~ ZHPDiag v2017.3.22.49 Par Nicolas Coolman (2017/03/22) ~ Démarré par Abdou (Administrator) (2017/03/23 14:40:10) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Abdou\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Abdou\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation ---\\ Navigateurs Internet (3) - 0s ~ GCIE: Google Chrome v56.0.2924.87 ~ MFIE: Mozilla Firefox 38.0.5 (x86 fr) ~ MSIE: Internet Explorer v10.0.9200.16721 ---\\ Informations sur les produits Windows (4) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (1) - 1s Kaspersky Internet Security v16.0.1.445 (Protection) ---\\ Surveillance de Logiciels (1) - 2s ~ Adobe Flash Player 19 PPAPI (Surveillance) ---\\ Logiciels de partage P2P (1) - 2s ~ GreedyTorrent v1.01 beta build 170 (P2P) ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8340.472 MB (69% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 76 GB (29%) free of 260 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ROG-ABDOU ~ User Name: Abdou ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 76 GB free of 260 GB (System) ~ Drive D: has 111 GB free of 429 GB ~ Drive E: has 36 GB free of 357 GB ~ Drive F: has 69 GB free of 357 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 0s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 16/01/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [317400] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 16/01/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [317400] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 16/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [317400] =>.Microsoft Corporation [MD5.D28B35DE88D27EFB27DF4B1E8319E3C0] - 16/01/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [317400] =>.Microsoft Corporation [MD5.1151B1BAA6F350B1DB6598E0FEA7C457] - 16/01/2017 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [317400] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 16/01/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [317400] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 16/01/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [317400] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 16/01/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [317400] =>.Microsoft Corporation [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 16/01/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [317400] =>.Microsoft Corporation [MD5.314C17917AC8523EC77A710215012A65] - 16/01/2017 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [317400] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 16/01/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [317400] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 16/01/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [317400] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 16/01/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [317400] =>.Microsoft Corporation [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 16/01/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [317400] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 16/01/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [317400] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 16/01/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [317400] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 16/01/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [317400] =>.Microsoft Corporation [MD5.A5D9106A73DC88564C825D317CAC68AC] - 16/01/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [317400] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 16/01/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [317400] =>.Microsoft Corporation [MD5.B98F8C6E31CD07B2E6F71F7F648E38C0] - 16/01/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [317400] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 16/01/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [317400] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 16/01/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [317400] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 16/01/2017 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [317400] =>.Microsoft Corporation [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - 16/01/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [317400] =>.Microsoft Corporation [MD5.DF8126BD41180351A093A3AD2FC8903B] - 16/01/2017 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [317400] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (29) - 1s O23 - Service: ASLDR Service (ASLDRService) . (.ASUS - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: ASUS InstantOn Service (ASUS InstantOn) . (.ASUS - ASUS InstantOn Program.) - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: Asus process privilege adjust service (AsusUacSvc) . (.Copyright (C) 2009 - Asus Uac Service App.) - C:\Program Files\ASUS\Rotation Desktop for G Series\AsusUacSvc.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc. - Content Service.) - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe =>.Autodesk, Inc. O23 - Service: Kaspersky Anti-Virus Service 16.0.1 (AVP16.0.1) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe =>.Kaspersky Lab® O23 - Service: BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation - Bluetooth Application.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe =>.IVT CORPORATION® O23 - Service: devolo Network Service (DevoloNetworkService) . (.devolo AG - devolo Network Service.) - C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe =>.devolo AG® O23 - Service: Fan Filter Checker Service (FanChkService) . (.ASUSTek Computer Inc. - Fan Filter Checker Service Application.) - C:\Program Files (x86)\ASUS\ASUS Fan Filter Checker\FanChkSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (...) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® O23 - Service: KingoSoftService (KingoSoftService) . (...) - C:\Users\Abdou\AppData\Local\Kingosoft\Kingo Root\update_13895\bin\KingoSoftService.exe =>.Finger Power Technology Co., Ltd.® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - D:\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: Mobizen plugin (Mobizen plugin) . (...) - D:\MobizenService\MobizenService.exe (.not file.) O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation® O23 - Service: Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts - OriginWebHelperService.) - D:\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.® O23 - Service: Bitdefender 60-Second Virus Scanner Service (pdserv) . (...) - C:\Program Files\Bitdefender\60-Second Virus Scanner\pdscan.exe (.not file.) O23 - Service: SafeIPS (SafeIPS) . (.SafeIP - .) - D:\SafeIP\SafeIPS.exe =>.SafeIP O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH - TeamViewer 9.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe =>.TeamViewer® O23 - Service: TunnelBear Maintenance (TunnelBearMaintenance) . (.TunnelBear - TBear.Maintenance.) - D:\TunnelBear\TBear.Maintenance.exe =>.TunnelBear, Inc.® O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) . (.VIA Technologies, Inc. - Service binary.) - C:\Windows\system32\viakaraokesrv.exe =>.VIA Technologies, Inc. O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare AppService.) - C:\Program Files (x86)\Wondershare\WAF\2.3.0.5\WsAppService.exe =>.Wondershare ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (41) - 254s SR - Auto [16/01/2017] [ 317400] ASLDR Service (ASLDRService) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.® SR - Auto [16/01/2017] [ 317400] ASUS InstantOn Service (ASUS InstantOn) . (.ASUS.) - C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe =>.ASUSTeK Computer Inc.® SR - Auto [16/01/2017] [ 317400] Asus process privilege adjust service (AsusUacSvc) . (.Copyright (C) 2009.) - C:\Program Files\ASUS\Rotation Desktop for G Series\AsusUacSvc.exe SR - Auto [16/01/2017] [ 317400] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.® SR - Auto [16/01/2017] [ 317400] Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc..) - C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe =>.Autodesk, Inc. SR - Auto [16/01/2017] [ 317400] Kaspersky Anti-Virus Service 16.0.1 (AVP16.0.1) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe =>.Kaspersky Lab® SR - Auto [16/01/2017] [ 317400] BlueSoleilCS (BlueSoleilCS) . (.IVT Corporation.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe =>.IVT CORPORATION® SR - Demand [16/01/2017] [ 317400] BsHelpCS (BsHelpCS) . (.IVT Corporation.) - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe =>.IVT CORPORATION® SS - Demand [16/01/2017] [ 317400] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-Service.exe =>.BlueStack Systems, Inc.® SS - Demand [16/01/2017] [ 317400] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe =>.BlueStack Systems, Inc.® SS - Demand [16/01/2017] [ 317400] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe =>.BlueStack Systems, Inc.® SR - Auto [16/01/2017] [ 317400] devolo Network Service (DevoloNetworkService) . (.devolo AG.) - C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe =>.devolo AG® SR - Auto [16/01/2017] [ 317400] Fan Filter Checker Service (FanChkService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ASUS Fan Filter Checker\FanChkSrv.exe =>.ASUSTeK Computer Inc.® SS - Demand [16/01/2017] [ 317400] FlexNet Licensing Service 64 (FlexNet Licensing Service 64) . (.Flexera Software LLC.) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe =>.Flexera Software LLC® SS - Auto [16/01/2017] [ 317400] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [16/01/2017] [ 317400] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [16/01/2017] [ 317400] Google Updater Service (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [16/01/2017] [ 317400] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® SR - Auto [16/01/2017] [ 317400] Intel(R) ME Service (Intel(R) ME Service) . (...) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation® SR - Auto [16/01/2017] [ 317400] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® SR - Auto [16/01/2017] [ 317400] KingoSoftService (KingoSoftService) . (...) - C:\Users\Abdou\AppData\Local\Kingosoft\Kingo Root\update_13895\bin\KingoSoftService.exe =>.Finger Power Technology Co., Ltd.® SS - Demand [16/01/2017] [ 317400] klvssbrigde64 (klvssbrigde64) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\vssbridge64.exe =>.Kaspersky Lab® SR - Auto [16/01/2017] [ 317400] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Auto [16/01/2017] [ 317400] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - D:\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [16/01/2017] [ 317400] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [16/01/2017] [ 317400] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation® SS - Demand [16/01/2017] [ 317400] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation® SR - Auto [16/01/2017] [ 317400] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® SR - Auto [16/01/2017] [ 317400] NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation® SS - Demand [16/01/2017] [ 317400] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - D:\Origin\OriginClientService.exe =>.Electronic Arts, Inc.® SS - Auto [16/01/2017] [ 317400] Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts.) - D:\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.® SS - Demand [16/01/2017] [ 317400] PAExec (PAExec) . (.Power Admin LLC.) - C:\Windows\PAExec.exe =>.Power Admin LLC® SR - Auto [16/01/2017] [ 317400] SafeIPS (SafeIPS) . (.SafeIP.) - D:\SafeIP\SafeIPS.exe =>.SafeIP SS - Auto [16/01/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [16/01/2017] [ 317400] (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated SR - Auto [16/01/2017] [ 317400] TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe =>.TeamViewer® SR - Auto [16/01/2017] [ 317400] TunnelBear Maintenance (TunnelBearMaintenance) . (.TunnelBear.) - D:\TunnelBear\TBear.Maintenance.exe =>.TunnelBear, Inc.® SS - Demand [16/01/2017] [ 317400] Intel(R) Turbo Boost Technology Monitor 2.5 (TurboBoost) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TurboBoost\TurboBoost.exe =>.Intel(R) Software® SR - Auto [16/01/2017] [ 317400] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SR - Auto [16/01/2017] [ 317400] VIA Karaoke digital mixer Service (VIAKaraokeService) . (.VIA Technologies, Inc..) - C:\Windows\system32\viakaraokesrv.exe =>.VIA Technologies Inc.® SR - Auto [16/01/2017] [ 317400] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.3.0.5\WsAppService.exe =>.Wondershare ---\\ Tâches planifiées en automatique (40) - 4s [MD5.0FEDC24834D26DDB558D12C15F182FDD] [APT] [ASUS P4G] (.ASUS.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [317400] (.Activate.) =>.ASUS [MD5.ED759B7FD51466447CC31CBE79B99050] [APT] [ASUS USB Charger Plus] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [317400] (.Activate.) =>.ASUSTeK Computer Inc.® [MD5.C34E47DFB4468EC32F63C0309AF7BE7D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [317400] (.Activate.) =>.Piriform Ltd® [MD5.2D8BBF6C7241AAD9EDE7708EBB7B43A4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [317400] (.Activate.) =>.Google Inc® [MD5.2D8BBF6C7241AAD9EDE7708EBB7B43A4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [317400] (.Activate.) =>.Google Inc® [MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [317400] (.Activate.) =>.Intel® Services Manager® [MD5.C7AAC31A910E4BBFDF94D3786ED13E71] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [317400] (.Activate.) =>.Intel® Services Manager® [MD5.00000000000000000000000000000000] [APT] [JetBoost_AutoUpdate] (...) -- D:\JetBoost\AutoUpdate.exe (.not file.) [317400] (.Activate.) [MD5.2A5C656B0A364580E578B26EAE2EE889] [APT] [klcp_update] (.KLite Inc.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [317400] (.Activate.) =>.KLite Inc [MD5.CEF487606A4D64DC9A5F4D76EEE996AA] [APT] [NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [317400] (.Activate.) =>.NVIDIA Corporation® [MD5.1C6289672DB8FD12F1732CC0223022CA] [APT] [NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [317400] (.Activate.) =>.NVIDIA Corporation® [MD5.915B93CC8F435D84FF39F8E55B457166] [APT] [NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [317400] (.Activate.) =>.NVIDIA Corporation® [MD5.915B93CC8F435D84FF39F8E55B457166] [APT] [NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [317400] (.Activate.) =>.NVIDIA Corporation® [MD5.330BE3D50A1A64E60EC3F83F61B45F41] [APT] [NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [317400] (.Activate.) =>.NVIDIA Corporation® [MD5.6BDFC89931F09122204604095CB4FB7E] [APT] [NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [317400] (.Activate.) =>.NVIDIA Corporation® [MD5.6BDFC89931F09122204604095CB4FB7E] [APT] [NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [317400] (.Activate.) =>.NVIDIA Corporation® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] [APT] [{077936A5-D04C-4383-A31A-0B919DACC736}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [317400] (.Activate.) =>.Google Inc® [MD5.00000000000000000000000000000000] [APT] [{57169999-917F-464F-B94B-68D2F384D66C}] (...) -- F:\Ace Combat Assault\TPTB-ACAHEE\Ace Combat Assault Horizon\Ace Combat_AH.exe (.not file.) [317400] (.Activate.) O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job [317400] =>.Intel® Services Manager® O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job [317400] =>.Intel® Services Manager® O39 - APT: ASUS P4G - (.ASUS.) -- C:\Windows\System32\Tasks\ASUS P4G [317400] =>.ASUS O39 - APT: ASUS USB Charger Plus - (.ASUSTek Computer Inc..) -- C:\Windows\System32\Tasks\ASUS USB Charger Plus [317400] =>.ASUSTeK Computer Inc.® O39 - APT: ATKOSD2 - (...) -- C:\Windows\System32\Tasks\ATKOSD2 [317400] (.Orphan.) =>.Superfluous.Orphan O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [317400] =>.Piriform Ltd® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [317400] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [317400] =>.Google Inc® O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d [317400] =>.Intel® Services Manager® O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon [317400] =>.Intel® Services Manager® O39 - APT: JetBoost_AutoUpdate - (...) -- C:\Windows\System32\Tasks\JetBoost_AutoUpdate [317400] (.Orphan.) =>.Superfluous.Orphan O39 - APT: klcp_update - (.KLite Inc.) -- C:\Windows\System32\Tasks\klcp_update [317400] =>.KLite Inc O39 - APT: NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [317400] =>.NVIDIA Corporation® O39 - APT: NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [317400] =>.NVIDIA Corporation® O39 - APT: NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [317400] =>.NVIDIA Corporation® O39 - APT: NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [317400] =>.NVIDIA Corporation® O39 - APT: NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [317400] =>.NVIDIA Corporation® O39 - APT: NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [317400] =>.NVIDIA Corporation® O39 - APT: NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} [317400] =>.NVIDIA Corporation® O39 - APT: Unknown - (.Microsoft Corporation.) -- C:\Windows\System32\Tasks\SidebarExecute [317400] =>.Microsoft Corporation O39 - APT: {077936A5-D04C-4383-A31A-0B919DACC736} - (.Google Inc..) -- C:\Windows\System32\Tasks\{077936A5-D04C-4383-A31A-0B919DACC736} [317400] =>.Google Inc® O39 - APT: {57169999-917F-464F-B94B-68D2F384D66C} - (...) -- C:\Windows\System32\Tasks\{57169999-917F-464F-B94B-68D2F384D66C} [317400] (.Orphan.) =>.Superfluous.Orphan ---\\ Applications lancées au démarrage du système (52) - 1s O4 - HKLM\..\Run: [CucusoftNetGuard] (.Orphan.) =>.Superfluous.Orphan O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated® O4 - HKLM\..\Run: [IntelTBRunOnce] . (...) -- C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs O4 - HKLM\..\Run: [gpuminer] C:\Users\Abdou\AppData\Roaming\cpuminer\sgminer\sgminer.cmd (.not file.) =>PUP.Optional.CPUminer O4 - HKLM\..\Run: [C-cleaner] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O4 - HKLM\..\Run: [Andy] C:\Program Files\Andy\HandyAndy.exe (.not file.) O4 - HKLM\..\Run: [AmIcoSinglun64] . (.Alcor Micro Corp. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe =>.Alcor Micro Corp. O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation O4 - HKLM\..\Run: [Malwarebytes TrayApp] . (.Malwarebytes - Malwarebytes Tray Application.) -- D:\ANTI-MALWARE\mbamtray.exe =>.Malwarebytes Corporation® O4 - HKCU\..\Run: [AdobeBridge] (.Orphan.) =>.Superfluous.Orphan O4 - HKCU\..