~ ZHPDiag v2016.4.1.81 By Nicolas Coolman (2016/04/01) ~ Run by nabil tebib (Administrator) (2016/04/03 01:10:39) ~ Web: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: ~ Mode: Scan ~ Report: C:\Users\nabil tebib\Desktop\ZHPDiag.txt ~ Report: C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 10586) ---\\ Internet Browsers (3) - 0s GCIE: Google Chrome v49.0.2623.110 MFIE: Mozilla Firefox 39.0.3 (x86 en-US) MSIE: Internet Explorer v11.162.10586.0 ---\\ Windows Product Information (3) - 3s ~ Windows Server License Manager Script : OK System - VBScript Engine not found Windows Automatic Updates : OK ---\\ System protection software (1) - 12s Windows Defender (Deactivate) ---\\ Information on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3888.668 MB (27% free) System Restore: Activé (Enable) System drive C: has 58 GB () free of 99 GB ---\\ Connection to the system mode (3) - 0s ~ Computer Name: NABIL ~ User Name: nabil tebib ~ Logged in as Administrator ---\\ Enumeration of the disk units (5) - 0s ~ Drive C: has 58 GB free of 99 GB (System) ~ Drive D: has 74 GB free of 149 GB ~ Drive E: has 116 GB free of 160 GB ~ Drive F: has 0 GB free of 0 GB ~ Drive Q: has 66 GB free of 66 GB ---\\ State of the Windows Security Center (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Search Generic System Files (24) - 2s [MD5.95D730526EF81792CD6848D8D10FAA1C] - 13/02/2016 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4502352] =>.Microsoft Windows® [MD5.0DCB89B1F3689BC6262FF30BBD603171] - 30/10/2015 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation [MD5.CAD491DD9EC00BB841EA407D9C498C4A] - 30/10/2015 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [290856] =>.Microsoft Windows Publisher® [MD5.6807A6D971AA7A26245397ADDFE3B5D8] - 23/02/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [2755584] =>.Microsoft Corporation [MD5.7B24B823404D53DA4748F21AD2BF04C9] - 13/02/2016 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [584704] =>.Microsoft Corporation [MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - 30/10/2015 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation [MD5.E7B524818100B0FDE2B057C74B0C0DCD] - 30/10/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [686984] =>.Microsoft Windows® [MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535088] =>.Microsoft Windows® [MD5.70148EFA9A562E7185B75BBE7D376BF7] - 13/02/2016 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [578912] =>.Microsoft Windows® [MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation [MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173568] =>.Microsoft Corporation [MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [148480] =>.Microsoft Corporation [MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [79872] =>.Microsoft Corporation [MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation [MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation [MD5.0B3B0C1D86050355676640488FA897D3] - 23/02/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [430944] =>.Microsoft Windows® [MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [279552] =>.Microsoft Corporation [MD5.58BFFEF692A47FCE3FAAEDBC8F3DCBBB] - 23/02/2016 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2152288] =>.Microsoft Windows® [MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation [MD5.E3C82823B22463BC38AA4F8ADA852624] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation [MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 13/02/2016 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [173056] =>.Microsoft Corporation [MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 13/02/2016 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows® [MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [414560] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (10) - 4s O23 - Service: Camfrog Update Service (camfrog_update_service) . (.Camshare Inc. - Camfrog Video Chat update service.) - C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe {09626DC47048211BE34315BAF35A16F7} =>.Camshare Inc. O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation® O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX® O23 - Service: ManyCam Service (ManyCam Service) . (.Visicom Media Inc. - ManyCam Service.) - C:\ProgramData\ManyCam\Service\service.exe =>.Superfluous.VisicomManyCam O23 - Service: rscp (rscp) . (.Copyright Reason Software Company Inc. - Reason Core Security Bundle Protection.) - C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_svc.exe =>.Reason Software Company Inc.® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 11.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® O23 - Service: Update service (Update service) . (.Popcorn Time - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time ---\\ Services not Microsoft (SR=Run, SS=Stop) (15) - 29s SS - Demand [23/03/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [15/03/2016] [ 1063968] Camfrog Update Service (camfrog_update_service) . (.Camshare Inc..) - C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe {09626DC47048211BE34315BAF35A16F7} =>.Camshare Inc. SR - Demand [19/02/2016] [ 290880] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SR - Auto [19/11/2015] [ 2521080] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® SR - Auto [07/09/2015] [ 131288] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation® SS - Auto [28/02/2016] [ 154440] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [28/02/2016] [ 154440] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [19/02/2016] [ 329280] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation SR - Auto [15/12/2015] [ 77528] ManyCam Service (ManyCam Service) . (.Visicom Media Inc..) - C:\ProgramData\ManyCam\Service\service.exe =>.Superfluous.VisicomManyCam SS - Demand [06/08/2015] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [18/03/2016] [ 254904] rscp (rscp) . (.Copyright Reason Software Company Inc..) - C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_svc.exe =>.Reason Software Company Inc.® SS - Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [16/02/2016] [ 6940944] TeamViewer 11 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® SS - Auto [19/10/2015] [ 339968] Update service (Update service) . (.Popcorn Time.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.Popcorn Time ---\\ Task Planned Automatically (17) - 4s [MD5.A9D55370A0CBADD1E1E2B4796ACD26DF] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated® [MD5.00000000000000000000000000000000] [APT] [CreateChoiceProcessTask] (...) -- C:\Windows\BrowserChoice\browserchoice.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc® [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] (.Activate.) =>.Google Inc® [MD5.00000000000000000000000000000000] [APT] [ReasonSecurityScheduledScan] (...) -- C:\Program Files\Reason\Security\rsUI.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [ReasonSecurityStart] (...) -- C:\Program Files\Reason\Security\rsUI.