cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.24.101 Par Nicolas Coolman (2015/07/24)
~ Démarré par Mika (Administrator) (2015/07/25 00:25:36)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Mika\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Mika\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 7, 32-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v44.0.2403.107
MSIE: Internet Explorer v11.0.9600.17914

---\\ Informations sur les produits Windows (4) - 4s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (3) - 0s
avast! Free Antivirus v5.1.889.0
Microsoft Security Client v4.8.0204.0
Microsoft Security Essentials v4.8.204.0

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 18 PPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3623.712 MB (44% free)
~ System Restore: Activé (Enable)
~ System drive C: has 41 GB free of 159 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: MIKA-PC
~ User Name: Mika
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 41 GB free of 159 GB (System)
~ Drive D: has 585 GB free of 953 GB
~ Drive E: has 30 GB free of 126 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 1s
[MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320]
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544]
[MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256]
[MD5.63B01F72FD727D5736DBEF54174D8F93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1951232]
[MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128]
[MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536]
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944]
[MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584]
[MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656]
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544]
[MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336]
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544]
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896]
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888]
[MD5.01C5B803F6E1FDF8F16F0763DA9B997D] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [124416]
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904]
[MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352]
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360]
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848]
[MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632]
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168]
[MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752]
[MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632]

---\\ Processus lancés (41) - 3s
[MD5.B2C1ED0B75991C7FC94598BC15A21A0B] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [212992] [PID.1180]
[MD5.25FB74EABCE5EC7836BA3CFB3C58449A] - (.AVAST Software - avast! Service.) -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe [40384] [PID.1640]
[MD5.B3024B25486FD7E3C8AA6A682D36C51A] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [542208] [PID.1660]
[MD5.B33CF4DE909A5B30F526D82053A63C8E] - (.ABBYY - ABBYY network license server.) -- C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048] [PID.2136]
[MD5.1A7A2CAC3B5AFABD6636B25DFE33CBAD] - (...) -- C:\Program Files\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232] [PID.2204]
[MD5.0FD99BAF91AD54ED70E64DE5BBA03559] - (...) -- C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\hnsgBFB7.tmp [161792] [PID.2524] =>PUP.Optional.CrossRider
[MD5.54E93226F26DC79B33AD43A11E55AFD4] - (...) -- C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\knsz4F62.tmp [458752] [PID.2616] =>PUP.Optional.CrossRider
[MD5.C5323F961012E91A9E4BF4FF377655F3] - (...) -- C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\jnslA294.tmp [209920] [PID.2740] =>PUP.Optional.CrossRider
[MD5.C5E4602D85029C666A42890A3B2DFA45] - (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe [140936] [PID.2836]
[MD5.406F3093117E72925DF8C50457E280A1] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [583680] [PID.2868]
[MD5.C6FEF8A009661F07B3D63DFFA2109C29] - (...) -- C:\Program Files\2A3583A0-1437427330-11DD-BEE3-60A44CB5D4C2\knsq2007.tmpfs [279040] [PID.2896] =>PUP.Optional.CrossRider
[MD5.E076BAE968916E9D2980814CA7E7AB8C] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [1786704] [PID.2932]
[MD5.A50CD1BC1CFFEC65E0D176DBEC70682A] - (...) -- c:\Windows\mzxl.exe [408576] [PID.2956]
[MD5.3A2BDD76E7D2A5F40A7174793D1BA794] - (...) -- C:\Windows\System32\PnkBstrA.exe [75136] [PID.3092]
[MD5.67EAD2898F681B4ECA6E385AA39C8539] - (.Copyright © 2013-2015 - GameScannerService.) -- C:\Program Files\Razer\Razer Services\GSS\GameScannerService.exe [187072] [PID.3136]
[MD5.CF3E485E3D3D7CCAB27B139D73B63E20] - (...) -- c:\Windows\zxl.exe [417792] [PID.3404]
[MD5.B2B46AF563C57A2020A2B6256E014340] - (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) -- D:\Program Files\LogMeIn Hamachi\hamachi-2.exe [1878888] [PID.3452]
[MD5.77CB836CFD03A033B075E85B649D910F] - (.LogMeIn, Inc. - LMIGuardianSvc.) -- D:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [411920] [PID.3504]
[MD5.29A4BD2A63017D4E4F5081598A8A19AB] - (.LogMeIn Inc. - Hamachi Client Application.) -- D:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [5579624] [PID.3792]
[MD5.77CB836CFD03A033B075E85B649D910F] - (.LogMeIn, Inc. - LMIGuardianSvc.) -- D:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [411920] [PID.3804]
[MD5.349DFEE018315D8B69B39649141FB79A] - (.Useful Technology - BreakingNewsAlert Service.) -- C:\ProgramData\yJMLaYqE\mGGVovVS.exe [2732000] [PID.3888]
[MD5.A1682BFA0F419762068B986B1EAF2E59] - (.Saitek - Saitek Volume Monitor.) -- C:\Program Files\Saitek\CyborgKeyboard\SaiVolume.exe [126976] [PID.5216]
[MD5.6B53177248AC5327FFB5CB2D5C500C94] - (.CANON INC. - Canon IJ Network Scanner Selector EX.) -- C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736] [PID.5344]
[MD5.7B878518590E826F1F3A5B1D61D405F8] - (.AVAST Software - avast! Antivirus.) -- D:\Program Files\Alwil Software\Avast5\AvastUI.exe [3396624] [PID.5440]
[MD5.68875AA52E54393CD8A8E497D0398B4F] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files\AMD\ATI.ACE\Core-Static\MOM.exe [307400] [PID.5448]
[MD5.4CA73089668275456CE78A1B714C7CCF] - (.TomTom - TomTom MyDrive Connect.) -- C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe [1917832] [PID.5488]
[MD5.AE13A2B600EAF21BE782FA9CD8127294] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Host application.) -- C:\Program Files\AMD\ATI.ACE\Core-Static\CCC.exe [307912] [PID.5652]
[MD5.CFB0D36F1F40502BBF913299BCB39E2F] - (.Blizzard Entertainment - Battle.net Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.4150\Agent.exe [5538352] [PID.5680]
[MD5.12DB8B717D6F75AD50D4CEB0C5509C8D] - (.Blizzard Entertainment - Battle.net desktop app.) -- D:\Program Files\Battle.net\Battle.net.5952\Battle.net.exe [10231856] [PID.1292]
[MD5.DA1C057125D9FE73A11A8EF4EDDB79D3] - (.Copyright 2013 - .) -- C:\Users\Mika\AppData\Local\Temp\nsb1835.tmp [234502] [PID.6436]
[MD5.153F088DFDB3F940AD9DAEB04A3ACC4D] - (.SoftBrain Technologies Ltd. - SmartWeb helper.) -- C:\Users\Mika\AppData\Local\SmartWeb\SmartWebHelper.exe [270368] [PID.7152] =>PUP.Optional.SmartWebSearch
[MD5.44069C2AC699C8DAD80A96FB1C8DFE57] - (.SoftBrain Technologies Ltd. - SmartWeb Application.) -- C:\Users\Mika\AppData\Local\SmartWeb\SmartWebApp.exe [557088] [PID.7264] =>PUP.Optional.SmartWebSearch
[MD5.02D55E3F5B153F99B3743A69B95BFA52] - (.DTools LIMITED - Windows DTools.) -- C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [707240] [PID.6040] =>PUP.Optional.Fuyu
[MD5.12B9B7499CF8AF7353316EB329098902] - (...) -- C:\Users\Mika\AppData\Local\gmsd_fr_005010040\upgmsd_fr_005010040.exe [3296912] [PID.7400] =>PUP.Optional.CrossRider
[MD5.46C5A270C93A99D7AB2D79A56E38343F] - (...) -- C:\Program Files\gmsd_fr_005010040\gmsd_fr_005010040.exe [3981968] [PID.7244] =>PUP.Optional.CrossRider
[MD5.46C5A270C93A99D7AB2D79A56E38343F] - (...) -- C:\Program Files\gmsd_fr_005010040\gmsd_fr_005010040.exe [3981968] [PID.7524] =>PUP.Optional.CrossRider
[MD5.E9E2DC4B14F2A20046683E2B699BA79C] - (.XTab system - ProtectSvc.exe.) -- C:\Program Files\MiuiTab\ProtectService.exe [125112] [PID.7076] =>PUP.Optional.MiuiTab
[MD5.0DE6521016CAE929552DD557979E196C] - (.SearchProtect - CmdShell.exe.) -- C:\Program Files\MiuiTab\CmdShell.exe [29368] [PID.6312] =>PUP.Optional.MiuiTab
[MD5.3FAAB20176A272E407B735FDCA8EB15F] - (...) -- C:\Users\Mika\AppData\Local\Temp\nsi847D.tmp [229097] [PID.1488]
[MD5.84B5D5396472C76E2DC550F4401EA233] - (.XTab system - SupHPNot.exe.) -- C:\Program Files\MiuiTab\HPNotify.exe [673976] [PID.1472] =>PUP.Optional.MiuiTab
[MD5.452C1A01EE098F4B0B052AB85EAFA61A] - (.WS - WS Client Service.) -- C:\Program Files\WordShark_1.10.0.19\Service\wssvc.exe [299096] [PID.6840] =>PUP.Optional.WordShark

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (10) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype Click to Call
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (15) - 1s
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\{0fa2149e-bb2c-4ac2-a8d3-479599819475}.xpi
P2 - EXT FILE: (...) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
P2 - EXT: (. - flashbugcoursevectorcom.) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\flashbug@coursevector.com
P2 - EXT: (...) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\staged
P2 - EXT: (.Fast Discountz - Fast Discountz.) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\{2a4808f0-e451-4d0b-982a-bb0f44d3354d}
P2 - EXT: (.savesense.com - SaveSense.) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\{8b337819-d1e8-48d3-8178-168ae8c99c36}
P2 - EXT: (.Tom Mutdosch and Daniel Lee - ReminderFox.) -- C:\Users\Mika\AppData\Roaming\Mozilla\Firefox\Profiles\nmhr4vr7.default\extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae}
P2 - FPN: [HKCU] [ubisoft.com/uplaypc] - (...) -- C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC..) -- C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.31.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.31.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.5] - (.VideoLAN.) -- D:\Program Files\VideoLAN\VLC\npvlc.dll

---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (2) - 1s
B2 - EXT: [hkhggnncdpfibdhinjiegagmopldibha] C:\Users\Mika\AppData\Roaming\Opera Software\Opera Stable\Extensions\hkhggnncdpfibdhinjiegagmopldibha
B2 - EXT: [{background:{scripts:[background.js]}content_scrip] C:\Users\Mika\AppData\Roaming\Opera Software\Opera Stable\Extensions\njcppddkcdojnilnknjifcgmnnelhifi

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (2) - 0s
54.204
~ Le fichier hôte est sain (The hosts file is clean) (23)

---\\ Browser Helper Object de navigateur (BHO) (O2) (6) - 0s
O2 - BHO: GoodTab Class - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.MiuiTab
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: On Stage - {aff87634-f4a9-42bc-b2dc-be240584d095} (Orphean) =>PUP.Optional.OnStage
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll

---\\ Internet Explorer Toolbars (O3) (2) - 0s
O3 - Toolbar: 0x86989D756F0C9844BAB64A5F47C6C72F - [HKCU]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Canon Easy-WebPrint EX - [HKLM]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll

---\\ Applications lancées au démarrage du sytème (O4) (16) - 0s
O4 - HKLM\..\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
O4 - HKLM\..\Run: [SaiVolume] . (.Saitek - Saitek Volume Monitor.) -- C:\Program Files\Saitek\CyborgKeyboard\SaiVolume.exe
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
O4 - HKLM\..\Run: [Logitech Download Assistant] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKLM\..\RunOnce: [upgmsd_fr_005010040.exe] . (...) -- C:\Users\Mika\AppData\Local\gmsd_fr_005010040\upgmsd_fr_005010040.exe =>PUP.Optional.CrossRider
O4 - HKCU\..\Run: [ccleaner] . (.Piriform Ltd - CCleaner.) -- D:\Program Files\CCleaner\CCleaner.exe
O4 - HKCU\..\Run: [MyDriveConnect.exe] . (.TomTom - TomTom MyDrive Connect.) -- C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-414233806-1280814408-960427684-1000\..\Run: [ccleaner] . (.Piriform Ltd - CCleaner.) -- D:\Program Files\CCleaner\CCleaner.exe
O4 - HKUS\S-1-5-21-414233806-1280814408-960427684-1000\..\Run: [MyDriveConnect.exe] . (.TomTom - TomTom MyDrive Connect.) -- C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe

