~ ZHPDiag v2017.2.19.30 Par Nicolas Coolman (2017/02/19) ~ Démarré par ISHAK_RAIL MADRID (Administrator) (2017/02/19 17:59:20) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\ISHAK_RAIL MADRID\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows Se7en Titan, 32-bit (Build 7600) =>.Microsoft Corporation ---\\ Navigateurs Internet (1) - 0s ~ MSIE: Internet Explorer v8.0.7600.16385 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK System - VBScript Engine not found Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels d'optimisation (2) - 11s ~ CCleaner v5.15 (Optimize) ~ Tweaking.com - Windows Repair v3.9.25 (Optimize) ---\\ Surveillance de Logiciels (2) - 11s ~ Adobe Flash Player 24 NPAPI (Surveillance) ~ Adobe Reader 9.4.0 (Surveillance) ---\\ Logiciels de partage P2P (1) - 12s ~ µTorrent v3.4.0.30204 (P2P) ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 6 Stepping 5, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2086.072 MB (37% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 0 GB (%) free of 38 GB : ATTENTION =>Warning Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ISHAK_RAILMADRI ~ User Name: ISHAK_RAIL MADRID ~ Logged in as Administrator ---\\ Enumération des unités disques (5) - 10s ~ Drive C: has 0 GB free of 38 GB (System) ~ Drive D: has 21 GB free of 38 GB ~ Drive E: has 34 GB free of 38 GB ~ Drive F: has 0 GB free of 38 GB ~ Drive M: has 470 GB free of 953 GB ---\\ Etat du Centre de Sécurité Windows (13) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoDesktop: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 3s [MD5.00000000000000000000000000000000] - 0 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [0] =>.Microsoft Corporation [MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.78B9ADA2BC8946AF7B17678E0D07A773] - 21/12/2010 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [981504] =>.Microsoft Corporation [MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - 28/10/2009 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [285696] =>.Microsoft Corporation [MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - 14/07/2009 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193024] =>.Microsoft Corporation [MD5.6D5A49D6479EB753C7879F73A4C35E0F] - 14/07/2009 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [269824] =>.Microsoft Corporation [MD5.D8714A5FB3141F8226D16861F20C5AC4] - 14/07/2009 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.DDC040FDB01EF1712A6B13E52AFB104C] - 14/07/2009 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BA6E70AA0E6091BC39DE29477D866A77] - 14/07/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.83D1ECEA8FAAE75604C0FA49AC7AD996] - 27/04/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation [MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - 14/07/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.F4A054BE78AF7F410129C4B64B07DC9B] - 14/07/2009 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [123392] =>.Microsoft Corporation [MD5.DD52A733BF4CA5AF84562A5E2F963B91] - 14/07/2009 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation [MD5.3795DCD21F740EE799FB7223234215AF] - 14/07/2009 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1210432] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.C5FF95883FFEF704D50C40D21CFB3AB5] - 14/07/2009 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133120] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.CB39E896A2A83702D1737BFD402B3542] - 14/07/2009 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74240] =>.Microsoft Corporation [MD5.59F06B4968E58BC83DFC56CA4517960E] - 06/09/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245616] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (8) - 7s O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® O23 - Service: NetTime (NetTimeSvc) . (.Copyright © 1997, 2000 by Graham Mainwaring, Copyrigh - Network Time Synchronizer - NT Service.) - C:\Program Files\NetTime\NetTimeService.exe O23 - Service: PandoraService (PanService) . (.Pandora.TV - Pandora.TV service file.) - C:\Program Files\PANDORA.TV\PanService\KMPService.exe {2BF6AC6C0932526A56D17EB4F2C776C5} =>.Pandora.TV O23 - Service: UC浏览器基础服务 (UCBrowserSvc) . (...) - C:\Program Files\UCBrowser\Application\UCService.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O23 - Service: @C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software - TuneUp Theme Extension.) - C:\Windows\System32\uxtuneup.dll =>.AVG Netherlands B.V.® O23 - Service: (WinSAPSvc) . (.TODO: - TODO: .) - C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo O23 - Service: WinSnare (WinSnare) . (...) - C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinSnare\WinSnare.dll (.not file.) =>.Superfluous.WinSnare O23 - Service: Winstep Xtreme Service (Winstep Xtreme Service) . (...) - C:\Program Files\Winstep\WsxService (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (7) - 106s SS - Demand [14/02/2017] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [ 0] [ 0] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® SR - Auto [12/05/2012] [ 473088] NetTime (NetTimeSvc) . (.Copyright © 1997, 2000 by Graham Mainwaring, Copyrigh.) - C:\Program Files\NetTime\NetTimeService.exe SR - Auto [ 0] [ 0] PandoraService (PanService) . (.Pandora.TV.) - C:\Program Files\PANDORA.TV\PanService\KMPService.exe {2BF6AC6C0932526A56D17EB4F2C776C5} =>.Pandora.TV SR - Auto [13/02/2017] [ 599440] UC浏览器基础服务 (UCBrowserSvc) . (...) - C:\Program Files\UCBrowser\Application\UCService.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® SR - Auto [29/08/2013] [ 36152] @C:\Windows\System32\uxtuneup.dll (UxTuneUp) . (.TuneUp Software.) - C:\Windows\System32\uxtuneup.dll =>.AVG Netherlands B.V.® SR - Auto [17/02/2017] [ 184832] (WinSAPSvc) . (.TODO: .) - C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo ---\\ Tâches planifiées en automatique (23) - 20s [MD5.00000000000000000000000000000000] [APT] [3085R52T8B3370] (...) -- C:\ProgramData\3085R52T8B3370\3085R52T8B3370.dll [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [BikaQ_FetchAndUpgrade_CanBeDel] (...) -- C:\Program Files\BikaQRssReader\BikaQ.exe (.not file.) [0] (.Activate.) =>.Superfluous.BikaQ [MD5.00000000000000000000000000000000] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [0] (.Activate.) =>.Piriform Ltd® [MD5.00000000000000000000000000000000] [APT] [Driver Booster Scheduler] (...) -- C:\Program Files\IObit\Driver Booster\4.2.0\Scheduler.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [Driver Booster SkipUAC (ISHAK_RAIL MADRID)] (...) -- C:\Program Files\IObit\Driver Booster\4.2.0\DriverBooster.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.41E928AF129C0583D2EB8C13A6CAEE64] [APT] [Milimili] (...) -- C:\Program Files\MIO\MIO.exe [331368] (.Activate.) =>.Superfluous.Tencent [MD5.00000000000000000000000000000000] [APT] [SlimCleaner Plus (Scheduled Scan - ISHAK_RAIL MADRID)] (...) -- C:\Program Files\SlimCleaner Plus\SlimCleanerPlus.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.8007AF9F2434F390AA51F0A516B9756F] [APT] [Tweaking.com - Windows Repair Tray Icon] (.Tweaking.com.) -- C:\Program Files\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [66816] (.Activate.) =>.Tweaking LLC® [MD5.BA052C285D77745342B6DDC6BE0873C3] [APT] [UCBrowserSecureUpdater] (.UC Web Inc..) -- C:\Program Files\UCBrowser\Security\uclauncher.exe [607120] (.Activate.) =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.CECE9560A583D9895CE13175D7315C2A] [APT] [UCBrowserUpdaterCore] (.UCWeb Inc.) -- C:\Program Files\UCBrowser\Application\update_task.exe [485264] (.Activate.) =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O39 - APT: Driver Booster Scheduler - (...) -- C:\Windows\Tasks\Driver Booster Scheduler.job [316] (.Orphan.) =>.Superfluous.Orphan O39 - APT: SlimCleaner Plus (Scheduled Scan - ISHAK_RAIL MADRID) - (...) -- C:\Windows\Tasks\SlimCleaner Plus (Scheduled Scan - ISHAK_RAIL MADRID).job [390] (.Orphan.) =>.Superfluous.Orphan O39 - APT: UCBrowserUpdaterCore - (.UCWeb Inc.) -- C:\Windows\Tasks\UCBrowserUpdaterCore.job [284] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O39 - APT: 3085R52T8B3370 - (...) -- C:\Windows\System32\Tasks\3085R52T8B3370 [16706] (.Orphan.) =>.Superfluous.Orphan O39 - APT: BikaQ_FetchAndUpgrade_CanBeDel - (...) -- C:\Windows\System32\Tasks\BikaQ_FetchAndUpgrade_CanBeDel [3208] (.Orphan.) =>.Superfluous.BikaQ O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2828] =>.Piriform Ltd® O39 - APT: Driver Booster Scheduler - (...) -- C:\Windows\System32\Tasks\Driver Booster Scheduler [3280] (.Orphan.) =>.Superfluous.Orphan O39 - APT: Driver Booster SkipUAC (ISHAK_RAIL MADRID) - (...) -- C:\Windows\System32\Tasks\Driver Booster SkipUAC (ISHAK_RAIL MADRID) [2912] (.Orphan.) =>.Superfluous.Orphan O39 - APT: Milimili - (...) -- C:\Windows\System32\Tasks\Milimili [3588] =>.Superfluous.Tencent O39 - APT: SlimCleaner Plus (Scheduled Scan - ISHAK_RAIL MADRID) - (...) -- C:\Windows\System32\Tasks\SlimCleaner Plus (Scheduled Scan - ISHAK_RAIL MADRID) [3076] (.Orphan.) =>.Superfluous.Orphan O39 - APT: Tweaking.com - Windows Repair Tray Icon - (.Tweaking.com.) -- C:\Windows\System32\Tasks\Tweaking.com - Windows Repair Tray Icon [3668] =>.Tweaking LLC® O39 - APT: UCBrowserSecureUpdater - (.UC Web Inc..) -- C:\Windows\System32\Tasks\UCBrowserSecureUpdater [3464] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O39 - APT: UCBrowserUpdaterCore - (.UCWeb Inc.) -- C:\Windows\System32\Tasks\UCBrowserUpdaterCore [2552] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® ---\\ Applications lancées au démarrage du système (16) - 1s O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [AntiUsbWorm] C:\Google\AutoIt3.exe (.not file.) O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [NeXuS] . (.Winstep Software Technologies - NeXuS.) -- C:\Program Files\Winstep\Nexus.exe =>.Winstep Software Technologies O4 - HKUS\.DEFAULT\..\Run: [Welcome Center] . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll =>.Microsoft Corporation O4 - HKUS\.DEFAULT\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\Run: [Welcome Center] . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll =>.Microsoft Corporation O4 - HKUS\S-1-5-18\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2575572287-2218496161-298860256-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-2575572287-2218496161-298860256-1000\..\Run: [AntiUsbWorm] C:\Google\AutoIt3.exe (.not file.) O4 - HKUS\S-1-5-21-2575572287-2218496161-298860256-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-2575572287-2218496161-298860256-1000\..\Run: [NeXuS] . (.Winstep Software Technologies - NeXuS.) -- C:\Program Files\Winstep\Nexus.exe =>.Winstep Software Technologies ---\\ Processus lancés (26) - 5s [MD5.94C08DF0F07C509D99FEA7CFC486C335] - (.Copyright © 1997, 2000 by Graham Mainwaring, Copyrigh - Network Time Synchronizer - NT Service.) -- C:\Program Files\NetTime\NetTimeService.exe [473088] [PID.1568] [MD5.836266D31F9B7920ED04C4775E401FBC] - (.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\KMPService.exe [1922600] [PID.1624] {2BF6AC6C0932526A56D17EB4F2C776C5} =>.Pandora.TV [MD5.B7A8715705A54A20AB2DC09ACD251BC7] - (...) -- C:\Program Files\UCBrowser\Application\UCService.exe [599440] [PID.1896] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.87F79BBE778B586F0FE74C8216E40502] - (.Winstep Software Technologies - Winstep Xtreme Helper Service.) -- C:\Program Files\Winstep\WsxService.exe [377344] [PID.1980] =>.Winstep Software Technologies [MD5.6FACA9C62024E14251C7ED33A8E8B660] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2571704] [PID.100] =>.WIBU-SYSTEMS AG® [MD5.A3E33718D1090A1587AC069597EC4FA6] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3907152] [PID.880] =>.Tonec Inc. [MD5.9673485626808B1BB6B30D7F388A93FC] - (...) -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Little transparency.exe [402263] [PID.1916] [MD5.C856B04ABD5A57CA688EF6CC2964DFBD] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6638296] [PID.2260] =>.Piriform Ltd® [MD5.B289C20C10B241F6016FECD92B267098] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [275512] [PID.3788] =>.Tonec Inc.