~ ZHPDiag v2016.6.14.104 Par Nicolas Coolman (2016/06/10) ~ Démarré par pompido (Administrator) (2016/07/13 23:12:24) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\ayoub\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\ayoub\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home Single Language, 64-bit (Build 10240) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v51.0.2704.103 MFIE: Mozilla Firefox 44.0.2 (x86 fr) MSIE: Internet Explorer v11.0.10240.17022 ---\\ Informations sur les produits Windows (7) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel ~ Windows Partial Key : 6F4BT Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ Logiciels de protection (4) - 9s Avira Antivirus v15.0.17.273 Avira Launcher v1.1.65.9690 Malwarebytes Anti-Malware version 2.2.1.1043 Windows Defender (Deactivate) ---\\ Surveillance de Logiciels (2) - 10s Adobe Flash Player 22 NPAPI Adobe Acrobat Reader DC - Français ---\\ Logiciels de partage P2P (1) - 10s µTorrent v3.4.7.42330 ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4083.992 MB (38% free) System Restore: Activé (Enable) System drive C: has 177 GB () free of 461 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: POMPIDO ~ User Name: pompido ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 177 GB free of 461 GB (System) ~ Drive D: has 1 GB free of 13 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 7s [MD5.1550F64C237E1E1046B7C4302AB595D7] - 28/05/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4532304] =>.Microsoft Windows® [MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 18/07/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [290312] =>.Microsoft Windows Publisher® [MD5.D56268A343A9447F9545B06381F2CDEF] - 24/06/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3119616] =>.Microsoft Corporation [MD5.DA32F9BFA7851AD4247353EA03755DE6] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [578560] =>.Microsoft Corporation [MD5.ECB1943967424DFB96E03F6A098434EF] - 19/07/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation [MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [680256] =>.Microsoft Windows® [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] =>.Microsoft Windows® [MD5.8C795953726C7D2DE72CE4748208C5ED] - 10/07/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] =>.Microsoft Windows® [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation [MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation [MD5.55D5C5B0B9F9B65BD452136A384E6EAC] - 23/02/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation [MD5.27E248CD861AFED4DF0C48F4C853E7F0] - 25/11/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] =>.Microsoft Corporation [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] =>.Microsoft Corporation [MD5.1BD49789354B1CFE28D96DC232071A02] - 28/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [272896] =>.Microsoft Corporation [MD5.224A508EDBD7B493E581B0462EC91E52] - 24/06/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2115936] =>.Microsoft Windows® [MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation [MD5.2521520142F7853E39028AE6BD66E072] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation [MD5.A32AED8C644734B283A7C9D08D76064D] - 10/07/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] =>.Microsoft Corporation [MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116064] =>.Microsoft Windows® [MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (33) - 5s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics® O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - AGS Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: HP SimplePass Cachedrv Service (Cachedrv server) . (...) - C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink - CyberLink Media Server Monitor Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.® O23 - Service: CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink - CyberLink Media Server Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.® O23 - Service: egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) - C:\Program Files (x86)\EagleGet\EGMonitor.exe O23 - Service: Freemake Improver (Freemake Improver) . (.Freemake - FreemakeUtilsService.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake O23 - Service: (FreemakeVideoCapture) . (.Ellora Assets Corp. - CaptureLibService.) - C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe =>.Ellora Assets Corp. O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - HP Support Solutions Framework Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company® O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP WMI Service.) - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company® O23 - Service: Hotspot Shield Service (hshld) . (.AnchorFree Inc. - Hotspot Shield 5.4.5.) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc. O23 - Service: IAM Aegean Modem Device Helper (IAM Aegean Modem Device Helper) . (...) - C:\Program Files (x86)\My Connection\BackgroundService\ServiceManager.exe =>.JRD COMMUNICATION (SHENZHEN) LTD® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation - pGFX® O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® O23 - Service: KMS Server Service (KMSServerService) . (.My Digital Life Forums - KMS Server Emulator Service.) - C:\WINDOWS\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products® O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: HP SimplePass Service (omniserv) . (.Softex Inc. - HP SimplePass Service.) - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe =>.Softex Inc. O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp® O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc. O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (45) - 29s SR - Auto [25/06/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [13/07/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [13/08/2015] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics® SR - Auto [05/04/2016] [ 2021592] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SS - Auto [02/06/2016] [ 970656] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [02/06/2016] [ 467016] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [02/06/2016] [ 467016] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG® SS - Auto [02/06/2016] [ 1435704] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [01/06/2016] [ 302680] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [14/10/2013] [ 109568] HP SimplePass Cachedrv Service (Cachedrv server) . (...) - C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe SS - Demand [15/10/2015] [ 291744] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SR - Auto [05/09/2013] [ 77576] CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.® SR - Auto [05/09/2013] [ 298760] CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.® SR - Auto [21/04/2016] [ 238592] egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015.) - C:\Program Files (x86)\EagleGet\EGMonitor.exe SS - Demand [29/04/2015] [ 1045256] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Acresso Software Inc.® SS - Auto [03/06/2016] [ 108032] Freemake Improver (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake SR - Auto [03/06/2016] [ 9216] (FreemakeVideoCapture) . (.Ellora Assets Corp..) - C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe =>.Ellora Assets Corp. SS - Auto [06/05/2015] [ 107848] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [06/05/2015] [ 107848] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [28/04/2015] [ 1102472] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company® SR - Auto [26/04/2016] [ 28552] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company® SR - Auto [01/12/2014] [ 573704] HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company® SR - Auto [28/06/2016] [ 2757752] Hotspot Shield Service (hshld) . (.AnchorFree Inc..) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc. SS - Demand [28/06/2016] [ 103168] Hotspot Shield Tray Service (HssTrayService) . (...) - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE {2C55C805B14E57423E47788CF4B66377} SR - Auto [14/03/2012] [ 53312] IAM Aegean Modem Device Helper (IAM Aegean Modem Device Helper) . (...) - C:\Program Files (x86)\My Connection\BackgroundService\ServiceManager.exe =>.JRD COMMUNICATION (SHENZHEN) LTD® SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation® SR - Auto [15/10/2015] [ 330136] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation SR - Auto [27/08/2013] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation SS - Demand [27/08/2013] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service® SR - Auto [16/09/2013] [ 131544] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware® SR - Auto [16/09/2013] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® SR - Auto [17/05/2015] [ 211968] KMS Server Service (KMSServerService) . (.My Digital Life Forums.) - C:\WINDOWS\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico SR - Auto [16/09/2013] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products® SR - Auto [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SR - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [28/06/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [14/10/2013] [ 87552] HP SimplePass Service (omniserv) . (.Softex Inc..) - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe =>.Softex Inc. SR - Auto [13/08/2015] [ 294616] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp® SS - Demand [06/07/2016] [ 1450064] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SS - Demand [19/02/2010] [ 517096] Adobe SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated SR - Auto [24/06/2016] [ 268920] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® SR - Auto [22/08/2011] [ 79872] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc. SR - Auto [22/08/2011] [ 846448] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® SR - Auto [22/08/2011] [11837440] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe ---\\ Tâches planifiées en automatique (33) - 7s [MD5.BE1A1E8EEA50BE1E1A78EB3D7F4CE8CF] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1110232] (.Activate.) =>.Adobe Systems, Incorporated® [MD5.32B31B696CB8E8F380831DFEB80A67E4] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [270016] (.Activate.) =>.Adobe Systems Incorporated® [MD5.60D05F375378CD63AD03C0CD42B872CD] [APT] [AdobeAAMUpdater-1.0-MicrosoftAccount-ayoub-tijani456@hotmail.com] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128] (.Activate.) =>.Adobe Systems Incorporated® [MD5.C746CD166372F3C6F364B62F2C2C8B20] [APT] [AutoKMS] (.CODYQX4.) -- C:\WINDOWS\AutoKMS\AutoKMS.exe [3738624] (.Activate.) =>HackTool.AutoKMS [MD5.BA90221541E206773C2662083B72ED5E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6775512] (.Activate.) =>.Piriform Ltd® [MD5.4E9AF25BA5E8219310E384AEA5B0EED8] [APT] [CLMLSvc_P2G8] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576] (.Activate.) =>.CyberLink Corp.