~ ZHPDiag v2017.1.14.13 By Nicolas Coolman (2017/01/14) ~ Run by waleed (Administrator) (2017/01/15 20:09:21) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ State version: Version OK ~ Mode: Scan ~ Report: C:\Users\waleed\Desktop\ZHPDiag.txt ~ Report: C:\Users\waleed\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ System startup: Normal (Normal boot) Windows 7 Ultimate, 32-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation ---\\ Internet Browsers (2) - 1s ~ MFIE: Mozilla Firefox 45.0.2 (x86 en-US) ~ MSIE: Internet Explorer v11.0.9600.18499 ---\\ Windows Product Information (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ System protection software (1) - 1s Avast Internet Security v10.3.2223 (Protection) ---\\ System protection software (Superfluous) (1) - 1s ~ McAfee Security Scan Plus v3.11.266.3 (Superfluous) ---\\ Surveillance software (2) - 1s ~ Adobe Flash Player 24 PPAPI (Surveillance) ~ Adobe Reader 9.3 (Surveillance) ---\\ Sharing software PeerToPeer (1) - 2s ~ µTorrent v3.1.2 (P2P) ---\\ Information on the system (6) - 0s ~ Operating System: x86 Family 6 Model 37 Stepping 2, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3594.084 MB (36% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 4 GB (8%) free of 49 GB : ATTENTION =>Warning Disk Space ---\\ Connection to the system mode (3) - 0s ~ Computer Name: WALEED-PC ~ User Name: waleed ~ Logged in as Administrator ---\\ Enumeration of the disk units (3) - 0s ~ Drive C: has 4 GB free of 49 GB (System) ~ Drive D: has 0 GB free of 426 GB ~ Drive G: has 5 GB free of 14 GB ---\\ State of the Windows Security Center (17) - 0s [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] EnableShellExecuteHooks: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Search Generic System Files (24) - 4s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 12/10/2015 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.61677B630A8BF2C21391C21537FACBE6] - 30/09/2016 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [2444288] =>.Microsoft Corporation [MD5.52449FD429D6053B78AE564DEF303870] - 17/07/2014 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation [MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.93B49FA857F7036A4EFF32371F6E7391] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.EA9DBD76CE9254C77BAAB4339DD4C4FB] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [81408] =>.Microsoft Corporation [MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.DFF7080C28D25B9629406FBC53F0AC24] - 12/09/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [124416] =>.Microsoft Corporation [MD5.A00996C9BFEF29A93B9F21DBE1DC502D] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [188928] =>.Microsoft Corporation [MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - 16/10/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1212352] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.BB8817D0508DD5EA69C770C8DEF5AB67] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation [MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows® ---\\ Non Microsoft non disabled Windows Services (21) - 10s O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe =>.IObit Information Technology® O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Program Files\IDT\WDM\AEstSrv.exe =>.Andrea Electronics Corporation O23 - Service: Alps HID Monitor Service (ApHidMonitorService) . (.Alps Electric Co., Ltd. - HidMonitorSvc アプリケーション.) - C:\Program Files\DellTPad\HidMonitorSvc.exe =>.Alps Electric Co., LTD.® O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® O23 - Service: Avast Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software a.s.® O23 - Service: Credential Vault Host Control Service (Credential Vault Host Control Service) . (.Broadcom Corporation - Host Control Application.) - C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe =>.Broadcom Corp® O23 - Service: Credential Vault Host Storage (Credential Vault Host Storage) . (.Broadcom Corporation - Host Storage Application.) - C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe =>.Broadcom Corp® O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V. - HitmanPro Scheduler.) - C:\Program Files\HitmanPro\hmpsched.exe =>.SurfRight B.V.® O23 - Service: HsfXAudioService (HsfXAudioService) . (.Conexant Systems, Inc. - Modem Audio Service.) - C:\Windows\System32\XAudio32.dll =>.Conexant Systems, Inc. O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology® O23 - Service: Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2008 All Rights Reserved - Inkjet Printer/Scanner Extended Servey Prog.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® O23 - Service: IMF Service (IMFservice) . (.IObit - IObit Malware Fighter Service.) - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe =>.IObit Information Technology® O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\System32\IProsetMonitor.exe =>.Intel(R) Network Platform Group® O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe =>.Even Balance, Inc.® O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD® O23 - Service: @C:\Windows\system32\stlang.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv.exe =>.IDT, Inc. O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_W (SystemUsageReportSvc_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese - Intel(R) System Usage Report.) - C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe =>.Intel(R) Software Development Products® O23 - Service: wampstackApache-1 (wampstackApache-1) . (.Apache Software Foundation - Apache HTTP Server.) - C:\waleed\apache2\bin\httpd.exe =>.Apache Software Foundation O23 - Service: wampstackMySQL (wampstackMySQL) . (...) - C:\waleed\mysql\bin\mysqld.exe ---\\ Services not Microsoft (SR=Run, SS=Stop) (33) - 33s SS - Demand [14/01/2017] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [03/04/2015] [ 814880] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe =>.IObit Information Technology® SR - Auto [16/08/2010] [ 81920] Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\IDT\WDM\AEstSrv.exe =>.Andrea Electronics Corporation SR - Auto [01/10/2015] [ 76120] Alps HID Monitor Service (ApHidMonitorService) . (.Alps Electric Co., Ltd..) - C:\Program Files\DellTPad\HidMonitorSvc.exe =>.Alps Electric Co., LTD.® SR - Auto [09/05/2016] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® SR - Auto [09/05/2016] [ 109008] Avast Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software a.s.® SR - Demand [09/05/2016] [ 3218624] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe =>.AVAST Software a.s.® SR - Auto [22/06/2011] [ 826272] Credential Vault Host Control Service (Credential Vault Host Control Service) . (.Broadcom Corporation.) - C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe =>.Broadcom Corp® SR - Auto [22/06/2011] [ 31648] Credential Vault Host Storage (Credential Vault Host Storage) . (.Broadcom Corporation.) - C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe =>.Broadcom Corp® SS - Demand [08/06/2016] [ 396952] Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe =>.Intel(R) Software Development Products® SS - Auto [27/09/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [27/09/2015] [ 144200] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [11/10/2015] [ 106248] HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V..) - C:\Program Files\HitmanPro\hmpsched.exe =>.SurfRight B.V.® SR - Auto [29/04/2009] [ 410624] HsfXAudioService (HsfXAudioService) . (.Conexant Systems, Inc..) - C:\Windows\System32\XAudio32.dll =>.Conexant Systems, Inc. SR - Auto [21/11/2013] [ 15720] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology® SR - Auto [22/01/2008] [ 103808] Inkjet Printer/Scanner Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2008 All Rights Reserved.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® SR - Auto [26/07/2016] [ 1600288] IMF Service (IMFservice) . (.IObit.) - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe =>.IObit Information Technology® SR - Auto [18/05/2016] [ 188472] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\System32\IProsetMonitor.exe =>.Intel(R) Network Platform Group® SS - Auto [29/07/2016] [ 3046688] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® SS - Demand [02/12/2015] [ 235696] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.266\McCHSvc.exe =>.McAfee, Inc.® SS - Demand [23/04/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Demand [13/04/2007] [ 792112] NBService (NBService) . (.Nero AG.) - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe =>.Nero AG® SS - Demand [16/05/2007] [ 271920] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe =>.Nero AG® SR - Auto [06/12/2015] [ 66872] PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe =>.Even Balance, Inc.® SS - Demand [01/03/2013] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.® SS - Demand [15/04/2016] [ 33224] (ShareItSvc) . (.SHAREit Technologies Co.Ltd.) - C:\Program Files\SHAREit\SHAREit\Shareit.Service.exe =>.LENOVO® SR - Auto [03/12/2014] [ 743688] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD® SR - Auto [16/08/2010] [ 245842] @C:\Windows\system32\stlang.dll (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv.exe =>.IDT, Inc. SR - Auto [08/06/2016] [ 117400] Intel(R) System Usage Report Service SystemUsageReportSvc_W (SystemUsageReportSvc_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese.) - C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe =>.Intel(R) Software Development Products® SS - Demand [30/05/2012] [ 122408] Intel(R) Turbo Boost Technology Monitor 2.6 (TurboBoost) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe =>.Intel(R) Software® SS - Demand [08/06/2016] [ 396952] User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe =>.Intel(R) Software Development Products® SR - Auto [28/01/2012] [ 20549] wampstackApache-1 (wampstackApache-1) . (.Apache Software Foundation.) - C:\waleed\apache2\bin\httpd.exe =>.Apache Software Foundation SR - Auto [31/01/2012] [ 8184320] wampstackMySQL (wampstackMySQL) . (...) - C:\waleed\mysql\bin\mysqld.exe ---\\ Task Planned Automatically (51) - 9s [MD5.3EB66B37B5DB00216E9711F3C5881100] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_24_0_0_194_pepper.exe [1269336] (.Activate.) =>.Adobe Systems Incorporated® [MD5.1EEC35CD4B215AF8C217084EDC629532] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [270936] (.Activate.) =>.Adobe Systems Incorporated® [MD5.22544393B0C597DED7686D4E8F851A23] [APT] [ASC8_PerformanceMonitor] (.IObit.) -- C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe [1773856] (.Activate.) =>.IObit Information Technology® [MD5.E4D467EDE6AEE7B3F9C12065339F49B9] [APT] [ASC8_SkipUac_waleed] (.IObit.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASC.exe [5353760] (.Activate.) =>.IObit Information Technology® [MD5.B3B87E58466CE9B6662819820010106C] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1373872] (.Activate.) =>.AVAST Software a.s.® [MD5.1257617DB7633DDA700EB1BEF4620E5D] [APT] [DLL-Files.Com Fixer_MONTHLY] (.Dll-FIles.Com.) -- C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [10649136] (.Activate.) =>PUP.Optional.DllFilesFixer [MD5.1257617DB7633DDA700EB1BEF4620E5D] [APT] [DLL-Files.Com Fixer_Updates] (.Dll-FIles.Com.) -- C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [10649136] (.Activate.) =>PUP.Optional.DllFilesFixer [MD5.04F9794E0EC6D7431372C4EAE550E8D5] [APT] [Driver Booster Scheduler] (.IObit.) -- C:\Program Files\IObit\Driver Booster\Scheduler.exe [1009952] (.Activate.) =>.IObit Information Technology® [MD5.3CD43786B9B6FFE997E1ACC3F67BFF5D] [APT] [Driver Booster SkipUAC (waleed)] (.IObit.) -- C:\Program Files\IObit\Driver Booster\DriverBooster.exe [4810528] (.Activate.) =>.IObit Information Technology® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.1257617DB7633DDA700EB1BEF4620E5D] [APT] [RDReminder] (.Dll-FIles.Com.) -- C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe [10649136] (.Activate.) =>PUP.Optional.DllFilesFixer [MD5.00000000000000000000000000000000] [APT] [SlimCleaner Plus (Scheduled Scan - waleed)] (...) -- C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.C8092B45765685CE9305A1C6A39324CE] [APT] [Start Battery Optimizer for waleed-PC@waleed] (.ReviverSoft 2014.) -- C:\Program Files\ReviverSoft\Battery Optimizer\BatteryOptimizer.exe [15257184] (.Activate.) [MD5.E864401005EFD7BC5FABA60280B11A11] [APT] [Uninstaller_SkipUac_waleed] (.IObit.) -- C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [4534048] (.Activate.) =>.IObit Information Technology® [MD5.00000000000000000000000000000000] [APT] [{3E3F2EA4-A984-4522-8FE5-29E24AD0940E}] (...) -- D:\¢­êïê\programs\Office2007 Arabic\setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{8DE1CA6F-F2F3-4BA6-B598-D89AF31B3E58}] (...) -- C:\Users\waleed\Downloads\Programs\INTEL EXPRESS 256mb.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [{B163A990-7302-4DFF-BD6B-EDA37C030D4A}] (...) -- C:\Users\waleed\Downloads\Programs\Droid4XInstaller.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984] (.Activate.) =>.Apple Inc.® [MD5.CD11D500328F07AE1666D046F94179E0] [APT] [AVAST Software\Avast settings backup] (.AVAST Software.) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [702056] (.Activate.) =>.AVAST Software a.s.® [MD5.0D57548B8F29214B4831F0ECE3A879DB] [APT] [Cybertron\Privacy Eraser\SkipUAC_waleed] (.Cybertron Software, Co., Ltd..) -- C:\Program Files\Cybertron\Privacy Eraser\PrivacyEraser.exe [4626008] (.Activate.) =>.Cybertron Software Co., Ltd® [MD5.9E0E6CA340C00FDF9BC4644F417D3C45] [APT] [Intel\Intel Telemetry 2 (x86)] (.Intel Corporation.) -- C:\Program Files\Intel\Telemetry 2.0\lrio.exe [1328392] (.Activate.) =>.Intel(R) Software® [MD5.00000000000000000000000000000000] [APT] [Lenovo\Lenovo Customer Feedback Program 35] (...) -- C:\Program Files\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [Microsoft\Office\OfficeTelemetryAgentFallBack] (...) -- C:\Program Files\Microsoft Office\Office15\msoia.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [Microsoft\Office\OfficeTelemetryAgentLogOn] (...) -- C:\Program Files\Microsoft Office\Office15\msoia.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job [892] =>.Adobe Systems Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [830] =>.Adobe Systems Incorporated® O39 - APT: DLL-Files.Com Fixer_MONTHLY - (.Dll-FIles.Com.) -- C:\Windows\Tasks\DLL-Files.Com Fixer_MONTHLY.job [266] =>PUP.Optional.DllFilesFixer O39 - APT: DLL-Files.Com Fixer_Updates - (.Dll-FIles.Com.) -- C:\Windows\Tasks\DLL-Files.Com Fixer_Updates.job [282] =>PUP.Optional.DllFilesFixer O39 - APT: SlimCleaner Plus (Scheduled Scan - waleed) - (...) -- C:\Windows\Tasks\SlimCleaner Plus (Scheduled Scan - waleed).job [368] (.Orphan.) =>.Superfluous.Orphan O39 - APT: Start Battery Optimizer for waleed-PC@waleed - (.ReviverSoft 2014.) -- C:\Windows\Tasks\Start Battery Optimizer for waleed-PC@waleed.job [302] O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier [3890] =>.Adobe Systems Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3768] =>.Adobe Systems Incorporated® O39 - APT: ASC8_PerformanceMonitor - (.IObit.) -- C:\Windows\System32\Tasks\ASC8_PerformanceMonitor [3176] =>.IObit Information Technology® O39 - APT: ASC8_SkipUac_waleed - (.IObit.) -- C:\Windows\System32\Tasks\ASC8_SkipUac_waleed [2864] =>.IObit Information Technology® O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] =>.AVAST Software a.s.