~ ZHPDiag v2016.6.14.104 Par Nicolas Coolman (2016/06/10) ~ Démarré par AB-AZ (Administrator) (2016/06/28 00:57:16) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\AB-AZ\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\AB-AZ\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v51.0.2704.103 MFIE: Mozilla Firefox 47.0 (x86 ar) MSIE: Internet Explorer v8.0.7601.17514 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (2) - 2s Avast Internet Security v11.2.2262 Malwarebytes Anti-Malware النسخة 2.2.1.1043 ---\\ Surveillance de Logiciels (1) - 3s Adobe Flash Player 20 ActiveX ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3575.34 MB (34% free) System Restore: Activé (Enable) System drive C: has 55 GB () free of 152 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: AB-AZ-PC ~ User Name: AB-AZ ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 55 GB free of 152 GB (System) ~ Drive D: has 72 GB free of 85 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.40D777B7A95E00593EB1568C68514493] - 20/11/2010 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.44214C94911C7CFB1D52CB64D5E8368D] - 20/11/2010 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [980992] =>.Microsoft Corporation [MD5.6D13E1406F50C66E2A95D97F22C47560] - 20/11/2010 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [286720] =>.Microsoft Corporation [MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation [MD5.59DF156711A76BCB993253EC6C9BBF41] - 20/11/2010 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 12/04/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.1151FD4FB0216CFED887BFDE29EBD516] - 20/11/2010 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation [MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.B272B4C3E085EA860C12F2E4FAF2FFA2] - 20/11/2010 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123904] =>.Microsoft Corporation [MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation [MD5.33C3093D09017CFE2E219F2472BFF6EB] - 20/11/2010 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1211264] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.B459575348C20E8121D6039DA063C704] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation [MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (5) - 1s O23 - Service: Adguard Service (Adguard Service) . (.Performix LLC - Adguard for Windows.) - C:\Program Files\Adguard\AdguardSvc.exe {3EDEB62828DC716E184EA9C2B4704B4E} O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® O23 - Service: Avast Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software a.s.® O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (15) - 21s SR - Auto [18/04/2016] [ 149496] Adguard Service (Adguard Service) . (.Performix LLC.) - C:\Program Files\Adguard\AdguardSvc.exe {3EDEB62828DC716E184EA9C2B4704B4E} SS - Demand [16/01/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [04/05/2016] [ 243296] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® SR - Auto [04/05/2016] [ 370656] Avast Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software a.s.® SS - Demand [11/12/2015] [ 280680] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SS - Disabl [04/07/2010] [ 238952] FsUsbExService (FsUsbExService) . (.Teruten.) - C:\Windows\System32\FsUsbExService.Exe =>.SAMSUNG ELECTRONICS CO.,LTD.® SS - Disabl [29/01/2016] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/01/2016] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Disabl [11/12/2015] [ 274024] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX® SR - Auto [17/03/2015] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SR - Auto [17/03/2015] [ 1080120] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [12/06/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Disabl [08/01/2016] [ 754784] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.® SS - Disabl [03/12/2012] [ 275784] UI Assistant Service (UI Assistant Service) . (...) - C:\Program Files\Mobiconnect\AssistantServices.exe =>.ZTE CORPORATION® ---\\ Tâches planifiées en automatique (21) - 4s [MD5.84DB0A40692CF8A58D1E3710FA5D121F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated® [MD5.1282F8C897DBF180BCF3F6F6968DE2C3] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1517200] (.Activate.) =>.AVAST Software a.s.® [MD5.88FBBB1C601A6BC42054E57C2897FA45] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.88FBBB1C601A6BC42054E57C2897FA45] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.2E696C90B2D1DD842F59E38FD212D225] [APT] [SafeZone scheduled Autoupdate 1451218241] (.Avast Software.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [735736] (.Activate.) =>.AVAST Software s.r.o.® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] [APT] [{234A93C4-622B-469F-97D7-095634FC8335}] (.Google Inc..) -- c:\program files\Google\Chrome\application\chrome.exe [941720] (.Activate.) =>.Google Inc® [MD5.00000000000000000000000000000000] [APT] [{4AC233A6-B60A-4F9D-8D45-63194B1BDE5D}] (...) -- G:\OLD WINDOWS\ںéê袠ں¢\«ل¥ ںéê袠\R340\HL-340.EXE (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.E262E7DFCB6CBA006837E00E9DECEA94] [APT] [{73B0984C-5AB8-4DCD-B8ED-859E5A61F172}] (.Google Inc..) -- c:\program files\Google\Chrome\application\chrome.exe [941720] (.Activate.) =>.Google Inc® [MD5.573209DF7F607D147F76CE1D4C5E8BA2] [APT] [{B7C702A2-CC0C-4556-B2FF-4BD0E9E79EB5}] (.VS Revo Group.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe [13666848] (.Activate.) =>.VS Revo Group® [MD5.00000000000000000000000000000000] [APT] [{BB9B6031-F8D7-4ED6-B8B7-57863A4D0A24}] (...) -- C:\Users\AB-AZ\AppData\Roaming\mysites123\UninstallManager.exe (.not file.) [0] (.Activate.) =>PUP.Optional.Mysites123 [MD5.A76937C7DED9F1EA277C696A7E96BD3E] [APT] [{E7FD96C1-E099-4BD8-9EEF-E1F3A4A0B95D}] (...) -- C:\Users\AB-AZ\Desktop\GEAN\DAWDI\Ali3606 Backgrounds & FIX CRC\Ali3606 Backgrounds & FIX CRC.exe [1108480] (.Activate.) [MD5.64001F91CB69116D8720356374E6FB1D] [APT] [{EFA8570D-2A96-4C5F-810D-06C614DED2D9}] (...) -- C:\Users\AB-AZ\Desktop\HL-340.EXE [124038] (.Activate.) [MD5.CD11D500328F07AE1666D046F94179E0] [APT] [AVAST Software] (.AVAST Software.) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [702056] (.Activate.) =>.AVAST Software a.s.® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [828] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [832] =>.Google Inc® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated® O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] =>.AVAST Software a.s.® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3576] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3828] =>.Google Inc® O39 - APT: SafeZone scheduled Autoupdate 1451218241 - (.Avast Software.) -- C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1451218241 [3916] =>.AVAST Software s.r.o.® ---\\ Processus lancés (27) - 1s [MD5.A24AF1F8186B4B69D54DCC4B059CA695] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296] [PID.1436] =>.AVAST Software a.s.® [MD5.08B412FBCBFDE2901C84801C4F356E2A] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [370656] [PID.1756] =>.AVAST Software a.s.