® [MD5.227E138E4A6D8D3A1CC9C3EA0D1874A5] [APT] [CLVDLauncher] (.CyberLink Corp..) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [339008] (.Activate.) =>.CyberLink Corp.® [MD5.4CDD442D3FFFA0B4BAEEAD3F001B4223] [APT] [Core Temp Autostart ayoub] (.Copyright (C) 2006 - 2016 Alcpu.) -- C:\Program Files\Core Temp\Core Temp.exe [897240] (.Activate.) {3020CDC2DB9ED0BE866D8392BB5C4D0E} [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] (.Activate.) =>.Google Inc® [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] (.Activate.) =>.Google Inc® [MD5.DF35A7BB8530611B8F8B3787396E6AB4] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233760] (.Activate.) =>.Intel® Services Manager® [MD5.DF35A7BB8530611B8F8B3787396E6AB4] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233760] (.Activate.) =>.Intel® Services Manager® [MD5.B8935167AD138FEEF6B419064FFCA7D1] [APT] [Synaptics TouchPad Enhancements] (.Synaptics Incorporated.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4263544] (.Activate.) =>.Synaptics Incorporated® [MD5.00000000000000000000000000000000] [APT] [{18588680-6FA9-4D32-ADFE-041530442154}] (...) -- C:\Users\ayoub\AppData\Local\TNT2\2.0.0.1983\TNT2User.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{76C76491-D225-43A1-A410-EC10985E9A68}] (...) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{FBFD30EF-CB0F-4A0A-8AE9-7D387AF691D4}] (...) -- C:\Users\ayoub\Downloads\Compressed\ALL.YOU.NEED.IN.ENGLISH_By nadosh2525\Grammar_1\TSCC.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.A1E81820C9FE16D343213B6778CE460F] [APT] [Hewlett-Packard] (.HP Inc..) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [201080] (.Activate.) =>.Hewlett-Packard Company® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [918] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [922] =>.Google Inc® O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [4562] =>.Adobe Systems, Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] =>.Adobe Systems Incorporated® O39 - APT: AdobeAAMUpdater-1.0-MicrosoftAccount-ayoub-tijani456@hotmail.com - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-ayoub-tijani456@hotmail.com [3664] =>.Adobe Systems Incorporated® O39 - APT: AutoKMS - (.CODYQX4.) -- C:\WINDOWS\System32\Tasks\AutoKMS [3808] =>HackTool.AutoKMS O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2858] =>.Piriform Ltd® O39 - APT: CLMLSvc_P2G8 - (.CyberLink.) -- C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8 [3160] =>.CyberLink Corp.® O39 - APT: CLVDLauncher - (.CyberLink Corp..) -- C:\WINDOWS\System32\Tasks\CLVDLauncher [3160] =>.CyberLink Corp.® O39 - APT: Core Temp Autostart ayoub - (.Copyright (C) 2006 - 2016 Alcpu.) -- C:\WINDOWS\System32\Tasks\Core Temp Autostart ayoub [2906] {3020CDC2DB9ED0BE866D8392BB5C4D0E} O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3748] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3980] =>.Google Inc® O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d [4046] =>.Intel® Services Manager® O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon [3800] =>.Intel® Services Manager® O39 - APT: Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements [2990] =>.Synaptics Incorporated® ---\\ Processus lancés (57) - 10s [MD5.1300D100EF891C98504DE38624D3F639] - (.Softex Inc. - HP SimplePass Service.) -- C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [87552] [PID.1048] =>.Softex Inc. [MD5.DEE40211AA700A0A9D7F95EC38DE0714] - (...) -- C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe [109568] [PID.1068] [MD5.C746CD166372F3C6F364B62F2C2C8B20] - (.CODYQX4 - AutoKMS.) -- C:\WINDOWS\AutoKMS\AutoKMS.exe [3738624] [PID.1368] =>HackTool.AutoKMS [MD5.75909533EECD0CD9D5974B59474AA6C0] - (.Intel Corporation - igfxCUIService Module.) -- C:\WINDOWS\System32\igfxCUIService.exe [330136] [PID.1388] =>.Intel Corporation - pGFX® [MD5.C397166D21F4CD59D5AF339F8938CD0D] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [294616] [PID.1568] =>.Realtek Semiconductor Corp® [MD5.DC64C1C5948E69DD5815BD5421DDED9B] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] [PID.1660] =>.Realtek Semiconductor Corp® [MD5.BD65021AB0EC790AECC503C394E61BA4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\sched.exe [467016] [PID.1964] =>.Avira Operations GmbH & Co. KG® [MD5.BD65021AB0EC790AECC503C394E61BA4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\avguard.exe [467016] [PID.1896] =>.Avira Operations GmbH & Co. KG® [MD5.C17171E63E84F5711DF23B8F1E7A100E] - (.Adobe Systems, Incorporated - AGS Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592] [PID.1960] =>.Adobe Systems Incorporated® [MD5.1E13E1BCAC098D84854BF4E7DA216C90] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files (x86)\EagleGet\EGMonitor.exe [238592] [PID.2060] [MD5.68E7DEA59FDEF410BAF29FDB5B7A6EEF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2148] =>.Adobe Systems, Incorporated® [MD5.382269039F3C88B63880B5B19F3BAA2A] - (.Ellora Assets Corp. - CaptureLibService.) -- C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216] [PID.2156] =>.Ellora Assets Corp. [MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.2180] =>.Andrea Electronics® [MD5.F14317082B49575B64365028D88230D7] - (...) -- C:\Program Files (x86)\My Connection\BackgroundService\ServiceManager.exe [53312] [PID.2208] =>.JRD COMMUNICATION (SHENZHEN) LTD® [MD5.28C5E3C59B130D1C9932AB3A588BD4E5] - (.Hewlett-Packard Development Company, L.P. - HP WMI Service.) -- c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [573704] [PID.2216] =>.Hewlett-Packard Company® [MD5.EB4DFE1644911BD343529E28411DF416] - (.My Digital Life Forums - KMS Server Emulator Service.) -- C:\WINDOWS\KMSServerService\KMS Server Service.exe [211968] [PID.2244] [MD5.F1A89A34388B5626F1548D393B23ECB1] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608] [PID.2348] =>.Malwarebytes Corporation® [MD5.9611577752E293259C7DCE19E9026362] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464] [PID.2356] =>.Malwarebytes Corporation® [MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.2460] =>.Intel(R) Corporation [MD5.15D2B7A72F975046DD6BDFBA25E64493] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [268920] [PID.2544] =>.Synaptics Incorporated® [MD5.B5BB4513C3206D1D4F8A0F276AE424FA] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [846448] [PID.2748] =>.VMware, Inc.® [MD5.DED90079ADD2661664E86D2DDD8DA405] - (.AnchorFree Inc. - Hotspot Shield 5.4.5.) -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [2757752] [PID.2796] {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc. [MD5.9C57AD1165D9F4866EBA6C18E91A8A14] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [302680] [PID.2964] =>.Avira Operations GmbH & Co. KG® [MD5.0FC29ADB3F634ED3E535A76395B470B5] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [79872] [PID.2972] =>.VMware, Inc. [MD5.0B82C21C79BC67ECF416F1E1655E5F65] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [11837440] [PID.3808] [MD5.1E13E1BCAC098D84854BF4E7DA216C90] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files (x86)\EagleGet\EGMonitor.exe [238592] [PID.4120] [MD5.8E98E3EC16D2641005B4748CD330FB45] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [9926112] [PID.4300] =>.Malwarebytes Corporation® [MD5.B8935167AD138FEEF6B419064FFCA7D1] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4263544] [PID.4628] =>.Synaptics Incorporated® [MD5.56FE3C885B0901601549E23E7A435984] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler.exe [250008] [PID.5040] =>.Google Inc® [MD5.A425CDCEB9D26E9A5ABAFA259799D447] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler64.exe [312472] [PID.4284] =>.Google Inc® [MD5.80A11F070E9EEFCB48B357E9E0E2C7D1] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\System32\igfxEM.exe [541600] [PID.3368] =>.Intel Corporation - pGFX® [MD5.B6C52FADECE225339D02B6923E930B5C] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\System32\igfxHK.exe [258456] [PID.796] =>.Intel Corporation - pGFX® [MD5.01AB3932B44D1C58F2BF12AE2369B1BA] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [236656] [PID.2448] =>.Synaptics Incorporated® [MD5.CDFEAA94AD3E362BCE09E0556B92EC84] - (...) -- C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe [65024] [PID.1948] [MD5.6E8DBA64A14C22F92DD94AD7A0887324] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\Antivirus\avshadow.exe [1036576] [PID.3444] =>.Avira Operations GmbH & Co. KG® [MD5.4CDD442D3FFFA0B4BAEEAD3F001B4223] - (.Copyright (C) 2006 - 2016 Alcpu - CPU temperature and system information util.) -- C:\Program Files\Core Temp\Core Temp.exe [897240] [PID.6832] {3020CDC2DB9ED0BE866D8392BB5C4D0E} [MD5.B40BD1D06E8BF04355A0B954936EC62F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8496344] [PID.4136] =>.Realtek Semiconductor Corp® [MD5.DC64C1C5948E69DD5815BD5421DDED9B] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] [PID.6624] =>.Realtek Semiconductor Corp® [MD5.88DA2E50CBCD4C062632EE34923C5913] - (.Hewlett-Packard - HP SimplePass Application.) -- C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2758200] [PID.7152] =>.Softex Incorporated® [MD5.B5F08FCC816B933D8EC1FACCE62B2A12] - (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [155704] [PID.7164] =>.Softex Incorporated® [MD5.1C8F76268DE368A288C6AFB2F00F348F] - (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exe [155704] [PID.6444] =>.Softex Incorporated® [MD5.39AF1CDEAFA4FC9D5185FBD9F4D141C4] - (.Octoshape ApS - Main program for Octoshape client.) -- C:\Users\ayoub\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe [107800] [PID.6268] {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS [MD5.535833DA47D695208FC65591385FE1F6] - (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [509192] [PID.6960] =>.Hewlett-Packard Company® [MD5.C29D8BC04AEB4A237ED07EFE2847E614] - (.Copyright (C) 2001 Analog Devices \n(c) 2005 SAGEM - ADI RAS setup Application.) -- C:\WINDOWS\adirasx64.exe [253008] [PID.7072] {17E885E30185F79AAFDF01CCF61E18D1} [MD5.5178A245B4C35A7C12AC4142AC5E8DC0] - (...) -- C:\Program Files (x86)\My Connection\BackgroundService\ModemListener.exe [126056] [PID.5660] =>.JRD COMMUNICATION (SHENZHEN) LTD® [MD5.573B14904E1ED1AF161F7D9F832252D0] - (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [75776] [PID.3180] [MD5.0FE9CBDD78FFD967F6ABB52F4ED38627] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [151776] [PID.6388] =>.Avira Operations GmbH & Co. KG® [MD5.C4668A2D015BFC941394010662CC21CC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8810200] [PID.212] =>.Piriform Ltd® [MD5.4E9AF25BA5E8219310E384AEA5B0EED8] - (.CyberLink - CyberLink MediaLibrary Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576] [PID.7220] =>.CyberLink Corp.