® O39 - APT: DLL-Files.Com Fixer_MONTHLY - (.Dll-FIles.Com.) -- C:\Windows\System32\Tasks\DLL-Files.Com Fixer_MONTHLY [3012] =>PUP.Optional.DllFilesFixer O39 - APT: DLL-Files.Com Fixer_Updates - (.Dll-FIles.Com.) -- C:\Windows\System32\Tasks\DLL-Files.Com Fixer_Updates [3026] =>PUP.Optional.DllFilesFixer O39 - APT: Driver Booster Scheduler - (.IObit.) -- C:\Windows\System32\Tasks\Driver Booster Scheduler [3234] =>.IObit Information Technology® O39 - APT: Driver Booster SkipUAC (waleed) - (.IObit.) -- C:\Windows\System32\Tasks\Driver Booster SkipUAC (waleed) [2866] =>.IObit Information Technology® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3190] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3318] =>.Google Inc® O39 - APT: RDReminder - (.Dll-FIles.Com.) -- C:\Windows\System32\Tasks\RDReminder [3100] =>PUP.Optional.DllFilesFixer O39 - APT: Unknown - (.Microsoft Corporation.) -- C:\Windows\System32\Tasks\SidebarExecute [3230] =>.Microsoft Corporation O39 - APT: SlimCleaner Plus (Scheduled Scan - waleed) - (...) -- C:\Windows\System32\Tasks\SlimCleaner Plus (Scheduled Scan - waleed) [3032] (.Orphan.) =>.Superfluous.Orphan O39 - APT: Start Battery Optimizer for waleed-PC@waleed - (.ReviverSoft 2014.) -- C:\Windows\System32\Tasks\Start Battery Optimizer for waleed-PC@waleed [2538] O39 - APT: Uninstaller_SkipUac_waleed - (.IObit.) -- C:\Windows\System32\Tasks\Uninstaller_SkipUac_waleed [2896] =>.IObit Information Technology® O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\USER_ESRV_SVC_WILLAMETTE [3038] O39 - APT: {3E3F2EA4-A984-4522-8FE5-29E24AD0940E} - (...) -- C:\Windows\System32\Tasks\{3E3F2EA4-A984-4522-8FE5-29E24AD0940E} [3174] (.Orphan.) =>.Superfluous.Orphan O39 - APT: {8DE1CA6F-F2F3-4BA6-B598-D89AF31B3E58} - (...) -- C:\Windows\System32\Tasks\{8DE1CA6F-F2F3-4BA6-B598-D89AF31B3E58} [3194] (.Orphan.) =>.Superfluous.Orphan O39 - APT: {B163A990-7302-4DFF-BD6B-EDA37C030D4A} - (...) -- C:\Windows\System32\Tasks\{B163A990-7302-4DFF-BD6B-EDA37C030D4A} [3184] (.Orphan.) =>.Superfluous.Orphan ---\\ Auto loading programs from Registry and folders (7) - 0s O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software a.s.® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2205902515-1187841838-2805032392-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. ---\\ Process running (39) - 3s [MD5.ACD4AF1B9D6E6C0C5BE470E5CF313FE6] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [814880] [PID.748] =>.IObit Information Technology® [MD5.97449FF5722DF435887A42EC29DA2B32] - (.IObit - IObit Malware Fighter Service.) -- C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe [1600288] [PID.816] =>.IObit Information Technology® [MD5.7AEFC130355AA99307B31EE678614380] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv.exe [245842] [PID.1192] =>.IDT, Inc. [MD5.6D557785CD474EA38381F6037D57473A] - (.SurfRight B.V. - HitmanPro Scheduler.) -- C:\Program Files\HitmanPro\hmpsched.exe [106248] [PID.1540] =>.SurfRight B.V.® [MD5.A97E144E84A665B22AE6E6A93E4DD465] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1680] =>.AVAST Software a.s.® [MD5.9DFD638360ACF82EB93738EA413D1215] - (.Broadcom Corporation - Host Control Application.) -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe [826272] [PID.1900] =>.Broadcom Corp® [MD5.E836EF2B585DC0402E7318744BD920D0] - (.Broadcom Corporation - Host Storage Application.) -- C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe [31648] [PID.1920] =>.Broadcom Corp® [MD5.54AB9D64B2DFBA605B74A0537B28CE1A] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [109008] [PID.120] =>.AVAST Software a.s.® [MD5.827DBC22C96EECF6D36A13162FABAFD3] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Program Files\IDT\WDM\AEstSrv.exe [81920] [PID.1316] =>.Andrea Electronics Corporation [MD5.712D9E83EAEB157D5858F88BC1800780] - (.Alps Electric Co., Ltd. - HidMonitorSvc アプリケーション.) -- C:\Program Files\DellTPad\HidMonitorSvc.exe [76120] [PID.1612] =>.Alps Electric Co., LTD.® [MD5.755519F49906B73C1FE9CBBF75E347EA] - (.Copyright CANON INC. 2006-2008 All Rights Reserved - Inkjet Printer/Scanner Extended Servey Prog.) -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe [103808] [PID.1424] =>.Canon Inc.® [MD5.3E4C3CDFE89E2D672876C30E646A11B8] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\System32\IProsetMonitor.exe [188472] [PID.1996] =>.Intel(R) Network Platform Group® [MD5.9722B3D07A1DABB9C693EDE0200ABA06] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe [571736] [PID.2648] =>.Alps Electric Co., LTD.® [MD5.C8092B45765685CE9305A1C6A39324CE] - (.ReviverSoft 2014 - Battery Optimizer.) -- C:\Program Files\ReviverSoft\Battery Optimizer\BatteryOptimizer.exe [15257184] [PID.2988] [MD5.22544393B0C597DED7686D4E8F851A23] - (.IObit - Performance Monitor.) -- C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe [1773856] [PID.2996] =>.IObit Information Technology® [MD5.19E83B09AB8EE1D837665DA941E2AC44] - (...) -- C:\Windows\System32\PnkBstrA.exe [66872] [PID.3336] =>.Even Balance, Inc.® [MD5.9DA3B55B17B54789AFB8C657D4ACE4D7] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688] [PID.3592] =>.DEVGURU CO LTD® [MD5.2BE3A44B764D6C43CBF4650E862CB807] - (.Copyright (C) 2016 Intel Corporation. All rights rese - Intel(R) System Usage Report.) -- C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe [117400] [PID.3712] =>.Intel(R) Software Development Products® [MD5.EB4E26AD3A0E681C2FAABBACB0691A34] - (.Apache Software Foundation - Apache HTTP Server.) -- C:\waleed\apache2\bin\httpd.exe [20549] [PID.2364] =>.Apache Software Foundation [MD5.9566E7402B8D741AFD161B5C6455FC4A] - (...) -- C:\waleed\mysql\bin\mysqld.exe [8184320] [PID.2592] [MD5.EB4E26AD3A0E681C2FAABBACB0691A34] - (.Apache Software Foundation - Apache HTTP Server.) -- C:\waleed\apache2\bin\httpd.exe [20549] [PID.3512] =>.Apache Software Foundation [MD5.A4C778C47836C9786C6A648C828DFF2B] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3218624] [PID.4684] =>.AVAST Software a.s.® [MD5.22B79AE199B3E8ED5BC8C417A7ADD222] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe [58160] [PID.4940] =>.Alps Electric Co., LTD.® [MD5.12DDF400E9E4441C0A9C144861D1EE01] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [6108752] [PID.4948] =>.AVAST Software a.s.® [MD5.45F947C8C98056539F9FCB1CD97A3C0B] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\hidfind.exe [55640] [PID.5064] =>.Alps Electric Co., LTD.® [MD5.903B7CE46BDD519312D3832C96655B9C] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows.) -- C:\Program Files\DellTPad\ApntEx.exe [55640] [PID.5080] =>.Alps Electric Co., LTD.® [MD5.61A95293A30E3BC696A6D8354E7D1DAC] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3541008] [PID.4896] =>.Tonec Inc. [MD5.45A1CA432B079FB439FCBA6285EF2C96] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe [277920] [PID.5224] =>.McAfee, Inc.® [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [269848] [PID.5552] =>.Tonec Inc.® [MD5.35A43F18F3E7C0B7E79FCFE88F443E42] - (.IObit - UninstallerMontior.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe [2267936] [PID.5692] =>.IObit Information Technology® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [935768] [PID.168] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [935768] [PID.5412] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [935768] [PID.5452] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [935768] [PID.5060] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [935768] [PID.2964] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [935768] [PID.1016] =>.Google Inc® [MD5.6241810294275CEA59EBA9733080E5EE] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720] [PID.1796] =>.Intel Corporation - Intel® Rapid Storage Technology® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [935768] [PID.5772] =>.Google Inc® [MD5.0AF43D5026DD2CDB2898CFECFFDE1D73] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\waleed\Downloads\ZHPDiag3.exe [2643968] [PID.4372] =>.Nicolas Coolman ---\\ Google Chrome, Start,Search,Extensions (13) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://ui.ff.avast.com =>.Avast Software s.r.o G0 - GCSP: Preferences [User Data\Default][HomePage] http://cdn.onesignal.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com =>.Facebook G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com.eg =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.myandroiddownloads.com G2 - GCE: Preference [User Data\Default] [fcfenmboojpjinhpgggodefccipikbpd] MSN Homepage & Bing Search Engine =>.Microsoft Corp. =>Heuristic.Suspect G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o G2 - GCE: Preference [User Data\Default] [jknmpnbgkaekopldbncmggaejjamkemn] trusted* =>.Google Chrome Addon G2 - GCE: Preference [User Data\Default] [jmolcgpienlcieaajfkkdamlngancncm] IDM Integration =>.IDM Computer Solutions, Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (3) - 1s P2 - EXT FILE: (.Firefox Hotfix - Firefox Hotfix: avoid updates that wou.) -- C:\Users\waleed\AppData\Roaming\Mozilla\Firefox\Profiles\uubowiow.default\extensions\firefox-hotfix@mozilla.org.xpi =>.Firefox Hotfix P2 - EXT FILE: (.Bing - Bing. Search by Microsoft..) -- C:\Users\waleed\AppData\Roaming\Mozilla\Firefox\Profiles\uubowiow.default\searchplugins\bing-.xml =>.Bing P2 - EXT FILE: (.Yahoo® - Yahoo Search.) -- C:\Users\waleed\AppData\Roaming\Mozilla\Firefox\Profiles\uubowiow.default\searchplugins\yahoo-lavasoft.xml =>.Yahoo® ---\\ Internet Explorer Extensions, Start, Search (12) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ =>.Google Inc. R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 0 ---\\ Internet Explorer, Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] ---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (29) ---\\ Browser Helper Object (BHO) (7) - 1s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} . (.IObit - Uninstall for explorer.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer.dll =>.IObit Information Technology® O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Global shortcuts Startup (140) - 17s O4 - GS\Desktop [Administrator]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrator]: Privacy Eraser.lnk . (.Cybertron Software, Co., Ltd. - Privacy Eraser.) C:\Program Files\Cybertron\Privacy Eraser\PrivacyEraser.exe =>.Cybertron Software Co., Ltd® O4 - GS\Desktop [Administrator]: SHAREit.lnk . (.SHAREit Technologies Co.Ltd - SHAREit.) C:\Program Files\SHAREit\SHAREit\SHAREit.exe =>.LENOVO® O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\waleed\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrator]: Dll-Files Fixer.lnk . (.Dll-FIles.Com - DLL-Files Fixer.) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe =>PUP.Optional.DllFilesFixer O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Windows Doctor.lnk . (.WindowsDoctor.com - Windows Doctor.) C:\Program Files\Windows Doctor\WindowsDoctor.exe O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [Administrator]: Picosmos Tools.lnk . (.Picosmos - Picosmos Pictures Viewer.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Internet Explorer (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrator]: KMPlayer.exe.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {2670E850C13552677FC3CFBA525E11B8} =>.PandoraTV O4 - GS\TaskBar [Administrator]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrator]: Windows Media Player (2).lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\TaskBar [Administrator]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [Administrator]: Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\Programs [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrator]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [Guest]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Guest]: Privacy Eraser.lnk . (.Cybertron Software, Co., Ltd. - Privacy Eraser.) C:\Program Files\Cybertron\Privacy Eraser\PrivacyEraser.exe =>.Cybertron Software Co., Ltd® O4 - GS\Desktop [Guest]: SHAREit.lnk . (.SHAREit Technologies Co.Ltd - SHAREit.) C:\Program Files\SHAREit\SHAREit\SHAREit.exe =>.LENOVO® O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\waleed\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Guest]: Dll-Files Fixer.lnk . (.Dll-FIles.Com - DLL-Files Fixer.) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe =>PUP.Optional.DllFilesFixer O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Guest]: Windows Doctor.lnk . (.WindowsDoctor.com - Windows Doctor.) C:\Program Files\Windows Doctor\WindowsDoctor.exe O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Guest]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [Guest]: Picosmos Tools.lnk . (.Picosmos - Picosmos Pictures Viewer.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Guest]: Internet Explorer (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Guest]: KMPlayer.exe.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {2670E850C13552677FC3CFBA525E11B8} =>.PandoraTV O4 - GS\TaskBar [Guest]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Guest]: Windows Media Player (2).lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\TaskBar [Guest]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [Guest]: Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\Programs [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Guest]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [waleed]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [waleed]: Privacy Eraser.lnk . (.Cybertron Software, Co., Ltd. - Privacy Eraser.) C:\Program Files\Cybertron\Privacy Eraser\PrivacyEraser.exe =>.Cybertron Software Co., Ltd® O4 - GS\Desktop [waleed]: SHAREit.lnk . (.SHAREit Technologies Co.Ltd - SHAREit.) C:\Program Files\SHAREit\SHAREit\SHAREit.exe =>.LENOVO® O4 - GS\Desktop [waleed]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\waleed\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [waleed]: Dll-Files Fixer.lnk . (.Dll-FIles.Com - DLL-Files Fixer.) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe =>PUP.Optional.DllFilesFixer O4 - GS\Quicklaunch [waleed]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [waleed]: Windows Doctor.lnk . (.WindowsDoctor.com - Windows Doctor.) C:\Program Files\Windows Doctor\WindowsDoctor.exe O4 - GS\sendTo [waleed]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [waleed]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [waleed]: Picosmos Tools.lnk . (.Picosmos - Picosmos Pictures Viewer.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\TaskBar [waleed]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [waleed]: Internet Explorer (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [waleed]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [waleed]: KMPlayer.exe.