® [MD5.D9C51528488EA0D98D3C4D02ABD16759] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\System32\igfxsrvc.exe [252952] [PID.2540] =>.Intel Corporation® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.2368] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.984] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.2932] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.1948] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.3040] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.3796] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.3688] =>.FlashPeak Inc® [MD5.AAFFA08D022DD04CD63D5B4A229A6A8D] - (.Pangolin Laser Systems Inc. - Pangolin Screen Brightness.) -- C:\Users\ISHAK_RAIL MADRID\Desktop\PangoBright.exe [114400] [PID.1064] {0100000000012A2F487290} [MD5.8053C89848FFC8C5D6480523B3D48F4B] - (...) -- C:\Program Files\UCBrowser\Application\6.0.1471.913\UCAgent.exe [2149136] [PID.3724] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.2800] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.4052] =>.FlashPeak Inc® [MD5.544D66CE8C715EE5F18E2E4E7CAAE27E] - (.PandoraTV - .) -- C:\Program Files\PANDORA.TV\PanService\KMPProcess.exe [1798696] [PID.2988] {2BF6AC6C0932526A56D17EB4F2C776C5} =>.PandoraTV [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.3296] =>.FlashPeak Inc® [MD5.4A0A1AB65A61D6AE4AA6E4793F20196C] - (.Nicolas Coolman - ZHPDiag.) -- F:\ZHPDiag3.exe [2698240] [PID.2376] =>.Nicolas Coolman [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.1008] =>.FlashPeak Inc® [MD5.489264B78721F808A0C7B3404FDD1C5F] - (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe [1035352] [PID.1396] =>.FlashPeak Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 4s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.trotux.com/ =>.Superfluous.Trotux G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [enmofgaijnbjpblfljopnpdogpldapoc] Disable Youtube™ HTML5 Player G2 - GCE: Preference [User Data\Default] [fdcgdnkidjaadafnichfpabhfomcebme] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] __MSG_name__ =>.Wladimir Palant G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pdabfienifkbhoihedcgeogidfmibmhp] __MSG_extName__ =>.hotcleaner.com G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 5s M0 - MFSP: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] http://www.trotux.com/ =>.Superfluous.Trotux P2 - EXT FILE: (...) -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Mozilla\Firefox\Profiles\pj75n9l9.default-1487190349410\extensions\jetpack-extension@dashlane.com.xpi P2 - EXT FILE: (...) -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Mozilla\Firefox\Profiles\pj75n9l9.default-1487190349410\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Mozilla\Firefox\Profiles\pj75n9l9.default-1487190349410\searchplugins\6xv4g9nu.xml P2 - EXT: (.AVG Software.) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml =>.AVG Software P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM integration.) -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Mozilla\Firefox\Profiles\pj75n9l9.default-1487190349410\extensions\mozilla_cc2@internetdownloadmanager.com =>.Internet Download Manager, Tonec Inc. P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_24_0_0_221.dll =>.Adobe Systems Incorporated ---\\ Opera, Démarrage,Recherche,Plugins (9) - 3s B0 - OCSP: Preferences [ISHAK_RAIL MADRID][HomePage] http://search.babylon.com/?affID=100782&tl=gkn12345&tt=3112_7&babsrc=SP_def_nch_opera&mntrId=36537cd300000000000050e549ed9c44 B2 - EXT: [Stylish] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\bofnhkejmonldphklejelehlhhoecceg B2 - EXT: [onlinetvs247] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\gpnolafbdbankibfhpmkgkalpiapmgme B2 - EXT: [richtr] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\ibnombjmjocaccigcefonnipcnlaeaed B2 - EXT: [YouTube Downloader] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\kclijeogghhkmenkommbnjobhnndpfba B2 - EXT: [theprovider] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi B2 - EXT: [__MSG_meta_extension_name__] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\mallmmeebeojpflmiolfchfcgbjflklc B2 - EXT: [totoro1986] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\mboaembapglkclamgifhbdhbiojoichj B2 - EXT: [__MSG_name__] C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp =>.Opera Stable ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (12) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (22) ---\\ Browser Helper Object de navigateur (BHO) (5) - 1s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: (no name) - {9961627E-4059-41B4-8E0E-A7D6B3854ADF} (.Orphan.) O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} (.Orphan.) O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Raccourcis Global Startup (74) - 50s O4 - GS\Desktop [Administrateur]: CrystalDiskInfo.lnk . (.Crystal Dew World - CrystalDiskInfo.) C:\Program Files\CrystalDiskInfo\DiskInfo.exe =>.Noriyuki MIYAZAKI® O4 - GS\Desktop [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FreeTime\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\Desktop [Administrateur]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\Program Files\The KMPlayer\KMPlayer.exe =>.Pandora TV Co., Ltd.® O4 - GS\Desktop [Administrateur]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Desktop [Administrateur]: Picosmos Shows.lnk . (.Free Time - Picosmos Picture Explorer.) C:\Program Files\PicosmosTools\PicosmosShows.exe =>.Free Time O4 - GS\Desktop [Administrateur]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\Desktop [Administrateur]: refresh-ram.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: RefreshPC.lnk . (.WareSoft Software - RefreshPC for Windows XP, Vista, 7, and Win.) C:\Program Files\RefreshPC\refreshpc.exe =>.WareSoft Software® O4 - GS\Desktop [Administrateur]: Remove Logo Now!.lnk . (.SoftOrbits - Remove Logo Now!.) C:\Program Files\Remove Logo Now!\StampRemover.exe {144C975B08011FAB22336FED3C9470FA} =>.SoftOrbits O4 - GS\Desktop [Administrateur]: RS File Repair.lnk . (.Recovery Software - .) C:\Program Files\Recovery Software\RS File Repair\RS File Repair.exe =>.Recovery Software O4 - GS\Desktop [Administrateur]: Tweaking.com - Windows Repair.lnk . (.Tweaking.com - Tweaking.com - Windows Repair.) C:\Program Files\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe =>.Tweaking LLC® O4 - GS\Desktop [Administrateur]: Video Avatar.lnk . (.Copyright (C) 2007 - VideoAva Application.) C:\Program Files\GeoVid\Video Avatar\VideoAvatar.exe O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (...) C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Firefox Ultimate Optimizer.lnk . (...) C:\Program Files\Mozilla Firefox\Optimizers\Fuo\Firefox Ultimate Optimizer.exe O4 - GS\Quicklaunch [Administrateur]: FireTune Ultimate Optimizer.lnk . (...) C:\Program Files\Mozilla Firefox\Optimizers\FTune\FireTune.exe O4 - GS\Quicklaunch [Administrateur]: FlashPeak Slimjet.lnk . (.FlashPeak Inc. - FlashPeak Slimjet.) C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc® O4 - GS\Quicklaunch [Administrateur]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated® O4 - GS\Quicklaunch [Administrateur]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Quicklaunch [Administrateur]: UC浏览器.lnk . (.UCWeb Inc. - UC浏览器.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FreeTime\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [Administrateur]: Picosmos Shows.lnk . (.Free Time - Picosmos Picture Explorer.) C:\Program Files\PicosmosTools\PicosmosShows.exe =>.Free Time O4 - GS\sendTo [Administrateur]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\TaskBar [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\TaskBar [Administrateur]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: refresh-ram.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Your Uninstaller! - New way to uninstall programs completely and easily.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe =>.URSoft, Inc.® O4 - GS\TaskBar [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Desktop [ISHAK_RAIL MADRID]: CrystalDiskInfo.lnk . (.Crystal Dew World - CrystalDiskInfo.) C:\Program Files\CrystalDiskInfo\DiskInfo.exe =>.Noriyuki MIYAZAKI® O4 - GS\Desktop [ISHAK_RAIL MADRID]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FreeTime\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\Desktop [ISHAK_RAIL MADRID]: KMPlayer.lnk . (.PandoraTV - The KMPlayer.) C:\Program Files\The KMPlayer\KMPlayer.exe =>.Pandora TV Co., Ltd.® O4 - GS\Desktop [ISHAK_RAIL MADRID]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Desktop [ISHAK_RAIL MADRID]: Picosmos Shows.lnk . (.Free Time - Picosmos Picture Explorer.) C:\Program Files\PicosmosTools\PicosmosShows.exe =>.Free Time O4 - GS\Desktop [ISHAK_RAIL MADRID]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\Desktop [ISHAK_RAIL MADRID]: refresh-ram.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - GS\Desktop [ISHAK_RAIL MADRID]: RefreshPC.lnk . (.WareSoft Software - RefreshPC for Windows XP, Vista, 7, and Win.) C:\Program Files\RefreshPC\refreshpc.exe =>.WareSoft Software® O4 - GS\Desktop [ISHAK_RAIL MADRID]: Remove Logo Now!.lnk . (.SoftOrbits - Remove Logo Now!.) C:\Program Files\Remove Logo Now!\StampRemover.exe {144C975B08011FAB22336FED3C9470FA} =>.SoftOrbits O4 - GS\Desktop [ISHAK_RAIL MADRID]: RS File Repair.lnk . (.Recovery Software - .) C:\Program Files\Recovery Software\RS File Repair\RS File Repair.exe =>.Recovery Software O4 - GS\Desktop [ISHAK_RAIL MADRID]: Tweaking.com - Windows Repair.lnk . (.Tweaking.com - Tweaking.com - Windows Repair.) C:\Program Files\Tweaking.com\Windows Repair (All in One)\Repair_Windows.exe =>.Tweaking LLC® O4 - GS\Desktop [ISHAK_RAIL MADRID]: Video Avatar.lnk . (.Copyright (C) 2007 - VideoAva Application.) C:\Program Files\GeoVid\Video Avatar\VideoAvatar.exe O4 - GS\Desktop [ISHAK_RAIL MADRID]: ZHPDiag.lnk . (...) C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [ISHAK_RAIL MADRID]: Firefox Ultimate Optimizer.lnk . (...) C:\Program Files\Mozilla Firefox\Optimizers\Fuo\Firefox Ultimate Optimizer.exe O4 - GS\Quicklaunch [ISHAK_RAIL MADRID]: FireTune Ultimate Optimizer.lnk . (...) C:\Program Files\Mozilla Firefox\Optimizers\FTune\FireTune.exe O4 - GS\Quicklaunch [ISHAK_RAIL MADRID]: FlashPeak Slimjet.lnk . (.FlashPeak Inc. - FlashPeak Slimjet.) C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc® O4 - GS\Quicklaunch [ISHAK_RAIL MADRID]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated® O4 - GS\Quicklaunch [ISHAK_RAIL MADRID]: MiPony.lnk . (.www.mipony.net - Mipony.) C:\Program Files\MiPony\MiPony.exe O4 - GS\Quicklaunch [ISHAK_RAIL MADRID]: UC浏览器.lnk . (.UCWeb Inc. - UC浏览器.