\Run: [Qsocial] C:\Program Files (x86)\QSocial\QSocial.exe (.not file.) O4 - HKCU\..\Run: [pdiface] C:\Program Files\Bitdefender\60-Second Virus Scanner\pdiface.exe (.not file.) O4 - HKCU\..\Run: [ISUSPM] . (.Acresso Corporation - Acresso Software Manager.) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe =>.Acresso Software Inc.® O4 - HKCU\..\Run: [iLivid] C:\Users\Abdou\AppData\Local\iLivid\iLivid.exe (.not file.) =>Adware.Bandoo O4 - HKCU\..\Run: [Google+ Auto Backup] C:\Users\Abdou\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe (.not file.) O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\DAEMON Tools Lite\DTLite.exe =>.Disc Soft Ltd® O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Abdou\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB® O4 - HKCU\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\Abdou\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - HKLM\..\Wow6432Node\Run: [Wireless Console 3] . (.ASUSTeK Computer Inc. - A program that manage wireless devices in s.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe =>.Intel Corporation® O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated O4 - HKLM\..\Wow6432Node\Run: [Nuance PDF Reader-reminder] . (.Nuance Communications, Inc. - Ereg.) -- C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe =>.Nuance Communications, Inc.® O4 - HKLM\..\Wow6432Node\Run: [HDAudDeck] . (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe =>.VIA Technologies Inc.® O4 - HKLM\..\Wow6432Node\Run: [HControlUser] . (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [Gaming Mouse Hid] . (.Copyright (C) 2007 - hid MFC Application.) -- C:\Program Files (x86)\Gaming Mouse\hid.exe O4 - HKLM\..\Wow6432Node\Run: [CPMonitor] . (.Copyright (C) 2008 - CPMonitor Application.) -- C:\Program Files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe =>.Sonic Solutions® O4 - HKLM\..\Wow6432Node\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe =>.CyberLink® O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe =>.BlueStack Systems, Inc.® O4 - HKLM\..\Wow6432Node\Run: [ATKOSD2] . (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [ATKMEDIA] . (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ecareme - AsusWebStorage.) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe =>.eCareme Technologies, Inc.® O4 - HKLM\..\Wow6432Node\Run: [ASUSPRP] . (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe =>.ASUSTek Computer Inc. O4 - HKLM\..\Wow6432Node\Run: [ASUS Screen Saver Protector] . (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [ACMON] . (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe =>.ASUSTeK Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe =>.Wondershare O4 - HKLM\..\Wow6432Node\Run: [BtTray] . (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe =>.IVT CORPORATION® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [AdobeBridge] (.Orphan.) =>.Superfluous.Orphan O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [Qsocial] C:\Program Files (x86)\QSocial\QSocial.exe (.not file.) O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [pdiface] C:\Program Files\Bitdefender\60-Second Virus Scanner\pdiface.exe (.not file.) O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [ISUSPM] . (.Acresso Corporation - Acresso Software Manager.) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe =>.Acresso Software Inc.® O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [iLivid] C:\Users\Abdou\AppData\Local\iLivid\iLivid.exe (.not file.) =>Adware.Bandoo O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [Google+ Auto Backup] C:\Users\Abdou\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe (.not file.) O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- D:\DAEMON Tools Lite\DTLite.exe =>.Disc Soft Ltd® O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Abdou\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB® O4 - HKUS\S-1-5-21-3027178423-1279331041-1559872610-1001\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\Abdou\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® ---\\ Processus lancés (64) - 1s [MD5.9ED416624F400FBC82113AC35EAC224C] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784] [PID.756] =>.NVIDIA Corporation® [MD5.3E71C8EF55318002B93B623E8EF81562] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1288248] [PID.1176] =>.NVIDIA Corporation® [MD5.A3626C6D3F2DC95497F3F61842D7FD89] - (.ASUS - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [80512] [PID.1816] =>.ASUSTeK Computer Inc.® [MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1848] =>.ASUSTeK Computer Inc.® [MD5.52436245AAEF3B65DF7859949AB6A14E] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120] [PID.1556] =>.ASUSTeK Computer Inc.® [MD5.B6EF28ECEE73B624D56DF30AD562AE8D] - (.Copyright (C) 2009 - Asus Uac Service App.) -- C:\Program Files\ASUS\Rotation Desktop for G Series\AsusUacSvc.exe [113840] [PID.1592] [MD5.3817558D8D5BBC8B0F190CF0D7C4720F] - (.Autodesk, Inc. - Content Service.) -- C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288] [PID.1240] =>.Autodesk, Inc. [MD5.09F0E4D1F66C40AB770AD1540758C59E] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe [236928] [PID.2108] =>.Kaspersky Lab® [MD5.4A3BD67E9BF8210356FE020EE686EE52] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1579880] [PID.2128] =>.IVT CORPORATION® [MD5.3856D54FD710AB60B8C7A443BC625EAA] - (.Cucusoft, Inc. - Cucusoft SysMsg Proxy and Data Log Service.) -- D:\NetGuard\SysMsgProxySrvc.sys [255136] [PID.2256] {0100000000012AF714B12B} [MD5.C344E9B44C05326218B07AFB8A2AE754] - (.devolo AG - devolo Network Service.) -- C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [3883544] [PID.2276] =>.devolo AG® [MD5.440698D7CF32AA990B295AFA40EE9517] - (.ASUSTek Computer Inc. - Fan Filter Checker Service Application.) -- C:\Program Files (x86)\ASUS\ASUS Fan Filter Checker\FanChkSrv.exe [45696] [PID.2352] =>.ASUSTeK Computer Inc.® [MD5.7C76466F4E0F76CE259C6005D161E9E8] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [627936] [PID.2468] =>.Intel® Upgrade Service® [MD5.D7467E57549960468E0CA85C17185B12] - (...) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280] [PID.2544] =>.Intel Corporation® [MD5.604A8615BB3D7064197A0563C799B938] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.2592] =>.Intel Corporation® [MD5.17DB94893B34D4A3B6B5A2634A5135B3] - (...) -- C:\Users\Abdou\AppData\Local\Kingosoft\Kingo Root\update_13895\bin\KingoSoftService.exe [17376] [PID.2668] =>.Finger Power Technology Co., Ltd.® [MD5.CEF487606A4D64DC9A5F4D76EEE996AA] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784] [PID.2716] =>.NVIDIA Corporation® [MD5.40B216E2D52371BC377C892FE83E63E9] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408] [PID.2748] =>.NVIDIA Corporation® [MD5.20DDC9CED8BC8390138F3187E0FF7411] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [174720] [PID.3780] =>.ASUSTeK Computer Inc.® [MD5.EA75E0837B21B46E88102E23438FE2CB] - (.ASUS - ASUS InstantOn Program.) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe [289408] [PID.3932] =>.ASUSTeK Computer Inc.® [MD5.D9AB754613208112B840C75B6762B909] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [322176] [PID.4056] =>.ASUSTeK Computer Inc.® [MD5.ED759B7FD51466447CC31CBE79B99050] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [1121448] [PID.4068] =>.ASUSTeK Computer Inc.® [MD5.21E2B3845F1946B47B69FAAE328758FE] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [425408] [PID.4084] =>.NVIDIA Corporation® [MD5.149126216A694E6BA84E92ECA77AAE3B] - (.ASUS - ATKOSD.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe [2488888] [PID.3200] =>.ASUSTeK Computer Inc.® [MD5.0FEDC24834D26DDB558D12C15F182FDD] - (.ASUS - Power4Gear Hybrid.) -- C:\Program Files\ASUS\P4G\BatteryLife.exe [986544] [PID.3220] =>.ASUS [MD5.4A7C441D99D86704D194E7678873B95D] - (.ASUS - WDC.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe [174648] [PID.2184] =>.ASUSTeK Computer Inc.® [MD5.287C64659B259AA170B91E9BA4F1878A] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe [218648] [PID.3724] =>.Kaspersky Lab® [MD5.119EDA9D849D4DE0F42A5BCF757D6CE0] - (.SafeIP - .) -- D:\SafeIP\SafeIPS.exe [3860480] [PID.4568] =>.SafeIP [MD5.8EA86BC14E5AE25E4DA5C742587FB1A4] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [4915040] [PID.4436] =>.TeamViewer® [MD5.FF5474C94C1F06AEBB9906005FA98121] - (.TunnelBear - TBear.Maintenance.) -- D:\TunnelBear\TBear.Maintenance.exe [38272] [PID.4620] =>.TunnelBear, Inc.® [MD5.55AC3A6E4BCB420DB796B2CF8D02E1E6] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2454976] [PID.4708] =>.NVIDIA Corporation® [MD5.00000000000000000000000000000000] - (.VIA Technologies, Inc. - Service binary.) -- C:\Windows\system32\viakaraokesrv.exe [0] [PID.5284] =>.VIA Technologies, Inc. [MD5.04F75064637D7409519DD52B61E8BB43] - (.Wondershare - Wondershare AppService.) -- C:\Program Files (x86)\Wondershare\WAF\2.3.0.5\WsAppService.exe [415232] [PID.5312] =>.Wondershare [MD5.4490896F4491FD5F1BE601BA9C8245BD] - (.Alcor Micro Corp. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [361984] [PID.7012] =>.Alcor Micro Corp. [MD5.6BF7676296D5359AFC135A5397000053] - (.Acresso Corporation - Acresso Software Manager.) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496] [PID.5940] =>.Acresso Software Inc.® [MD5.BCAD71A4D347781B57D1392712008739] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Abdou\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1446000] [PID.7192] =>.Spotify AB® [MD5.B9BF29CC884BDD499803C3ED1F97FA41] - (.ASUSTeK Computer Inc. - A program that manage wireless devices in s.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2321072] [PID.7636] =>.ASUSTeK Computer Inc.® [MD5.4D241A6A8F6BA9FA32FF836551FFDCEA] - (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608] [PID.7644] =>.Intel Corporation® [MD5.713E871D7FF6A61AE32FFD688AD0E55A] - (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5138032] [PID.7668] =>.VIA Technologies Inc.® [MD5.5AEBF6FA9805C9101220AA4FB4FA17E7] - (.ASUS - HControlUser.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016] [PID.7676] =>.ASUSTeK Computer Inc.® [MD5.4A331A90739639237950DAEDB4DA7E11] - (.Copyright (C) 2007 - hid MFC Application.) -- C:\Program Files (x86)\Gaming Mouse\hid.exe [428544] [PID.7684] [MD5.623514B305C8105780F2C6815556E846] - (.Copyright (C) 2008 - CPMonitor Application.) -- C:\Program Files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe [84464] [PID.7876] =>.Sonic Solutions® [MD5.35048D8E8A0BF7A797CD5757ACD7EED0] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816] [PID.8000] =>.CyberLink® [MD5.F44E4401D32DFECA88F29450BC643B15] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe [883280] [PID.8012] =>.BlueStack Systems, Inc.® [MD5.ECC2579E416A8CDB5D57C01D8D4A17E8] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [145656] [PID.8084] =>.IVT CORPORATION® [MD5.E23A2BEA01988A0C2E5DA74F5F526793] - (.Copyright (C) 2007 - Tray MFC Application.) -- C:\Program Files (x86)\Gaming Mouse\Tray.exe [221184] [PID.8128] [MD5.BC31B27061F27E8968CD0435C038F712] - (.ASUS - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720] [PID.7256] =>.ASUSTeK Computer Inc.® [MD5.37DEB76A2CF005841C4E45DE2B94D84F] - (.ASUS - AsScrPro.) -- C:\Windows\AsScrPro.exe [3058304] [PID.8604] =>.ASUSTeK Computer Inc.® [MD5.64A7C84C0A8C79B22033F92D43919062] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [102568] [PID.8788] =>.ASUSTeK Computer Inc.® [MD5.B773FB92E558FFF3CB67D82E6084BDD8] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [389368] [PID.8928] =>.IVT CORPORATION® [MD5.395CB6E8C67BFB1063AD86987909C184] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288] [PID.9116] =>.Oracle America, Inc.® [MD5.98CADC34741738CFC24F5CDFDAA408FA] - (.ASUSTeK - ACEngSvr Module.) -- C:\Windows\SysWOW64\ACEngSvr.exe [162456] [PID.8244] =>.ASUSTeK Computer Inc.® [MD5.9B6F472FE0AC693BF761806EA58F951D] - (.Node.js - NVIDIA Web Helper Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe [15547328] [PID.6212] =>.NVIDIA Corporation® [MD5.AB41542FA180CB3317F597ED7E7D5C5D] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.9988] =>.Intel Corporation® [MD5.182BBA1B43898D5DA0938D2E9A526B31] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.10428] =>.Intel Corporation® [MD5.36E2A1C50429E3CDC74F9F0C9B7841BB] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Abdou\AppData\Roaming\ZHP\ZHPDiag3.exe [2712064] [PID.5916] =>.Nicolas Coolman [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.6384] =>.Google Inc® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.10396] =>.Google Inc® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.4712] =>.Google Inc® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.3076] =>.Google Inc® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.5116] =>.Google Inc® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.9248] =>.Google Inc® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.4888] =>.Google Inc® [MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.1200] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (17) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://4-edge-chat.facebook.com =>.Facebook G0 - GCSP: Preferences [User Data\Default][HomePage] http://fb-s-a-a.akamaihd.net =>.Superfluous.AkamaiHD G0 - GCSP: Preferences [User Data\Default][HomePage] http://fb-s-b-a.akamaihd.net =>.Superfluous.AkamaiHD G0 - GCSP: Preferences [User Data\Default][HomePage] http://fb-s-c-a.akamaihd.net =>.Superfluous.AkamaiHD G0 - GCSP: Preferences [User Data\Default][HomePage] http://fb-s-d-a.akamaihd.net =>.Superfluous.AkamaiHD G0 - GCSP: Preferences [User Data\Default][HomePage] http://fbexternal-a.akamaihd.net =>.Superfluous.AkamaiHD G0 - GCSP: Preferences [User Data\Default][HomePage] http://gc.kis.scr.kaspersky-labs.com =>.Kaspersky Labs G0 - GCSP: Preferences [User Data\Default][HomePage] http://scontent-mrs1-1.xx.fbcdn.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com =>.Facebook G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.dz =>.Google Inc. G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aapbdbdomjkkjkaonfhkkikfgjllcleb] __MSG_8969005060131950570__ =>.Google Inc. G2 - GCE: Preference [User Data\Default] [fiombgjlkfpdpkbhfioofeeinbehmajg] __MSG_word_title__ G2 - GCE: Preference [User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module =>.IDM Computer Solutions, Inc. G2 - GCE: Preference [User Data\Default] [lpeeaghdjmhlakojjcgfdhgcejdaefmi] __MSG_ExtensionName__ =>.America On Line Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (24) - 1s M0 - MFSP: prefs.js [Abdou - 1wiobo5e.default] http://www.malwarebytes.org/ P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation® P2 - EXT: (.Microsoft Corporation - Office Plugin for Netscape Navigator.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\NPOFF12.DLL =>.Microsoft Corporation® P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin2.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin3.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin4.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin5.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin6.dll =>.Apple Inc. P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npqtplugin7.dll =>.Apple Inc. P2 - EXT: (.Apple Inc..) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class =>.Apple Inc. P2 - EXT FILE: (.Aaron Boodman; http://youngpup.net/ - A User Script Manager for Firefox.) -- C:\Users\Abdou\AppData\Roaming\Mozilla\Firefox\Profiles\1wiobo5e.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi =>.Aaron Boodman; http://youngpup.net/ P2 - EXT: (.Amazon Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml =>.Amazon Corporation P2 - EXT: (.Bing.com.) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml =>.Bing.com P2 - EXT: (.TLFi.) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml =>.TLFi P2 - EXT: (.Unknow.) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (.eBay.) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml =>.eBay P2 - EXT: (.Google Inc..) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml =>.Google Inc. P2 - EXT: (.Wikipedia.) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml =>.Wikipedia P2 - EXT: (.Yahoo! Inc..) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml =>.Yahoo! Inc. P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@esn/npbattlelog,version=2.7.1] - (.EA Digital Illusions CE AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll =>.EA Digital Illusions CE AB P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=15.4.3502.0922] - (.Microsoft.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll =>.Microsoft ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc. R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (4336) ---\\ Browser Helper Object de navigateur (BHO) (4) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {03993315-5CE9-4F00-8790-D14A94F1D91A} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll =>.Kaspersky Lab® O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (.Orphan.) O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} (.Orphan.) ---\\ Raccourcis Global Startup (102) - 4s O4 - GS\Desktop [Abdou]: BattleField 1.lnk . (.EA Digital Illusions CE AB - Battlefield™ 1.) F:\Bf1\bf1.exe =>.EA Digital Illusions CE AB O4 - GS\Desktop [Abdou]: DomiNations.lnk . (.BlueStack Systems, Inc. - BlueStacks App Runner.) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -p com.nexonm.dominations.adk -a com.nexon.dominations.DomLauncher =>.BlueStack Systems, Inc.® O4 - GS\Desktop [Abdou]: Far Cry Primal.lnk . (.Ubisoft Entertainment - Far Cry Primal.) F:\Far Cry Primal\bin\FCPrimal.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [Abdou]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google O4 - GS\Desktop [Abdou]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Abdou\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Desktop [Abdou]: Watch Dogs 2.lnk . (.Ubisoft Entertainment - WatchDogs2.) F:\Watch_Dogs 2\bin\WatchDogs2.exe {11217434CE12989FCB6DCE237ADADAA42F99} =>.Ubisoft Entertainment O4 - GS\Desktop [Abdou]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Abdou\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Abdou]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Abdou]: Internet Explorer.LNK . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Abdou]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Abdou]: Renee Undeleter.lnk . (.Rene.E Laboratory - Recover your important files immediately!.) D:\Undeleter\ReneeUndeleter.exe =>.Rene.E Laboratory Co., Ltd.