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {2670E850C13552677FC3CFBA525E11B8} =>.PandoraTV O4 - GS\TaskBar [waleed]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [waleed]: Windows Media Player (2).lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\TaskBar [waleed]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [waleed]: Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\Programs [waleed]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [waleed]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\Desktop [مصر]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [مصر]: Privacy Eraser.lnk . (.Cybertron Software, Co., Ltd. - Privacy Eraser.) C:\Program Files\Cybertron\Privacy Eraser\PrivacyEraser.exe =>.Cybertron Software Co., Ltd® O4 - GS\Desktop [مصر]: SHAREit.lnk . (.SHAREit Technologies Co.Ltd - SHAREit.) C:\Program Files\SHAREit\SHAREit\SHAREit.exe =>.LENOVO® O4 - GS\Desktop [مصر]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\waleed\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [مصر]: Dll-Files Fixer.lnk . (.Dll-FIles.Com - DLL-Files Fixer.) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe =>PUP.Optional.DllFilesFixer O4 - GS\Quicklaunch [مصر]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [مصر]: Windows Doctor.lnk . (.WindowsDoctor.com - Windows Doctor.) C:\Program Files\Windows Doctor\WindowsDoctor.exe O4 - GS\sendTo [مصر]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [مصر]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [مصر]: Picosmos Tools.lnk . (.Picosmos - Picosmos Pictures Viewer.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\TaskBar [مصر]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [مصر]: Internet Explorer (2).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [مصر]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [مصر]: KMPlayer.exe.lnk . (.PandoraTV - The KMPlayer.) C:\KMPlayer\KMPlayer.exe {2670E850C13552677FC3CFBA525E11B8} =>.PandoraTV O4 - GS\TaskBar [مصر]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [مصر]: Windows Media Player (2).lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\TaskBar [مصر]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [مصر]: Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\Programs [مصر]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [مصر]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\CommonDesktop [Public]: Adobe Reader 9.lnk . (.Adobe Systems Incorporated - Adobe Reader 9.3.) C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: AutorunRemover.lnk . (...) C:\Program Files\AutorunRemover\AutorunRemover.exe O4 - GS\CommonDesktop [Public]: Avast Internet Security.lnk . (.AVAST Software - avast! Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.® O4 - GS\CommonDesktop [Public]: DAEMON Tools Lite.lnk . (.DT Soft Ltd - DAEMON Tools Lite.) C:\Program Files\DAEMON Tools Lite\daemon.exe =>.DAEMON Tools Code Signing Services® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee.) C:\Program Files\McAfee Security Scan\3.11.266\McUICnt.exe SecurityScanner.dll =>.McAfee, Inc.® O4 - GS\CommonDesktop [Public]: TMAC v6.lnk . (.Technitium - Technitium MAC Address Changer.) C:\Program Files\Technitium\TMACv6.0\TMAC.exe =>.Technitium O4 - GS\CommonDesktop [Public]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Programs [Public]: Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Windows Command Processor.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Private Character Editor.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe =>.McAfee, Inc.® O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Windows Calculator.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Display Switch.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel Accessory.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Windows Mobility Center.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Windows Sound Recorder.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Sticky Notes.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows host process (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Microsoft® Disk Defragmenter.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Disk Space Cleanup Manager for Windows.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Resource and Performance Monitor.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - System Information.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Microsoft® Windows System Restore.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Windows Easy Transfer Post Migration Applic.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Windows Easy Transfer Application.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS5.lnk . (.Adobe Systems, Inc. - Adobe Bridge CS5.) C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Device Central CS5.lnk . (.Adobe Systems Inc. - Adobe Device Central CS5.) C:\Program Files\Adobe\Adobe Device Central CS5\DeviceCentral.exe =>.Adobe Systems Inc. O4 - GS\ProgramsCommon [Public]: Adobe ExtendScript Toolkit CS5.lnk . (.Adobe Systems Incorporated - ExtendScript Toolkit CS5 and Debugger (32 b.) C:\Program Files\Adobe\Adobe Utilities - CS5\ExtendScript Toolkit CS5\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Extension Manager CS5.lnk . (.Adobe Systems Incorporated - Adobe Extension Manager CS5.) C:\Program Files\Adobe\Adobe Extension Manager CS5\Adobe Extension Manager CS5.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Help.lnk . (...) C:\Program Files\Adobe\Adobe Help\Adobe Help.exe O4 - GS\ProgramsCommon [Public]: Adobe Illustrator CS5.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS5.) C:\Program Files\Adobe\Adobe Illustrator CS5\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-A93000000001}\SC_Reader.ico =>.Adobe Inc. O4 - GS\ProgramsCommon [Public]: AL Mohtarif AL Arabi Eng.lnk . (.مدونة المحترف - ALmohtarif Al Arabi 1.3.22 Pro.) C:\Program Files\th3professional\AL Mohtarif AL Arabi_Eng.exe O4 - GS\ProgramsCommon [Public]: AL Mohtarif AL Arabi.lnk . (.مدونة المحترف - ALmohtarif Al Arabi 1.3.22 Pro.) C:\Program Files\th3professional\AL Mohtarif AL Arabi.exe O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc. O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) C:\Program Files\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe =>.IObit Information Technology® O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Messenger.lnk . (...) C:\Program Files\Messenger for Desktop\Messenger.exe O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Windows Desktop Gadgets.) C:\Program Files\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Uninstall Messenger for Desktop.lnk . (...) C:\Program Files\Messenger for Desktop\Uninstall Messenger for Desktop.exe O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Windows DVD Maker.) C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS Viewer.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation ---\\ Lop.com/Domain Hijackers (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{BC2B308C-885D-44E6-91A9-B9D2715ED4E3}: DhcpNameServer = 8.8.8.8 8.8.4.4 =>.Google Inc O17 - HKLM\System\CCS\Services\Tcpip\..\{E53068A8-3A25-4258-BD63-D548BF4393A9}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{F6301D19-42BC-4F2A-BB2F-D8322B24B9F2}: DhcpNameServer = 192.168.0.1 =>.Local IP Adress ---\\ Extra protocols (23) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} . (.Microsoft Corporation - GrooveSystemServices Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll =>.Microsoft Corporation® O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Software installed (135) - 26s O42 - Logiciel: µTorrent - (..) [HKLM] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: AAA Logo 2014 v4.11 FULL - (.SWGSoft.) [HKLM] -- AAA Logo 2014_is1 =>.SWGSoft O42 - Logiciel: Abex PDF to PowerPoint Converter 4.0 - (.Damasgate, Inc..) [HKLM] -- Abex PDF to PowerPoint Converter_is1 O42 - Logiciel: AccelerometerP11 - (.STMicroelectronics.) [HKLM] -- {87434D51-51DB-4109-B68F-A829ECDCF380} =>.STMicroelectronics O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} =>.Adobe Systems Inc. O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Community Help - (.Adobe Systems Incorporated.) [HKLM] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 24 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 24 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Media Player - (.Adobe Systems Incorporated.) [HKLM] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Media Player - (.Adobe Systems Incorporated.) [HKLM] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Reader 9.3 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-A93000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Advanced SystemCare 8 - (.IObit.) [HKLM] -- Advanced SystemCare 8_is1 =>.IObit Information Technology® O42 - Logiciel: ALMohtarif ALArabi - (..) [HKLM] -- ALMohtarif ALArabi O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc. O42 - Logiciel: Autorun Virus Remover 3.2 - (.Autorun Remover.) [HKLM] -- Autorun Virus Remover_is1 O42 - Logiciel: Avast Internet Security - (.AVAST Software.) [HKLM] -- Avast =>.AVAST Software a.s.® O42 - Logiciel: AVG PC TuneUp - (.AVG Technologies.) [HKLM] -- {963F9952-7C23-4D70-B1C8-5282F628C3DA} =>.AVG Technologies O42 - Logiciel: Battery Optimizer - (.ReviverSoft LLC.) [HKLM] -- BatteryOptimizer =>.Superfluous.ReviverSoft O42 - Logiciel: BitNami WAMPStack - (.BitNami.) [HKLM] -- BitNami WAMPStack 5.3.15-0 =>.BitNami O42 - Logiciel: Boilsoft Video Joiner 6.56 - (.Boilsoft, Inc..) [HKLM] -- {FD39EF4B-0B5C-4B33-8D57-2EE865A80EB1}_is1 =>.Boilsoft, Inc. O42 - Logiciel: Boilsoft Video Splitter 6.33 - (.Boilsoft, Inc..) [HKLM] -- {24549038-9956-4EE5-976D-4419AAEA7DD5}_is1 =>.Boilsoft, Inc. O42 - Logiciel: Canon MP Navigator EX 2.0 - (.Canon Inc..) [HKLM] -- MP Navigator EX 2.0 =>.Canon Inc.® O42 - Logiciel: Canon Utilities Solution Menu - (.Canon Inc..) [HKLM] -- CanonSolutionMenu =>.Canon Inc.® O42 - Logiciel: CanoScan LiDE 100 Scanner Driver - (.Canon Inc..) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ2413 =>.Canon Inc.® O42 - Logiciel: Cheat Engine 6.1 - (.Dark Byte.) [HKLM] -- Cheat Engine 6.1_is1 =>.Dark Byte O42 - Logiciel: Conexant HDA D330 MDC V.92 Modem - (.Conexant.) [HKLM] -- CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2C06&SUBSYS_14F1000F =>.Conexant O42 - Logiciel: CPUID CPU-Z 1.76 - (.CPUID Inc.) [HKLM] -- CPUID CPU-Z_is1 =>.CPUID Inc O42 - Logiciel: Dell ControlVault Host Components Installer - (.Broadcom Corporation.) [HKLM] -- {25657696-A651-47C5-A5BB-E941014B58AF} =>.Broadcom Corporation O42 - Logiciel: Dell System Detect - 1 - (.Dell.) [HKCU] -- 58d94f3ce2c27db0 =>.Dell Inc.® O42 - Logiciel: Dell Touchpad - (.ALPS ELECTRIC CO., LTD..) [HKLM] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.® O42 - Logiciel: Dhad - (.الأعمال الرقمية العالمية.) [HKLM] -- {E16E9EBD-7DD8-492D-BA37-D6BD8DBFB9FD} O42 - Logiciel: dictionaryAbouamar - (.dictionary.) [HKLM] -- {2E607DA5-3A89-47B7-B0D3-D820E7C5C207} O42 - Logiciel: dictionaryAbouamar - (.dictionary.) [HKLM] -- dictionaryAbouamar 1.0.0 O42 - Logiciel: Dll-Files Fixer - (.Dll-Files.com.) [HKLM] -- Dll-Files Fixer_is1 =>PUP.Optional.DllFilesFixer O42 - Logiciel: Driver Booster 3.3 - (.IObit.) [HKLM] -- Driver Booster_is1 =>.IObit Information Technology® O42 - Logiciel: FileViewPro - (.Solvusoft Corporation.) [HKLM] -- FileViewPro_is1 =>.Superfluous.Solvusoft O42 - Logiciel: FormatFactory 3.7.5.0 - (.Free Time.) [HKLM] -- FormatFactory =>.Free Time O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM] -- {878B9925-1C43-3AED-87F6-2C2A79678CD8} =>.Google, Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} =>.IDT O42 - Logiciel: iNetFusion+ - (.Endpoint Dynamics.) [HKLM] -- {23A809F6-941D-4B3F-8E20-7A3F16517B53} =>.Endpoint Dynamics O42 - Logiciel: iNetFusion+ - (.Endpoint Dynamics.) [HKLM] -- iNetFusion+ 3.2.0 =>.Endpoint Dynamics O42 - Logiciel: Inkjet Printer/Scanner Extended Survey Program - (..) [HKLM] -- CANONIJPLM100 =>.Canon Inc.® O42 - Logiciel: Intel(R) Driver Update Utility 2.6 - (.Intel.) [HKLM] -- {2B710CA5-99F0-4D29-962C-29A7CFF7A989} =>.Intel O42 - Logiciel: Intel(R) Network Connections 21.0.504.0 - (.Intel.) [HKLM] -- {3FB9400C-F225-41F7-AD14-3577A52498A7} =>.Intel O42 - Logiciel: Intel(R) Network Connections 21.0.504.0 - (.Intel.) [HKLM] -- PROSetDX =>.Intel O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel(R) Product Improvement Program - (.Intel.) [HKLM] -- {39DDACBC-D423-4A8B-A35A-C9EA90BCCA08} =>.Intel O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {87431666-90C2-40FE-A662-4D8C65CDA695} =>.Intel Corporation O42 - Logiciel: Intel(R) Turbo Boost Technology Monitor 2.6 - (.Intel.) [HKLM] -- {6C9365EB-1F9E-4893-9196-3EC77C88D0C5} =>.Intel O42 - Logiciel: Intel® Driver Update Utility - (.Intel.) [HKLM] -- {3e714701-b89c-4cf2-bf3b-41b2c105ffdc} =>.Intel(R) Driver Update Utility® O42 - Logiciel: Internet Download Manager - (.IDM.) [HKLM] -- Internet Download Manager Original =>.IDM O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: IObit Malware Fighter 4 - (.IObit.) [HKLM] -- IObit Malware Fighter_is1 =>.IObit Information Technology® O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM] -- IObitUninstall =>.IObit Information Technology® O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: K-Lite Mega Codec Pack 9.9.0 - (.KLite Inc.) [HKLM] -- KLiteCodecPack_is1 =>.KLite Inc O42 - Logiciel: KMPlayer (remove only) - (.PandoraTV.) [HKLM] -- The KMPlayer =>.PandoraTV O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan =>.McAfee, Inc.