® [MD5.88FBBB1C601A6BC42054E57C2897FA45] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] [PID.1932] =>.Google Inc® [MD5.07CD9B9873843514F4D15D1525A9037A] - (.Performix LLC - Adguard for Windows.) -- C:\Program Files\Adguard\AdguardSvc.exe [149496] [PID.484] {3EDEB62828DC716E184EA9C2B4704B4E} [MD5.56FE3C885B0901601549E23E7A435984] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.30.3\GoogleCrashHandler.exe [250008] [PID.1060] =>.Google Inc® [MD5.1E06B301F4FA22A01B8CC314FC7A7E1C] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [7408312] [PID.2412] =>.AVAST Software a.s.® [MD5.747767623C50CDD8287050A87B274F27] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3919928] [PID.2452] =>.Tonec Inc. [MD5.68B82CF1E8E545B681D34BDEAEA3D9CB] - (.Performix LLC - Adguard for Windows.) -- C:\Program Files\Adguard\Adguard.exe [5578232] [PID.2484] {3EDEB62828DC716E184EA9C2B4704B4E} [MD5.86701B8E4C53280AA8642AC85F8500F4] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160] [PID.2792] =>.Malwarebytes Corporation® [MD5.E27891A49DF92004041FEC5C3A2D4230] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120] [PID.2936] =>.Malwarebytes Corporation® [MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [275608] [PID.3064] =>.Tonec Inc.® [MD5.5E7C103F8475C4289847D15E129C20F7] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713904] [PID.3136] =>.Microsoft Corporation® [MD5.DAF0C7D1F4E9B057C8151D0B92A6BDA5] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [194304] [PID.3276] =>.Microsoft Corporation® [MD5.D0A518D233620D59A3D2D79511FBB736] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files\Malwarebytes Anti-Malware\mbam.exe [6212408] [PID.2604] =>.Malwarebytes Corporation® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.6044] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.2344] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.1216] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.2736] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.4944] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.5144] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.4656] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.3588] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.1156] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.4992] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.6048] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.6136] =>.Google Inc® [MD5.E262E7DFCB6CBA006837E00E9DECEA94] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [941720] [PID.1780] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (17) - 1s G2 - GCE: Preference [User Data\Default] [bgnkhhnnamicmpeenaelnjfhikgbkllg] __MSG_name__ G2 - GCE: Preference [User Data\Default] [bkkbcggnhapdmkeljlodobbkopceiche] Poper Blocker G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin G2 - GCE: Preference [User Data\Default] [enmofgaijnbjpblfljopnpdogpldapoc] Disable Youtube™ HTML5 Player G2 - GCE: Preference [User Data\Default] [epeobmpckioipebbcbhnhmocfjpmdicd] __MSG_application_title__ G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Preference [User Data\Default] [heajfgnegopeedndeahkdjedjkjcmnpb] Hotspot Shield Free VPN Proxy – Unblock Sites G2 - GCE: Preference [User Data\Default] [idcbhbjlmkbpdgjkbgifndjbffhmhlbp] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [kpdjmbiefanbdgnkcikhllpmjnnllbbc] Save as PDF G2 - GCE: Preference [User Data\Default] [mbniclmhobmnbdlbpiphghaielnnpgdp] __MSG_screenshotplugin_name__ G2 - GCE: Preference [User Data\Default] [mcbpblocgmgfnpjjppndjkmgjaogfceg] __MSG_application_title__ G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [nlbejmccbhkncgokjcmghpfloaajcffj] __MSG_name__ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ocifcklkibdehekfnmflempfgjhbedch] Adblock Pro ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (9) - 2s P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\@moqrefirefox.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\firefox@zenmate.com.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\hotspot-shield@anchorfree.com.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\ipinfo@hidemyass.com.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\jid1-XgC5trUcILmXBw@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\noreply@instances.io.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\peter.culka@primeinteractive.net.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\vpn@facebook-unblock.org.xpi P2 - EXT FILE: (...) -- C:\Users\AB-AZ\AppData\Roaming\Mozilla\Firefox\Profiles\imn32bxt.default-1459897172173\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (5) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.linkzb.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (4) - 0s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.® O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation® ---\\ Applications lancées au démarrage du système (13) - 0s O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software a.s.® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [Adguard] . (.Performix LLC - Adguard for Windows.) -- C:\Program Files\Adguard\Adguard.exe {3EDEB62828DC716E184EA9C2B4704B4E} O4 - HKUS\.DEFAULT\..\Run: [Samsung.PCSync] C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe (.not file.) O4 - HKUS\.DEFAULT\..\Run: [Adguard] . (.Performix LLC - Adguard for Windows.) -- C:\Program Files\Adguard\Adguard.exe {3EDEB62828DC716E184EA9C2B4704B4E} O4 - HKUS\S-1-5-18\..\Run: [Samsung.PCSync] C:\Program Files\Samsung\Samsung PC Studio 7\PcSync2.exe (.not file.) O4 - HKUS\S-1-5-18\..\Run: [Adguard] . (.Performix LLC - Adguard for Windows.) -- C:\Program Files\Adguard\Adguard.exe {3EDEB62828DC716E184EA9C2B4704B4E} O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-861944544-2543793468-3330060361-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-861944544-2543793468-3330060361-1000\..\Run: [Adguard] . (.Performix LLC - Adguard for Windows.) -- C:\Program Files\Adguard\Adguard.exe {3EDEB62828DC716E184EA9C2B4704B4E} ---\\ Raccourcis Global Startup (96) - 7s O4 - GS\Desktop [AB-AZ]: CardRecovery.lnk . (.WinRecovery Software - CardRecovery.) C:\Program Files\CardRecovery\CardRecovery.exe {7A0F35A5D301113B4C50984A67E2F638} O4 - GS\Desktop [AB-AZ]: Downloads.lnk . (...) C:\Users\AB-AZ\Downloads O4 - GS\Desktop [AB-AZ]: Dreambox Screenshot Tool - Raccourci.lnk . (...) C:\Users\AB-AZ\Desktop\Dreambox Screenshot Tool v1.72\Dreambox Screenshot Tool.exe O4 - GS\Desktop [AB-AZ]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\Desktop [AB-AZ]: FSViewer - Raccourci.lnk . (...) I:\OLD WINDOWS\Program Files\FastStone Image Viewer\FSViewer.exe O4 - GS\Desktop [AB-AZ]: Full Video Audio Mixer.lnk . (...) C:\Program Files\Full Video Audio Mixer\FullVideoAudioMixer.exe O4 - GS\Desktop [AB-AZ]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [AB-AZ]: Magic Partition Recovery.lnk . (.East Imperial Soft - Magic Partition Recovery Software.) C:\Program Files\East Imperial Soft\Magic Partition Recovery 2.3\Magic Partition Recovery.exe O4 - GS\Desktop [AB-AZ]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.chen jun hao® O4 - GS\Desktop [AB-AZ]: RT 7 Lite (32-Bit).lnk . (.Rockers Team - RTWin7Lite.) C:\Program Files\Rockers Team\RT 7 Lite x86\RTWin7Lite.exe O4 - GS\Desktop [AB-AZ]: Samsung Full Firmware Maker - Raccourci.lnk . (.XWorks - Samsung Full Firmware Maker.) C:\Program Files\SamsungFullFirmwareMaker\Samsung Full Firmware Maker.exe O4 - GS\Desktop [AB-AZ]: UltraSearch.lnk . (.JAM Software - .) C:\Program Files\JAM Software\UltraSearch\UltraSearch.exe =>.JAM Software GmbH® O4 - GS\Desktop [AB-AZ]: USB Disk Security.lnk . (.Zbshareware Lab - USB Disk Security.) C:\Program Files\USB Disk Security\USBGuard.exe {00CCE1EA3E08123F0BC1B492F00E40C9BA} =>.Zbshareware Lab O4 - GS\Desktop [AB-AZ]: VLC.