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.C6992F5730886B6977313918583D13C7] [APT] [RTKCPL] (.Realtek Semiconductor.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296] (.Activate.) =>.Realtek Semiconductor Corp® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [830] =>.Adobe Systems Incorporated® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1086] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1090] =>.Google Inc® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3816] =>.Adobe Systems Incorporated® O39 - APT: CreateChoiceProcessTask - (...) -- C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask [2314] (.Orphean.) =>.Superfluous.Orphean O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3230] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3458] =>.Google Inc® O39 - APT: ReasonSecurityScheduledScan - (...) -- C:\WINDOWS\System32\Tasks\ReasonSecurityScheduledScan [2764] (.Orphean.) =>.Superfluous.Orphean O39 - APT: ReasonSecurityStart - (...) -- C:\WINDOWS\System32\Tasks\ReasonSecurityStart [2476] (.Orphean.) =>.Superfluous.Orphean O39 - APT: RTKCPL - (.Realtek Semiconductor.) -- C:\WINDOWS\System32\Tasks\RTKCPL [3194] =>.Realtek Semiconductor Corp® ---\\ Process running (38) - 8s [MD5.2C2469FF10F51572D1F6573751E40462] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2521080] [PID.1244] =>.ESET, spol. s r.o.® [MD5.83B26CC9279768FE449B287DF5B0AAEA] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [329280] [PID.1436] =>.Intel Corporation - pGFX® [MD5.B04ABB51DABCFFB49A88923F5B1F8AC0] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe [290880] [PID.1628] =>.Intel Corporation - pGFX® [MD5.59C3DCCDD00E6EC8D16016BF6B02A554] - (.Visicom Media Inc. - ManyCam Service.) -- C:\ProgramData\ManyCam\Service\service.exe [77528] [PID.2100] =>.Superfluous.VisicomManyCam [MD5.CABA42EC239DC4B607A43FF9AC43C733] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Program Files\Elantech\ETDService.exe [131288] [PID.2120] =>.ELAN Microelectronics Corporation® [MD5.A796FB8B38B595444F066C9E8B24004F] - (.Camshare Inc. - Camfrog Video Chat update service.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe [1063968] [PID.2180] {09626DC47048211BE34315BAF35A16F7} =>.Camshare Inc. [MD5.EDF03B43FE5398EA4AD74DC6A0BABC07] - (.Copyright Reason Software Company Inc. - Reason Core Security Bundle Protection.) -- C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_svc.exe [254904] [PID.2404] =>.Reason Software Company Inc.® [MD5.2E7EFE9F59DA5EF7AAAE5712324FAAFD] - (.TeamViewer GmbH - TeamViewer 11.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6940944] [PID.2616] =>.TeamViewer® [MD5.854FF071683933E4941B32B962B5368D] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [3242712] [PID.10352] =>.ELAN Microelectronics Corporation® [MD5.36308FBC82BBC18D454BCA671692300F] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5544648] [PID.4244] =>.ESET, spol. s r.o.® [MD5.32DC5E9AAE80FFB5DEC803A8849DEC1E] - (.Copyright Reason Software Company Inc. - Reason Core Security Bundle Protection.) -- C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_bg.exe [570296] [PID.9112] =>.Reason Software Company Inc.® [MD5.99A5754FCA1360F5F83AEF06907312FC] - (.ELAN Microelectronics Corp. - ETDTouch.) -- C:\Program Files\Elantech\ETDTouch.exe [132312] [PID.12544] =>.ELAN Microelectronics Corporation® [MD5.35B2A674E0233229004DE7FDBA7B155B] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [540736] [PID.11252] =>.Intel Corporation - pGFX® [MD5.8F667ACC8E1B8E19799FF21994DC5A6F] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [257600] [PID.10976] =>.Intel Corporation - pGFX® [MD5.DAA195AEF4BF15FE7E37BA4B25E341B0] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2581208] [PID.10144] =>.ELAN Microelectronics Corporation® [MD5.C6992F5730886B6977313918583D13C7] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296] [PID.6592] =>.Realtek Semiconductor Corp® [MD5.F6987FF6C6D683F79FDCE707B071A997] - (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe [955392] [PID.6260] =>.SFX TEAM [MD5.163E43BC69AE78F468024EC2133C94A8] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [594992] [PID.3672] =>.Oracle America, Inc.® [MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275608] [PID.6580] =>.Tonec Inc.® [MD5.C53B51794903CDA88CD135014C3E90F5] - (.Oracle Corporation - Java Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [926768] [PID.13936] =>.Oracle America, Inc.® [MD5.7C49070A87C960C2E39947CDA2612723] - (.Copyright Microsoft Corporation - Phone Companion.) -- C:\Program Files\WindowsApps\Microsoft.WindowsPhone_10.1602.3010.0_x64__8wekyb3d8bbwe\CompanionApp.exe [12288] [PID.9472] =>.Copyright Microsoft Corporation [MD5.A5C40C25CE9B14257656B4808C661B2F] - (.Copyright © Microsoft Corporation. All rights reserve - Weather.Windows.) -- C:\Program Files\WindowsApps\Microsoft.BingWeather_4.8.277.0_x86__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe [15872] [PID.11692] [MD5.9D0ADA27215A21E0F38850FAF8C54D85] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.325.12390.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [16896] [PID.10596] =>.Copyright Microsoft Corporation [MD5.65212966BD41D0D037E9D27D4B5AE33E] - (.Visicom Media Inc. - ManyCam Virtual Webcam.) -- C:\Program Files (x86)\ManyCam\ManyCam.exe [10116392] [PID.3024] =>.Superfluous.VisicomManyCam [MD5.A64B3B32A7D32BF21BDF2ACADDA804C8] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [51665536] [PID.2080] =>.Skype Software Sarl® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.8052] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.11792] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.1596] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.11120] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3768] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.5760] =>.Google Inc® [MD5.81896B186E0E66F762E1CB1C2E5B25FC] - (.VideoLAN - VLC media player.) -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [137152] [PID.11916] =>.VideoLAN® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.7312] =>.Google Inc® [MD5.DC7B578A97F82AAB19906DAEB3693D1C] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3878480] [PID.13136] =>.Tonec Inc. [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.3156] =>.Google Inc® [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.10592] =>.Google Inc® [MD5.914D4A53A400912E91EC087F66095390] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\nabil tebib\Downloads\ZHPDiag3.exe [2171904] [PID.12552] =>.Nicolas Coolman [MD5.FAB888AC8D8609A963FCCC6F120FF1BA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [874136] [PID.13692] =>.Google Inc® ---\\ Google Chrome, Start,Search,Extensions (15) - 1s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] G2 - GCE: Preference [User Data\Default] [bifidglkmlbfohchohkkpdkjokajibgg] Direct APK Downloader G2 - GCE: Preference [User Data\Default] [bldgenmjegcnjebiongilahhcjldgmlm] __MSG_title__ G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [enddmcjcfojolegmdogekfpfbobmkioo] MediaCore Capture G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] G2 - GCE: Preference [User Data\Default] [mgoehlfmhfafaiepckjikpphoklijedl] Bing2Google G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pekcnopmdcbjdgmpnpkndppflpldnkkp] Hide My IP G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (19) - 4s P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\adguardadblocker@adguard.com.xpi P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\bingsearch.full@microsoft.com.xpi P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid0-zXo3XFGyiDalgkeEO4UYJTUwo2I@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid1-aEL04CgHfwCOwA@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid1-HdwPLukcGQeOSh@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\jid1-rs90nxQtPi3Asg@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\searchplugins\bing-.xml P2 - EXT FILE: (...) -- C:\Users\nabil tebib\AppData\Roaming\Mozilla\Firefox\Profiles\5tekefed.default\searchplugins\hma-proxy.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer Extensions, Start, Search (7) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896 R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer, Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (60) ---\\ Browser Helper Object (BHO) (2) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® ---\\ Internet Explorer Toolbars (1) - 0s O3 - Toolbar: 0xD6BC5BC5AD41AD4899533609C48EACC7 - [HKCU]{C55BBCD6-41AD-48AD-9953-3609C48EACC7} . (...) -- (.not file.) ---\\ Auto loading programs from Registry and folders (26) - 5s O4 - HKLM\..\Run: [RtsCM] . (.Realtek Semiconductor Corp. - Realtek Camera Man.) -- C:\WINDOWS\RTSCM64.EXE =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation® O4 - HKCU\..\Run: [Viber] . (. - Viber.) -- C:\Users\nabil tebib\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l® O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [Speech Recognition] . (.Microsoft Corporation - Speech Recognition.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe =>.SFX TEAM O4 - HKCU\..\Run: [download.ninja] . (.Copyright © vpnscout.org 2015 - downloadninja.) -- C:\Program Files\Ninja Download Manager\download.ninja.exe =>.Websecure Ltd® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [Camfrog] . (.Camshare, Inc. - Camfrog Video Chat.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation® O4 - HKCU\..\RunOnce: [Uninstall C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 (.not file.) O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Viber] . (. - Viber.) -- C:\Users\nabil tebib\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l® O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Speech Recognition] . (.Microsoft Corporation - Speech Recognition.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files (x86)\SuperCopier2\SuperCopier2.exe =>.SFX TEAM O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [download.ninja] . (.Copyright © vpnscout.org 2015 - downloadninja.) -- C:\Program Files\Ninja Download Manager\download.ninja.exe =>.Websecure Ltd® O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [Camfrog] . (.Camshare, Inc. - Camfrog Video Chat.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-385489371-975040603-1882434452-1002\..\RunOnce: [Uninstall C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 (.not file.) ---\\ Global shortcuts Startup (55) - 12s O4 - GS\Desktop [Administrator]: Any DVD Converter Professional.lnk . (.Any-Video-Converter.com - Any DVD Converter.) C:\Program Files (x86)\AnvSoft\Any DVD Converter Professional\DVDConvPro.exe =>.AnvSoft Co., Ltd.® O4 - GS\Desktop [Administrator]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - GS\Desktop [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrator]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [Administrator]: Skype - Shortcut.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Desktop [Administrator]: Tixati.lnk . (.Tixati Software Inc. - Tixati.) C:\Program Files\tixati\tixati.exe {0FFE} =>.Tixati Software Inc. O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\TaskBar [Administrator]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Guest]: Any DVD Converter Professional.lnk . (.Any-Video-Converter.com - Any DVD Converter.) C:\Program Files (x86)\AnvSoft\Any DVD Converter Professional\DVDConvPro.exe =>.AnvSoft Co., Ltd.® O4 - GS\Desktop [Guest]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - GS\Desktop [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Guest]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [Guest]: Skype - Shortcut.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Desktop [Guest]: Tixati.lnk . (.Tixati Software Inc. - Tixati.) C:\Program Files\tixati\tixati.exe {0FFE} =>.Tixati Software Inc. O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Guest]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\TaskBar [Guest]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [nabil tebib]: Any DVD Converter Professional.lnk . (.Any-Video-Converter.com - Any DVD Converter.) C:\Program Files (x86)\AnvSoft\Any DVD Converter Professional\DVDConvPro.exe =>.AnvSoft Co., Ltd.® O4 - GS\Desktop [nabil tebib]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - GS\Desktop [nabil tebib]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [nabil tebib]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [nabil tebib]: Skype - Shortcut.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Desktop [nabil tebib]: Tixati.lnk . (.Tixati Software Inc. - Tixati.) C:\Program Files\tixati\tixati.exe {0FFE} =>.Tixati Software Inc. O4 - GS\Desktop [nabil tebib]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nabil tebib\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [nabil tebib]: Camfrog Video Chat.lnk . (.Camshare, Inc. - Camfrog Video Chat.) C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe {09626DC47048211BE34315BAF35A16F7} O4 - GS\Quicklaunch [nabil tebib]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [nabil tebib]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\sendTo [nabil tebib]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [nabil tebib]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [nabil tebib]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [nabil tebib]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\TaskBar [nabil tebib]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\CommonDesktop [Public]: Camtasia Studio 8.lnk . (.TechSmith Corporation - Camtasia Studio.) C:\Program Files (x86)\TechSmith\Camtasia Studio 8\CamtasiaStudio.exe =>.TechSmith Corporation® O4 - GS\CommonDesktop [Public]: CPUID HWMonitor.lnk . (.CPUID - HWMonitor.) C:\Program Files\CPUID\HWMonitor\HWMonitor.exe =>.CPUID® O4 - GS\CommonDesktop [Public]: FastStone Capture.lnk . (.FastStone Soft - FastStone Capture.) C:\Program Files (x86)\FastStone Capture\FSCapture.exe =>.FastStone Soft O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: ManyCam.lnk . (.Visicom Media Inc. - ManyCam Virtual Webcam.) C:\Program Files (x86)\ManyCam\ManyCam.exe =>.Superfluous.VisicomManyCam O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Ninja Download Manager.lnk . (.Copyright © vpnscout.org 2015 - downloadninja.) C:\Program Files\Ninja Download Manager\download.ninja.exe =>.Websecure Ltd® O4 - GS\CommonDesktop [Public]: TeamViewer 11.lnk . (.TeamViewer GmbH - TeamViewer 11.