® O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM] -- MEGAsync =>.Mega Limited® O42 - Logiciel: Messenger for Desktop - (.Alexandru Rosianu.) [HKCU] -- messengerfordesktop O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited O42 - Logiciel: Microsoft .NET Compact Framework 3.5 - (.Microsoft Corporation.) [HKLM] -- {291B3A3B-F808-45B8-8113-DF232FCB6C82} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0015-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0117-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0090-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0016-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00BA-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0044-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-012B-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Mouse and Keyboard Center - (.Microsoft Corporation.) [HKLM] -- {0C41D003-E38E-4C8A-BA67-AFF061E27F3F} =>.Microsoft Corporation O42 - Logiciel: Microsoft Mouse and Keyboard Center - (.Microsoft Corporation.) [HKLM] -- Microsoft Mouse and Keyboard Center =>.Microsoft Corporation® O42 - Logiciel: Microsoft OneNote MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-00A1-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-001A-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0018-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-0019-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Framework Runtime v1.0 SP1 (x86) - (.Microsoft Corporation.) [HKLM] -- {C6DD625F-4B61-4561-8286-87CA0275CEA1} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Framework SDK v1.0 SP1 - (.Microsoft Corporation.) [HKLM] -- {97CE8B73-AA5A-4987-A1BE-50DD1A187478} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Framework Services v1.0 SP1 (x86) - (.Microsoft Corporation.) [HKLM] -- {F990B526-8F7C-46E0-B1F1-6C893A8B478F} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Services for ADO.NET v2.0 SP1 (x86) - (.Microsoft Corporation.) [HKLM] -- {DC3D6AFB-78B4-489F-81D7-30B66E0C2417} =>.Microsoft Corporation O42 - Logiciel: Microsoft Team Foundation Server 2010 Object Model - ENU - (.Microsoft Corporation.) [HKLM] -- {6ED37A91-7710-3183-BE50-AB043FF6689E} =>.Microsoft Corporation O42 - Logiciel: Microsoft Team Foundation Server 2010 Object Model - ENU - (.Microsoft Corporation.) [HKLM] -- Microsoft Team Foundation Server 2010 Object Model - ENU =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (English) 2013 - (.Microsoft Corporation.) [HKLM] -- {90150000-001B-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mobinil USB modem - (.Mobinil USB modem.) [HKLM] -- {93D34EE3-99B3-4DB1-8B0A-0A657466F90D} =>.ZTE CORPORATION ® O42 - Logiciel: Mozilla Firefox 45.0.2 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 45.0.2 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: Nero 7 Ultra Edition - (.Nero AG.) [HKLM] -- {A20A58C4-6784-4B4B-86CC-94E2E3671033} =>.Nero AG O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG O42 - Logiciel: NewBlue Titler Pro for Windows - (.NewBlue.) [HKLM] -- NewBlue Titler Pro for Windows =>.NewBlue O42 - Logiciel: NewBlue Video Essentials for Windows - (.NewBlue.) [HKLM] -- NewBlue Video Essentials for Windows =>.NewBlue O42 - Logiciel: NewBlue Video Essentials V for Windows - (.NewBlue.) [HKLM] -- NewBlue Video Essentials V for Windows =>.NewBlue O42 - Logiciel: NewBlue Video Essentials VI for Windows - (.NewBlue.) [HKLM] -- NewBlue Video Essentials VI for Windows =>.NewBlue O42 - Logiciel: NewBlue Video Essentials VII for Windows - (.NewBlue.) [HKLM] -- NewBlue Video Essentials VII for Windows =>.NewBlue O42 - Logiciel: nProtect Security Platform - (.INCAInternet.) [HKLM] -- {414E102C-A2E2-49ED-8356-9A90EC72ABD8} =>.INCAInternet O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {E10DB5DA-E576-40EA-A7FC-1CB2A7B283A6} =>.NVIDIA Corporation O42 - Logiciel: PDF Eraser V1.3 - (.http://www.PDFEraser.net.) [HKLM] -- PDF Eraser_is1 =>.http://www.PDFEraser.net O42 - Logiciel: PDF Settings CS5 - (.Adobe Systems Incorporated.) [HKLM] -- {A78FE97A-C0C8-49CE-89D0-EDD524A17392} =>.Adobe Systems Incorporated O42 - Logiciel: PixelPlanet PdfPrinter 6 (32bit) - (.PixelPlanet.) [HKLM] -- {B8E88489-A304-45F1-9717-242035DE167D} =>.PixelPlanet O42 - Logiciel: Privacy Eraser - (.Cybertron Software Co., Ltd..) [HKLM] -- {CB5AC03C-B8AD-980F-998E-51969A6DFC9F}_is1 =>.Cybertron Software Co., Ltd® O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044} =>Riskware.QuickTime O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0} =>.Ralink O42 - Logiciel: Registry Finder 2.10.4 - (.Sergey Filippov.) [HKLM] -- {CC3C7E59-8611-4542-8BFD-FFC6759AD0FB}_is1 O42 - Logiciel: Remove Logo Now! 1.0 - (.SoftOrbits.) [HKLM] -- Remove Logo Now!_is1 =>.SoftOrbits® O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.® O42 - Logiciel: Service Pack 1 for SQL Server 2008 (KB968369) - (.Microsoft Corporation.) [HKLM] -- KB968369 =>.Microsoft Corporation® O42 - Logiciel: SHAREit - (.Lenovo.) [HKLM] -- SHAREit_is1 =>.Lenovo O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F} =>.SmartSound Software Inc. O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} =>.SmartSound Software, Inc.® O42 - Logiciel: Sql Server Customer Experience Improvement Program - (.Microsoft Corporation.) [HKLM] -- {C965F01C-76EA-4BD7-973E-46236AE312D7} =>.Microsoft Corporation O42 - Logiciel: ST Microelectronics 3 Axis Digital Accelerometer Solution - (.ST Microelectronics.) [HKLM] -- {9C24F411-9CA7-4A8A-91F3-F08A4A38EB31} =>.STMicroelectronics® O42 - Logiciel: Sunrise Seven 1.2.61 - (.Sunrise Software.) [HKLM] -- {AB0DBC9A-422A-4888-A8E5-A32EC1779E68}_is1 =>.Sunrise Software O42 - Logiciel: System Requirements Lab - (.Husdawg, LLC.) [HKLM] -- {F89CDED6-B1F1-489F-BA44-698BF6A737C2} =>.Husdawg, LLC O42 - Logiciel: Technitium MAC Address Changer v6.0 - (.Technitium.) [HKLM] -- TMACv6.0 =>.Technitium O42 - Logiciel: UltraISO Premium V9.36 - (.ZBShareware Labs.) [HKLM] -- UltraISO_is1 =>.ZBShareware Labs O42 - Logiciel: UniTrader version 1.0.4361.24900 - (.Boston UniSof Technologies, Inc..) [HKLM] -- UniTrader_is1 O42 - Logiciel: Universal Adb Driver - (.ClockworkMod.) [HKLM] -- {C0E08D8D-6076-4117-B644-2AF34F35B757} =>.ClockworkMod O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM] -- USB Disk Security_is1 =>.Zbshareware Lab O42 - Logiciel: USB Disk Security Setup 6.4.0.200 - (..) [HKLM] -- USB Disk Security Setup 6.4.0.200 O42 - Logiciel: UserTesting - (.UserTesting.com.) [HKCU] -- UserTestingPlugin O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: WampServer 2.5 - (.Hervé Leclerc (HeL).) [HKLM] -- WampServer 2_is1 =>.Hervé Leclerc (HeL) O42 - Logiciel: WebcamMax - (.COOLWAREMAX.) [HKLM] -- WebcamMax =>.CoolwareMax O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation O42 - Logiciel: Windows Doctor 2.9.0.0 - (.WindowsDoctor International LLC.) [HKLM] -- Windows Doctor 2.9.0.0_is1 O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM] -- WinPcapInst =>.Riverbed Technology, Inc. O42 - Logiciel: WinRAR 5.00 beta 3 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH O42 - Logiciel: حزمة التوافق لنظام Office 2007 - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-0401-0000-0000000FF1CE} =>.Microsoft Corporation ---\\ HKCU & HKLM Software Keys (256) - 26s HKLM\SOFTWARE\3Planesoft =>.3Planesoft HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AdwCleaner =>.Malwarebytes HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Ahead =>.Ahead HKLM\SOFTWARE\Alps =>.ALPS HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\AskTBar HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Audible =>.Audible.com HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKLM\SOFTWARE\AVG =>.AVG Software HKLM\SOFTWARE\AviSynth =>.Ben Rudiak-Gold HKLM\SOFTWARE\BatteryOptimizer HKLM\SOFTWARE\BCL Technologies =>.BCL Technologies HKLM\SOFTWARE\BitNami =>.BitNami HKLM\SOFTWARE\BROADCOM =>.Broadcom HKLM\SOFTWARE\BSProductManage HKLM\SOFTWARE\Canon =>.Canon HKLM\SOFTWARE\Caphyon =>.Caphyon HKLM\SOFTWARE\CAVEditLib HKLM\SOFTWARE\CloudOpt HKLM\SOFTWARE\Code Sector =>.Code Sector HKLM\SOFTWARE\Conexant =>.Conexant HKLM\SOFTWARE\CPUID =>.CPUID Inc HKLM\SOFTWARE\CXT =>.CXT Software HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Debug =>.Legitimate HKLM\SOFTWARE\Dell =>.Dell HKLM\SOFTWARE\Dell Computer Corporation =>.Dell Computer Corporation HKLM\SOFTWARE\dictionary HKLM\SOFTWARE\dll-files.com =>PUP.Optional.DllFilesFixer HKLM\SOFTWARE\drpsu =>.Driver PackSolution HKLM\SOFTWARE\DT Soft =>.DT Soft Ltd HKLM\SOFTWARE\DtsEncodeTools =>PUP.Optional.WeatherTool HKLM\SOFTWARE\EA Games =>.EA Games HKLM\SOFTWARE\EasyBoot Systems =>.EasyBoot Systems HKLM\SOFTWARE\Endpoint Dynamics =>.Endpoint Dynamics HKLM\SOFTWARE\EnigmaSoftwareGroup =>.Enigma Software Group, LLC HKLM\SOFTWARE\ESET =>.ESET HKLM\SOFTWARE\EVP =>.EVP Software HKLM\SOFTWARE\FilmOn.com HKLM\SOFTWARE\Foxit Software =>.Foxit Software HKLM\SOFTWARE\FreeFallProtection HKLM\SOFTWARE\GN2 HKLM\SOFTWARE\GNU =>.GNU HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\HaaliMkx =>.Haali Media HKLM\SOFTWARE\Hauppauge =>.Hauppauge Computer Works HKLM\SOFTWARE\HitmanPro =>.EIDOS hitman Game HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\IDT =>.IDT HKLM\SOFTWARE\Innovative Solutions =>.Innovative Solutions HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\InterVideo =>.InterVideo HKLM\SOFTWARE\IObit =>.IObit HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Kaydara =>.Kaydara HKLM\SOFTWARE\Kerish Products =>.Kerish Products HKLM\SOFTWARE\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\KMPlayer =>.KMPlayer HKLM\SOFTWARE\KONAMI =>.Konami HKLM\SOFTWARE\LAV =>.LAV Inc HKLM\SOFTWARE\Lavasoft =>.Lavasoft HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\LINKdotNET HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mail.Ru =>.Mail.Ru HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\ManageableUpdatePackage HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\Mediatek =>.Mediatek HKLM\SOFTWARE\Mobinil USB modem HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\muvee Technologies =>.muvee Technologies HKLM\SOFTWARE\Nero =>.Ahead Corporation HKLM\SOFTWARE\NewBlue =>.NewBlue HKLM\SOFTWARE\NSIS.Library.RegTool.v3 HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Opera Software =>.Opera Software HKLM\SOFTWARE\PC-Doctor =>.PC-Doctor Inc. HKLM\SOFTWARE\Photodex Media Sources =>.Photodex HKLM\SOFTWARE\Preview Systems =>.Preview Systems, Inc HKLM\SOFTWARE\proDAD =>.proDAD GmbH HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\RegistryFinder HKLM\SOFTWARE\RSA HKLM\SOFTWARE\SAMSUNG =>.Samsung Electronics HKLM\SOFTWARE\Server Info HKLM\SOFTWARE\SHAREit =>.Lenovo Group Limited HKLM\SOFTWARE\SlimWare Utilities Inc =>.Superfluous.SlimWareUtilities HKLM\SOFTWARE\SlimWare Utilities, Inc. =>.Superfluous.SlimWareUtilities HKLM\SOFTWARE\SmartSound Software =>.SmartSound Software HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\Square Enix =>.Square Enix HKLM\SOFTWARE\ST Microelectronics =>.ST Microelectronics HKLM\SOFTWARE\STMicroelectronics =>.STMicroelectronics HKLM\SOFTWARE\SUPERAntiSpyware.com =>.SUPERAntiSpyware.com HKLM\SOFTWARE\SuperBoost =>.QiWang HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\SystemSafe HKLM\SOFTWARE\THQ =>.THQ HKLM\SOFTWARE\TrueSoftware HKLM\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKLM\SOFTWARE\Valve =>.Valve HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WebcamMax =>.WebcamMax HKLM\SOFTWARE\WiFi Hopper HKLM\SOFTWARE\WindowsDoctor HKLM\SOFTWARE\WinPcap =>.Riverbed Technology HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\Wise Solutions =>.Wise Solutions HKLM\SOFTWARE\Wondershare =>.Wondershare HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\Yahoo =>.Yahoo! Inc. HKLM\SOFTWARE\Yandex =>.Yandex HKLM\SOFTWARE\zbshareware =>.Zbshareware HKLM\SOFTWARE\ZTEUSBDriverFlag =>.ZTE Corporation HKLM\SOFTWARE\Even Balance =>.Even Balance Inc HKCU\SOFTWARE\3.0beta HKCU\SOFTWARE\8DSGzGOJOYG40SJlnIETQ HKCU\SOFTWARE\98826cb8c142e0a1899075b7403ecbda =>PUP.Optional.CrossRider HKCU\SOFTWARE\AAA Logo =>.SWGSoft HKCU\SOFTWARE\AAA Logo 2014 HKCU\SOFTWARE\AAA_LOGO =>.SWGSoft HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Ahead =>.Ahead HKCU\SOFTWARE\Alps =>.ALPS HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\Atheros =>.Atheros HKCU\SOFTWARE\Avant Browser HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\Avg =>.AVG Software HKCU\SOFTWARE\Avira =>.Avira HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Boilsoft =>.Boilsoft HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Camfrog =>.Camshare LC HKCU\SOFTWARE\Canon =>.Canon HKCU\SOFTWARE\CatalinaGroup =>.Catalina Group Ltd HKCU\SOFTWARE\Cheat Engine =>.Dark Byte HKCU\SOFTWARE\Chedot =>PUP.Optional.ChedotBrowser HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\City Interactive =>.City Interactive HKCU\SOFTWARE\ClockworkMod =>.ClockworkMod HKCU\SOFTWARE\Cocoon Software =>.Cocoon Software HKCU\SOFTWARE\Code Sector =>.Code Sector HKCU\SOFTWARE\CodeGear =>.CodeGear HKCU\SOFTWARE\Created by sCooBy HKCU\SOFTWARE\Crystal Dynamics =>.Crystal Dynamics HKCU\SOFTWARE\Crystal Reality =>.Games Software HKCU\SOFTWARE\csastats =>Adware.InstallCore HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Cybertron =>.Cybertron Software Ltd HKCU\SOFTWARE\Dell =>.Dell HKCU\SOFTWARE\DivSofta64 HKCU\SOFTWARE\dll-files.com =>PUP.Optional.DllFilesFixer HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\drpsu =>.Driver PackSolution HKCU\SOFTWARE\DT Soft =>.DT Soft Ltd HKCU\SOFTWARE\EasyBoot Systems =>.EasyBoot Systems HKCU\SOFTWARE\Enigma Protector HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\Facebook =>.Facebook HKCU\SOFTWARE\FilmOn.com HKCU\SOFTWARE\FimOnInstaller HKCU\SOFTWARE\FLT =>.FLT Software HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\FreeTime =>.FreeTime Inc HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GN2 HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\HaoZip SFX HKCU\SOFTWARE\HitLeap HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\IM =>Adware.InstallCore HKCU\SOFTWARE\Indigo Rose HKCU\SOFTWARE\Innovative Solutions =>.Innovative Solutions HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\JustCause2 HKCU\SOFTWARE\KMPlayer =>.KMPlayer HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\madshi =>.madshi.net HKCU\SOFTWARE\Mail.Ru =>.Mail.Ru HKCU\SOFTWARE\MainConcept =>.MainConcept AG HKCU\SOFTWARE\MainConcept (Muvee Consumer) =>.MainConcept AG HKCU\SOFTWARE\MainConcept (Muvee) =>.MainConcept AG HKCU\SOFTWARE\MediaChance =>.Mediachance HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\Mirage =>.Mirage Game HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NewBlue =>.NewBlue HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OpenAutomate =>.nVidia Corporation HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\Photodex =>.Photodex HKCU\SOFTWARE\Photodex Media Sources =>.Photodex HKCU\SOFTWARE\PixelPlanet =>.PixelPlanet HKCU\SOFTWARE\PLAYLOGIC HKCU\SOFTWARE\proDAD =>.proDAD GmbH HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore HKCU\SOFTWARE\RealNetworks =>.RealNetworks HKCU\SOFTWARE\SecuROM =>.SecuROM HKCU\SOFTWARE\SFX TEAM =>.SFX TEAM HKCU\SOFTWARE\SHAREit =>.Lenovo Group Limited HKCU\SOFTWARE\SimpleTV by SergeyVS#3 HKCU\SOFTWARE\SlimWare Utilities Inc =>.Superfluous.SlimWareUtilities HKCU\SOFTWARE\softorbits =>.SoftOrbits HKCU\SOFTWARE\Spoon =>.Spoon Software HKCU\SOFTWARE\SUPERAntiSpyware.com =>.SUPERAntiSpyware.com HKCU\SOFTWARE\Symantec =>.Symantec HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\System Requirements Lab =>.System Requirements Lab HKCU\SOFTWARE\SystemSafe HKCU\SOFTWARE\TAdvCheckList =>.Borland HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKCU\SOFTWARE\ToMMTi-Systems HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\Universal Digital Works HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\WhoStalksMyCam HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\WM Converter Lite HKCU\SOFTWARE\WMR16 HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\XDM HKCU\SOFTWARE\Xpom =>.Mail.Ru HKCU\SOFTWARE\yahoo =>.Yahoo! Inc. HKCU\SOFTWARE\Yandex =>.Yandex HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Mail.Ru =>.Mail.Ru HKCU\SOFTWARE\AppDataLow\Software\Unity =>.Unity ---\\ Contents of the Common Files folders (380) - 34s O43 - CFD: 20/11/2015 - [0] D -- C:\Program Files\235523bf-f286-45ba-bef0-8b0cd2cd2adf =>PUP.Optional.CrossRider O43 - CFD: 18/03/2016 - [] D -- C:\Program Files\3Planesoft Screensaver Manager O43 - CFD: 09/08/2016 - [] D -- C:\Program Files\AAALOGO =>.SWGSoft O43 - CFD: 13/04/2016 - [] D -- C:\Program Files\Abex PDF to PowerPoint Converter O43 - CFD: 17/08/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 11/08/2016 - [] D -- C:\Program Files\Adobe Media Player =>.Adobe Inc. O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\AGEIA Technologies =>.AGEIA Technologies O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc. O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\AskTBar =>Toolbar.AskTBar O43 - CFD: 06/08/2016 - [] D -- C:\Program Files\AutorunRemover O43 - CFD: 09/05/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.