® O4 - GS\sendTo [Abdou]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Abdou]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Abdou]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 9.) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe --sendto =>.TeamViewer® O4 - GS\sendTo [Abdou]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Abdou]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\Abdou\AppData\Local\Viber\Viber.exe ShareFiles =>.Viber Media S.à r.l.® O4 - GS\TaskBar [Abdou]: ASUS Resource Center.lnk . (.Microsoft Corporation - Serveur de la plateforme Device Stage.) C:\Windows\System32\Dxpserver.exe /c =>.Microsoft Corporation O4 - GS\TaskBar [Abdou]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Abdou]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Abdou]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\Abdou\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.® O4 - GS\TaskBar [Abdou]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Startup [Abdou]: C-cleaner.lnk . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) C:\Windows\system32\wscript.exe /e:VBScript.Encode D:\$RECYCLEBIN\Adobe.rar =>.Microsoft Corporation O4 - GS\Programs [Abdou]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Abdou]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Abdou\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Desktop [Administrateur]: BattleField 1.lnk . (.EA Digital Illusions CE AB - Battlefield™ 1.) F:\Bf1\bf1.exe =>.EA Digital Illusions CE AB O4 - GS\Desktop [Administrateur]: DomiNations.lnk . (.BlueStack Systems, Inc. - BlueStacks App Runner.) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -p com.nexonm.dominations.adk -a com.nexon.dominations.DomLauncher =>.BlueStack Systems, Inc.® O4 - GS\Desktop [Administrateur]: Far Cry Primal.lnk . (.Ubisoft Entertainment - Far Cry Primal.) F:\Far Cry Primal\bin\FCPrimal.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [Administrateur]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google O4 - GS\Desktop [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Abdou\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Desktop [Administrateur]: Watch Dogs 2.lnk . (.Ubisoft Entertainment - WatchDogs2.) F:\Watch_Dogs 2\bin\WatchDogs2.exe {11217434CE12989FCB6DCE237ADADAA42F99} =>.Ubisoft Entertainment O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Abdou\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Internet Explorer.LNK . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: Renee Undeleter.lnk . (.Rene.E Laboratory - Recover your important files immediately!.) D:\Undeleter\ReneeUndeleter.exe =>.Rene.E Laboratory Co., Ltd.® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Administrateur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 9.) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe --sendto =>.TeamViewer® O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\Abdou\AppData\Local\Viber\Viber.exe ShareFiles =>.Viber Media S.à r.l.® O4 - GS\TaskBar [Administrateur]: ASUS Resource Center.lnk . (.Microsoft Corporation - Serveur de la plateforme Device Stage.) C:\Windows\System32\Dxpserver.exe /c =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrateur]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\Abdou\AppData\Local\Viber\Viber.exe =>.Viber Media S.à r.l.® O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\Startup [Administrateur]: C-cleaner.lnk . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) C:\Windows\system32\wscript.exe /e:VBScript.Encode D:\$RECYCLEBIN\Adobe.rar =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Abdou\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Child of Light.lnk . (.Ubisoft Entertainment - Child of Light.) F:\Child of Light\ChildofLight.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\CommonDesktop [Public]: FIFA 16.lnk . (.Electronic Arts - FIFA 16.) D:\Program Files (x86)\Origin Games\FIFA 16\fifa16.exe =>.Electronic Arts® O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - NVIDIA GeForce Experience.) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe =>.NVIDIA Corporation® O4 - GS\CommonDesktop [Public]: Kaspersky Internet Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe =>.Kaspersky Lab® O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) D:\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: SAP2000 14.lnk . (.Computers and Structures, Inc. - SAP2000.) D:\SAP2000\Sap2000.exe =>.Computers and Structures, Inc. O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Abdou\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: AsusVibeLauncher.lnk . (.ASUSTeK Computer Inc. - AsusVibe Application.) C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe /start =>.ASUSTek Computer Inc. O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS6 (64bit).lnk . (.Adobe Systems, Inc. - Adobe Bridge CS6.) C:\Program Files\Adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe ExtendScript Toolkit CS6.lnk . (.Adobe Systems Incorporated - ExtendScript Toolkit CS6 and Debugger (32 b.) C:\Program Files (x86)\Adobe\Adobe Utilities - CS6\ExtendScript Toolkit CS6\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Extension Manager CS6.lnk . (.Adobe Systems Incorporated - Adobe Extension Manager CS6.) C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Adobe Extension Manager CS6.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CS6 (64 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) C:\Program Files\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Assassin's Creed Unity.lnk . (...) E:\Assassin's Creed Unity\ACU.exe O4 - GS\ProgramsCommon [Public]: Emplacements Bluetooth.lnk . (...) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsExecuteModule.exe IVT_OPEN_BLUETOOTH_PLACES =>.IVT CORPORATION® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: HD VDeck.lnk . (.VIA - VIA HD Audio CPL.) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe =>.VIA Technologies Inc.® O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: TeamViewer 9.lnk . (.TeamViewer GmbH - TeamViewer 9.) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe =>.TeamViewer® O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 41.110.30.2 8.8.8.8 =>.Private IP O17 - HKLM\System\CCS\Services\Tcpip\..\{E870E623-2932-4337-ABAE-7FB702F535DD}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Inc O17 - HKLM\System\CCS\Services\Tcpip\..\{E870E623-2932-4337-ABAE-7FB702F535DD}: DhcpNameServer = 41.110.30.2 8.8.8.8 =>.Private IP ---\\ Protocole additionnel (23) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (153) - 11s O42 - Logiciel: Acoustica Effects Pack - (.Acoustica, Inc.) [HKLM][64Bits] -- Acoustica Effects Pack =>.Acoustica, Inc O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 19 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} =>.Adobe Systems Incorporated® O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- {A104C276-2B05-41A7-8263-7F7BF6C70D04} =>.Alcor Micro Corp. O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor =>.Alcor Micro Corp. O42 - Logiciel: Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation O42 - Logiciel: ASUS AI Recovery - (.ASUS.) [HKLM][64Bits] -- {D39F0676-163E-4595-A917-E28F99BBD4D2} =>.ASUS O42 - Logiciel: ASUS Fan Filter Checker - (.ASUS.) [HKLM][64Bits] -- {2B0E8920-47D0-4F4D-BE03-76397409B837} =>.ASUS O42 - Logiciel: ASUS LifeFrame3 - (.ASUS.) [HKLM][64Bits] -- {1DBD1F12-ED93-49C0-A7CC-56CBDE488158} =>.ASUS O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} =>.ASUS O42 - Logiciel: ASUS Power4Gear Hybrid - (.ASUS.) [HKLM][64Bits] -- {9B6239BF-4E85-4590-8D72-51E30DB1A9AA} =>.ASUS O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} =>.ASUS O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF} =>.ASUS O42 - Logiciel: ASUS Virtual Camera - (.ASUS.) [HKLM][64Bits] -- {EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1} =>.ASUS O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage =>.eCareme Technologies, Inc. O42 - Logiciel: AsusScr_G75 Series_ENG - (.ASUS.) [HKLM][64Bits] -- AsusScr_G75 Series_ENG =>.ASUSTeK Computer Inc.® O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0 =>.ASUSTeK O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Atheros Communications Inc. O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} =>.Atheros O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} =>.ASUS O42 - Logiciel: AutoCAD 2014 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-D001-0000-0102-0060B0CE6BBA} =>.Autodesk, Inc® O42 - Logiciel: AutoCAD 2014 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-D001-040C-2102-0060B0CE6BBA} =>.Autodesk O42 - Logiciel: AutoCAD 2014 Language Pack - Français (French) - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-D001-040C-1102-0060B0CE6BBA} =>.Autodesk O42 - Logiciel: Autodesk App Manager - (.Autodesk.) [HKLM][64Bits] -- {C070121A-C8C5-4D52-9A7D-D240631BD433} =>.Autodesk O42 - Logiciel: Autodesk AutoCAD 2014 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- AutoCAD 2014 - Français (French) =>.Autodesk, Inc® O42 - Logiciel: Autodesk AutoCAD 2014 - Français (French) SP1 - (.Autodesk.) [HKLM][64Bits] -- AutoCAD 2014 - Français (French) SP1 =>.Autodesk O42 - Logiciel: Autodesk Content Service - (.Autodesk.) [HKLM][64Bits] -- {62F029AB-85F2-0000-866A-9FC0DD99DDBC} =>.Autodesk O42 - Logiciel: Autodesk Content Service - (.Autodesk.) [HKLM][64Bits] -- Autodesk Content Service =>.Autodesk, Inc® O42 - Logiciel: Autodesk Content Service Language Pack - (.Autodesk.) [HKLM][64Bits] -- {62F029AB-85F2-0001-866A-9FC0DD99DDBC} =>.Autodesk O42 - Logiciel: Autodesk DWG TrueView 2016 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- DWG TrueView 2016 - Français (French) =>.Autodesk, Inc® O42 - Logiciel: Autodesk Featured Apps - (.Autodesk.) [HKLM][64Bits] -- {F732FEDA-7713-4428-934B-EF83B8DD65D0} =>.Autodesk O42 - Logiciel: Autodesk Material Library 2014 - (.Autodesk.) [HKLM][64Bits] -- {644F9B19-A462-499C-BF4D-300ABC2A28B1} =>.Autodesk O42 - Logiciel: Autodesk Material Library Base Resolution Image Library 2014 - (.Autodesk.) [HKLM][64Bits] -- {51BF3210-B825-4092-8E0D-66D689916E02} =>.Autodesk O42 - Logiciel: Autodesk ReCap - (.Autodesk.) [HKLM][64Bits] -- {31ABA3F2-0000-1033-0102-111D43815377} =>.Autodesk O42 - Logiciel: Autodesk ReCap - (.Autodesk.) [HKLM][64Bits] -- Autodesk ReCap =>.Autodesk, Inc® O42 - Logiciel: Autodesk ReCap Language Pack-English - (.Autodesk.) [HKLM][64Bits] -- {31ABA3F2-0010-1033-0102-111D43815377} =>.Autodesk O42 - Logiciel: Babel Obfuscator 4 - (.Alberto Ferrazzoli.) [HKLM][64Bits] -- {17856158-5A86-4F9F-BC69-19129B2B3059} O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.® O42 - Logiciel: Battlefield™ 1 - (.Electronic Arts.) [HKLM][64Bits] -- {335B50BC-6130-4BAF-9A6A-F1561270587B} =>.Electronic Arts, Inc.® O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent =>.BitTorrent Inc® O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {1996E857-C787-4205-B4FF-73FDB117DCED} =>.BlueStack Systems, Inc. O42 - Logiciel: BotRevolt Free 1.4.3 - (.BotRevolt.) [HKLM][64Bits] -- {41BB8B6E-3337-4655-8FBB-2295A460619C}_is1 O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Child of Light - (..) [HKLM][64Bits] -- Q2hpbGRvZkxpZ2h0_is1 O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink® O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink® O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink® O42 - Logiciel: CyberLink Media Suite - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink® O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink® O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink® O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd O42 - Logiciel: devolo Cockpit - (.devolo AG.) [HKLM][64Bits] -- dlancockpit =>.devolo AG® O42 - Logiciel: DirectX 9 Runtime - (.Sonic Solutions.) [HKLM][64Bits] -- {AF9E97C1-7431-426D-A8D5-ABE40995C0B1} =>.Sonic Solutions O42 - Logiciel: Disk Drill 2.0.0.285 - (.CleverFiles.) [HKLM][64Bits] -- {396B3F71-9DEC-4806-983B-4A174E7C4B2F} =>.CleverFiles O42 - Logiciel: DWG TrueView 2016 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-F028-040C-0100-0060B0CE6BBA} =>.Autodesk O42 - Logiciel: Far Cry Primal - (.Ubisoft.) [HKLM][64Bits] -- {80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1 =>.Ubisoft O42 - Logiciel: FARO LS 1.1.501.0 (64bit) - (.FARO Scanner Production.) [HKLM][64Bits] -- {8A470330-70B2-49AD-86AF-79885EF9898A} =>.FARO Scanner Production O42 - Logiciel: FIFA 16 - (.Electronic Arts.) [HKLM][64Bits] -- {28FA2805-7992-4A28-844B-040C57204718} =>.Electronic Arts O42 - Logiciel: Fraps - (.Beepa.) [HKLM][64Bits] -- Fraps =>.Beepa O42 - Logiciel: GameFast.exe - (.ASUSTEK Computer Inc.) [HKLM][64Bits] -- GameFast_is1 =>.ASUSTek Computer Inc O42 - Logiciel: Gaming Mouse - (.ASUS.) [HKLM][64Bits] -- {C52DE33F-117A-4EC8-8A32-084E828D7B1E} =>.Macrovision Corporation® O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E} =>.Google O42 - Logiciel: GreedyTorrent v1.01 beta build 170 - (.Alex N J (www.alexnj.com).) [HKLM][64Bits] -- GreedyTorrent_is1 O42 - Logiciel: InstantOn for NB - (.ASUS.) [HKLM][64Bits] -- {749F674B-2674-47E8-879C-5626A06B2A91} =>.ASUS O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {A6C48A9F-694A-4234-B3AA-62590B668927} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) Turbo Boost Technology Monitor 2.5 - (.Intel.) [HKLM][64Bits] -- {6C9365EB-1F9E-4893-9196-3EC77C88D0C5} =>.Intel O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel Corporation® O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {538B98C3-773F-4F20-9C66-802D104DCBE2} =>.Intel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Java 8 Update 121 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180121F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {F575F386-57EF-4943-B003-A13F13B05EEB} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{F575F386-57EF-4943-B003-A13F13B05EEB} =>.Kaspersky Lab O42 - Logiciel: Kingo ROOT version 1.5.0.2927 - (.Kingosoft Technology Ltd..) [HKLM][64Bits] -- {AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1 =>.Kingosoft Technology Ltd. O42 - Logiciel: K-Lite Mega Codec Pack 10.8.5 - (.KLite Inc.) [HKLM][64Bits] -- KLiteCodecPack_is1 =>.KLite Inc O42 - Logiciel: Malwarebytes version 3.0.6.1469 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: Mediatek Bluetooth - (.Mediatek.) [HKLM][64Bits] -- {9ACFC67B-786F-CC9B-847A-D0350FF6F5E0} =>.Mediatek O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mises à jour NVIDIA 23.23.30.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 38.0.5 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Mp3tag v2.79 - (.Florian Heidenreich.) [HKLM][64Bits] -- Mp3tag =>.Florian Heidenreich O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {ED7943A4-2FF0-4096-BBEA-DE3CC206E3D4} =>.Nero AG O42 - Logiciel: Notepad++ (64-bit x64) - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: Nuance PDF Reader - (.Nuance Communications, Inc..) [HKLM][64Bits] -- {B480904D-F73F-4673-B034-8A5F492C9184} =>.Nuance Communications, Inc. O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience 3.4.0.70 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Logiciel système PhysX 9.16.0318 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote 3D Vision 378.78 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.23 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote graphique 378.78 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session =>.NVIDIA Corporation O42 - Logiciel: NVIDIA ShadowPlay 3.4.0.70 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo =>.NVIDIA Corporation® O42 - Logiciel: NVIDIA Telemetry Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Audio 3.51.2 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation O42 - Logiciel: NvNodejs - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation O42 - Logiciel: NvTelemetry - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corporation O42 - Logiciel: NvvHci - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci =>.NVIDIA Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {10160000-007E-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin =>.Electronic Arts, Inc.® O42 - Logiciel: Panneau de configuration NVIDIA 378.78 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 =>.Google, Inc. O42 - Logiciel: Platform - (.VIA Technologies, Inc..) [HKLM][64Bits] -- {20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: Renee Undeleter 2016.4.15.191 - (.Rene.E Laboratory.) [HKLM][64Bits] -- {EE1F41BE-6DBD-44AE-9F97-4D7F9227329D}_is1 =>.Rene.E Laboratory O42 - Logiciel: Rotation Desktop for G Series.exe - (.ASUSTEK Computer Inc.) [HKLM][64Bits] -- Rotation Desktop for G Series_is1 =>.ASUSTek Computer Inc O42 - Logiciel: Roxio AACS Certificate - (.Roxio.) [HKLM][64Bits] -- {0C4FF2FE-9E75-4DBF-B2DA-11CE1F10C4B5} =>.Roxio O42 - Logiciel: Roxio CinePlayer - (.Roxio.) [HKLM][64Bits] -- {8E369C3C-0A4D-45AF-AED1-1C24B0F62327} =>.Roxio O42 - Logiciel: Roxio CinePlayer - (.Roxio.) [HKLM][64Bits] -- {C03F3D5B-0D83-4F81-A324-32F4E7F1BF6A} =>.Sonic Solutions® O42 - Logiciel: SafeIP - (.SafeIP.) [HKLM][64Bits] -- SAFEIP_is1 =>.SafeIP O42 - Logiciel: SAP2000 14 - (.Computers and Structures.) [HKLM][64Bits] -- {6C5C87D2-FA46-4438-81FC-0D27E23435BD} =>.Computers and Structures O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation O42 - Logiciel: Should I Remove It - (.Reason Software Company Inc..) [HKCU][64Bits] -- Should I Remove It 1.0.4 =>.Reason Software Company Inc. O42 - Logiciel: Should I Remove It - (.Reason Software Company Inc..) [HKLM][64Bits] -- {4E62123C-4C0D-4123-A8A2-C0103B92D7EA} =>.Reason Software Company Inc. O42 - Logiciel: SketchUp Import for AutoCAD 2014 - (.Autodesk.) [HKLM][64Bits] -- {644E9589-F73A-49A4-AC61-A953B9DE5669} =>.Autodesk O42 - Logiciel: Skype™ 7.32 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify =>.Spotify AB® O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: TeamViewer 9 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer 9 =>.TeamViewer® O42 - Logiciel: The Crew (Worldwide) - (.Ubisoft.) [HKLM][64Bits] -- Uplay Install 413 =>.Ubisoft Entertainment Sweden AB® O42 - Logiciel: TunnelBear - (.TunnelBear.) [HKLM][64Bits] -- {1d805fba-7655-411e-a641-51f4f8e6bd5b} =>.TunnelBear, Inc.® O42 - Logiciel: TunnelBear - (.TunnelBear.) [HKLM][64Bits] -- {C0A3B957-2B11-404F-9FFC-D97E7D175681} =>.TunnelBear O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft Entertainment Sweden AB® O42 - Logiciel: VIA Platform Device Manager - (.VIA Technologies, Inc..) [HKLM][64Bits] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: Viber - (.Viber Media Inc..) [HKCU][64Bits] -- {d96d3a07-b1fd-4625-b739-627196eb9aac} =>.Viber Media S.