cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.5.7.98 By Nicolas Coolman (2018/05/07)
~ Run by YOUCEF (Administrator) (2018/05/07 20:23:06)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\YOUCEF\Desktop\ZHPDiag.txt
~ Report: C:\Users\YOUCEF\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ System startup: Normal (Normal boot)
Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ Internet Browsers (3) - 0s
~ GCIE: Google Chrome v66.0.3359.139
~ MFIE: Mozilla Firefox 59.0.2 (x86 en-US)
~ MSIE: Internet Explorer v11.0.9600.18921

---\\ Windows Product Information (4) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ System protection software (3) - 0s
Kaspersky Total Security v18.0.0.405 (Protection)
Kaspersky Secure Connection v18.0.0.405 (Protection)
Malwarebytes Anti-Malware version 2.2.1.1043 (Protection)

---\\ ANTI-MALWARE SOFTWARE (1) - 0s
~ UsbFix Anti-Malware Premium (Anti-Malware)

---\\ Surveillance software (3) - 0s
~ Adobe Flash Player 29 ActiveX (Surveillance)
~ Adobe Flash Player 29 NPAPI (Surveillance)
~ Adobe Flash Player 29 PPAPI (Surveillance)

---\\ System optimization software (2) - 0s
~ CCleaner v5.30 (Optimisation)
~ Driver Booster 4.5 v4.5.0 (Optimisation)

---\\ Sharing software PeerToPeer (1) - 0s
~ µTorrent v3.5.3.44358 (P2P)

---\\ Informations on the system (6) - 0s
~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3466.452 MB (45% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 43 GB (43%) free of 99 GB : OK =>.Disk Space

---\\ Connection to the system mode (3) - 0s
~ Computer Name: YOUCEF-PC
~ User Name: YOUCEF
~ Logged in as Administrator

---\\ Enumeration of the disk units (2) - 0s
~ Drive C: has 43 GB free of 99 GB (System)
~ Drive D: has 69 GB free of 205 GB

---\\ State of the Windows Security Center (14) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Search Generic System Files (25) - 1s
[MD5.6DDCA324434FFA506CF7DC4E51DB7935] - 29/08/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2972672] =>.Microsoft Corporation
[MD5.C648901695E275C8F2AD04B687A68CE2] - 30/03/2017 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [45056] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation
[MD5.E5190B88AB3F96E605F67C0903D6ACBE] - 22/03/2018 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [2767872] =>.Microsoft Corporation
[MD5.52449FD429D6053B78AE564DEF303870] - 17/07/2014 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation
[MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.F582FC7976F1248AC5FBD6875C626B41] - 04/04/2017 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation
[MD5.2962AB36BF231188BBECF58A5E93798D] - 01/01/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [81408] =>.Microsoft Corporation
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation
[MD5.ED96A1960349C16147A8CC3F3BC95E6D] - 12/01/2018 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [124416] =>.Microsoft Corporation
[MD5.2E226E666C6E11DC8C850071A90BE2DC] - 11/08/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [188928] =>.Microsoft Corporation
[MD5.F0CCA0FFC94FE93C03E00A6646D6A3D1] - 01/01/2018 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1214184] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation
[MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation
[MD5.8F143F86FDD8CF4F7BD25973C5983F9D] - 29/07/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation
[MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows®

---\\ Non Microsoft non disabled Windows Services (11) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Atoll Server (AtollCalcSvr) . (.Forsk - Atoll calculation server module.) - C:\Program Files\Forsk\Atoll\AtollSvr.exe
O23 - Service: Kaspersky Anti-Virus Service 18.0.0 (AVP18.0.0) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\avp.exe =>.Kaspersky Lab®
O23 - Service: Defragmentation-Service (DfSdkS) . (.mst software GmbH, Germany - mst Defrag SDK Service.) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\DfSdkS.exe =>.mst software GmbH, Germany
O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe =>.MAGIX AG
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Sentinel LDK License Manager (hasplms) . (.SafeNet, Inc. - License Manager.) - C:\Windows\System32\hasplms.exe =>.SafeNet, Inc.®
O23 - Service: Kaspersky Secure Connection Service 2.0.0 (KSDE2.0.0) . (.AO Kaspersky Lab - Kaspersky Secure Connection.) - C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe =>.Kaspersky Lab®
O23 - Service: TEMS Discovery Drive Route Data Processor (TDDRDataProcessor) . (.InfoVista - TEMS Discovery Data processor service.) - C:\Program Files\TEMS\TEMS Discovery Device\TdDpService.exe
O23 - Service: TEMS Mediator Service (TEMSMediatorService) . (.InfoVista - Mediator.Service.) - C:\Program Files\TEMS\TEMS Mediator\Application\Mediator.Service.exe {29802754CBD728F8D880A345F76D7BAF}
O23 - Service: Ashampoo LiveTuner 2 Service (WO_LiveService2) . (...) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\LiveTunerService.exe =>.Ashampoo GmbH & Co. KG®

---\\ Services not Microsoft (SR=Run, SS=Stop) (28) - 10s
SR - Auto [27/07/2017] [ 82640] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Disabl [05/05/2018] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Disabl [23/08/2017] [ 2257016] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SS - Disabl [07/09/2017] [ 67384] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SS - Auto [01/03/2011] [ 646144] Atoll Server (AtollCalcSvr) . (.Forsk.) - C:\Program Files\Forsk\Atoll\AtollSvr.exe
SR - Auto [24/01/2017] [ 354672] Kaspersky Anti-Virus Service 18.0.0 (AVP18.0.0) . (.AO Kaspersky Lab.) - C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\avp.exe =>.Kaspersky Lab®
SS - Disabl [02/03/2016] [ 290224] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [24/08/2009] [ 406016] Defragmentation-Service (DfSdkS) . (.mst software GmbH, Germany.) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\DfSdkS.exe =>.mst software GmbH, Germany
SR - Auto [24/05/2011] [ 1840128] FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG.) - C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe =>.MAGIX AG
SS - Disabl [26/04/2011] [ 2702848] Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) . (.MAGIX®.) - C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe =>.MAGIX®
SS - Disabl [18/08/2017] [ 1115904] FlexNet Licensing Service (FlexNet Licensing Service) . (.Flexera Software LLC.) - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe =>.Flexera Software LLC®
SS - Auto [14/08/2017] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [14/08/2017] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [14/09/2016] [ 4647248] Sentinel LDK License Manager (hasplms) . (.SafeNet, Inc..) - C:\Windows\System32\hasplms.exe =>.SafeNet, Inc.®
SS - Disabl [26/07/2017] [ 155848] HuaweiHiSuiteService.exe (HuaweiHiSuiteService.exe) . (...) - C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe
SS - Disabl [06/09/2017] [ 685136] Lenovo PM Service (IBMPMSVC) . (.Lenovo..) - C:\Windows\System32\ibmpmsvc.exe =>.Lenovo®
SR - Auto [24/01/2017] [ 354672] Kaspersky Secure Connection Service 2.0.0 (KSDE2.0.0) . (.AO Kaspersky Lab.) - C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe =>.Kaspersky Lab®
SS - Disabl [06/09/2017] [ 747088] Lenovo Platform Service (LPlatSvc) . (.Lenovo..) - C:\Windows\System32\LPlatSvc.exe =>.Lenovo®
SS - Disabl [01/04/2018] [ 174544] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Disabl [21/12/2016] [ 1413696] O&O Defrag (OODefragAgent) . (.O&O Software GmbH.) - C:\Program Files\OO Software\Defrag\oodag.exe =>.O&O Software GmbH®
SS - Disabl [01/06/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Disabl [15/08/2017] [ 220248] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
SS - Auto [09/11/2017] [ 41984] TEMS Discovery Drive Route Data Processor (TDDRDataProcessor) . (.InfoVista.) - C:\Program Files\TEMS\TEMS Discovery Device\TdDpService.exe
SS - Demand [09/11/2017] [ 38912] TEMS Discovery Drive Route database project management Serv (TDDRDBManager) . (.InfoVista.) - C:\Program Files\TEMS\TEMS Discovery Device\TdDbService.exe
SS - Demand [26/05/2016] [ 50688] TEMS Network Monitor Service (TEMS Network Monitor Service) . (.Ascom.) - C:\Program Files\Ascom\TEMS Products\TEMS Investigation 16\Application\TEMS.Netmon.Service.exe
SR - Auto [03/10/2017] [ 38808] TEMS Mediator Service (TEMSMediatorService) . (.InfoVista.) - C:\Program Files\TEMS\TEMS Mediator\Application\Mediator.Service.exe {29802754CBD728F8D880A345F76D7BAF}
SS - Disabl [11/09/2017] [ 33224] SHAREit Hotspot Service (uSHAREitSvc) . (.SHAREit Technologies Co.Ltd.) - C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.Service.exe =>.SHAREit Technologies Co.Ltd®
SR - Auto [01/07/2016] [ 257872] Ashampoo LiveTuner 2 Service (WO_LiveService2) . (...) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\LiveTunerService.exe =>.Ashampoo GmbH & Co. KG®