® O43 - CFD: 04/04/2016 - [] D -- C:\Program Files\AVG =>.AVG Software O43 - CFD: 01/12/2015 - [0] D -- C:\Program Files\Avira =>.Avira Software O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\BitNami WAMPStack O43 - CFD: 28/10/2015 - [] D -- C:\Program Files\Boilsoft =>.Boilsoft O43 - CFD: 29/09/2015 - [] D -- C:\Program Files\Broadcom Corporation =>.Broadcom Corporation O43 - CFD: 24/12/2015 - [] D -- C:\Program Files\Canon =>.Canon Inc.® O43 - CFD: 24/12/2015 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc. O43 - CFD: 30/06/2016 - [] D -- C:\Program Files\Cheat Engine 6.1 =>.Dark Byte O43 - CFD: 03/11/2016 - [] D -- C:\Program Files\ClockworkMod =>.ClockworkMod O43 - CFD: 21/12/2016 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 28/09/2015 - [] D -- C:\Program Files\CONEXANT =>.Conexant O43 - CFD: 17/11/2016 - [0] D -- C:\Program Files\Copy Handler O43 - CFD: 29/06/2016 - [] D -- C:\Program Files\CPUID =>.CPUID Inc O43 - CFD: 17/11/2016 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation O43 - CFD: 21/05/2016 - [] D -- C:\Program Files\Cybertron =>.Cybertron Software Ltd O43 - CFD: 28/10/2015 - [] D -- C:\Program Files\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 02/01/2017 - [0] D -- C:\Program Files\Dell =>.Dell O43 - CFD: 21/09/2016 - [] D -- C:\Program Files\DellTPad =>.Alps Electric Co., LTD.® O43 - CFD: 25/06/2016 - [] D -- C:\Program Files\DelThumbs O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\dictionary O43 - CFD: 30/06/2016 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 12/10/2016 - [] D -- C:\Program Files\Dll-Files.com Fixer =>PUP.Optional.DllFilesFixer O43 - CFD: 29/09/2015 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 05/10/2016 - [] D -- C:\Program Files\Endpoint Dynamics =>.Umar Yaqoob Batoo® O43 - CFD: 05/10/2016 - [0] D -- C:\Program Files\EndpointDynamics O43 - CFD: 14/06/2016 - [] D -- C:\Program Files\FileViewPro =>.Superfluous.Solvusoft O43 - CFD: 20/10/2015 - [] D -- C:\Program Files\FormatFactory =>.FormatFactory O43 - CFD: 20/09/2016 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 02/02/2016 - [0] D -- C:\Program Files\GUM6215.tmp O43 - CFD: 01/02/2016 - [] D -- C:\Program Files\HitLeap O43 - CFD: 14/07/2016 - [] D -- C:\Program Files\HitmanPro =>.EIDOS hitman Game O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\IDT =>.IDT O43 - CFD: 17/11/2016 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 21/09/2016 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 23/07/2016 - [] D -- C:\Program Files\Intel Driver Update Utility =>.Intel Corporation O43 - CFD: 13/01/2017 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc O43 - CFD: 16/10/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 07/01/2017 - [] D -- C:\Program Files\IObit =>.IObit O43 - CFD: 17/11/2016 - [0] D -- C:\Program Files\iolo =>.Iolo Technologies O43 - CFD: 18/10/2015 - [0] D -- C:\Program Files\IVT Corporation =>.IVT Corporation O43 - CFD: 04/12/2015 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 25/06/2016 - [0] D -- C:\Program Files\Jumpstart =>.Jumpstart Inc O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 17/11/2016 - [0] D -- C:\Program Files\KMSpico =>HackTool.KMSpico O43 - CFD: 01/12/2015 - [0] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 14/01/2017 - [] D -- C:\Program Files\McAfee Security Scan =>.McAfee O43 - CFD: 09/10/2016 - [] D -- C:\Program Files\Messenger for Desktop =>.Alexandru Rosianu O43 - CFD: 27/06/2016 - [] D -- C:\Program Files\Mes_FraDic O43 - CFD: 25/08/2016 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 24/12/2015 - [] D -- C:\Program Files\Microsoft Mouse and Keyboard Center =>.Microsoft Corporation O43 - CFD: 26/08/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Microsoft SDKs =>.Microsoft Corporation O43 - CFD: 26/08/2016 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\Microsoft Visual Studio =>.Microsoft Corporation O43 - CFD: 26/08/2016 - [] D -- C:\Program Files\Microsoft Visual Studio 8 =>.Microsoft Corporation O43 - CFD: 04/04/2016 - [] D -- C:\Program Files\Microsoft Visual Studio 9.0 =>.Pinnacle Systems, Inc. O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\Microsoft Works =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 15/09/2016 - [] D -- C:\Program Files\Mobinil USB modem =>.ZTE CORPORATION ® O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 24/04/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 26/08/2016 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\MSECache =>.Microsoft Corporation O43 - CFD: 10/08/2016 - [0] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation O43 - CFD: 01/11/2015 - [0] D -- C:\Program Files\muvee Technologies =>.muvee Technologies O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\Nero =>.Ahead Corporation O43 - CFD: 14/11/2015 - [] D -- C:\Program Files\NewBlue =>.NewBlue O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\NSIS Uninstall Information =>.MSIS O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 20/09/2016 - [] D -- C:\Program Files\Opera =>.Opera Software O43 - CFD: 19/08/2016 - [] D -- C:\Program Files\PDF Eraser =>.PDF Eraser O43 - CFD: 17/11/2016 - [] D -- C:\Program Files\Photodex =>.Photodex O43 - CFD: 04/04/2016 - [] D -- C:\Program Files\PicosmosTools =>.PicosmosTools O43 - CFD: 29/10/2015 - [] D -- C:\Program Files\ps3emu O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\QuickTime =>Riskware.QuickTime O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 16/06/2016 - [] D -- C:\Program Files\Registry Finder O43 - CFD: 21/05/2016 - [] D -- C:\Program Files\Remove Logo Now! =>.SoftOrbits® O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\ReviverSoft =>.ReviverSoft O43 - CFD: 04/04/2016 - [] D -- C:\Program Files\SAMSUNG =>.Samsung Electronics O43 - CFD: 25/12/2016 - [] D -- C:\Program Files\SHAREit =>.Lenovo Group Limited O43 - CFD: 14/11/2015 - [] D -- C:\Program Files\SmartSound Software =>.SmartSound Software Inc O43 - CFD: 14/02/2016 - [] D -- C:\Program Files\SRS Labs =>.SRS Labs O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\ST Microelectronics =>.ST Microelectronics O43 - CFD: 26/10/2016 - [] D -- C:\Program Files\STMicroelectronics =>.Microsoft Windows® O43 - CFD: 07/09/2016 - [] D -- C:\Program Files\Sunrise Seven =>.Microsoft Corporation® O43 - CFD: 07/01/2017 - [] D -- C:\Program Files\SuperBoost =>.QiWang O43 - CFD: 01/10/2015 - [] D -- C:\Program Files\Synaptics =>.Synaptics O43 - CFD: 01/01/2016 - [] D -- C:\Program Files\SystemRequirementsLab =>.System Requirements Lab O43 - CFD: 10/01/2017 - [] D -- C:\Program Files\Technitium =>.Technitium O43 - CFD: 08/01/2017 - [] D -- C:\Program Files\TeraCopy =>.Code Sector Inc. O43 - CFD: 09/08/2016 - [] D -- C:\Program Files\th3professional O43 - CFD: 16/06/2016 - [] D -- C:\Program Files\Torrent Search O43 - CFD: 04/01/2016 - [] D -- C:\Program Files\TP-LINK =>.TP-LINK O43 - CFD: 30/03/2016 - [] D -- C:\Program Files\Transmission =>.Transmission O43 - CFD: 15/06/2016 - [] D -- C:\Program Files\UCBrowser =>.UCWeb Inc O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\UltraISO =>.EZB Systems O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 10/05/2016 - [] D -- C:\Program Files\UniTrader O43 - CFD: 09/08/2016 - [] D -- C:\Program Files\Universal Digital Works O43 - CFD: 27/07/2016 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\USB Disk Security =>.FlashPeak Inc O43 - CFD: 30/09/2016 - [] D -- C:\Program Files\uTorrent =>.BitTorrent Inc® O43 - CFD: 16/10/2015 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\WebcamMax =>.CoolwareMax O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\Windows 8 Activator O43 - CFD: 30/09/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 11/11/2016 - [] D -- C:\Program Files\Windows Doctor O43 - CFD: 11/08/2016 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 29/09/2015 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 16/10/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 25/08/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 29/09/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 29/09/2015 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 29/09/2015 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 04/01/2016 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology O43 - CFD: 16/02/2016 - [] D -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\WinTV O43 - CFD: 29/10/2015 - [] D -- C:\Program Files\WMR16 {517539A9BAC157248BA3460FF00A68AF} O43 - CFD: 16/10/2015 - [0] D -- C:\Program Files\Xenocode =>.Legitimate O43 - CFD: 10/10/2016 - [] D -- C:\Program Files\Yandex =>.Yandex O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\Zbshareware Lab =>.Zbshareware Lab O43 - CFD: 22/10/2015 - [] D -- C:\Program Files\ZiggyTV =>.Solveig Multimedia OOO® O43 - CFD: 09/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AAA Logo O43 - CFD: 13/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Abex PDF to PowerPoint Converter O43 - CFD: 12/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 21/09/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 11/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe =>.Adobe O43 - CFD: 30/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 O43 - CFD: 06/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutorunRemover O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software O43 - CFD: 24/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitNami WAMPStack O43 - CFD: 28/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boilsoft =>.Boilsoft O43 - CFD: 29/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Broadcom =>.Broadcom O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon CanoScan LiDE 100 Manual =>.Canon Inc. O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities =>.Canon Inc. O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CanoScan LiDE 100 =>.Canon Inc. O43 - CFD: 30/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.1 =>.Dark Byte O43 - CFD: 29/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID =>.CPUID Inc O43 - CFD: 28/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 31/12/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell =>.Dell O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dictionaryAbouamar O43 - CFD: 12/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer =>PUP.Optional.DllFilesFixer O43 - CFD: 12/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3 =>.IObit O43 - CFD: 14/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro =>.Superfluous.Solvusoft O43 - CFD: 27/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 09/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GISolution O43 - CFD: 14/07/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro =>.EIDOS hitman Game O43 - CFD: 05/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iNetFusion+ O43 - CFD: 29/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation O43 - CFD: 23/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility =>.Intel Corporation O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 19/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter =>.IObit O43 - CFD: 09/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller =>.IObit O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 17/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware =>.Malwarebytes O43 - CFD: 14/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus =>.McAfee Inc. O43 - CFD: 09/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync =>.MegaSystems O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center =>.Microsoft Corporation O43 - CFD: 26/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 =>.Microsoft Corporation O43 - CFD: 13/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 02/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mobinil USB modem O43 - CFD: 04/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Ultra Edition =>.Ahead Corporation O43 - CFD: 13/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue =>.NewBlue O43 - CFD: 19/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Eraser =>.PDF Eraser O43 - CFD: 20/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PixelPlanet =>.PixelPlanet O43 - CFD: 21/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Privacy Eraser O43 - CFD: 12/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime O43 - CFD: 16/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Finder O43 - CFD: 21/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Logo Now! O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft =>.ReviverSoft O43 - CFD: 25/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHAREit =>.Lenovo Group Limited O43 - CFD: 14/01/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 07/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sunrise Seven O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 10/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Technitium MAC Address Changer v6 O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO =>.EZB Systems O43 - CFD: 10/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UniTrader O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security =>.FlashPeak Inc O43 - CFD: 16/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 28/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer =>.WAMP Server O43 - CFD: 14/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebcamMax =>.CoolwareMax O43 - CFD: 11/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Doctor O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap =>.Riverbed Technology O43 - CFD: 16/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 09/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ضاد O43 - CFD: 17/08/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Ahead =>.Ahead Software O43 - CFD: 17/08/2016 - [0] D -- C:\ProgramData\ALM =>.ALM O43 - CFD: 12/10/2015 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 12/10/2015 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 25/06/2016 - [0] D -- C:\ProgramData\Atheros =>.Atheros O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 04/04/2016 - [] D -- C:\ProgramData\Avg =>.AVG Software O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Avira =>.Avira Software O43 - CFD: 14/05/2016 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\BatteryOptimizer.exe O43 - CFD: 29/09/2015 - [] D -- C:\ProgramData\Broadcom =>.Broadcom O43 - CFD: 14/05/2016 - [0] D -- C:\ProgramData\CanonIJPLM =>.Canon Inc. O43 - CFD: 05/10/2016 - [] D -- C:\ProgramData\Caphyon =>.Caphyon O43 - CFD: 04/01/2016 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation O43 - CFD: 17/10/2015 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 28/10/2015 - [0] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 27/09/2015 - [] D -- C:\ProgramData\Dell =>.Dell O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 16/10/2015 - [] D -- C:\ProgramData\EA Core =>.Electronic Arts, Inc. O43 - CFD: 16/10/2015 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts O43 - CFD: 20/09/2016 - [] D -- C:\ProgramData\EPS O43 - CFD: 14/11/2015 - [] D -- C:\ProgramData\eSellerate =>.eSellerate O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\FilmOn.com O43 - CFD: 29/09/2015 - [] D -- C:\ProgramData\HitmanPro =>.EIDOS hitman Game O43 - CFD: 12/10/2015 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 23/07/2016 