---\\ Raccourcis Global Startup (O4G) (9) - 22s
O4 - GS\Desktop [Administrateur]: AnyProtect.lnk . (.AnyProtect.com - AnyProtect.) C:\Program Files\AnyProtectEx\AnyProtect.exe =>PUP.Optional.AnyProtect
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (...) C:\Users\Mika\AppData\Local\WikiBrowser\Application\wikibrowser.exe =>PUP.Optional.WikiBrowser
O4 - GS\Startup [Administrateur]: SmartWeb.lnk . (.SoftBrain Technologies Ltd. - SmartWeb helper.) C:\Users\Mika\AppData\Local\SmartWeb\SmartWebHelper.exe =>PUP.Optional.SmartWebSearch
O4 - GS\Desktop [Invité]: AnyProtect.lnk . (.AnyProtect.com - AnyProtect.) C:\Program Files\AnyProtectEx\AnyProtect.exe =>PUP.Optional.AnyProtect
O4 - GS\Quicklaunch [Invité]: Launch Internet Explorer Browser.lnk . (...) C:\Users\Mika\AppData\Local\WikiBrowser\Application\wikibrowser.exe =>PUP.Optional.WikiBrowser
O4 - GS\Startup [Invité]: SmartWeb.lnk . (.SoftBrain Technologies Ltd. - SmartWeb helper.) C:\Users\Mika\AppData\Local\SmartWeb\SmartWebHelper.exe =>PUP.Optional.SmartWebSearch
O4 - GS\Desktop [Mika]: AnyProtect.lnk . (.AnyProtect.com - AnyProtect.) C:\Program Files\AnyProtectEx\AnyProtect.exe =>PUP.Optional.AnyProtect
O4 - GS\Quicklaunch [Mika]: Launch Internet Explorer Browser.lnk . (...) C:\Users\Mika\AppData\Local\WikiBrowser\Application\wikibrowser.exe =>PUP.Optional.WikiBrowser
O4 - GS\Startup [Mika]: SmartWeb.lnk . (.SoftBrain Technologies Ltd. - SmartWeb helper.) C:\Users\Mika\AppData\Local\SmartWeb\SmartWebHelper.exe =>PUP.Optional.SmartWebSearch

---\\ Modification Domaine/Adresses DNS (O17) (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 52.18.92.32,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 52.18.92.32,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s
O20 - AppInit_DLLs: . (...) - C:\ProgramData\TomorrowGames\TomorrowGames32.dll (.not file.) =>PUP.Optional.TomorrowGames

---\\ Liste des services NT non Microsoft et non désactivés (O23) (33) - 0s
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: acengine (acengine) . (...) - C:\Program Files\FastSearch\acengine.exe (.not file.) =>PUP.Optional.Abengine
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe
O23 - Service: ASUS Com Service (asComSvc) . (...) - C:\Program Files\ASUS\AXSP\1.01.01\atkexComSvc.exe
O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - D:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: Wire Professional Version (comyninu) . (...) - C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\hnsgBFB7.tmp =>PUP.Optional.CrossRider
O23 - Service: Barcode Reader Web Address (fuxohufe) . (...) - C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\knsz4F62.tmp =>PUP.Optional.CrossRider
O23 - Service: Plug URL (gumihinu) . (...) - C:\Users\Mika\AppData\Roaming\2A3583A0-1435614394-11DD-BEE3-60A44CB5D4C2\knstEDB2.tmpfs (.not file.) =>PUP.Optional.CrossRider
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) . (.LogMeIn Inc. - Hamachi Client Tunneling Engine.) - D:\Program Files\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: Key In Bold Italic (hyverumu) . (...) - C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\jnslA294.tmp =>PUP.Optional.CrossRider
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files\Canon\IJPLM\ijplmsvc.exe
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Forename Click (kikebomi) . (...) - C:\Users\Mika\AppData\Roaming\2A3583A0-1436096150-11DD-BEE3-60A44CB5D4C2\knsrFA5E.tmpfs (.not file.) =>PUP.Optional.CrossRider
O23 - Service: Predictive Text Desktop Publishing (lizedero) . (...) - C:\Program Files\2A3583A0-1437427330-11DD-BEE3-60A44CB5D4C2\knsq2007.tmpfs =>PUP.Optional.CrossRider
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe
O23 - Service: mGGVovVS (mGGVovVS) . (.Useful Technology - BreakingNewsAlert Service.) - C:\ProgramData\yJMLaYqE\mGGVovVS.exe
O23 - Service: mzxl (mzxl) . (...) - c:\Windows\mzxl.exe
O23 - Service: Link Router (pegifepy) . (...) - C:\Users\Mika\AppData\Roaming\2A3583A0-1435486833-11DD-BEE3-60A44CB5D4C2\knsa7805.tmpfs (.not file.) =>PUP.Optional.CrossRider
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) . (.Copyright © 2013-2015 - GameScannerService.) - C:\Program Files\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe
O23 - Service: SW Updater (SW_Updater) . (...) - C:\Program Files\StormWarnings\SW_Updater.exe (.not file.) =>PUP.Optional.StormWarnings
O23 - Service: Encyclopaedia Enter (vicoqudu) . (...) - C:\Users\Mika\AppData\Roaming\2A3583A0-1435486833-11DD-BEE3-60A44CB5D4C2\hnslBA6A.tmp (.not file.) =>PUP.Optional.CrossRider
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED - Windows DTools.) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe =>PUP.Optional.Fuyu
O23 - Service: WS 1.10.0.19 Client Service (wssvc_1.10.0.19) . (.WS - WS Client Service.) - C:\Program Files\WordShark_1.10.0.19\Service\wssvc.exe =>PUP.Optional.WordShark
O23 - Service: Typewriter High Resolution (zejytose) . (...) - C:\Users\Mika\AppData\Roaming\2A3583A0-1435486833-11DD-BEE3-60A44CB5D4C2\jnsq9F69.tmp (.not file.) =>PUP.Optional.CrossRider
O23 - Service: zxl (zxl) . (...) - c:\Windows\zxl.exe

---\\ Tâches planifiées en automatique (O39) (59) - 3s
[MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104]
[MD5.011BD8A49AF856E8A8EE32652D1CFC05] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [268976]
[MD5.2691439FAC40F46C937BB684A3AE2E0F] [APT] [APSnotifierPP1] (.AnyProtect.com.) -- C:\Program Files\AnyProtectEx\AnyProtect.exe [6434816] =>PUP.Optional.AnyProtect
[MD5.2691439FAC40F46C937BB684A3AE2E0F] [APT] [APSnotifierPP2] (.AnyProtect.com.) -- C:\Program Files\AnyProtectEx\AnyProtect.exe [6434816] =>PUP.Optional.AnyProtect
[MD5.2691439FAC40F46C937BB684A3AE2E0F] [APT] [APSnotifierPP3] (.AnyProtect.com.) -- C:\Program Files\AnyProtectEx\AnyProtect.exe [6434816] =>PUP.Optional.AnyProtect
[MD5.00000000000000000000000000000000] [APT] [Bidaily Synchronize Task[8da6]] (...) -- c:\programdata\{ba3818bb-2bfb-827e-ba38-818bb2bf62ec}\hqghumeaylnlf.exe (.not file.) [0] =>PUP.Optional.BidailySync
[MD5.00000000000000000000000000000000] [APT] [Ehebcnoee] (...) -- C:\Program Files\shopperz\Eiefj.bat (.not file.) [0] =>PUP.Optional.Shopperz
[MD5.F02A533F517EB38333CB12A9E8963773] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [136176]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: APSnotifierPP1 - (.AnyProtect.com.) -- C:\Windows\Tasks\APSnotifierPP1.job [366] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP2 - (.AnyProtect.com.) -- C:\Windows\Tasks\APSnotifierPP2.job [364] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP3 - (.AnyProtect.com.) -- C:\Windows\Tasks\APSnotifierPP3.job [364] =>PUP.Optional.AnyProtect
O39 - APT: Bidaily Synchronize Task[8da6] - (...) -- C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job [338] =>PUP.Optional.BidailySync
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1046]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1050]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GPQNQZ1.job [328]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\LifeDestination.job [330]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\OSUFQFFHNVFWSOIS.job [340]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\RichFix.job [348]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\Superclean.job [338]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\UNKCPENHFXXYIEOH.job [340]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\UUJZUZRRQY1.job [352]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\WeighExact.job [334]
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940]
O39 - APT: APSnotifierPP1 - (.AnyProtect.com.) -- C:\Windows\System32\Tasks\APSnotifierPP1 [2814] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP2 - (.AnyProtect.com.) -- C:\Windows\System32\Tasks\APSnotifierPP2 [2812] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP3 - (.AnyProtect.com.) -- C:\Windows\System32\Tasks\APSnotifierPP3 [2812] =>PUP.Optional.AnyProtect
O39 - APT: Bidaily Synchronize Task[8da6] - (...) -- C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] [3248] =>PUP.Optional.BidailySync
O39 - APT: Bidaily Synchronize Task[8da6] - (...) -- C:\Windows\System32\Tasks\DNSWABENO [22140] =>PUP.Optional.BidailySync
O39 - APT: Ehebcnoee - (...) -- C:\Windows\System32\Tasks\Ehebcnoee [3618] =>PUP.Optional.Shopperz
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3794]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4046]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GPQNQZ1 [2850]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\LifeDestination [3240]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\OSUFQFFHNVFWSOIS [3372]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\PenWes [2958]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\RichFix [3258]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\sab3009 [3086]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task [4028]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\Superclean [3248]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\tet3008 [3086]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\UNKCPENHFXXYIEOH [3372]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\UUJZUZRRQY1 [2874]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\WeighExact [3244]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Core [4154]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Pending Update [4164]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{23824FEA-8AD3-4C6F-88B1-D13CE51A852A} [3028]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{30476027-26A3-4079-BC1B-32608A9A0681} [3228]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{45D27098-4D03-4E07-88D2-26C9071ECCCA} [3164]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{52DCAFC4-C39A-44E6-BA63-D595CC897F15} [3178]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{6BA9E438-3B1F-455E-8675-503D8C675036} [3028]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{7A030D55-270C-4DA9-8852-656593A8FBF1} [3202]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{A561DAA3-476F-4362-9EE1-6E6A2BE69166} [3230]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{B961BE81-0284-4508-866A-E8C9DEBDBE47} [3226]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{C6D0D452-94EC-4307-B63F-CD7DD59DF145} [3032]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{C70F0BC5-0552-4E4A-BDC1-3B5D09561EB3} [3028]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{D3143598-22DB-439C-88D7-D10E919BC8F1} [3230]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\{F60BCAF9-851E-4E4D-A364-F38F75374F54} [3028]