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\Quicklaunch [ISHAK_RAIL MADRID]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [ISHAK_RAIL MADRID]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [ISHAK_RAIL MADRID]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files\FreeTime\FormatFactory\FormatFactory.exe =>.Free Time O4 - GS\sendTo [ISHAK_RAIL MADRID]: Picosmos Shows.lnk . (.Free Time - Picosmos Picture Explorer.) C:\Program Files\PicosmosTools\PicosmosShows.exe =>.Free Time O4 - GS\sendTo [ISHAK_RAIL MADRID]: Picosmos Tools.lnk . (.Picosmos - Picosmos Tools.) C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O4 - GS\TaskBar [ISHAK_RAIL MADRID]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\TaskBar [ISHAK_RAIL MADRID]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation O4 - GS\TaskBar [ISHAK_RAIL MADRID]: refresh-ram.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - GS\TaskBar [ISHAK_RAIL MADRID]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [ISHAK_RAIL MADRID]: Your Uninstaller! - New way to uninstall programs completely and easily.lnk . (.URSoft,Inc - Your Uninstaller! - New way to uninstall pr.) C:\Program Files\Your Uninstaller! 7\urmain.exe =>.URSoft, Inc.® O4 - GS\TaskBar [ISHAK_RAIL MADRID]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\CommonDesktop [Public]: AIMP.lnk . (.AIMP DevTeam - AIMP.) C:\Program FilesAIMP3\AIMP.exe =>.Artem Izmaylov® O4 - GS\CommonDesktop [Public]: Animation Shop 3.lnk . (.InstallShield Software Corp. - InstallShield.) C:\Windows\Installer\{174D5678-D941-433C-BD23-58A5C7B0D36D}\Anim3TryAndBuy.exe =>.InstallShield Software Corp. O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: CPUID CPU-Z.lnk . (.CPUID - CPU-Z Application.) C:\Program Files\CPUID\CPU-Z\cpuz.exe =>.CPUID® O4 - GS\CommonDesktop [Public]: Driver Booster 4.lnk . (...) C:\Program Files\IObit\Driver Booster\4.2.0\DriverBooster.exe O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 7.3, Best Reader for Everyday.) C:\Program Files\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated® O4 - GS\CommonDesktop [Public]: Milouz Market.lnk . (...) C:\Windows\Installer\{DD9030AC-706B-4886-A50A-068A08A6E9D6}\_73181A45430E761FC91473.exe O4 - GS\CommonDesktop [Public]: MiniTool Power Data Recovery 7.0.lnk . (.MiniTool Solution Ltd. - MiniTool Power Data Recovery V7.0.) C:\Program Files\PowerDataRecovery\powerdatarecovery.exe =>.MiniTool Solution Ltd® O4 - GS\CommonDesktop [Public]: PhotoStage Slideshow Producer.lnk . (.NCH Software - PhotoStage Slideshow Producer.) C:\Program Files\NCH Software\PhotoStage\photostage.exe =>.NCH Software® O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PhotoStage Slideshow Producer.lnk . (.NCH Software - PhotoStage Slideshow Producer.) C:\Program Files\NCH Software\PhotoStage\photostage.exe =>.NCH Software® ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7935A719-FA8B-4616-AA05-91E730EC63C6}: NameServer = 8.8.8.8,8.8.4.4,192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7935A719-FA8B-4616-AA05-91E730EC63C6}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ Protocole additionnel (23) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation ---\\ Logiciels installés (52) - 130s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: Adobe Flash Player 24 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader 9.4.0 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-A94000000001} =>.Adobe Systems Incorporated O42 - Logiciel: AIMP - (.AIMP DevTeam.) [HKLM] -- AIMP =>.AIMP DevTeam O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM] -- AIMP3 =>.AIMP DevTeam O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: CPUID CPU-Z 1.75 - (.CPUID Inc.) [HKLM] -- CPUID CPU-Z_is1 =>.CPUID Inc O42 - Logiciel: CrystalDiskInfo 6.2.1 - (.Crystal Dew World.) [HKLM] -- CrystalDiskInfo_is1 =>.Crystal Dew World O42 - Logiciel: Driver Booster 4.2 - (.IObit.) [HKLM] -- Driver Booster_is1 =>.IObit O42 - Logiciel: FlashPeak Slimjet - (.FlashPeak Inc..) [HKLM] -- Slimjet =>.FlashPeak Inc. O42 - Logiciel: FormatFactory 3.8.0.0 - (.Free Time.) [HKLM] -- FormatFactory =>.Free Time O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM] -- Foxit Reader_is1 =>.Foxit Software Incorporated® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM] -- {34BF287B-24D9-4CFC-94A6-B1F4A92EC55D} =>.Intel Corporation O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI =>.Intel Corporation® O42 - Logiciel: Intel(R) TV Wizard - (.Intel Corporation.) [HKLM] -- TVWiz =>.Intel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Jasc Animation Shop 3 - (.Jasc Software Inc.) [HKLM] -- {174D5678-D941-433C-BD23-58A5C7B0D36D} =>.Jasc Software Inc O42 - Logiciel: Jasc Animation Shop 3 - (.Jasc Software Inc.) [HKLM] -- {7C4196CA-CA41-4F34-9C08-7724E7705D52} =>.Jasc Software Inc O42 - Logiciel: Java 7 Update 67 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217017FF} =>.Oracle O42 - Logiciel: Java 8 Update 73 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218073F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc. O42 - Logiciel: K-Lite Mega Codec Pack 11.9.6 - (.KLCP.) [HKLM] -- KLiteCodecPack_is1 =>.KLCP O42 - Logiciel: KMP Service - (.KMP.) [HKLM] -- 4F6D5E84-5826-4394-9F40-3A9A19165651_is1 O42 - Logiciel: KMPlayer (remove only) - (.PandoraTV.) [HKLM] -- The KMPlayer =>.PandoraTV O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM] -- {98f335cd-0a32-4b3f-b74c-ef9480e834f0} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Lossless MP3 Cutter Joiner 6.1.9 - (.Accmeware Corporation.) [HKLM] -- C8939E9A-5D52-497C-9F87-8A2308692710_is1 =>.Accmeware Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Milouz Market - (.Milouz Corp.) [HKLM] -- {DD9030AC-706B-4886-A50A-068A08A6E9D6} O42 - Logiciel: MiniTool Power Data Recovery Free Edition 7.0 - (.MiniTool Solution Ltd..) [HKLM] -- MiniTool Power Data Recovery Free Edition_is1 =>.MiniTool Solution Ltd® O42 - Logiciel: MiPony 2.5.1 - (..) [HKLM] -- MiPony O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM] -- {7EEFA2B0-292C-11E2-AF85-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: NetTime - (.Mark Griffiths.) [HKLM] -- NetTime_is1 O42 - Logiciel: Nexus 12.2 - (..) [HKLM] -- Winstep Xtreme_is1 O42 - Logiciel: PhotoStage Slideshow Producer - (.NCH Software.) [HKLM] -- PhotoStage =>.NCH Software® O42 - Logiciel: PicosmosTools 1.4.0.0 - (.Free Time.) [HKLM] -- PicosmosTools =>.Free Time O42 - Logiciel: RBC Audio Voice Tweaker Pro V3.02 - (..) [HKLM] -- RBC Audio Voice Tweaker Pro V3.02 O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: RefreshPC - (.WareSoft Software.) [HKLM] -- RefreshPC_is1 =>.WareSoft Software® O42 - Logiciel: Remove Logo Now! 1.2 - (.SoftOrbits.) [HKLM] -- Remove Logo Now!_is1 =>.SoftOrbits® O42 - Logiciel: TimeWorks Delay 6022 v1.063 - (..) [HKLM] -- TimeWorks Delay 6022 v1.063 O42 - Logiciel: TimeWorks Reverb 4080L v1.101 - (..) [HKLM] -- Timeworks Reverb O42 - Logiciel: TP-LINK Wireless Client Utility - (.TP-LINK.) [HKLM] -- {7A2A107B-9695-423F-9462-8F17C178BD35} =>.TP-LINK O42 - Logiciel: Tweaking.com - Windows Repair - (.Tweaking.com.) [HKLM] -- Tweaking.com - Windows Repair =>.Tweaking.com O42 - Logiciel: Unlocker 1.8.7 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: VideoAvatar - (.GeoVid.) [HKLM] -- VideoAvatar_is1 O42 - Logiciel: Virtual DJ - Atomix Productions - (.Atomix Production.) [HKLM] -- Virtual DJ - Atomix Productions =>.Atomix Production O42 - Logiciel: VirtualDJ Home FREE - (.Atomix Productions.) [HKLM] -- {5E1375CB-6792-4464-8715-CC3EC83D48FA} =>.Atomix Productions O42 - Logiciel: VobSub v2.23 (Remove Only) - (..) [HKLM] -- VobSub O42 - Logiciel: Waves Znoise v1.0 - (..) [HKLM] -- Waves Znoise v1.0 O42 - Logiciel: WinRAR archiver - (.RarLab.) [HKLM] -- WinRAR archiver =>.RarLab O42 - Logiciel: Your Uninstaller! 7 - (.URSoft, Inc..) [HKLM] -- YU2010_is1 =>.URSoft, Inc.® ---\\ HKCU & HKLM Software Keys (309) - 132s HKLM\SOFTWARE\156eacdc-6be3-484e-958c-b1950c01381c =>PUP.Optional.CrossRider HKLM\SOFTWARE\4shared Desktop HKLM\SOFTWARE\Acoustica =>.Acoustica HKLM\SOFTWARE\ADDF5525DBA3A989A011142D8968794F =>PUP.Optional.CrossRider HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AdwCleaner =>.Malwarebytes HKLM\SOFTWARE\Ahead =>.Ahead HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Applogon =>.Unknow HKLM\SOFTWARE\ASProtect =>.ASPack Software HKLM\SOFTWARE\Atheros =>.Qualcomm Atheros HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Audiopl HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Avg =>.AVG Software HKLM\SOFTWARE\AviSynth =>.Ben Rudiak-Gold HKLM\SOFTWARE\Avnex HKLM\SOFTWARE\BillP Studios =>.BillP Studios HKLM\SOFTWARE\Blaze Audio HKLM\SOFTWARE\BlazeAudio VoiceCloak HKLM\SOFTWARE\Bunndle =>.Unknow HKLM\SOFTWARE\CAVEditLib HKLM\SOFTWARE\CDDB =>.Cddb Software HKLM\SOFTWARE\Client HKLM\SOFTWARE\CPUID =>.CPUID Inc HKLM\SOFTWARE\DeskShare =>.Deskshare HKLM\SOFTWARE\DFX =>.DFX Power Technology HKLM\SOFTWARE\DIOC HKLM\SOFTWARE\DiskInternals =>.DiskInternals Research HKLM\SOFTWARE\dll-files.com =>PUP.Optional.DllFilesFixer HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\Drercey HKLM\SOFTWARE\DRWNewFree =>.Unknow HKLM\SOFTWARE\DTS =>.Creative Technology HKLM\SOFTWARE\Dynasoft HKLM\SOFTWARE\EaseUS =>.EaseUS Software HKLM\SOFTWARE\EaseUS Todo Backup =>.EaseUS Software HKLM\SOFTWARE\FlashPeak =>.FlashPeak Inc HKLM\SOFTWARE\Fortemedia =>.Lugert Europe HKLM\SOFTWARE\Foxit Software =>.Foxit Software HKLM\SOFTWARE\Freemake =>.Freemake HKLM\SOFTWARE\GNU =>.GNU HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\GridinSoft =>.GridinSoft HKLM\SOFTWARE\HaaliMkx =>.Haali Media HKLM\SOFTWARE\helper_setup HKLM\SOFTWARE\Hewlett-Packard Company =>.Hewlett-Packard Company HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\InterVideo =>.InterVideo HKLM\SOFTWARE\IObit =>.IObit HKLM\SOFTWARE\Jasc =>.Jasc HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\jhdbca HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\KMPlayer =>.KMPlayer HKLM\SOFTWARE\Knowles =>.Knowles Electronics HKLM\SOFTWARE\LAV =>.LAV Inc HKLM\SOFTWARE\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial) =>.Malwarebytes HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\Memory HKLM\SOFTWARE\MicroRay HKLM\SOFTWARE\Milouz Corp HKLM\SOFTWARE\Mixcraft6 HKLM\SOFTWARE\Moyea HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\MP3 Remix HKLM\SOFTWARE\msServer HKLM\SOFTWARE\Nahimic =>.Nahimic HKLM\SOFTWARE\NCH Software =>.NCH Software HKLM\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKLM\SOFTWARE\Nero =>.Ahead Corporation HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\Object =>.object HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Osen Kusnadi HKLM\SOFTWARE\Pandora.TV =>.Pandora.TV HKLM\SOFTWARE\PicosmosShows =>.Picosmos HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\PowerTechnology =>.PowerTechnology HKLM\SOFTWARE\Preview Systems =>.Preview Systems, Inc HKLM\SOFTWARE\RBC Audio HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKLM\SOFTWARE\SAMSUNG =>.Samsung Electronics HKLM\SOFTWARE\Screaming Bee =>.Screaming Bee HKLM\SOFTWARE\SecretSauce =>PUP.Optional.SecretSauce HKLM\SOFTWARE\Simplitec =>.Simplitec HKLM\SOFTWARE\Skype =>.Skype HKLM\SOFTWARE\SlimWare Utilities Inc =>.Superfluous.SlimWareUtilities HKLM\SOFTWARE\SlimWare Utilities, Inc. =>.Superfluous.SlimWareUtilities HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\sonic timeworks HKLM\SOFTWARE\SonicFocus =>.Sonic Focus HKLM\SOFTWARE\Sony Corporation =>.Sony Corporation HKLM\SOFTWARE\Sony Media Software =>.Sony Media Software HKLM\SOFTWARE\SoundResearch =>.Sound Research HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\Stardock =>.Stardock HKLM\SOFTWARE\Stellar Data Recovery =>.Stellar Systems HKLM\SOFTWARE\Subjective Software HKLM\SOFTWARE\teqoent.exe HKLM\SOFTWARE\TP-LINK =>.TP-LINK HKLM\SOFTWARE\trotuxSoftware =>.Superfluous.Trotux HKLM\SOFTWARE\TuneUp =>.TuneUp HKLM\SOFTWARE\UCBrowser =>.UCWeb Inc. HKLM\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKLM\SOFTWARE\VirtualDJ =>.Atomix Production HKLM\SOFTWARE\vLite HKLM\SOFTWARE\VobSub HKLM\SOFTWARE\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\VST =>.Virtual Studio Technology HKLM\SOFTWARE\WafCX =>.WafCX HKLM\SOFTWARE\Waves =>.Waves HKLM\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WinTools Software HKLM\SOFTWARE\Wondershare =>.Wondershare HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\www.program4pc.com HKCU\SOFTWARE\2VG HKCU\SOFTWARE\3D-Icons Screensavers HKCU\SOFTWARE\A57E2534D HKCU\SOFTWARE\Accmeware Corporation =>.Accmeware Corporation HKCU\SOFTWARE\AceTools HKCU\SOFTWARE\Acoustica =>.Acoustica HKCU\SOFTWARE\ADDF5525DBA3A989A011142D8968794F =>PUP.Optional.CrossRider HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Antares Audio Technologies =>.Antares Audio Technologies HKCU\SOFTWARE\Anvisoft =>.Anvisoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\apple =>.Apple Inc. HKCU\SOFTWARE\Applied Acoustics Systems =>.Applied Acoustics Systems HKCU\SOFTWARE\ASProtect =>.ASPack Software HKCU\SOFTWARE\Atola HKCU\SOFTWARE\Audacity =>.Audacity HKCU\SOFTWARE\AutoTime =>Adware.TopTools HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\Avg =>.AVG Software HKCU\SOFTWARE\BabylonXtra =>PUP.Optional.Babylon HKCU\SOFTWARE\Baidu =>.Baidu HKCU\SOFTWARE\BenVista =>.BenVista HKCU\SOFTWARE\Besier 3D-Edutainment HKCU\SOFTWARE\BillP Studios =>.BillP Studios HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Blaze Audio HKCU\SOFTWARE\BYAIAMUF HKCU\SOFTWARE\Cheat Engine =>.Dark Byte HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CleverFiles =>.CleverFiles HKCU\SOFTWARE\Cleverfiles Software HKCU\SOFTWARE\CoreAAC =>.Core Codec HKCU\SOFTWARE\Crystal Reality =>.Games Software HKCU\SOFTWARE\csastats =>Adware.InstallCore HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Dashlane =>.Dashlane HKCU\SOFTWARE\Dashlane_profiles =>.Dashlane, Inc HKCU\SOFTWARE\Death Knight =>.Games Software HKCU\SOFTWARE\Dee Mon =>.Dee Mon HKCU\SOFTWARE\DevID =>.DevID HKCU\SOFTWARE\DirectShow =>.Microsoft Corporation HKCU\SOFTWARE\DiskInternals =>.DiskInternals Research HKCU\SOFTWARE\DivFix++ =>.DivFix HKCU\SOFTWARE\dll-files.com =>PUP.Optional.DllFilesFixer HKCU\SOFTWARE\dlr HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\DriverBooster HKCU\SOFTWARE\Drivers =>.Legitimate HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\DScaler5 HKCU\SOFTWARE\Dusty HKCU\SOFTWARE\EaseUS =>.EaseUS Software HKCU\SOFTWARE\Enigma Protector HKCU\SOFTWARE\EpmNewsInfo =>.EaseUS Software HKCU\SOFTWARE\EWS HKCU\SOFTWARE\EximiousSoft HKCU\SOFTWARE\file repair =>.File Repair HKCU\SOFTWARE\Flash2X HKCU\SOFTWARE\FlashPeak =>.FlashPeak Inc HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\FreeDownloadManager.ORG =>.FreeDownloadManager.org HKCU\SOFTWARE\Freemake =>.Freemake HKCU\SOFTWARE\FreeTime =>.FreeTime Inc HKCU\SOFTWARE\Freeware =>.VirtualDub.org HKCU\SOFTWARE\Fun Face Master HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GeoVid =>.Legitimate HKCU\SOFTWARE\GetData =>.GetData HKCU\SOFTWARE\GetFLV =>.GetFLV HKCU\SOFTWARE\GetPrivate HKCU\SOFTWARE\Global Downloader HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNOK HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\GoldWave HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GRETECH =>.Gretech HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\HitLeap HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\IM =>Adware.InstallCore HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Installer HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Jasc =>.Jasc HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Jingling HKCU\SOFTWARE\JollyBear =>.JollyBear Games Inc HKCU\SOFTWARE\kde.org =>.kde.org HKCU\SOFTWARE\KMPlayer =>.KMPlayer HKCU\SOFTWARE\Koingo Software =>.Koingo Software Inc HKCU\SOFTWARE\KoshyJohn.com HKCU\SOFTWARE\KuaiZip =>.Superfluous.ShanghaiGuangle HKCU\SOFTWARE\KuaiZipSFX =>.Superfluous.ShanghaiGuangle HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\LockHunter =>.Crystal Rich Ltd HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Magix =>.Magix HKCU\SOFTWARE\MainConcept =>.MainConcept AG HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKCU\SOFTWARE\MatchWare =>.MatchWare HKCU\SOFTWARE\MCAFEE =>.McAfee Inc. HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd. HKCU\SOFTWARE\Mirillis =>.Mirillis HKCU\SOFTWARE\Moo0 HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\MP3 Remix HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\NATATA eBook HKCU\SOFTWARE\NCH Software =>.NCH Software HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKCU\SOFTWARE\Neowise =>.Legitimate HKCU\SOFTWARE\Nero =>.Ahead Corporation HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\OJP HKCU\SOFTWARE\OpenSub HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\Pangolin HKCU\SOFTWARE\PCTuneUp =>.NNJ Corporation HKCU\SOFTWARE\Picosmos =>.Picosmos HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\PopWnd =>.Lenovo Group Limited HKCU\SOFTWARE\PowerTechnology =>.PowerTechnology HKCU\SOFTWARE\Program4Pc =>.Program4Pc HKCU\SOFTWARE\RBC HKCU\SOFTWARE\RBC Audio HKCU\SOFTWARE\Real Desktop 2.0 HKCU\SOFTWARE\RealNetworks =>.RealNetworks HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\RocketDock =>.Punk Software HKCU\SOFTWARE\SeaMoonTech HKCU\SOFTWARE\SecretSauce =>PUP.Optional.SecretSauce HKCU\SOFTWARE\Security Stronghold =>.Security Stronghold HKCU\SOFTWARE\Sippoint HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\Slimjet =>.FlashPeak Inc HKCU\SOFTWARE\SlimWare Utilities Inc =>.Superfluous.SlimWareUtilities HKCU\SOFTWARE\SNDA =>.SNDA Software HKCU\SOFTWARE\softorbits =>.SoftOrbits HKCU\SOFTWARE\Softorino =>.Softorino HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software HKCU\SOFTWARE\Spoon =>.Spoon Software HKCU\SOFTWARE\Stardock =>.Stardock HKCU\SOFTWARE\Stellar HKCU\SOFTWARE\Subjective Software HKCU\SOFTWARE\SubSystems =>.Sub Systems Inc HKCU\SOFTWARE\System32 =>.Mirillis HKCU\SOFTWARE\TempCleaner HKCU\SOFTWARE\Thraex Software =>.Thraex Software HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\TuneUp =>.TuneUp HKCU\SOFTWARE\UCBrowser =>.UCWeb Inc. HKCU\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKCU\SOFTWARE\Ultracopier =>.Herman Brule HKCU\SOFTWARE\UpgSvr HKCU\SOFTWARE\URSoft =>.URSoft HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\VideoAvatar HKCU\SOFTWARE\VideoLAN =>.VideoLAN HKCU\SOFTWARE\VirtualDJ =>.Atomix Production HKCU\SOFTWARE\WebApp =>.Superfluous.Downloader HKCU\SOFTWARE\Win =>.Unknow HKCU\SOFTWARE\Winamp =>.Nullsoft Inc. HKCU\SOFTWARE\WindowsUpdater HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\WinSTEP2000 HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\Xenocode HKCU\SOFTWARE\XG HKCU\SOFTWARE\XTZSVL HKCU\SOFTWARE\ZGDU HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\[eMo] Web Browser Optimizer HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft ---\\ Contenu des dossiers Programmes (346) - 83s O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\6xv4g9nu O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\Adobe =>.Adobe O43 - CFD: 24/03/2015 - [] D -- C:\Program Files\AIMP3 =>.AIMP AUdio Software O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\Atoration Server O43 - CFD: 18/02/2017 - [] D -- C:\Program Files\BikaQRssReader =>.Superfluous.BikaQ O43 - CFD: 11/07/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 12/08/2016 - [] D -- C:\Program Files\CleverFiles =>.CleverFiles O43 - CFD: 20/12/2015 - [] D -- C:\Program Files\CodeMeter =>.Legitimate O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 30/01/2014 - [] D -- C:\Program Files\CPUID =>.CPUID Inc O43 - CFD: 01/01/2008 - [] D -- C:\Program Files\CrystalDiskInfo =>.Crystal Dew World O43 - CFD: 12/01/2017 - [] D -- C:\Program Files\Deskshare =>.Deskshare O43 - CFD: 17/12/2015 - [] D -- C:\Program Files\DiskInternals =>.DiskInternals Research O43 - CFD: 19/11/2012 - [] D -- C:\Program Files\DJ Music Mixer O43 - CFD: 01/01/2008 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 20/12/2015 - [] D -- C:\Program Files\EaseUS =>.EaseUS Software O43 - CFD: 06/10/2012 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 11/02/2014 - [] D -- C:\Program Files\Folder Colorizer O43 - CFD: 20/07/2014 - [] D -- C:\Program Files\Foxit Software =>.Foxit Software O43 - CFD: 12/08/2016 - [] D -- C:\Program Files\FreeDownloadManager.ORG =>.FreeDownloadManager.org O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\FreeTime =>.FreeTime O43 - CFD: 15/02/2013 - [] D -- C:\Program Files\Gabest =>.Gabest O43 - CFD: 11/12/2014 - [] D -- C:\Program Files\GeoVid =>.Legitimate O43 - CFD: 20/12/2015 - [] D -- C:\Program Files\GetData O43 - CFD: 18/02/2017 - [] D -- C:\Program Files\Google =>.Google O43 - CFD: 07/10/2013 - [] D -- C:\Program Files\GUM3846.tmp O43 - CFD: 28/03/2015 - [] D -- C:\Program Files\HDD Regenerator =>.Dmitriy Primochenko O43 - CFD: 31/10/2014 - [] D -- C:\Program Files\Helexis O43 - CFD: 17/02/2017 - [0] D -- C:\Program Files\Icackaraergh O43 - CFD: 14/11/2015 - [] D -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 12/06/2016 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc O43 - CFD: 04/11/2012 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\IObit =>.IObit O43 - CFD: 08/12/2014 - [] D -- C:\Program Files\Jasc Software Inc =>.Jasc Software Inc O43 - CFD: 27/02/2016 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\LockHunter =>.Crystal Rich Ltd O43 - CFD: 19/09/2016 - [] D -- C:\Program Files\Lossless MP3 Cutter Joiner O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 23/01/2014 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 25/11/2013 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 21/07/2014 - [] D -- C:\Program Files\Milouz Corp O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\MIO =>.Mio O43 - CFD: 18/01/2017 - [] D -- C:\Program Files\MiPony O43 - CFD: 18/02/2017 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 18/02/2017 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 12/01/2017 - [] D -- C:\Program Files\NCH Software =>.NCH Software O43 - CFD: 01/01/2008 - [] D -- C:\Program Files\NetTime O43 - CFD: 17/04/2014 - [] D -- C:\Program Files\Object Desktop O43 - CFD: 08/01/2014 - [] D -- C:\Program Files\PANDORA.TV =>.Pandora.TV O43 - CFD: 25/02/2016 - [] D -- C:\Program Files\PicosmosTools =>.PicosmosTools O43 - CFD: 16/02/2017 - [] D -- C:\Program Files\PowerDataRecovery =>.MT Solution O43 - CFD: 29/09/2013 - [] D -- C:\Program Files\RBC Audio O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Reason O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\Recovery Software =>.Recovery Software O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 15/02/2017 - [] D -- C:\Program Files\RefreshPC =>.WareSoft Software® O43 - CFD: 12/01/2017 - [] D -- C:\Program Files\Remove Logo Now! {144C975B08011FAB22336FED3C9470FA} O43 - CFD: 08/04/2015 - [] D -- C:\Program Files\Repair File O43 - CFD: 28/10/2009 - [] D -- C:\Program Files\RocketDock =>.Punk Software O43 - CFD: 26/02/2016 - [] D -- C:\Program Files\simplitec =>.Simplitec O43 - CFD: 01/01/2008 - [] D -- C:\Program Files\Slimjet =>.FlashPeak Inc O43 - CFD: 28/09/2013 - [] D -- C:\Program Files\Sony Setup =>.Sony Corporation O43 - CFD: 20/10/2014 - [] D -- C:\Program Files\Spybot - Search & Destroy =>.SaferNetworking O43 - CFD: 18/02/2017 - [] D -- C:\Program Files\Stellar Phoenix Video Repair =>.Stellar Systems O43 - CFD: 03/03/2015 - [] D -- C:\Program Files\Synei =>.Synei O43 - CFD: 26/02/2016 - [] D -- C:\Program Files\The KMPlayer =>.The KMPlayer Team O43 - CFD: 08/11/2013 - [] D -- C:\Program Files\Toolbar O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\Tweaking.com =>.Tweaking LLC® O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\UCBrowser =>.UCWeb Inc O43 - CFD: 30/01/2014 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb O43 - CFD: 01/01/2008 - [0] D -- C:\Program Files\VG-Ripper O43 - CFD: 13/08/2013 - [] D -- C:\Program Files\Video Convert Master O43 - CFD: 22/05/2015 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 15/12/2013 - [] D -- C:\Program Files\VIO Player =>PUP.Optional.VIOPlayer O43 - CFD: 30/01/2014 - [] D -- C:\Program Files\VirtualDJ =>.Atomix Production O43 - CFD: 08/10/2013 - [] D -- C:\Program Files\VST O43 - CFD: 28/09/2013 - [] D -- C:\Program Files\Vstplugins =>.VTS O43 - CFD: 29/09/2013 - [] D -- C:\Program Files\Waves =>.Waves O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 01/08/2015 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 01/08/2015 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 01/08/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 06/10/2012 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 30/01/2014 - [] D -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 18/02/2017 - [] D -- C:\Program Files\WinSnare(4.1.1) =>.Superfluous.WinSnare O43 - CFD: 04/12/2014 - [] D -- C:\Program Files\Winstep O43 - CFD: 12/10/2016 - [] D -- C:\Program Files\Wondershare =>.Wondershare O43 - CFD: 01/01/2008 - [] D -- C:\Program Files\Your Uninstaller! 