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\Programs [Public]: Messenger.lnk . (...) C:\Program Files (x86)\Messenger for Desktop\Messenger.exe O4 - GS\Programs [Public]: Viber.lnk . (...) C:\Users\nabil tebib\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l® ---\\ Lop.com/Domain Hijackers (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 8.8.8.8 8.8.4.4 O17 - HKLM\System\CCS\Services\Tcpip\..\{0f0c177b-e03b-4abc-bd2b-80886a81b50e}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\..\{72b7bba4-4e68-4589-a877-3be2b0716a11}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\..\{99e38fa7-dac9-4541-a8ea-ade9c201891d}: DhcpNameServer = 8.8.8.8 8.8.4.4 ---\\ Extra protocols (23) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation ---\\ Software installed (44) - 15s O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Any DVD Converter Professional 4.1.5 - (.Any-DVD-Converter.com.) [HKLM][64Bits] -- Any DVD Converter Professional_is1 =>.AnvSoft Co., Ltd.® O42 - Logiciel: Bit Che - (.Convivea Inc..) [HKLM][64Bits] -- {D9DA5C41-964F-455F-B5E7-3664519440E8}_is1 {009653223240219E4230D33C46AECC7E93} O42 - Logiciel: Camfrog Video Chat 6.11 - (.Camshare, Inc..) [HKLM][64Bits] -- Camfrog O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM][64Bits] -- {474DFABF-E55B-4905-ABAA-40791A6AC77F} =>.TechSmith Corporation O42 - Logiciel: CPUID HWMonitor 1.28 - (...) [HKLM][64Bits] -- CPUID HWMonitor_is1 O42 - Logiciel: EasyBCD 2.3 - (.NeoSmart Technologies.) [HKLM][64Bits] -- EasyBCD =>.NeoSmart Technologies® O42 - Logiciel: EDS Google Books Downloader version 1.0.5.5 - (.EveryDaySoft.) [HKLM][64Bits] -- EDS Google Books Downloader_is1 O42 - Logiciel: EDS Video Downloader version 2.0.1.2 - (.EveryDaySoft.) [HKLM][64Bits] -- EDS Video Downloader_is1 =>PUP.Optional.VideoDownloader O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM][64Bits] -- {C7967963-BE1C-4ABA-839F-3CB206E50697} =>.ESET, spol. s r.o. O42 - Logiciel: ETDWare X64 15.7.0.1_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation® O42 - Logiciel: FastStone Capture 7.6 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Capture =>.FastStone Soft O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX® O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Java 8 Update 73 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218073F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: LINE - (.LINE Corporation.) [HKLM][64Bits] -- LINE =>.LINE Corporation® O42 - Logiciel: ManyCam 5.1.0 - (.Visicom Media Inc..) [HKLM][64Bits] -- ManyCam =>.Superfluous.VisicomManyCam O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 39.0.3 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0.3 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MPC-HC 1.7.9 (64-bit) - (.MPC-HC Team.) [HKLM][64Bits] -- {2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1 =>.Open Source Developer, Fotis ZAFIROPOULOS® O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {33C19CDE-E935-11E0-A0DA-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation O42 - Logiciel: Ninja Download Manager build 33 - (.Ninja Download Manager.) [HKLM][64Bits] -- DownloadNinja_is1 =>.Websecure Ltd® O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM][64Bits] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} =>.Prolific Technology INC O42 - Logiciel: PL-2303 Vista Driver Installer - (.Prolific.) [HKLM][64Bits] -- {EEC010D0-1252-4E1D-BAD9-F1B8F414535C} =>.Prolific O42 - Logiciel: PL-2303HXD Vista Driver Installer - (.Prolific Technology Inc..) [HKLM][64Bits] -- {503C86BF-22CB-4806-B2AE-AA79DFD8BA35} =>.Prolific Technology Inc. O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek PC Camera - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {E0A7ED39-8CD6-4351-93C3-69CCA00D12B4} =>.Realtek Semiconductor Corp® O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation O42 - Logiciel: Skype™ 7.22 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: SuperCopier2 - (...) [HKLM][64Bits] -- SuperCopier2 O42 - Logiciel: TeamViewer 11 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer® O42 - Logiciel: Tixati - (...) [HKLM][64Bits] -- tixati O42 - Logiciel: Vegas Pro 11.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {317ED8CF-E935-11E0-A689-F04DA23A5C58} =>.Sony O42 - Logiciel: Viber - (.Viber Media Inc.) [HKCU][64Bits] -- Viber =>.Viber Media S.a.r.l® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (124) - 15s HKLM\SOFTWARE\Wow6432Node\Adguard HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Auslogics HKLM\SOFTWARE\Wow6432Node\Camfrog HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\DC-Unlocker HKLM\SOFTWARE\Wow6432Node\DropboxUpdate HKLM\SOFTWARE\Wow6432Node\ESET HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hagel HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LINE Corporation HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\MAGIX HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Naver HKLM\SOFTWARE\Wow6432Node\NeoSmart Technologies HKLM\SOFTWARE\Wow6432Node\NHN Corporation HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Orange HKLM\SOFTWARE\Wow6432Node\Prolific HKLM\SOFTWARE\Wow6432Node\Prolific Technology INC HKLM\SOFTWARE\Wow6432Node\Prolific Technology Inc. HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Reason HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Sony Creative Software HKLM\SOFTWARE\Wow6432Node\SRS Labs HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\TechSmith HKLM\SOFTWARE\Wow6432Node\TVInstallTemp HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Visicom Media HKLM\SOFTWARE\Wow6432Node\VMware, Inc. HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Xara HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\8322898 HKCU\SOFTWARE\AnvSoft HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\Camfrog HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Driver Magician HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\Elantech HKCU\SOFTWARE\Enigma Protector HKCU\SOFTWARE\ESET HKCU\SOFTWARE\Extensoft HKCU\SOFTWARE\FastStone HKCU\SOFTWARE\FlashPeak HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Initex HKCU\SOFTWARE\Initex Software HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\LINE Corporation HKCU\SOFTWARE\Lyrics Plugin HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Magix HKCU\SOFTWARE\MAGIX AG HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\ManyCam HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\Naver HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NHN Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Pokki HKCU\SOFTWARE\Popcorn Time HKCU\SOFTWARE\PopcornTime HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore HKCU\SOFTWARE\ProgSense =>PUP.Optional.ProgSense HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Reason HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SeriousBit HKCU\SOFTWARE\SFX TEAM HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\SyncEngines HKCU\SOFTWARE\SYNCJM HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TVT HKCU\SOFTWARE\undefined =>.Superfluous.Downloader HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Viber HKCU\SOFTWARE\Visicom Media HKCU\SOFTWARE\VMware, Inc. HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WLAN Optimizer .NET HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Yandex HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\ThinPrint ---\\ Contents of the Common Files folders (270) - 42s O43 - CFD: 29/12/2015 - [0] D -- C:\Program Files\Bitdefender O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 01/02/2016 - [] D -- C:\Program Files\CPUID =>.CPUID® O43 - CFD: 23/12/2015 - [] D -- C:\Program Files\DIFX {5EB707539E398E4A4DBB8E8E267E8753} O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation® O43 - CFD: 18/01/2016 - [] D -- C:\Program Files\Enigma Software Group =>.Enigma Software Group USA, LLC® O43 - CFD: 29/12/2015 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Intel O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 26/01/2016 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 09/08/2015 - [] AD -- C:\Program Files\MPC-HC =>.Open Source Developer, Fotis ZAFIROPOULOS® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\MSBuild O43 - CFD: 24/01/2016 - [] AD -- C:\Program Files\Ninja Download Manager =>.Websecure Ltd® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Reason =>.Reason Software Company Inc.® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 02/04/2016 - [] D -- C:\Program Files\Sony =>.Sony Creative Software Inc® O43 - CFD: 19/11/2015 - [] D -- C:\Program Files\tixati O43 - CFD: 13/02/2016 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows NT O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files\Windows Sidebar O43 - CFD: 03/04/2016 - [] HD -- C:\Program Files\WindowsApps O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files\WindowsPowerShell O43 - CFD: 01/02/2016 - [0] D -- C:\Program Files (x86)\Adguard O43 - CFD: 02/04/2016 - [] D -- C:\Program Files (x86)\AnvSoft O43 - CFD: 08/01/2016 - [] D -- C:\Program Files (x86)\Artisteer 4 O43 - CFD: 06/03/2016 - [] AD -- C:\Program Files (x86)\Bit Che {009653223240219E4230D33C46AECC7E93} O43 - CFD: 03/02/2016 - [] D -- C:\Program Files (x86)\Camfrog {09626DC47048211BE34315BAF35A16F7} O43 - CFD: 23/03/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 29/12/2015 - [] D -- C:\Program Files (x86)\Dropbox O43 - CFD: 01/03/2016 - [] D -- C:\Program Files (x86)\EveryDaySoft O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\FastStone Capture O43 - CFD: 28/02/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 23/03/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - pGFX® O43 - CFD: 03/04/2016 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 28/02/2016 - [] D -- C:\Program Files (x86)\LINE =>.LINE Corporation® O43 - CFD: 13/03/2016 - [] AD -- C:\Program Files (x86)\ManyCam =>.Superfluous.VisicomManyCam O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Messenger for Desktop O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 15/03/2016 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 25/12/2015 - [] AD -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\NeoSmart Technologies =>.NeoSmart Technologies® O43 - CFD: 15/12/2015 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\Orange O43 - CFD: 23/03/2016 - [] D -- C:\Program Files (x86)\PL2303 O43 - CFD: 09/02/2016 - [] D -- C:\Program Files (x86)\Popcorn Time O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Prolific O43 - CFD: 27/12/2015 - [] D -- C:\Program Files (x86)\Prolific Technology Inc O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 01/02/2016 - [0] D -- C:\Program Files (x86)\RarmaRadio O43 - CFD: 14/08/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 27/03/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 02/04/2016 - [] D -- C:\Program Files (x86)\Sony O43 - CFD: 12/01/2016 - [] D -- C:\Program Files (x86)\SuperCopier2 O43 - CFD: 02/03/2016 - [] AD -- C:\Program Files (x86)\TeamViewer =>.TeamViewer® O43 - CFD: 18/02/2016 - [] D -- C:\Program Files (x86)\TechSmith =>.TechSmith Corporation® O43 - CFD: 14/08/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 08/08/2015 - [] AD -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 10/02/2016 - [] D -- C:\Program Files (x86)\ZTE ZXDSL 852 O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 13/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 13/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 02/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Port Scanner O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bit Che O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EveryDaySoft O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LINE O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NeoSmart Technologies O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ninja Download Manager O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 13/02/2016 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZXDSL 852 O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 29/11/2015 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 23/09/2015 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Camfrog Update O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 29/12/2015 - [] D -- C:\ProgramData\ESET O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\FastStone O43 - CFD: 31/12/2015 - [] D -- C:\ProgramData\Hagel Technologies O43 - CFD: 08/08/2015 - [0] D -- C:\ProgramData\IDM O43 - CFD: 15/01/2016 - [] D -- C:\ProgramData\IP-TV Player O43 - CFD: 26/12/2015 - [] D -- C:\ProgramData\MAGIX O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 13/03/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 17/01/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Oracle O43 - CFD: 15/08/2015 - [] D -- C:\ProgramData\Qualcomm Atheros O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\Reason O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 13/03/2016 - [] AD -- C:\ProgramData\regid.1995-08.com.techsmith O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\Screaming Bee O43 - CFD: 12/01/2016 - [] D -- C:\ProgramData\SeriousBit O43 - CFD: 27/03/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Sony O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 02/03/2016 - [] AD -- C:\ProgramData\TechSmith O43 - CFD: 02/04/2016 - [0] D -- C:\ProgramData\TEMP O43 - CFD: 13/03/2016 