---\\ Task Planned Automatically (Register) (20) - 2s
O38 - TASK: {4969616E-50C9-47FC-B02B-CBB2BBF299E2}[\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [616320] =>.Apple Inc.
O38 - TASK: {7D3C373A-AF43-4949-802D-DF1A5B6BA7ED}[\Driver Booster SkipUAC (YOUCEF)] - (.IObit - Driver Booster.) -- C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe [5586208] =>.IObit
O38 - TASK: {860CECC6-0736-4131-8537-3768019C917E}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Google Installer.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {86858A1C-0808-420A-8092-F7B9DD86BA55}[\Adobe Flash Player PPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_29_0_0_140_pepper.exe [1366528] =>.Adobe Systems Incorporated
O38 - TASK: {B015CF09-8030-4DB6-962B-393E623168D3}[\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}] - (.AO Kaspersky Lab - Kaspersky Upgrade Launcher.) -- C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232] =>.AO Kaspersky Lab
O38 - TASK: {C1577421-4B4C-4D90-81FE-A3A8C2433B99}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Google Installer.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {C15F9EFA-E369-4CEB-AF5A-B10F28D9A451}[\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 29.0 r0.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [272384] =>.Adobe Systems Incorporated
O38 - TASK: {CB379314-8F82-4BD4-9FA3-0917F0EEEF65}[\{2616E3F6-428C-4D50-9FBD-6192F1237A16}] - (...) -- C:\Users\YOUCEF\Downloads\Compressed\pocketinstaller\pocketinstaller.win32.exe [871424]
O38 - TASK: {DC1E1F87-7378-4F85-BB54-F2728D5BBC80}[\Adobe Flash Player NPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_29_0_0_140_Plugin.exe [1366528] =>.Adobe Systems Incorporated
O38 - TASK: {F4A7194C-373A-47D6-82C4-9272C0DDAF34}[\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [7619288] =>.Piriform Ltd
C:\Windows\System32\Tasks\Apple\AppleSoftwareUpdate - (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [-task] =>.Apple Inc.
C:\Windows\System32\Tasks\Driver Booster SkipUAC (YOUCEF) - (.IObit.) -- C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe [/skipuac] =>.IObit
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_29_0_0_140_pepper.exe [-check pepperplugin] =>.Adobe Systems Incorporated
C:\Windows\System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} - (.AO Kaspersky Lab.) -- C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [/waitUpgrade] =>.AO Kaspersky Lab
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [/ua] =>.Google Inc.
C:\Windows\System32\Tasks\Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe Systems Incorporated
C:\Windows\System32\Tasks\{2616E3F6-428C-4D50-9FBD-6192F1237A16} - (...) -- C:\Users\YOUCEF\Downloads\Compressed\pocketinstaller\pocketinstaller.win32.exe [C:\Users\YOUCEF\Downloads\Compressed\pocketinstaller\pocketinstaller.win32.exe]
C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_29_0_0_140_Plugin.exe [-check plugin] =>.Adobe Systems Incorporated
C:\Windows\System32\Tasks\CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Ltd

---\\ Auto loading programs from Registry and folders (3) - 0s
O4 - HKLM\..\Run: [Ashampoo WinOptimizer Live-Tuner2] . (.Ashampoo Development GmbH & Co. KG - Ashampoo Live-Tuner Client.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\LiveTuner2.exe =>.Ashampoo GmbH & Co. KG®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-1376225461-1210758792-745474167-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.

---\\ Process running (26) - 2s
[MD5.52997B1282BDAFC4275874B8990F9BE3] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82640] [PID.1856] =>.Adobe Systems, Incorporated®
[MD5.24B91DEBF94F19292C32DB76190036C9] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\avp.exe [354672] [PID.2068] =>.Kaspersky Lab®
[MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.2124] =>.Google Inc®
[MD5.92AE26F2CAF4A67E24A0BA6DDF32CC3C] - (.mst software GmbH, Germany - mst Defrag SDK Service.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\DfSdkS.exe [406016] [PID.2320] =>.mst software GmbH, Germany
[MD5.C1FD98DEC4C671B515E474D9389327E9] - (.Ashampoo Development GmbH & Co. KG - Ashampoo Live-Tuner Client.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\LiveTuner2.exe [4164944] [PID.2428] =>.Ashampoo GmbH & Co. KG®
[MD5.B01D4C22D952403B93610739BEF52592] - (.SafeNet, Inc. - License Manager.) -- C:\Windows\System32\hasplms.exe [4647248] [PID.2480] =>.SafeNet, Inc.®
[MD5.31551640A0662161F422E60BFA09D0C6] - (.InfoVista - Mediator.Service.) -- C:\Program Files\TEMS\TEMS Mediator\Application\Mediator.Service.exe [38808] [PID.2712] {29802754CBD728F8D880A345F76D7BAF}
[MD5.11481570F396AF5D196F16E64DF3AAB8] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\avpui.exe [334632] [PID.2100] =>.Kaspersky Lab®
[MD5.B3009DCDBCC5EFA49FA52562E9860E3C] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1840128] [PID.5780] =>.MAGIX AG
[MD5.79BC1B53D405EF546D3B809C6D1699ED] - (...) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\LiveTunerService.exe [257872] [PID.5256] =>.Ashampoo GmbH & Co. KG®
[MD5.1C81E83FD611CC82291AE3CBFFC43112] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3997752] [PID.3568] =>.Tonec Inc.
[MD5.B289C20C10B241F6016FECD92B267098] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [275512] [PID.5196] =>.Tonec Inc.®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.5808] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.7716] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.3020] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.2956] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.6320] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.4176] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.5136] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.7076] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.8256] =>.Google Inc®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.7952] =>.Google Inc®
[MD5.4DCE20849E789DC24A867E7D7B15CE5B] - (.AO Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe [354672] [PID.7552] =>.Kaspersky Lab®
[MD5.D7F11E499F4F6545A06480712AE2F377] - (.AO Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksdeui.exe [595752] [PID.4832] =>.Kaspersky Lab®
[MD5.A383D4D88D6F09C8FF3BDF1C05991DEF] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453912] [PID.9400] =>.Google Inc®
[MD5.34E0F58CA362A8989AAE9B055A564B41] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\YOUCEF\ZHPDiag3.exe [3090816] [PID.12100] =>.Nicolas Coolman

---\\ Google Chrome, Start,Search,Extensions (27) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://pads.cdnads.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://s2.googleusercontent.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.xx.fbcdn.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://web.facebook.com =>.Facebook
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com =>.Facebook
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.dz =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc.
G2 - GCE: Preference [YOUCEF][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [YOUCEF][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [YOUCEF][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [YOUCEF][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [YOUCEF][User Data\Default] [cmedhionkhpnakcndndgjdbohmhepckk] Adblock for Youtube™ =>.Better Adblock {Adblock pour Youtube}
G2 - GCE: Preference [YOUCEF][User Data\Default] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat}
G2 - GCE: Preference [YOUCEF][User Data\Default] [fccdiabakoglkihagkjmaomipdeegbpk] Oleksandr Popov
G2 - GCE: Preference [YOUCEF][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [YOUCEF][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [YOUCEF][User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] Michael Gundlach =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [YOUCEF][User Data\Default] [lneaknkopdijkpnocmklfnjbeapigfbh] http://maps.google.com
G2 - GCE: Preference [YOUCEF][User Data\Default] [mchjnmdbdlkdbfliogedbnpnanfjnolk] =>.Unknown
G2 - GCE: Preference [YOUCEF][User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc.
G2 - GCE: Preference [YOUCEF][User Data\Default] [nlbejmccbhkncgokjcmghpfloaajcffj]
G2 - GCE: Preference [YOUCEF][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [YOUCEF][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [YOUCEF][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (10) - 2s
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_29_0_0_140.dll =>.Adobe Systems Incorporated

---\\ Internet Explorer Extensions, Start, Search (9) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (11.00.9600.18922 (winblue_ltsb_escrow.180213-1200)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, trusted site and sensitive site (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ Internet Explorer, Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (1)

---\\ Browser Helper Object (BHO) (5) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: ScriptInjectionPluginBrowserHelperObject - {0E2877D3-2641-4970-B794-A553E295428D} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\ieext\ie_plugin.dll =>.Kaspersky Lab®
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll =>.Adobe Systems, Incorporated®
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll =>.Adobe Systems, Incorporated®