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [AB-AZ]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\AB-AZ\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [AB-AZ]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\AB-AZ\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [AB-AZ]: .lnk . (...) C:\Program Files\ADSafe\ADSafe.exe O4 - GS\Quicklaunch [AB-AZ]: 001Micron Recovery - SIM Card (Demo).lnk . (.001Micron Tools - 001Micron Recovery - SIM Card (Demo).) C:\Program Files\001Micron Recovery - SIM Card (Demo)\001Micron Recovery - SIM Card (Demo).exe =>.Pro Data Doctor Pvt. Ltd.® O4 - GS\Quicklaunch [AB-AZ]: Baidu Browser.lnk . (...) C:\Program Files\baidu\Baidu Browser\Spark.exe O4 - GS\Quicklaunch [AB-AZ]: F1Upgrade.lnk . (...) C:\Program Files\NSS\F1UpgradeUtility.exe O4 - GS\Quicklaunch [AB-AZ]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [AB-AZ]: JPG To PDF Converter.lnk . (...) C:\JPG2PDF\JPG2PDF.exe O4 - GS\Quicklaunch [AB-AZ]: NSS.lnk . (...) C:\Program Files\NSS\NSS.exe O4 - GS\Quicklaunch [AB-AZ]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group® O4 - GS\Quicklaunch [AB-AZ]: Samsung New PC Studio.lnk . (...) C:\Program Files\SAMSUNG\Samsung New PC Studio\NPSGuide.exe O4 - GS\Quicklaunch [AB-AZ]: satup.LNK . (...) C:\Users\AB-AZ\Desktop\S4-SPH\fac-elec.gaz.eau\fac-elec.gaz.eau\fac-e.g.e.exe O4 - GS\sendTo [AB-AZ]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [AB-AZ]: Picosmos Shows.lnk . (.Free Time - Picosmos Shows.) C:\Program Files\PicosmosTools\PicosmosShows.exe =>.chen jun hao® O4 - GS\sendTo [AB-AZ]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.chen jun hao® O4 - GS\sendTo [AB-AZ]: Unlocker.lnk . (...) C:\Program Files\Unlocker\Unlocker.exe O4 - GS\TaskBar [AB-AZ]: Boot Updater for Windows 7.lnk . (.Coder for Life - Boot Updater for Windows 7.) C:\Users\AB-AZ\Downloads\MHAMDO\Win7BootUpdater2.exe O4 - GS\TaskBar [AB-AZ]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [AB-AZ]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [AB-AZ]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [AB-AZ]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [AB-AZ]: Odin3 v1.lnk . (...) C:\Users\AB-AZ\Desktop\S4-SPH\Odin3 v1.85.exe O4 - GS\TaskBar [AB-AZ]: UltraSearch.lnk . (.JAM Software - .) C:\Program Files\JAM Software\UltraSearch\UltraSearch.exe =>.JAM Software GmbH® O4 - GS\TaskBar [AB-AZ]: USB Show.lnk . (.Ldc - USB Show.) C:\Users\AB-AZ\Desktop\USB Show.exe O4 - GS\TaskBar [AB-AZ]: الجرائد الجزائرية ‫‬.lnk . (...) C:\Users\AB-AZ\Desktop\الجرائد الجزائرية ‫‬.exe O4 - GS\Desktop [Administrateur]: CardRecovery.lnk . (.WinRecovery Software - CardRecovery.) C:\Program Files\CardRecovery\CardRecovery.exe {7A0F35A5D301113B4C50984A67E2F638} O4 - GS\Desktop [Administrateur]: Downloads.lnk . (...) C:\Users\AB-AZ\Downloads O4 - GS\Desktop [Administrateur]: Dreambox Screenshot Tool - Raccourci.lnk . (...) C:\Users\AB-AZ\Desktop\Dreambox Screenshot Tool v1.72\Dreambox Screenshot Tool.exe O4 - GS\Desktop [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\Desktop [Administrateur]: FSViewer - Raccourci.lnk . (...) I:\OLD WINDOWS\Program Files\FastStone Image Viewer\FSViewer.exe O4 - GS\Desktop [Administrateur]: Full Video Audio Mixer.lnk . (...) C:\Program Files\Full Video Audio Mixer\FullVideoAudioMixer.exe O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrateur]: Magic Partition Recovery.lnk . (.East Imperial Soft - Magic Partition Recovery Software.) C:\Program Files\East Imperial Soft\Magic Partition Recovery 2.3\Magic Partition Recovery.exe O4 - GS\Desktop [Administrateur]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.chen jun hao® O4 - GS\Desktop [Administrateur]: RT 7 Lite (32-Bit).lnk . (.Rockers Team - RTWin7Lite.) C:\Program Files\Rockers Team\RT 7 Lite x86\RTWin7Lite.exe O4 - GS\Desktop [Administrateur]: Samsung Full Firmware Maker - Raccourci.lnk . (.XWorks - Samsung Full Firmware Maker.) C:\Program Files\SamsungFullFirmwareMaker\Samsung Full Firmware Maker.exe O4 - GS\Desktop [Administrateur]: UltraSearch.lnk . (.JAM Software - .) C:\Program Files\JAM Software\UltraSearch\UltraSearch.exe =>.JAM Software GmbH® O4 - GS\Desktop [Administrateur]: USB Disk Security.lnk . (.Zbshareware Lab - USB Disk Security.) C:\Program Files\USB Disk Security\USBGuard.exe {00CCE1EA3E08123F0BC1B492F00E40C9BA} =>.Zbshareware Lab O4 - GS\Desktop [Administrateur]: VLC.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\AB-AZ\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\AB-AZ\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: .lnk . (...) C:\Program Files\ADSafe\ADSafe.exe O4 - GS\Quicklaunch [Administrateur]: 001Micron Recovery - SIM Card (Demo).lnk . (.001Micron Tools - 001Micron Recovery - SIM Card (Demo).) C:\Program Files\001Micron Recovery - SIM Card (Demo)\001Micron Recovery - SIM Card (Demo).exe =>.Pro Data Doctor Pvt. Ltd.® O4 - GS\Quicklaunch [Administrateur]: Baidu Browser.lnk . (...) C:\Program Files\baidu\Baidu Browser\Spark.exe O4 - GS\Quicklaunch [Administrateur]: F1Upgrade.lnk . (...) C:\Program Files\NSS\F1UpgradeUtility.exe O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: JPG To PDF Converter.lnk . (...) C:\JPG2PDF\JPG2PDF.exe O4 - GS\Quicklaunch [Administrateur]: NSS.lnk . (...) C:\Program Files\NSS\NSS.exe O4 - GS\Quicklaunch [Administrateur]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group® O4 - GS\Quicklaunch [Administrateur]: Samsung New PC Studio.lnk . (...) C:\Program Files\SAMSUNG\Samsung New PC Studio\NPSGuide.exe O4 - GS\Quicklaunch [Administrateur]: satup.LNK . (...) C:\Users\AB-AZ\Desktop\S4-SPH\fac-elec.gaz.eau\fac-elec.gaz.eau\fac-e.g.e.exe O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [Administrateur]: Picosmos Shows.lnk . (.Free Time - Picosmos Shows.) C:\Program Files\PicosmosTools\PicosmosShows.exe =>.chen jun hao® O4 - GS\sendTo [Administrateur]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.chen jun hao® O4 - GS\sendTo [Administrateur]: Unlocker.lnk . (...) C:\Program Files\Unlocker\Unlocker.exe O4 - GS\TaskBar [Administrateur]: Boot Updater for Windows 7.lnk . (.Coder for Life - Boot Updater for Windows 7.) C:\Users\AB-AZ\Downloads\MHAMDO\Win7BootUpdater2.exe O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [Administrateur]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrateur]: Odin3 v1.lnk . (...) C:\Users\AB-AZ\Desktop\S4-SPH\Odin3 v1.85.exe O4 - GS\TaskBar [Administrateur]: UltraSearch.lnk . (.JAM Software - .) C:\Program Files\JAM Software\UltraSearch\UltraSearch.exe =>.JAM Software GmbH® O4 - GS\TaskBar [Administrateur]: USB Show.lnk . (.Ldc - USB Show.) C:\Users\AB-AZ\Desktop\USB Show.exe O4 - GS\TaskBar [Administrateur]: الجرائد الجزائرية ‫‬.lnk . (...) C:\Users\AB-AZ\Desktop\الجرائد الجزائرية ‫‬.exe O4 - GS\CommonDesktop [Public]: 001Micron Recovery - SIM Card (Demo).lnk . (.001Micron Tools - 001Micron Recovery - SIM Card (Demo).) C:\Program Files\001Micron Recovery - SIM Card (Demo)\001Micron Recovery - SIM Card (Demo).exe =>.Pro Data Doctor Pvt. Ltd.