---\\ Logiciels installés (O42) (126) - 6s
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- ABBYY FineReader 9.0 Sprint
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Flash Player 18 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI
O42 - Logiciel: AnyProtect - (.CMI Limited.) [HKLM] -- AnyProtect =>PUP.Optional.AnyProtect
O42 - Logiciel: avast! Free Antivirus v5.1.889.0 - (.Alwil Software.) [HKLM] -- avast5
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM] -- Battle.net
O42 - Logiciel: BitRaider Streaming Client - (.BitRaider, LLC.) [HKLM] -- BitRaider Streaming Client
O42 - Logiciel: BitRaider Web Client - (.BitRaider, LLC.) [HKLM] -- BitRaider Web Client
O42 - Logiciel: Canon MG3500 series On-screen Manual - (.Canon Inc..) [HKLM] -- Canon MG3500 series On-screen Manual
O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM] -- Canon My Image Garden
O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM] -- Canon My Image Garden Design Files
O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM] -- CANONIJPLM100
O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM] -- CanonMyPrinter
O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM] -- CanonQuickMenu
O42 - Logiciel: Canon IJ Network Scanner Selector EX - (.Canon Inc..) [HKLM] -- Canon_IJ_Network_Scanner_Selector_EX
O42 - Logiciel: Canon IJ Network Tool - (.Canon Inc..) [HKLM] -- Canon_IJ_Network_UTILITY
O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM] -- Canon_IJ_Scan_Utility
O42 - Logiciel: DC-Bass Source 1.3.0 - (...) [HKLM] -- DC-Bass Source
O42 - Logiciel: Diablo III - (.Blizzard Entertainment.) [HKLM] -- Diablo III
O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup
O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM] -- Easy-WebPrint EX
O42 - Logiciel: Enregistrement utilisateur de Canon MG3500 series - (.?Canon Inc..) [HKLM] -- Enregistrement utilisateur de Canon MG3500 series
O42 - Logiciel: Désinstallation de l'imprimante EPSON XP-302 303 305 306 Series - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON XP-302 303 305 306 Series
O42 - Logiciel: Friendly Error - (...) [HKLM] -- FriendlyError
O42 - Logiciel: GamesDesktop 001.005010040 - (.GAMESDESKTOP.) [HKLM] -- gmsd_fr_005010040_is1 =>PUP.Optional.GamesDesktop
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome
O42 - Logiciel: Haali Media Splitter - (...) [HKLM] -- HaaliMkx
O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM] -- Hearthstone
O42 - Logiciel: Age of Empires III - (.Microsoft Game Studios.) [HKLM] -- InstallShield_{485775E8-AEB8-46BD-922B-242879E03DD5}
O42 - Logiciel: LAME v3.99.3 (for Windows) - (...) [HKLM] -- LAME_is1
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM] -- LogMeIn Hamachi
O42 - Logiciel: Media Player Codec Pack 4.3.3 - (.Media Player Codec Pack.) [HKLM] -- Media Player - Codec Pack
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client
O42 - Logiciel: MyDriveConnect 4.0.3.2180 - (.TomTom.) [HKLM] -- MyDriveConnect
O42 - Logiciel: mystartsearch uninstall - (.mystartsearch.) [HKLM] -- mystartsearch uninstall =>PUP.Optional.StartSearch
O42 - Logiciel: OpenSource Flash Video Splitter 1.0.0.5 - (...) [HKLM] -- OpenSource Flash Video Splitter
O42 - Logiciel: PDF Creator - (...) [HKLM] -- PDF Creator
O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM] -- PunkBusterSvc
O42 - Logiciel: Raptr - (...) [HKLM] -- Raptr
O42 - Logiciel: SmartWeb - (.SoftBrain Technologies Ltd..) [HKLM] -- SmartWeb =>PUP.Optional.SmartWebSearch
O42 - Logiciel: Empire: Total War - (.The Creative Assembly.) [HKLM] -- Steam App 10500
O42 - Logiciel: Arma 3 - (.Bohemia Interactive.) [HKLM] -- Steam App 107410
O42 - Logiciel: DARK - (.Realmforge Studios.) [HKLM] -- Steam App 225360
O42 - Logiciel: Deus Ex: Human Revolution - (.Eidos Montreal.) [HKLM] -- Steam App 28050
O42 - Logiciel: Trine - (.Frozenbyte.) [HKLM] -- Steam App 35700
O42 - Logiciel: Trine 2 - (.Frozenbyte.) [HKLM] -- Steam App 35720
O42 - Logiciel: Supreme Commander 2 - (.Gas Powered Games.) [HKLM] -- Steam App 40100
O42 - Logiciel: The Elder Scrolls V: Skyrim - (.Bethesda Game Studios.) [HKLM] -- Steam App 72850
O42 - Logiciel: Star Wars The Old Republic - (.Bioware/EA.) [HKLM] -- swtor_swtor
O42 - Logiciel: Sony Mobile Update Engine - (.Sony Mobile Communications Inc..) [HKLM] -- Update Engine
O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM] -- Uplay
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player
O42 - Logiciel: DirectVobSub 2.40.4209 - (.MPC-HC Team.) [HKLM] -- vsfilter_is1
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver
O42 - Logiciel: WordShark 1.10.0.19 - (.WordShark.) [HKLM] -- WordShark_1.10.0.19 =>PUP.Optional.WordShark
O42 - Logiciel: World of Warcraft - (.Blizzard Entertainment.) [HKLM] -- World of Warcraft
O42 - Logiciel: Steam - (.Valve.) [HKLM] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM] -- {05532126-B158-5B59-4322-BAF82F0D62A5}
O42 - Logiciel: LWS Pictures And Video - (.Logitech.) [HKLM] -- {08610298-29AE-445B-B37D-EFBE05802967}
O42 - Logiciel: Razer Synapse - (.Razer Inc..) [HKLM] -- {0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM] -- {11087D24-567D-7D88-69C6-D7A08B5F4C47}
O42 - Logiciel: Canon MG3500 series MP Drivers - (.Canon Inc..) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3500_series
O42 - Logiciel: CameraHelperMsi - (.Logitech.) [HKLM] -- {15634701-BACE-4449-8B25-1567DA8C9FD3}
O42 - Logiciel: LWS Help_main - (.Logitech.) [HKLM] -- {1651216E-E7AD-4250-92A1-FB8ED61391C9}
O42 - Logiciel: LWS Twitter - (.Logitech.) [HKLM] -- {174A3B31-4C43-43DD-866F-73C9DB887B48}
O42 - Logiciel: SpellForce 2 - Shadow Wars - (.Nom de votre société.) [HKLM] -- {1A4E47DC-6701-4A85-AA16-C1F99A44598C}
O42 - Logiciel: LWS YouTube Plugin - (.Logitech.) [HKLM] -- {21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}
O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2}
O42 - Logiciel: Skype™ 7.2 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM] -- {25E37535-8244-4A96-B707-E65E11B4A9D5}
O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM] -- {2CC34925-D47D-BD10-AA1E-FAA76F3B5D82}
O42 - Logiciel: AMD Media Foundation Decoders - (.Advanced Micro Devices, Inc..) [HKLM] -- {39091079-32B1-6586-3349-9F16E7FA1A79}
O42 - Logiciel: Star Wars: The Old Republic - (.Electronic Arts, Inc..) [HKLM] -- {3B11D799-48E0-48ED-BFD7-EA655676D8BB}
O42 - Logiciel: erLT - (.Logitech, Inc..) [HKLM] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140}
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790}
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {467BD8D1-2A8D-4366-911A-14146F07A91C}
O42 - Logiciel: Microsoft Games for Windows - LIVE - (.Microsoft Corporation.) [HKLM] -- {4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}
O42 - Logiciel: OpenOffice 4.0.0 - (.Apache Software Foundation.) [HKLM] -- {4F8C9861-DDCF-4EE8-978C-35B691C406B3}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {6E3939AE-9996-4D07-9A30-14C78AE93576}
O42 - Logiciel: LWS Gallery - (.Logitech.) [HKLM] -- {6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}
O42 - Logiciel: LWS Motion Detection - (.Logitech.) [HKLM] -- {71E66D3F-A009-44AB-8784-75E2819BA4BA}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM] -- {727FA732-7B59-F6CF-DBC6-72BE4D9C7D98}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM] -- {7941CEA2-7F1E-89F6-EA85-D885D44371F3}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM] -- {7B6DB690-4552-9EDC-40F3-4F73B2B98EB1}
O42 - Logiciel: LWS Launcher - (.Logitech.) [HKLM] -- {83C8FA3C-F4EA-46C4-8392-D3CE353738D6}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: LWS Webcam Software - (.Logitech.) [HKLM] -- {8937D274-C281-42E4-8CDB-A0B2DF979189}
O42 - Logiciel: Assassin's Creed - (.Ubisoft.) [HKLM] -- {8CFA9151-6404-409A-AF22-4632D04582FD}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE}
O42 - Logiciel: Assassin's Creed(R) III v1.02 - (.Ubisoft.) [HKLM] -- {9D15E813-0C26-41E7-ABC5-3EB06FF1B3CF}
O42 - Logiciel: LWS WLM Plugin - (.Logitech.) [HKLM] -- {9DAEA76B-E50F-4272-A595-0124E826553D}
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM] -- {A25FF1C0-80B6-4B8B-A551-DC525697A408}
O42 - Logiciel: Software Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: Saitek Cyborg Keyboard Volume 6.2.1.3 - (.Saitek.) [HKLM] -- {AA1AF34D-9056-4B72-A588-D9A7B8CB305B}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215}
O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001}
O42 - Logiciel: AMD Drag and Drop Transcoding - (.Advanced Micro Devices, Inc..) [HKLM] -- {AF1B3F09-B291-6F7D-DCE1-2899A6730428}
O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM] -- {B307472F-7BD9-4040-9255-CE6D6A1196A3}
O42 - Logiciel: LogMeIn Hamachi - (.LogMeIn, Inc..) [HKLM] -- {B8E7EF80-9719-4EEB-944D-E68D1F3DFA7B}
O42 - Logiciel: ASUS Product Register Program - (.ASUSTek Computer Inc..) [HKLM] -- {C87D79F6-F813-4812-B7A9-CCCAAB8B1188}
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM] -- {CA17AC98-DA1B-A84D-0921-AD1B1C3DF2CF}
O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {CC158E44-6465-402E-B2BB-D86C455670FF}
O42 - Logiciel: QuickShare - (.Linkury Inc..) [HKLM] -- {CC1C2EE8-8E03-4D79-9758-C208D4438A3E}
O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM] -- {D40EB009-0499-459c-A8AF-C9C110766215}
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM] -- {D427123D-6FED-3FF4-8490-49BAD3970C11}
O42 - Logiciel: Boxore Client - (.Boxore OU.) [HKLM] -- {E4C70B89-CE95-4A69-A749-1D1BC45119D7} =>PUP.Optional.Boxore
O42 - Logiciel: Sony PC Companion 2.10.259 - (.Sony.) [HKLM] -- {F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Lagarith Lossless Codec (1.3.27) - (...) [HKLM] -- {F59AC46C-10C3-4023-882C-4212A92283B3}_is1
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- {F9000000-0018-0000-0000-074957833700}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM] -- {FC550040-B62D-FAAC-C46A-8435C9D8EE20}
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM] -- {FD052FB9-FE90-4438-B355-15EDC89D8FB1}
O42 - Logiciel: LWS Facebook - (.Logitech.) [HKLM] -- {FF167195-9EE4-46C0-8CD7-FBA3457E88AB}
O42 - Logiciel: DMUninstaller - (...) [HKLM] -- DMUninstaller
O42 - Logiciel: Wakfu - (.Ankama.) [HKCU] -- 1F4715F1-86E7-4450-AA9A-13ADBF14BED1-2
O42 - Logiciel: Image Editor Packages - (...) [HKCU] -- Image Editor Packages
O42 - Logiciel: PDF Writer Packages - (...) [HKCU] -- PDF Writer Packages
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKCU] -- TeamSpeak 3 Client

---\\ HKCU & HKLM Software Keys (198) - 6s
HKLM\SOFTWARE\ABBYY
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AdwCleaner
HKLM\SOFTWARE\AIM Toolbar
HKLM\SOFTWARE\ALWIL Software
HKLM\SOFTWARE\AMD
HKLM\SOFTWARE\anset
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\ATI
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\Battle.net
HKLM\SOFTWARE\Bethesda Softworks
HKLM\SOFTWARE\BioWare
HKLM\SOFTWARE\Blizzard Entertainment
HKLM\SOFTWARE\bohemia interactive
HKLM\SOFTWARE\Bunndle
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\Canon_Inc_IC
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\CUSTPDF Writer
HKLM\SOFTWARE\cybelsoft
HKLM\SOFTWARE\Disc Soft
HKLM\SOFTWARE\DivX
HKLM\SOFTWARE\DivXNetworks
HKLM\SOFTWARE\Dolby
HKLM\SOFTWARE\EMCO
HKLM\SOFTWARE\EPSON
HKLM\SOFTWARE\EpsonNet
HKLM\SOFTWARE\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\GoHD-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\GPL Ghostscript
HKLM\SOFTWARE\HaaliMkx
HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\Knowles
HKLM\SOFTWARE\Lame For Audacity
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\logishrd
HKLM\SOFTWARE\Logitech
HKLM\SOFTWARE\LogMeIn Hamachi
HKLM\SOFTWARE\LogMeIn, Inc.
HKLM\SOFTWARE\LogMeInRescueCallingCard
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\MaxPower
HKLM\SOFTWARE\MediaPlayersvideos 1.1-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\mystartsearchSoftware =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Nuance
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\PENSEWEB
HKLM\SOFTWARE\Raptr
HKLM\SOFTWARE\Razer
HKLM\SOFTWARE\Realtek
HKLM\SOFTWARE\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Reg
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\RTLSetup
HKLM\SOFTWARE\Saitek
HKLM\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\searchult =>PUP.Optional
HKLM\SOFTWARE\SEGA
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\Software
HKLM\SOFTWARE\Sonic
HKLM\SOFTWARE\Sony
HKLM\SOFTWARE\Sony Mobile
HKLM\SOFTWARE\SpeedBit
HKLM\SOFTWARE\SRS Labs
HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\TomTom
HKLM\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Ubisoft
HKLM\SOFTWARE\Valve
HKLM\SOFTWARE\VideoLAN
HKLM\SOFTWARE\Volatile
HKLM\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Waves Audio
HKLM\SOFTWARE\WinFix
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\WombatUpdater
HKLM\SOFTWARE\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKLM\SOFTWARE\WordSurfer_1.10.0.19 =>PUP.Optional.WordSurfer
HKLM\SOFTWARE\Even Balance
HKCU\SOFTWARE\77-Zip
HKCU\SOFTWARE\7road
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\ALWIL Software
HKCU\SOFTWARE\AMD
HKCU\SOFTWARE\Ankama
HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Battle.net
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\Bohemia Interactive
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DivX
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\Dnldstr_Aggregator
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\DSS
HKCU\SOFTWARE\DT Soft
HKCU\SOFTWARE\Eidos
HKCU\SOFTWARE\EMCO
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\EPSON Software Updater
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\GoHD-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Kromtech
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\LogMeInRescueCallingCard
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Media Player - Codec Pack
HKCU\SOFTWARE\MediaPlayersvideos 1.1-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MultiInstaller
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Raptr
HKCU\SOFTWARE\Razer
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\SEIKO EPSON CORPORATION
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Sony
HKCU\SOFTWARE\TeamSpeak 3 Client
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\THQ
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinFix
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Canon
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\SelectionTool
HKCU\SOFTWARE\AppDataLow\Software\SmartWeb =>PUP.Optional.SmartWebSearch