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 01/08/2016 - [0] D -- C:\ProgramData\IntelDLM =>.Intel Corporation O43 - CFD: 31/12/2016 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 17/11/2016 - [] D -- C:\ProgramData\iolo =>.Iolo Technologies O43 - CFD: 14/06/2016 - [] D -- C:\ProgramData\IsolatedStorage =>.id Software O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Kerish Products =>.Kerish Products O43 - CFD: 25/12/2016 - [] D -- C:\ProgramData\Lenovo =>.Lenovo O43 - CFD: 28/12/2016 - [] D -- C:\ProgramData\Logs =>.ABBYY Software O43 - CFD: 05/12/2015 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 14/01/2017 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 14/01/2017 - [] D -- C:\ProgramData\McAfee Security Scan =>.McAfee O43 - CFD: 24/12/2016 - [] D -- C:\ProgramData\MEGAsync =>.MegaSystems O43 - CFD: 21/09/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 10/10/2016 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 22/10/2015 - [] D -- C:\ProgramData\muvee Technologies =>.muvee Technologies O43 - CFD: 04/04/2016 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation O43 - CFD: 23/07/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 16/10/2016 - [] D -- C:\ProgramData\PCDr =>.PC-Doctor Inc. O43 - CFD: 17/11/2016 - [] D -- C:\ProgramData\Photodex =>.Photodex O43 - CFD: 20/08/2016 - [] D -- C:\ProgramData\PixelPlanet =>.PixelPlanet O43 - CFD: 13/01/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 10/01/2016 - [] D -- C:\ProgramData\Ralink Driver =>.Ralink O43 - CFD: 17/08/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 02/11/2015 - [] SHD -- C:\ProgramData\SecuROM =>.SecuROM O43 - CFD: 30/04/2016 - [] D -- C:\ProgramData\SlimWare Utilities, Inc =>.Superfluous.SlimWareUtilities O43 - CFD: 14/02/2016 - [] D -- C:\ProgramData\SRS Labs =>.SRS Labs O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 15/10/2015 - [] D -- C:\ProgramData\Steam =>.SteamApps O43 - CFD: 26/10/2015 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 08/01/2017 - [0] D -- C:\ProgramData\SUPERAntiSpyware.com =>.SUPERAntiSpyware.com O43 - CFD: 19/10/2016 - [] D -- C:\ProgramData\SuperBoost =>.QiWang O43 - CFD: 17/11/2016 - [] D -- C:\ProgramData\SUPPORTDIR =>.Microsoft Corporation O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\SystemRequirementsLab =>.System Requirements Lab O43 - CFD: 12/10/2016 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 16/05/2016 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network O43 - CFD: 03/10/2015 - [] D -- C:\ProgramData\Ubisoft =>.Ubisoft O43 - CFD: 01/04/2016 - [] D -- C:\ProgramData\Ultra Adware Killer =>.Carifred O43 - CFD: 17/11/2016 - [0] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\WebcamMax =>.CoolwareMax O43 - CFD: 16/12/2015 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 12/10/2016 - [0] D -- C:\ProgramData\Yandex =>.Yandex O43 - CFD: 27/09/2015 - [0] D -- C:\ProgramData\Zbshareware Lab =>.Zbshareware Lab O43 - CFD: 30/09/2015 - [0] D -- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic O43 - CFD: 12/03/2016 - [0] D -- C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705} O43 - CFD: 18/11/2016 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe O43 - CFD: 11/08/2016 - [] D -- C:\Program Files\Common Files\Adobe AIR =>.Adobe Inc. O43 - CFD: 04/04/2016 - [] D -- C:\Program Files\Common Files\Ahead =>.Ahead Software O43 - CFD: 03/12/2015 - [] D -- C:\Program Files\Common Files\AV =>.Avast O43 - CFD: 20/08/2016 - [] D -- C:\Program Files\Common Files\BCL Technologies =>.BCL Technologies O43 - CFD: 24/12/2015 - [] D -- C:\Program Files\Common Files\CANON =>.Canon O43 - CFD: 26/08/2016 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer O43 - CFD: 27/09/2015 - [] D -- C:\Program Files\Common Files\EZB Systems =>.EZB Systems O43 - CFD: 15/01/2016 - [0] D -- C:\Program Files\Common Files\INCAInternet =>.INCAInternet O43 - CFD: 21/09/2016 - [] D -- C:\Program Files\Common Files\Intel =>.Intel Corporation O43 - CFD: 30/09/2015 - [] D -- C:\Program Files\Common Files\Intel Corporation =>.Intel Corporation O43 - CFD: 05/11/2016 - [] D -- C:\Program Files\Common Files\IObit =>.IObit O43 - CFD: 04/12/2015 - [] D -- C:\Program Files\Common Files\Java =>.Oracle O43 - CFD: 26/08/2016 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\Common Files\NewBlue =>.NewBlue O43 - CFD: 20/08/2016 - [] D -- C:\Program Files\Common Files\PixelPlanet =>.PixelPlanet O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 01/10/2015 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation O43 - CFD: 16/10/2015 - [] D -- C:\Program Files\Common Files\Vbox =>.Vmedia O43 - CFD: 12/10/2015 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard =>.Seagate O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\Common Files\Wondershare =>.Wondershare O43 - CFD: 20/08/2016 - [] D -- C:\Program Files\Common Files\XPressUpdate =>.PixelPlanet O43 - CFD: 25/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\3.0beta O43 - CFD: 19/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 20/12/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Ahead =>.Ahead Software O43 - CFD: 09/05/2016 - [] D -- C:\Users\waleed\AppData\Roaming\AVAST Software =>.AVAST Software O43 - CFD: 28/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Cocoon Software =>.Cocoon Software O43 - CFD: 18/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Cybertron =>.Cybertron Software Ltd O43 - CFD: 12/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\dll-files.com =>PUP.Optional.DllFilesFixer O43 - CFD: 15/01/2017 - [] D -- C:\Users\waleed\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 20/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\DRPNPS O43 - CFD: 20/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\DRPSu =>.Driver PackSolution O43 - CFD: 21/12/2016 - [] D -- C:\Users\waleed\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft O43 - CFD: 05/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Endpoint Dynamics =>.Endpoint Dynamics O43 - CFD: 15/01/2017 - [] D -- C:\Users\waleed\AppData\Roaming\IDM =>.IDM O43 - CFD: 19/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\IObit =>.IObit O43 - CFD: 19/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 05/01/2017 - [0] D -- C:\Users\waleed\AppData\Roaming\Media Player Classic =>.Microsoft Corporation O43 - CFD: 09/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Messenger for Desktop =>.Alexandru Rosianu O43 - CFD: 07/10/2016 - [] SD -- C:\Users\waleed\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 31/10/2016 - [0] D -- C:\Users\waleed\AppData\Roaming\Microsoft Office =>.Microsoft Corporation O43 - CFD: 17/11/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 17/11/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Netscape =>.Netscape O43 - CFD: 20/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 16/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\PCDr =>.PC-Doctor Inc. O43 - CFD: 17/11/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Photodex =>.Photodex O43 - CFD: 17/11/2016 - [] D -- C:\Users\waleed\AppData\Roaming\proDAD =>.proDAD GmbH O43 - CFD: 18/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\ProductData =>.Microsoft Corporation O43 - CFD: 18/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\ReviverSoft =>.ReviverSoft O43 - CFD: 19/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\SuperBoost =>.QiWang O43 - CFD: 25/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\TeraCopy =>.Code Sector Inc. O43 - CFD: 29/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Thinstall =>.VMare O43 - CFD: 22/12/2016 - [] D -- C:\Users\waleed\AppData\Roaming\uTorrent O43 - CFD: 14/01/2017 - [] D -- C:\Users\waleed\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 18/09/2016 - [] D -- C:\Users\waleed\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 13/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Yandex =>.Yandex O43 - CFD: 15/01/2017 - [] D -- C:\Users\waleed\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 14/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Adobe =>.Adobe O43 - CFD: 05/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Ahead =>.Ahead Software O43 - CFD: 05/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 16/10/2016 - [] D -- C:\Users\waleed\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 07/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 18/11/2016 - [] D -- C:\Users\waleed\AppData\Local\Google =>.Google O43 - CFD: 05/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 05/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Mega Limited =>.MEGA Limited O43 - CFD: 24/09/2016 - [] D -- C:\Users\waleed\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 05/01/2017 - [] D -- C:\Users\waleed\AppData\Local\SHAREit =>.Lenovo Group Limited O43 - CFD: 15/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 05/01/2017 - [] D -- C:\Users\waleed\AppData\Local\Thinstall =>.VMare O43 - CFD: 05/01/2017 - [0] D -- C:\Users\waleed\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 07/01/2017 - [0] D -- C:\Users\waleed\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] RD -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 30/09/2015 - [] RD -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 16/10/2016 - [0] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alexandru Rosianu =>.Alexandru Rosianu O43 - CFD: 10/01/2017 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps O43 - CFD: 31/12/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell =>.Dell O43 - CFD: 20/10/2015 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory =>.FormatFactory O43 - CFD: 28/09/2015 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome =>.Google Inc. O43 - CFD: 16/03/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 14/07/2009 - [] RD -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 07/01/2017 - [] RD -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 27/09/2015 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer =>.The KMPlayer Team O43 - CFD: 14/05/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker =>.Cedrick Collomb O43 - CFD: 16/10/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool =>.Microsoft Corporation O43 - CFD: 16/02/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 19/02/2016 - [] D -- C:\Users\waleed\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WM Recorder 16 O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 20/09/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 03/11/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\ASProxy O43 - CFD: 04/04/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software O43 - CFD: 04/01/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\LavasoftTcpService =>PUP.Optional.LavasoftWebCompanion O43 - CFD: 05/01/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/04/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\UCBrowser =>.UCWeb Inc O43 - CFD: 14/11/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 30/09/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit O43 - CFD: 05/01/2016 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (14) - 1s O106 - SIOI:  MEGA (Pending) [ MEGA (Pending)] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\ProgramData\MEGAsync\ShellExtX32.dll O106 - SIOI:  MEGA (Synced) [ MEGA (Synced)] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\ProgramData\MEGAsync\ShellExtX32.dll O106 - SIOI:  MEGA (Syncing) [ MEGA (Syncing)] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\ProgramData\MEGAsync\ShellExtX32.dll O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll =>.Microsoft Corporation® O106 - SIOI: IDM Shell Extension [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ ShareTools MSconfig StartupReg (30) - 2s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (...) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe =>.Adobe Systems Incorporated O53 - SMSR:HKLM\...\startupreg\Advanced SystemCare 8 [Key] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe =>.IObit O53 - SMSR:HKLM\...\startupreg\Apoint [Key] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe =>.Alps Electric Co., Ltd. O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (...) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\autodetect [Key] . (. - AutoDect.) -- C:\Program Files\Mobinil USB modem\AutoDect.exe O53 - SMSR:HKLM\...\startupreg\AutorunRemover.exe [Key] . (...) -- C:\Program Files\AutorunRemover\AutorunRemover.exe O53 - SMSR:HKLM\...\startupreg\CanonSolutionMenu [Key] . (.CANON INC. - CNSLMAIN.) -- C:\Program Files\Canon\SolutionMenu\CNSLMAIN.EXE =>.Canon Inc. O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Lite [Key] . (.DT Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\daemon.exe =>.DT Soft Ltd O53 - SMSR:HKLM\...\startupreg\DellSystemDetect [Key] . (.Dell - Dell System Detect.) -- C:\Users\waleed\AppData\Local\Apps\2.0\G0MD671Z.MXG\J28MTB5Z.AJ0\dell..tion_6d0a76327dca4869_0007.000b_df227eeaae3cac0d\DellSystemDetect.exe =>.Dell O53 - SMSR:HKLM\...\startupreg\FreeFallProtection [Key] . (.Copyright (C) 2008 - FF_Protection MFC Application.) -- C:\Program Files\STMicroelectronics\AccelerometerP11\FF_Protection.exe O53 - SMSR:HKLM\...\startupreg\GoogleChromeAutoLaunch_0CA6123756BA3F63FBF1BE22A99E9C6B [Key] . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O53 - SMSR:HKLM\...\startupreg\GrooveMonitor [Key] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\hqajbsdunc [Key] . (...) -- explorer http://dyaniches.ru/?utm_source=uoua03&utm_content=187d1b193da63a9b03e768b9f718af74&utm_term=BCB12636A25F14E97001F8A10C04F9EF (.not file.) O53 - SMSR:HKLM\...\startupreg\IAStorIcon [Key] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\IntelTBRunOnce [Key] . (...) -- C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs O53 - SMSR:HKLM\...\startupreg\IObit Malware Fighter [Key] . (.IObit - IObit Malware Fighter.) -- C:\Program Files\IObit\IObit Malware Fighter\IMF.exe =>.IObit O53 - SMSR:HKLM\...\startupreg\Messenger (Yahoo!) [Key] . (...) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\NeroFilterCheck [Key] . (.Nero AG - NeroCheck.) -- C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe =>.Nero AG O53 - SMSR:HKLM\...\startupreg\nProtect Anti-Virus/Spyware 3.0 [Key] . (...) -- C:\Program Files\INCAInternet\nProtect Anti-Virus Spyware 3.0\nspmain.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Persistence [Key] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\PixelPlanet PdfPrinter-Monitor [Key] . (.PixelPlanet GmbH - PixelPlanet PdfPrinter Monitor.) -- C:\Program Files\Common Files\PixelPlanet\PdfPrinter 6\PdfPrinterMonitor.exe =>.PixelPlanet GmbH O53 - SMSR:HKLM\...\startupreg\Privacy Eraser [Key] . (.Cybertron Software, Co., Ltd. - Privacy Eraser.) -- C:\Program Files\Cybertron\Privacy Eraser\PrivacyEraser.exe O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\Screenpresso [Key] . (...) -- C:\Users\waleed\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (.Microsoft Corporation - Windows Desktop Gadgets.