à r.l.® O42 - Logiciel: Viber - (.Viber Media Inc..) [HKLM][64Bits] -- {86B6B943-6740-425C-9968-43EDEBEE6742} =>.Viber Media Inc. O42 - Logiciel: VLC media player 2.1.0 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: Vulkan Run Time Libraries 1.0.39.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.39.1 =>.LunarG, Inc.® O42 - Logiciel: Watch_Dogs 2 - (.Ubisoft.) [HKLM][64Bits] -- {B0E33297-78B1-4B37-B8C1-39150F2DEE43}_is1 =>.Ubisoft O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} =>.ASUS O42 - Logiciel: WinRAR 5.00 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wireless Console 3 - (.ASUS.) [HKLM][64Bits] -- {19EA33FB-B34E-40EA-8B8A-61743AEB795A} =>.ASUS O42 - Logiciel: Wondershare PDF Converter Pro (Build 3.2.0) - (.Wondershare Software.) [HKLM][64Bits] -- {26F5F9E6-284C-4443-B8AA-0C0DC94AD78A}_is1 =>.Wondershare Software ---\\ HKCU & HKLM Software Keys (229) - 11s HKLM\SOFTWARE\Wow6432Node\31347247-8bab-171b-1569-728a42ee64cd =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Acoustica =>.Acoustica HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. =>.Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\AsLdr =>.ASUSTeK HKLM\SOFTWARE\Wow6432Node\ASUS =>.ASUS HKLM\SOFTWARE\Wow6432Node\Atheros =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Atheros Communications Inc. =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Autodesk =>.Autodesk HKLM\SOFTWARE\Wow6432Node\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Wow6432Node\AVG Secure Search =>.AVG Secure Search HKLM\SOFTWARE\Wow6432Node\BlueStacks =>.BlueStack Systems, Inc. HKLM\SOFTWARE\Wow6432Node\BlueStacksGameManager =>.BlueStack Systems, Inc. HKLM\SOFTWARE\Wow6432Node\BreakPoint =>.BreakPoint HKLM\SOFTWARE\Wow6432Node\Bunndle =>.Unknow HKLM\SOFTWARE\Wow6432Node\CleverFiles =>.CleverFiles HKLM\SOFTWARE\Wow6432Node\CLSYSTEM =>.ClSystem HKLM\SOFTWARE\Wow6432Node\Computers and Structures, Inc. =>.Computers and Structures, Inc. HKLM\SOFTWARE\Wow6432Node\Conduit =>.Superfluous.Conduit HKLM\SOFTWARE\Wow6432Node\Cucusoft HKLM\SOFTWARE\Wow6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Wow6432Node\devolo HKLM\SOFTWARE\Wow6432Node\Disc Soft =>.Disc Soft HKLM\SOFTWARE\Wow6432Node\DivXNetworks =>.DivXNetworks HKLM\SOFTWARE\Wow6432Node\DT Soft =>.DT Soft Ltd HKLM\SOFTWARE\Wow6432Node\EA Games =>.EA Games HKLM\SOFTWARE\Wow6432Node\EA Sports =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat =>.EasyAntiCheat HKLM\SOFTWARE\Wow6432Node\ECAREME =>.Ecareme HKLM\SOFTWARE\Wow6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\Wow6432Node\Eset =>.ESET HKLM\SOFTWARE\Wow6432Node\Florian Heidenreich =>.Florian Heidenreich HKLM\SOFTWARE\Wow6432Node\Fraps =>.Beepa HKLM\SOFTWARE\Wow6432Node\GNU =>.GNU HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\Greatis =>.Greatis Software HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\Wow6432Node\IO3O =>.IO3O LLC HKLM\SOFTWARE\Wow6432Node\IVT Corporation =>.IVT Corporation HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Wow6432Node\KasperskyLab =>.Kaspersky Labs HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\Wow6432Node\LAV =>.LAV Inc HKLM\SOFTWARE\Wow6432Node\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\Wow6432Node\MercurySteam =>.MercurySteam HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero =>.Ahead Corporation HKLM\SOFTWARE\Wow6432Node\Ntpad =>.Ntpad HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\Wow6432Node\Oberon Media =>.Oberon Media HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\OdinM =>.Legitimate HKLM\SOFTWARE\Wow6432Node\OpenVPN =>.OpenVPN Technologie HKLM\SOFTWARE\Wow6432Node\Opera Software =>.Opera Software HKLM\SOFTWARE\Wow6432Node\Origin =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\Origin Games =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\Ralink Corporation =>.Ralink Corporation HKLM\SOFTWARE\Wow6432Node\Red Gate HKLM\SOFTWARE\Wow6432Node\Remo Software =>.Remo Software HKLM\SOFTWARE\Wow6432Node\Rene.E Laboratory =>.Rene.E Laboratory HKLM\SOFTWARE\Wow6432Node\Rockstar Games =>.Rockstar Games HKLM\SOFTWARE\Wow6432Node\Roxio =>.Roxio HKLM\SOFTWARE\Wow6432Node\ScanSoft =>.Scansoft HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\Software =>.Unknow HKLM\SOFTWARE\Wow6432Node\SOHU HKLM\SOFTWARE\Wow6432Node\Sonic =>.Sonic HKLM\SOFTWARE\Wow6432Node\Steganos =>.Steganos HKLM\SOFTWARE\Wow6432Node\Stellar information Systems ltd. =>.Stellar Systems HKLM\SOFTWARE\Wow6432Node\TallApplications HKLM\SOFTWARE\Wow6432Node\TeamViewer =>.TeamViewer HKLM\SOFTWARE\Wow6432Node\Tencent =>.Superfluous.Tencent HKLM\SOFTWARE\Wow6432Node\Thingummy Software HKLM\SOFTWARE\Wow6432Node\trendmicro =>.TrendMicro HKLM\SOFTWARE\Wow6432Node\TunnelBear =>.TunnelBear HKLM\SOFTWARE\Wow6432Node\Ubisoft =>.Ubisoft HKLM\SOFTWARE\Wow6432Node\UCBrowserPID =>.UCWeb Inc. HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve HKLM\SOFTWARE\Wow6432Node\VIA Technologies, Inc =>.VIA Technologies, Inc HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\VST =>.Virtual Studio Technology HKLM\SOFTWARE\Wow6432Node\WafCX =>.WafCX HKLM\SOFTWARE\Wow6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\XinYi Network =>.XinYi Network HKLM\SOFTWARE\Wow6432Node\Zeon =>.Zeon HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\301b5fcf8ce2fab8868e80b6c1f912fe =>PUP.Optional.CrossRider HKCU\SOFTWARE\46d93431630fc8e404fed7204e708738 =>PUP.Optional.CrossRider HKCU\SOFTWARE\9e16c401f72f35f8d08e45d698def37c =>PUP.Optional.CrossRider HKCU\SOFTWARE\Acoustica =>.Acoustica HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Affinix =>.Affinix Software HKCU\SOFTWARE\Andy =>.Android Studio HKCU\SOFTWARE\APN PIP =>.Superfluous.Conduit HKCU\SOFTWARE\Apowersoft =>.Apowersoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\Applied Acoustics Systems =>.Applied Acoustics Systems HKCU\SOFTWARE\ASUS =>.ASUS HKCU\SOFTWARE\Atheros =>.Qualcomm Atheros HKCU\SOFTWARE\ATK0100 =>.ATK0100 HKCU\SOFTWARE\Audacity =>.Audacity HKCU\SOFTWARE\Autodesk =>.Autodesk HKCU\SOFTWARE\AVG Secure Search =>.AVG Secure Search HKCU\SOFTWARE\Bitdefender =>.Bitdefender HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment HKCU\SOFTWARE\BreakPoint =>.BreakPoint HKCU\SOFTWARE\BreakPoint License Manager HKCU\SOFTWARE\Caphyon =>.Caphyon HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CleverFiles =>.CleverFiles HKCU\SOFTWARE\Cleverfiles Software HKCU\SOFTWARE\Codemasters Software Ltd HKCU\SOFTWARE\Conduit =>.Superfluous.Conduit HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Cyotek HKCU\SOFTWARE\Disc Soft =>.Disc Soft HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\ECAREME =>.Ecareme HKCU\SOFTWARE\ej-technologies =>.ej-technologies HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts HKCU\SOFTWARE\EMU =>.Games Software HKCU\SOFTWARE\Enigma Protector HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\file repair =>.File Repair HKCU\SOFTWARE\FileHippo =>.FileHippo HKCU\SOFTWARE\FLEXnet =>.FlexNet HKCU\SOFTWARE\Fraps3 =>.Beepa HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GlassWire =>.SecureMix HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Greatis =>.Greatis Software HKCU\SOFTWARE\GreedyTorrent HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\IGearSettings =>PUP.Optional.IGearSettings HKCU\SOFTWARE\iLivid =>Adware.Bandoo HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\InstallShield =>.InstallShield HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKCU\SOFTWARE\KasperskyLabSetup =>.Kaspersky Labs HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\LiveSupport HKCU\SOFTWARE\Luminitix HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Macrovision =>.Macrovision HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\MCAFEE =>.McAfee Inc. HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\MiniGet =>.MiniSoft HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\njRAT v0.6.4 HKCU\SOFTWARE\Northcode Inc =>.Northcode Inc HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\PELock HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\ProtectedStorage HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Razer =>.Razer HKCU\SOFTWARE\Reason =>.Propellerhead HKCU\SOFTWARE\Red Gate HKCU\SOFTWARE\Red Gate Software Ltd =>.Red Gate Software Ltd HKCU\SOFTWARE\RegisteredApplicationsEx =>PUP.Optional.SfKpCouponApp HKCU\SOFTWARE\Regrun HKCU\SOFTWARE\Resplendence Sp =>.Resplendence Software HKCU\SOFTWARE\RSUPPORT =>.RSUPPORT HKCU\SOFTWARE\SafeIP =>.SafeIP HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\SOHU HKCU\SOFTWARE\Sonic =>.Sonic HKCU\SOFTWARE\Spiderling Games HKCU\SOFTWARE\Spotify =>.Spotify HKCU\SOFTWARE\Steganos =>.Steganos HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\TallApplications HKCU\SOFTWARE\TeamViewer =>.TeamViewer HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKCU\SOFTWARE\THEGFW =>.Games Software HKCU\SOFTWARE\THETA AnIn HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\TunnelBear =>.TunnelBear HKCU\SOFTWARE\ubisoft =>.Ubisoft HKCU\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKCU\SOFTWARE\undelete360 HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\UpdateStar HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\VIA =>.VIA HKCU\SOFTWARE\Viber =>.Viber HKCU\SOFTWARE\Vitalwerks =>.Vitalwerks HKCU\SOFTWARE\Wallpapers Bot HKCU\SOFTWARE\Wargaming.net =>.Wargaming.net HKCU\SOFTWARE\WebApp =>.Superfluous.Downloader HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\XinYi Network =>.XinYi Network HKCU\SOFTWARE\Zeon =>.Zeon HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\ZiYuXuan HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft HKCU\SOFTWARE\AppDataLow\Software\SmartBar =>PUP.Optional.QuickShare ---\\ Contenu des dossiers Programmes (426) - 6s O43 - CFD: 13/01/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\ASUS =>.ASUS O43 - CFD: 04/07/2015 - [] D -- C:\Program Files\Autodesk =>.Autodesk O43 - CFD: 23/09/2014 - [0] D -- C:\Program Files\Bitdefender =>.Bitdefender O43 - CFD: 28/05/2014 - [] D -- C:\Program Files\BreakPoint Software O43 - CFD: 13/10/2013 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 15/03/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 16/01/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 15/05/2014 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 26/10/2013 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 01/12/2015 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 04/02/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 17/04/2014 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 10/03/2017 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 24/10/2015 - [0] D -- C:\Program Files\Rockstar Games =>.Rockstar Games O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/02/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 18/02/2011 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 05/04/2016 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 13/01/2014 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\AmIcoSingLun =>.Alcor Micro Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\ASUS =>.ASUS O43 - CFD: 12/02/2015 - [0] D -- C:\Program Files (x86)\Athan O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Atheros =>.Qualcomm Atheros O43 - CFD: 18/10/2013 - [] D -- C:\Program Files (x86)\Autodesk =>.Autodesk O43 - CFD: 24/02/2014 - [] D -- C:\Program Files (x86)\AVG Secure Search =>.AVG Technologies® O43 - CFD: 09/05/2014 - [] D -- C:\Program Files (x86)\Battle.net =>.Games Software O43 - CFD: 11/12/2015 - [] D -- C:\Program Files (x86)\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 19/02/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 18/06/2015 - [0] D -- C:\Program Files (x86)\CutterGeneration O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation O43 - CFD: 12/01/2017 - [] D -- C:\Program Files (x86)\devolo =>.Devolo AG O43 - CFD: 16/10/2016 - [] HD -- C:\Program Files (x86)\DrFoneAndroid_Temp =>.Wondershare O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Gaming Mouse O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 31/01/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc O43 - CFD: 15/10/2013 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 29/01/2017 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 11/12/2014 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 03/08/2016 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 14/10/2013 - [0] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 04/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 =>.Microsoft Corporation O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 10/06/2015 - [] D -- C:\Program Files (x86)\MiniGet =>.MiniSoft O43 - CFD: 18/06/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 10/06/2015 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 20/10/2013 - [] D -- C:\Program Files (x86)\Nero =>.Ahead Corporation O43 - CFD: 19/10/2011 - [] D -- C:\Program Files (x86)\Nuance =>.Nuance O43 - CFD: 10/03/2017 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 18/11/2015 - [] D -- C:\Program Files (x86)\Opera =>.Opera Software O43 - CFD: 31/01/2016 - [] D -- C:\Program Files (x86)\Panasonic =>.Panasonic O43 - CFD: 18/10/2013 - [] D -- C:\Program Files (x86)\PowerISO =>.PowerISO Computing O43 - CFD: 25/08/2015 - [] D -- C:\Program Files (x86)\QSocial O43 - CFD: 28/09/2016 - [] D -- C:\Program Files (x86)\Ralink Corporation =>.IVT CORPORATION® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 10/06/2015 - [0] D -- C:\Program Files (x86)\RelaySoft O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Roxio =>.Roxio O43 - CFD: 19/02/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 10/06/2015 - [0] D -- C:\Program Files (x86)\SoftwareMaker O43 - CFD: 31/01/2014 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer® O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\VIA =>.SRS Labs, Inc® O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 23/03/2017 - [0] D -- C:\Program Files (x86)\Volaro =>PUP.Optional.Vonteera O43 - CFD: 07/12/2013 - [0] D -- C:\Program Files (x86)\VST O43 - CFD: 12/03/2017 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/02/2015 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 18/02/2011 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 05/04/2016 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 18/10/2013 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 11/10/2016 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare O43 - CFD: 17/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\.netshrink O43 - CFD: 28/09/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 05/04/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 11/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assassins Creed Syndicate O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS O43 - CFD: 26/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk =>.Autodesk O43 - CFD: 03/04/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net =>.Games Software O43 - CFD: 11/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BotRevolt Free O43 - CFD: 18/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Advanced Warfare =>.Games Software O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 21/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cleverfiles Disk Drill =>.Clever Software O43 - CFD: 01/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Computers and Structures =>.Computers and Structures, Inc. O43 - CFD: 14/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite =>.CyberLink Corporation O43 - CFD: 28/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 14/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\devolo =>.Devolo AG O43 - CFD: 05/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 4 O43 - CFD: 03/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry Primal O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps =>.Fraps Games O43 - CFD: 30/01/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gaming Mouse O43 - CFD: 08/07/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D =>.Geeks3D O43 - CFD: 04/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth O43 - CFD: 20/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GreedyTorrent O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation O43 - CFD: 21/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 10/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iRoot =>.Shenzhen Xinyi Network Ltd O43 - CFD: 29/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 11/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 03/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security =>.Kaspersky Lab O43 - CFD: 17/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT =>.Kingosoft Technology Ltd O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation O43 - CFD: 03/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 17/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho O43 - CFD: 19/10/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance =>.Nuance O43 - CFD: 12/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 21/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 =>.Google Inc. O43 - CFD: 15/05/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remove Empty Directories =>.Jonas David John O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rene.E Laboratory =>.Rene.E Laboratory O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio =>.Roxio O43 - CFD: 16/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SafeIP =>.SafeIP O43 - CFD: 18/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 16/10/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TunnelBear =>.TunnelBear O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vulkan 1.0.3.0 =>.Kronos Group O43 - CFD: 26/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Watch_Dogs 2 O43 - CFD: 18/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 16/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare O43 - CFD: 17/03/2014 - [0] D -- C:\ProgramData\4shared Desktop O43 - CFD: 07/12/2013 - [] D -- C:\ProgramData\Acoustica =>.Acoustica O43 - CFD: 26/09/2014 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\AmUStor =>.Alocr Micro O43 - CFD: 26/10/2013 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Asus =>.ASUS O43 - CFD: 20/12/2014 - [] AD -- C:\ProgramData\ASUS Resource Center