® O4 - GS\CommonDesktop [Public]: Avast Internet Security.lnk . (.AVAST Software - avast! Antivirus.) C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software a.s.® O4 - GS\CommonDesktop [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.® O4 - GS\CommonDesktop [Public]: Cygwin Terminal.lnk . (...) C:\cygwin\bin\mintty.exe O4 - GS\CommonDesktop [Public]: FastStone Capture.lnk . (.FastStone Soft - FastStone Capture.) C:\Program Files\FastStone Capture\FSCapture.exe =>.FastStone Soft O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: GridinSoft Anti-Malware.lnk . (.GridinSoft LLC - GridinSoft Anti-Malware.) C:\Program Files\GridinSoft Anti-Malware\gsam.exe {36E430A048545F5E36E1B55CE55F65E0} =>.GridinSoft LLC O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Mobiconnect.lnk . (...) C:\Program Files\Mobiconnect\UIMain.exe =>.ZTE CORPORATION® O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: MPC-HC.lnk . (.MPC-HC Team - MPC-HC.) C:\Program Files\MPC-HC\mpc-hc.exe =>.Open Source Developer, Fotis ZAFIROPOULOS® O4 - GS\CommonDesktop [Public]: Nedjma Easynet.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{06ADE2A0-E46A-4A84-A211-64CF50520185}\HSPA_USB_Modem.exe_AB26A67632F0422B9C9996628159AE5C.exe =>.Acresso Software Inc. O4 - GS\CommonDesktop [Public]: Restore Point Creator.lnk . (.Copyright © 2016 - Restore Point Creator.) C:\Program Files\Restore Point Creator\Restore Point Creator.exe O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group® O4 - GS\CommonDesktop [Public]: Video to Video.lnk . (.Media Converters - Video to Video.) C:\Program Files\Video to Video\vv.exe =>.Media Converters O4 - GS\CommonDesktop [Public]: WinRAR.lnk . (.Alexander Roshal - WinRAR archiver.) C:\Program Files\WinRAR\WinRAR.exe =>.win.rar GmbH® O4 - GS\Programs [Public]: Windows 7 Logon Background Changer.lnk . (...) C:\Users\AB-AZ\AppData\Roaming\Microsoft\Installer\{2E6044C5-3495-485F-91BC-46D1B6430E51}\_38CF379FC0A8080C8E407C.exe O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{7A6C6F7C-2C34-4DCC-8B36-C2C1358DEA21}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS O17 - HKLM\System\CCS\Services\Tcpip\..\{8A22EEDF-2307-489A-A67F-04083E161336}: NameServer = 77.234.40.79 O17 - HKLM\System\CCS\Services\Tcpip\..\{5D28A719-C621-4C41-AF1F-5C7B9068A5FA}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{7A6C6F7C-2C34-4DCC-8B36-C2C1358DEA21}: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (26) - 0s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation® O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (51) - 10s O42 - Logiciel: 001Micron Recovery - SIM Card (Demo) - (.001Micron Tools.) [HKLM] -- {4402D1B9-AE4D-412B-A6B4-17B4DCBE19AC}_is1 =>.001Micron Tools O42 - Logiciel: 7-Zip 15.12 - (.Igor Pavlov.) [HKLM] -- 7-Zip =>.Igor Pavlov O42 - Logiciel: Ad Muncher v4.94.34121 (Free) - (...) [HKLM] -- Ad Muncher {00C1A391D64C66} O42 - Logiciel: Adguard - (.Insoft LLC.) [HKLM] -- {393a29d6-8f64-490d-8d6b-5e63801a44da} {3EDEB62828DC716E184EA9C2B4704B4E} O42 - Logiciel: Adguard - (.Performix LLC.) [HKLM] -- {685F6AB3-7C61-42D1-AE5B-3864E48D1035} O42 - Logiciel: Adobe Flash Player 20 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM] -- {C46E3797-2A83-011B-7568-B8D19B5BB111} =>.ATI Technologies, Inc. O42 - Logiciel: Avast Internet Security - (.AVAST Software.) [HKLM] -- Avast =>.AVAST Software a.s.® O42 - Logiciel: BCL easyConverter Desktop 3 (Word Version) - (.BCL Technologies.) [HKLM] -- {8C5845B5-729F-40E3-A945-4454E67F65F4} =>.BCL Technologies O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: FastStone Capture 7.1 - (.FastStone Soft.) [HKLM] -- FastStone Capture =>.FastStone Soft O42 - Logiciel: FormatFactory 3.8.0.0 - (.Free Time.) [HKLM] -- FormatFactory =>.Free Time O42 - Logiciel: Full Video Audio Mixer - (.DanDans.) [HKLM] -- Full Video Audio Mixer_is1 O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: GridinSoft Anti-Malware - (.GridinSoft LLC.) [HKLM] -- GridinSoft Anti-Malware {36E430A048545F5E36E1B55CE55F65E0} =>.GridinSoft LLC O42 - Logiciel: HONE HONE CLOCK - (.Gnrsu.com.) [HKLM] -- HONE HONE CLOCK_is1 O42 - Logiciel: HSPA USB Modem - (.اسم شركتك.) [HKLM] -- {06ADE2A0-E46A-4A84-A211-64CF50520185} O42 - Logiciel: HSPA USB Modem - (.اسم شركتك.) [HKLM] -- InstallShield_{06ADE2A0-E46A-4A84-A211-64CF50520185} O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {0BE9E708-5DC0-4963-9CFD-0AA519090E79} =>.Microsoft Corporation O42 - Logiciel: Magic Partition Recovery 2.3 - (...) [HKLM] -- Magic Partition Recovery O42 - Logiciel: Malwarebytes Anti-Malware النسخة 2.2.1.1043 - (.Malwarebytes.) [HKLM] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mobiconnect - (.ZTE Corporation.) [HKLM] -- {A9E5EDA7-2E6C-49E7-924B-A32B89C24A04} =>.ZTE CORPORATION® O42 - Logiciel: Mozilla Firefox 47.0 (x86 ar) - (.Mozilla.) [HKLM] -- Mozilla Firefox 47.0 (x86 ar) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MPC-HC 1.7.10 - (.MPC-HC Team.) [HKLM] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1 =>.Open Source Developer, Fotis ZAFIROPOULOS® O42 - Logiciel: MSVC80_x86 - (.Nokia.) [HKLM] -- {212748BB-0DA5-46DE-82A1-403736DC9F27} =>.Nokia O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft O42 - Logiciel: MSXML 4.0 SP2 Parser and SDK - (.Microsoft Corporation.) [HKLM] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation O42 - Logiciel: PicosmosTools 1.4.6.0 - (.Free Time.) [HKLM] -- PicosmosTools =>.Free Time O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Restore Point Creator version 4.1 Build 3 - (.Tom Parkison.) [HKLM] -- {CC48DE1C-8EC2-43BC-9201-29701CD9AE13}_is1 O42 - Logiciel: Revo Uninstaller Pro 3.1.6 - (.VS Revo Group, Ltd..) [HKLM] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, Ltd. O42 - Logiciel: RT 7 Lite (32-Bit) - (.Rockers Team.) [HKCU] -- RT 7 Lite x86 O42 - Logiciel: RT 7 Lite x86 - (.Rockers Team.) [HKLM] -- {F2558AA8-506F-4C58-AB64-C05C6F675756} O42 - Logiciel: SafeZone Stable 1.48.2066.101 - (.Avast Software.) [HKLM] -- SafeZone 1.48.2066.101 =>.AVAST Software s.r.o.® O42 - Logiciel: Samsung USB Driver for Mobile Phones - (.Samsung Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.