® [MD5.F2099D2D7B6085D94FB597FA39356D08] - (.CyberLink - CyberLink Media Server Monitor Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576] [PID.7492] =>.CyberLink Corp.® [MD5.CA27F20A09B6500482AC2F5B3DB488CF] - (.CyberLink - CyberLink Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760] [PID.5348] =>.CyberLink Corp.® [MD5.E60B8915796784DE61CE1AD17DDC5B17] - (.Hewlett-Packard Company - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28552] [PID.5600] =>.Hewlett-Packard Company® [MD5.57739E742ABC085C2A4340D4404B4A8B] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544] [PID.4800] =>.Intel Corporation - Intel® Management Engine Firmware® [MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.6304] =>.Intel Corporation - Intel® Management Engine Firmware® [MD5.3DE66F47365AA8CEB18B1EE272F4FEBA] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.1292] =>.Intel Corporation - Software and Firmware Products® [MD5.4FA12350B04AAECF0D3893ADFB65101C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\ayoub\Desktop\ZHPDiag3(1).exe [2216960] [PID.8348] =>.Nicolas Coolman [MD5.8FE11A6B735F7C904E1DC0EF7EA79B78] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.9108] =>.Mozilla Corporation® ---\\ Google Chrome, Démarrage,Recherche,Extensions (16) - 2s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [eopekjehpibhfpjjcokfmhcaeiclddih] Invite All (for Facebook) G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ipmkfpcnmccejididiaagpgchgjfajgp] __MSG_extName__ G2 - GCE: Preference [User Data\Default] [kaebhgioafceeldhgjmendlfhbfjefmo] EagleGet Free Downloader G2 - GCE: Preference [User Data\Default] [lmjegmlicamnimmfhcmpkclmigmmcbeh] Application Launcher for Drive (by Google) G2 - GCE: Preference [User Data\Default] [nlbejmccbhkncgokjcmghpfloaajcffj] __MSG_name__ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (11) - 3s M0 - MFSP: prefs.js [pompido - e3v3i08p.default] http://google.com/ P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation® P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated® P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT FILE: (...) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\firefox@mega.co.nz.xpi P2 - EXT FILE: (...) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml P2 - EXT: (.Avira - Segurança do navegador Avira.) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\abs@avira.com =>.Avira P2 - EXT: (.V@no - Cookies Manager+.) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} =>.V@no P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@t.garena.com/garenatalk] - (.Garena.) -- C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll =>.Garena ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (30) ---\\ Browser Helper Object de navigateur (BHO) (2) - 0s O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Applications lancées au démarrage du système (39) - 4s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [SimplePass] . (.Hewlett-Packard - HP SimplePass Application.) -- C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe =>.Softex Incorporated® O4 - HKLM\..\Run: [OPBHOBroker] . (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe =>.Softex Incorporated® O4 - HKLM\..\Run: [OPBHOBrokerDesktop] . (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe =>.Softex Incorporated® O4 - HKLM\..\Run: [adiras] . (.Copyright (C) 2001 Analog Devices \n(c) 2005 SAGEM - ADI RAS setup Application.) -- C:\WINDOWS\adiras.exe {17E885E30185F79AAFDF01CCF61E18D1} O4 - HKLM\..\Run: [Windows Mobile Device Center] . (.Microsoft Corporation - Gestionnaire pour appareils Windows Mobile.) -- C:\WINDOWS\WindowsMobile\wmdc.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - HKCU\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files (x86)\EagleGet\EagleGet.exe O4 - HKCU\..\Run: [AdobeBridge] (Orphean) O4 - HKCU\..\Run: [GarenaPlus] C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe (.not file.) O4 - HKCU\..\Run: [Octoshape Streaming Services] . (.Octoshape ApS - Main program for Octoshape client.) -- C:\Users\ayoub\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKLM\..\Wow6432Node\Run: [YouCam Service] . (.CyberLink Corp. - CyberLink YouCam Service.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe =>.CyberLink Corp.® O4 - HKLM\..\Wow6432Node\Run: [vmware-tray] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.® O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe =>.Hewlett-Packard Company® O4 - HKLM\..\Wow6432Node\Run: [adiras] . (.Copyright (C) 2001 Analog Devices \n(c) 2005 SAGEM - ADI RAS setup Application.) -- C:\WINDOWS\adirasx64.exe {17E885E30185F79AAFDF01CCF61E18D1} O4 - HKLM\..\Wow6432Node\Run: [IAM Aegean ModemListener] . (...) -- C:\Program Files (x86)\My Connection\BackgroundService\ModemListener.exe =>.JRD COMMUNICATION (SHENZHEN) LTD® O4 - HKLM\..\Wow6432Node\Run: [ProductUpdater] . (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\Antivirus\avgnt.exe =>.Avira Operations GmbH & Co. KG® O4 - HKLM\..\Wow6432Node\Run: [AdobeCS5ServiceManager] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files (x86)\EagleGet\EagleGet.exe O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [AdobeBridge] (Orphean) O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [GarenaPlus] C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe (.not file.) O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [Octoshape Streaming Services] . (.Octoshape ApS - Main program for Octoshape client.) -- C:\Users\ayoub\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® ---\\ Raccourcis Global Startup (48) - 20s O4 - GS\Desktop [Administrateur]: Express English.lnk . (.ONH1986 - Express English.) C:\Program Files (x86)\ONH1986\Express English\Express English.exe O4 - GS\Desktop [Administrateur]: Google Drive.lnk . (...) C:\Users\ayoub\Google Drive O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.® O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\TaskBar [Administrateur]: Adobe Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files (x86)\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [Administrateur]: Adobe Photoshop CC 2015 (32 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [Administrateur]: Assassin's Creed IV - Black Flag.lnk . (...) C:\Games\Assassin's Creed IV - Black Flag\Launcher.exe O4 - GS\TaskBar [Administrateur]: Core Temp.lnk . (...) C:\Program Files (x86)\Core Temp\Core Temp.exe O4 - GS\TaskBar [Administrateur]: Defunct.lnk . (...) C:\WINDOWS\Defunct\Defunct_x86.exe O4 - GS\TaskBar [Administrateur]: EagleGet.lnk . (.EagleGet.com - EagleGet Free Downloader.) C:\Program Files (x86)\EagleGet\EagleGet.exe O4 - GS\TaskBar [Administrateur]: Express English Dictionary.lnk . (.Express English - Express English Dictionary.) C:\Users\ayoub\Desktop\Dictionary Express English.exe O4 - GS\TaskBar [Administrateur]: Far Cry 3.lnk . (.Ubisoft Entertainment - Far Cry 3.) C:\Program Files (x86)\R.G. Mechanics\Far Cry 3\bin\farcry3.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\TaskBar [Administrateur]: Freemake Video Downloader.lnk . (.Freemake - Freemake Video Downloader.) C:\Program Files (x86)\Freemake\Freemake Video Downloader\FreemakeVideoDownloader.exe =>.Ellora Assets Corporation® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: gta_sa.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\GTA San Andreas\gta_sa.exe O4 - GS\TaskBar [Administrateur]: Hein 4.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\Hein.exe O4 - GS\TaskBar [Administrateur]: Mafia II.lnk . (.2K Czech - Mafia II Application.) C:\Program Files (x86)\Black_Box\Mafia II\pc\Mafia2.exe O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrateur]: pes6.lnk . (.KONAMI - pes6.exe.) C:\Users\ayoub\Desktop\telechargement\GAME\Perfect Patch\PES6.exe =>.Konami O4 - GS\TaskBar [Administrateur]: Play Sniper Elite 3.lnk . (...) C:\Users\ayoub\Sniper Elite 3\bin\Launcher.exe O4 - GS\TaskBar [Administrateur]: Speed.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\NFS\Need for Speed Most Wanted\Speed.exe O4 - GS\TaskBar [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ayoub\Desktop\ZHPDiag3(1).exe =>.Nicolas Coolman O4 - GS\Desktop [pompido]: Express English.lnk . (.ONH1986 - Express English.) C:\Program Files (x86)\ONH1986\Express English\Express English.exe O4 - GS\Desktop [pompido]: Google Drive.lnk . (...) C:\Users\ayoub\Google Drive O4 - GS\Quicklaunch [pompido]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [pompido]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.