O43 - CFD: 19/10/2011 - [] D -- C:\ProgramData\ASUS WebStorage =>.ASUSTeK O43 - CFD: 02/03/2017 - [] D -- C:\ProgramData\Autodesk =>.Autodesk O43 - CFD: 14/11/2014 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Battle.net =>.Games Software O43 - CFD: 14/09/2014 - [] D -- C:\ProgramData\Bitdefender =>.Bitdefender O43 - CFD: 28/12/2013 - [] D -- C:\ProgramData\Blizzard Entertainment =>.Blizzard Entertainment O43 - CFD: 08/08/2015 - [] D -- C:\ProgramData\BlueSprig =>.BlueSprig O43 - CFD: 11/12/2015 - [0] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\BlueStacksGameManager =>.BlueStack Systems, Inc. O43 - CFD: 23/03/2017 - [0] D -- C:\ProgramData\BlueStacksSetup =>.BlueStack Systems, Inc. O43 - CFD: 23/06/2015 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 19/10/2011 - [] D -- C:\ProgramData\ChangeFolderView =>.FolderView O43 - CFD: 07/08/2014 - [] D -- C:\ProgramData\Codemasters =>.Codemasters O43 - CFD: 18/10/2013 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation O43 - CFD: 07/09/2014 - [] D -- C:\ProgramData\Cucusoft O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 28/12/2013 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 22/10/2013 - [] D -- C:\ProgramData\DAEMON Tools Ultra =>.Daemon's Home O43 - CFD: 14/10/2013 - [0] D -- C:\ProgramData\Deadtime Stories =>.Big Fish Games O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 10/05/2014 - [0] D -- C:\ProgramData\DNGuard HVM O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 19/10/2011 - [] D -- C:\ProgramData\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 08/09/2014 - [] D -- C:\ProgramData\e376eee237974290 O43 - CFD: 01/06/2014 - [] D -- C:\ProgramData\EA Core =>.Electronic Arts, Inc. O43 - CFD: 01/06/2014 - [] D -- C:\ProgramData\EA Logs =>.Electronic Arts, Inc. O43 - CFD: 01/06/2014 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts O43 - CFD: 18/10/2013 - [] D -- C:\ProgramData\FARO =>.FARO O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 18/10/2013 - [] D -- C:\ProgramData\FLEXnet =>.Flexera Software O43 - CFD: 12/06/2014 - [0] D -- C:\ProgramData\Fuan2Soave =>PUP.Optional.Fun2Save O43 - CFD: 10/09/2014 - [] D -- C:\ProgramData\GlassWire =>.SecureMix O43 - CFD: 14/10/2013 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 23/02/2017 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab O43 - CFD: 15/11/2015 - [] D -- C:\ProgramData\Licenses =>.Microsoft Corporation O43 - CFD: 30/10/2013 - [] D -- C:\ProgramData\Logs =>.ABBYY Software O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Macrovision =>.Macrovision O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 28/06/2014 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 01/12/2015 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation O43 - CFD: 13/10/2013 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 18/10/2013 - [] D -- C:\ProgramData\Nuance =>.Nuance O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 12/03/2017 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 29/01/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Orbit =>.Orbit O43 - CFD: 10/03/2017 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc. O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\P4G =>.Portables4Gamers O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\RealHideIP O43 - CFD: 23/04/2014 - [] D -- C:\ProgramData\Red Gate O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2014 - [0] D -- C:\ProgramData\RegRun =>.Greatis Software O43 - CFD: 17/01/2017 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 18/09/2015 - [] D -- C:\ProgramData\save net =>PUP.Optional.SaveNet O43 - CFD: 19/10/2011 - [] D -- C:\ProgramData\ScanSoft =>.Scansoft O43 - CFD: 19/02/2017 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 11/06/2015 - [] D -- C:\ProgramData\Socialclub =>.Legitimate O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\Sonic =>.Sonic O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 27/10/2013 - [] D -- C:\ProgramData\Steam =>.Steam Games O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 17/03/2014 - [] D -- C:\ProgramData\SuperHideIP O43 - CFD: 15/11/2015 - [] AD -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 03/10/2015 - [] D -- C:\ProgramData\Tencent =>.Superfluous.Tencent O43 - CFD: 05/05/2016 - [] D -- C:\ProgramData\TrackmaniaTurbo O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Trend Micro =>.Trend Micro O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\Uninstall =>.Unknow O43 - CFD: 11/05/2014 - [] D -- C:\ProgramData\Update =>.Unknow O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\USBChargerPlus =>.ASUSTeK O43 - CFD: 14/10/2013 - [] D -- C:\ProgramData\VirtualDesktop O43 - CFD: 11/10/2016 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 11/10/2016 - [] D -- C:\ProgramData\wsr O43 - CFD: 15/04/2015 - [] D -- C:\ProgramData\{6eb5b591-fccb-a0e9-6eb5-5b591fccd647} O43 - CFD: 10/06/2015 - [] D -- C:\ProgramData\{b4b6e7b6-e3f7-371e-b4b6-6e7b6e3f9edb} O43 - CFD: 26/09/2016 - [] D -- C:\ProgramData\{EB5F5A55-037A-4E47-806B-2C8AA9374701} O43 - CFD: 15/05/2014 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 26/09/2016 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Qualcomm Atheros O43 - CFD: 04/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Autodesk Shared =>.Autodesk O43 - CFD: 07/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Blizzard Entertainment =>.Blizzard Entertainment O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 30/01/2017 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller =>.Electronic Arts, Inc. O43 - CFD: 31/01/2016 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 29/01/2017 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 19/10/2011 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media =>.Oberon Media O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Common Files\postureAgent =>.Microsoft Corporation O43 - CFD: 26/07/2015 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine =>.Sonic Solutions O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Roxio Shared =>.Roxio O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 19/02/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared =>.Sonic O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 28/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 22/12/2013 - [] D -- C:\Program Files (x86)\Common Files\SWF Studio =>.SWF Studio O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 19/10/2011 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 24/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare O43 - CFD: 07/12/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Acoustica =>.Acoustica O43 - CFD: 10/04/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\ADBDriverInstaller =>.Samsung Electronics O43 - CFD: 15/12/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 16/01/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\Apowersoft =>.Apowersoft O43 - CFD: 20/01/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\asus =>.ASUS O43 - CFD: 21/01/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\ASUS WebStorage =>.ASUSTeK O43 - CFD: 05/12/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Audacity =>.Audacity O43 - CFD: 02/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\Autodesk =>.Autodesk O43 - CFD: 03/04/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Battle.net =>.Games Software O43 - CFD: 23/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\BitTorrent O43 - CFD: 28/05/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\BreakPoint Software O43 - CFD: 18/04/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Cleverfiles Software O43 - CFD: 20/01/2014 - [0] D -- C:\Users\Abdou\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 22/12/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Cyotek O43 - CFD: 23/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 03/01/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\DAEMON Tools Ultra =>.Daemon's Home O43 - CFD: 14/09/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\de.devolo.dLAN.Cockpit =>.Devolo AG O43 - CFD: 03/12/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 31/08/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\FLEXnet =>.Flexera Software O43 - CFD: 12/12/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Gaming Mouse O43 - CFD: 11/10/2016 - [0] D -- C:\Users\Abdou\AppData\Roaming\HMYGSetting =>Adware.Suspect O43 - CFD: 13/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 12/12/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\IDM =>.IDM O43 - CFD: 21/03/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Kingosoft =>.Kingosoft O43 - CFD: 13/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 03/06/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\Macrovision =>.Macrovision O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Abdou\AppData\Roaming\Media Center Programs =>.Microsoft Corporation O43 - CFD: 10/04/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\mgyun =>.mgyun.com O43 - CFD: 09/01/2016 - [] SD -- C:\Users\Abdou\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 10/06/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\MiniGet =>.MiniSoft O43 - CFD: 13/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 12/12/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Mp3tag =>.Florian Heidenreich O43 - CFD: 23/03/2017 - [0] D -- C:\Users\Abdou\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 03/06/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Need for Speed World O43 - CFD: 07/09/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\NetGuard O43 - CFD: 17/01/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\Notepad++ =>.Don Ho O43 - CFD: 18/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Nuance =>.Nuance O43 - CFD: 31/01/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\NVIDIA =>.nVidia Corporation O43 - CFD: 18/11/2015 - [0] D -- C:\Users\Abdou\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 10/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\Origin =>.Electronic Arts, Inc. O43 - CFD: 18/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\PowerISO =>.PowerISO Computing O43 - CFD: 24/08/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\QSocial O43 - CFD: 10/12/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\RealHideIP O43 - CFD: 12/02/2015 - [0] D -- C:\Users\Abdou\AppData\Roaming\Rsupport =>.RSUPPORT O43 - CFD: 18/04/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Rugland Digital Systems O43 - CFD: 19/02/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\Skype =>.Skype O43 - CFD: 21/11/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\SkypEmoticons =>.SkypEmoticons O43 - CFD: 26/11/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Sonic =>.Sonic O43 - CFD: 23/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\Spotify =>.Spotify O43 - CFD: 15/12/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 23/10/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Steam =>.Steam Games O43 - CFD: 18/07/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Steganos =>.Steganos O43 - CFD: 17/07/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Steganos VPN O43 - CFD: 28/09/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Sun =>.Oracle O43 - CFD: 17/03/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\SuperHideIP O43 - CFD: 07/12/2013 - [0] D -- C:\Users\Abdou\AppData\Roaming\SynthMaker O43 - CFD: 23/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\TeamViewer =>.TeamViewer O43 - CFD: 03/10/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\Tencent =>.Superfluous.Tencent O43 - CFD: 16/02/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\TunnelBear =>.TunnelBear O43 - CFD: 03/02/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\uplay =>.Ubisoft O43 - CFD: 15/11/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\uTorrent O43 - CFD: 22/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\ViberPC =>.Viber O43 - CFD: 03/12/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 04/09/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\Wallpapers Bot O43 - CFD: 25/02/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Wargaming.net =>.Wargaming.net O43 - CFD: 18/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 11/10/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Wondershare =>.Wondershare O43 - CFD: 18/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Zeon =>.Zeon Corp O43 - CFD: 23/03/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 23/10/2016 - [] D -- C:\Users\Abdou\AppData\Local\2K Games =>.2K Games O43 - CFD: 15/12/2015 - [] D -- C:\Users\Abdou\AppData\Local\Adobe =>.Adobe O43 - CFD: 13/10/2013 - [0] SHD -- C:\Users\Abdou\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 04/05/2014 - [] D -- C:\Users\Abdou\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 04/05/2014 - [] D -- C:\Users\Abdou\AppData\Local\assembly =>.Assembly O43 - CFD: 14/10/2013 - [] D -- C:\Users\Abdou\AppData\Local\ASUS =>.ASUS O43 - CFD: 09/08/2014 - [] D -- C:\Users\Abdou\AppData\Local\Atraci O43 - CFD: 04/07/2015 - [] D -- C:\Users\Abdou\AppData\Local\Autodesk =>.Autodesk O43 - CFD: 18/10/2013 - [] D -- C:\Users\Abdou\AppData\Local\Autodesk, Inc =>.Autodesk O43 - CFD: 01/04/2015 - [] D -- C:\Users\Abdou\AppData\Local\Battle.net =>.Games Software O43 - CFD: 03/04/2014 - [] D -- C:\Users\Abdou\AppData\Local\Blizzard Entertainment =>.Blizzard Entertainment O43 - CFD: 12/12/2016 - [] D -- C:\Users\Abdou\AppData\Local\bluesoleil =>.BlueSoleil O43 - CFD: 11/12/2015 - [] D -- C:\Users\Abdou\AppData\Local\Bluestacks =>.BlueStack Systems, Inc. O43 - CFD: 13/10/2013 - [] D -- C:\Users\Abdou\AppData\Local\BMExplorer =>.BMExplorer O43 - CFD: 29/01/2014 - [] D -- C:\Users\Abdou\AppData\Local\Box =>.Box O43 - CFD: 02/03/2017 - [] D -- C:\Users\Abdou\AppData\Local\cache =>.Legitimate O43 - CFD: 16/09/2015 - [] D -- C:\Users\Abdou\AppData\Local\CEF =>.CEF O43 - CFD: 09/01/2017 - [] D -- C:\Users\Abdou\AppData\Local\Chromium =>.Chromium O43 - CFD: 20/05/2014 - [] D -- C:\Users\Abdou\AppData\Local\Comodo =>.Comodo O43 - CFD: 01/03/2017 - [] D -- C:\Users\Abdou\AppData\Local\Computers and Structures =>.Computers and Structures, Inc. O43 - CFD: 23/03/2017 - [0] D -- C:\Users\Abdou\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 18/04/2016 - [] D -- C:\Users\Abdou\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 11/05/2014 - [0] D -- C:\Users\Abdou\AppData\Local\Deployment =>.Microsoft Corporation O43 - CFD: 21/01/2014 - [0] D -- C:\Users\Abdou\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 03/01/2014 - [] D -- C:\Users\Abdou\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd O43 - CFD: 18/04/2016 - [] D -- C:\Users\Abdou\AppData\Local\DiskDrill =>.Clever Software O43 - CFD: 09/02/2014 - [] D -- C:\Users\Abdou\AppData\Local\DOSBox =>.DOSBox Team O43 - CFD: 31/03/2015 - [] D -- C:\Users\Abdou\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 01/06/2014 - [] D -- C:\Users\Abdou\AppData\Local\Electronic_Arts_Inc O43 - CFD: 17/03/2017 - [] D -- C:\Users\Abdou\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 29/01/2014 - [] D -- C:\Users\Abdou\AppData\Local\EMU =>.Games Software O43 - CFD: 10/09/2014 - [] D -- C:\Users\Abdou\AppData\Local\GlassWire =>.SecureMix O43 - CFD: 29/10/2016 - [] D -- C:\Users\Abdou\AppData\Local\Google =>.Google O43 - CFD: 13/10/2013 - [0] SHD -- C:\Users\Abdou\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 24/06/2014 - [0] D -- C:\Users\Abdou\AppData\Local\HockeyCrashes O43 - CFD: 21/04/2014 - [] D -- C:\Users\Abdou\AppData\Local\IsolatedStorage =>.id Software O43 - CFD: 15/04/2015 - [] D -- C:\Users\Abdou\AppData\Local\Kingosoft =>.Kingosoft O43 - CFD: 14/10/2013 - [] D -- C:\Users\Abdou\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 29/01/2014 - [] D -- C:\Users\Abdou\AppData\Local\MercurySteam =>.MercurySteam O43 - CFD: 11/05/2014 - [] D -- C:\Users\Abdou\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 24/01/2014 - [] D -- C:\Users\Abdou\AppData\Local\Microsoft Games =>.Microsoft Corporation O43 - CFD: 16/10/2013 - [0] D -- C:\Users\Abdou\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 09/11/2013 - [] D -- C:\Users\Abdou\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 30/01/2017 - [] D -- C:\Users\Abdou\AppData\Local\NVIDIA =>.nVidia Corporation O43 - CFD: 30/01/2017 - [] D -- C:\Users\Abdou\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 09/01/2017 - [] D -- C:\Users\Abdou\AppData\Local\Origin =>.Electronic Arts, Inc. O43 - CFD: 12/01/2017 - [] D -- C:\Users\Abdou\AppData\Local\Package Cache =>.Microsoft Corporation O43 - CFD: 20/05/2014 - [] D -- C:\Users\Abdou\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 13/10/2013 - [] D -- C:\Users\Abdou\AppData\Local\Power2Go =>.Power2Go O43 - CFD: 19/01/2014 - [] D -- C:\Users\Abdou\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 07/02/2015 - [] D -- C:\Users\Abdou\AppData\Local\PunkBuster =>.PunkBuster Games O43 - CFD: 02/06/2015 - [] D -- C:\Users\Abdou\AppData\Local\Rockstar Games =>.Rockstar Games O43 - CFD: 18/04/2014 - [] D -- C:\Users\Abdou\AppData\Local\SkinSoft =>.SkinSoft O43 - CFD: 18/01/2016 - [0] D -- C:\Users\Abdou\AppData\Local\Skype =>.Skype O43 - CFD: 26/11/2013 - [] D -- C:\Users\Abdou\AppData\Local\Sonic_Solutions =>.Sonic Solutions O43 - CFD: 23/03/2017 - [] D -- C:\Users\Abdou\AppData\Local\Spotify =>.Spotify O43 - CFD: 28/11/2015 - [] D -- C:\Users\Abdou\AppData\Local\Steam =>.Steam Games O43 - CFD: 23/03/2017 - [] D -- C:\Users\Abdou\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 13/10/2013 - [0] SHD -- C:\Users\Abdou\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 03/10/2015 - [] D -- C:\Users\Abdou\AppData\Local\Temp尰 O43 - CFD: 08/09/2015 - [] D -- C:\Users\Abdou\AppData\Local\Ubisoft =>.Ubisoft O43 - CFD: 09/01/2017 - [] D -- C:\Users\Abdou\AppData\Local\Ubisoft Game Launcher =>.Ubisoft O43 - CFD: 22/08/2016 - [] D -- C:\Users\Abdou\AppData\Local\uts O43 - CFD: 22/03/2017 - [] D -- C:\Users\Abdou\AppData\Local\Viber =>.Viber O43 - CFD: 13/10/2013 - [0] D -- C:\Users\Abdou\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 18/04/2014 - [] D -- C:\Users\Abdou\AppData\Local\Vitalwerks =>.Vitalwerks O43 - CFD: 24/04/2016 - [] D -- C:\Users\Abdou\AppData\Local\Wondershare =>.Wondershare O43 - CFD: 05/04/2016 - [] D -- C:\Users\Abdou\AppData\Local\Zander_Tools O43 - CFD: 17/10/2013 - [0] D -- C:\Users\Abdou\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] RD -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 21/11/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 26/04/2014 - [] D -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LIMBO O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 11/06/2016 - [] RD -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 06/01/2016 - [] D -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 03/09/2015 - [] D -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft =>.Ubisoft O43 - CFD: 12/01/2017 - [] D -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber =>.Viber O43 - CFD: 18/10/2013 - [] D -- C:\Users\Abdou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 17/10/2013 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 17/10/2013 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 13/11/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 08/01/2014 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 30/08/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Kingosoft =>.Kingosoft O43 - CFD: 14/07/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 12/12/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\uts O43 - CFD: 22/10/2013 - [0] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\DAEMON Tools Ultra =>.Daemon's Home O43 - CFD: 30/08/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Kingosoft =>.Kingosoft O43 - CFD: 15/01/2016 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 10/12/2014 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Rsupport =>.RSUPPORT O43 - CFD: 12/12/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\TunnelBear =>.TunnelBear ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (103) - 3s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [317400] =>.Microsoft Windows® O58 - SDL:2012/02/29 11:08:34 A . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\Windows\System32\drivers\AiCharger.sys [317400] =>.ASUSTeK Computer Inc.® O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [317400] =>.Microsoft Windows® O58 - SDL:2011/10/19 03:56:00 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [317400] =>.Microsoft Windows® O58 - SDL:2011/10/19 03:56:00 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [317400] =>.Microsoft Windows® O58 - SDL:2011/05/26 10:55:38 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\Windows\System32\drivers\AmUStor.sys [317400] =>.Alcor Micro, Corp. O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [317400] =>.Microsoft Windows® O58 - SDL:2010/01/12 00:36:32 A . (.Primax Ltd - Primax USB Optical Mouse Driver.) -- C:\Windows\System32\drivers\Asusgms.sys [317400] O58 - SDL:2011/11/23 07:13:10 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [317400] =>.Atheros Communications, Inc. O58 - SDL:2010/01/05 03:23:20 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athurx.sys [317400] =>.Atheros Communications, Inc. O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [317400] =>.Broadcom Corporation O58 - SDL:2012/12/19 21:57:44 A . (.IVT Corporation - Bluelet Audio Adapter Driver.) -- C:\Windows\System32\drivers\blueletaudio.sys [317400] =>.Ralink Technology Corporation® O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [317400] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [317400] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [317400] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [317400] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [317400] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [317400] =>.Brother Industries Ltd. O58 - SDL:2012/06/15 11:22:02 A . (.IVT Corporation - Bluetooth Audio Bus Driver.) -- C:\Windows\System32\drivers\BtAudioBus.sys [317400] =>.Ralink Technology Corporation® O58 - SDL:2013/04/26 18:18:00 A . (.Ralink Corporation - Bluetooth L2CAP_SCO Interface Profile Drive.) -- C:\Windows\System32\drivers\BtL2caScoIf.sys [317400] =>.Mediatek Inc.® O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [317400] =>.Broadcom Corporation O58 - SDL:2009/10/20 11:00:00 N . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [317400] =>.Sonic Solutions® O58 - SDL:2009/10/20 11:00:00 N . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [317400] =>.Sonic Solutions® O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [317400] =>.Microsoft Windows® O58 - SDL:2015/07/06 00:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x64 (Weak).) -- C:\Windows\System32\drivers\cm_km.sys [317400] =>.Kaspersky Lab® O58 - SDL:2013/12/28 21:11:37 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [317400] =>.DT Soft Ltd® O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [317400] =>.Broadcom Corporation O58 - SDL:2017/03/23 14:27:26 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\Windows\System32\drivers\farflt.sys [317400] =>.Malwarebytes Corporation® O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [317400] =>.Hauppauge Computer Works, Inc. O58 - SDL:2012/07/17 18:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [317400] =>.Intel Corporation® O58 - SDL:2010/11/20 14:33:36 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [317400] =>.Microsoft Windows® O58 - SDL:2011/12/23 04:09:00 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [317400] =>.Intel Corporation® O58 - SDL:2011/10/19 03:56:00 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [317400] =>.Microsoft Windows® O58 - SDL:2014/10/01 05:19:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [317400] =>.Tonec Inc.® O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [317400] =>.Microsoft Windows® O58 - SDL:2012/02/07 05:12:54 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [317400] =>.Intel Corporation® O58 - SDL:2012/02/07 05:12:54 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [317400] =>.Intel Corporation® O58 - SDL:2012/02/07 05:12:56 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [317400] =>.Intel Corporation® O58 - SDL:2014/01/20 10:19:28 A . (.Ralink Corporation - Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\IvtUrbBtFlt.sys [317400] =>.IVT CORPORATION® O58 - SDL:2015/09/11 20:30:40 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/06/06 08:48:24 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x64].) -- C:\Windows\System32\drivers\klbackupdisk.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/12/01 22:42:12 A . (.AO Kaspersky Lab - Backup File Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klbackupflt.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/12/02 00:24:14 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x64].) -- C:\Windows\System32\drivers\kldisk.sys [317400] =>.Kaspersky Lab® O58 - SDL:2017/03/14 14:35:57 A . (.AO Kaspersky Lab - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\drivers\klflt.sys [317400] =>.Kaspersky Lab® O58 - SDL:2017/03/14 14:35:20 A . (.AO Kaspersky Lab - klhk [fre_wlh_x64].) -- C:\Windows\System32\drivers\klhk.sys [317400] =>.Kaspersky Lab® O58 - SDL:2017/03/14 14:35:57 A . (.AO Kaspersky Lab - Core System Interceptors [fre_wlh_x64].) -- C:\Windows\System32\drivers\klif.sys [317400] =>.Kaspersky Lab® O58 - SDL:2016/04/29 01:52:56 A . (.AO Kaspersky Lab - Packet Network Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klim6.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/11/11 11:56:28 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klkbdflt.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/06/07 01:50:04 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/12/07 16:08:20 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/06/11 15:56:56 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wnet_amd64.) -- C:\Windows\System32\drivers\kltdi.sys [317400] =>.Kaspersky Lab® O58 - SDL:2017/03/14 14:35:58 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [317400] =>.Kaspersky Lab® O58 - SDL:2015/12/03 00:38:12 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x64].) -- C:\Windows\System32\drivers\kneps.sys [317400] =>.Kaspersky Lab® O58 - SDL:2011/09/19 08:54:46 A . (.Atheros Communications, Inc. - Atheros Ar81xx series PCI-E Gigabit Etherne.) -- C:\Windows\System32\drivers\L1C62x64.sys [317400] =>.Atheros Communications Inc.® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [317400] =>.Microsoft Windows® O58 - SDL:2017/02/24 06:23:20 A . (.Auteurs - .) -- C:\Windows\System32\drivers\mbae64.sys [317400] =>.Malwarebytes Corporation® O58 - SDL:2017/03/23 14:27:23 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [317400] =>.Malwarebytes Corporation® O58 - SDL:2017/03/23 14:27:30 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MBAMChameleon.sys [317400] =>.Malwarebytes Corporation® O58 - SDL:2017/03/23 14:27:18 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [317400] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [317400] =>.Microsoft Windows® O58 - SDL:2017/03/23 14:27:26 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [317400] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [317400] =>.Microsoft Windows® O58 - SDL:2017/02/23 23:56:01 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda64v.sys [317400] =>.NVIDIA Corporation® O58 - SDL:2017/02/23 11:34:39 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [317400] =>.NVIDIA Corporation® O58 - SDL:2011/10/19 03:56:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [317400] =>.Microsoft Windows® O58 - SDL:2011/10/19 03:56:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [317400] =>.Microsoft Windows® O58 - SDL:2017/01/20 19:39:20 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [317400] =>.NVIDIA Corporation® O58 - SDL:2017/01/20 19:39:20 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\Windows\System32\drivers\nvvhci.sys [317400] =>.NVIDIA Corporation® O58 - SDL:2014/04/24 19:44:44 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\ptun0901.sys [317400] =>.The OpenVPN Project O58 - SDL:2010/03/19 11:00:00 N . (.Sonic Solutions - Px Engine Device Driver for 64-bit Windows.) -- C:\Windows\System32\drivers\PxHlpa64.sys [317400] =>.Sonic Solutions® O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/02/12 15:11:26 A . (.EldoS Corporation - RawDisk Driver. Allows write access to file.) -- C:\Windows\System32\drivers\rsdrvx64.sys [317400] =>.EldoS Corporation® O58 - SDL:2015/08/10 13:28:10 A . (.Resplendence Software Projects Sp. - Resplendence WhySoSlow Monitoring Driver.) -- C:\Windows\System32\drivers\rspWhy64.sys [317400] =>.Daniel Terhell® O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [317400] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2009/06/10 21:35:57 A . (.Silicon Integrated Systems Corp. - NDIS 6.0 Miniport Driver for SiS191/SiS190.) -- C:\Windows\System32\drivers\SiSG664.sys [317400] =>.Silicon Integrated Systems Corp. O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [317400] =>.Microsoft Windows® O58 - SDL:2012/01/26 09:27:30 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver.sys [317400] =>.Synaptics Incorporated® O58 - SDL:2010/05/25 15:59:24 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [317400] =>.MCCI Corporation O58 - SDL:2010/05/25 15:59:24 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [317400] =>.MCCI Corporation O58 - SDL:2016/06/07 12:45:42 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [317400] =>.DEVGURU CO LTD® O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [317400] =>.Microsoft Windows® O58 - SDL:2012/01/26 09:27:36 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [317400] =>.Synaptics Incorporated® O58 - SDL:2014/08/12 09:45:28 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap-tb-0901.sys [317400] =>.TunnelBear, Inc.® O58 - SDL:2014/03/24 11:43:26 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [317400] =>.OpenVPN Technologies, Inc.® O58 - SDL:2012/01/21 00:14:34 A . (.Intel(R) Corporation - TurboB Device Driver.) -- C:\Windows\System32\drivers\TurboB.sys [317400] {416EC9A1000100005B7D} =>.Intel(R) Corporation O58 - SDL:2016/03/10 06:17:36 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\usb2ser.sys [317400] =>.MBB O58 - SDL:2014/05/16 14:04:46 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [317400] =>.Oracle Corporation® O58 - SDL:2014/05/16 14:03:30 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\Windows\System32\drivers\VBoxNetAdp.sys [317400] =>.Oracle Corporation® O58 - SDL:2014/05/16 14:03:30 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [317400] =>.Oracle Corporation® O58 - SDL:2012/03/23 15:07:42 A . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\viahduaa.sys [317400] =>.VIA Technologies Inc.® O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [317400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [317400] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 8s O61 - LFC: 2017/03/23 14:25:10 A . (..) -- C:\Users\Abdou\AppData\Roaming\sp_data.sys [201] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.scr> [HKCU\..\open\Command] (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (301) - 8s O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_TMP_city", "BEJAIA"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_TMP_country", "DZ"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_country", "ALGERIA"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_locId", "RPZM0004"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_location", "Algeria, ZAS, Philippines"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_region", "OT"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_temp_dis", "c"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.1000234.TWC_wind_dis", "kmh"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.Facebook_Mode.enc", "Mg=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.Facebook_User_Locale.enc", "ZW4="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.FirstTime", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.FirstTimeFF3", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.PG_ENABLE", "dHJ1ZQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.RestartDialogFirstTime", "false"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.RestartDialogShouldDisplay", "false"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.SearchAppState", "%B8"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.SearchAppState.enc", "Mg=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.UserID", "UN26652414511641718"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.addressBarTakeOverEnabledInHidden", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.appOptions", "{\"129791404828153723\":{\"render\":true,\"disabled\":true,\"appGuid\":\"93951332-f9a7-4af7-af0[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.browser.search.defaultthis.engineName", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.cbfirsttime", "%D9%E7%FA%A6%D4%F5%FC%A6%B6%BF%A6%B8%B6%B7%B9%A6%B7%B7%C0%BB%B6%C0%B8%BE%A6%CD%D3%DA%B1%B6%B7%[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.cbfirsttime.enc", "U2F0IE5vdiAwOSAyMDEzIDExOjUwOjI4IEdNVCswMTAw"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.countryCode", "DZ"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.embeddedsData", "[{\"appId\":\"129351529700743801\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFra[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.firstTimeDialogOpened", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.fixPageNotFoundErrorByUser", "TRUE"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.fixPageNotFoundErrorInHidden", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.fullUserID", "UN26652414511641718.IN.20131014013643"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.installType", "DirectDownload"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.isCheckedStartAsHidden", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.isFirstTimeToolbarLoading", "false"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.keyword", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.lastVersion", "10.29.0.520"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appStateReportTime", "%B7%B9%BF%B6%B6%BD%B7%BE%B6%BC%B7%B7%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appStateReportTime.enc", "MTM5MDA3MTgwNjExMQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_CouponBuddy", "%F5%F4"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_CouponBuddy.enc", "b24="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_Easytobook", "%F5%F4"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_Easytobook.enc", "b24="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_Easytobook_targeted", "%F5%F4"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_Easytobook_targeted.enc", "b24="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_PriceGong", "%F5%F4"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appState_PriceGong.enc", "b24="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appsConfig.enc", "eyJBcHBzQ29uZmlndXJhdGlvbiI6W3siaWQiOiJQcmljZUdvbmciLCJ1cmwiOiJodHRwOi8vcHJpY2Vnb25n[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appsDefaultEnabled", "%F4%FB%F2%F2"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_appsDefaultEnabled.enc", "bnVsbA=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_calledSetupService", "%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_calledSetupService.enc", "MQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_currentVersion", "%B7%B4%B7%B8%B4%B6%B4%BB"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_currentVersion.enc", "MS4xMi4wLjU="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_existingUsersRecoveryDone", "%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_existingUsersRecoveryDone.enc", "MQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_first_time", "%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_first_time.enc", "MQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_globalKeysMigratedToLocalStorage", "%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_globalKeysMigratedToLocalStorage.enc", "MQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_installer_preapproved.enc", "RkFMU0U="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_lastLoginTime", "%B7%B9%BF%B6%B6%BD%B7%BE%B6%BC%BB%B7%BE"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_lastLoginTime.enc", "MTM5MDA3MTgwNjUxOA=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_localization.enc", "eyJkaWFsb2dPSyI6eyJUZXh0IjoiT0sifSwiZG1ib3gxIjp7IlRleHQiOiJQcm9tb1xuZHUgam91ciJ9LC[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_new_welcome_experience", "%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_new_welcome_experience.enc", "MQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_pgUnloadedOnce", "%FA%F8%FB%EB"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_settings1.11.4.2", "%u0101%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%EB%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_settings1.11.4.2.