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\SideSync [Key] . (...) -- C:\Program Files\Samsung\SideSync4\SideSync.exe (.not file.) ---\\ System Drivers List (160) - 56s O58 - SDL:2016/07/14 09:34:59 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\969E4D1E.sys [153784] =>.Kaspersky Lab® O58 - SDL:2012/05/23 10:22:54 A . (.ST Microelectronics - Accelerometer Port I/O.) -- C:\Windows\System32\drivers\accelern.sys [44144] =>.STMicroelectronics® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2015/10/06 15:20:34 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2015/10/06 15:20:34 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows® O58 - SDL:2015/10/01 11:06:31 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [469808] =>.Alps Electric Co., LTD.® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2014/05/17 16:45:10 A . (.Astrill - Astrill Virtual Network Driver.) -- C:\Windows\System32\drivers\asvpndrv.sys [25856] =>.Astrill O58 - SDL:2016/05/09 13:22:42 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [24016] =>.AVAST Software a.s.® (.AVAST Software) O58 - SDL:2016/05/09 13:22:04 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [26096] =>.AVAST Software a.s.® O58 - SDL:2016/05/09 13:22:42 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [76000] =>.AVAST Software a.s.® O58 - SDL:2016/05/09 13:21:18 A . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdisFlt.sys [275856] =>.AVAST Software a.s.® O58 - SDL:2016/05/09 13:22:42 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [81728] =>.AVAST Software a.s.® O58 - SDL:2016/05/09 13:22:42 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [49776] =>.AVAST Software a.s.® (.AVAST Software) O58 - SDL:2016/05/14 08:47:38 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswsnx.sys [794952] =>.AVAST Software a.s.® O58 - SDL:2016/05/14 08:47:38 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [435464] =>.AVAST Software a.s.® O58 - SDL:2016/05/09 13:22:42 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [113592] =>.AVAST Software a.s.® O58 - SDL:2016/05/09 13:22:42 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [208664] =>.AVAST Software a.s.® (.AVAST Software) O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2009/01/07 23:39:36 A . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\Windows\System32\drivers\BtHidBus.sys [20744] =>.IVT SOFTWARE TECHNOLOGY Inc.® O58 - SDL:2008/12/07 12:44:54 A . (...) -- C:\Windows\System32\drivers\btnetBus.sys [30088] =>.IVT SOFTWARE TECHNOLOGY Inc.® O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2013/10/10 18:31:14 A . (.Broadcom Corporation - Broadcom Credential Vault USB Driver.) -- C:\Windows\System32\drivers\cvusbdrv.sys [42720] =>.Broadcom Corp® O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2010/04/05 23:36:20 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1k6232.sys [224424] =>.Intel Corporation® O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation O58 - SDL:2014/12/03 04:02:04 A . (.Intel Mobile Communications - USB driver for Flash Loader Utility.) -- C:\Windows\System32\drivers\FlashUSB.sys [16384] =>.Intel Mobile Communications O58 - SDL:2015/05/21 22:46:24 A . (...) -- C:\Windows\System32\drivers\fusion.sys [16200] =>.Umar Yaqoob Batoo® O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2014/12/03 04:02:08 A . (.MobileTop - Samsung High Speed USB Driver.) -- C:\Windows\System32\drivers\HSPUSB.sys [17408] =>.MobileTop O58 - SDL:2009/02/12 21:58:16 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\HSXHWAZL.sys [207360] =>.Conexant Systems, Inc. O58 - SDL:2009/02/12 21:57:28 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\HSX_CNXT.sys [661504] =>.Conexant Systems, Inc. O58 - SDL:2009/02/12 22:00:22 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\HSX_DPV.sys [980992] =>.Conexant Systems, Inc. O58 - SDL:2015/10/01 09:39:21 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\Windows\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX® O58 - SDL:2015/10/08 11:42:42 A . (.Intel Corporation - NDIS 6.1 Advanced Networking Services..) -- C:\Windows\System32\drivers\iANSW60.sys [144336] =>.Intel(R) INTELNPG1® O58 - SDL:2015/05/29 16:05:32 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStorA.sys [503048] =>.Intel Corporation - Rapid Storage Technology® O58 - SDL:2015/05/29 16:05:32 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [27376] =>.Intel Corporation - Rapid Storage Technology® O58 - SDL:2015/10/06 15:20:34 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows® O58 - SDL:2015/06/12 04:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [123968] =>.Tonec Inc.® O58 - SDL:2013/02/01 12:57:54 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [10861056] =>.Intel Corporation O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2010/02/26 12:01:22 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\drivers\Impcd.sys [132480] =>.Intel Corporation O58 - SDL:2011/08/23 01:41:48 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [270336] =>.Intel(R) Corporation O58 - SDL:2016/05/18 12:12:40 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\Windows\System32\drivers\iqvw32.sys [35280] =>.Intel(R) INTELNPG1® O58 - SDL:2008/07/02 14:58:48 A . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\Windows\System32\drivers\IvtBtBus.sys [26248] =>.IVT SOFTWARE TECHNOLOGY Inc.® O58 - SDL:2008/05/15 03:28:44 A . (.Atheros Communications, Inc. - Atheros Security NDIS 6.0 Filter Driver.) -- C:\Windows\System32\drivers\jswpslwf.sys [20384] =>.Atheros Communications, Inc. O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2011/03/26 10:37:12 A . (.MBB Incorporated - CDROM Filter.) -- C:\Windows\System32\drivers\massfilter.sys [9216] =>.MBB Incorporated O58 - SDL:2015/10/05 09:50:04 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [23256] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 09:50:08 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [94936] =>.Malwarebytes Corporation® O58 - SDL:2016/06/16 12:32:40 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2006/06/18 06:26:58 A . (.Conexant - Diagnostic Interface x86 Driver.) -- C:\Windows\System32\drivers\mdmxsdk.sys [12672] =>.Conexant O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:16 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [51928] =>.Malwarebytes Corporation® O58 - SDL:2012/12/07 10:34:48 A . (.Khalil Azzouzi - Azzouzi HotSpot helper driver.) -- C:\Windows\System32\drivers\ndiskhaz.sys [25416] =>.Khalil Azzouzi® O58 - SDL:2016/02/18 01:44:01 A . (.MediaTek Inc. - MediaTek 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28.sys [2099856] =>.MEDIATEK INC.® O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2016/05/09 13:21:39 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\Windows\System32\drivers\ngvss.sys [95112] =>.AVAST Software a.s.® O58 - SDL:2013/03/01 03:48:42 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2015/10/06 15:20:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows® O58 - SDL:2015/10/06 15:20:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2016/02/18 01:37:01 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [25768] =>.Synaptics Incorporated® O58 - SDL:2016/07/26 10:30:20 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [26792] =>.Synaptics Incorporated® O58 - SDL:2009/12/15 14:41:30 A . (.Copyright (C) 2006 SRS Labs, Inc. - SRS WOW HD, TSXT, CSII, Mobile HD Standalon.) -- C:\Windows\System32\drivers\SRS_SSCFilter_i386.sys [268912] =>.SRS Labs, Inc® O58 - SDL:2014/12/03 04:02:02 A . (.MCCI Corporation - SAMSUNG Android USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssadbus.sys [136904] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [15560] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcmnt.sys [15560] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:02 A . (.MCCI Corporation - SAMSUNG Android USB Diagnostic Serial Port.) -- C:\Windows\System32\drivers\ssadserd.sys [130248] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [15304] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwhnt.sys [15304] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:08 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdcm.sys [15560] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:08 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscdcmnt.sys [15560] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:08 A . (.MCCI Corporation - SAMSUNG Mobile Modem Diagnostic Serial Port.) -- C:\Windows\System32\drivers\sscdserd.sys [130248] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:01:58 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscecm.sys [15560] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:01:58 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\sscecmnt.sys [15560] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:01:58 A . (.MCCI Corporation - SAMSUNG Mobile Modem Diagnostic Serial Port.) -- C:\Windows\System32\drivers\ssceserd.sys [130376] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:00 A . (.MCCI - SAMSUNG Mobile USB DFU2 Device.) -- C:\Windows\System32\drivers\ssdudfu.sys [80968] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:00 A . (.MCCI Corporation - Windows 2000 support functions.) -- C:\Windows\System32\drivers\ssduwh.sys [12616] =>.MCCI Corporation® O58 - SDL:2016/10/11 10:42:10 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [108032] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/12/03 04:01:58 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile DevMgr Device Driver (MS.) -- C:\Windows\System32\drivers\ssuddmgr.sys [184216] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/10/11 10:44:02 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [199936] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/12/03 04:01:58 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile OBEX Device Driver (MSS.) -- C:\Windows\System32\drivers\ssudobex.sys [184216] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/12/03 04:01:58 A . (.QUALCOMM Incorporated - Filter Driver for the Qualcomm USB Driver S.) -- C:\Windows\System32\drivers\ssudqcfilter.sys [39704] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/12/03 04:01:58 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\Windows\System32\drivers\ssudserd.sys [184216] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/12/03 04:02:06 A . (.MCCI - SAMSUNG USB Mobile Device.) -- C:\Windows\System32\drivers\ss_bbus.sys [98432] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:06 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcm.sys [12416] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:06 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcmnt.sys [12416] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:06 A . (.MCCI Corporation - SAMSUNG USB Mobile Logging Device Driver.) -- C:\Windows\System32\drivers\ss_bserd.sys [100224] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:04 A . (.MCCI Corporation - SAMSUNG Mobile USB Device 1.0 Driver.) -- C:\Windows\System32\drivers\ss_bus.sys [98560] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:06 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwh.sys [12288] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:06 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwhnt.sys [12288] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:01:58 A . (.DEVGURU Co., LTD. - MSS CS Connectivity USB driver.) -- C:\Windows\System32\drivers\ss_conn_usb_driver.sys [23320] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/12/03 04:02:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_wh.sys [12288] =>.MCCI Corporation® O58 - SDL:2014/12/03 04:02:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_whnt.sys [12288] =>.MCCI Corporation® O58 - SDL:2011/07/15 21:30:50 A . (.ST Microelectronics - Disk Class Filter Driver for Accelerometer.) -- C:\Windows\System32\drivers\stdcfltn.sys [17904] =>.STMicroelectronics® O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2010/08/16 22:59:58 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt.sys [431616] =>.IDT, Inc. O58 - SDL:2015/02/26 11:15:06 A . (.STMicroelectronics - STM Accelerometer Device Driver.) -- C:\Windows\System32\drivers\ST_Accel.sys [88240] =>.STMicroelectronics® O58 - SDL:2012/05/30 13:10:12 A . (.Intel(R) Corporation - TurboB Device Driver.) -- C:\Windows\System32\drivers\TurboB.sys [16168] {416EC9A1000100005B7D} =>.Intel(R) Corporation O58 - SDL:2012/12/19 15:36:24 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [188328] =>.Oracle Corporation® O58 - SDL:2012/12/19 15:36:10 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\Windows\System32\drivers\VBoxNetAdp.sys [104872] =>.Oracle Corporation® O58 - SDL:2015/09/08 10:16:18 A . (.BigNox Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [104096] =>.Duodian Online Technology Co. Ltd.® O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:13:45 A . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\drivers\VSTAZL3.SYS [207360] =>.Conexant Systems, Inc. O58 - SDL:2009/07/14 00:13:45 A . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\drivers\VSTCNXT3.SYS [661504] =>.Conexant Systems, Inc. O58 - SDL:2009/07/14 00:13:46 A . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\drivers\VSTDPV3.SYS [980992] =>.Conexant Systems, Inc. O58 - SDL:2012/04/15 23:32:14 A . (.Windows (R) Win 7 DDK provider - WebcamMax Capture.) -- C:\Windows\System32\drivers\wcmvcam.sys [1068216] =>.Superfluous.TenkiTechnology O58 - SDL:2009/04/29 11:20:56 A . (.Conexant Systems, Inc. - Modem Audio Device Driver.) -- C:\Windows\System32\drivers\XAudio32.sys [8704] =>.Conexant Systems, Inc. O58 - SDL:2015/09/08 10:16:20 A . (.BigNox Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\XQHDrv.sys [203424] =>.Duodian Online Technology Co. Ltd.® O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbdvbh.sys [107776] =>.ZTE Incorporated O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys [107776] =>.ZTE Incorporated O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmea.sys [107776] =>.ZTE Incorporated O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmeaext.sys [107776] =>.ZTE Incorporated O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmeaext2.sys [107776] =>.ZTE Incorporated O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbser6k.sys [107776] =>.ZTE Incorporated O58 - SDL:2011/03/26 10:37:12 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\zteusbvoice.sys [107776] =>.ZTE Incorporated O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] =>.Microsoft Corporation O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] =>.Microsoft Corporation O58 - SDL:2015/03/24 21:54:44 A . (.INCA Internet Co.,Ltd. - Tachyon Firewall Core Driver.) -- C:\Windows\System32\TKFW.sys [160832] =>.INCA Internet Co.,Ltd.® O58 - SDL:2015/03/24 21:54:44 A . (.INCA Internet Co.,Ltd. - Tachyon Firewall Filter Driver.) -- C:\Windows\System32\tkfwflt.sys [82952] {00D7A838F41DB8BEE06F50A5F1EFC7C0} O58 - SDL:2015/03/24 21:54:44 A . (.INCA Internet Co., Ltd. - Tachyon Firewall LW Filter Driver.) -- C:\Windows\System32\tkfwfv.sys [31840] {313F5E6CE86B5E5578C93A090D947B28} =>.INCA Internet Co., Ltd. O58 - SDL:2015/03/24 21:54:44 A . (.INCA Internet Co., Ltd. - Tachyon Firewall LW Filter Driver.) -- C:\Windows\System32\tkfwfv64.sys [34400] {313F5E6CE86B5E5578C93A090D947B28} =>.INCA Internet Co., Ltd. O58 - SDL:2015/03/24 21:54:44 A . (.INCA Internet Co.,Ltd. - Tachyon IDS Core Driver.) -- C:\Windows\System32\tkids.sys [134496] =>.INCA Internet Co.,Ltd.