® O4 - GS\Quicklaunch [pompido]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\TaskBar [pompido]: Adobe Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files (x86)\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [pompido]: Adobe Photoshop CC 2015 (32 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [pompido]: Assassin's Creed IV - Black Flag.lnk . (...) C:\Games\Assassin's Creed IV - Black Flag\Launcher.exe O4 - GS\TaskBar [pompido]: Core Temp.lnk . (...) C:\Program Files (x86)\Core Temp\Core Temp.exe O4 - GS\TaskBar [pompido]: Defunct.lnk . (...) C:\WINDOWS\Defunct\Defunct_x86.exe O4 - GS\TaskBar [pompido]: EagleGet.lnk . (.EagleGet.com - EagleGet Free Downloader.) C:\Program Files (x86)\EagleGet\EagleGet.exe O4 - GS\TaskBar [pompido]: Express English Dictionary.lnk . (.Express English - Express English Dictionary.) C:\Users\ayoub\Desktop\Dictionary Express English.exe O4 - GS\TaskBar [pompido]: Far Cry 3.lnk . (.Ubisoft Entertainment - Far Cry 3.) C:\Program Files (x86)\R.G. Mechanics\Far Cry 3\bin\farcry3.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\TaskBar [pompido]: Freemake Video Downloader.lnk . (.Freemake - Freemake Video Downloader.) C:\Program Files (x86)\Freemake\Freemake Video Downloader\FreemakeVideoDownloader.exe =>.Ellora Assets Corporation® O4 - GS\TaskBar [pompido]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [pompido]: gta_sa.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\GTA San Andreas\gta_sa.exe O4 - GS\TaskBar [pompido]: Hein 4.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\Hein.exe O4 - GS\TaskBar [pompido]: Mafia II.lnk . (.2K Czech - Mafia II Application.) C:\Program Files (x86)\Black_Box\Mafia II\pc\Mafia2.exe O4 - GS\TaskBar [pompido]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [pompido]: pes6.lnk . (.KONAMI - pes6.exe.) C:\Users\ayoub\Desktop\telechargement\GAME\Perfect Patch\PES6.exe =>.Konami O4 - GS\TaskBar [pompido]: Play Sniper Elite 3.lnk . (...) C:\Users\ayoub\Sniper Elite 3\bin\Launcher.exe O4 - GS\TaskBar [pompido]: Speed.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\NFS\Need for Speed Most Wanted\Speed.exe O4 - GS\TaskBar [pompido]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ayoub\Desktop\ZHPDiag3(1).exe =>.Nicolas Coolman O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\Startup [Public]: Hyperappel du Petit Larousse 2010.lnk . (.Copyright (C) 2000 - Application MFC hyperappel.) C:\Program Files (x86)\Larousse\Petit Larousse 2010\bin\Hyperappel.exe ---\\ Modification Domaine/Adresses DNS (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{49351A80-A448-4A23-AC7C-29C39F11A17B}: NameServer = 62.251.229.237 62.251.229.223 O17 - HKLM\System\CCS\Services\Tcpip\..\{5f38f559-6451-40b0-b7af-26ad2a255484}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{73367c69-7196-487a-8125-2010b09c8e62}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{d49cc982-c76d-4f3d-8ef5-1bbcc3e832b0}: DhcpNameServer = 8.8.8.8 ---\\ Protocole additionnel (24) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\WINDOWS\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\WINDOWS\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (130) - 23s O42 - Logiciel: "Assassin's Creed IV - Black Flag" - (...) [HKLM][64Bits] -- {959CF39B-F3FA-4A80-AECF-8AF6BA639276}_is1 O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 3D English Dictionary - (.3D Computer Center.) [HKLM][64Bits] -- {63DA793F-E504-4671-93B6-DCFD9442FC13} O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} =>.Igor Pavlov O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe After Effects CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DA1B174B-4297-467C-9EF8-0AB8D4D5171E} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FE23D063-934D-4829-A0D8-00634CE79B4A} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Illustrator CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4869414E-7AEA-4C8E-BE1C-8D40977FD517} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CC 2015 (32 Bit) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {2614BC86-757D-4293-9E25-E4E16F370A9E} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Premiere Pro CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {38C72D42-0672-43B1-9E05-E7631684F9A1} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824184103} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation O42 - Logiciel: Avira Antivirus v15.0.17.273 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Launcher v1.1.65.9690 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {3d9e0476-943f-4962-99dc-b9c937a43840} =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira Launcher v1.1.65.9690 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {C1578C4F-5453-44FE-A172-01331906BF18} =>.Avira Operations GmbH & Co. KG O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Core Temp 1.1 - (.Alcpu.) [HKLM][64Bits] -- {086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1 =>.Alcpu O42 - Logiciel: CPUID CPU-Z 1.76 - (...) [HKLM][64Bits] -- CPUID CPU-Z_is1 O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink Corp.® O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink Corp.® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink Corp.® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Defunct - (...) [HKLM][64Bits] -- Defunct_is1 O42 - Logiciel: DisableMSDefender - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {74FE39A0-FB76-47CD-84BA-91E2BBB17EF2} =>.Hewlett-Packard Company O42 - Logiciel: EagleGet version 2.0.4.10 - (.EagleGet.) [HKLM][64Bits] -- {F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1 =>.EagleGet O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7} =>.Hewlett-Packard Company O42 - Logiciel: Express English - (.ONH1986.) [HKLM][64Bits] -- Express English3.9.1 O42 - Logiciel: Far Cry 3 - (.R.G. Mechanics, Panky.) [HKLM][64Bits] -- Far Cry 3_R.G. Mechanics_is1 O42 - Logiciel: Freemake Video Downloader - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Downloader_is1 =>.Ellora Assets Corporation O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA} =>.Adobe Systems Incorporated O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {F4D99A13-F63A-4FC1-8799-CFFDB78DDFB3} =>.Microsoft Corporation O42 - Logiciel: Gestionnaire pour appareils Windows Mobile - (.Microsoft Corporation.) [HKLM][64Bits] -- {626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B} =>.Microsoft Corporation O42 - Logiciel: GNS3 1.2.3 - (...) [HKLM][64Bits] -- GNS3 O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {709316AD-161C-4D5C-9AE7-0B3A822DA271} =>.Google, Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company O42 - Logiciel: Hotspot Shield 5.4.5 - (.AnchorFree Inc..) [HKLM][64Bits] -- HotspotShield {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc. O42 - Logiciel: Hotspot Shield 5.4.5 Embedded - (.Buildbot.) [HKLM][64Bits] -- {AF599C42-A2E5-4251-B7EE-4925A167F821} O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic =>.Meridian Audio Ltd® O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {C9EF1AAF-B542-41C8-A537-1142DA5D4AEC} =>.Hewlett-Packard O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {CCE5C597-03EA-423E-BA80-6FCD280A8465} =>.Hewlett-Packard O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} =>.Hewlett-Packard O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {FD49537C-C3A6-4F8D-93E6-68C778A1E192} =>.Hewlett-Packard O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {D1E8F2D7-7794-4245-B286-87ED86C1893C} =>.Hewlett-Packard O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- {314FAD12-F785-4471-BCE8-AB506642B9A1} =>.Hewlett-Packard O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1} =>.Hewlett-Packard O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {ED5CE45D-842B-4C18-A002-87E16EA39BB3} =>.Hewlett-Packard Company O42 - Logiciel: HP System Event Utility - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {3EDAF5B5-0CA9-4967-B103-FBFF1162C336} =>.Hewlett-Packard Company O42 - Logiciel: HP Utility Center - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {7A75E042-0D30-43C2-BD2A-684F4BE38FF7} =>.Hewlett-Packard Company O42 - Logiciel: HP Wireless Button Driver - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EFA01423-3857-468C-B7B6-F30AA08E50BC} =>.Hewlett-Packard Company O42 - Logiciel: Inst5675 - (.Softex Inc..) [HKLM][64Bits] -- {2DE6247C-7077-451B-8BA7-FFD1A2ABBB47} =>.Softex Inc. O42 - Logiciel: Inst5676 - (.Softex Inc..) [HKLM][64Bits] -- {878F6913-7421-4713-97F7-0A736EE2A188} =>.Softex Inc. O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {0EC7F9CC-4741-45AE-9F55-6E9343F726F5} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {E5FAF48A-145F-4B33-A062-DCFAAFAE5D41} =>.Intel Corporation O42 - Logiciel: Intel® RealSense™ SDK 2014 Runtime (x64): Core - (.Intel Corporation.) [HKLM][64Bits] -- {37D41A97-6B02-4C30-8753-85107BE1D674} =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7} =>.Intel Corporation O42 - Logiciel: Kodi - (.XBMC-Foundation.) [HKCU][64Bits] -- Kodi =>.XBMC-Foundation O42 - Logiciel: Longman Dictionary of Contemporary English 5th Edition - (...) [HKLM][64Bits] -- NSIS_ldoce5 O42 - Logiciel: Mafia II version 1.0 - (.2K Games.) [HKLM][64Bits] -- {4F5FB47E-14DE-45B4-85E3-11CD5E497KA3}_is1 =>.2K Games O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Microsoft .NET Execution Environment (DNX) 1-rc1 (x64) for .NET Core - (.Microsoft Corporation.) [HKLM][64Bits] -- {884c9296-7b31-3db0-87d8-5571d0bfce64} =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Execution Environment (DNX) 1-rc1 (x64) for .NET Framework 4 - (.Microsoft Corporation.) [HKLM][64Bits] -- {0af01a07-ccb7-3765-b479-31f6588c7982} =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Version Manager (x64) 1.0.0-rc1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4ec36977-42b9-3c18-a692-b9dee7404484} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Server Speech Platform Runtime (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {22CB8ED7-DF57-4864-BD04-F63B9CE4B494} =>.Microsoft Corporation O42 - Logiciel: Microsoft Server Speech Text to Speech Voice (fr-FR, Hortense) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9B9D928F-97D5-4D95-9A71-EE9B1805BADE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 44.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 44.0.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft O42 - Logiciel: NirSoft Wireless Network Watcher - (...) [HKLM][64Bits] -- NirSoft Wireless Network Watcher O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA} =>.NVIDIA Corporation O42 - Logiciel: Octoshape Streaming Services - (.Octoshape ApS.) [HKCU][64Bits] -- Octoshape Streaming Services {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated O42 - Logiciel: Petit Larousse 2010 - (...) [HKLM][64Bits] -- {422FADA9-FED2-41D7-B5FA-472BB98B7784} O42 - Logiciel: Ralink Bluetooth Stack64 - (.Mediatek.) [HKLM][64Bits] -- {8A69F02D-A72B-AEE6-1CD3-6B05B9F9DD83} =>.Mediatek O42 - Logiciel: Ralink RT3290 802.11bgn Wi-Fi Adapter - (.Mediatek.