumAir =>PUP.Optional.Salus
C:\Windows\System32\Tasks\psv_ZumTex =>PUP.Optional.Salus
C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe =>PUP.Optional.RelevantKnowledge
C:\Program Files (x86)\RelevantKnowledge\rlvknlg64.exe =>PUP.Optional.RelevantKnowledge
C:\Program Files (x86)\RelevantKnowledge\rlvknlg32.exe =>PUP.Optional.RelevantKnowledge
C:\Users\ben chakell\AppData\Roaming\Mozilla\Firefox\Profiles\nahd6ha2.default\searchplugins\findit.xml =>PUP.Optional.SmartBar
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\findit.xml =>PUP.Optional.SmartBar
C:\Users\ben chakell\AppData\Local\Chedot\Application\chedot.exe =>PUP.Optional.ChedotBrowser
C:\ProgramData\Trescof\Qvoity.dll =>PUP.Optional.Salus
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Goodgame Empire_is1 =>.Superfluous.GoodGameEmpire
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{096646B4-BE14-4259-915D-9CACD4B81036} =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{d08d9f98-1c78-4704-87e6-368b0023d831} =>PUP.Optional.RelevantKnowledge
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Goodgame Empire_is1 =>.Superfluous.GoodGameEmpire
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{096646B4-BE14-4259-915D-9CACD4B81036} =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{d08d9f98-1c78-4704-87e6-368b0023d831} =>PUP.Optional.RelevantKnowledge
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Chedot =>PUP.Optional.ChedotBrowser
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FlvPlayer =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\ByteFence =>.Superfluous.ByteFence
HKLM\SOFTWARE\Wow6432Node\C4E97DBDB13BAC89954320269024036F =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\FlvPlayer =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\mtTrescof =>PUP.Optional.Salus
HKLM\SOFTWARE\Wow6432Node\youndooSoftware =>PUP.Optional.Youndoo
HKCU\SOFTWARE\23206df3b5fc7205 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\AutoTime =>Adware.TopTools
HKCU\SOFTWARE\ByteFence =>.Superfluous.ByteFence
HKCU\SOFTWARE\C4E97DBDB13BAC89954320269024036F =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Chedot =>PUP.Optional.ChedotBrowser
HKCU\SOFTWARE\ICSW1.18 =>Adware.InstallCore
HKCU\SOFTWARE\mtTrescof =>PUP.Optional.Salus
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
C:\Program Files (x86)\79B99FEE-1473216853-E411-85C7-F0761C78D3C2 =>PUP.Optional.CrossRider
C:\Program Files (x86)\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
C:\Program Files (x86)\SOEasy.3 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\SOEasy.4 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\SOEasy.5 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\SOEasy.6 =>.Superfluous.SoEasyHelper
C:\Program Files (x86)\WeatherChickn =>.Superfluous.WeatherChickn
C:\Program Files (x86)\WebShield =>PUP.Optional.WebShield
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware =>.Superfluous.ByteFence
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer =>PUP.Optional.FLVPlayer
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
C:\ProgramData\ByteFence =>.Superfluous.ByteFence
C:\ProgramData\CloudPrinter =>.Superfluous.Linkury
C:\ProgramData\DCHP =>PUP.Optional.Salus
C:\ProgramData\Trescof =>PUP.Optional.Salus
C:\ProgramData\Trescofs =>PUP.Optional.Salus
C:\Users\ben chakell\AppData\Roaming\FlvPlayer =>PUP.Optional.FLVPlayer
C:\Users\ben chakell\AppData\Local\app =>PUP.Optional.CrossRider
C:\Windows\Prefetch\BYTEFENCE.EXE-FAC31F78.pf =>.Superfluous.ByteFence
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\ielnksrch =>.Superfluous.Linkury
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence
HKLM64\SOFTWARE\Microsoft\Tracing\chedot_RASAPI32 =>PUP.Optional.ChedotBrowser
HKLM64\SOFTWARE\Microsoft\Tracing\chedot_RASMANCS =>PUP.Optional.ChedotBrowser
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\CloudPrinter_RASAPI32 =>.Superfluous.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\CloudPrinter_RASMANCS =>.Superfluous.Linkury
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DCHP_RASAPI32 =>PUP.Optional.Salus
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\DCHP_RASMANCS =>PUP.Optional.Salus
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerApp_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerApp_RASMANCS =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASAPI32 =>PUP.Optional.FLVPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\FlvPlayerSetup_RASMANCS =>PUP.Optional.FLVPlayer
C:\Users\ben chakell\AppData\Roaming\StringHottop.exe =>Adware.Suspect
C:\Users\ben chakell\AppData\Roaming\Superrunplus.exe =>Adware.Suspect

..........................................................



---\\ Récapitulatif des éléments trouvés sur votre station (21) - 0s
https://www.anti-malware.top/2016/08/27/superfluous-soeasyhelper/ =>.Superfluous.SoEasyHelper
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.WebShield
https://www.anti-malware.top/2016/08/02/superfluous-linkury/ =>.Superfluous.Linkury
https://www.nicolascoolman.com/fr/pup-salus/ =>PUP.Optional.Salus
https://www.nicolascoolman.com/fr/adware-relevantknowledge/ =>PUP.Optional.RelevantKnowledge
https://www.anti-malware.top/2016/04/29/superfluous-bytefence/ =>.Superfluous.ByteFence
https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider
https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.AkamaiHD
https://www.nicolascoolman.com/fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
https://www.nicolascoolman.com/fr/pup-optional-chedotbrowser/ =>PUP.Optional.ChedotBrowser
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.GoodGameEmpire
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.FLVPlayer
https://www.anti-malware.top/2016/06/18/superfluous-youndoo/ =>PUP.Optional.Youndoo
https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Heuristic
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>Adware.TopTools
https://www.anti-malware.top/2016/04/22/adware-installcore/ =>Adware.InstallCore
https://www.anti-malware.top/2016/04/23/superfluous-weatherchickn/ =>.Superfluous.WeatherChickn
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>Rootkit.Necurs
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Chedot
https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>Adware.Suspect

~ End of the scan, 29727 items in 00h08mn31s (1773)
Read more at http://www.cjoint.com/c/FIhtpkUjju0#otF4wFyYXoJvhT4k.99

Publicité


Signaler le contenu de ce document

Publicité