---\\ Global shortcuts Startup (157) - 12s
O4 - GS\Desktop [Administrator]: Atoll.exe - Shortcut.lnk . (.Forsk - Application Kernel.) C:\Program Files\Forsk\Atoll\Atoll.exe
O4 - GS\Desktop [Administrator]: Foxit PDF Editor.lnk . (.Foxit Software Company - Foxit PDF Editor, the first REAL editor for.) C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe =>.Foxit Software Company
O4 - GS\Desktop [Administrator]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [Administrator]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrator]: ipmsg - Shortcut.lnk . (.H.Shirouzu - IPMsg English.) D:\Mobilis\Logiciel DriveTest\ipmsg.exe
O4 - GS\Desktop [Administrator]: UsbFix Anti-Malware.lnk . (...) C:\Program Files\UsbFix\UsbFix.exe
O4 - GS\Desktop [Administrator]: Windows 7 USB DVD Download Tool.lnk . (.Microsoft Corporation - Microsoft Store ISO Backup Tool.) C:\Users\YOUCEF\AppData\Local\Apps\Windows 7 USB DVD Download Tool\Windows7-USB-DVD-Download-Tool.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\YOUCEF\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\YOUCEF\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Administrator]: BB FlashBack Pro 5 Player.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Player.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Player.exe =>.Blueberry Consultants Ltd.
O4 - GS\Quicklaunch [Administrator]: BB FlashBack Pro 5 Recorder.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Recorder.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Recorder.exe =>.Blueberry Consultants Ltd.
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrator]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrator]: Xilisoft Convertisseur Vidéo Platinum.lnk . (...) C:\Program Files\Xilisoft\Video Converter Platinum\vcloader.exe =>.xilisoft corporation®
O4 - GS\Quicklaunch [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrator]: Driver Booster 4.lnk . (.IObit - Driver Booster.) C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe =>.IObit Information Technology®
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrator]: TEMS Investigation 16.3.6.lnk . (.Ascom - Investigation.) C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe {4D33E984760505B1AB06E6CB966AA1DF}
O4 - GS\TaskBar [Administrator]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrator]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Guest]: Atoll.exe - Shortcut.lnk . (.Forsk - Application Kernel.) C:\Program Files\Forsk\Atoll\Atoll.exe
O4 - GS\Desktop [Guest]: Foxit PDF Editor.lnk . (.Foxit Software Company - Foxit PDF Editor, the first REAL editor for.) C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe =>.Foxit Software Company
O4 - GS\Desktop [Guest]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [Guest]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Guest]: ipmsg - Shortcut.lnk . (.H.Shirouzu - IPMsg English.) D:\Mobilis\Logiciel DriveTest\ipmsg.exe
O4 - GS\Desktop [Guest]: UsbFix Anti-Malware.lnk . (...) C:\Program Files\UsbFix\UsbFix.exe
O4 - GS\Desktop [Guest]: Windows 7 USB DVD Download Tool.lnk . (.Microsoft Corporation - Microsoft Store ISO Backup Tool.) C:\Users\YOUCEF\AppData\Local\Apps\Windows 7 USB DVD Download Tool\Windows7-USB-DVD-Download-Tool.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Guest]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\YOUCEF\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\YOUCEF\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Guest]: BB FlashBack Pro 5 Player.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Player.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Player.exe =>.Blueberry Consultants Ltd.
O4 - GS\Quicklaunch [Guest]: BB FlashBack Pro 5 Recorder.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Recorder.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Recorder.exe =>.Blueberry Consultants Ltd.
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Guest]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Guest]: Xilisoft Convertisseur Vidéo Platinum.lnk . (...) C:\Program Files\Xilisoft\Video Converter Platinum\vcloader.exe =>.xilisoft corporation®
O4 - GS\Quicklaunch [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [Guest]: Driver Booster 4.lnk . (.IObit - Driver Booster.) C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe =>.IObit Information Technology®
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Guest]: TEMS Investigation 16.3.6.lnk . (.Ascom - Investigation.) C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe {4D33E984760505B1AB06E6CB966AA1DF}
O4 - GS\TaskBar [Guest]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Guest]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [YOUCEF]: Atoll.exe - Shortcut.lnk . (.Forsk - Application Kernel.) C:\Program Files\Forsk\Atoll\Atoll.exe
O4 - GS\Desktop [YOUCEF]: Foxit PDF Editor.lnk . (.Foxit Software Company - Foxit PDF Editor, the first REAL editor for.) C:\Program Files\Foxit Software\PDF Editor\PDFEdit.exe =>.Foxit Software Company
O4 - GS\Desktop [YOUCEF]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [YOUCEF]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [YOUCEF]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [YOUCEF]: ipmsg - Shortcut.lnk . (.H.Shirouzu - IPMsg English.) D:\Mobilis\Logiciel DriveTest\ipmsg.exe
O4 - GS\Desktop [YOUCEF]: UsbFix Anti-Malware.lnk . (...) C:\Program Files\UsbFix\UsbFix.exe
O4 - GS\Desktop [YOUCEF]: Windows 7 USB DVD Download Tool.lnk . (.Microsoft Corporation - Microsoft Store ISO Backup Tool.) C:\Users\YOUCEF\AppData\Local\Apps\Windows 7 USB DVD Download Tool\Windows7-USB-DVD-Download-Tool.exe =>.Microsoft Corporation®
O4 - GS\Desktop [YOUCEF]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\YOUCEF\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [YOUCEF]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\YOUCEF\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [YOUCEF]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [YOUCEF]: BB FlashBack Pro 5 Player.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Player.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Player.exe =>.Blueberry Consultants Ltd.
O4 - GS\Quicklaunch [YOUCEF]: BB FlashBack Pro 5 Recorder.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Recorder.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Recorder.exe =>.Blueberry Consultants Ltd.
O4 - GS\Quicklaunch [YOUCEF]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [YOUCEF]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [YOUCEF]: Xilisoft Convertisseur Vidéo Platinum.lnk . (...) C:\Program Files\Xilisoft\Video Converter Platinum\vcloader.exe =>.xilisoft corporation®
O4 - GS\Quicklaunch [YOUCEF]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [YOUCEF]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [YOUCEF]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [YOUCEF]: Driver Booster 4.lnk . (.IObit - Driver Booster.) C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe =>.IObit Information Technology®
O4 - GS\TaskBar [YOUCEF]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [YOUCEF]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [YOUCEF]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [YOUCEF]: TEMS Investigation 16.3.6.lnk . (.Ascom - Investigation.) C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe {4D33E984760505B1AB06E6CB966AA1DF}
O4 - GS\TaskBar [YOUCEF]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [YOUCEF]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [YOUCEF]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: 1-Click-Optimizer (WO14).lnk . (.Ashampoo Development GmbH & Co. KG - Ashampoo WinOptimizer 14.) C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\WO14.exe -OCO =>.Ashampoo GmbH & Co. KG®
O4 - GS\CommonDesktop [Public]: Adobe Acrobat XI Pro.lnk . (.Adobe Systems Incorporated - Adobe Acrobat.) C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Acrobat.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Adobe FormsCentral.lnk . (...) C:\Program Files\Adobe\Acrobat 11.0\FormsCentral\FormsCentralForAcrobat.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: AOMEI Partition Assistant Standard Edition 6.5.lnk . (.AOMEI Technology Co., Ltd. - AOMEI Partition Assistant.) C:\Program Files\AOMEI Partition Assistant Standard Edition 6.5\PartAssist.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O4 - GS\CommonDesktop [Public]: Ashampoo WinOptimizer 14.lnk . (.Ashampoo Development GmbH & Co. KG - Ashampoo WinOptimizer 14.) C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\WO14.exe =>.Ashampoo GmbH & Co. KG®
O4 - GS\CommonDesktop [Public]: BB FlashBack Pro 5 Player.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Player.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Player.exe =>.Blueberry Consultants Ltd.
O4 - GS\CommonDesktop [Public]: BB FlashBack Pro 5 Recorder.lnk . (.Blueberry Consultants Ltd. - BB FlashBack Pro 5 Recorder.) C:\Program Files\Blueberry Software\BB FlashBack Pro 5 (French)\FlashBack Recorder.exe =>.Blueberry Consultants Ltd.
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Citrix Program Neighborhood.lnk2 . (.Citrix Systems, Inc. - Program Neighborhood.) C:\Program Files\Citrix\ICA Client\pn.exe =>.Citrix Systems, Inc.
O4 - GS\CommonDesktop [Public]: Driver Booster 4.lnk . (.IObit - Driver Booster.) C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe =>.IObit Information Technology®
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth Pro\client\googleearth.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: HiSuite.lnk . (.Huawei - Huawei PC suite.) C:\Program Files\HiSuite\HiSuite.exe =>.Huawei
O4 - GS\CommonDesktop [Public]: Kaspersky Secure Connection.lnk . (.AO Kaspersky Lab - Kaspersky Secure Connection.) C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksdeui.exe -navigate ksde://mainwindow =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Kaspersky Total Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\avpui.exe =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: Lotus Notes 6.5.lnk . (.IBM Corp - IBM Lotus Notes/Domino.) C:\Program Files\lotus\notes\notes.exe "=C:\Program Files\lotus\notes\notes.ini" =>.IBM Corp
O4 - GS\CommonDesktop [Public]: MAGIX Vidéo deluxe MX Premium Version à télécharger.lnk . (.MAGIX AG - MAGIX Video deluxe MX Plus.) C:\Program Files\MAGIX\Video_deluxe_MX_Premium_Version_a_telecharger\Videodeluxe.exe =>.Magix AG®
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: MCOM 13.0.lnk . (...) C:\Program Files\Ericsson AB\RNS Tools\184\RNS_framework.exe
O4 - GS\CommonDesktop [Public]: MCOM 4.2.lnk . (.Ericsson - .) C:\Program Files\Ericsson\MCOM\MCOM.exe =>.Ericsson
O4 - GS\CommonDesktop [Public]: Microsoft Network Monitor 3.4.lnk . (.Microsoft Corporation - Microsoft Network Monitor 3.) C:\Program Files\Microsoft Network Monitor 3\netmon.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: mobiConnect.lnk . (...) C:\Program Files\mobiConnect\mobiConnect.exe
O4 - GS\CommonDesktop [Public]: O&O Defrag.lnk . (...) C:\Windows\Installer\{FA428DAF-3C74-49D1-8429-BEDDC101ABF9}\app_icon.ico
O4 - GS\CommonDesktop [Public]: PowerISO.lnk . (.Power Software Ltd - PowerISO.) C:\Program Files\PowerISO\PowerISO.exe =>.Power Software Ltd
O4 - GS\CommonDesktop [Public]: Protection bancaire.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\avpui.exe -safebanking =>.Kaspersky Lab®
O4 - GS\CommonDesktop [Public]: SHAREit.lnk . (.SHAREit Technologies Co.Ltd - SHAREit.) C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.exe =>.SHAREit Technologies Co.Ltd®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: TEMS Discovery Device 12.1.3.lnk . (.InfoVista - TEMS Discovery Startup.) C:\Windows\Installer\{8435089C-F4D4-4017-B72E-1C2B45A21BFE}\Discovery.exe
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: Xilisoft Convertisseur Vidéo Platinum.lnk . (...) C:\Program Files\Xilisoft\Video Converter Platinum\vcloader.exe =>.xilisoft corporation®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Windows Command Processor.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Private Character Editor.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Windows Calculator.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Display Switch.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel Accessory.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Windows Mobility Center.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Windows Sound Recorder.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Sticky Notes.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows host process (Rundll32).) C:\Windows\system32\rundll32.exe =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Microsoft® Disk Defragmenter.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Disk Space Cleanup Manager for Windows.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Resource and Performance Monitor.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - System Information.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Microsoft® Windows System Restore.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Windows Easy Transfer Post Migration Applic.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Windows Easy Transfer Application.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat Distiller XI.lnk . (.Adobe Systems Incorporated. - Acrobat Distiller.) C:\Program Files\Adobe\Acrobat 11.0\Acrobat\acrodist.exe =>.Adobe Systems, Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat XI Pro.lnk . (...) C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-000000000006}\_SC_Acrobat.ico
O4 - GS\ProgramsCommon [Public]: Adobe FormsCentral.lnk . (...) C:\Program Files\Adobe\Acrobat 11.0\FormsCentral\FormsCentralForAcrobat.exe =>.Adobe Systems, Incorporated®
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth Pro\client\googleearth.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Windows Desktop Gadgets.) C:\Program Files\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Windows DVD Maker.) C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS Viewer.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ Lop.com/Domain Hijackers (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.149.99.201 8.8.8.8 =>.France Google Cloud
O17 - HKLM\System\CCS\Services\Tcpip\..\{96C5ABB8-20C9-4F7F-87DD-906FDCBE908D}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{C3A62E0B-2648-4232-95F3-58DC92A0BE68}: DhcpNameServer = 83.149.99.201 8.8.8.8 =>.France Google Cloud
O17 - HKLM\System\CCS\Services\Tcpip\..\{CC73DD8C-CD3B-491D-8093-A6C7E72E86C6}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{F610EC8F-72E8-4D0A-9767-6573EA3B9085}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress