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} =>.Macrovision Corporation® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Ethernet Controller All-In-One Windows Driver - (.Realtek.) [HKLM][64Bits] -- {F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: SAGEM F@st 800-840 - (.SAGEM.) [HKLM][64Bits] -- {4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F} =>.Macrovision Corporation® O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: tools-freebsd - (.VMware, Inc..) [HKLM][64Bits] -- {003BFBBD-6C67-419E-A24D-0DCAFC3A5249} =>.VMware, Inc. O42 - Logiciel: tools-linux - (.VMware, Inc..) [HKLM][64Bits] -- {D102611A-6466-4101-A51D-51069303AC65} =>.VMware, Inc. O42 - Logiciel: tools-netware - (.VMware, Inc..) [HKLM][64Bits] -- {197597A7-AD33-4898-9D8E-73066818B464} =>.VMware, Inc. O42 - Logiciel: tools-solaris - (.VMware, Inc..) [HKLM][64Bits] -- {AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4} =>.VMware, Inc. O42 - Logiciel: tools-windows - (.VMware, Inc..) [HKLM][64Bits] -- {FFD9383C-01D5-4897-A954-43AF599AED30} =>.VMware, Inc. O42 - Logiciel: tools-winPre2k - (.VMware, Inc..) [HKLM][64Bits] -- {AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D} =>.VMware, Inc. O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{8B3A877E-1B73-464A-AD21-9F26A0682AC6} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3115261) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D8E86AF8-E495-4DC1-A058-7E69AA96AA8A} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3115261) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{D8E86AF8-E495-4DC1-A058-7E69AA96AA8A} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3115261) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D8E86AF8-E495-4DC1-A058-7E69AA96AA8A} =>.Microsoft Corporation® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: VmciSockets - (.VMware, Inc..) [HKLM][64Bits] -- {528E2373-AE49-4802-B4A8-326BBFDAD6A0} =>.VMware, Inc. O42 - Logiciel: VMware Workstation - (.VMware, Inc.) [HKLM][64Bits] -- VMware_Workstation =>.VMware, Inc O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {0D94F75A-0EA6-4951-B3AF-B145FA9E05C6} =>.VMware, Inc. O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies O42 - Logiciel: YTD Video Downloader 5.7.1 - (.GreenTree Applications SRL.) [HKLM][64Bits] -- {1a413f37-ed88-4fec-9666-5c48dc4b7bb7} =>.Superfluous.GreenTreeApp O42 - Logiciel: معرض الصور - (.Microsoft Corporation.) [HKLM][64Bits] -- {6F77C156-7660-4CEC-8793-97D80D5BFEC0} =>.Microsoft Corporation ---\\ HKCU & HKLM Software Keys (129) - 23s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\Aegean HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Analog Devices HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\AVG HKLM\SOFTWARE\Wow6432Node\Avira HKLM\SOFTWARE\Wow6432Node\AviraSpeedup HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Debug HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\EagleGet HKLM\SOFTWARE\Wow6432Node\EasyBoot Systems HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\Garena HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Havas Interactive HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\HotspotShield HKLM\SOFTWARE\Wow6432Node\HotspotShield MSI HKLM\SOFTWARE\Wow6432Node\Huawei technologies HKLM\SOFTWARE\Wow6432Node\IAM Aegean Modem Service HKLM\SOFTWARE\Wow6432Node\IDM HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\InterVideo HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KONAMI HKLM\SOFTWARE\Wow6432Node\KONAMIPES6 HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\LanTricks HKLM\SOFTWARE\Wow6432Node\Larousse HKLM\SOFTWARE\Wow6432Node\Lavasoft HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\McAfee HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\NSIS_ldoce5 HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\ONH1986 HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Piriform HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Ralink Corporation HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\SAGEM HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SWiSHzone.com HKLM\SOFTWARE\Wow6432Node\ThinPrint HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\Ubisoft HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\VMware, Inc. HKLM\SOFTWARE\Wow6432Node\WinPcap HKLM\SOFTWARE\Wow6432Node\X-AVCSD HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\ALI213 HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AVG HKCU\SOFTWARE\Avira HKCU\SOFTWARE\AviraSpeedup HKCU\SOFTWARE\Besier 3D-Edutainment HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\CamStudioOpenSource for Nick HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Clubic HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\EagleGet HKCU\SOFTWARE\EasyBoot Systems HKCU\SOFTWARE\EMU HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\French ????? ???? ????? -????? ???? Dictionnaire français arabe arabe français.exe HKCU\SOFTWARE\FreshlySqueezed HKCU\SOFTWARE\Google HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Kodi HKCU\SOFTWARE\Lexmark HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Northcode Inc HKCU\SOFTWARE\Octoshape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Odin Game Studio HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Rbf HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Remedy Entertainment HKCU\SOFTWARE\Resplendence Sp HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Softex HKCU\SOFTWARE\SWiSHzone.com HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\PasswordBox HKCU\SOFTWARE\AppDataLow\Software\ThinPrint ---\\ Contenu des dossiers Programmes (352) - 182s O43 - CFD: 05/07/2015 - [] D -- C:\Program Files\3D Driving-School O43 - CFD: 02/11/2013 - [] D -- C:\Program Files\7-Zip O43 - CFD: 09/05/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd® O43 - CFD: 25/05/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 03/07/2016 - [] D -- C:\Program Files\Core Temp {3020CDC2DB9ED0BE866D8392BB5C4D0E} O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\CPUID =>.CPUID® O43 - CFD: 30/04/2016 - [] D -- C:\Program Files\DNX =>.Windows Phone® O43 - CFD: 07/04/2015 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 07/06/2015 - [] D -- C:\Program Files\GNS3 O43 - CFD: 26/02/2014 - [] D -- C:\Program Files\Hewlett-Packard O43 - CFD: 25/05/2016 - [] D -- C:\Program Files\Intel O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 17/05/2015 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 30/04/2016 - [] D -- C:\Program Files\Microsoft DNX O43 - CFD: 17/05/2015 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 24/06/2016 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 17/05/2015 - [] D -- C:\Program Files\Microsoft SQL Server O43 - CFD: 21/12/2015 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\MSBuild O43 - CFD: 14/05/2016 - [0] D -- C:\Program Files\R.G. Catalyst O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 30/01/2016 - [] D -- C:\Program Files\WhySoSlow =>.Daniel Terhell® O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 13/07/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Windows NT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 10/07/2015 - [] SHD -- C:\Program Files\Windows Sidebar O43 - CFD: 13/07/2016 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation® O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files\WindowsPowerShell O43 - CFD: 20/06/2016 - [] D -- C:\Program Files\WinPcap =>.CACE Technologies, Inc.® O43 - CFD: 06/05/2016 - [] AD -- C:\Program Files\Wireshark O43 - CFD: 01/06/2015 - [] AD -- C:\Program Files (x86)\3d_Dic O43 - CFD: 11/06/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 05/05/2016 - [] D -- C:\Program Files (x86)\Adobe Media Player O43 - CFD: 27/04/2015 - [] D -- C:\Program Files (x86)\Anuman Interactive O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\Avira =>.Avira Operations GmbH & Co. KG® O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\Black_Box {75658E3C8112D2CC4D4337417BE8B567} O43 - CFD: 10/04/2015 - [] AD -- C:\Program Files (x86)\Cisco Packet Tracer 6.0.1 O43 - CFD: 02/07/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 15/04/2015 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corp.® O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\directx O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\Disc Soft O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\EagleGet O43 - CFD: 06/06/2015 - [] D -- C:\Program Files (x86)\Ela-Salaty O43 - CFD: 09/03/2016 - [] D -- C:\Program Files (x86)\Freemake =>.Microsoft Corporation® O43 - CFD: 18/03/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 31/12/2015 - [] AD -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company® O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\Hotspot Shield {2C55C805B14E57423E47788CF4B66377} O43 - CFD: 02/11/2013 - [] AD -- C:\Program Files (x86)\HPConnectedMusic =>.Meridian Audio Ltd® O43 - CFD: 31/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Realtek Semiconductor Corp® O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - pGFX® O43 - CFD: 12/05/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\Internet Mobile O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\Kodi O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Larousse =>.Microsoft Corporation® O43 - CFD: 10/05/2015 - [] D -- C:\Program Files (x86)\Longman O43 - CFD: 13/07/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 24/06/2016 - [] AD -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 21/12/2015 - [] AD -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 02/07/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 28/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 05/08/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 01/03/2016 - [] D -- C:\Program Files (x86)\My Connection =>.JRD COMMUNICATION (SHENZHEN) LTD® O43 - CFD: 11/06/2016 - [] D -- C:\Program Files (x86)\NirSoft O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 21/05/2015 - [] D -- C:\Program Files (x86)\ONH1986 O43 - CFD: 07/04/2015 - [] RD -- C:\Program Files (x86)\Online Services O43 - CFD: 01/07/2016 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 03/05/2016 - [] D -- C:\Program Files (x86)\Photoshop Cs6 O43 - CFD: 05/07/2016 - [] D -- C:\Program Files (x86)\R.G. Mechanics =>.UBISOFT ENTERTAINMENT INC.