® O42 - Logiciel: Setup - (.Microsoft.) [HKLM] -- {E73754CA-2BA5-4141-899B-50170B408A7B} =>.Microsoft O42 - Logiciel: Tweaks.com Logon Changer - (.Advanced PC Media LLC.) [HKLM] -- {D2223C9B-0AB9-4546-A4C0-A1ED27C42039} O42 - Logiciel: UltraSearch V2.0.3 - (.JAM Software.) [HKLM] -- UltraSearch_is1 =>.JAM Software GmbH® O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM] -- USB Disk Security_is1 =>.Zbshareware Lab O42 - Logiciel: Video to Video - (.Media Converters.) [HKLM] -- {7F95A744-78DA-4AED-A8F0-A0AF330B8411}_is1 =>.Media Converters O42 - Logiciel: Windows 7 Logon Background Changer - (.Julien MANICI.) [HKLM] -- {2E6044C5-3495-485F-91BC-46D1B6430E51} =>.Julien MANICI O42 - Logiciel: Windows Deployment Tools - (.Microsoft.) [HKLM] -- {BFC9778E-9765-C94C-C082-C2514F8DEB9B} =>.Microsoft O42 - Logiciel: Windows PE x86 x64 - (.Microsoft.) [HKLM] -- {F89D69CA-6EE1-E037-DD3B-08CDDE1BED1C} =>.Microsoft O42 - Logiciel: Windows PE x86 x64 wims - (.Microsoft.) [HKLM] -- {85F4ACB1-E7DC-C3C6-F4FD-BB936DF2695E} =>.Microsoft O42 - Logiciel: WinRAR 5.30 (32-بت) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (126) - 10s HKLM\SOFTWARE\7-Zip HKLM\SOFTWARE\Adguard HKLM\SOFTWARE\AdMuncher HKLM\SOFTWARE\Anvisoft HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\BCL Technologies HKLM\SOFTWARE\CBSTEST HKLM\SOFTWARE\CDDB HKLM\SOFTWARE\CloudOPTInfo HKLM\SOFTWARE\Cygwin HKLM\SOFTWARE\Dolby HKLM\SOFTWARE\DTS HKLM\SOFTWARE\Fortemedia HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\Greatis HKLM\SOFTWARE\GridinSoft HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\HSPA HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\IObit HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\Knowles HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\MarkAny HKLM\SOFTWARE\MCCI HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nahimic HKLM\SOFTWARE\NSS HKLM\SOFTWARE\Nuance HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\OdinM HKLM\SOFTWARE\Patch My PC HKLM\SOFTWARE\PCSuite HKLM\SOFTWARE\PicosmosShows HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Restore Point Creator HKLM\SOFTWARE\SAMSUNG HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SOFTWARE HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SonicFocus HKLM\SOFTWARE\SoundResearch HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\TAP-Windows HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Waves Audio HKLM\SOFTWARE\WinChipHead HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\WOW6432Node HKLM\SOFTWARE\XinYi Network HKLM\SOFTWARE\ZTE Corporation HKLM\SOFTWARE\ZTEUSBDriverFlag HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\8322898 HKCU\SOFTWARE\Adguard HKCU\SOFTWARE\ADSafe HKCU\SOFTWARE\Advanced PC Media LLC HKCU\SOFTWARE\Anvisoft HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Caphyon HKCU\SOFTWARE\ched HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\DigitByteStudio HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dz4-EvEr HKCU\SOFTWARE\East Imperial Soft HKCU\SOFTWARE\EasyBoot Systems HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\giveawayoftheday.com HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Greatis HKCU\SOFTWARE\Haali HKCU\SOFTWARE\HILGRAEVE INC HKCU\SOFTWARE\IM HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstantStormSavers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Leapic Software HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mirage HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\MTK HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\OneClickRoot HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Pegasys Inc. HKCU\SOFTWARE\Picosmos HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Recovery Software HKCU\SOFTWARE\Rockers Team HKCU\SOFTWARE\RootGenius HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\Spoon HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VFPlugin HKCU\SOFTWARE\VideoConverter-Media HKCU\SOFTWARE\VS Revo Group HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WinRecovery HKCU\SOFTWARE\XinYi Network HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\ZXT2007 HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\MarkAny ---\\ Contenu des dossiers Programmes (221) - 17s O43 - CFD: 12/04/2016 - [] D -- C:\Program Files\001Micron Recovery - SIM Card (Demo) =>.Pro Data Doctor Pvt. Ltd.® O43 - CFD: 07/06/2016 - [] D -- C:\Program Files\7-Zip O43 - CFD: 23/01/2016 - [] D -- C:\Program Files\Ad Muncher {00C1A391D64C66} O43 - CFD: 28/06/2016 - [] D -- C:\Program Files\Adguard {3EDEB62828DC716E184EA9C2B4704B4E} O43 - CFD: 24/05/2016 - [] D -- C:\Program Files\Advanced PC Media LLC {008CD8631D935B113E4F8FC651791DE148} O43 - CFD: 18/02/2016 - [0] D -- C:\Program Files\Anvisoft O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\ATI =>.ATI Technologies, Inc® O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.® O43 - CFD: 21/01/2016 - [] D -- C:\Program Files\CardRecovery {7A0F35A5D301113B4C50984A67E2F638} O43 - CFD: 02/06/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\East Imperial Soft O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\FastStone Capture O43 - CFD: 11/12/2015 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 02/04/2016 - [] D -- C:\Program Files\FormatFactory O43 - CFD: 01/03/2016 - [] D -- C:\Program Files\Full Video Audio Mixer O43 - CFD: 29/01/2016 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 25/06/2016 - [] D -- C:\Program Files\GridinSoft Anti-Malware {36E430A048545F5E36E1B55CE55F65E0} O43 - CFD: 21/05/2016 - [] D -- C:\Program Files\HL-232-340 O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\HSPA USB Modem O43 - CFD: 18/03/2016 - [] D -- C:\Program Files\ImageWriter O43 - CFD: 28/03/2016 - [] HD -- C:\Program Files\InstallShield Installation Information =>.SAMSUNG ELECTRONICS CO.,LTD.® O43 - CFD: 30/03/2016 - [] D -- C:\Program Files\Intel O43 - CFD: 21/05/2016 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 12/06/2016 - [0] D -- C:\Program Files\IObit O43 - CFD: 31/01/2016 - [] D -- C:\Program Files\JAM Software =>.JAM Software GmbH® O43 - CFD: 01/06/2016 - [] D -- C:\Program Files\Julien MANICI O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 21/05/2016 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 02/06/2016 - [] D -- C:\Program Files\Microsoft OneDrive =>.Microsoft Corporation® O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 18/12/2015 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 07/06/2016 - [] D -- C:\Program Files\Mobiconnect =>.ZTE CORPORATION® O43 - CFD: 12/06/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 12/06/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 29/02/2016 - [] D -- C:\Program Files\MPC-HC =>.Open Source Developer, Fotis ZAFIROPOULOS® O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\MSBuild O43 - CFD: 02/04/2016 - [] D -- C:\Program Files\PicosmosTools O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 17/05/2016 - [] D -- C:\Program Files\Restore Point Creator O43 - CFD: 18/12/2015 - [] D -- C:\Program Files\Rockers Team O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Samsung =>.Samsung Electronics CO., LTD.