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (319) - 6s
O43 - CFD: 2015/07/22 23:12:00 - [] D -- C:\Program Files\2A3583A0-1437427330-11DD-BEE3-60A44CB5D4C2 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/23 23:39:11 - [] D -- C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/22 22:36:01 - [] D -- C:\Program Files\2A3583A0-1437597361-11DD-BEE3-60A44CB5D4C2 =>PUP.Optional.CrossRider
O43 - CFD: 2014/07/20 19:29:49 - [] D -- C:\Program Files\5C204FFD-134C-479D-A2AD-8D3E0034EAFD =>PUP.Optional.CrossRider
O43 - CFD: 2015/06/28 12:34:14 - [] D -- C:\Program Files\63d49273-a91d-4407-9c5a-9ca521bc885a =>PUP.Optional.CrossRider
O43 - CFD: 2015/01/20 21:48:38 - [] D -- C:\Program Files\a0243275-9c00-4dcd-aa82-4800ea85d151 =>PUP.Optional.CrossRider
O43 - CFD: 2015/06/28 12:34:14 - [] D -- C:\Program Files\aabd0c4e-5ecc-469d-b1f8-9c44584a1478 =>PUP.Optional.CrossRider
O43 - CFD: 2014/05/07 17:43:42 - [] D -- C:\Program Files\ABBYY FineReader 9.0 Sprint
O43 - CFD: 2013/06/19 14:26:39 - [] D -- C:\Program Files\Adobe
O43 - CFD: 2013/06/14 20:02:29 - [] D -- C:\Program Files\Alwil Software
O43 - CFD: 2015/07/17 17:51:05 - [] D -- C:\Program Files\AMD
O43 - CFD: 2013/06/12 20:23:50 - [] D -- C:\Program Files\AMD APP
O43 - CFD: 2014/12/19 15:12:56 - [] D -- C:\Program Files\AMD AVT
O43 - CFD: 2015/07/25 00:16:48 - [] D -- C:\Program Files\AnyProtectEx =>PUP.Optional.AnyProtect
O43 - CFD: 2013/06/13 19:05:18 - [] D -- C:\Program Files\ASUS
O43 - CFD: 2013/06/12 20:21:58 - [] D -- C:\Program Files\ATI
O43 - CFD: 2014/09/30 21:28:51 - [] D -- C:\Program Files\ATI Technologies
O43 - CFD: 2015/06/24 19:43:50 - [] D -- C:\Program Files\Canon
O43 - CFD: 2015/06/24 19:24:29 - [] HD -- C:\Program Files\CanonBJ
O43 - CFD: 2015/07/22 22:00:01 - [] D -- C:\Program Files\Common Files
O43 - CFD: 2015/05/22 00:34:04 - [] D -- C:\Program Files\Diablo III
O43 - CFD: 2013/10/23 19:05:54 - [] D -- C:\Program Files\DirectVobSub
O43 - CFD: 2013/10/23 19:05:53 - [] D -- C:\Program Files\DSP-worx
O43 - CFD: 2013/06/16 07:39:42 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 2015/06/24 21:24:56 - [0] D -- C:\Program Files\epson
O43 - CFD: 2015/06/24 19:55:48 - [] D -- C:\Program Files\EPSON Software
O43 - CFD: 2013/12/24 02:13:41 - [] D -- C:\Program Files\ffdshow
O43 - CFD: 2013/06/12 20:07:07 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 2015/07/25 00:13:15 - [] D -- C:\Program Files\FriendlyError
O43 - CFD: 2015/07/25 00:14:22 - [] D -- C:\Program Files\gmsd_fr_005010040 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/24 23:23:05 - [] D -- C:\Program Files\Google
O43 - CFD: 2013/08/06 20:05:22 - [] D -- C:\Program Files\GPLGS
O43 - CFD: 2013/10/23 19:05:53 - [] D -- C:\Program Files\Haali
O43 - CFD: 2013/07/20 08:27:26 - [] D -- C:\Program Files\Image Converter
O43 - CFD: 2015/06/24 19:55:31 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 2013/09/26 19:07:51 - [] D -- C:\Program Files\Intel
O43 - CFD: 2015/07/16 12:16:26 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 2015/01/26 21:23:51 - [] D -- C:\Program Files\Java
O43 - CFD: 2013/10/23 19:05:53 - [] D -- C:\Program Files\Lame For Audacity
O43 - CFD: 2013/09/26 18:39:57 - [] D -- C:\Program Files\ma-config.com
O43 - CFD: 2013/06/28 01:36:39 - [] D -- C:\Program Files\Microsoft Games for Windows - LIVE
O43 - CFD: 2013/09/29 13:48:58 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 2015/05/12 22:17:57 - [] D -- C:\Program Files\Microsoft Security Client
O43 - CFD: 2013/06/12 20:22:39 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 2015/07/25 00:14:27 - [] D -- C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab
O43 - CFD: 2014/05/10 19:06:51 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 2013/09/29 13:48:07 - [] D -- C:\Program Files\MSECache
O43 - CFD: 2013/06/26 02:46:06 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 2015/06/18 19:38:11 - [] D -- C:\Program Files\MyDrive Connect
O43 - CFD: 2013/10/23 19:05:52 - [] D -- C:\Program Files\OpenSource Flash Video Splitter
O43 - CFD: 2014/07/22 13:44:45 - [] D -- C:\Program Files\Opera
O43 - CFD: 2013/08/06 20:05:20 - [] D -- C:\Program Files\PDFCreator
O43 - CFD: 2015/07/22 22:31:01 - [] D -- C:\Program Files\PicMonkey Extension
O43 - CFD: 2015/07/17 17:57:18 - [] D -- C:\Program Files\Raptr
O43 - CFD: 2014/12/01 13:19:23 - [] D -- C:\Program Files\Razer
O43 - CFD: 2013/06/13 18:46:08 - [] D -- C:\Program Files\Realtek
O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 2013/06/13 20:17:21 - [] D -- C:\Program Files\Saitek
O43 - CFD: 2015/05/26 21:48:52 - [] RD -- C:\Program Files\Skype
O43 - CFD: 2015/06/28 12:25:32 - [] D -- C:\Program Files\Software
O43 - CFD: 2014/09/14 11:35:47 - [] D -- C:\Program Files\Sony
O43 - CFD: 2014/12/20 08:58:39 - [] D -- C:\Program Files\Sony Mobile
O43 - CFD: 2015/07/22 21:59:41 - [] D -- C:\Program Files\SystemContinue =>PUP.Optional.Graftor
O43 - CFD: 2015/07/01 19:39:31 - [] D -- C:\Program Files\Tampermonkey
O43 - CFD: 2013/06/13 22:40:10 - [0] HD -- C:\Program Files\Temp
O43 - CFD: 2015/07/22 21:59:36 - [0] D -- C:\Program Files\TerminusSubs =>PUP.Optional.Graftor
O43 - CFD: 2015/06/18 19:38:13 - [] D -- C:\Program Files\TomTom International B.V
O43 - CFD: 2013/06/28 02:25:36 - [] D -- C:\Program Files\Ubisoft
O43 - CFD: 2013/06/13 23:40:11 - [] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 2015/07/22 21:58:09 - [] D -- C:\Program Files\WasteNoTime
O43 - CFD: 2013/07/11 03:20:59 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 2015/05/13 00:27:33 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 2013/06/16 07:39:42 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 2015/06/12 14:35:05 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 2013/06/12 20:07:07 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 2013/06/16 07:39:42 - [] D -- C:\Program Files\Windows Photo Viewer
O43 - CFD: 2013/06/16 07:39:42 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 2013/06/16 07:39:42 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 2015/07/25 00:22:18 - [] D -- C:\Program Files\WordShark_1.10.0.19 =>PUP.Optional.WordShark
O43 - CFD: 2014/05/08 13:20:34 - [] D -- C:\Program Files\Zenimax Online
O43 - CFD: 2014/05/07 17:43:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 9.0 Sprint
O43 - CFD: 2013/06/12 20:04:07 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2013/06/12 20:04:11 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/17 17:52:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
O43 - CFD: 2014/11/23 14:48:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
O43 - CFD: 2015/07/24 23:19:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
O43 - CFD: 2014/04/27 19:20:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
O43 - CFD: 2015/06/24 19:24:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG3500 series Manual
O43 - CFD: 2015/06/24 19:31:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
O43 - CFD: 2014/04/27 19:51:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III
O43 - CFD: 2013/10/23 19:05:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirectVobSub
O43 - CFD: 2013/12/24 02:23:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA
O43 - CFD: 2015/06/24 19:29:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MG3500 series
O43 - CFD: 2015/06/24 19:58:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 2015/06/24 19:55:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software
O43 - CFD: 2014/07/20 22:05:25 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/07/25 00:14:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP =>PUP.Optional.GamesDesktop
O43 - CFD: 2015/07/24 23:23:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2013/10/23 19:05:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
O43 - CFD: 2014/05/06 02:28:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
O43 - CFD: 2013/09/26 19:07:55 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 2015/01/26 21:19:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2013/06/13 20:22:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
O43 - CFD: 2015/07/14 21:02:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
O43 - CFD: 2013/09/26 18:39:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
O43 - CFD: 2009/07/14 06:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/08/31 19:27:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Player - Codec Pack
O43 - CFD: 2013/06/24 16:35:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
O43 - CFD: 2013/06/28 01:36:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows - LIVE
O43 - CFD: 2013/08/06 20:05:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Creator
O43 - CFD: 2015/01/20 22:21:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
O43 - CFD: 2013/06/24 22:56:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
O43 - CFD: 2015/03/23 00:36:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/05/05 20:46:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 2015/07/24 22:23:38 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/06/28 01:38:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2009/07/14 11:00:41 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/06/18 19:38:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
O43 - CFD: 2014/08/31 18:55:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2013/06/13 23:29:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2014/07/20 22:05:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
O43 - CFD: 2015/07/22 22:31:08 - [] D -- C:\ProgramData\13019423700753082357
O43 - CFD: 2015/07/24 22:16:59 - [] D -- C:\ProgramData\19a87fa1ec024bbcbb41931263354405
O43 - CFD: 2015/06/30 00:29:31 - [] D -- C:\ProgramData\28341ff220e0446c9fff27c4493d622e
O43 - CFD: 2015/07/24 22:19:28 - [] D -- C:\ProgramData\2988696b-294c-4054-b34f-e97ca58a10e8
O43 - CFD: 2015/07/01 20:37:33 - [] D -- C:\ProgramData\2efa524000020cd
O43 - CFD: 2014/05/07 17:42:41 - [] D -- C:\ProgramData\ABBYY
O43 - CFD: 2015/06/30 00:15:17 - [] D -- C:\ProgramData\abc
O43 - CFD: 2013/06/21 16:49:29 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2013/06/24 16:27:30 - [] D -- C:\ProgramData\Age of Empires 3
O43 - CFD: 2015/07/24 23:19:40 - [] D -- C:\ProgramData\Alwil Software
O43 - CFD: 2014/12/19 15:12:56 - [] D -- C:\ProgramData\AMD
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/07/17 17:59:19 - [] D -- C:\ProgramData\ATI
O43 - CFD: 2014/09/14 18:17:18 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 2015/03/21 03:28:00 - [] D -- C:\ProgramData\BitRaider
O43 - CFD: 2014/11/12 13:52:11 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 2015/04/12 21:08:13 - [] D -- C:\ProgramData\Bohemia Interactive
O43 - CFD: 2013/06/12 20:07:07 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/06/24 19:31:02 - [0] D -- C:\ProgramData\Canon IJ Network Tool
O43 - CFD: 2015/06/24 19:24:33 - [] HD -- C:\ProgramData\CanonBJ
O43 - CFD: 2015/06/24 19:59:18 - [] HD -- C:\ProgramData\CanonIJEGV
O43 - CFD: 2015/06/24 19:12:06 - [] HD -- C:\ProgramData\CanonIJETV
O43 - CFD: 2015/06/28 13:11:09 - [] HD -- C:\ProgramData\CanonIJMIG
O43 - CFD: 2015/06/24 21:22:38 - [] HD -- C:\ProgramData\CanonIJMyPrinter
O43 - CFD: 2015/07/15 13:02:28 - [] D -- C:\ProgramData\CanonIJPLM
O43 - CFD: 2015/06/24 19:43:52 - [] HD -- C:\ProgramData\CanonIJQuickMenu
O43 - CFD: 2015/06/28 12:52:47 - [] HD -- C:\ProgramData\CanonIJScan
O43 - CFD: 2015/06/24 19:28:19 - [] D -- C:\ProgramData\CanonIJWSpt
O43 - CFD: 2013/06/19 12:15:03 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/12/08 17:44:47 - [] D -- C:\ProgramData\DivX
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/01/13 00:07:16 - [] D -- C:\ProgramData\Elder Scrolls Online
O43 - CFD: 2014/08/25 21:20:29 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 2013/06/12 20:07:07 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/07/25 00:14:25 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
O43 - CFD: 2013/06/13 19:18:13 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2013/06/14 20:53:22 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 2013/06/13 20:23:07 - [] D -- C:\ProgramData\LogiShrd
O43 - CFD: 2015/04/25 21:20:53 - [] D -- C:\ProgramData\LogMeIn
O43 - CFD: 2013/09/26 18:39:57 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 2013/10/29 23:34:39 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2013/06/12 20:07:07 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/05/06 02:41:19 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/06/12 20:07:07 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2013/08/06 20:07:40 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/01/26 21:24:05 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/07/17 17:49:03 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2014/12/01 10:39:07 - [] D -- C:\ProgramData\Razer
O43 - CFD: 2015/07/24 22:17:01 - [] D -- C:\ProgramData\Service1104
O43 - CFD: 2015/07/01 19:06:15 - [] D -- C:\ProgramData\Service1291
O43 - CFD: 2015/03/23 00:36:38 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2014/09/14 11:35:47 - [] D -- C:\ProgramData\Sony
O43 - CFD: 2014/09/14 11:41:13 - [] D -- C:\ProgramData\Sony Mobile
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/07/04 18:15:27 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2013/12/08 17:40:54 - [0] D -- C:\ProgramData\TEMP
O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2013/06/29 18:55:47 - [] D -- C:\ProgramData\Ubisoft
O43 - CFD: 2014/05/07 17:41:27 - [] D -- C:\ProgramData\UDL
O43 - CFD: 2015/07/25 00:14:11 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu
O43 - CFD: 2015/06/28 12:22:23 - [] D -- C:\ProgramData\yJMLaYqE
O43 - CFD: 2015/07/11 13:45:49 - [] HD -- C:\ProgramData\zxl
O43 - CFD: 2015/07/24 22:19:32 - [] D -- C:\Program Files\Common Files\2988696b-294c-4054-b34f-e97ca58a10e8
O43 - CFD: 2014/05/07 17:42:41 - [] D -- C:\Program Files\Common Files\ABBYY
O43 - CFD: 2013/06/19 14:26:45 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 2013/06/12 20:23:44 - [] D -- C:\Program Files\Common Files\ATI Technologies
O43 - CFD: 2015/05/06 02:07:56 - [] D -- C:\Program Files\Common Files\BattlEye
O43 - CFD: 2013/12/24 02:23:06 - [] D -- C:\Program Files\Common Files\BioWare
O43 - CFD: 2014/07/20 22:05:27 - [] D -- C:\Program Files\Common Files\Blizzard Entertainment
O43 - CFD: 2013/12/08 17:44:47 - [] D -- C:\Program Files\Common Files\DivX Shared
O43 - CFD: 2014/05/07 17:20:33 - [] D -- C:\Program Files\Common Files\EPSON
O43 - CFD: 2013/06/24 16:30:57 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 2013/06/13 18:58:07 - [] D -- C:\Program Files\Common Files\Intel Corporation
O43 - CFD: 2015/01/26 21:19:17 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 2013/06/13 20:23:16 - [] D -- C:\Program Files\Common Files\LogiShrd
O43 - CFD: 2013/09/29 13:48:57 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 2013/06/13 19:17:29 - [] D -- C:\Program Files\Common Files\postureAgent
O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 2015/03/23 00:36:27 - [] D -- C:\Program Files\Common Files\Skype
O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 2015/06/05 23:30:25 - [] D -- C:\Program Files\Common Files\Steam
O43 - CFD: 2013/06/16 07:39:42 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 2013/07/28 12:32:05 - [] D -- C:\Users\Mika\AppData\Roaming\7road
O43 - CFD: 2014/08/31 18:33:55 - [] D -- C:\Users\Mika\AppData\Roaming\aacs
O43 - CFD: 2013/06/19 14:27:51 - [] D -- C:\Users\Mika\AppData\Roaming\Adobe
O43 - CFD: 2015/01/20 22:28:23 - [] D -- C:\Users\Mika\AppData\Roaming\AMD
O43 - CFD: 2015/07/25 00:15:46 - [] SHD -- C:\Users\Mika\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect
O43 - CFD: 2013/06/12 20:24:47 - [] D -- C:\Users\Mika\AppData\Roaming\ATI
O43 - CFD: 2014/02/09 22:53:35 - [] D -- C:\Users\Mika\AppData\Roaming\Awesomium
O43 - CFD: 2014/07/20 20:29:42 - [] D -- C:\Users\Mika\AppData\Roaming\Battle.net
O43 - CFD: 2015/07/01 19:43:54 - [] D -- C:\Users\Mika\AppData\Roaming\Canon
O43 - CFD: 2013/10/23 19:05:54 - [] D -- C:\Users\Mika\AppData\Roaming\CDXReader
O43 - CFD: 2014/01/12 20:34:46 - [] D -- C:\Users\Mika\AppData\Roaming\com.immersyve.Paladin.live
O43 - CFD: 2013/06/19 12:15:05 - [] D -- C:\Users\Mika\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2013/12/01 13:36:42 - [] D -- C:\Users\Mika\AppData\Roaming\DivX
O43 - CFD: 2014/08/28 21:03:04 - [] D -- C:\Users\Mika\AppData\Roaming\dvdcss
O43 - CFD: 2014/08/25 21:20:28 - [] D -- C:\Users\Mika\AppData\Roaming\EPSON
O43 - CFD: 2013/06/12 20:07:19 - [] D -- C:\Users\Mika\AppData\Roaming\Identities
O43 - CFD: 2013/07/20 08:27:43 - [] D -- C:\Users\Mika\AppData\Roaming\Image Editor Packages
O43 - CFD: 2013/06/13 19:16:50 - [] D -- C:\Users\Mika\AppData\Roaming\InstallShield
O43 - CFD: 2013/06/13 18:53:45 - [] D -- C:\Users\Mika\AppData\Roaming\Intel Corporation
O43 - CFD: 2013/06/14 20:53:22 - [] D -- C:\Users\Mika\AppData\Roaming\IsolatedStorage
O43 - CFD: 2013/07/30 21:59:51 - [] D -- C:\Users\Mika\AppData\Roaming\Kalypso Media
O43 - CFD: 2013/10/23 19:05:54 - [] D -- C:\Users\Mika\AppData\Roaming\LavFilters
O43 - CFD: 2013/06/13 20:22:57 - [] D -- C:\Users\Mika\AppData\Roaming\Leadertech
O43 - CFD: 2014/05/07 18:51:28 - [] D -- C:\Users\Mika\AppData\Roaming\library_dir
O43 - CFD: 2013/06/19 11:39:57 - [] D -- C:\Users\Mika\AppData\Roaming\Macromedia
O43 - CFD: 2013/10/29 23:34:52 - [] D -- C:\Users\Mika\AppData\Roaming\Malwarebytes
O43 - CFD: 2009/07/14 11:00:41 - [0] D -- C:\Users\Mika\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/05/06 02:32:16 - [] SD -- C:\Users\Mika\AppData\Roaming\Microsoft
O43 - CFD: 2015/03/27 22:06:21 - [] D -- C:\Users\Mika\AppData\Roaming\Mozilla
O43 - CFD: 2015/07/25 00:13:21 - [] D -- C:\Users\Mika\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch
O43 - CFD: 2013/09/29 14:58:40 - [] D -- C:\Users\Mika\AppData\Roaming\OpenOffice
O43 - CFD: 2015/03/31 17:34:06 - [] D -- C:\Users\Mika\AppData\Roaming\Opera Software
O43 - CFD: 2014/08/26 19:35:15 - [] D -- C:\Users\Mika\AppData\Roaming\Oracle
O43 - CFD: 2013/08/06 20:05:43 - [] D -- C:\Users\Mika\AppData\Roaming\PDF Writer Packages
O43 - CFD: 2013/09/24 19:20:55 - [] D -- C:\Users\Mika\AppData\Roaming\PhotoScape
O43 - CFD: 2015/07/22 22:32:55 - [] D -- C:\Users\Mika\AppData\Roaming\Raptr
O43 - CFD: 2015/06/03 23:59:41 - [] D -- C:\Users\Mika\AppData\Roaming\Skype
O43 - CFD: 2015/07/20 23:48:11 - [] D -- C:\Users\Mika\AppData\Roaming\TS3Client
O43 - CFD: 2013/06/29 18:55:47 - [] D -- C:\Users\Mika\AppData\Roaming\Ubisoft
O43 - CFD: 2015/04/24 12:52:33 - [] D -- C:\Users\Mika\AppData\Roaming\vlc
O43 - CFD: 2013/06/13 23:30:19 - [] D -- C:\Users\Mika\AppData\Roaming\WinRAR
O43 - CFD: 2015/07/25 00:26:09 - [] D -- C:\Users\Mika\AppData\Roaming\ZHP
O43 - CFD: 2015/07/02 00:52:05 - [] D -- C:\Users\Mika\AppData\Local\14889
O43 - CFD: 2013/07/22 17:10:28 - [] D -- C:\Users\Mika\AppData\Local\28050
O43 - CFD: 2015/06/28 12:21:30 - [] D -- C:\Users\Mika\AppData\Local\2A3583A0-1435494085-11DD-BEE3-60A44CB5D4C2
O43 - CFD: 2015/06/29 22:47:41 - [] D -- C:\Users\Mika\AppData\Local\2A3583A0-1435494224-11DD-BEE3-60A44CB5D4C2
O43 - CFD: 2015/06/29 23:50:02 - [] D -- C:\Users\Mika\AppData\Local\2A3583A0-1435621783-11DD-BEE3-60A44CB5D4C2
O43 - CFD: 2015/07/05 13:36:34 - [] D -- C:\Users\Mika\AppData\Local\2A3583A0-1436103393-11DD-BEE3-60A44CB5D4C2
O43 - CFD: 2015/07/22 22:10:45 - [] D -- C:\Users\Mika\AppData\Local\2A3583A0-1436103531-11DD-BEE3-60A44CB5D4C2
O43 - CFD: 2015/07/20 23:23:09 - [] D -- C:\Users\Mika\AppData\Local\2A3583A0-1437434573-11DD-BEE3-60A44CB5D4C2
O43 - CFD: 2015/07/22 22:09:01 - [] D -- C:\Users\Mika\AppData\Local\2A3583A0-1437602925-11DD-BEE3-60A44CB5D4C2
O43 - CFD: 2014/05/07 17:43:27 - [] D -- C:\Users\Mika\AppData\Local\ABBYY
O43 - CFD: 2015/07/01 21:20:47 - [] D -- C:\Users\Mika\AppData\Local\Adobe
O43 - CFD: 2015/03/26 17:21:22 - [] D -- C:\Users\Mika\AppData\Local\Ankama
O43 - CFD: 2013/06/12 20:07:12 - [0] SHD -- C:\Users\Mika\AppData\Local\Application Data
O43 - CFD: 2014/05/23 16:19:05 - [] D -- C:\Users\Mika\AppData\Local\Apps
O43 - CFD: 2015/06/05 23:33:09 - [] D -- C:\Users\Mika\AppData\Local\Arma 3
O43 - CFD: 2015/05/06 01:49:25 - [] D -- C:\Users\Mika\AppData\Local\Arma 3 Launcher
O43 - CFD: 2013/06/12 20:24:47 - [] D -- C:\Users\Mika\AppData\Local\ATI
O43 - CFD: 2015/07/25 00:19:50 - [] D -- C:\Users\Mika\AppData\Local\Battle.net
O43 - CFD: 2014/05/08 14:19:39 - [] D -- C:\Users\Mika\AppData\Local\Blizzard
O43 - CFD: 2014/04/27 19:21:05 - [] D -- C:\Users\Mika\AppData\Local\Blizzard Entertainment
O43 - CFD: 2015/04/20 23:30:53 - [] D -- C:\Users\Mika\AppData\Local\Bohemia_Interactive
O43 - CFD: 2015/07/25 00:13:54 - [] D -- C:\Users\Mika\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
O43 - CFD: 2013/12/24 01:36:03 - [] D -- C:\Users\Mika\AppData\Local\cache
O43 - CFD: 2015/01/20 19:02:18 - [] D -- C:\Users\Mika\AppData\Local\com
O43 - CFD: 2014/08/31 17:48:17 - [0] D -- C:\Users\Mika\AppData\Local\CRE
O43 - CFD: 2014/05/23 16:19:07 - [0] D -- C:\Users\Mika\AppData\Local\Deployment
O43 - CFD: 2015/03/30 03:22:06 - [0] D -- C:\Users\Mika\AppData\Local\Diagnostics
O43 - CFD: 2013/09/25 18:41:58 - [] D -- C:\Users\Mika\AppData\Local\dxhr
O43 - CFD: 2015/06/28 12:22:24 - [0] SHD -- C:\Users\Mika\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/28 12:22:24 - [0] SHD -- C:\Users\Mika\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/28 12:22:24 - [0] SHD -- C:\Users\Mika\AppData\Local\EmieUserList
O43 - CFD: 2013/06/13 23:45:48 - [] D -- C:\Users\Mika\AppData\Local\FOMM
O43 - CFD: 2015/07/25 00:18:05 - [] D -- C:\Users\Mika\AppData\Local\gmsd_fr_005010040 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/24 23:25:03 - [] D -- C:\Users\Mika\AppData\Local\Google
O43 - CFD: 2013/06/12 20:07:12 - [0] SHD -- C:\Users\Mika\AppData\Local\Historique
O43 - CFD: 2013/06/13 20:25:52 - [] D -- C:\Users\Mika\AppData\Local\Logitech® Webcam Software
O43 - CFD: 2015/04/25 21:20:53 - [] D -- C:\Users\Mika\AppData\Local\LogMeIn
O43 - CFD: 2015/07/24 23:41:37 - [] D -- C:\Users\Mika\AppData\Local\LogMeIn Hamachi
O43 - CFD: 2013/08/06 23:35:18 - [] D -- C:\Users\Mika\AppData\Local\Macromedia
O43 - CFD: 2015/05/06 02:41:19 - [] D -- C:\Users\Mika\AppData\Local\Microsoft
O43 - CFD: 2013/11/07 19:18:35 - [] D -- C:\Users\Mika\AppData\Local\Mozilla
O43 - CFD: 2015/07/01 21:14:30 - [0] D -- C:\Users\Mika\AppData\Local\Opera Software
O43 - CFD: 2013/10/29 23:33:53 - [] D -- C:\Users\Mika\AppData\Local\Programs
O43 - CFD: 2013/06/27 02:08:09 - [] D -- C:\Users\Mika\AppData\Local\PunkBuster
O43 - CFD: 2014/12/01 15:05:08 - [] D -- C:\Users\Mika\AppData\Local\Razer
O43 - CFD: 2014/08/31 17:14:40 - [] D -- C:\Users\Mika\AppData\Local\Razer_Inc
O43 - CFD: 2015/03/23 00:36:41 - [] D -- C:\Users\Mika\AppData\Local\Skype
O43 - CFD: 2013/09/25 18:36:14 - [] D -- C:\Users\Mika\AppData\Local\Skyrim
O43 - CFD: 2015/07/25 00:12:50 - [] D -- C:\Users\Mika\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
O43 - CFD: 2015/04/11 22:00:49 - [] D -- C:\Users\Mika\AppData\Local\Steam
O43 - CFD: 2013/12/24 02:54:13 - [] D -- C:\Users\Mika\AppData\Local\SWTOR
O43 - CFD: 2013/12/24 02:24:07 - [] D -- C:\Users\Mika\AppData\Local\SWTORPerf
O43 - CFD: 2015/07/25 00:25:58 - [] D -- C:\Users\Mika\AppData\Local\Temp
O43 - CFD: 2013/06/12 20:07:12 - [0] SHD -- C:\Users\Mika\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/06/18 19:38:15 - [] D -- C:\Users\Mika\AppData\Local\TomTom
O43 - CFD: 2013/06/27 02:42:09 - [] D -- C:\Users\Mika\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 2015/07/08 16:48:01 - [] D -- C:\Users\Mika\AppData\Local\VirtualStore
O43 - CFD: 2013/06/14 20:53:15 - [] D -- C:\Users\Mika\AppData\Local\_
O43 - CFD: 2009/07/14 06:42:04 - [] RD -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/24 23:41:52 - [] RD -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/25 00:16:48 - [] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup =>PUP.Optional.AnyProtect
O43 - CFD: 2013/06/24 23:41:22 - [] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2013/10/23 19:05:53 - [0] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
O43 - CFD: 2009/07/14 06:37:42 - [] RD -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2013/09/29 14:56:48 - [] SD -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.0
O43 - CFD: 2013/06/28 01:27:15 - [] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpellForce
O43 - CFD: 2015/07/25 00:12:50 - [] RD -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/07/28 16:47:29 - [] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2014/05/05 20:35:39 - [] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
O43 - CFD: 2013/06/24 19:54:58 - [] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
O43 - CFD: 2013/06/13 23:29:35 - [] D -- C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (2) - 3s
O45 - LFCP:[MD5.5A342A948FA72F8E5C60F8314069563B] 2015/07/22 21:54:40 A -- C:\Windows\Prefetch\GMSD_FR_009010038.EXE-CD6B658D.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.FE5D44D37A37ACFEA6DA69BB162182AC] 2015/07/22 21:57:43 A -- C:\Windows\Prefetch\UPGMSD_FR_009010038.EXE-E372E6ED.pf =>PUP.Optional.CrossRider