® O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Ralink Corporation =>.Ralink Technology Corporation® O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 05/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 18/04/2015 - [] D -- C:\Program Files (x86)\SAGEM {17E885E30185F79AAFDF01CCF61E18D1} O43 - CFD: 07/07/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve® O43 - CFD: 25/05/2016 - [0] D -- C:\Program Files (x86)\SWiSH Max4 O43 - CFD: 13/08/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 01/05/2016 - [0] D -- C:\Program Files (x86)\Tonec Inc., Copyright © 1999 - 2015 O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\TV 3L PC O43 - CFD: 29/04/2015 - [] AD -- C:\Program Files (x86)\UltraISO {11211B6C1D7687D789B2B9118C0D9622C42F} O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 12/04/2015 - [] AD -- C:\Program Files (x86)\VMware =>.VMware, Inc.® O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 02/11/2013 - [] AD -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation® O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 10/07/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3D English Dictionary O43 - CFD: 07/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 05/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe O43 - CFD: 03/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assassin's Creed IV - Black Flag O43 - CFD: 23/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Networking Academy O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Packet Tracer O43 - CFD: 21/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat O43 - CFD: 03/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID O43 - CFD: 08/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defunct O43 - CFD: 04/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EagleGet O43 - CFD: 20/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 04/07/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GNS3 O43 - CFD: 02/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 31/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Larousse O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Longman O43 - CFD: 06/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mafia II O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 13/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 24/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos O43 - CFD: 01/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My Connection O43 - CFD: 21/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools O43 - CFD: 05/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAGEM F@st 800-840 O43 - CFD: 21/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection O43 - CFD: 25/05/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 25/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 28/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Walking Dead Michonne Episode 1 O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\Adobe O43 - CFD: 11/07/2016 - [] D -- C:\ProgramData\ALI213 O43 - CFD: 09/05/2016 - [0] D -- C:\ProgramData\ALM O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Apple O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 20/05/2015 - [] D -- C:\ProgramData\AVG O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Avira O43 - CFD: 11/02/2016 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 04/05/2016 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 07/04/2015 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 02/07/2016 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 08/06/2015 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 16/05/2015 - [0] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\DAEMON Tools Ultra O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 04/05/2016 - [] D -- C:\ProgramData\EagleGet O43 - CFD: 29/04/2015 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 20/06/2016 - [] D -- C:\ProgramData\Freemake O43 - CFD: 14/05/2016 - [] D -- C:\ProgramData\Garena O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\GarenaMessenger O43 - CFD: 22/04/2015 - [] D -- C:\ProgramData\GNU O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 06/07/2016 - [] D -- C:\ProgramData\Hotspot Shield O43 - CFD: 10/04/2015 - [0] D -- C:\ProgramData\IDM O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\install_clap O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Intel O43 - CFD: 27/04/2016 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\McAfee O43 - CFD: 07/04/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 21/12/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 30/04/2016 - [] D -- C:\ProgramData\Microsoft DNX O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 07/04/2015 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 05/07/2016 - [] D -- C:\ProgramData\Orbit O43 - CFD: 24/06/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 21/12/2015 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 12/07/2016 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Rosetta Stone O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Rosetta Stone Backups O43 - CFD: 05/07/2016 - [] SHD -- C:\ProgramData\SecuROM O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 06/06/2015 - [] D -- C:\ProgramData\Solarwinds O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 27/04/2016 - [] D -- C:\ProgramData\Steam O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Temp O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 24/07/2015 - [] AD -- C:\ProgramData\VMware O43 - CFD: 09/05/2016 - [] AD -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 09/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\Common Files\EagleGet O43 - CFD: 29/04/2015 - [] D -- C:\Program Files (x86)\Common Files\EZB Systems O43 - CFD: 09/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 29/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 21/12/2015 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 07/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 25/05/2016 - [] D -- C:\Program Files (x86)\Common Files\SWiSHzone.com O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 12/04/2015 - [] D -- C:\Program Files (x86)\Common Files\VMware O43 - CFD: 02/11/2013 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 11/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Acapela Group O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Adobe O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\AVG O43 - CFD: 13/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Avira O43 - CFD: 17/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\BitTorrent Sync O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\com.rosettastone.languagetraining O43 - CFD: 27/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\CyberLink O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\DAEMON Tools Ultra O43 - CFD: 01/05/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\DMCache O43 - CFD: 04/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\EagleGet O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Far Cry 3 O43 - CFD: 14/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Garena O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\GarenaPlus O43 - CFD: 17/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\GNS3 O43 - CFD: 29/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\gnupg O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Hewlett-Packard O43 - CFD: 17/03/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\hpqlog O43 - CFD: 22/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Identities O43 - CFD: 18/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\InstallShield O43 - CFD: 31/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Kodi O43 - CFD: 10/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\ldoce5 O43 - CFD: 11/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Lingoversity O43 - CFD: 01/06/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Macromedia O43 - CFD: 06/05/2016 - [] SD -- C:\Users\ayoub\AppData\Roaming\Microsoft O43 - CFD: 10/12/2015 - [0] D -- C:\Users\ayoub\AppData\Roaming\Moonchild Productions O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Mozilla O43 - CFD: 06/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Naturalsoft O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Octoshape O43 - CFD: 01/07/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\Opera Software O43 - CFD: 06/07/2016 - [] SHD -- C:\Users\ayoub\AppData\Roaming\Pr O43 - CFD: 11/02/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\QuickScan O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\RHEng =>.Superfluous.Conduit O43 - CFD: 05/07/2016 - [] RHD -- C:\Users\ayoub\AppData\Roaming\SecuROM O43 - CFD: 14/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Skype O43 - CFD: 09/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 28/06/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Steam O43 - CFD: 02/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\StokedBigAir O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\SWiSH Max4 O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Synaptics O43 - CFD: 08/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\uTorrent O43 - CFD: 12/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\vlc O43 - CFD: 16/06/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\VMware O43 - CFD: 13/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\ZHP O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\1BN_Software_&_IT_Solutio O43 - CFD: 06/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\2K Games O43 - CFD: 13/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Adobe O43 - CFD: 