® O43 - CFD: 16/05/2016 - [] D -- C:\Program Files\SamsungFullFirmwareMaker O43 - CFD: 29/03/2016 - [] D -- C:\Program Files\SupportAppCB =>.ZTE CORPORATION® O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 01/05/2016 - [] D -- C:\Program Files\Unlocker O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\USB Disk Security O43 - CFD: 02/04/2016 - [] D -- C:\Program Files\Video to Video O43 - CFD: 27/10/2015 - [] D -- C:\Program Files\VLC O43 - CFD: 25/03/2016 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group® O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 22/06/2016 - [] D -- C:\Program Files\Windows Kits O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Windows NT O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 20/11/2010 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 25/05/2016 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 12/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\001Micron Recovery - SIM Card (Demo) O43 - CFD: 07/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 14/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 23/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad Muncher O43 - CFD: 21/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adguard O43 - CFD: 11/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 18/02/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft O43 - CFD: 15/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio To Video Mixer O43 - CFD: 07/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 31/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser O43 - CFD: 29/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BCL easyConverter Desktop 3 O43 - CFD: 15/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DogSettings O43 - CFD: 12/06/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3 O43 - CFD: 15/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Robot O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\East Imperial Soft O43 - CFD: 29/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture O43 - CFD: 01/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Full Video Audio Mixer O43 - CFD: 11/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 21/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSPA USB Modem O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HyperTerminal Private Edition O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer O43 - CFD: 26/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 25/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 16/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 30/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobiconnect O43 - CFD: 11/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie To GIF O43 - CFD: 29/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC O43 - CFD: 15/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\nLite O43 - CFD: 15/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NSS O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF To JPG O43 - CFD: 21/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Software O43 - CFD: 02/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Restore Point Creator O43 - CFD: 10/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro O43 - CFD: 22/06/2016 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 12/04/2011 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 24/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaks.com Logon Changer O43 - CFD: 31/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraSearch O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security O43 - CFD: 15/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to GIF Converter O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video O43 - CFD: 22/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits O43 - CFD: 24/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 20/01/2016 - [] D -- C:\ProgramData\Ad Muncher O43 - CFD: 28/06/2016 - [] D -- C:\ProgramData\Adguard O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 11/12/2015 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 11/12/2015 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 21/06/2016 - [] D -- C:\ProgramData\GridinSoft O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\HyperTerminal O43 - CFD: 18/02/2016 - [0] D -- C:\ProgramData\IDM O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\Installations O43 - CFD: 12/06/2016 - [] D -- C:\ProgramData\IObit O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 11/12/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 18/06/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 16/12/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 02/06/2016 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 11/12/2015 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\PC Suite O43 - CFD: 28/03/2016 - [0] D -- C:\ProgramData\PreventPlay O43 - CFD: 05/01/2016 - [0] D -- C:\ProgramData\RegRun O43 - CFD: 17/01/2016 - [] D -- C:\ProgramData\Samsung O43 - CFD: 28/06/2016 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 14/02/2016 - [] D -- C:\ProgramData\VS Revo Group O43 - CFD: 21/07/2012 - [] D -- C:\ProgramData\Zbshareware Lab O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Common Files\AV O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\Common Files\InstallShield O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\Common Files\Intel O43 - CFD: 02/06/2016 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 02/06/2016 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 30/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\AdbDriverInstaller O43 - CFD: 11/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Adobe O43 - CFD: 12/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\ADSafe3 O43 - CFD: 11/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\AVAST Software O43 - CFD: 11/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Blitware O43 - CFD: 11/12/2015 - [0] D -- C:\Users\AB-AZ\AppData\Roaming\dissect O43 - CFD: 28/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\DMCache O43 - CFD: 27/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\FastStone O43 - CFD: 01/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Hide.me O43 - CFD: 11/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Identities O43 - CFD: 26/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\IDM O43 - CFD: 12/06/2016 - [0] D -- C:\Users\AB-AZ\AppData\Roaming\IObit O43 - CFD: 31/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\JAM Software O43 - CFD: 03/02/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Kingosoft O43 - CFD: 01/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Macromedia O43 - CFD: 12/04/2011 - [0] D -- C:\Users\AB-AZ\AppData\Roaming\Media Center Programs O43 - CFD: 15/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\mgyun O43 - CFD: 02/06/2016 - [] SD -- C:\Users\AB-AZ\AppData\Roaming\Microsoft O43 - CFD: 13/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Mozilla O43 - CFD: 23/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\MPC-HC O43 - CFD: 01/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Multimedia Player O43 - CFD: 01/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\PC Suite O43 - CFD: 14/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Performix LLC O43 - CFD: 02/04/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Picosmos O43 - CFD: 22/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Profiles O43 - CFD: 17/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Samsung O43 - CFD: 15/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Shuame O43 - CFD: 15/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\vlc O43 - CFD: 16/03/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\WinISO Computing O43 - CFD: 24/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\WinRAR O43 - CFD: 29/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\YCanPDF O43 - CFD: 11/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Zbshareware Lab O43 - CFD: 28/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\ZHP O43 - CFD: 11/12/2015 - [0] SHD -- C:\Users\AB-AZ\AppData\Local\Application Data O43 - CFD: 25/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\CrashDumps O43 - CFD: 03/02/2016 - [0] D -- C:\Users\AB-AZ\AppData\Local\Deployment O43 - CFD: 08/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Diagnostics O43 - CFD: 27/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Local\FastStone O43 - CFD: 22/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Google O43 - CFD: 11/12/2015 - [0] SHD -- C:\Users\AB-AZ\AppData\Local\Historique O43 - CFD: 30/04/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\IE Tab O43 - CFD: 18/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Microsoft O43 - CFD: 16/12/2015 - [0] D -- C:\Users\AB-AZ\AppData\Local\Microsoft Help O43 - CFD: 31/03/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\MiniService O43 - CFD: 16/04/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Mozilla O43 - CFD: 21/04/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Performix_LLC O43 - CFD: 22/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Profiles O43 - CFD: 11/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Local\Programs O43 - CFD: 02/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Restore_Point_Creator O43 - CFD: 17/01/2016 - [0] D -- C:\Users\AB-AZ\AppData\Local\Samsung O43 - CFD: 28/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Temp O43 - CFD: 11/12/2015 - [0] SHD -- C:\Users\AB-AZ\AppData\Local\Temporary Internet Files O43 - CFD: 31/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\TriSun_Software_Inc O43 - CFD: 27/03/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\Trolltech O43 - CFD: 18/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\VirtualStore O43 - CFD: 10/06/2016 - [] D -- C:\Users\AB-AZ\AppData\Local\VS Revo Group O43 - CFD: 11/12/2015 - [0] D -- C:\Users\AB-AZ\AppData\Local\Programs\Common O43 - CFD: 14/07/2009 - [] RD -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 11/12/2015 - [] RD -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 16/05/2016 - [0] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CNET TechTracker O43 - CFD: 22/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East Imperial Soft O43 - CFD: 24/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 31/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperTerminal Private Edition O43 - CFD: 26/03/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 14/07/2009 - [] RD -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 27/03/2016 - [0] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NSS O43 - CFD: 15/04/2016 - [0] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneClickRoot O43 - CFD: 02/04/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools O43 - CFD: 21/01/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery Software O43 - CFD: 18/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockers Team O43 - CFD: 22/06/2016 - [0] RD -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 12/12/2015 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker O43 - CFD: 24/05/2016 - [] D -- C:\Users\AB-AZ\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 02/06/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft ---\\ ShellIconOverlayIdentifiers (SIOI) (10) - 0s O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (14) - 0s O53 - SMSR:HKLM\...\startupreg\Ad Muncher [Key] . (.Murray Hurps Software Pty Ltd - Ad Muncher.) -- C:\Program Files\Ad Muncher\AdMunch.exe =>.Murray Hurps Software Pty Ltd O53 - SMSR:HKLM\...\startupreg\Adguard [Key] . (.Performix LLC - Adguard for Windows.) -- C:\Program Files\Adguard\Adguard.exe O53 - SMSR:HKLM\...\startupreg\AutoStartNPSAgent [Key] . (...) -- C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\CancelAutoPlay_byt [Key] . (...) -- C:\Program Files\Mobiconnect\CancelAutoPlay_byt.exe O53 - SMSR:HKLM\...\startupreg\GrooveMonitor [Key] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\HSPALauncher [Key] . (.Copyright (C) 2010 - HSDPALauncher MFC Application.) -- C:\Program Files\HSPA USB Modem\HSPALauncher.exe O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O53 - SMSR:HKLM\...\startupreg\KiesPreload [Key] . (...) -- C:\Program Files\Samsung\Kies\Kies.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Picosmos [Key] . (.Picosmos - Picosmos Tools.) -- C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O53 - SMSR:HKLM\...\startupreg\RTHDVCPL [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor O53 - SMSR:HKLM\...\startupreg\S60 PC Suite Tray [Key] . (...) -- C:\Program Files\SAMSUNG\Samsung PC Studio 7\PCSuite.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\UIExec [Key] . (...) -- C:\Program Files\Mobiconnect\UIExec.exe O53 - SMSR:HKLM\...\startupreg\UnlockerAssistant [Key] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe O53 - SMSR:HKLM\...\startupreg\USB Security [Key] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files\USB Disk Security\USBGuard.exe =>.Zbshareware Lab ---\\ Liste des pilotes du système (99) - 7s O58 - SDL:2016/03/29 20:15:54 A . (.Copyright (C) Performix LLC 2016 - Adguard WFP network driver x86.) -- C:\Windows\System32\drivers\adgnetworkwfpdrv.sys [50760] {3EDEB62828DC716E184EA9C2B4704B4E} O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2016/05/04 16:42:25 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [32792] =>.AVAST Software a.s.® (ALWIL Software) O58 - SDL:2016/05/04 16:42:04 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [35096] =>.AVAST Software a.s.® O58 - SDL:2016/05/04 16:42:25 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [91168] =>.AVAST Software a.s.® O58 - SDL:2016/04/19 05:53:39 A . (.AVAST Software - avast! NDIS6 Helper.) -- C:\Windows\System32\drivers\aswNetNd6.sys [26776] =>.AVAST Software a.s.