7 =>.Ursoftware O43 - CFD: 13/11/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Pic Hunter O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP =>.AIMP2 AUdio Software O43 - CFD: 29/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antares Audio Technologies =>.Antares Audio Technologies O43 - CFD: 30/08/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft =>.Anvisoft O43 - CFD: 27/07/2014 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG =>.AVG Software O43 - CFD: 02/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 30/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID =>.CPUID Inc O43 - CFD: 21/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo =>.Crystal Dew World O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 4 =>.IObit O43 - CFD: 19/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlashPeak Slimjet =>.FlashPeak Inc O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader =>.Foxit Corporation O43 - CFD: 28/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 28/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jasc Software =>.Jasc Software Inc O43 - CFD: 27/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 19/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lossless MP3 Cutter Joiner O43 - CFD: 23/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Milouz Corp O43 - CFD: 16/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Power Data Recovery 7.0 O43 - CFD: 24/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiPony O43 - CFD: 30/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox =>.Mozilla O43 - CFD: 11/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag =>.Florian Heidenreich O43 - CFD: 01/01/2008 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetTime O43 - CFD: 08/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PANDORATV =>.PandoraTV O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Software =>.Recovery Software O43 - CFD: 15/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RefreshPC O43 - CFD: 12/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Logo Now! O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\simplitec =>.Simplitec O43 - CFD: 06/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smileys We Love Removal Tool O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 29/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Timeworks O43 - CFD: 16/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Avatar O43 - CFD: 18/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Related Programs O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 29/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves =>.Waves O43 - CFD: 14/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winstep O43 - CFD: 17/02/2017 - [] HD -- C:\ProgramData\3085R52T8B3370 O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 05/06/2015 - [0] D -- C:\ProgramData\APN =>Toolbar.Ask O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 18/02/2017 - [0] D -- C:\ProgramData\Baidu =>.Baidu O43 - CFD: 06/10/2012 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 27/09/2013 - [] D -- C:\ProgramData\Common Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 20/09/2016 - [] D -- C:\ProgramData\Dropbox =>.Dropbox O43 - CFD: 07/04/2013 - [] D -- C:\ProgramData\EmailNotifier =>PUP.Optional.EmailNotifier O43 - CFD: 06/10/2012 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 06/04/2014 - [] D -- C:\ProgramData\Freemake =>.Freemake O43 - CFD: 11/12/2014 - [] D -- C:\ProgramData\GeoVid =>.Legitimate O43 - CFD: 21/07/2014 - [] D -- C:\ProgramData\GridinSoft =>.GridinSoft O43 - CFD: 08/11/2013 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 16/04/2014 - [] D -- C:\ProgramData\InstallMate =>.Superfluous.Tarma O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 17/02/2017 - [] RASHD -- C:\ProgramData\Key-Base =>.Unknow O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\LHService =>.LHService O43 - CFD: 25/11/2015 - [] D -- C:\ProgramData\LockHunter =>.Crystal Rich Ltd O43 - CFD: 20/10/2014 - [] D -- C:\ProgramData\ma-config.com =>.Ma-Config.com O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\MAGIX =>.Magix O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 14/09/2015 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 06/10/2012 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 28/07/2014 - [] D -- C:\ProgramData\MFAData =>.AVG Software O43 - CFD: 15/02/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 03/01/2017 - [] D -- C:\ProgramData\Mirillis =>.Mirillis O43 - CFD: 06/10/2012 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 22/11/2012 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 18/02/2017 - [] D -- C:\ProgramData\NCH Software =>.NCH Software O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 27/02/2013 - [] D -- C:\ProgramData\PC1Data =>.Dell O43 - CFD: 18/02/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 07/04/2013 - [] D -- C:\ProgramData\Real =>.RealNetworks Inc. O43 - CFD: 18/09/2013 - [] D -- C:\ProgramData\Screaming Bee =>.Screaming Bee O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\simplitec =>.Simplitec O43 - CFD: 25/02/2016 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\SlimWare Utilities, Inc =>.Superfluous.SlimWareUtilities O43 - CFD: 19/12/2015 - [] D -- C:\ProgramData\Spybot - Search & Destroy =>.SaferNetworking O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 24/09/2013 - [] D -- C:\ProgramData\SummerSoft =>.SummerSoft O43 - CFD: 28/03/2013 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 19/02/2017 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network O43 - CFD: 19/05/2014 - [] D -- C:\ProgramData\TP-LINK =>.TP-LINK O43 - CFD: 12/02/2014 - [] D -- C:\ProgramData\TuneUp Software =>.TuneUp Software O43 - CFD: 18/02/2017 - [0] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 12/02/2014 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} =>.TuneUp Media Inc O43 - CFD: 01/03/2016 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe O43 - CFD: 29/09/2013 - [] D -- C:\Program Files\Common Files\Digidesign =>.Digidesign O43 - CFD: 11/12/2014 - [] D -- C:\Program Files\Common Files\GeoVid =>.Legitimate O43 - CFD: 13/11/2015 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield O43 - CFD: 28/03/2013 - [] D -- C:\Program Files\Common Files\Java =>.Oracle O43 - CFD: 01/03/2013 - [] D -- C:\Program Files\Common Files\Korg =>.KORG O43 - CFD: 06/10/2012 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 02/11/2012 - [] D -- C:\Program Files\Common Files\Program4Pc =>.Program4Pc O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation O43 - CFD: 04/03/2013 - [] D -- C:\Program Files\Common Files\Vbox =>.Vmedia O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 27/05/2013 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard =>.Seagate O43 - CFD: 12/10/2016 - [] D -- C:\Program Files\Common Files\Wondershare =>.Wondershare O43 - CFD: 20/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Acoustica =>.Acoustica O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\AIMP =>.AIMP2 AUdio Software O43 - CFD: 29/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Antares =>.Antares Audio Technologies O43 - CFD: 18/08/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Anvisoft =>.Anvisoft O43 - CFD: 10/10/2012 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\AnvSoft =>.AnvSoft Inc O43 - CFD: 27/07/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\AVG2014 =>.AVG Software O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\BitLord =>PUP.Optional.WhenUSave O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\BitTorrent O43 - CFD: 12/08/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Cleverfiles Software O43 - CFD: 19/02/2017 - [] HD -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\com O43 - CFD: 10/12/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Crystal Player O43 - CFD: 25/01/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\CrystalIdea Software =>.CrystalIdea Software O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Dashlane =>.Dashlane O43 - CFD: 04/03/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\DigitalVolcano =>.DigitalVolcano O43 - CFD: 27/03/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\dll-files.com =>PUP.Optional.DllFilesFixer O43 - CFD: 19/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 04/03/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\FolderColorize O43 - CFD: 25/02/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Foxit AgentInformation =>.Foxit Corporation O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 20/06/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Free Download Manager =>.FreeDownloadManager.com O43 - CFD: 11/12/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\GeoVid =>.Legitimate O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\IDM =>.IDM O43 - CFD: 30/01/2014 - [0] RSHD -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\InstallDir O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\IObit =>.IObit O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\KuaiZip =>.Superfluous.ShanghaiGuangle O43 - CFD: 25/11/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\LockHunter =>.Crystal Rich Ltd O43 - CFD: 19/09/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Lossless MP3 Cutter Joiner O43 - CFD: 06/10/2012 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 01/01/2008 - [] SD -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 11/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Mipony O43 - CFD: 03/01/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Mirillis =>.Mirillis O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 12/01/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\NCH Software =>.NCH Software O43 - CFD: 13/11/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\NeoDownloader O43 - CFD: 15/10/2012 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera =>.Opera Software O43 - CFD: 23/07/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 