---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (8) - 1s
O53 - SMSR:HKLM\...\startupreg\LogMeIn Hamachi Ui [Key] . (.LogMeIn Inc. - Hamachi Client Application.) -- D:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
O53 - SMSR:HKLM\...\startupreg\LWS [Key] . (.Logitech Inc. - Logitech Webcam Software.) -- D:\Program Files\Logitech\LWS\Webcam Software\LWS.exe
O53 - SMSR:HKLM\...\startupreg\Raptr [Key] . (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files\Raptr\raptrstub.exe
O53 - SMSR:HKLM\...\startupreg\Razer Synapse [Key] . (.Razer Inc. - Razer Synapse.) -- C:\Program Files\Razer\Synapse\RzSynapse.exe
O53 - SMSR:HKLM\...\startupreg\Sony PC Companion [Key] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
O53 - SMSR:HKLM\...\startupreg\SpaceSondPro_v53.1167 [Key] . (...) -- C:\Program Files\SpaceSondPro_v53.1167\SpaceSondPro_Service.exe (.not file.) =>PUP.Optional.SpaceSondPro
O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (.Valve Corporation - Steam Client Bootstrapper.) -- E:\Program Files\Steam\Steam.exe
O53 - SMSR:HKLM\...\startupreg\upgmsd_fr_005010040.exe [Key] . (...) -- C:\Users\Mika\AppData\Local\gmsd_fr_005010040\upgmsd_fr_005010040.exe =>PUP.Optional.CrossRider