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiMF8wIi[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_settings1.11.5.1", "%u0101%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%EB%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_settings1.11.5.1.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiMF8wIi[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_settings1.12.0.5", "%u0101%A8%D9%FA%E7%FA%FB%F9%A8%C0%A8%F9%FB%E9%E9%EB%EB%EA%EB%EA%A8%B2%A8%CA%E7%FA%[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_settings1.12.0.5.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiMF8wIi[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_showWelcomeGadget", "%EC%E7%F2%F9%EB"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_showWelcomeGadget.enc", "ZmFsc2U="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_userId", "%BD%BE%BD%BD%E7%E7%B7%B6%B3%BE%B6%B9%E7%B3%BA%EB%B9%E7%B3%BE%EA%BD%BC%B3%EB%E9%B8%E7%E7%BE%E[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_userId.enc", "Nzg3N2FhMTAtODAzYS00ZTNhLThkNzYtZWMyYWE4ZTFiZTA5"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_user_approval_interacted", "%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_user_approval_interacted.enc", "MQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_welcomeDialogMode", "%B7"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.mam_gk_welcomeDialogMode.enc", "MQ=="); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"https%3A%2F%2Fwww.facebook.com%2F\"[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.originalHomepage", "chrome://branding/locale/browserconfig.properties"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.originalSearchAddressUrl", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.originalSearchEngine", "Google"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.originalSearchEngineName", "Google"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.performedDomainChangesMigration", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.price-gong.isManagedApp", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.scriptSource.enc", "aHR0cDovLzEyNy4wLjAuMToxMDAwMC9ndWkv"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.search.searchAppId", "129351529700743801"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.search.searchCount", "0"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.searchFromAddressBarEnabledByUser", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.searchInNewTabEnabledByUser", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.searchInNewTabEnabledInHidden", "true"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.searchSuggestEnabledByUser", "True"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.searchUserMode", "1"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2851639\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"http://uTorrent[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"uTorrentBar_FR [...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_Configuration_lastUpdate", "1397419465690"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1396395215858"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_appsMetadata_lastUpdate", "1397414152348"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1396773154025"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_login_10.20.0.513_lastUpdate", "1386685374583"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_login_10.22.3.518_lastUpdate", "1390071799735"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_login_10.23.0.822_lastUpdate", "1396481781884"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_login_10.29.0.520_lastUpdate", "1397427712578"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1396773154194"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_searchAPI_lastUpdate", "1397419465543"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_serviceMap_lastUpdate", "1397419465535"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_setupAPI_lastUpdate", "1383325865703"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_toolbarContextMenu_lastUpdate", "1397419465484"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_toolbarSettings_lastUpdate", "1397426665775"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.serviceLayer_services_translation_lastUpdate", "1397414152390"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.settingsINI", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.showToolbarPermission", "false"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.smartbar.CTID", "CT2851639"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.smartbar.Uninstall", "0"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.smartbar.homepage", true); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.smartbar.toolbarName", "uTorrentBar_FR "); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.toolbarBornServerTime", "19-10-2013"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.toolbarCurrentServerTime", "14-4-2014"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.toolbarLoginClientTime", "Fri Nov 01 2013 18:11:05 GMT+0100"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.url_history0001", "%EE%FA%FA%F6%C0%B5%B5%FD%FD%FD%B4%ED%F5%F5%ED%F2%EB%B4%EA%u0100%B5%FB%F8%F2%C5%F9%E7%C3%FA[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639.url_history0001.enc", "aHR0cDovL3d3dy5nb29nbGUuZHovdXJsP3NhPXQmcmN0PWomcT0mZXNyYz1zJnNvdXJjZT13ZWImY2Q9MSZ2ZW[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("CT2851639_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1397429888546,\"isWithState\"[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("Smartbar.ConduitHomepagesList", "http://search.conduit.com/?UM=1&ctid=CT2851639&SearchSource=13&CUI=UN26652414511641718[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("Smartbar.ConduitSearchEngineList", "uTorrentBar_FR Customized Web Search"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("Smartbar.ConduitSearchUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN26652414[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("Smartbar.TBHomepagesList", "http://search.conduit.com/?UM=1&ctid=CT2851639&SearchSource=13&CUI=UN26652414511641718"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("Smartbar.TBSearchEngineList", "uTorrentBar_FR Customized Web Search"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("Smartbar.TBSearchUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN2665241451164[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("Smartbar.keywordURLSelectedCTID", "CT2851639"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("plugin.state.npconduitfirefoxplugin", 2); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.addressBarOwnerCTID", "CT2851639"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.conduitHomepageList", "http://search.conduit.com/?UM=1&ctid=CT2851639&SearchSource=13&CUI=UN26652414511641718"[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.conduitSearchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN2[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.defaultSearchOwnerCTID", "CT2851639"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.homePageOwnerCTID", "CT2851639"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.homepageList", "http://search.conduit.com/?UM=1&ctid=CT2851639&SearchSource=13&CUI=UN26652414511641718"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.machineId", "AM+T1T5EVFEHJQFGJB+6JJI9G4UP9NHFR7KNDNZMIYCT7CTUO4JTKTXIT/PSSAVPKRAOPYWVUAPYTI+BTQKEFQ"); =>PUP.Optional.SmartBar O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("smartbar.searchAddressUrlList", "http://search.conduit.com/ResultsExt.aspx?ctid=CT2851639&SearchSource=2&CUI=UN26652414[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E+x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E+x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E,x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E,x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E-x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E-x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E.:2z527", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E.:2z527.storedInFile", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E.x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E.x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E/x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E/x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E06CG5EL8:", "6E6D686C6F7073767575"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E06CG5EL8:.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E06CG5EL;8I:K", "247E2D2F226A74736E727576797C7B7B242F4B49474F42357D5D5C3D"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E06CG5EL;8I:K.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E0x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E0x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E1x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E1x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E2x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E2x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E3x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E3x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E4x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E4x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E5x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E5x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E6x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E6x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E7x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E7x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E8x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E8x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E9x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E9x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E:x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E:x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E;x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E;x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E=x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E=x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E>x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E>x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E?x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E?x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E@x305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7E@x305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EAx305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EAx305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EBE3G=;D9N9=D", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D337D56545[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EBE3G=;D9N9=D.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EBx305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EBx305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7ECx305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7ECx305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EDx305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7EDx305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7Etx305", "2423"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B+7Etx305.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-0?3G>D", "3A67683D40426E457A72747345207A487C4E254C204E222A212223272C29252C2B2F5F2C"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-0?3G>D.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-0?3G@6:5;", ""); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-0?3G@6:5;.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-0?3GFA7EF", "2B2E2C3D"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-0?3GFA7EF.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-3=3ECCJA=F>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A23282E2E3132333435363B[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B-3=3ECCJA=F>.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B/>01=9A6K6.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B/>01=9A6K6.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B3=>@44I48?", "372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B3=>@44I48?.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B5BA==9CJAG", "3A6E3D6B6A4270767A767373794B754B7E7E4C2152"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B5BA==9CJAG.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B6B11G4C56B>F;P;ANR@P", "6E6D686B736D6D727772737877"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B6B11G4C56B>F;P;ANR@P.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B90E@.3C;7B=?OFB>>RHIQS", "393F352F3E"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B90E@.3C;7B=?OFB>>RHIQS.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B9643G3/9E", "6A"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B9643G3/9E.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B;45>:BI9I7IE", "2B2E2C3D"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B;45>:BI9I7IE.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B<:222H64<", "393F352F3E"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B<:222H64<.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B<:222H64.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B<:222H64.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B=+03EH8H8J?:", "4443"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B=+03EH8H8J?:.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B?+E2A52D8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B?+E2A52D8.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B?B0D:8AJ62.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9B?B0D:8AJ62.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9BA@0<0BI6A7GN:6@L?", "6C"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639./9BA@0<0BI6A7GN:6@L?.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.PG_ENABLE", "74727565"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.PG_ENABLE.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.cb_experience_000", "32"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.cb_experience_000.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.cb_user_id_000", "43423439313231313430383730395F313339363339363832343337325F46697265666F78"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.cb_user_id_000.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.cbfirsttime", "546875204A616E20323320323031342031303A31363A323120474D542B30313030"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.cbfirsttime.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appStateReportTime", "31333937343236373439313638"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appStateReportTime.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_CouponBuddy", "6F6E"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_CouponBuddy.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_Easytobook", "6F6E"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_Easytobook.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_Easytobook_targeted", "6F6E"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_Easytobook_targeted.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_PriceGong", "6F6E"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appState_PriceGong.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appsConfig.storedInFile", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appsDefaultEnabled", "6E756C6C"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_appsDefaultEnabled.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_calledSetupService", "31"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_calledSetupService.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_currentVersion", "312E31332E302E3137"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_currentVersion.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_existingUsersRecoveryDone", "31"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_existingUsersRecoveryDone.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_first_time", "31"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_first_time.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_lastLoginTime", "31333937343236373530323337"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_lastLoginTime.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_localization.storedInFile", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_migrated_from_ls", "31"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_migrated_from_ls.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_new_welcome_experience", "31"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_new_welcome_experience.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_settings1.12.0.5.storedInFile", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_settings1.13.0.17.storedInFile", true); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_showWelcomeGadget", "66616C7365"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_showWelcomeGadget.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_userBornDate", "4E2F41"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_userBornDate.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_userId", "37383737616131302D383033612D346533612D386437362D656332616138653162653039"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_userId.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_user_approval_interacted", "31"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_user_approval_interacted.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_welcomeDialogMode", "31"); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.mam_gk_welcomeDialogMode.storedInFile", false); =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.url_history0001", "687474703A2F2F7777772E706F726E30302E636F6D2F3A3A3A636C69636B68616E646C65723A3A3A[...] =>.Superfluous.Conduit O69 - SBI: prefs.js [Abdou - 1wiobo5e.default] user_pref("valueApps.CT2851639.url_history0001.storedInFile", true); =>.Superfluous.Conduit O69 - SBI: SearchScopes [HKCU] {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {BB82DE59-BC4C-4172-9AC4-73315F71CFFE} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ Enumère les services démarrés par Svchost (32) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [317400] =>.Microsoft Windows Component Publisher® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [317400] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [317400] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (89) - 6s O87 - FAEL: "{9D4E7FE3-4BCA-4966-981F-84828E1B9B15}" [In-None-P6-TRUE] .