27/02/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\PC Cleaners =>PUP.Optional.PCCleaners O43 - CFD: 04/03/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\PCPro O43 - CFD: 25/02/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Picosmos =>.Picosmos O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Profiles =>.Microsoft Corporation O43 - CFD: 29/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Publish Providers =>.Unknow O43 - CFD: 23/01/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Python-Eggs =>.Python O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Real Desktop O43 - CFD: 14/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Reason Software Company Inc O43 - CFD: 08/11/2012 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Screaming Bee =>.Screaming Bee O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Skype =>.Skype O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\SlimBrowser =>.FlashPeak Inc O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Sony =>.Sony O43 - CFD: 27/02/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\TheWorld O43 - CFD: 19/06/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Thinstall =>.VMare O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\TuneUp Software =>.TuneUp Software O43 - CFD: 16/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\URSoft =>.URSoft O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\uTorrent O43 - CFD: 19/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 29/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Waves Audio =>.Waves Audio Ltd O43 - CFD: 28/02/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinPatrol =>.Bill2 Software O43 - CFD: 18/02/2017 - [0] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinSAPSvc =>PUP.Optional.Youndoo O43 - CFD: 15/06/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinTools O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\XBMC =>.XBMC O43 - CFD: 19/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 24/04/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Adobe =>.Adobe O43 - CFD: 06/10/2012 - [0] SHD -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 27/07/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Avg2014 =>.AVG Software O43 - CFD: 19/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\avgchrome O43 - CFD: 24/07/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Bhram O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\cache =>.Legitimate O43 - CFD: 18/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\DFX =>.DFX Power Technology O43 - CFD: 02/01/2008 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\DiskDrill =>.Clever Software O43 - CFD: 28/03/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Downloaded Installers =>.Legitimate O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 19/09/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\ffmpeg-avcodex O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Free Download Manager =>.FreeDownloadManager.com O43 - CFD: 06/04/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\FreemakeVideoConverter =>.Freemake O43 - CFD: 18/07/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Fun Face Master O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Global Downloader O43 - CFD: 15/01/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Google =>.Google O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Grecert O43 - CFD: 31/10/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Helexis O43 - CFD: 06/10/2012 - [0] SHD -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk =>Hijacker.Browser O43 - CFD: 18/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\MaxRecorder =>.Silver Vine LLC O43 - CFD: 08/09/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\MEGAsync =>.MegaSystems O43 - CFD: 27/07/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\MFAData =>.AVG Software O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 25/10/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Microsoft Games =>.Microsoft Corporation O43 - CFD: 04/01/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Mirillis =>.Mirillis O43 - CFD: 19/09/2013 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 15/10/2012 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Opera =>.Opera Software O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 23/03/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Prompt Downloader O43 - CFD: 18/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Remove_Empty_Directories =>.Jonas David John O43 - CFD: 26/11/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Sippoint O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Slimjet =>.FlashPeak Inc O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc =>.Superfluous.SlimWareUtilities O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Stardock =>.Stardock O43 - CFD: 19/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 06/10/2012 - [0] SHD -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\UCBrowser =>.UCWeb Inc O43 - CFD: 19/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Video Enhancer =>.Dee Mon O43 - CFD: 01/08/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 12/10/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Wondershare =>.Wondershare O43 - CFD: 09/01/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\[eMo] Web Browser Optimizer O43 - CFD: 18/02/2017 - [0] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 02/11/2012 - [] RD -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 01/08/2015 - [] RD -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 17/12/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DiskInternals =>.DiskInternals Research O43 - CFD: 25/02/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory =>.FormatFactory O43 - CFD: 28/04/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 27/07/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KoshyJohn.com O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 18/01/2017 - [0] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MiPony O43 - CFD: 01/01/2008 - [0] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mirillis =>.Mirillis O43 - CFD: 03/11/2015 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Omnimo UI O43 - CFD: 25/02/2016 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools =>.PicosmosTools O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery Software =>.Recovery Software O43 - CFD: 29/11/2015 - [] RD -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 08/01/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer =>.The KMPlayer Team O43 - CFD: 29/09/2013 - [0] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Timeworks O43 - CFD: 17/02/2017 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tweaking.com =>.Tweaking.com O43 - CFD: 30/01/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ =>.Atomix Production O43 - CFD: 30/01/2014 - [] D -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 06/10/2012 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 06/10/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 27/07/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg2014 =>.AVG Software O43 - CFD: 03/12/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 04/08/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\UCBrowser =>.UCWeb Inc O43 - CFD: 27/07/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\AVG2014 =>.AVG Software O43 - CFD: 20/07/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 15/09/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\McAfee =>.McAfee O43 - CFD: 08/08/2015 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Tencent =>.Superfluous.Tencent O43 - CFD: 12/02/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\TuneUp Software =>.TuneUp Software ---\\ ShellExecuteHook (1) - 0s O46 - SEH:ShellExecuteHooks - (no name) - [HKLM] - {B6940AB8-F36B-11E6-B17F-64006A5CFC23} . (...) -- (.not file.) ---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (13) - 4s O53 - SMSR:HKLM\...\startupreg\BingSvc [Key] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.© 2015 Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd O53 - SMSR:HKLM\...\startupreg\EaseUS EPM tray [Key] . (...) -- C:\Program Files\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\EaseUS EPM Tray Agent [Key] . (...) -- C:\Program Files\EaseUS\EaseUS Partition Master 10.8\bin\TrayPopupE\TrayTipAgentE.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\GoogleChromeAutoLaunch_2E2AF65B4E44F1EE382263FDDFC975A2 [Key] . (...) -- C:\Program Files\Google\Chrome\Application\chrome.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O53 - SMSR:HKLM\...\startupreg\Milouz Market [Key] . (.Milouz Corp - Milouz Market.) -- C:\Program Files\Milouz Corp\Milouz Market\Milouz Market.exe O53 - SMSR:HKLM\...\startupreg\NeXuS [Key] . (.Winstep Software Technologies - NeXuS.) -- C:\Program Files\Winstep\Nexus.exe =>.Winstep Software Technologies O53 - SMSR:HKLM\...\startupreg\Picosmos [Key] . (.Picosmos - Picosmos Tools.) -- C:\Program Files\PicosmosTools\PicosmosTools.exe =>.Picosmos O53 - SMSR:HKLM\...\startupreg\Speech Recognition [Key] . (.Microsoft Corporation - Reconnaissance vocale.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Sun Microsystems, Inc. - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Sun Microsystems, Inc. O53 - SMSR:HKLM\...\startupreg\TempCleaner [Key] . (.Copyright © 2013 - WindowsApplication2.) -- C:\Users\ISHAK_RAIL MADRID\Desktop\AutoCleanup.exe O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\uTorrent\uTorrent.exe ---\\ Liste des pilotes du système (89) - 55s O58 - SDL:2016/02/09 21:20:31 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\268E55D0.sys [170200] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79952] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [23616] =>.Microsoft Windows® O58 - SDL:2017/02/17 13:17:39 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\Windows\System32\drivers\AmUStor.sys [75416] =>.AlcorMicro, Corp.® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2010/01/05 19:20:10 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athur.sys [0] =>.Atheros Communications, Inc. O58 - SDL:2014/06/30 12:43:12 A . (.AVG Technologies CZ, s.r.o. - AVG File Vault Driver.) -- C:\Windows\System32\drivers\avgdiskx.sys [121624] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:06:40 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Driver.) -- C:\Windows\System32\drivers\avgidsdriverx.sys [199960] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:17:58 A . (.AVG Technologies CZ, s.r.o. - AVG Application Activity Monitor Helper Dri.) -- C:\Windows\System32\drivers\avgidshx.sys [147736] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:06:20 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Loader.) -- C:\Windows\System32\drivers\avgidsshimx.sys [21272] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:22:02 A . (.AVG Technologies CZ, s.r.o. - AVG AVI Loader Driver.) -- C:\Windows\System32\drivers\avgldx86.sys [188696] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:18:00 A . (.AVG Technologies CZ, s.r.o. - AVG Logging Driver.) -- C:\Windows\System32\drivers\avglogx.sys [241944] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:06:24 A . (.AVG Technologies CZ, s.r.o. - AVG Resident Shield Minifilter Driver.) -- C:\Windows\System32\drivers\avgmfx86.sys [98584] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:06:22 A . (.AVG Technologies CZ, s.r.o. - AVG Anti-Rootkit Driver.) -- C:\Windows\System32\drivers\avgrkx86.sys [27416] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2014/06/17 16:21:22 A . (.AVG Technologies CZ, s.r.o. - AVG Network connection watcher.) -- C:\Windows\System32\drivers\avgtdix.sys [197400] =>.AVG Technologies CZ, s.r.o.