---\\ Liste des pilotes du système (SDL) (O58) (96) - 23s
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976]
O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512]
O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400]
O58 - SDL:2015/06/23 04:05:54 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [268488]
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256]
O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312]
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368]
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608]
O58 - SDL:2012/08/21 20:54:16 RA . (...) -- C:\Windows\System32\drivers\AsIO.sys [14720]
O58 - SDL:2009/04/02 14:30:14 A . (...) -- C:\Windows\System32\drivers\ASUSHWIO.SYS [10296]
O58 - SDL:2011/01/13 09:37:09 A . (.AVAST Software - avast! File System Access Blocking Driver.) -- C:\Windows\System32\drivers\aswFsBlk.sys [17744]
O58 - SDL:2011/01/13 09:37:19 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [51280]
O58 - SDL:2011/01/13 09:37:30 A . (.AVAST Software - avast! TDI RDR Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [23632]
O58 - SDL:2011/01/13 09:41:16 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [294608]
O58 - SDL:2011/01/13 09:40:16 A . (.AVAST Software - avast! TDI Filter Driver.) -- C:\Windows\System32\drivers\aswTdi.sys [47440]
O58 - SDL:2015/05/20 20:00:24 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW73.sys [77824]
O58 - SDL:2015/06/23 04:02:04 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [19494400]
O58 - SDL:2015/06/23 03:10:40 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [531456]
O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888]
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568]
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248]
O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128]
O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336]
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160]
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904]
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080]
O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952]
O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720]
O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712]
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160]
O58 - SDL:2014/09/14 11:41:36 A . (.Sony Mobile Communications - SOMC USB Flash Driver Filter.) -- C:\Windows\System32\drivers\ggflt.sys [13528]
O58 - SDL:2014/09/14 11:41:36 A . (.Sony Mobile Communications - SOMC USB Flash Driver.) -- C:\Windows\System32\drivers\ggsomc.sys [26328]
O58 - SDL:2015/03/30 15:25:00 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [26176]
O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624]
O58 - SDL:2013/03/12 13:19:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [56432]
O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152]
O58 - SDL:2013/08/07 14:23:44 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStorA.sys [505192]
O58 - SDL:2013/08/07 14:23:46 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [25448]
O58 - SDL:2011/03/11 07:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160]
O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040]
O58 - SDL:2012/12/21 00:44:10 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [17032]
O58 - SDL:2012/12/21 00:44:10 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [359560]
O58 - SDL:2012/12/21 00:44:10 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [792712]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824]
O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848]
O58 - SDL:2012/09/21 21:09:00 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\Windows\System32\drivers\lvrs.sys [310504]
O58 - SDL:2012/09/21 21:09:06 A . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\Windows\System32\drivers\lvuvc.sys [4261224]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800]
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584]
O58 - SDL:2010/11/22 16:22:36 A . (.Sagatek Co. Ltd. - Developed and Built for World of Warcraft:.) -- C:\Windows\System32\drivers\MO3v2Driver.sys [17920]
O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624]
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120]
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744]
O58 - SDL:2013/06/27 02:08:18 A . (...) -- C:\Windows\System32\drivers\PnkBstrK.sys [138736]
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488]
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064]
O58 - SDL:2012/12/26 19:26:12 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [614624]
O58 - SDL:2013/03/29 21:42:42 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2646088]
O58 - SDL:2015/02/05 02:24:36 A . (.Razer, Inc. - Razer Overlay Support.) -- C:\Windows\System32\drivers\rzpmgrk.sys [20416]
O58 - SDL:2014/11/17 23:37:21 A . (.Razer, Inc. - Razer Overlay Support.) -- C:\Windows\System32\drivers\rzpnk.sys [97088]
O58 - SDL:2014/12/30 11:35:38 A . (.Razer Inc - Razer Rzudd Engine.) -- C:\Windows\System32\drivers\rzudd.sys [151336]
O58 - SDL:2008/02/18 14:21:34 A . (.Saitek - Saitek Hid Driver.) -- C:\Windows\System32\drivers\SaiK0728.sys [104960]
O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480]
O58 - SDL:2009/07/14 01:45:33 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [83456]
O58 - SDL:2005/08/10 14:44:04 A . (.Protection Technology - StarForce Protection Environment Driver.) -- C:\Windows\System32\drivers\sfdrv01.sys [50688]
O58 - SDL:2005/05/16 15:20:39 A . (.Protection Technology - StarForce Protection Helper Driver.) -- C:\Windows\System32\drivers\sfhlp02.sys [6656]
O58 - SDL:2005/12/12 21:12:01 A . (.Protection Technology - StarForce Protection Synchronization Driver.) -- C:\Windows\System32\drivers\sfsync04.sys [49664]
O58 - SDL:2005/11/03 16:40:07 A . (.Protection Technology - StarForce Protection VFS Driver.) -- C:\Windows\System32\drivers\sfvfs02.sys [63488]
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016]
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888]
O58 - SDL:2013/06/19 11:39:40 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [466008]
O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072]
O58 - SDL:2013/09/29 13:31:12 A . (...) -- C:\Windows\System32\drivers\U3SHLPDR.SYS [3445]
O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976]
O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904]
O58 - SDL:2015/06/16 00:27:22 A . (.WS - WS TDI Driver x86.) -- C:\Windows\System32\drivers\wsfd_1_10_0_19.sys [56448] =>PUP.Optional.WordShark
O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2015/07/14 11:44:38 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\hamachi.sys [26176]
O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (10) - 16s
O61 - LFC: 2015/07/17 17:57:38 A . (..) -- C:\Users\Mika\AppData\Roaming\Raptr\data\massoue\config\certificates\x509\tls_peers\xmpp-server6.raptr.com [1217]
O61 - LFC: 2015/07/20 23:22:07 A . (..) -- C:\Users\Mika\AppData\Roaming\AMD\GLCache\3e84b657233da406_21.bin [16952]
O61 - LFC: 2015/07/25 00:12:50 A . (.SoftBrain Technologies Ltd..) -- C:\Users\Mika\AppData\Local\SmartWeb\__u.exe [172673] =>PUP.Optional.SmartWebSearch
O61 - LFC: 2015/07/24 10:06:15 A . (..) -- C:\Users\Mika\AppData\Local\gmsd_fr_005010040\upgmsd_fr_005010040.exe [3296912] =>PUP.Optional.CrossRider
O61 - LFC: 2015/07/25 00:17:35 A . (..) -- C:\Users\Mika\AppData\Local\gmsd_fr_005010040\Download\myoffergroup_fr.exe [4256120] =>PUP.Optional.CrossRider
O61 - LFC: 2015/07/24 23:41:58 A . (..) -- C:\Users\Mika\AppData\Local\ATI\ACE\Manifest.Bin [30042]
O61 - LFC: 2015/07/22 22:08:50 A . (..) -- C:\Users\Mika\AppData\Local\2A3583A0-1437602925-11DD-BEE3-60A44CB5D4C2\rnsb1612.exe [250880]
O61 - LFC: 2015/07/22 22:09:01 A . (..) -- C:\Users\Mika\AppData\Local\2A3583A0-1437602925-11DD-BEE3-60A44CB5D4C2\Uninstall.exe [51000]
O61 - LFC: 2015/07/20 23:22:58 A . (..) -- C:\Users\Mika\AppData\Local\2A3583A0-1437434573-11DD-BEE3-60A44CB5D4C2\rnsqB685.exe [400896]
O61 - LFC: 2015/07/20 23:23:09 A . (..) -- C:\Users\Mika\AppData\Local\2A3583A0-1437434573-11DD-BEE3-60A44CB5D4C2\Uninstall.exe [51000]