06/08/2015 - [0] SHD -- C:\Users\ayoub\AppData\Local\Application Data O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Avg O43 - CFD: 13/03/2016 - [] D -- C:\Users\ayoub\AppData\Local\Avira O43 - CFD: 03/05/2016 - [0] D -- C:\Users\ayoub\AppData\Local\AviraSpeedup O43 - CFD: 04/05/2016 - [] D -- C:\Users\ayoub\AppData\Local\BlueStacks O43 - CFD: 18/07/2015 - [] D -- C:\Users\ayoub\AppData\Local\CEF O43 - CFD: 29/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Chromium O43 - CFD: 10/02/2016 - [] D -- C:\Users\ayoub\AppData\Local\Comms O43 - CFD: 08/06/2015 - [] D -- C:\Users\ayoub\AppData\Local\CyberLink O43 - CFD: 19/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\Diagnostics O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Disc_Soft_Ltd O43 - CFD: 05/10/2015 - [0] D -- C:\Users\ayoub\AppData\Local\ElevatedDiagnostics O43 - CFD: 11/05/2015 - [] SHD -- C:\Users\ayoub\AppData\Local\EmieBrowserModeList O43 - CFD: 04/05/2016 - [0] SHD -- C:\Users\ayoub\AppData\Local\EmieSiteList O43 - CFD: 04/05/2016 - [0] SHD -- C:\Users\ayoub\AppData\Local\EmieUserList O43 - CFD: 04/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\EMU O43 - CFD: 20/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\FreemakeVideoDownloader O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Geckofx O43 - CFD: 23/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\GNU O43 - CFD: 18/03/2016 - [] D -- C:\Users\ayoub\AppData\Local\Google O43 - CFD: 01/06/2015 - [] D -- C:\Users\ayoub\AppData\Local\GWX O43 - CFD: 04/02/2016 - [] D -- C:\Users\ayoub\AppData\Local\Hewlett-Packard O43 - CFD: 06/08/2015 - [0] SHD -- C:\Users\ayoub\AppData\Local\Historique O43 - CFD: 27/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\HPConnectedMusic O43 - CFD: 28/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Intel_Corporation O43 - CFD: 10/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\ldoce5 O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Macromedia O43 - CFD: 29/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Mega Limited O43 - CFD: 29/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\MegaDownloader O43 - CFD: 21/12/2015 - [] D -- C:\Users\ayoub\AppData\Local\Microsoft O43 - CFD: 30/12/2015 - [] D -- C:\Users\ayoub\AppData\Local\Microsoft Help O43 - CFD: 08/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\MicrosoftEdge O43 - CFD: 09/12/2015 - [] D -- C:\Users\ayoub\AppData\Local\Moonchild Productions O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Mozilla O43 - CFD: 06/08/2015 - [0] D -- C:\Users\ayoub\AppData\Local\NetworkTiles O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Local\Octoshape O43 - CFD: 01/07/2016 - [0] D -- C:\Users\ayoub\AppData\Local\Opera Software O43 - CFD: 06/05/2016 - [] D -- C:\Users\ayoub\AppData\Local\Packages O43 - CFD: 06/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\Popcorn-Time-Community O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Power2Go8 O43 - CFD: 10/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Programs O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\Publishers O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\PunkBuster O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Rockstar Games O43 - CFD: 03/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Setup Integrity Check O43 - CFD: 06/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\SKIDROW O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\SkinSoft O43 - CFD: 10/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Skype O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Smart_PC_Soft O43 - CFD: 11/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Sniper3 O43 - CFD: 25/04/2016 - [] D -- C:\Users\ayoub\AppData\Local\Steam O43 - CFD: 13/07/2016 - [] AD -- C:\Users\ayoub\AppData\Local\Temp O43 - CFD: 06/08/2015 - [0] SHD -- C:\Users\ayoub\AppData\Local\Temporary Internet Files O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\TileDataLayer O43 - CFD: 29/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\VirtualStore O43 - CFD: 17/03/2016 - [] D -- C:\Users\ayoub\AppData\Local\VMware O43 - CFD: 01/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\Windows Live O43 - CFD: 10/04/2015 - [0] D -- C:\Users\ayoub\AppData\Local\Programs\Common O43 - CFD: 10/07/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 06/08/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 21/12/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 21/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike O43 - CFD: 09/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake O43 - CFD: 21/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life O43 - CFD: 21/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS O43 - CFD: 01/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 26/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Longman O43 - CFD: 10/07/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 11/06/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Octoshape Streaming Services O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ONH1986 O43 - CFD: 03/06/2016 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 10/07/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [] RSD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DataSharing O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\dcpsvc O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Intel O43 - CFD: 12/08/2015 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\TrueKey ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Liste des pilotes du système (88) - 17s O58 - SDL:2015/07/10 11:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2007/02/07 17:50:58 A . (.Analog Deivces - USB Firmware loader.) -- C:\WINDOWS\System32\drivers\adildrx64.sys [58264] =>.Ikanos Communications, Inc.® O58 - SDL:2007/02/07 17:51:18 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\drivers\adiusbawx64.sys [169496] =>.Ikanos Communications, Inc.® O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2011/06/20 10:00:48 A . (.TCT International Mobile Ltd - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\AlcatelOTUsbnet.sys [138752] =>.TCT International Mobile Ltd O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2016/03/17 12:19:44 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [128664] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/06/02 15:43:49 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [146712] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/02/18 10:49:19 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [35488] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2016/06/02 15:43:49 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [78208] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2015/07/10 11:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2015/07/10 11:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2013/03/05 12:01:42 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [91712] =>.CyberLink Corp.® O58 - SDL:2013/03/05 07:22:20 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\WINDOWS\System32\drivers\clwvd.sys [41408] =>.CyberLink Corp.® O58 - SDL:2015/05/20 21:36:33 A . (.Connectify - NDIS filter driver.) -- C:\WINDOWS\System32\drivers\cnnctfy2.sys [31344] =>.Connectify® O58 - SDL:2016/04/10 16:04:54 A . (.eagleGet - eagleGet Network Filter.) -- C:\WINDOWS\System32\drivers\eagleGet.sys [86840] =>.EagleGet O58 - SDL:2015/07/10 11:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows® O58 - SDL:2011/08/22 00:11:26 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [39024] =>.VMware, Inc.® O58 - SDL:2015/07/10 11:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] =>.Intel Corporation - Client Components Group® O58 - SDL:2013/08/22 11:08:42 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [644968] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows® O58 - SDL:2016/01/28 11:20:10 N . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.® O58 - SDL:2015/10/15 14:56:32 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3797424] =>.Intel Corporation - pGFX® O58 - SDL:2015/08/21 11:50:48 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [463112] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50240] =>.Intel(R) Wireless Display® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38976] =>.Intel(R) Wireless Display® O58 - SDL:2011/06/20 10:00:48 A . (.TCT International Mobile Ltd - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\jrdusbser.sys [120832] =>.TCT International Mobile Ltd O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation® O58 - SDL:2016/07/13 23:09:51 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:09:10 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [65408] =>.Malwarebytes Corporation® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows® O58 - SDL:2015/06/12 05:59:24 A . (.MediaTek Inc. - MediaTek 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2554528] =>.MEDIATEK INC.® O58 - SDL:2011/02/11 22:23:34 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.® O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows® O58 - SDL:2016/01/11 13:12:58 A . (.Resplendence Software Projects Sp. - Resplendence WhySoSlow Monitoring Driver.) -- C:\WINDOWS\System32\drivers\rspWhy64.sys [33536] =>.Daniel Terhell® O58 - SDL:2013/08/15 23:28:42 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [830680] =>.Realtek Semiconductor Corp® O58 - SDL:2015/06/03 02:27:02 A . (.Ralink Technology, Corp. - Ralink Bluetooth Adapter.) -- C:\WINDOWS\System32\drivers\rtbth.sys [1219200] =>.MEDIATEK INC.