® O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2005/05/09 20:08:40 A . (.Team H2O - Team H2O CLEDX DevWhore.) -- C:\Windows\System32\drivers\cledx.sys [33792] O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2012/12/13 16:41:10 A . (.Windows (R) Win 7 DDK provider - Explore Systems Virtual Audio Device.) -- C:\Windows\System32\drivers\dfx11_1.sys [24424] =>.Power Technology® O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2015/12/10 06:10:04 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\Windows\System32\drivers\eubakup.sys [51752] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2015/12/10 06:10:04 A . (...) -- C:\Windows\System32\drivers\EUBKMON.sys [41512] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2015/12/10 06:10:06 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\Windows\System32\drivers\eudskacs.sys [15912] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2015/12/10 06:10:06 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\Windows\System32\drivers\EuFdDisk.sys [190504] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [0] =>.Broadcom Corporation O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2017/02/17 01:09:53 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\Windows\System32\drivers\HWiNFO32.SYS [23840] =>.Martin Malik - REALiX® O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332352] =>.Microsoft Windows® O58 - SDL:2016/05/24 15:29:12 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [134144] =>.Tonec Inc.® O58 - SDL:2009/09/23 19:18:14 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [0] =>.Intel Corporation O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2017/02/17 01:03:00 A . (.WinMount International Inc - WinMount Driver for x86.) -- C:\Windows\System32\drivers\KuaiZipDrive.sys [68128] =>.Superfluous.Tencent O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117312] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [142416] =>.Microsoft Windows® O58 - SDL:2012/10/15 13:25:17 A . (.VSO Software - low level access layer for CD/DVD/BD device.) -- C:\Windows\System32\drivers\pcouffin.sys [47360] =>.VSO Software O58 - SDL:2004/04/01 16:30:46 A . (.Padus, Inc. - Padus(R) ASPI Shell.) -- C:\Windows\System32\drivers\pfc.sys [10368] =>.Padus, Inc. O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [0] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2017/02/17 13:17:57 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [777736] =>.Realtek Semiconductor Corp.® O58 - SDL:2017/02/17 12:28:13 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [0] =>.Realtek Semiconductor Corp.® O58 - SDL:2008/05/15 14:47:54 A . (.Screaming Bee LLC - Screaming Bee Audio Driver.) -- C:\Windows\System32\drivers\ScreamingBAudio.sys [21920] =>.Screaming Bee LLC® O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2012/10/06 12:28:05 A . (...) -- C:\Windows\System32\drivers\sptd.sys [0] O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2002/11/25 05:46:16 A . (.Syncrosoft GmbH - SynasUSB.sys.) -- C:\Windows\System32\drivers\synasUSB.sys [16896] O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2013/09/21 15:24:28 A . (.Eugene V. Muzychenko - Kernel-mode WDM driver.) -- C:\Windows\System32\drivers\vrtaucbl.sys [61096] =>.NTONYX Ltd.® O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] =>.Microsoft Corporation O58 - SDL:2010/01/05 19:20:10 RA . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\athur.sys [0] =>.Atheros Communications, Inc. O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] =>.Microsoft Corporation O58 - SDL:2014/04/08 00:04:07 A . (...) -- C:\Windows\System32\sav85014.sys [1] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (46) - 121s O61 - LFC: 2017/02/17 12:27:55 A . (.Real Sound Lab SIA.) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\CONEQMSAPOGUILibrary.dll [101328] {16659E274C866804B365A1F8B14DF88A} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:27:58 A . (.Fortemedia Corporation.) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\FMAPO.dll [2912800] {326865D7EC76A4CFC6DE9FE57B8ED855} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:00 A . (.Knowles Acoustics.) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\KAAPORT.dll [369784] {443D7E8CCFB87BA460CFC4930B0776AC} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:10 A . (.Sound Research, Corp..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SEAPO32.dll [425832] {37E54C43CA216E310BB01F31ABB1AA} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:10 A . (.Sound Research, Corp..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SECOMN32.dll [721800] {37E54C43CA216E310BB01F31ABB1AA} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:10 A . (.Sound Research, Corp..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SEHDHF32.dll [865912] {37E54C43CA216E310BB01F31ABB1AA} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:10 A . (.Sound Research, Corp..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SEHDRA32.dll [735736] {37E54C43CA216E310BB01F31ABB1AA} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:11 A . (.TODO: .) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\slprp32.dll [232752] {0A420056F2FF66990053A5BBFD1DAF9C} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:11 A . (.Synopsys, Inc..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SRAPO.dll [401040] {37E54C43CA216E310BB01F31ABB1AA} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:11 A . (.Synopsys, Inc..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SRCOM.dll [341144] {37E54C43CA216E310BB01F31ABB1AA} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 12:28:11 A . (.Synopsys, Inc..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SRRPTR.dll [1074040] {37E54C43CA216E310BB01F31ABB1AA} =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6339.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6361.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6362.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6366.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6420.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6485.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6435.bin [640] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6465.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6485.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6485_SetSSC.bin [124] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCommand_MS1bit.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6339.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6361.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6362.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6366.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6420.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6485.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6435.bin [640] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6465.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6485.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6485_SetSSC.bin [124] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCommand_MS1bit.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6339.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6361.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6362.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6366.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6420.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6485.bin [8] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6435.bin [640] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6465.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6485.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6485_SetSSC.bin [124] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 13:17:39 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCommand_MS1bit.bin [32] =>.Superfluous.SlimWareUtilities O61 - LFC: 2017/02/17 01:09:12 A . (..) -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\Adobe\Manager.exe [73216] O61 - LFC: 2017/02/17 14:10:13 A . (.TODO: .) -- C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinSAPSvc\WinSAP.dll [184832] =>PUP.Optional.Youndoo ---\\ Associations Shell Spawning (8) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 2s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.FlashPeak Inc. - FlashPeak Slimjet.) -- C:\Program Files\Slimjet\slimjet.exe =>.FlashPeak Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. ---\\ Recherche d'infection sur les navigateurs (13) - 15s O69 - SBI: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] user_pref("browser.newtab.url", "http://www.trotux.com/?z=620a64eb0323270f46f85afg8zcb3m0o4b3t7c5o3b&from=icb&uid=MAXTORXSTM316021[...] =>.Superfluous.Trotux O69 - SBI: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] user_pref("browser.search.defaultenginename", "trotux"); =>.Superfluous.Trotux O69 - SBI: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] user_pref("browser.search.searchengine.hp", "http://www.trotux.com/?z=620a64eb0323270f46f85afg8zcb3m0o4b3t7c5o3b&from=icb&uid=MAXT[...] =>.Superfluous.Trotux O69 - SBI: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] user_pref("browser.search.searchengine.sp", "http://www.trotux.com/search/?from=icb&q={searchTerms}&type=sp&uid=MAXTORXSTM3160215A[...] =>.Superfluous.Trotux O69 - SBI: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] user_pref("browser.search.searchengine.url", "http://www.trotux.com/search/?from=icb&q={searchTerms}&type=sp&uid=MAXTORXSTM3160215[...] =>.Superfluous.Trotux O69 - SBI: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] user_pref("browser.search.selectedEngine", "trotux"); =>.Superfluous.Trotux O69 - SBI: prefs.js [ISHAK_RAIL MADRID - pj75n9l9.default-1487190349410] user_pref("browser.startup.homepage", "http://www.trotux.com/?z=620a64eb0323270f46f85afg8zcb3m0o4b3t7c5o3b&from=icb&uid=MAXTORXSTM[...] =>.Superfluous.Trotux O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ =>.Google Inc. ---\\ Enumère les services démarrés par Svchost (35) - 3s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168448] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [591360] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [667136] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473088] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [19968] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [285184] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [241664] =>.Microsoft Corporation O83 - Search Svchost Services: UxTuneUp (UxTuneUp) . (.TuneUp Software - TuneUp Theme Extension.) -- C:\Windows\System32\uxtuneup.dll [36152] =>.AVG Netherlands B.V.® O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [543232] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [0] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [589312] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [497152] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [46592] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [162816] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [749056] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102400] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (11) - 8s O87 - FAEL: "{30F15C2E-4660-4002-965C-15AA1D46EF0D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{AD4CEBFF-AB90-4009-A1A2-B16C7677015C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{B36889C5-D856-4AA5-9284-8A590174D05A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "TCP Query User{9196526E-CB34-4D68-81D8-B8EBD6093166}C:\program files\milouz corp\milouz market\milouz market.exe" [In-None-P6-TRUE] .