---\\ Associations Shell Spawning (O67) (1) - 0s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\Mika\AppData\Local\WikiBrowser\Application\wikibrowser.exe =>PUP.Optional.WikiBrowser
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\Mika\AppData\Local\WikiBrowser\Application\wikibrowser.exe (.not file.) =>PUP.Optional.WikiBrowser
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\Mika\AppData\Local\WikiBrowser\Application\wikibrowser.exe (.not file.) =>PUP.Optional.WikiBrowser
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\Mika\AppData\Local\WikiBrowser\Application\wikibrowser.exe (.not file.) =>PUP.Optional.WikiBrowser

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (15) - 9s
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.SquirrelWeb.aul", "1392131830330"); =>PUP.Optional.SquirrelWeb
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.SquirrelWeb.irl", true); =>PUP.Optional.SquirrelWeb
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.SquirrelWeb.is", "IM27lsFR"); =>PUP.Optional.SquirrelWeb
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.SquirrelWeb.ug", "AB97E3F1-A5C4-4782-BBA2-002B595F9311"); =>PUP.Optional.SquirrelWeb
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.Storimbo.aul", "1387841798557"); =>PUP.Optional.Storimbo
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.Storimbo.irl", true); =>PUP.Optional.Storimbo
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.Storimbo.is", "tg2stfr"); =>PUP.Optional.Storimbo
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.Storimbo.ug", "D3272615-979C-4ACE-B13D-B933B2E4D333"); =>PUP.Optional.Storimbo
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.a509508ef0b144616a5570d58601be33dc4a581e90ea646dba18558e021ee138ccom31257.31257.name", "Plus-HD-1.3"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.aa9719e64232b4695ae9ca89cd7f2aa84ca1279dfbc0d44a897ef19301c922b68com54246.54246.name", "MediaPlayerplus"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [Mika - nmhr4vr7.default] user_pref("extensions.aa9719e64232b4695ae9ca89cd7f2aa84ca1279dfbc0d44a897ef19301c922b68com54246.54246.publisher", "Freeven"); =>PUP.Optional.CrossRider
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCR] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (Web Search) - http://search.certified-toolbar.com?si=80415&st=bs&tid=23890&ver=6.7&ts=1.000009&tguid=80415-23890-1401443041812-2E7111F7E60447F93DD0848101D76110&q={searchTerms} =>PUP.Optional.CertifiedToolbar

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2057216]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (52) - 9s
O87 - FAEL: "{66CC5BD1-40AE-4CF4-B724-07126D60CE33}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\PnkBstrA.exe
O87 - FAEL: "{CEFB228C-03B3-4B96-8EF5-3FAD12A915B2}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\PnkBstrA.exe
O87 - FAEL: "{82BC0AE8-BFAD-4520-A83E-01ACF763AFB6}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\PnkBstrB.exe
O87 - FAEL: "{F18C8067-D90C-4749-A032-DF6C1D88319C}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\PnkBstrB.exe
O87 - FAEL: "TCP Query User{28D7016D-4303-41D5-8436-3DFD06BDA72E}D:\program files\warcraft iii\war3.exe" [In-None-P6-TRUE] .(.Blizzard Entertainment - Warcraft III.) -- D:\program files\warcraft iii\war3.exe
O87 - FAEL: "UDP Query User{057FBB70-D8D8-423B-AED2-22D921F52D4F}D:\program files\warcraft iii\war3.exe" [In-None-P17-TRUE] .(.Blizzard Entertainment - Warcraft III.) -- D:\program files\warcraft iii\war3.exe
O87 - FAEL: "TCP Query User{76E10501-B223-4B6D-B3A2-C46F8F4A25BC}D:\program files\microsoft games - age of empires iii\age of empires iii\age3.exe" [In-None-P6-TRUE] .(.Ensemble Studios - Age of Empires 3.) -- D:\program files\microsoft games - age of empires iii\age of empires iii\age3.exe
O87 - FAEL: "UDP Query User{E620C323-9CD7-45A9-BC11-1AFEDDA09A3B}D:\program files\microsoft games - age of empires iii\age of empires iii\age3.exe" [In-None-P17-TRUE] .(.Ensemble Studios - Age of Empires 3.) -- D:\program files\microsoft games - age of empires iii\age of empires iii\age3.exe
O87 - FAEL: "{8D0D56A1-9C44-4060-A557-8A7A9D4B6475}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Ubisoft\Assassin's Creed III\AC3MP.exe
O87 - FAEL: "{0710FF2A-49B4-4A56-9CF5-7DF62C0388CA}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Ubisoft\Assassin's Creed III\AC3MP.exe
O87 - FAEL: "{2D19BB35-2007-441D-B4A2-F6F84A01FF30}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Ubisoft\Assassin's Creed III\AC3SP.exe
O87 - FAEL: "{2838324A-B5F3-4338-81E6-DF874802A75E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Ubisoft\Assassin's Creed III\AC3SP.exe
O87 - FAEL: "{DDA6B93C-AC1C-4DB9-8E01-9F15DB9A287F}" [In-None-P6-TRUE] .(.Ubisoft - Autopatch system.) -- C:\Program Files\Ubisoft\Assassin's Creed III\AssassinsCreed3.exe
O87 - FAEL: "{F269610C-53EB-425B-AEC7-166969307E19}" [In-None-P17-TRUE] .(.Ubisoft - Autopatch system.) -- C:\Program Files\Ubisoft\Assassin's Creed III\AssassinsCreed3.exe
O87 - FAEL: "{D51C4D41-3302-4387-B9FC-B6DA23757757}" [In-None-P6-TRUE] .(.Ubisoft - Assassin's Creed Game.) -- D:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe
O87 - FAEL: "{0F34948A-096A-4950-8C6C-7484D43C9C9B}" [In-None-P17-TRUE] .(.Ubisoft - Assassin's Creed Game.) -- D:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx9.exe
O87 - FAEL: "{5A8BA18F-8D0A-4522-830B-8058136044F4}" [In-None-P6-TRUE] .(.Ubisoft - Assassin's Creed Game.) -- D:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe
O87 - FAEL: "{68693545-3D12-4686-B84B-495546F740A5}" [In-None-P17-TRUE] .(.Ubisoft - Assassin's Creed Game.) -- D:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Dx10.exe
O87 - FAEL: "{B4E8F029-798C-48EB-8BAD-4018D8442577}" [In-None-P6-TRUE] .(.Ubisoft - Autopatch system.) -- D:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe
O87 - FAEL: "{AF38218B-2A5E-4B6B-9D1B-86FE5564A26A}" [In-None-P17-TRUE] .(.Ubisoft - Autopatch system.) -- D:\Program Files\Ubisoft\Assassin's Creed\AssassinsCreed_Launcher.exe
O87 - FAEL: "{BD42D987-E60B-4C7B-8726-548DD4F55B90}" [In-None-P6-TRUE] .(.Square Enix Limited - Deus Ex: Human Revolution.) -- E:\Program Files\Steam\SteamApps\common\Deus Ex - Human Revolution\dxhr.exe
O87 - FAEL: "{E224ACF2-0235-46EF-8178-374495E3A14A}" [In-None-P17-TRUE] .(.Square Enix Limited - Deus Ex: Human Revolution.) -- E:\Program Files\Steam\SteamApps\common\Deus Ex - Human Revolution\dxhr.exe
O87 - FAEL: "{3C9FEEFC-E019-477C-9D8C-BDB59CBA285F}" [In-None-P6-TRUE] .(.The Creative Assembly Ltd - Empire: Total War.) -- E:\Program Files\Steam\SteamApps\common\Empire Total War\Empire.exe
O87 - FAEL: "{CF66E1F2-C7DD-4C52-98D3-A14F400BDE9C}" [In-None-P17-TRUE] .(.The Creative Assembly Ltd - Empire: Total War.) -- E:\Program Files\Steam\SteamApps\common\Empire Total War\Empire.exe
O87 - FAEL: "{641D548C-23AB-4AC8-A01F-C6804DDDF610}" [In-None-P6-TRUE] .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe
O87 - FAEL: "{3149248D-46AF-4B5C-A22A-4ED206ADEE3C}" [In-None-P17-TRUE] .(.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe
O87 - FAEL: "{EF021C40-B977-4616-8208-B348A7D8CABD}" [In-None-P6-TRUE] .(...) -- D:\Program Files\Steam\SteamApps\common\Trine 2\trine2_launcher.exe
O87 - FAEL: "{28A62E7F-0930-40AC-9C04-0A1DED627200}" [In-None-P17-TRUE] .(...) -- D:\Program Files\Steam\SteamApps\common\Trine 2\trine2_launcher.exe
O87 - FAEL: "{56E23E14-4105-4593-B2F0-3B88E3D2CFD3}" [In-None-P6-TRUE] .(.Realmforge Studios GmbH - DARK.) -- D:\Program Files\Steam\SteamApps\common\Dark\DarkApp.exe
O87 - FAEL: "{81CA5F3F-0F39-4568-94ED-FC2A66A58288}" [In-None-P17-TRUE] .(.Realmforge Studios GmbH - DARK.) -- D:\Program Files\Steam\SteamApps\common\Dark\DarkApp.exe
O87 - FAEL: "TCP Query User{48D04023-4EE7-43F3-B72E-6A426D02F640}E:\program files\steam\steam.exe" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- E:\program files\steam\steam.exe
O87 - FAEL: "UDP Query User{4ACEE4C6-B6D4-4FA9-9875-08D775C976C1}E:\program files\steam\steam.exe" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- E:\program files\steam\steam.exe
O87 - FAEL: "{C67F3DFC-0443-40E4-B94A-2F4AFFD24BEB}" [In-None-P6-TRUE] .(.BioWare - SWTOR Launcher.) -- D:\Program Files\Electronic Arts\BioWare\Star Wars-The Old Republic\launcher.exe
O87 - FAEL: "{F2513FB6-500F-4646-B755-AC3EFA1FD75C}" [In-None-P17-TRUE] .(.BioWare - SWTOR Launcher.) -- D:\Program Files\Electronic Arts\BioWare\Star Wars-The Old Republic\launcher.exe
O87 - FAEL: "{998B32AE-D315-44A4-BE06-195FA54991AD}" [In-None-P6-TRUE] .(.BioWare - SWTOR Launcher.) -- D:\Program Files\Electronic Arts\BioWare\Star Wars-The Old Republic\launcher.exe
O87 - FAEL: "{30E1DA31-D775-446F-B8AD-7AE70E9A3932}" [In-None-P17-TRUE] .(.BioWare - SWTOR Launcher.) -- D:\Program Files\Electronic Arts\BioWare\Star Wars-The Old Republic\launcher.exe
O87 - FAEL: "{BC723B45-E25B-4313-A501-773395C99398}" [In-None-P6-TRUE] .(.Blizzard Entertainment - Blizzard File Switcher.) -- D:\Program Files\Battle.net\Battle.net.exe
O87 - FAEL: "{D43FFB2D-C67E-4666-90F8-23187D2E3BF7}" [In-None-P17-TRUE] .(.Blizzard Entertainment - Blizzard File Switcher.) -- D:\Program Files\Battle.net\Battle.net.exe
O87 - FAEL: "{6513D3A7-8EB8-4A5F-A4FA-087F0B285994}" [In-None-P6-TRUE] .(.Blizzard Entertainment - Diablo III Retail.) -- C:\Program Files\Diablo III\Diablo III.exe
O87 - FAEL: "{617CE2B6-A42E-4D2D-ADE2-8DB224F22215}" [In-None-P17-TRUE] .(.Blizzard Entertainment - Diablo III Retail.) -- C:\Program Files\Diablo III\Diablo III.exe
O87 - FAEL: "{68CACFF8-21AC-4830-B98E-9188B100319A}" [In-None-P6-TRUE] .(...) -- D:\Program Files\Hearthstone\Hearthstone.exe
O87 - FAEL: "{04FF57EB-225B-46DB-9E5A-15A657482AB9}" [In-None-P17-TRUE] .(...) -- D:\Program Files\Hearthstone\Hearthstone.exe
O87 - FAEL: "{BFBF7CCF-7C67-4237-A89B-6E077CF28FD2}" [In-None-P6-TRUE] .(.Gas Powered Games - Supreme Commander 2 Application.) -- E:\Program Files\Steam\SteamApps\common\Supreme Commander 2\bin\SupremeCommander2.exe
O87 - FAEL: "{F58F7A5F-D81A-4156-9A23-6FEBDCE404C7}" [In-None-P17-TRUE] .(.Gas Powered Games - Supreme Commander 2 Application.) -- E:\Program Files\Steam\SteamApps\common\Supreme Commander 2\bin\SupremeCommander2.exe
O87 - FAEL: "{E78DA1FB-20E5-4AFD-8878-B2F5F141CC9A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
O87 - FAEL: "{8CF1ACC6-F0E2-4D76-8B2A-84CDB3557E65}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
O87 - FAEL: "{6DF1411E-C3FE-48D8-84BD-EAD9E6263FCF}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- E:\Program Files\Steam\bin\steamwebhelper.exe
O87 - FAEL: "{6772F20B-8412-4EB5-9FFA-F70BD0BB9B0E}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- E:\Program Files\Steam\bin\steamwebhelper.exe
O87 - FAEL: "{74AC87F6-23B7-4E7A-BF64-9987F169FEBB}" [In-None-P6-TRUE] .(.Bethesda Softworks - Skyrim Launcher.) -- D:\Program Files\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
O87 - FAEL: "{2C88685B-1E8D-4CCA-B827-79B65467DAA1}" [In-None-P17-TRUE] .(.Bethesda Softworks - Skyrim Launcher.) -- D:\Program Files\Steam\SteamApps\common\Skyrim\SkyrimLauncher.exe
O87 - FAEL: "TCP Query User{08932B3F-82E1-4F87-8EA7-3FB7AB069769}D:\program files\steam\steamapps\common\arma 3\arma3.exe" [In-None-P6-TRUE] .(.Bohemia Interactive - Arma 3.) -- D:\program files\steam\steamapps\common\arma 3\arma3.exe
O87 - FAEL: "UDP Query User{79C42C66-3C78-4F47-9214-84E10601D693}D:\program files\steam\steamapps\common\arma 3\arma3.exe" [In-None-P17-TRUE] .(.Bohemia Interactive - Arma 3.) -- D:\program files\steam\steamapps\common\arma 3\arma3.exe