---\\ Extra protocols (24) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ AppInit_DLLs Registry value Autorun (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Userinit Logon Application.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ ASIC (ActiveSetup Installed Components) (9) - 1s
O40 - ASIC: Microsoft Windows Media Player 12.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Enable TLS1.1 and 1.2 - {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} . (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Disable SSL3 - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\66.0.3359.139\Installer\chrmstp.exe =>.Google Inc®

---\\ Software installed (91) - 15s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: Adobe Flash Player 29 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 29 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 29 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Shockwave Player 12.3 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player =>.Adobe Systems, Inc.
O42 - Logiciel: AOMEI Partition Assistant Standard Edition 6.5 - (.AOMEI Technology Co., Ltd..) [HKLM] -- {02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1 =>.AOMEI Technology Co., Ltd.
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM] -- {3D1290E6-1F77-46D5-A715-A56679C8D4E3} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {BA476373-DAE7-4E51-957A-F43F01D9FACD} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8} =>.Apple Inc.
O42 - Logiciel: Ashampoo WinOptimizer 14 - (.Ashampoo GmbH & Co. KG.) [HKLM] -- {4209F371-DEAB-BE89-2E8A-9643100258DD}_is1 =>.Ashampoo GmbH & Co. KG®
O42 - Logiciel: Atoll Planning Software - (.Forsk.) [HKLM] -- Atoll_is1
O42 - Logiciel: Avanquest update - (.Avanquest Software.) [HKLM] -- {76E41F43-59D2-4F30-BA42-9A762EE1E8DE} =>.Avanquest®
O42 - Logiciel: BB FlashBack Pro 5 (French) - (.Blueberry.) [HKLM] -- BB FlashBack Pro 5 (French) =>.Blueberry
O42 - Logiciel: Bit Che - (.Convivea Inc..) [HKLM] -- {D9DA5C41-964F-455F-B5E7-3664519440E8}_is1 =>.Convivea Inc.®
O42 - Logiciel: Canon LBP6020 - (..) [HKLM] -- Canon LBP6020 =>.CANON INC.®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Citrix ICA Client - (..) [HKLM] -- Citrix ICA Client
O42 - Logiciel: Conexant 20672 SmartAudio HD - (.Conexant.) [HKLM] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.®
O42 - Logiciel: Driver Booster 4.5 - (.IObit.) [HKLM] -- Driver Booster_is1 =>.IObit Information Technology®
O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM] -- {6C5F8503-55D2-4398-858C-362B7A7AF51C} =>.MAGIX AG
O42 - Logiciel: Foxit PDF Editor - (..) [HKLM] -- Foxit PDF Editor
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Earth Pro - (.Google.) [HKLM] -- {FA1BBF34-E994-4310-95D7-BE93092B8E61} =>.Google
O42 - Logiciel: Google Earth version 7.1.5.1557 - (.willy402.) [HKLM] -- {384F931C-F25F-4EDA-BACB-8EE0FCF3AFF5}_is1
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: HiSuite - (.Huawei Technologies Co.,Ltd.) [HKLM] -- Hi Suite =>.Huawei Technologies Co.,Ltd
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {162B6D26-E4EB-4CE7-AD20-644E8CAB4004} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM] -- {D27232AB-780A-4AF1-BE95-69C3B3FE8F81} =>.Intel Corporation
O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM] -- PROSet =>.Intel
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Kaspersky Secure Connection - (.Kaspersky Lab.) [HKLM] -- {F33C0717-8E04-4EB5-90C8-47221287DB4F} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Secure Connection - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{F33C0717-8E04-4EB5-90C8-47221287DB4F} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM] -- {5AAE61FF-858E-453E-B8F3-944618149975} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM] -- InstallWIX_{5AAE61FF-858E-453E-B8F3-944618149975} =>.Kaspersky Lab
O42 - Logiciel: Kyocera Product Library - (.KYOCERA Document Solutions Inc..) [HKLM] -- Kyocera Product Library {08194634C210CC49E7BD849D2B7AB0D7} =>.KYOCERA Document Solutions Inc.
O42 - Logiciel: Lenovo Power Management Driver - (.Lenovo.) [HKLM] -- Power Management Driver =>.Lenovo
O42 - Logiciel: Lotus Notes 6.5.3 fr - (.IBM.) [HKLM] -- {BE9B5215-3CC3-44BB-8CE2-83B6738CF1AC} =>.IBM
O42 - Logiciel: MAGIX Screenshare - (.MAGIX AG.) [HKLM] -- {BBBA7CC8-03C5-4DD3-B685-C44D2D4348B9} =>.MAGIX AG
O42 - Logiciel: MAGIX Speed burnR (MSI) - (.MAGIX AG.) [HKLM] -- {B09C302C-0A2E-4172-A4E9-4129F2B7EBBA} =>.MAGIX AG
O42 - Logiciel: MAGIX Vidéo deluxe MX Premium Version à télécharger - (.MAGIX AG.) [HKLM] -- {FE9EF563-CD61-40FB-B4EF-B2DB1B8358A5} =>.MAGIX AG
O42 - Logiciel: MAGIX Vidéo deluxe MX Premium Version à télécharger - (.MAGIX AG.) [HKLM] -- MAGIX_MSI_Videodeluxe18_premium =>.Magix AG®
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: MapInfo Pro 15.0 - (.Pitney Bowes.) [HKLM] -- {3A075CC0-8269-48AB-8A55-0B2F203B17B0} =>.Pitney Bowes
O42 - Logiciel: MapXtreme v8.0.0 Runtime - (.Pitney Bowes Software Inc..) [HKLM] -- {A2F3A7D3-61EE-4D5A-8D0F-1D5F969835C1}
O42 - Logiciel: MCOM 13.0 - (.Ericsson.) [HKLM] -- {A6DD5F67-0C86-4402-8203-80656CF3248A}_is1 =>.Ericsson
O42 - Logiciel: MCOM 4.2 - (..) [HKLM] -- {E0FEC32C-2915-4588-97C6-57DEFAC2642A}
O42 - Logiciel: Microsoft Access database engine 2010 (English) - (.Microsoft Corporation.) [HKLM] -- {90140000-00D1-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Access MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-0015-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-0090-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-0016-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-00BA-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-0044-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Network Monitor 3.4 - (.Microsoft Corporation.) [HKLM] -- {A2F2C44A-869E-4C32-9CEC-E22B1CC91F06} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Network Monitor: NetworkMonitor Parsers 3.4 - (.Microsoft Corporation.) [HKLM] -- {5A1A9AB2-2F68-462D-A67D-7C855DFF5EEB} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneNote MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-00A1-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-001A-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-0018-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-0019-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Skype for Business MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-012B-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (French) 2016 - (.Microsoft Corporation.) [HKLM] -- {90160000-001B-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft XNA Framework Redistributable 3.0 - (.Microsoft Corporation.) [HKLM] -- {3898934B-05AE-41CD-96BE-70DA9BFBCE1F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft XNA Framework Redistributable 3.1 - (.Microsoft Corporation.) [HKLM] -- {19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20} =>.Microsoft Corporation
O42 - Logiciel: mobiConnect - (.Huawei Technologies Co.,Ltd.) [HKLM] -- mobiConnect =>.Huawei Technologies Co.,Ltd
O42 - Logiciel: Mozilla Firefox 59.0.2 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 59.0.2 (x86 en-US) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation
O42 - Logiciel: Notepad++ (32-bit x86) - (.Notepad++ Team.) [HKLM] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: O&O Defrag Professional - (.O&O Software GmbH.) [HKLM] -- {FA428DAF-3C74-49D1-8429-BEDDC101ABF9} =>.O&O Software GmbH
O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} =>.Prolific Technology INC
O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM] -- PowerISO =>.Power Software Ltd
O42 - Logiciel: Sentinel Runtime - (.Gemalto.) [HKLM] -- {39FA0B7C-B7DB-41F4-9169-AEFB61913B36} =>.Gemalto
O42 - Logiciel: Sentinel System Driver Installer 7.5.1 - (.SafeNet, Inc..) [HKLM] -- {BF9E346B-5ECE-4A18-9510-55729FD08323} =>.SafeNet, Inc.
O42 - Logiciel: SHAREit - (.SHAREit Technologies Co.Ltd.) [HKLM] -- www.ushareit.com_is1 =>.SHAREit Technologies Co.Ltd
O42 - Logiciel: Skype™ 7.39 - (.Skype Technologies S.A..) [HKLM] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey =>.Synaptics Incorporated®
O42 - Logiciel: TEMS Discovery Device 12.1.3 - (.InfoVista.) [HKLM] -- {8435089C-F4D4-4017-B72E-1C2B45A21BFE}
O42 - Logiciel: TEMS Investigation 16.3.6 - (.Ascom.) [HKLM] -- {4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}
O42 - Logiciel: TEMS Mediator 3.0.4 RelInv19.1.Daily_20171003.4 - (.InfoVista Sweden AB.) [HKLM] -- {78DC4A63-A6B7-43E7-8ECD-6B3E9211DB91}
O42 - Logiciel: TEMS™ Investigation 16.3.6 Installer - (.Ascom.) [HKLM] -- {e68e5c9c-b0dd-4bb2-8632-af003b2f3a6c} {4D33E984760505B1AB06E6CB966AA1DF}
O42 - Logiciel: Update for Skype for Business 2016 (KB4018323) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{FC6D613D-A7D9-4C85-AC63-D2C4AFC69646} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2016 (KB4018323) 32-Bit Edition - (.Microsoft.) [HKLM] -- {90160000-012B-040C-0000-0000000FF1CE}_Office16.PROPLUS_{FC6D613D-A7D9-4C85-AC63-D2C4AFC69646} =>.Microsoft Corporation®
O42 - Logiciel: UsbFix Anti-Malware Premium - (.SOSVirus (SOSVirus.Net).) [HKLM] -- Usbfix =>.SOSVirus (SOSVirus.Net)
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Xilisoft Convertisseur Vidéo Platinum - (.Xilisoft.) [HKLM] -- Xilisoft Convertisseur Vidéo Platinum =>.Xilisoft