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Thunder Network O43 - CFD: 01/03/2016 - [] D -- C:\ProgramData\UpdaterService O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\USOShared O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\VMware O43 - CFD: 14/08/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Services O43 - CFD: 25/12/2015 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Shared O43 - CFD: 13/03/2016 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 23/03/2016 - [] AD -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 02/03/2016 - [] D -- C:\Program Files (x86)\Common Files\TechSmith Shared O43 - CFD: 29/02/2016 - [0] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Adobe O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\AnvSoft O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Apple Computer O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Artisteer O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\BlogDesk O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Camfrog O43 - CFD: 06/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Convivea O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\DMCache O43 - CFD: 01/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\DownloadNinja O43 - CFD: 24/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Dropbox O43 - CFD: 18/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Enigma Software Group O43 - CFD: 11/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\FastStone O43 - CFD: 25/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\GrabPro O43 - CFD: 07/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\gtk-2.0 O43 - CFD: 29/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\HaiYuInst O43 - CFD: 07/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Identities O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\IDM O43 - CFD: 17/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\livestreamer O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Macromedia O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\MAGIX O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 13/03/2016 - [] SD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Mozilla O43 - CFD: 09/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\MPC-HC O43 - CFD: 24/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\Nox O43 - CFD: 15/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\Opera Software O43 - CFD: 29/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Orbit O43 - CFD: 17/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Performix LLC O43 - CFD: 10/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\PowerISO O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ProgSense =>PUP.Optional.ProgSense O43 - CFD: 31/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\Publish Providers O43 - CFD: 06/08/2015 - [0] D -- C:\Users\nabil tebib\AppData\Roaming\QuickScan O43 - CFD: 12/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Screaming Bee O43 - CFD: 14/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Shortcut O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Skype O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Sony O43 - CFD: 22/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Sun O43 - CFD: 30/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\TeamViewer O43 - CFD: 26/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\TechSmith O43 - CFD: 20/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\tixati O43 - CFD: 16/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Todae O43 - CFD: 17/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ViberPC O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\vlc O43 - CFD: 02/09/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\VMware O43 - CFD: 10/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\WinRAR O43 - CFD: 01/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Yandex O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\ZHP O43 - CFD: 18/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\27431ADNSoftware.Media_1vdhwzxdtmqt2!App O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\ActiveSync O43 - CFD: 06/08/2015 - [0] D -- C:\Users\nabil tebib\AppData\Local\Adobe O43 - CFD: 02/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Apple Computer O43 - CFD: 13/03/2016 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\Application Data O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Camfrog O43 - CFD: 10/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\CherryPlayer O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Comms O43 - CFD: 12/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\CrashDumps O43 - CFD: 06/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 21/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Diagnostics O43 - CFD: 29/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Dropbox O43 - CFD: 07/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\EDSComponents O43 - CFD: 21/08/2015 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\EmieSiteList O43 - CFD: 21/08/2015 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\EmieUserList O43 - CFD: 29/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\ESET O43 - CFD: 11/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\FastStone O43 - CFD: 22/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Google O43 - CFD: 12/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\GWX O43 - CFD: 13/03/2016 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\History O43 - CFD: 21/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\LINE O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Macromedia O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Magix O43 - CFD: 01/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\ManyCam =>.Superfluous.VisicomMedia O43 - CFD: 14/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Messenger O43 - CFD: 27/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Microsoft O43 - CFD: 12/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Microsoft Help O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\MicrosoftEdge O43 - CFD: 06/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Mozilla O43 - CFD: 13/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\NeoSmart_Technologies O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\NetworkTiles O43 - CFD: 24/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Nox O43 - CFD: 15/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Local\Opera Software O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Packages O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\PackageStaging O43 - CFD: 13/03/2016 - [0] D -- C:\Users\nabil tebib\AppData\Local\PeerDistRepub O43 - CFD: 03/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\PopcornTimeDesktop O43 - CFD: 09/08/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Programs O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Publishers