(...) -- C:\Users\Abdou\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{E6A13792-E02D-4E53-A5A6-B062FC569E82}" [In-None-P17-TRUE] .(...) -- C:\Users\Abdou\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O87 - FAEL: "{9A728E14-BC8B-4EA7-9DD3-20B61FA9A7E7}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe (.not file.) O87 - FAEL: "{E469D3F8-C5BD-44C3-82FC-E3B1337E658F}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe (.not file.) O87 - FAEL: "{93BB9808-E489-44B9-9FDB-8BAD0548B3ED}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe (.not file.) O87 - FAEL: "{14D21305-A4D6-4751-9D92-CB29224E1A2F}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe (.not file.) O87 - FAEL: "{C14E1702-7998-4C6B-A420-79D3A12893EA}" [In-None-P6-TRUE] .(...) -- F:\Diablo III\Diablo III.exe (.not file.) O87 - FAEL: "{83810330-2019-40B9-A35A-06EC65D163FE}" [In-None-P17-TRUE] .(...) -- F:\Diablo III\Diablo III.exe (.not file.) O87 - FAEL: "TCP Query User{4830403C-E495-41CF-8394-A23063D51022}D:\greedytorrent\gtor.exe" [In-None-P6-TRUE] .(...) -- D:\greedytorrent\gtor.exe O87 - FAEL: "UDP Query User{A3DDF916-7724-415A-9AE5-4BCE0226675D}D:\greedytorrent\gtor.exe" [In-None-P17-TRUE] .(...) -- D:\greedytorrent\gtor.exe O87 - FAEL: "{970A5381-39ED-422C-9594-189527ABF7F1}" [In-None-P17-TRUE] .(...) -- D:\greedytorrent\gtor.exe O87 - FAEL: "{1C4A5CF6-0087-4071-BA39-900591EFDF32}" [In-None-P6-TRUE] .(...) -- D:\greedytorrent\gtor.exe O87 - FAEL: "{D34BD1F4-1309-4E2E-9BDA-F6A3B792A837}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer O87 - FAEL: "{37E14023-644F-44E7-8736-E7E4719B2C89}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer O87 - FAEL: "{5D88A310-18BD-47CE-A72D-82B084AB2E42}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe (.not file.) O87 - FAEL: "{F98C98FF-BCFE-455E-841A-FFB3C952B749}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe (.not file.) O87 - FAEL: "{5EAFAE9B-4365-4B5B-B579-7036D3461AE1}" [Out-None-P6-TRUE] .(...) -- F:\StarCraft II\Versions\Base24944\SC2.exe (.not file.) O87 - FAEL: "{C5EF9AFD-03F2-4F5E-85F7-157BE2CB5F64}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe (.not file.) O87 - FAEL: "{038F6380-8DF2-403A-A137-DF4C3C4C0416}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe (.not file.) O87 - FAEL: "{B81B98E4-923A-4B4E-BC77-D8FB872F59C7}" [In-None-P6-TRUE] .(...) -- F:\StarCraft II\Versions\Base24944\SC2.exe (.not file.) O87 - FAEL: "{5E85948C-A253-40F6-B770-B2D8BF8C655C}" [In-None-P17-TRUE] .(...) -- F:\StarCraft II\Versions\Base24944\SC2.exe (.not file.) O87 - FAEL: "{B15C7FA4-AB7F-4756-B820-C38BC6CE3902}" [In-None-P6-TRUE] .(...) -- F:\StarCraft II\Versions\Base24944\SC2.exe (.not file.) O87 - FAEL: "{949E3175-33B0-4FC3-9081-B677FC07FC3C}" [In-None-P17-TRUE] .(...) -- F:\StarCraft II\Versions\Base24944\SC2.exe (.not file.) O87 - FAEL: "TCP Query User{7FA0D316-8F3F-436E-B691-785C39DDE303}F:\cs1.6\hl.exe" [In-None-P6-TRUE] .(...) -- F:\cs1.6\hl.exe (.not file.) O87 - FAEL: "UDP Query User{8EF1F454-50FA-46D3-AD02-A5B7B4A51522}F:\cs1.6\hl.exe" [In-None-P17-TRUE] .(...) -- F:\cs1.6\hl.exe (.not file.) O87 - FAEL: "TCP Query User{5242153E-6766-4CB8-8639-83807763B550}F:\wot\wotlauncher.exe" [In-None-P6-TRUE] .(...) -- F:\wot\wotlauncher.exe (.not file.) O87 - FAEL: "UDP Query User{3ABDC354-15C7-413C-8D77-7D8C2B1A2120}F:\wot\wotlauncher.exe" [In-None-P17-TRUE] .(...) -- F:\wot\wotlauncher.exe (.not file.) O87 - FAEL: "{85A72D78-6D62-4A11-9A1D-A80F076E814C}" [In-None-P17-TRUE] .(...) -- F:\wot\wotlauncher.exe (.not file.) O87 - FAEL: "{6B966F70-E12B-4E10-A672-4B1105EFA23A}" [In-None-P6-TRUE] .(...) -- F:\wot\wotlauncher.exe (.not file.) O87 - FAEL: "TCP Query User{BEB9020D-58D8-48FD-9557-8CA696B8A61B}F:\wot\worldoftanks.exe" [In-None-P6-TRUE] .(...) -- F:\wot\worldoftanks.exe (.not file.) O87 - FAEL: "UDP Query User{1877842D-F51B-4691-9DF4-32B1098AB476}F:\wot\worldoftanks.exe" [In-None-P17-TRUE] .(...) -- F:\wot\worldoftanks.exe (.not file.) O87 - FAEL: "{16D984FB-FA9C-4E5D-A16D-45A4027BD400}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\WinZip Driver Updater\winzipdu.exe (.not file.) =>PUP.Optional.WinZipDriverUpdater O87 - FAEL: "TCP Query User{E982E6EA-CBB1-48F1-9CB4-AA2063730DAF}F:\cs1.6\server cs 1.6\hlds\hlds.exe" [In-None-P6-TRUE] .(...) -- F:\cs1.6\server cs 1.6\hlds\hlds.exe (.not file.) O87 - FAEL: "UDP Query User{C6967574-1168-4A49-BA1E-50941DC6DEB6}F:\cs1.6\server cs 1.6\hlds\hlds.exe" [In-None-P17-TRUE] .(...) -- F:\cs1.6\server cs 1.6\hlds\hlds.exe (.not file.) O87 - FAEL: "TCP Query User{C1F18244-12E3-4392-A327-50D60F14AC50}F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe" [In-None-P6-TRUE] .(...) -- F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe (.not file.) O87 - FAEL: "UDP Query User{B96A0690-1A0B-49BD-A497-95A9F3E9E736}F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe" [In-None-P17-TRUE] .(...) -- F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe (.not file.) O87 - FAEL: "{E7536EAE-6412-4868-917A-9555AC6CCAAB}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe (.not file.) O87 - FAEL: "{D30ED795-51F1-4DFB-B648-71FEEEA22022}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe (.not file.) O87 - FAEL: "{FB998E67-AD83-4517-B918-1B6D9EAE0570}" [In-None-P6-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\bingo.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{D9927A31-9503-4ECE-8B9A-316749762F3C}" [In-None-P17-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\bingo.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{9F29A62D-D13D-4F10-BF0A-8D8460B57FB3}" [In-None-P6-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\bingo.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6E7F8C9A-9241-4300-B35D-D4AA865EF8E4}" [In-None-P17-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\bingo.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{1EED14D3-D4CE-48AD-8A2F-1EC7325F2CC8}" [In-None-P6-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\trojan.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{0BDC248F-CC57-4DA8-8C76-46E074121377}" [In-None-P17-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\trojan.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{DD6BC96C-A274-499F-B41E-FAA7A68C40E7}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe (.not file.) O87 - FAEL: "{ED453396-579E-4FA9-83E8-51B0E916205D}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe (.not file.) O87 - FAEL: "{B8D03DBC-CEEC-4B1C-B9B3-0FBB64EDB43E}" [In-None-P6-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\System.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "{C9ECB522-7E02-4EEC-BDF7-7F7C25A08D03}" [In-None-P17-TRUE] .(...) -- C:\Users\Abdou\AppData\Local\Temp\System.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "TCP Query User{0BC85137-1396-4445-BF44-DD12CA5BF4B1}F:\watch_dogs-deluxe.edition-sc\bin\watch_dogs.exe" [In-None-P6-TRUE] .(...) -- F:\watch_dogs-deluxe.edition-sc\bin\watch_dogs.exe (.not file.) O87 - FAEL: "UDP Query User{BD9CFF65-9661-442C-8886-8A3B1F007C81}F:\watch_dogs-deluxe.edition-sc\bin\watch_dogs.exe" [In-None-P17-TRUE] .(...) -- F:\watch_dogs-deluxe.edition-sc\bin\watch_dogs.exe (.not file.) O87 - FAEL: "TCP Query User{A85AC85F-21CD-4D78-A464-6CF54EF23BA1}F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe" [In-None-P6-TRUE] .(...) -- F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe (.not file.) O87 - FAEL: "UDP Query User{A8D11AA5-04FA-4591-BA5C-18D247D12C97}F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe" [In-None-P17-TRUE] .(...) -- F:\nfs\need for speed rivals deluxe edition dlcs multi7 full unlocked\need for speed(tm) rivals-sg\nfs14.exe (.not file.) O87 - FAEL: "{6B7B0847-2E3A-410A-A3DF-EACE0EA632F6}" [In-None-P6-TRUE] .(...) -- F:\Watch Dogs\bin\Watch_Dogs.exe (.not file.) O87 - FAEL: "{392EC91D-A2A3-443A-979B-46832A9E49D6}" [In-None-P17-TRUE] .(...) -- F:\Watch Dogs\bin\Watch_Dogs.exe (.not file.) O87 - FAEL: "TCP Query User{2C380378-1972-4CA8-B90B-1409F4FBA0A0}D:\program files (x86)\origin games\battlefield 3\bf3.exe" [In-None-P6-TRUE] .(...) -- D:\program files (x86)\origin games\battlefield 3\bf3.exe (.not file.) O87 - FAEL: "UDP Query User{5A99E588-0CAF-4222-8FDC-939518CD8609}D:\program files (x86)\origin games\battlefield 3\bf3.exe" [In-None-P17-TRUE] .(...) -- D:\program files (x86)\origin games\battlefield 3\bf3.exe (.not file.) O87 - FAEL: "TCP Query User{BDE539D3-D63B-4D88-9810-03A77B03CB7F}F:\battlefield 4\bf4.exe" [In-None-P6-TRUE] .(...) -- F:\battlefield 4\bf4.exe (.not file.) O87 - FAEL: "UDP Query User{180C5923-CF1A-464A-B264-C6DA6B93F55A}F:\battlefield 4\bf4.exe" [In-None-P17-TRUE] .(...) -- F:\battlefield 4\bf4.exe (.not file.) O87 - FAEL: "TCP Query User{13048FC5-BF21-4755-A00C-FCDAA3FF2044}F:\wolfenstein the new order\wolfneworder_x64.exe" [In-None-P6-TRUE] .(...) -- F:\wolfenstein the new order\wolfneworder_x64.exe (.not file.) O87 - FAEL: "UDP Query User{77D0B915-2F7C-4939-AFF3-C77EEBBDBC9E}F:\wolfenstein the new order\wolfneworder_x64.exe" [In-None-P17-TRUE] .(...) -- F:\wolfenstein the new order\wolfneworder_x64.exe (.not file.) O87 - FAEL: "TCP Query User{F7A5CF3D-40D3-4E07-9C49-4DC3E6EAD2FD}F:\crysis 3\bin32\crysis3.exe" [In-None-P6-TRUE] .(...) -- F:\crysis 3\bin32\crysis3.exe (.not file.) O87 - FAEL: "UDP Query User{B52BCD04-31E6-4102-9965-B055BDB720E4}F:\crysis 3\bin32\crysis3.exe" [In-None-P17-TRUE] .(...) -- F:\crysis 3\bin32\crysis3.exe (.not file.) O87 - FAEL: "{0CC9B737-F415-4D8D-95E4-5DB6B39149D7}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steganos Online Shield\polipo\node.exe (.not file.) O87 - FAEL: "{3ABCF530-7A50-4F51-9C50-AC8759FA8721}" [In-None-P6-TRUE] .(...) -- D:\Program Files (x86)\Origin Games\FIFA World\fifaworld.exe (.not file.) O87 - FAEL: "{F3000A00-2EE4-4DFB-8F9F-718687E8D413}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\Origin Games\FIFA World\fifaworld.exe (.not file.) O87 - FAEL: "TCP Query User{F21FB4E1-8A2A-49C3-BEDE-9BFDAB62668A}D:\program files (x86)\origin games\fifa world\fifaworld.exe" [In-None-P6-TRUE] .(...) -- D:\program files (x86)\origin games\fifa world\fifaworld.exe (.not file.) O87 - FAEL: "UDP Query User{844D10E0-4C67-4275-9534-5D124A378446}D:\program files (x86)\origin games\fifa world\fifaworld.exe" [In-None-P17-TRUE] .(...) -- D:\program files (x86)\origin games\fifa world\fifaworld.exe (.not file.) O87 - FAEL: "TCP Query User{65E64FAC-331A-412D-9098-1FCBF7D9545A}D:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe" [In-None-P6-TRUE] .(...) -- D:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe (.not file.) O87 - FAEL: "UDP Query User{D21ED0BB-D9D1-45C8-B305-67C2FAC8C59C}D:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe" [In-None-P17-TRUE] .(...) -- D:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe (.not file.) O87 - FAEL: "{F2B5DAF2-A06C-4F01-9308-B98E1777B9E6}" [In-None-P17-TRUE] .(...) -- D:\GlassWire\GWCtlSrv.exe (.not file.) O87 - FAEL: "{D2CC6AD4-CC7B-4009-9198-28631930A023}" [Out-None-P17-TRUE] .(...) -- D:\GlassWire\GWCtlSrv.exe (.not file.) O87 - FAEL: "TCP Query User{72560719-B06B-4D3A-A5D0-B74174560078}F:\fifa 15 pc ultimate team edition\3dmgame-fifa.15.pc.ultimate.team.edition.with.up.4.multi15.cracked-3dm\fifa 15\fifa15.exe" [In-None-P6-TRUE] .(...) -- F:\fifa 15 pc ultimate team edition\3dmgame-fifa.15.pc.ultimate.team.edition.with.up.4.multi15.cracked-3dm\fifa 15\fifa15.exe (.not file.) O87 - FAEL: "UDP Query User{E5D6F311-BBBC-4F26-AC19-1595E40488B3}F:\fifa 15 pc ultimate team edition\3dmgame-fifa.15.pc.ultimate.team.edition.with.up.4.multi15.cracked-3dm\fifa 15\fifa15.exe" [In-None-P17-TRUE] .(...) -- F:\fifa 15 pc ultimate team edition\3dmgame-fifa.15.pc.ultimate.team.edition.with.up.4.multi15.cracked-3dm\fifa 15\fifa15.exe (.not file.) O87 - FAEL: "{7C9DFC94-2074-4763-875C-6CEE89297046}" [In-None-P6-TRUE] .(...) -- D:\UnHackMe\Unhackme.exe (.not file.) O87 - FAEL: "{D9EA577E-022D-444E-B938-D1DC5A9E7EF8}" [In-None-P17-TRUE] .(...) -- D:\UnHackMe\Unhackme.exe (.not file.) O87 - FAEL: "TCP Query User{7DB3F0E4-2058-4FA0-81E5-D51DCED37B70}F:\grand theft auto v-full unlocked-sg-chaos\grand theft auto v\gta5.exe" [In-None-P6-TRUE] .(...) -- F:\grand theft auto v-full unlocked-sg-chaos\grand theft auto v\gta5.exe (.not file.) O87 - FAEL: "UDP Query User{B5D6B2D7-D4A8-4F6E-A3E4-E1E4EF80606F}F:\grand theft auto v-full unlocked-sg-chaos\grand theft auto v\gta5.exe" [In-None-P17-TRUE] .(...) -- F:\grand theft auto v-full unlocked-sg-chaos\grand theft auto v\gta5.exe (.not file.) O87 - FAEL: "TCP Query User{2A9EBAEF-EE14-4A47-B4DD-6E6EB14CEDF1}C:\program files (x86)\miniget\miniget.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\miniget\miniget.exe (.not file.) O87 - FAEL: "UDP Query User{EC6D57BF-9AF4-436C-A26B-850FAE01A447}C:\program files (x86)\miniget\miniget.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\miniget\miniget.exe (.not file.) O87 - FAEL: "{E61778B3-6E84-4F62-9F4D-A9646B882D03}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe (.not file.) O87 - FAEL: "{1744BA2F-1B62-4D99-916D-4EFF60F0A340}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe (.not file.) O87 - FAEL: "{9EA676FE-1FA9-4F0F-B71B-26A33CCC45A5}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe (.not file.) O87 - FAEL: "{1E1527BC-93AA-4B84-BE30-2F687C2940E0}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe (.not file.) O87 - FAEL: "{654AD6EC-70A2-4865-9A8B-ECB3D10784D6}" [In-None-P6-TRUE] .(...) -- D:\Steam\Steam.exe (.not file.) O87 - FAEL: "{CDE1917C-D919-4647-B654-8BFE1BAA3E4B}" [In-None-P17-TRUE] .(...) -- D:\Steam\Steam.exe (.not file.) O87 - FAEL: "{5AE06060-E12F-405A-8929-131E805A0542}" [In-None-P6-TRUE] .(...) -- D:\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "{EF24CA29-22FB-43A7-AC7B-E22276541DBA}" [In-None-P17-TRUE] .(...) -- D:\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "TCP Query User{2EE39069-B4C2-4FA8-9213-649965E9B1EF}D:\embratoria\embratoriag1\http.exe" [In-None-P6-TRUE] .(...) -- D:\embratoria\embratoriag1\http.exe (.not file.) O87 - FAEL: "UDP Query User{A6000EEA-334D-46AD-B8B8-EEF77351120B}D:\embratoria\embratoriag1\http.exe" [In-None-P17-TRUE] .(...) -- D:\embratoria\embratoriag1\http.exe (.not file.) ---\\ Liste des émulateurs de CD/DVD (MBR Hook) (2) - 3s HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup ---\\ Scan Additionnel (29) - 12s HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} =>.Superfluous.Orphan HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} =>.Superfluous.Orphan HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect C:\Program Files (x86)\Volaro =>PUP.Optional.Vonteera C:\ProgramData\Fuan2Soave =>PUP.Optional.Fun2Save C:\ProgramData\save net =>PUP.Optional.SaveNet C:\ProgramData\Tencent =>.Superfluous.Tencent C:\Users\Abdou\AppData\Roaming\HMYGSetting =>Adware.Suspect C:\Users\Abdou\AppData\Roaming\Tencent =>.Superfluous.Tencent C:\Users\Abdou\AppData\Local\CrashRpt =>.Superfluous.CrashReports [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{D34BD1F4-1309-4E2E-9BDA-F6A3B792A837} =>PUP.Optional.DllFilesFixer [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{37E14023-644F-44E7-8736-E7E4719B2C89} =>PUP.Optional.DllFilesFixer [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{16D984FB-FA9C-4E5D-A16D-45A4027BD400} =>PUP.Optional.WinZipDriverUpdater HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup C:\Users\Abdou\AppData\Roaming\AndyCleanupTool.exe =>Heuristic.Suspect C:\Users\Abdou\AppData\Roaming\AndyCleanVM.exe =>Heuristic.Suspect C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_instagram.en.softonic.com_0.localstorage =>.Superfluous.Softonic C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_instagram.en.softonic.com_0.localstorage-journal =>.Superfluous.Softonic C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.safesidetabplussearch.com_0.localstorage =>PUP.Optional.Sidetab C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.safesidetabplussearch.com_0.localstorage-journal =>PUP.Optional.Sidetab C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage =>PUP.Optional.Chatango C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal =>PUP.Optional.Chatango C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.Superfluous.AudienceInsights C:\Users\Abdou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.Superfluous.AudienceInsights ---\\ Récapitulatif des éléments trouvés sur votre station (25) - 0s https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.CPUminer https://nicolascoolman.eu/2017/02/23/adware-bandoo/ =>Adware.Bandoo https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AkamaiHD https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>PUP.Optional.CrossRider https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.Superfluous.Conduit https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.Superfluous.Tencent https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.IGearSettings https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SfKpCouponApp https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Downloader https://www.nicolascoolman.com/fr/pup-quickshare/ =>PUP.Optional.QuickShare https://www.nicolascoolman.com/fr/trojan-vonteera/ =>PUP.Optional.Vonteera https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Fun2Save https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SaveNet https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.CrashReports https://www.nicolascoolman.com/fr/hijacker-smartbar/ =>PUP.Optional.SmartBar https://www.nicolascoolman.com/fr/pup-quickstart/ =>PUP.Optional.QuickStart https://www.nicolascoolman.com/fr/pup-optional-dllfilesfixer/ =>PUP.Optional.DllFilesFixer https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WinZipDriverUpdater https://www.nicolascoolman.com/fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Softonic https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Sidetab https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Chatango https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AudienceInsights ~ Unselected Options: O82, ~ End of the scan, 54812 items in 05mn40s (1990)(0)