---\\ HKCU & HKLM Software Keys (137) - 15s
HKCU\Software\undefined =>.SUP.Downloader
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\Aladdin Knowledge Systems =>.Aladdin Knowledge Systems
HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Ascom
HKLM\SOFTWARE\Ashampoo =>.Ashampoo
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Blueberry Software =>.Blueberry
HKLM\SOFTWARE\BVRP Software =>.BVRP Software
HKLM\SOFTWARE\CANON =>.Canon
HKLM\SOFTWARE\Citrix =>.Citrix
HKLM\SOFTWARE\Class =>.Unknown
HKLM\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKLM\SOFTWARE\CounterPath =>.CounterPath
HKLM\SOFTWARE\CXT =>.CXT Software
HKLM\SOFTWARE\Cypress Keyboard Filter Driver
HKLM\SOFTWARE\Earth Resource Mapping =>.Earth Resource Mapping Inc
HKLM\SOFTWARE\ERDAS =>.Erdas Inc
HKLM\SOFTWARE\Ericsson =>.Ericsson
HKLM\SOFTWARE\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Huawei technologies =>.Huawei Technologies
HKLM\SOFTWARE\IBM =>.IBM
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\IObit =>.IObit
HKLM\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\Kyocera
HKLM\SOFTWARE\Kyocera Mita =>.Kyocera Mita
HKLM\SOFTWARE\Lenovo =>.Lenovo
HKLM\SOFTWARE\Lotus =>.IBM Corporation
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Macrovision =>.Macrovision
HKLM\SOFTWARE\MAGIX =>.Magix
HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MapInfo =>.Pitney Bowes Software
HKLM\SOFTWARE\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc
HKLM\SOFTWARE\MCOM
HKLM\SOFTWARE\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Notepad++ =>.Don Ho
HKLM\SOFTWARE\O&O =>.O&O Software GmbH
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\PCTEL, RF Solutions Group
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\PowerISO =>.PowerISO Computing
HKLM\SOFTWARE\Prolific Technology INC =>.Prolific Technology INC
HKLM\SOFTWARE\RAINBOW TECHNOLOGIES =>.Rainbow Technologies
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\Rohde & Schwarz
HKLM\SOFTWARE\Safe Software Inc. =>.Safe Software
HKLM\SOFTWARE\Seagate Software =>.Seagate
HKLM\SOFTWARE\SHAREit Technologies =>..SUP.SHAREit
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\Swearware =>.Swearware
HKLM\SOFTWARE\Symantec =>.Symantec
HKLM\SOFTWARE\Synaptics =>.Synaptics
HKLM\SOFTWARE\tdbg_trace =>.UPEK Inc
HKLM\SOFTWARE\TEMS
HKLM\SOFTWARE\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Xara =>.Xara Group Ltd.
HKLM\SOFTWARE\Xilisoft =>.Xilisoft
HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\WOW6432Node\IObit =>.IObit
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Ascom
HKCU\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKCU\SOFTWARE\Blueberry Software =>.Blueberry
HKCU\SOFTWARE\Canon =>.Canon
HKCU\SOFTWARE\Caphyon =>.Caphyon
HKCU\SOFTWARE\cks =>.Legitimate
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\Earth Resource Mapping =>.Earth Resource Mapping Inc
HKCU\SOFTWARE\ERDAS =>.Erdas Inc
HKCU\SOFTWARE\Ericsson =>.Ericsson
HKCU\SOFTWARE\Extensoft =>.Extensoft
HKCU\SOFTWARE\Forsk
HKCU\SOFTWARE\Foxit Software Company =>.Foxit Software Company
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\GTD
HKCU\SOFTWARE\HSTools
HKCU\SOFTWARE\IM =>.Legitimate
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKCU\SOFTWARE\KasperskyLabSetup =>.Kaspersky Labs
HKCU\SOFTWARE\LicenseClient
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\LogSys
HKCU\SOFTWARE\Lotus =>.IBM Corporation
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Magix =>.Magix
HKCU\SOFTWARE\MAGIX AG =>.MAGIX AG
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\MainConcept (Consumer) =>.MainConcept AG
HKCU\SOFTWARE\MapInfo =>.Pitney Bowes Software
HKCU\SOFTWARE\MCOM
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NewArk_184
HKCU\SOFTWARE\O&O =>.O&O Software GmbH
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Partition Assistant
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\PowerISO =>.PowerISO Computing
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RNSTools
HKCU\SOFTWARE\SHAREit Technologies =>..SUP.SHAREit
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\skypeapp-7123b6b6de57 =>.Skype Technologies
HKCU\SOFTWARE\Sony Ericsson =>.Sony Ericsson
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\TEMS
HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\UsbFix =>.El Desaparecido
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Xilisoft =>.Xilisoft
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\PasswordBox =>.PasswordBox Inc

---\\ Contents of the Common Files folders (193) - 13s
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 20/11/2017 - [] D -- C:\Program Files\AOMEI Partition Assistant Standard Edition 6.5 =>.AOMEI Tech Co
O43 - CFD: 31/10/2017 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc.
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Ascom
O43 - CFD: 26/04/2018 - [] D -- C:\Program Files\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\AuthenTec =>.AuthenTec, Inc.®
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Avanquest update =>.Avanquest Software Publishing Ltd
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Bit Che =>.Convivea Inc.®
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Blueberry Software =>.Blueberry Software
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Canon =>.CANON INC.®
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 30/08/2017 - [] D -- C:\Program Files\Citrix =>.Citrix
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.
O43 - CFD: 03/01/2018 - [] D -- C:\Program Files\CounterPath =>.CounterPath
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\Cypress =>.Cypress
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 03/01/2018 - [] D -- C:\Program Files\Ericsson =>.Ericsson
O43 - CFD: 18/08/2017 - [] D -- C:\Program Files\Ericsson AB =>.Ericsson AB
O43 - CFD: 12/02/2018 - [] D -- C:\Program Files\Forsk
O43 - CFD: 15/04/2018 - [] D -- C:\Program Files\Foxit Software =>.Foxit Software
O43 - CFD: 05/05/2018 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Google Earth =>.Google Earth
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\HiSuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 05/01/2018 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 12/03/2018 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc
O43 - CFD: 15/04/2018 - [] D -- C:\Program Files\IObit =>.IObit
O43 - CFD: 12/02/2018 - [] D -- C:\Program Files\ISO to USB =>.isotousb.com
O43 - CFD: 14/04/2018 - [] D -- C:\Program Files\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 06/12/2017 - [] D -- C:\Program Files\Kyocera
O43 - CFD: 22/04/2018 - [] D -- C:\Program Files\lotus =>.Lotus Development Corporation
O43 - CFD: 04/09/2017 - [] D -- C:\Program Files\MAGIX =>.Magix AG®
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes
O43 - CFD: 18/08/2017 - [] D -- C:\Program Files\MapInfo
O43 - CFD: 23/08/2017 - [] D -- C:\Program Files\mobiConnect
O43 - CFD: 01/04/2018 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 02/04/2018 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files\Notepad++ =>.Don Ho
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files\OO Software =>.O&O Software GmbH
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\PowerISO =>.PowerISO Computing
O43 - CFD: 18/08/2017 - [] D -- C:\Program Files\Seagate Software =>.Seagate
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files\SHAREit Technologies =>.SHAREit Technologies Co.Ltd®
O43 - CFD: 19/08/2017 - [] RD -- C:\Program Files\Skype =>.Skype
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Sony =>.Sony
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 09/01/2018 - [] D -- C:\Program Files\TEMS {29802754CBD728F8D880A345F76D7BAF}
O43 - CFD: 05/04/2018 - [] D -- C:\Program Files\UsbFix =>.El Desaparecido
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 04/09/2017 - [] D -- C:\Program Files\Xilisoft =>.xilisoft corporation®
O43 - CFD: 14/08/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 20/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 6.5 =>.AOMEI Tech Co
O43 - CFD: 22/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applications Lotus =>.Lotus Development Corporation
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ascom
O43 - CFD: 26/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 17/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atoll
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bit Che
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blueberry Software =>.Blueberry Software
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 30/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citrix ICA Client
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 4 =>.IObit
O43 - CFD: 18/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ericsson AB =>.Ericsson AB
O43 - CFD: 15/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PDF Editor =>.Foxit Software
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 12/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection =>.Kaspersky Lab
O43 - CFD: 14/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security =>.Kaspersky Labs
O43 - CFD: 06/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kyocera
O43 - CFD: 04/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX =>.Magix
O43 - CFD: 16/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware =>.Malwarebytes
O43 - CFD: 18/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MapInfo
O43 - CFD: 05/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCOM 4.2
O43 - CFD: 23/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mobiConnect
O43 - CFD: 10/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 16/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\O&O Software =>.O&O Software
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO =>.PowerISO Computing
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programme de désinstallation de l'imprimante Canon
O43 - CFD: 15/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHAREit =>.Lenovo Group Limited
O43 - CFD: 19/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TEMS Discovery Device 12.1.3
O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TEMS Mediator
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 04/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft =>.Xilisoft
O43 - CFD: 25/04/2018 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 20/11/2017 - [] D -- C:\ProgramData\AomeiBR =>.AOMEI Technology
O43 - CFD: 31/10/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 31/10/2017 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Ascom
O43 - CFD: 26/04/2018 - [] D -- C:\ProgramData\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Avanquest =>.Avanquest
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\BVRP Software =>.BVRP Software
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\Conexant =>.Conexant Systems, Inc.
O43 - CFD: 18/08/2017 - [] D -- C:\ProgramData\FLEXnet =>.Flexera Software
O43 - CFD: 14/08/2017 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 17/04/2018 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 07/05/2018 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 14/04/2018 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Logs =>.ABBYY Software
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\LogSys
O43 - CFD: 04/09/2017 - [] D -- C:\ProgramData\MAGIX =>.Magix
O43 - CFD: 16/08/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 18/08/2017 - [] D -- C:\ProgramData\MapInfo
O43 - CFD: 20/03/2018 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 16/08/2017 - [] D -- C:\ProgramData\OO Software =>.O&O Software GmbH
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 12/02/2018 - [] D -- C:\ProgramData\SafeNet Sentinel =>.SafeNet
O43 - CFD: 19/08/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Sony Ericsson =>.Sony Ericsson
O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\TEMS
O43 - CFD: 04/09/2017 - [] D -- C:\ProgramData\Xilisoft =>.Xilisoft
O43 - CFD: 25/04/2018 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Common Files\Aladdin Shared =>.Aladdin Knowledge Systems
O43 - CFD: 31/10/2017 - [] D -- C:\Program Files\Common Files\Apple =>.Apple Inc.
O43 - CFD: 14/04/2018 - [] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Common Files\Blueberry Software =>.Blueberry Software
O43 - CFD: 15/08/2017 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer
O43 - CFD: 12/03/2018 - [] D -- C:\Program Files\Common Files\EagleGet =>.EagleGet
O43 - CFD: 17/09/2017 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield
O43 - CFD: 17/04/2018 - [] D -- C:\Program Files\Common Files\IObit =>.IObit
O43 - CFD: 18/08/2017 - [] D -- C:\Program Files\Common Files\Macrovision Shared =>.Rovi Corporation
O43 - CFD: 04/09/2017 - [] D -- C:\Program Files\Common Files\MAGIX Services =>.MAGIX_Software_GmbH
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\Common Files\MAGIX Shared =>.MAGIX AG
O43 - CFD: 09/01/2018 - [] D -- C:\Program Files\Common Files\MapInfo
O43 - CFD: 03/01/2018 - [] D -- C:\Program Files\Common Files\MapInfo Shared
O43 - CFD: 12/02/2018 - [] D -- C:\Program Files\Common Files\SafeNet Sentinel =>.SafeNet
O43 - CFD: 19/08/2017 - [] D -- C:\Program Files\Common Files\Skype =>.Skype
O43 - CFD: 25/12/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 31/10/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 14/03/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Appԁata
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Blueberry =>.Blueberry
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Convivea =>.Convivea
O43 - CFD: 05/05/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 21/12/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 18/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Forsk
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Google =>.Google
O43 - CFD: 30/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\ICAClient =>.Citrix
O43 - CFD: 16/04/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\IDM =>.IDM
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 16/04/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\IObit =>.IObit
O43 - CFD: 06/05/2018 - [] SHD -- C:\Users\YOUCEF\AppData\Roaming\Latas
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\LogSys
O43 - CFD: 15/09/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\MAGIX =>.Magix
O43 - CFD: 18/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\MapInfo
O43 - CFD: 11/12/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Notepad++ =>.Don Ho
O43 - CFD: 24/10/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\PDAppFlex =>Trojan.Elpman
O43 - CFD: 13/10/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\PowerISO =>.PowerISO Computing
O43 - CFD: 14/03/2018 - [] SHD -- C:\Users\YOUCEF\AppData\Roaming\Pr
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Rovio =>.Rovio
O43 - CFD: 09/10/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Skype =>.Skype
O43 - CFD: 16/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Umeng
O43 - CFD: 14/04/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\uTorrent
O43 - CFD: 30/04/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 04/09/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Xilisoft =>.Xilisoft
O43 - CFD: 07/05/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 14/04/2018 - [] D -- C:\Users\YOUCEF\AppData\Local\Adobe =>.Adobe
O43 - CFD: 31/10/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 31/10/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Ascom
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\CEF =>.CEF
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Google =>.Google
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Hisuite =>.Huawei Technologies Co.,Ltd
O43 - CFD: 30/10/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\IIIQF =>.Scrabblo
O43 - CFD: 09/01/2018 - [] D -- C:\Users\YOUCEF\AppData\Local\InfoVista
O43 - CFD: 18/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\MapInfo
O43 - CFD: 11/12/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 10/01/2018 - [0] D -- C:\Users\YOUCEF\AppData\Local\Notepad++ =>.Don Ho
O43 - CFD: 16/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\O&O =>.O&O Software GmbH
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\SafeNet Sentinel =>.SafeNet
O43 - CFD: 16/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\SHAREit Technologies
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Sony Ericsson =>.Sony Ericsson
O43 - CFD: 09/01/2018 - [] D -- C:\Users\YOUCEF\AppData\Local\TEMS
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Local\Xara =>.Xara
O43 - CFD: 06/05/2018 - [] D -- C:\Users\YOUCEF\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 15/08/2017 - [] D -- C:\Users\YOUCEF\AppData\LocalLow\Google =>.Google
O43 - CFD: 17/04/2018 - [0] D -- C:\Users\YOUCEF\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/04/2018 - [] D -- C:\Users\YOUCEF\AppData\LocalLow\uTorrent
O43 - CFD: 22/04/2018 - [] D -- C:\Users\YOUCEF\Desktop\backups
O43 - CFD: 20/02/2018 - [] D -- C:\Users\YOUCEF\Desktop\BMW CHERAGA
O43 - CFD: 04/03/2018 - [0] D -- C:\Users\YOUCEF\Desktop\New folder
O43 - CFD: 07/01/2018 - [] RD -- C:\Users\YOUCEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 12/03/2018 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/08/2017 - [] D -- C:\Users\YOUCEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 10/01/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\SafeNet Sentinel =>.SafeNet
O43 - CFD: 10/01/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\TEMS
O43 - CFD: 31/10/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 17/04/2018 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit

---\\ Search Context Menu Handlers (SCMH) (39) - 0s
O108 - CMH1: Adobe.Acrobat.ContextMenu - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim.dll =>.Adobe Systems, Incorporated®
O108 - CMH1: ANotepad++ - {00F3C2EC-A6EE-11DE-A03A-EF8F55D89593} . (. - ShellHandler for Notepad++.) -- C:\Program Files\Notepad++\NppShell_06.dll =>.Notepad++®
O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Windows Briefcase.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: Kaspersky Anti-Virus 18.0.0 - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll =>.Kaspersky Lab®
O108 - CMH1: OODefrag - {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} . (.O&O Software GmbH - O&O Defrag Shell Extension (Win32).) -- C:\Program Files\OO Software\Defrag\oodsh.dll =>.O&O Software GmbH®
O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: PowerISO - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL =>.Power Software Limited®
O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: ShellExtension - . (.Orphan.)
O108 - CMH1: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH2: Compatibility - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Compatibility Tab Shell Extension Library.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: Kaspersky Anti-Virus 18.0.0 - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll =>.Kaspersky Lab®
O108 - CMH4: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: PowerISO - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL =>.Power Software Limited®
O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: ShellExtension - . (.Orphan.)
O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Sidebar droptarget.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation
O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH6: Adobe.Acrobat.ContextMenu - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim.dll =>.Adobe Systems, Incorporated®
O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Windows Briefcase.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: Kaspersky Anti-Virus 18.0.0 - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll =>.Kaspersky Lab®
O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH6: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamext.dll =>.Malwarebytes Corporation®
O108 - CMH6: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: OODefrag - {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} . (.O&O Software GmbH - O&O Defrag Shell Extension (Win32).) -- C:\Program Files\OO Software\Defrag\oodsh.dll =>.O&O Software GmbH®
O108 - CMH6: PowerISO - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL =>.Power Software Limited®
O108 - CMH6: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Kaspersky Anti-Virus 18.0.0 - {FF48AD48-74C7-4260-B385-FAEB80947450} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll =>.Kaspersky Lab®
O108 - CMH7: OODefrag - {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} . (.O&O Software GmbH - O&O Defrag Shell Extension (Win32).) -- C:\Program Files\OO Software\Defrag\oodsh.dll =>.O&O Software GmbH®
O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH7: ShellExtension - . (.Orphan.)

---\\ Image File Execution Options (1) - 0s
O50 - IFEO:C:\Windows\System32\FlashPlayerApp.exe - (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\\0] =>.Adobe Systems Incorporated®

---\\ ShareTools MSconfig StartupReg (13) - 1s
O53 - SMSR:HKLM\...\startupreg\Acrobat Assistant 8.0 [Key] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files\Adobe\Acrobat 11.0\Acrobat\acrotray.exe =>.Adobe Systems Inc.
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd
O53 - SMSR:HKLM\...\startupreg\CNAP2 Launcher [Key] . (.CANON INC. - Canon Advanced Printing Technology Printer.) -- C:\Windows\System32\spool\drivers\w32x86\3\CNAP2LAK.EXE =>.Canon Inc.
O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation
O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation
O53 - SMSR:HKLM\...\startupreg\OODefragTray [Key] . (.O&O Software GmbH - O&O Defrag TrayIcon (Win32).) -- C:\Program Files\OO Software\Defrag\oodtray.exe =>.O&O Software GmbH
O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation
O53 - SMSR:HKLM\...\startupreg\PWRISOVM.EXE [Key] . (.Power Software Ltd - PowerISO Virtual Drive Manager.) -- C:\Program Files\PowerISO\PWRISOVM.EXE =>.Power Software Ltd
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O53 - SMSR:HKLM\...\startupreg\TrayServer [Key] . (.Magix - Trayserver.) -- C:\Program Files\MAGIX\Video_deluxe_MX_Premium_Version_a_telecharger\TrayServer_fr.exe =>.Magix
O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)