® O58 - SDL:2016/05/04 16:41:48 A . (.AVAST Software - avast! Firewall Driver.) -- C:\Windows\System32\drivers\aswNetSec.sys [334776] =>.AVAST Software a.s.® O58 - SDL:2016/05/04 16:42:25 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [91232] =>.AVAST Software a.s.® O58 - SDL:2016/05/04 16:42:25 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [58776] =>.AVAST Software a.s.® (ALWIL Software) O58 - SDL:2016/05/04 16:42:04 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [815792] =>.AVAST Software a.s.® O58 - SDL:2016/05/04 16:42:25 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [449640] =>.AVAST Software a.s.® O58 - SDL:2016/05/04 16:42:25 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [124808] =>.AVAST Software a.s.® O58 - SDL:2015/12/11 12:56:52 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\aswTap.sys [38984] =>.AVAST Software a.s.® O58 - SDL:2016/05/04 16:42:25 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [221368] =>.AVAST Software a.s.® (ALWIL Software) O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2007/09/24 00:00:00 A . (.www.winchiphead.com - WDM for CH341 serial, by W.ch.) -- C:\Windows\System32\drivers\CH341SER.SYS [37488] =>.www.winchiphead.com O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2008/08/29 17:54:40 A . (.Mobile Connector - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmusbser.sys [103552] =>.Mobile Connector O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2015/07/10 06:31:07 A . (.Copyright (C) 2015 - DMProtec.) -- C:\Windows\System32\drivers\DMProtect.sys [25344] =>.Shanghai Damo Network Technology Co. Ltd.® O58 - SDL:2011/04/28 14:20:26 A . (.Ralink Technology Corp. - Ralink 802.11n Wireless Adapter Driver.) -- C:\Windows\System32\drivers\Dnetr28u.sys [1228864] =>.Ralink Technology Corporation® O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation O58 - SDL:2016/06/23 18:52:42 A . (.Windows (R) Win 7 DDK provider - GridinSoft Trojan Killer Mini-Filter Driver.) -- C:\Windows\System32\drivers\gtkdrv.sys [16128] {3342F9C793FB9687D0852BFF37D40D9F} =>.Windows (R) Win 7 DDK provider O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2016/05/18 13:02:19 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\Windows\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX® O58 - SDL:2010/11/20 22:29:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows® O58 - SDL:2016/01/28 10:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [134248] =>.Tonec Inc.® O58 - SDL:2015/12/11 14:24:31 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [3026832] =>.Intel Corporation - pGFX® O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2011/08/29 11:42:56 A . (.MBB Incorporated - CDROM Filter.) -- C:\Windows\System32\drivers\massfilter.sys [9216] =>.MBB Incorporated O58 - SDL:2016/03/10 14:08:52 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [24448] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 14:08:56 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [126336] =>.Malwarebytes Corporation® O58 - SDL:2016/06/28 00:38:22 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [119512] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:09:04 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [53120] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows® O58 - SDL:2010/11/20 22:29:03 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows® O58 - SDL:2006/08/29 15:56:19 A . (.B-phreaks - Prodigy LPT WinXP device Driver.) -- C:\Windows\System32\drivers\prodigy.sys [32377] =>.B-Phreaks O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2009/12/30 11:21:18 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\Windows\System32\drivers\revoflt.sys [27192] =>.VS Revo Group® O58 - SDL:2015/12/11 14:23:39 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [769280] =>.Realtek Semiconductor Corp® O58 - SDL:2015/12/17 23:55:51 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3629312] =>.Realtek Semiconductor Corp® O58 - SDL:2009/12/09 15:29:28 A . (.Spreadtrum Communication Inc. - USB2Serial Driver.) -- C:\Windows\System32\drivers\SciCmpst.sys [95744] O58 - SDL:2009/12/09 15:29:10 A . (.Spreadtrum Communication Inc. - USB Modem Driver.) -- C:\Windows\System32\drivers\SciModem.sys [95616] O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 00:45:33 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [83456] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2016/01/08 09:51:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [99296] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/01/08 09:51:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [191200] =>.Samsung Electronics CO., LTD.® O58 - SDL:2006/07/24 16:05:00 A . (...) -- C:\Windows\System32\drivers\StarOpen.sys [5632] O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2015/08/18 15:34:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriver.sys [150816] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2016/01/14 23:38:39 A . (...) -- C:\Windows\System32\drivers\vwifikerneldrv.sys [261] O58 - SDL:2011/08/29 11:42:56 A . (.ZTE Incorporated - ZTE Incorporated.) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys [107520] =>.ZTE Incorporated O58 - SDL:2011/08/29 11:42:56 A . (.ZTE Incorporated - ZTE Incorporated.) -- C:\Windows\System32\drivers\ZTEusbnmea.sys [107520] =>.ZTE Incorporated O58 - SDL:2011/08/29 11:42:56 A . (.ZTE Incorporated - ZTE Incorporated.) -- C:\Windows\System32\drivers\ZTEusbser6k.sys [107520] =>.ZTE Incorporated O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2010/06/14 09:32:54 A . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [36608] O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 21s O61 - LFC: 2016/06/21 06:47:46 A . (..) -- C:\Users\AB-AZ\Downloads\Programs\gridinsoft-anti-malware_2.exe [1214416] {36E430A048545F5E36E1B55CE55F65E0} O61 - LFC: 2016/06/20 14:49:40 A . (.PassMark Software ®.) -- C:\Users\AB-AZ\Desktop\سنان\wirelessmon.exe [3100584] {5ECE8CDB4D508EFEE821A7CFFF5B8016} ---\\ Associations Shell Spawning (9) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software ---\\ Recherche d'infection sur les navigateurs (1) - 5s O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les fichiers Crack et Keygen (1) - 11s O82 - LFC: 2014/04/06 16:44:54 N . (...) -- C:\Users\AB-AZ\Downloads\Compressed\wrar53b4.boroz123\wrar53b4.boroz123\WinRAR.v5.01_KEYGEN-FFF.exe [220672] =>.Crack,Keygen ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [674304] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473600] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [521216] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1914368] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164352] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation ---\\ Scan Additionnel (1) - 0s ~ Aucun élément malicieux ou superflu trouvé. ---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s http://www.nicolascoolman.fr/pup-optional-mysites123 =>PUP.Optional.Mysites123 ~ End of the scan, 20901 items in 00h02mn17s (926)(1)