O43 - CFD: 11/12/2015 - [0] D -- C:\Users\nabil tebib\AppData\Local\Skype O43 - CFD: 02/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Sony O43 - CFD: 18/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\TechSmith O43 - CFD: 03/04/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Temp O43 - CFD: 13/03/2016 - [0] SHD -- C:\Users\nabil tebib\AppData\Local\Temporary Internet Files O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\TileDataLayer O43 - CFD: 17/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Viber O43 - CFD: 02/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\VirtualStore O43 - CFD: 01/09/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\VMware O43 - CFD: 29/02/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\Windows Live O43 - CFD: 25/12/2015 - [] D -- C:\Users\nabil tebib\AppData\Local\Xara O43 - CFD: 18/01/2016 - [] D -- C:\Users\nabil tebib\AppData\Local\__SHARED O43 - CFD: 30/10/2015 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 30/10/2015 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 13/03/2016 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camfrog Video Chat O43 - CFD: 14/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 30/10/2015 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 13/03/2016 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2 O43 - CFD: 30/10/2015 - [] RD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tixati O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 13/03/2016 - [] D -- C:\Users\nabil tebib\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Latest files created in Prefetcher (1) - 12s O45 - LFCP:[MD5.B64391506BED96FAD75E1DDFA58C655D] 02/04/2016 A -- C:\WINDOWS\Prefetch\MANYCAM.EXE-02685C45.pf =>.Superfluous.VisicomMedia ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 1s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nabil tebib\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileSyncShell.dll =>.Microsoft Corporation® ---\\ System Drivers List (75) - 18s O58 - SDL:2015/10/30 08:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2015/06/02 16:38:12 A . (.Copyright (C) Performix LLC 2015 - Adguard TDI network driver.) -- C:\WINDOWS\System32\drivers\adgnetworktdidrv.sys [61432] {11217943575E821301807A43EAC9AE8FE273} O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:18 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [4207104] =>.Qualcomm Atheros Communications, Inc. O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2015/03/09 09:48:34 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [599240] =>.Qualcomm Atheros® O58 - SDL:2015/10/30 08:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2015/11/16 12:21:22 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [263528] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/30 11:41:36 A . (.ESET - ESET ELAM driver.) -- C:\WINDOWS\System32\drivers\eelam.sys [14976] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [186784] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\WINDOWS\System32\drivers\ekbdflt.sys [142976] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [206312] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/16 12:21:22 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\WINDOWS\System32\drivers\EpfwLWF.sys [52872] =>.ESET, spol. s r.o.® O58 - SDL:2015/11/16 12:21:22 A . (.ESET - ESET Personal Firewall driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [69840] =>.ESET, spol. s r.o.® O58 - SDL:2016/01/18 11:19:00 A . (...) -- C:\WINDOWS\System32\drivers\EsgScanner.sys [22704] =>.Enigma Software Group USA, LLC® O58 - SDL:2015/09/07 05:33:04 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\WINDOWS\System32\drivers\ETD.sys [483400] =>.ELAN MICROELECTRONICS CORPORATION® O58 - SDL:2015/09/07 05:34:38 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) -- C:\WINDOWS\System32\drivers\ETDSMBus.sys [32328] =>.ELAN MICROELECTRONICS CORPORATION® O58 - SDL:2015/10/30 08:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows® O58 - SDL:2012/07/18 02:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] =>.Intel Corporation® O58 - SDL:2015/10/30 08:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] =>.Intel Corporation O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows® O58 - SDL:2016/01/28 10:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.® O58 - SDL:2016/02/19 03:08:58 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3798080] =>.Intel Corporation - pGFX® O58 - SDL:2015/08/21 11:50:48 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [463112] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50240] =>.Intel(R) Wireless Display® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38976] =>.Intel(R) Wireless Display® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2014/12/29 04:59:36 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\WINDOWS\System32\drivers\mcaudrv_x64.sys [35960] =>.Superfluous.VisicomManyCam O58 - SDL:2014/12/29 05:05:44 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\WINDOWS\System32\drivers\mcvidrv.sys [49272] =>.Superfluous.VisicomManyCam O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2015/08/04 11:24:30 A . (.SeriousBit - nbdrv helper driver.) -- C:\WINDOWS\System32\drivers\nbdrv.sys [42128] =>.SeriousBit Srl® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:18 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28ux.sys [2196480] =>.MediaTek Inc. O58 - SDL:2010/06/25 18:07:26 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.® O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows® O58 - SDL:2015/09/25 06:29:34 A . (.QUALCOMM Incorporated - Filter Driver for the Qualcomm USB Driver S.) -- C:\WINDOWS\System32\drivers\qcusbfilter.sys [48672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/09/25 06:29:44 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\qcusbser.sys [252448] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/07/16 20:14:28 A . (.Windows (R) Win 7 DDK provider - HID Radio Switch mini driver for USB Fx2 De.) -- C:\WINDOWS\System32\drivers\RadioHIDMini.sys [32168] =>.Samsung Electronics CO., LTD.