---\\ System Drivers List (119) - 11s
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows®
O58 - SDL:2016/09/14 05:51:38 A . (.SafeNet, Inc. - Ancillary Function Driver.) -- C:\Windows\System32\drivers\aksfridge.sys [450920] =>.SafeNet, Inc.®
O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation
O58 - SDL:2012/06/21 11:59:30 A . (.Conexant Systems Inc. - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\CHDRT32.sys [1292448] =>.Conexant Systems, Inc.®
O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows®
O58 - SDL:2016/12/26 20:27:10 A . (.AO Kaspersky Lab - Cryptographic Module Driver x86 (56 bit).) -- C:\Windows\System32\drivers\cm_km.sys [176864] =>.Kaspersky Lab®
O58 - SDL:2012/06/15 13:53:30 A . (.Cypress Semiconductor, Inc. - Trackpad Driver.) -- C:\Windows\System32\drivers\cykbfltr.sys [13824] =>.Cypress Semiconductor, Inc.
O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows®
O58 - SDL:2017/08/15 12:00:47 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1c6232.sys [371664] =>.Intel(R) INTELNPG1®
O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation
O58 - SDL:2009/04/14 19:58:24 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [23424] =>.Huawei Tech. Co., Ltd.
O58 - SDL:2009/04/14 19:58:24 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbfake.sys [103040] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2009/04/14 19:58:24 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [102784] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2009/04/14 19:58:24 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbnet.sys [112128] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/07/26 09:58:28 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbccgpfilter.sys [15360] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2016/09/14 05:51:34 A . (.SafeNet, Inc. - Sentinel Hardlock Device Driver for Windows.) -- C:\Windows\System32\drivers\hardlock.sys [627048] =>.SafeNet, Inc.®
O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows®
O58 - SDL:2017/08/15 11:49:45 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\Windows\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX®
O58 - SDL:2017/07/26 09:58:28 A . (.Huawei Technologies Co., Ltd. - ew_cdcacm Driver.) -- C:\Windows\System32\drivers\hw_cdcacm.sys [113792] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/07/26 09:58:28 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\hw_quusbmdm.sys [199680] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/07/26 09:58:28 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\hw_quusbnet.sys [249856] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/07/26 09:58:28 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\hw_usbdev.sys [102272] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2015/05/29 15:05:32 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStorA.sys [503048] =>.Intel Corporation - Rapid Storage Technology®
O58 - SDL:2015/05/29 15:05:32 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [27376] =>.Intel Corporation - Rapid Storage Technology®
O58 - SDL:2011/03/11 07:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows®
O58 - SDL:2017/09/06 00:13:58 A . (.Lenovo. - Lenovo Power Management Driver.) -- C:\Windows\System32\drivers\ibmpmdrv.sys [74112] =>.Lenovo®
O58 - SDL:2018/03/01 17:36:14 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [149688] =>.Tonec Inc.®
O58 - SDL:2016/03/02 00:57:16 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [3789304] =>.Intel(R) pGFX®
O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows®
O58 - SDL:2015/09/16 06:44:58 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [379128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2016/10/01 02:26:00 A . (.AO Kaspersky Lab - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [165296] =>.Kaspersky Lab®
O58 - SDL:2017/12/24 21:18:00 A . (.AO Kaspersky Lab - Backup Disk Filter [fre_wnet_x86].) -- C:\Windows\System32\drivers\klbackupdisk.sys [62184] =>.Kaspersky Lab®
O58 - SDL:2018/05/05 14:14:52 A . (.AO Kaspersky Lab - Backup File Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klbackupflt.sys [98504] =>.Kaspersky Lab®
O58 - SDL:2016/05/31 23:24:04 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x86].) -- C:\Windows\System32\drivers\kldisk.sys [69000] =>.Kaspersky Lab®
O58 - SDL:2018/05/05 14:15:52 A . (.AO Kaspersky Lab - Filter Core [fre_wlh_x86].) -- C:\Windows\System32\drivers\klflt.sys [164032] =>.Kaspersky Lab®
O58 - SDL:2018/05/05 14:14:53 A . (.AO Kaspersky Lab - klhk [fre_wlh_x86].) -- C:\Windows\System32\drivers\klhk.sys [659136] =>.Kaspersky Lab®
O58 - SDL:2018/05/05 14:15:52 A . (.AO Kaspersky Lab - Core System Interceptors [fre_wlh_x86].) -- C:\Windows\System32\drivers\klif.sys [835272] =>.Kaspersky Lab®
O58 - SDL:2018/05/05 14:15:52 A . (.AO Kaspersky Lab - Packet Network Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klim6.sys [49344] =>.Kaspersky Lab®
O58 - SDL:2016/12/23 09:19:26 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klkbdflt.sys [50400] =>.Kaspersky Lab®
O58 - SDL:2016/12/07 09:38:44 A . (.AO Kaspersky Lab - Mouse Device Filter [fre_wlh_x86].) -- C:\Windows\System32\drivers\klmouflt.sys [51424] =>.Kaspersky Lab®
O58 - SDL:2017/12/24 21:18:00 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x86].) -- C:\Windows\System32\drivers\klpd.sys [45552] =>.Kaspersky Lab®
O58 - SDL:2016/06/07 01:31:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\kltap.sys [48056] =>.AnchorFree Inc®
O58 - SDL:2017/12/24 21:18:00 A . (.AO Kaspersky Lab - Legacy Network Filter [fre_wnet_x86].) -- C:\Windows\System32\drivers\kltdi.sys [75760] =>.Kaspersky Lab®
O58 - SDL:2018/05/05 14:14:57 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [121544] =>.Kaspersky Lab®
O58 - SDL:2017/12/24 21:18:00 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x86].) -- C:\Windows\System32\drivers\kneps.sys [165088] =>.Kaspersky Lab®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:08:52 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [24448] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 14:08:56 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [126336] =>.Malwarebytes Corporation®
O58 - SDL:2018/05/06 10:51:12 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows®
O58 - SDL:2009/04/14 19:58:24 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [621056] =>.DiBcom SA
O58 - SDL:2018/05/06 01:06:50 A . (.Chingachguk & Denger2k (Elite & SP edition) - Virtual USB MultiKey.) -- C:\Windows\System32\drivers\multikey.sys [51584] {34CF9D19962F50864895CBD75B9FA1EA} =>.Chingachguk & Denger2k (Elite & SP edition)
O58 - SDL:2016/03/10 14:09:04 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [53120] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows®
O58 - SDL:2011/03/02 15:21:14 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\qcusbser.sys [112752] =>.Sony Ericsson Mobile Communications AB®
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows®
O58 - SDL:2011/05/25 15:22:00 A . (.REDC - RICOH PCIe SDXC/MMC Controller Driver.) -- C:\Windows\System32\drivers\risdxc86.sys [76288] =>.REDC
O58 - SDL:2015/01/06 11:41:22 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 33736.) -- C:\Windows\System32\drivers\rtwlane.sys [3175128] =>.Realtek Semiconductor Corp®
O58 - SDL:2016/02/10 15:21:36 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\Windows\System32\drivers\scdemu.sys [123952] =>.Power Software Limited®
O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Rovi Corporation
O58 - SDL:2009/09/17 08:05:02 A . (.SafeNet, Inc. - Sentinel System Driver (NT Parallel driver).) -- C:\Windows\System32\drivers\sentinel.sys [92712] =>.SafeNet, Inc.®
O58 - SDL:2017/08/15 12:00:35 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\Windows\System32\drivers\ser2pl.sys [151552] =>.Prolific Technology Inc.
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows®
O58 - SDL:2017/08/15 12:01:10 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_AMDASF_Aux.sys [34904] =>.Synaptics Incorporated®
O58 - SDL:2015/07/23 17:49:12 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [26792] =>.Synaptics Incorporated®
O58 - SDL:2017/08/15 12:01:10 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel_Aux.sys [35416] =>.Synaptics Incorporated®
O58 - SDL:2009/09/17 08:05:02 A . (.SafeNet, Inc. - Sentinel System USB Driver.) -- C:\Windows\System32\drivers\SNTNLUSB.SYS [38376] =>.SafeNet, Inc.®
O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows®
O58 - SDL:2017/08/15 12:01:10 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\Windows\System32\drivers\SynRMIHID_Aux.sys [49752] =>.Synaptics Incorporated®
O58 - SDL:2017/08/15 12:01:10 A . (.Synaptics Incorporated - Synaptics Touchpad Win32 Driver.) -- C:\Windows\System32\drivers\SynTP.sys [477272] =>.Synaptics Incorporated®
O58 - SDL:2016/03/28 22:01:42 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriver.sys [157752] =>.Intel(R) Embedded Subsystems and IP Blocks Group®
O58 - SDL:2017/09/07 14:04:56 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl.sys [45056] =>.Apple, Inc.
O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:13:45 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL3.SYS [207360] =>.Conexant Systems, Inc.
O58 - SDL:2009/07/14 00:13:45 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT3.SYS [661504] =>.Conexant Systems, Inc.
O58 - SDL:2009/07/14 00:13:46 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV3.SYS [980992] =>.Conexant Systems, Inc.
O58 - SDL:2016/12/26 00:26:16 A . (...) -- C:\Windows\System32\ampa.sys [35760] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] =>.Microsoft Corporation
O58 - SDL:2005/08/03 16:05:02 A . (.Prolific Technology Inc. - USB-Serial USB Driver.) -- C:\Windows\System32\SER9PL.sys [35892] =>.Prolific Technology Inc.

---\\ Last modified or created user files (2) - 12s
O61 - LFC: 2018/05/06 11:48:10 A . (..) -- C:\Users\YOUCEF\Desktop\CKScanner.exe [468480]
O61 - LFC: 2018/05/06 11:48:29 A . (..) -- C:\Users\YOUCEF\Desktop\winchk_2.0.exe [315000]

---\\ File Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %SystemRoot%\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ Start Menu Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Search Browser Infection (2) - 6s
O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Search Svchost Services (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [606720] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\audiosrv.dll [474624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [523776] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2092032] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [751104] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation

---\\ Firewall Active Exception List (4) - 1s
O87 - FAEL: "{A102CCA5-0DAF-4426-9D24-486D66F2E859}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{16D1F0EA-1955-4EED-89D4-372956486780}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "TCP Query User{976F95C0-9A36-4C7B-A76E-760DE9A0AA48}D:\mobilis\logiciel drivetest\ipmsg.exe" [In-None-P6-TRUE] .(.H.Shirouzu - IPMsg English.) -- D:\mobilis\logiciel drivetest\ipmsg.exe
O87 - FAEL: "UDP Query User{324AE38A-7B16-438B-9940-9B045DC3E7CD}D:\mobilis\logiciel drivetest\ipmsg.exe" [In-None-P17-TRUE] .(.H.Shirouzu - IPMsg English.) -- D:\mobilis\logiciel drivetest\ipmsg.exe