---\\ Enumère les codes produits des logiciels (PUC) (O90) (1) - 1s
O90 - PUC: "98B07C4E59EC96A47A94D1B14C15917D" . (.Boxore Client.) -- C:\Windows\Installer\{E4C70B89-CE95-4A69-A749-1D1BC45119D7}\boxore.ico =>PUP.Optional.Boxore

---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) (2) - 5s
[MD5.] [WIS][2015/07/22 22:35:22] (.The Software Group - Windows Installer XML Toolset (3.8.1128.0).) -- C:\Windows\Installer\308ad.msi [32768] =>PUP.Optional.Boxore
[MD5.] [WIS][2015/07/02 00:20:20] (.The Software Group - Windows Installer XML Toolset (3.8.1128.0).) -- C:\Windows\Installer\a887b1.msi [32768] =>PUP.Optional.Boxore

---\\ Recherche de clés de registre Tracing (O100) (2) - 0s
HKLM\SOFTWARE\Microsoft\Tracing\WordSharkAutoUpdateClient_RASAPI32 =>PUP.Optional.WordShark
HKLM\SOFTWARE\Microsoft\Tracing\WordSharkAutoUpdateClient_RASMANCS =>PUP.Optional.WordShark

---\\ Scan Additionnel (O88) (120) - 0s
C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\hnsgBFB7.tmp =>PUP.Optional.CrossRider
C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\knsz4F62.tmp =>PUP.Optional.CrossRider
C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2\jnslA294.tmp =>PUP.Optional.CrossRider
C:\Program Files\2A3583A0-1437427330-11DD-BEE3-60A44CB5D4C2\knsq2007.tmpfs =>PUP.Optional.CrossRider
C:\Users\Mika\AppData\Local\SmartWeb\SmartWebHelper.exe =>PUP.Optional.SmartWebSearch
C:\Users\Mika\AppData\Local\SmartWeb\SmartWebApp.exe =>PUP.Optional.SmartWebSearch
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe =>PUP.Optional.Fuyu
C:\Users\Mika\AppData\Local\gmsd_fr_005010040\upgmsd_fr_005010040.exe =>PUP.Optional.CrossRider
C:\Program Files\gmsd_fr_005010040\gmsd_fr_005010040.exe =>PUP.Optional.CrossRider
C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.MiuiTab
C:\Program Files\MiuiTab\CmdShell.exe =>PUP.Optional.MiuiTab
C:\Program Files\MiuiTab\HPNotify.exe =>PUP.Optional.MiuiTab
C:\Program Files\WordShark_1.10.0.19\Service\wssvc.exe =>PUP.Optional.WordShark
C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.MiuiTab
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4c81-863D-3BA0751E1419} =>PUP.Optional.MiuiTab
C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} =>PUP.Optional.LuckyTab
HKLM\SYSTEM\CurrentControlSet\Services\acengine =>PUP.Optional.Abengine
HKLM\SYSTEM\CurrentControlSet\Services\comyninu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\fuxohufe =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\gumihinu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\hyverumu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR
C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR
HKLM\SYSTEM\CurrentControlSet\Services\kikebomi =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\lizedero =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\pegifepy =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\SW_Updater =>PUP.Optional.StormWarnings
HKLM\SYSTEM\CurrentControlSet\Services\vicoqudu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SYSTEM\CurrentControlSet\Services\wssvc_1.10.0.19 =>PUP.Optional.WordShark
HKLM\SYSTEM\CurrentControlSet\Services\zejytose =>PUP.Optional.CrossRider
C:\Program Files\AnyProtectEx\AnyProtect.exe =>PUP.Optional.AnyProtect
C:\Windows\Tasks\APSnotifierPP1.job =>PUP.Optional.AnyProtect
C:\Windows\Tasks\APSnotifierPP2.job =>PUP.Optional.AnyProtect
C:\Windows\Tasks\APSnotifierPP3.job =>PUP.Optional.AnyProtect
C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job =>PUP.Optional.BidailySync
C:\Windows\System32\Tasks\APSnotifierPP1 =>PUP.Optional.AnyProtect
C:\Windows\System32\Tasks\APSnotifierPP2 =>PUP.Optional.AnyProtect
C:\Windows\System32\Tasks\APSnotifierPP3 =>PUP.Optional.AnyProtect
C:\Windows\System32\Tasks\Bidaily Synchronize Task[8da6] =>PUP.Optional.BidailySync
C:\Windows\System32\Tasks\DNSWABENO =>PUP.Optional.BidailySync
C:\Windows\System32\Tasks\Ehebcnoee =>PUP.Optional.Shopperz
C:\Windows\System32\Tasks\SmartWeb Upgrade Trigger Task =>PUP.Optional.SmartWebSearch
C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Core =>PUP.Optional.WordShark
C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Pending Update =>PUP.Optional.WordShark
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AnyProtect =>PUP.Optional.AnyProtect
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_005010040_is1 =>PUP.Optional.GamesDesktop
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall =>PUP.Optional.StartSearch
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SmartWeb =>PUP.Optional.SmartWebSearch
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E4C70B89-CE95-4A69-A749-1D1BC45119D7} =>PUP.Optional.Boxore
HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\GoHD-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut
HKLM\SOFTWARE\MediaPlayersvideos 1.1-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\mystartsearchSoftware =>PUP.Optional.StartSearch
HKLM\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\searchult =>PUP.Optional
HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKLM\SOFTWARE\WordSurfer_1.10.0.19 =>PUP.Optional.WordSurfer
HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKCU\SOFTWARE\GoHD-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\MediaPlayersvideos 1.1-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\AppDataLow\Software\SmartWeb =>PUP.Optional.SmartWebSearch =>PUP.Optional.SmartWebSearch
C:\Program Files\2A3583A0-1437427330-11DD-BEE3-60A44CB5D4C2 =>PUP.Optional.CrossRider
C:\Program Files\2A3583A0-1437595680-11DD-BEE3-60A44CB5D4C2 =>PUP.Optional.CrossRider
C:\Program Files\2A3583A0-1437597361-11DD-BEE3-60A44CB5D4C2 =>PUP.Optional.CrossRider
C:\Program Files\5C204FFD-134C-479D-A2AD-8D3E0034EAFD =>PUP.Optional.CrossRider
C:\Program Files\63d49273-a91d-4407-9c5a-9ca521bc885a =>PUP.Optional.CrossRider
C:\Program Files\a0243275-9c00-4dcd-aa82-4800ea85d151 =>PUP.Optional.CrossRider
C:\Program Files\aabd0c4e-5ecc-469d-b1f8-9c44584a1478 =>PUP.Optional.CrossRider
C:\Program Files\AnyProtectEx =>PUP.Optional.AnyProtect
C:\Program Files\gmsd_fr_005010040 =>PUP.Optional.CrossRider
C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab
C:\Program Files\SystemContinue =>PUP.Optional.Graftor
C:\Program Files\TerminusSubs =>PUP.Optional.Graftor
C:\Program Files\WordShark_1.10.0.19 =>PUP.Optional.WordShark
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP =>PUP.Optional.GamesDesktop
C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu
C:\Users\Mika\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect
C:\Users\Mika\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch
C:\Users\Mika\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
C:\Users\Mika\AppData\Local\gmsd_fr_005010040 =>PUP.Optional.CrossRider
C:\Users\Mika\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
C:\Users\Mika\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup =>PUP.Optional.AnyProtect
C:\Windows\Prefetch\GMSD_FR_009010038.EXE-CD6B658D.pf =>PUP.Optional.CrossRider
C:\Windows\Prefetch\UPGMSD_FR_009010038.EXE-E372E6ED.pf =>PUP.Optional.CrossRider
C:\Windows\System32\drivers\wsfd_1_10_0_19.sys =>PUP.Optional.WordShark
C:\Users\Mika\AppData\Local\SmartWeb\__u.exe =>PUP.Optional.SmartWebSearch
C:\Users\Mika\AppData\Local\gmsd_fr_005010040\Download\myoffergroup_fr.exe =>PUP.Optional.CrossRider
C:\Windows\Installer\{E4C70B89-CE95-4A69-A749-1D1BC45119D7}\boxore.ico =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Products\98B07C4E59EC96A47A94D1B14C15917D =>PUP.Optional.Boxore
HKLM\Software\Classes\Installer\Features\98B07C4E59EC96A47A94D1B14C15917D =>PUP.Optional.Boxore
C:\Windows\Installer\308ad.msi =>PUP.Optional.Boxore
C:\Windows\Installer\a887b1.msi =>PUP.Optional.Boxore
HKLM\SOFTWARE\Microsoft\Tracing\WordSharkAutoUpdateClient_RASAPI32 =>PUP.Optional.WordShark
HKLM\SOFTWARE\Microsoft\Tracing\WordSharkAutoUpdateClient_RASMANCS =>PUP.Optional.WordShark

---\\ Récapitulatif des éléments trouvées sur votre station (38) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/pup-smartwebsearch/ =>PUP.Optional.SmartWebSearch
http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu
http://www.nicolascoolman.fr/blog =>PUP.Optional.MiuiTab
http://www.nicolascoolman.fr/pup-wordshark/ =>PUP.Optional.WordShark
http://www.nicolascoolman.fr/pup-startsearch/ =>PUP.Optional.StartSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.LuckyTab
http://www.nicolascoolman.fr/blog =>PUP.Optional.OnStage
http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional.WikiBrowser
http://www.nicolascoolman.fr/blog =>PUP.Optional.TomorrowGames
http://www.nicolascoolman.fr/blog =>PUP.Optional.Abengine
http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR
http://www.nicolascoolman.fr/blog =>PUP.Optional.StormWarnings
http://www.nicolascoolman.fr/blog =>PUP.Optional.BidailySync
http://www.nicolascoolman.fr/blog =>PUP.Optional.Shopperz
http://www.nicolascoolman.fr/blog =>PUP.Optional.GamesDesktop
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBooster
http://www.nicolascoolman.fr/blog =>PUP.Optional.Infonaut
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/blog =>PUP.Optional.WordSurfer
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech
http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork
http://www.nicolascoolman.fr/blog =>PUP.Optional.MaxComputerCleaner
http://www.nicolascoolman.fr/blog =>PUP.Optional.Graftor
http://www.nicolascoolman.fr/blog =>PUP.Optional.BreakingNewsAlert
http://www.nicolascoolman.fr/blog =>PUP.Optional.SpaceSondPro
http://www.nicolascoolman.fr/blog =>PUP.Optional.SquirrelWeb
http://www.nicolascoolman.fr/pup-storimbo/ =>PUP.Optional.Storimbo

~ End of the scan, 26752 items in 143 seconds (1359)(0)()

Publicité


Signaler le contenu de ce document

Publicité