® O58 - SDL:2015/10/30 08:17:23 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [589824] =>.Realtek O58 - SDL:2015/08/28 23:16:14 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4519144] =>.Realtek Semiconductor Corp® O58 - SDL:2013/09/02 19:13:34 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for XP/Vista/Win7/Win8.) -- C:\WINDOWS\System32\drivers\rtsuvc.sys [8874712] =>.Realtek Semiconductor Corp® O58 - SDL:2010/07/01 15:21:50 A . (.Screaming Bee LLC - Screaming Bee Audio Driver.) -- C:\WINDOWS\System32\drivers\ScreamingBAudio64.sys [38992] =>.Screaming Bee LLC® O58 - SDL:2007/07/31 17:04:48 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\WINDOWS\System32\drivers\ser2pl64.sys [90112] =>.Prolific Technology Inc. O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2015/12/08 04:00:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [122160] =>.DEVGURU CO LTD® O58 - SDL:2015/12/08 04:00:58 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [214832] =>.DEVGURU CO LTD® O58 - SDL:2015/10/30 08:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2014/05/16 22:04:46 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [254240] =>.Oracle Corporation® O58 - SDL:2015/09/16 07:07:12 A . (.BigNox Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys [127432] {5EB707539E398E4A4DBB8E8E267E8753} O58 - SDL:2015/10/30 08:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows® O58 - SDL:2015/09/16 04:29:46 A . (.BigNox Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\XQHDrv.sys [253384] {5EB707539E398E4A4DBB8E8E267E8753} ---\\ Last modified or created user files (14) - 116s O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-10c4fd9a.bin [82801] O61 - LFC: 2016/04/02 20:08:54 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-45b24976.bin [5886] O61 - LFC: 2016/04/02 20:11:31 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-524e185e.bin [95519] O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-5e70dfb3.bin [86738] O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-7ee57f8e.bin [210819] O61 - LFC: 2016/04/02 20:08:55 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-a3b0af79.bin [19812] O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-a5b9ed64.bin [72172] O61 - LFC: 2016/04/02 20:08:55 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-d5f436b8.bin [139015] O61 - LFC: 2016/04/02 20:08:13 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\OCL b7444e39-dc7ab1ce.bin [36037] O61 - LFC: 2016/04/02 20:10:11 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\plugin_manager_cache.bin [77846] O61 - LFC: 2016/04/02 20:08:14 A . (..) -- C:\Users\nabil tebib\AppData\Local\Sony\Vegas Pro\11.0\svfx_plugin_cache.bin [17806] O61 - LFC: 2016/04/01 16:50:21 A . (..) -- C:\Users\nabil tebib\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2016/04/01 13:19:55 A . (..) -- C:\Users\nabil tebib\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635951037956542372.bin [54863] O61 - LFC: 2016/04/02 21:17:12 A . (..) -- C:\Users\nabil tebib\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148] ---\\ File Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Start Menu Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. ---\\ Search Browser Infection (2) - 11s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC ---\\ Search Svchost Services (42) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\WINDOWS\System32\gpsvc.dll [1338368] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\WINDOWS\System32\ikeext.dll [957952] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\WINDOWS\System32\iphlpsvc.dll [958464] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\WINDOWS\System32\appinfo.dll [94720] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\WINDOWS\System32\eapsvc.dll [112640] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\WINDOWS\system32\schedsvc.dll [997376] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [225280] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\System32\browser.dll [134656] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [372736] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\WINDOWS\System32\wercplsupport.dll [96256] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [186880] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\WINDOWS\system32\wlidsvc.dll [2057216] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\WINDOWS\System32\ncasvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\WINDOWS\System32\NetSetupSvc.dll [204288] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1073152] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\System32\rasmans.dll [696320] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [507904] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\System32\sens.dll [73216] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\WINDOWS\System32\ipnathlp.dll [456704] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\system32\wuaueng.dll [2273792] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\WINDOWS\System32\qmgr.dll [1144320] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [608768] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57856] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\WINDOWS\System32\bdesvc.dll [360448] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1035776] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [360960] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1139712] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [205824] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [912384] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [948736] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [200192] =>.Microsoft Corporation ---\\ Firewall Active Exception List (2) - 5s O87 - FAEL: "UDP Query User{BB346590-FD53-4C6C-AE52-6274AADE933A}C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe" [In-None-P17-TRUE] .(.Camshare, Inc. - Camfrog Video Chat.) -- C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe {09626DC47048211BE34315BAF35A16F7} O87 - FAEL: "TCP Query User{307D6058-77E8-41E0-92A3-0E41F412D9F3}C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe" [In-None-P6-TRUE] .(.Camshare, Inc. - Camfrog Video Chat.) -- C:\program files (x86)\camfrog\camfrog video chat\camfrog video chat.exe {09626DC47048211BE34315BAF35A16F7} ---\\ Additional Scan (O88) (14) - 0s C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EDS Video Downloader_is1 =>PUP.Optional.VideoDownloader HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\EDS Video Downloader_is1 =>PUP.Optional.VideoDownloader HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore HKCU\SOFTWARE\ProgSense =>PUP.Optional.ProgSense HKCU\SOFTWARE\undefined =>.Superfluous.Downloader C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.Superfluous.VisicomMedia C:\ProgramData\ManyCam =>.Superfluous.VisicomMedia C:\Users\nabil tebib\AppData\Roaming\ManyCam =>.Superfluous.VisicomMedia C:\Users\nabil tebib\AppData\Roaming\ProgSense =>PUP.Optional.ProgSense C:\Users\nabil tebib\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Users\nabil tebib\AppData\Local\ManyCam =>.Superfluous.VisicomMedia C:\WINDOWS\Prefetch\MANYCAM.EXE-02685C45.pf =>.Superfluous.VisicomMedia ---\\ Summary of the elements found (9) - 0s http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.VisicomManyCam http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BDYahoo http://www.nicolascoolman.com/forum/post33405.html#p33405 =>.Superfluous.VisicomMedia http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.VideoDownloader http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.GreenTreeApp http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.ProgSense http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports ~ End of the scan, 4802 items in 00h05mn39s (950)(0)