---\\ Product Upgrade Codes (8) - 1s
O90 - PUC: "0CC570A39628BA84A855B0F202B3710B" [HKLM] . (.MapInfo Pro 15.0.) -- C:\Windows\Installer\{3A075CC0-8269-48AB-8A55-0B2F203B17B0}\ARPPRODUCTICON.exe
O90 - PUC: "36A4CD877B6A7E34E8DCB6E32911BD19" [HKLM] . (.TEMS Mediator 3.0.4 RelInv19.1.Daily_20171003.4.)
O90 - PUC: "3D7A3F2AEE16A5D4D8F0D1F56989531C" [HKLM] . (.MapXtreme v8.0.0 Runtime.) -- C:\Windows\Installer\{A2F3A7D3-61EE-4D5A-8D0F-1D5F969835C1}\ARPPRODUCTICON.exe
O90 - PUC: "5125B9EB3CC3BB44C82E386B37C81FCA" [HKLM] . (.Lotus Notes 6.5.3 fr.) -- C:\Windows\Installer\{BE9B5215-3CC3-44BB-8CE2-83B6738CF1AC}\ARPPRODUCTICON.exe
O90 - PUC: "B36966F490EEA584B95C2AE0C5D5C88F" [HKLM] . (.TEMS Investigation 16.3.6.)
O90 - PUC: "B643E9FBECE581A459015527F90D3832" [HKLM] . (.Sentinel System Driver Installer 7.5.1.) -- C:\Windows\Installer\{BF9E346B-5ECE-4A18-9510-55729FD08323}\ARPPRODUCTICON.exe
O90 - PUC: "C7B0AF93BD7B4F141996EABF1619B363" [HKLM] . (.Sentinel Runtime.)
O90 - PUC: "C98053484D4F71047BE2C1B2542AB1EF" [HKLM] . (.TEMS Discovery Device 12.1.3.) -- C:\Windows\Installer\{8435089C-F4D4-4017-B72E-1C2B45A21BFE}\Discovery.exe

---\\ Windows Installer Scan (32) - 42s
[MD5.1AF53BCD836E8DFB7CA4EB896FE6A45A] [WIS][2004/11/05 10:27:34] (.IBM - Nom de votre produit SYSTEM_GENERATED.) -- C:\Windows\Installer\11252f.msi [1361668] =>.IBM
[MD5.5B028E9F6F3890023C28E2B2FEF881A0] [WIS][2017/08/16 09:11:21] (.O&O Software GmbH - Defrag.) -- C:\Windows\Installer\12b62b1.msi [20072648] =>.O&O Software GmbH
[MD5.B446C0DA35323D45DBD037E0E69AC275] [WIS][2017/09/11 15:43:52] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\167bcd9.msi [45940736] =>.Apple Inc.
[MD5.11A93ECF3E8C13E3BB8129D56808A0F0] [WIS][2017/09/08 13:24:56] (.Apple Inc. - Apple Mobile Device Support Installer.) -- C:\Windows\Installer\167bcdf.msi [10735616] =>.Apple Inc.
[MD5.5F1FBBF794EEEF801A22E2E306115B86] [WIS][2017/07/29 06:10:26] (.Apple Inc. - Apple Software Update Installer.) -- C:\Windows\Installer\167bce5.msi [3608576] =>.Apple Inc.
[MD5.C87FF56E416E4E391FF349589157873F] [WIS][2018/04/02 09:29:03] (.Google - Google Earth Pro.) -- C:\Windows\Installer\1affdcd.msi [53137408] =>.Google
[MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2018/04/02 09:28:26] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\1affdd5.msi [40960] =>.Google Inc.
[MD5.1FCCB7846B517293F57294A09E6FA06A] [WIS][2018/04/14 16:32:17] (.Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Windows\Installer\20b916.msi [9412608] =>.Kaspersky Lab
[MD5.25B47EFBE9DCEF40BB9760B6B7846B99] [WIS][2017/11/02 14:07:10] (.Adobe Systems, Inc - swMSM.) -- C:\Windows\Installer\23aea775.msi [2118144] =>.Adobe Systems, Inc
[MD5.17E348FB86F140778CAD0C82E511964E] [WIS][2017/08/19 03:20:34] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\2aa11.msi [45469696] =>.Skype Technologies S.A.
[MD5.1F39475748A18F23F17730F3FE038686] [WIS][2017/08/18 00:52:33] (.Pitney Bowes - Installer for MapInfo Product.) -- C:\Windows\Installer\2d69d4.msi [21880320] =>.Pitney Bowes
[MD5.EE41D0AF7D2A6877AF4EC350F02089F2] [WIS][2017/11/09 21:55:36] (.InfoVista Sweden AB - TEMS Mediator 3.0.4 RelInv19.1.Daily_201710.) -- C:\Windows\Installer\3887a55.msi [19976192]
[MD5.8F3F44B8AEA9B6B5D543018A168063D0] [WIS][2018/01/09 09:35:46] (.Pitney Bowes Software - MapXtreme Runtime.) -- C:\Windows\Installer\3887abf.msi [63276032]
[MD5.7EDC03332F4C4A16CDBDE6D1C7783A02] [WIS][2017/11/09 22:03:42] (.InfoVista - TEMS Discovery Device 12.1.3.) -- C:\Windows\Installer\3887ac3.msi [383896184]
[MD5.AFDED4B2B760BC9C4D4E04342FE69346] [WIS][2016/05/26 10:44:12] (.Ascom - TEMS Investigation 16.3.6.) -- C:\Windows\Installer\43ae2.msi [279359488]
[MD5.069388AA67B06C244E69092BB46609D6] [WIS][2018/02/12 14:40:33] (.SafeNet, Inc. - Sentinel System Driver 7.5.1.) -- C:\Windows\Installer\5ccb3.msi [2568704] =>.SafeNet, Inc.
[MD5.10903734271AA8645382112BB758DDBE] [WIS][2016/05/25 22:56:22] (.Intel Corporation - Intel(R) ME UninstallLegacy.) -- C:\Windows\Installer\5d124e.msi [393216] =>.Intel Corporation
[MD5.5A66370DD065D7D1647DABA3538F6BEC] [WIS][2016/05/25 22:56:28] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\Windows\Installer\5d1254.msi [9736192] =>.Intel Corporation
[MD5.A4DA3787B8B56657D3EB5B9F01839D23] [WIS][2018/01/03 20:48:52] (.Gemalto - Sentinel Runtime Environment.) -- C:\Windows\Installer\5d857.msi [17402368] =>.Gemalto
[MD5.BD379D9BD326AEE35A3A8D23E0B56896] [WIS][2014/06/13 02:38:11] (.Adobe Systems Incorporated - Installers.) -- C:\Windows\Installer\5ea376.msi [9826304] =>.Adobe Systems Incorporated
[MD5.12B16E46161E02A01458D1E27BC7497D] [WIS][2018/04/14 16:56:33] (.Kaspersky Lab - Kaspersky Total Security.) -- C:\Windows\Installer\800b2.msi [11046912] =>.Kaspersky Lab
[MD5.D03827194AFAC0CA757A8D928D90E073] [WIS][2017/09/04 17:52:20] (.MAGIX AG - Firebird SQL Server - MAGIX Edition - v2.1..) -- C:\Windows\Installer\8bf8d.msi [4581376] =>.MAGIX AG
[MD5.95B3D5C5A55EB183156A2C62A2C8D252] [WIS][2017/09/04 17:52:21] (.MAGIX AG - MAGIX Speed burnR (MSI) - v7.0.1.27 (fr-FR).) -- C:\Windows\Installer\8bf95.msi [1140736] =>.MAGIX AG
[MD5.7284355C7A89A8A63F96279369555BD0] [WIS][2017/09/04 17:52:21] (.MAGIX AG - MAGIX Screenshare - v4.3.6.1987 (fr-FR).) -- C:\Windows\Installer\8bf9c.msi [1131008] =>.MAGIX AG
[MD5.6AA47FE36D3AB8BC598C52DBFDA57528] [WIS][2017/09/04 17:52:21] (.MAGIX AG - MAGIX Vidéo deluxe MX Premium Version à tél.) -- C:\Windows\Installer\8bfb5.msi [2832384] =>.MAGIX AG
[MD5.E83C250C3A45145DA1DA003675AD935D] [WIS][2017/09/12 23:52:35] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\106849cc.msp [258830336] =>.Adobe Systems, Incorporated
[MD5.E40C199BF0B36E02040F7ABDB483FDB5] [WIS][2017/09/12 23:54:26] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\106849f7.msp [15425536] =>.Adobe Systems, Incorporated
[MD5.BDD814128A73CC48D0F7386E1536D1D3] [WIS][2018/04/14 17:25:21] (.Kaspersky Lab.) -- C:\Windows\Installer\1a9496.msp [53248] =>.Kaspersky Lab
[MD5.62FCFD32A396FE4FA327499AFA790DCE] [WIS][2018/05/05 14:14:41] (.Kaspersky Lab.) -- C:\Windows\Installer\49f221.msp [17260544] =>.Kaspersky Lab
[MD5.972530C7A778C1D06998DCC02CE480DA] [WIS][2018/04/14 18:32:30] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\55cbbb.msp [259031040] =>.Adobe Systems, Incorporated
[MD5.665DB7F8999A1A35B9B8326FB6619360] [WIS][2014/06/13 02:40:22] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\5ea4f7.msp [134643712] =>.SUP.Obsolete.Adobe
[MD5.0BE76A1A7FF21B9A5082823F0A474C40] [WIS][2014/06/13 02:40:22] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\5ea51d.msp [8671232] =>.SUP.Obsolete.Adobe

---\\ FEATURE CONTROLE. (23) - 0s
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Skype.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:SkypeBrowserHost.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:avpui.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:Skype.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:SkypeBrowserHost.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:Skype.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:SkypeBrowserHost.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Setup.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Setup.exe

---\\ Additional Scan (O88) (10) - 6s
C:\Users\YOUCEF\AppData\Roaming\PDAppFlex =>Trojan.Elpman
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension =>.SUP.Orphan
C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent =>BitTorrent (P2P)
C:\Windows\Installer\5ea4f7.msp =>.SUP.Obsolete.Adobe
C:\Windows\Installer\5ea51d.msp =>.SUP.Obsolete.Adobe
C:\Users\YOUCEF\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\YOUCEF\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome

---\\ Summary of the elements found (6) - 0s
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P)
https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader
https://nicolascoolman.eu/2017/09/23/trojan-elpman/ =>Trojan.Elpman
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Obsolete.Adobe
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome

~ Unselected Options: O82,
~ End of the scan, 10973 items in 02mn31s (1260)(0)

Publicité


Signaler le contenu de ce document

Publicité