® ---\\ Last modified or created user files (3) - 27s O61 - LFC: 2017/01/11 16:31:35 A . (..) -- C:\Users\waleed\AppData\Roaming\IDM\DwnlData\waleed\Encyclopedia+powerpoint+islami_16455\Encyclopedia+powerpoint+islami.exe [139788] O61 - LFC: 2017/01/13 22:17:04 A . (..) -- C:\Users\waleed\AppData\Roaming\IDM\DwnlData\waleed\ubcd533_16430\ubcd533.iso [1719069] O61 - LFC: 2017/01/10 17:25:34 A . (.com0do99+.) -- C:\Users\waleed\Downloads\IDM Optimizer - Stable.exe [671232] ---\\ File Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Start Menu Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Search Browser Infection (3) - 6s O69 - SBI: prefs.js [waleed - uubowiow.default] user_pref("network.http.request.max-start-delay", 0); =>.Superfluous.MaxStart O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {3CB12E97-BDDF-4488-8C61-217335DD319F} - (Google) - http://www.google.com/ =>.Google Inc. ---\\ Search Svchost Services (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [606720] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\audiosrv.dll [474624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [523776] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2062848] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [751104] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Key Management Service.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation ---\\ Firewall Active Exception List (58) - 8s O87 - FAEL: "TCP Query User{C7F08DBC-41C5-4D4D-A050-E77B48389C09}D:\games\call of duty black ops 2\zm.exe" [In-None-P6-TRUE] .(...) -- D:\games\call of duty black ops 2\zm.exe (.not file.) O87 - FAEL: "UDP Query User{CC054714-CA23-4B05-A936-F6D68AC67982}D:\games\call of duty black ops 2\zm.exe" [In-None-P17-TRUE] .(...) -- D:\games\call of duty black ops 2\zm.exe (.not file.) O87 - FAEL: "{402D2F66-DBCC-4273-A80D-223417A01520}" [In-None-P6-TRUE] .(...) -- D:\games\Steam\Steam.exe (.not file.) O87 - FAEL: "{B22E7411-A57F-401D-8115-D1588B3232EF}" [In-None-P17-TRUE] .(...) -- D:\games\Steam\Steam.exe (.not file.) O87 - FAEL: "{042C284B-25E7-4801-9202-7149A9BEFC01}" [In-None-P6-TRUE] .(...) -- D:\games\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "{2C5FCB50-9B0C-4464-B949-B50033F9A7A1}" [In-None-P17-TRUE] .(...) -- D:\games\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "{3ECD2230-BBC9-4FB7-8D4E-4342A1541C37}" [In-None-P6-TRUE] .(...) -- D:\games\pes 2013 A\pes2013.exe (.not file.) O87 - FAEL: "{5338E05B-3D28-44A4-A8E7-0DE6187F1E36}" [In-None-P17-TRUE] .(...) -- D:\games\pes 2013 A\pes2013.exe (.not file.) O87 - FAEL: "TCP Query User{4A4A45D8-885C-45D0-97D3-3A3C15DCB6BE}D:\games\call of duty black ops 2\mp.exe" [In-None-P6-TRUE] .(...) -- D:\games\call of duty black ops 2\mp.exe (.not file.) O87 - FAEL: "UDP Query User{CD6D8D3E-309A-4416-8147-F9CE5A2A88B5}D:\games\call of duty black ops 2\mp.exe" [In-None-P17-TRUE] .(...) -- D:\games\call of duty black ops 2\mp.exe (.not file.) O87 - FAEL: "TCP Query User{FB9A036B-1987-4971-9D3F-F6FF9F7174FE}D:\games\call of duty black ops 2\sp.exe" [In-None-P6-TRUE] .(...) -- D:\games\call of duty black ops 2\sp.exe (.not file.) O87 - FAEL: "UDP Query User{CF92C58E-65A4-42B4-A497-C06C4E7E90B5}D:\games\call of duty black ops 2\sp.exe" [In-None-P17-TRUE] .(...) -- D:\games\call of duty black ops 2\sp.exe (.not file.) O87 - FAEL: "TCP Query User{17006A2A-CDCD-4942-ACF4-ED30AC2E1681}D:\games\assassins creed\acbsp.exe" [In-None-P6-TRUE] .(...) -- D:\games\assassins creed\acbsp.exe (.not file.) O87 - FAEL: "UDP Query User{911ADF21-D8D9-4320-8A00-4398B1520A4D}D:\games\assassins creed\acbsp.exe" [In-None-P17-TRUE] .(...) -- D:\games\assassins creed\acbsp.exe (.not file.) O87 - FAEL: "{14DE0F31-588D-4CC1-ACA6-7C53D8AA235C}" [In-None-P6-TRUE] .(...) -- D:\games\Steam\steamapps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe (.not file.) =>.Steam Games O87 - FAEL: "{6C5DC583-693E-4F8E-A70D-D179FDD3906B}" [In-None-P17-TRUE] .(...) -- D:\games\Steam\steamapps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{168926AB-DD78-4FAF-93FA-8CD0D0C2E9E1}D:\games\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe" [In-None-P6-TRUE] .(...) -- D:\games\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe (.not file.) =>.Steam Games O87 - FAEL: "UDP Query User{43871F07-7F63-428B-AC68-F466CF1048A2}D:\games\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe" [In-None-P17-TRUE] .(...) -- D:\games\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{704A585E-673E-4E5D-853F-B457BFE892EC}D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe" [In-None-P6-TRUE] .(...) -- D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe (.not file.) O87 - FAEL: "UDP Query User{B8E1E677-A476-4551-8DFA-A3A8CFA0D967}D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe" [In-None-P17-TRUE] .(...) -- D:\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe (.not file.) O87 - FAEL: "TCP Query User{9F3E91E4-BE3A-45A3-ABF0-798F8ED65262}C:\users\waleed\appdata\local\temp\rar$exa0.956\u1502.exe" [In-None-P6-TRUE] .(...) -- C:\users\waleed\appdata\local\temp\rar$exa0.956\u1502.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "UDP Query User{D9A10B87-A53B-4FA9-918F-EEA02FDDDBAC}C:\users\waleed\appdata\local\temp\rar$exa0.956\u1502.exe" [In-None-P17-TRUE] .(...) -- C:\users\waleed\appdata\local\temp\rar$exa0.956\u1502.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "TCP Query User{BE9841F1-6646-4713-914B-71F29F764417}D:\games\gta iv extreme edition files\gta iv extreme edition 2015\gtaiv.exe" [In-None-P6-TRUE] .(...) -- D:\games\gta iv extreme edition files\gta iv extreme edition 2015\gtaiv.exe (.not file.) O87 - FAEL: "UDP Query User{8D693504-EEB3-402D-AD4D-B5A1445B52B9}D:\games\gta iv extreme edition files\gta iv extreme edition 2015\gtaiv.exe" [In-None-P17-TRUE] .(...) -- D:\games\gta iv extreme edition files\gta iv extreme edition 2015\gtaiv.exe (.not file.) O87 - FAEL: "{E15B08E8-BA87-47D7-8385-DD15F3C2DC9D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (.not file.) O87 - FAEL: "{8BF98EB3-99C2-4009-A172-BB66CD44ED3B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe (.not file.) O87 - FAEL: "{6861037B-0496-4F05-B606-42CC2A6B081B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\PicosmosTools\PTInstOnline.exe (.not file.) O87 - FAEL: "{C15E8AFB-C926-414D-A963-D65F51123F1D}" [In-None-P6-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\server.exe (.not file.) O87 - FAEL: "{31F7C560-3B2D-4135-AC29-69B1C2D64B0D}" [In-None-P17-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\server.exe (.not file.) O87 - FAEL: "TCP Query User{325A83C3-65D3-4831-9498-5CAFEEF5C891}C:\wamp\bin\apache\apache2.2.17\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\wamp\bin\apache\apache2.2.17\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{0C27B5B6-015B-46C5-8D23-7D38B2C67042}C:\wamp\bin\apache\apache2.2.17\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\wamp\bin\apache\apache2.2.17\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{6E4D7D91-C407-484E-BAA7-509EDE2826B7}C:\appserv\apache24\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\appserv\apache24\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{1B165471-2EA0-474F-A67C-DD65394223B2}C:\appserv\apache24\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\appserv\apache24\bin\httpd.exe (.not file.) O87 - FAEL: "{8D5E39BB-4965-458F-BD47-99FE500EADEB}" [In-None-P6-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{0C4E1783-1979-495D-8DDB-028019D36B31}" [Out-None-P6-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{E8113473-E2B6-4221-9F80-39F381F8ED5C}" [In-None-P17-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{BA7D6592-1607-4C12-BC09-ACCC36786D00}" [In-None-P6-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{63688F39-5C42-414A-A284-5DBCD4681EED}" [In-None-P17-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{0CE7FA06-EF13-4F20-B175-464CC5CCB3DD}" [Out-None-P17-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{133BE5C9-EADF-434D-94B9-51AA2FE8BE14}" [In-None-P6-TRUE] .(...) -- C:\Program Files\mHotspot\mHotspot.exe (.not file.) O87 - FAEL: "{D231288D-0841-4398-9DD2-963304F6C367}" [In-None-P17-TRUE] .(...) -- C:\Program Files\mHotspot\mHotspot.exe (.not file.) O87 - FAEL: "TCP Query User{6FA9E072-1455-4C70-8C76-17C7C4CBB10F}C:\wamp\bin\apache\apache2.4.17\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\wamp\bin\apache\apache2.4.17\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{B71DAEE0-2BAF-4577-A5BA-0B7C3B6102A7}C:\wamp\bin\apache\apache2.4.17\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\wamp\bin\apache\apache2.4.17\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{08918BB4-4D68-46BF-BFCF-777677EBE33F}D:\wamp\bin\apache\apache2.4.17\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- D:\wamp\bin\apache\apache2.4.17\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{0AC4ADAF-7286-4426-8AD3-B926459C923D}D:\wamp\bin\apache\apache2.4.17\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- D:\wamp\bin\apache\apache2.4.17\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{167BB113-F0A6-457F-ABE6-FF34C6241931}C:\xampp\apache\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\xampp\apache\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{A0C9D830-A99D-4D1F-810F-DDA2D61D5F4A}C:\xampp\apache\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\xampp\apache\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{92052129-2553-42F2-AD20-668471BBE457}C:\xampp\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "UDP Query User{0D3DBDC9-6A3F-4237-AC0D-DFBD7D290119}C:\xampp\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "TCP Query User{8ECC199B-1CF1-47E3-85F9-C402BC832F37}C:\wampserver\apache2\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\wampserver\apache2\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{F011B50B-CB54-4C4A-8793-812B8998EDE3}C:\wampserver\apache2\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\wampserver\apache2\bin\httpd.exe (.not file.) O87 - FAEL: "{C0701E08-9F7D-4666-9B32-0E54AE3BAB27}" [In-None-P6-TRUE] .(...) -- C:\Program Files\MyPublicWiFi\MyPublicWiFi.exe (.not file.) O87 - FAEL: "{F9126AAD-E17D-4B41-96D1-56CF6AC268F6}" [In-None-P17-TRUE] .(...) -- C:\Program Files\MyPublicWiFi\MyPublicWiFi.exe (.not file.) O87 - FAEL: "TCP Query User{FBA2CE3A-FD23-4287-9B9D-BD82C2090C7F}C:\program files\youwave android\vb\vboxsdl.exe" [In-None-P6-TRUE] .(...) -- C:\program files\youwave android\vb\vboxsdl.exe (.not file.) O87 - FAEL: "UDP Query User{71097B93-AAF3-468D-9208-AAA5AF498952}C:\program files\youwave android\vb\vboxsdl.exe" [In-None-P17-TRUE] .(...) -- C:\program files\youwave android\vb\vboxsdl.exe (.not file.) O87 - FAEL: "{4FF81C06-75A4-415B-A9C8-4B16E8CBB9A7}" [In-None-P17-TRUE] .(...) -- C:\Users\waleed\AppData\Roaming\Nox\bin\Nox.exe (.not file.) O87 - FAEL: "{E86A4EBC-A4BB-40EF-9F85-CDD790555795}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Bignox\BigNoxVM\RTNoxVMHandle.exe (.not file.) O87 - FAEL: "{9690607E-BAD0-4266-B730-3A3D6E78C887}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office\Office15\outlook.exe (.not file.) ---\\ Product Upgrade Codes (1) - 2s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate ---\\ Windows Installer Scan (1) - 6s [MD5.] [WIS][2015/09/28 14:20:35] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\13a4026.msi [32768] =>PUP.Optional.GlobalUpdate ---\\ List of CD/DVD Emulators (MBR Hook) (2) - 2s HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence ---\\ Additional Scan (O88) (28) - 2s C:\Users\waleed\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd =>Heuristic.Suspect HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BatteryOptimizer =>.Superfluous.ReviverSoft HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FileViewPro_is1 =>.Superfluous.Solvusoft HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B67BAFBA-4C9F-48FA-9496-933E3B255044} =>Riskware.QuickTime HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\BatteryOptimizer =>.Superfluous.ReviverSoft HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FileViewPro_is1 =>.Superfluous.Solvusoft HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B67BAFBA-4C9F-48FA-9496-933E3B255044} =>Riskware.QuickTime C:\Program Files\235523bf-f286-45ba-bef0-8b0cd2cd2adf =>PUP.Optional.CrossRider C:\Program Files\AskTBar =>Toolbar.AskTBar C:\Program Files\FileViewPro =>.Superfluous.Solvusoft C:\Program Files\KMSpico =>HackTool.KMSpico C:\Program Files\QuickTime =>Riskware.QuickTime C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dll-Files Fixer =>PUP.Optional.DllFilesFixer C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro =>.Superfluous.Solvusoft C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\ProgramData\SlimWare Utilities, Inc =>.Superfluous.SlimWareUtilities C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic C:\Users\waleed\AppData\Roaming\dll-files.com =>PUP.Optional.DllFilesFixer C:\Windows\System32\Config\systemprofile\AppData\Local\LavasoftTcpService =>PUP.Optional.LavasoftWebCompanion C:\Windows\System32\drivers\wcmvcam.sys =>.Superfluous.TenkiTechnology HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate C:\Windows\Installer\13a4026.msi =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence C:\Users\waleed\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_download.televisionfanatic.com_0.localstorage =>PUP.Optional.TelevisionFanatic C:\Users\waleed\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_download.televisionfanatic.com_0.localstorage-journal =>PUP.Optional.TelevisionFanatic ---\\ Summary of the elements found (20) - 0s https://www.nicolascoolman.com/fr/pup-optional-dllfilesfixer/ =>PUP.Optional.DllFilesFixer https://www.anti-malware.top/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.ReviverSoft https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.Solvusoft https://www.anti-malware.top/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime https://www.nicolascoolman.com/fr/pup-optional-weathertool =>PUP.Optional.WeatherTool https://www.nicolascoolman.com/forum/post33195.html#p33195 =>.Superfluous.SlimWareUtilities https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider https://www.nicolascoolman.com/fr/pup-optional-chedotbrowser/ =>PUP.Optional.ChedotBrowser https://www.anti-malware.top/2016/04/22/adware-installcore/ =>Adware.InstallCore https://www.nicolascoolman.com/fr/les-toolbars/ =>Toolbar.AskTBar https://www.anti-malware.top/2016/09/08/hacktool-kmspico/ =>HackTool.KMSpico https://www.nicolascoolman.com/fr/pup-babylon/ =>PUP.Optional.Babylon https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic https://www.anti-malware.top/2016/04/26/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.TenkiTechnology https://www.anti-malware.top/2016/06/07/superfluous-maxstart/ =>.Superfluous.MaxStart https://www.nicolascoolman.com/fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate https://www.anti-malware.top/2016/04/29/superfluous-bytefence/ =>.Superfluous.ByteFence https://www.nicolascoolman.com/fr/pup-televisionfanatic/ =>PUP.Optional.TelevisionFanatic ~ Unselected Options: O82, ~ End of the scan, 35725 items in 05mn59s (1673)(0)