(.Milouz Corp - Milouz Market.) -- C:\program files\milouz corp\milouz market\milouz market.exe O87 - FAEL: "UDP Query User{CD757E02-6931-4EE2-99F5-453848C19662}C:\program files\milouz corp\milouz market\milouz market.exe" [In-None-P17-TRUE] .(.Milouz Corp - Milouz Market.) -- C:\program files\milouz corp\milouz market\milouz market.exe O87 - FAEL: "{B70C705E-3F60-40A1-B15E-698A4C749775}" [In-None-P17-TRUE] .(...) -- C:\Program Files\IObit\Driver Booster\4.2.0\DriverBooster.exe (.not file.) O87 - FAEL: "{C5A0D635-4ED9-4C33-8E1C-B1FBFC749EC0}" [Out-None-P17-TRUE] .(...) -- C:\Program Files\IObit\Driver Booster\4.2.0\DriverBooster.exe (.not file.) O87 - FAEL: "{5CFAA632-8E00-4DBE-A8CC-558E642B79A9}" [In-None-P17-TRUE] .(...) -- C:\Program Files\IObit\Driver Booster\4.2.0\DBDownloader.exe (.not file.) O87 - FAEL: "{1A911E2C-4E70-4924-A31B-22C3F28435A8}" [Out-None-P17-TRUE] .(...) -- C:\Program Files\IObit\Driver Booster\4.2.0\DBDownloader.exe (.not file.) O87 - FAEL: "{8B4B1D32-D918-4971-85FB-C96A27A09229}" [In-None-P17-TRUE] .(...) -- C:\Program Files\IObit\Driver Booster\4.2.0\AutoUpdate.exe (.not file.) O87 - FAEL: "{1E9792B3-F783-412F-BC63-6833C99FDF4E}" [Out-None-P17-TRUE] .(...) -- C:\Program Files\IObit\Driver Booster\4.2.0\AutoUpdate.exe (.not file.) ---\\ Recherche des packages WindowsInstaller (1) - 2s [MD5.] [WIS][2015/04/23 09:02:01] (.APN, LLC - Ask.com ® - Install Builder.) -- C:\Windows\Installer\b50894.msi [516096] =>PUP.Optional.Bandoo ---\\ Liste des émulateurs de CD/DVD (MBR Hook) (18) - 16s HKLM\SOFTWARE\Microsoft\Tracing\apps hat-bg_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\apps hat-bg_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-codedownloader_RASAPI32 =>PUP.Optional.SoftwareEngine HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-codedownloader_RASMANCS =>PUP.Optional.SoftwareEngine HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-enabler_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-enabler_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-firefoxinstaller_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-firefoxinstaller_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-updater_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-updater_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\appshat_generic_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\appshat_generic_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\BetterInstaller_RASAPI32 =>PUP.Optional.MegaSearch HKLM\SOFTWARE\Microsoft\Tracing\BetterInstaller_RASMANCS =>PUP.Optional.MegaSearch HKLM\SOFTWARE\Microsoft\Tracing\BitLordInstaller - Cyber Update May_RASAPI32 =>PUP.Optional.WhenUSave HKLM\SOFTWARE\Microsoft\Tracing\BitLordInstaller - Cyber Update May_RASMANCS =>PUP.Optional.WhenUSave HKLM\SOFTWARE\Microsoft\Tracing\BitLord_Installer_RASAPI32 =>PUP.Optional.WhenUSave HKLM\SOFTWARE\Microsoft\Tracing\BitLord_Installer_RASMANCS =>PUP.Optional.WhenUSave ---\\ Scan Additionnel (92) - 1s HKLM\SYSTEM\CurrentControlSet\Services\WinSAPSvc =>PUP.Optional.Youndoo C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo HKLM\SYSTEM\CurrentControlSet\Services\WinSnare =>.Superfluous.WinSnare C:\Windows\System32\Tasks\BikaQ_FetchAndUpgrade_CanBeDel =>.Superfluous.BikaQ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9961627E-4059-41B4-8E0E-A7D6B3854ADF} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9961627E-4059-41B4-8E0E-A7D6B3854ADF} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9961627E-4059-41B4-8E0E-A7D6B3854ADF} =>.Superfluous.Orphan HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} =>.Superfluous.Orphan HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect C:\Program Files\BikaQRssReader =>.Superfluous.BikaQ C:\Program Files\VIO Player =>PUP.Optional.VIOPlayer C:\Program Files\WinSnare(4.1.1) =>.Superfluous.WinSnare C:\ProgramData\APN =>Toolbar.Ask C:\ProgramData\EmailNotifier =>PUP.Optional.EmailNotifier C:\ProgramData\InstallMate =>.Superfluous.Tarma C:\ProgramData\SlimWare Utilities, Inc =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\BitLord =>PUP.Optional.WhenUSave C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\dll-files.com =>PUP.Optional.DllFilesFixer C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\KuaiZip =>.Superfluous.ShanghaiGuangle C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\PC Cleaners =>PUP.Optional.PCCleaners C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\WinSAPSvc =>PUP.Optional.Youndoo C:\Users\ISHAK_RAIL MADRID\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk =>Hijacker.Browser C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc =>.Superfluous.SlimWareUtilities C:\Windows\System32\Config\systemprofile\AppData\Roaming\Tencent =>.Superfluous.Tencent C:\Windows\System32\drivers\KuaiZipDrive.sys =>.Superfluous.Tencent C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\CONEQMSAPOGUILibrary.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\FMAPO.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\KAAPORT.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SEAPO32.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SECOMN32.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SEHDHF32.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SEHDRA32.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\slprp32.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SRAPO.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SRCOM.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\hdaudio\func_01&ven_10ec&dev_0662\SRRPTR.dll =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6339.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6361.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6362.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6366.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6420.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\CardDetect6485.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6435.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6465.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6485.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCmd6485_SetSSC.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T143403841279\usb\vid_058f&pid_6362\VendorCommand_MS1bit.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6339.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6361.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6362.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6366.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6420.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\CardDetect6485.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6435.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6465.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6485.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCmd6485_SetSSC.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170217T185502214319\usb\vid_058f&pid_6362\VendorCommand_MS1bit.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6339.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6361.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6362.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6366.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6420.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\CardDetect6485.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6435.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6465.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6485.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCmd6485_SetSSC.bin =>.Superfluous.SlimWareUtilities C:\Users\ISHAK_RAIL MADRID\AppData\Local\SlimWare Utilities Inc\SlimDrivers\Backups\20170218T145041970068\usb\vid_058f&pid_6362\VendorCommand_MS1bit.bin =>.Superfluous.SlimWareUtilities C:\Windows\Installer\b50894.msi =>PUP.Optional.Bandoo HKLM\SOFTWARE\Microsoft\Tracing\apps hat-bg_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\apps hat-bg_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-codedownloader_RASAPI32 =>PUP.Optional.SoftwareEngine HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-codedownloader_RASMANCS =>PUP.Optional.SoftwareEngine HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-enabler_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-enabler_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-firefoxinstaller_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-firefoxinstaller_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-updater_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\Apps Hat-updater_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\appshat_generic_RASAPI32 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\appshat_generic_RASMANCS =>PUP.Optional.CrossRider HKLM\SOFTWARE\Microsoft\Tracing\BetterInstaller_RASAPI32 =>PUP.Optional.MegaSearch HKLM\SOFTWARE\Microsoft\Tracing\BetterInstaller_RASMANCS =>PUP.Optional.MegaSearch HKLM\SOFTWARE\Microsoft\Tracing\BitLordInstaller - Cyber Update May_RASAPI32 =>PUP.Optional.WhenUSave HKLM\SOFTWARE\Microsoft\Tracing\BitLordInstaller - Cyber Update May_RASMANCS =>PUP.Optional.WhenUSave HKLM\SOFTWARE\Microsoft\Tracing\BitLord_Installer_RASAPI32 =>PUP.Optional.WhenUSave HKLM\SOFTWARE\Microsoft\Tracing\BitLord_Installer_RASMANCS =>PUP.Optional.WhenUSave C:\Users\ISHAK_RAIL MADRID\AppData\Roaming\ezpinst.exe =>Heuristic.Suspect ---\\ Récapitulatif des éléments trouvés sur votre station (26) - 0s https://www.anti-malware.top/2016/06/18/superfluous-youndoo/ =>PUP.Optional.Youndoo https://nicolascoolman.eu/2017/01/12/superfluous-winsnare/ =>.Superfluous.WinSnare https://nicolascoolman.eu/2017/02/17/superfluous-bikaq/ =>.Superfluous.BikaQ https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent https://www.anti-malware.top/2016/07/03/superfluous-trotux/ =>.Superfluous.Trotux https://www.nicolascoolman.com/fr/pup-babylon/ =>PUP.Optional.Babylon https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider https://www.nicolascoolman.com/fr/pup-optional-dllfilesfixer/ =>PUP.Optional.DllFilesFixer https://www.nicolascoolman.com/fr/adware-secretsauce/ =>PUP.Optional.SecretSauce https://www.nicolascoolman.com/forum/post33195.html#p33195 =>.Superfluous.SlimWareUtilities https://nicolascoolman.eu/2017/01/01/adware-toptools/ =>Adware.TopTools https://www.anti-malware.top/2016/04/22/adware-installcore/ =>Adware.InstallCore https://www.nicolascoolman.com/fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.ShanghaiGuangle https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Downloader https://www.nicolascoolman.com/fr/pup-vioplayer/ =>PUP.Optional.VIOPlayer https://www.anti-malware.top/2016/09/22/toolbar-ask/ =>Toolbar.Ask https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.EmailNotifier https://www.nicolascoolman.com/fr/pup-tarma/ =>.Superfluous.Tarma https://www.nicolascoolman.com/fr/adware-whenusave/ =>PUP.Optional.WhenUSave https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.PCCleaners https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser https://www.nicolascoolman.com/fr/adware-bandoo/ =>PUP.Optional.Bandoo https://www.nicolascoolman.com/fr/hijacker-trovigo/ =>PUP.Optional.SoftwareEngine https://www.nicolascoolman.com/fr/adware-megasearch/ =>PUP.Optional.MegaSearch ~ Unselected Options: O82, ~ End of the scan, 21803 items in 19mn20s (1468)(0)