® O58 - SDL:2015/08/13 02:30:07 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4506840] =>.Realtek Semiconductor Corp® O58 - SDL:2015/06/05 03:12:54 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [310528] =>.Realtek Semiconductor Corp® O58 - SDL:2013/08/26 23:54:36 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUStor.sys [263896] =>.Realtek Semiconductor Corp® O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2013/09/20 06:10:18 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [30448] =>.Synaptics Incorporated® O58 - SDL:2016/06/24 02:10:12 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [76408] =>.Synaptics Incorporated® O58 - SDL:2016/04/30 00:22:10 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [52904] =>.Synaptics Incorporated® O58 - SDL:2016/06/24 02:10:12 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [79992] =>.Synaptics Incorporated® O58 - SDL:2016/05/20 12:15:39 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [129152] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/05/20 12:15:32 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [221824] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/06/24 03:52:44 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\WINDOWS\System32\drivers\ssudserd.sys [221824] =>.Samsung Electronics CO., LTD.® O58 - SDL:2015/07/10 11:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2016/06/24 02:10:36 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [74872] =>.Synaptics Incorporated® O58 - SDL:2016/06/24 02:10:40 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [871544] =>.Synaptics Incorporated® O58 - SDL:2016/05/13 18:27:24 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc® O58 - SDL:2013/09/16 22:20:12 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [99288] =>.Intel Corporation - Intel® Management Engine Firmware® O58 - SDL:2016/07/12 19:10:39 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [28272] =>.Adlice® O58 - SDL:2015/07/10 11:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2011/08/08 15:59:12 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [116336] =>.VMware, Inc.® O58 - SDL:2011/08/22 16:12:26 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [24176] =>.VMware, Inc.® O58 - SDL:2011/08/22 16:12:26 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [20080] =>.VMware, Inc.® O58 - SDL:2011/08/22 16:12:26 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [45680] =>.VMware, Inc.® O58 - SDL:2011/08/22 18:06:14 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [30320] =>.VMware, Inc.® O58 - SDL:2011/08/22 00:01:22 A . (.VMware, Inc. - VMware USB driver.) -- C:\WINDOWS\System32\drivers\vmusb.sys [37680] =>.VMware, Inc.® O58 - SDL:2011/08/22 18:07:58 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [62064] =>.VMware, Inc.® O58 - SDL:2015/07/10 11:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows® O58 - SDL:2015/06/23 22:24:48 A . (.HP Inc. - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [30384] =>.Hewlett-Packard Company® O58 - SDL:2012/10/09 09:39:52 A . (.Softex Inc - OmniPass PBA Driver.) -- C:\WINDOWS\System32\oprom.sys [5120] =>.Softex Inc ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 150s O61 - LFC: 2016/07/11 18:58:47 A . (..) -- C:\Users\ayoub\Sniper Elite 3\bin\Profile\nosTEAM\Stats\Achievements.Bin [88] O61 - LFC: 2016/07/11 19:04:25 A . (..) -- C:\Users\ayoub\Sniper Elite 3\bin\Profile\nosTEAM\Stats\Stats.Bin [60] O61 - LFC: 2016/07/12 07:55:22 A . (..) -- C:\Users\ayoub\Documents\Freemake\FreemakeVideoDownloader\fvd.bin [407] O61 - LFC: 2016/07/09 21:33:19 A . (..) -- C:\Users\ayoub\Desktop\telechargement\GAME\Perfect Patch\kitserver\dat\e_text.afs\unnamed_151.bin [645728] O61 - LFC: 2016/07/13 23:09:59 A . (..) -- C:\Users\ayoub\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2016/07/06 03:19:01 A . (..) -- C:\Users\ayoub\AppData\Local\2K Games\Mafia II\Data\vfs.bin [164736] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (6) - 9s O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.baseURI", "resource://caa1-adoicaxffmovix-at-jetpack/"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.domain", "caa1-adoicaxffmovix-at-jetpack"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.load.reason", "startup"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.rootURI", "jar:file:///C:/Users/ayoub/AppData/Roaming/Mozilla/Firefox/Profil[...] =>PUP.Optional.GoMovix O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.version", "0.1.6"); =>PUP.Optional.GoMovix O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.url", "resource://caa1-adoicaxffmovix-at-jetpack/data/index.html"); =>PUP.Optional.GoMovix ---\\ Enumère les services démarrés par Svchost (41) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1336832] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1012736] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324096] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\WINDOWS\System32\SessEnv.dll [371200] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [190976] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [680448] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\WINDOWS\System32\mprdim.dll [497152] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\System32\tapisrv.dll [311808] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2238464] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [593920] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [354816] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [712704] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\WINDOWS\System32\lfsvc.dll [27136] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [267776] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1016832] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (30) - 3s O87 - FAEL: "UDP Query User{30119743-86D0-4FD2-87BE-853EE92640CE}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe O87 - FAEL: "TCP Query User{D4972882-3C72-423A-8C90-0A5DA6C8DC9C}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe O87 - FAEL: "{0182DD11-EB43-4F2C-9700-8CA5CA6B55C9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\mHotspot\mHotspot.exe (.not file.) O87 - FAEL: "{05FAD4E3-6773-4E9C-9515-D4CACD1D2F22}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\mHotspot\mHotspot.exe (.not file.) O87 - FAEL: "{C09A6B21-CB25-499E-AFF2-2975468B45F9}" [Out-None-P6-TRUE] .(...) -- C:\Users\ayoub\AppData\Local\Temp\nsrDFED.tmp\CnetInstaller-75452123.exe (.not file.) O87 - FAEL: "{98B706B3-7241-4D44-AE7E-0215BF46AB63}" [In-None-P6-TRUE] .(...) -- C:\Users\ayoub\AppData\Local\Temp\nsrDFED.tmp\CnetInstaller-75452123.exe (.not file.) O87 - FAEL: "{14BB9793-B36B-4AD6-AAAF-7DE2E8D1F7E5}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\6BQJ9MWYCXI.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{5AC528F9-4C45-4858-9C1B-400EE2F67B86}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\6BQJ9MWYCXI.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{96A1F3DE-A590-4E4A-A661-2DA7896F436E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\USM9UPHQ5CA.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{DC45E047-D57E-4156-8EC4-AC5B95120FAD}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\USM9UPHQ5CA.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{C427845D-64C1-4785-8B52-5F7FB3C148CE}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\C0ELPZKJPMC.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{5AAC9BE4-9ACD-49DD-A25E-EF414FD6639B}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\C0ELPZKJPMC.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "UDP Query User{CD86C66F-B5AE-49E9-8599-A2CE79FDE9FC}C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe (.not file.) O87 - FAEL: "TCP Query User{0761886F-D0DA-4821-8A22-BBFD295F68C3}C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe (.not file.) O87 - FAEL: "{DE4839D2-0C60-4778-9A79-3D80DAB7061C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "{90032AB6-4BEB-4DEC-9432-6F642BDD189A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe O87 - FAEL: "UDP Query User{EE450022-709D-4894-B3C8-EB12795A9715}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe O87 - FAEL: "TCP Query User{52F06FBA-C0E5-42A0-B95F-105975568D8D}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe O87 - FAEL: "{5BBF7C09-8012-4613-9B99-1D1D70DF98D5}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{CC17FF1D-E1E3-4EC4-B478-AD6C55946F2A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{A68E5A4C-A9AB-4BD7-B411-B8988E8965C8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe (.not file.) O87 - FAEL: "{E06E393C-CDCE-4D19-9F52-27DB186C26DC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (.not file.) O87 - FAEL: "{762F04DF-EE8C-4BA8-9627-363102102BBA}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{02D5FE73-CBA2-4F5B-B070-F8230E1CAC80}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{6F7F379F-5CF1-4FAB-B93E-06DF0E76932C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "{595C6ABA-8282-4ECD-A28D-D3C266AE5643}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.) O87 - FAEL: "TCP Query User{4A143E19-59E3-44D8-8A44-B1EA1EA60759}C:\users\ayoub\desktop\perfect patch\pes6.exe" [In-None-P6-TRUE] .(...) -- C:\users\ayoub\desktop\perfect patch\pes6.exe (.not file.) O87 - FAEL: "UDP Query User{2B7B1B8D-AF1F-43C3-A170-40DFE96D0857}C:\users\ayoub\desktop\perfect patch\pes6.exe" [In-None-P17-TRUE] .(...) -- C:\users\ayoub\desktop\perfect patch\pes6.exe (.not file.) O87 - FAEL: "TCP Query User{97932E41-AD18-4A71-B983-2055843782CD}C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe" [In-None-P6-TRUE] .(...) -- C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe (.not file.) O87 - FAEL: "UDP Query User{C8E50683-8FE5-46FA-AC22-9D3FE796FCB1}C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe" [In-None-P17-TRUE] .(...) -- C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe (.not file.) ---\\ Scan Additionnel (10) - 0s HKLM\SYSTEM\CurrentControlSet\Services\KMSServerService =>HackTool.KMSpico C:\WINDOWS\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico C:\WINDOWS\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\WINDOWS\System32\Tasks\AutoKMS =>HackTool.AutoKMS HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7} =>.Superfluous.GreenTreeApp HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7} =>.Superfluous.GreenTreeApp HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\ayoub\AppData\Roaming\RHEng =>.Superfluous.Conduit ---\\ Récapitulatif des éléments trouvés sur votre station (6) - 0s http://www.nicolascoolman.fr/?p=989 =>HackTool.KMSpico https://www.nicolascoolman.info/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.GreenTreeApp http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.GoMovix ~ End of the scan, 86394 items in 00h24mn41s (1262)(0)