cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.26.127 Par Nicolas Coolman (2015/08/26)
~ Démarré par hp (Administrator) (2015/08/26 22:05:11)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\hp\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Ultimate, 64-bit (Build 7600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v44.0.2403.157
MFIE: Mozilla Firefox 29.0 (x86 en-US) v29.0
MSIE: Internet Explorer v8.0.7600.16385

---\\ Informations sur les produits Windows (5) - 6s
Windows Server License Manager Script : Absent (Not found)
Windows ID Activation : Inconnue (Unknown)
Windows Licence : Inconnue (Unknown)
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 4s
Avast Free Antivirus v10.2.2218
Windows Defender W7 (Activate)

---\\ Surveillance de Logiciels (2) - 5s
Adobe Flash Player 18 NPAPI
Adobe Reader XI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4140.912 MB (26% free)
~ System Restore: Activé (Enable)
~ System drive C: has 99 GB free of 237 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: HP-PC
~ User Name: hp
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 99 GB free of 237 GB (System)
~ Drive D: has 58 GB free of 238 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 2s
[MD5.0862495E0C825893DB75EF44FAEA8E93] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2870272] ©
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] ©
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] ©
[MD5.463302B41295A7FCAAC655CCB5DE79F8] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1197056] ©
[MD5.DA3E2A6FA9660CC75B471530CE88453A] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [389632] ©
[MD5.] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [231936] ©
[MD5.39FE85537B2475268B20D3823B8E753C] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [30208] ©
[MD5.6EF20DDF3172E97D69F596FB90602F29] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [499712] ©
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] ©
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] ©
[MD5.83D2D75E1EFB81B3450C18131443F7DB] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] ©
[MD5.9C253CE7311CA60FC11C774692A13208] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] ©
[MD5.0A49913402747A0B67DE940FB42CBDBB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] ©
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] ©
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] ©
[MD5.040D62A9D8AD28922632137ACDD984F2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [157696] ©
[MD5.9162B273A44AB9DCE5B44362731D062A] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [259072] ©
[MD5.356698A13C4630D5B31C37378D469196] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1659984] ©
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] ©
[MD5.87A6E852A22991580D6D39ADC4790463] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [130048] ©
[MD5.9706B84DBABFC4B4CA46C5A82B14DFA3] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165376] ©
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] ©
[MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [99840] ©
[MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [294992] ©

---\\ Processus lancés (45) - 5s
[MD5.A2F5BEA5B45A8E7C4776F39C25E8699D] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [204288] [PID.432] ©
[MD5.16B8421D9ADCE43A78F77842953C379D] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [485376] [PID.1180] ©
[MD5.1938EDECEADB05D81416C9549A33A3D1] - (.DTools LIMITED - DTools.) -- C:\ProgramData\JWinManProJ\WinManPro.exe [707720] [PID.1644] =>PUP.Optional.WpManager
[MD5.C5679E5186B2FC95BC76A8A9870D5456] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [64704] [PID.1844] ©
[MD5.30E3850F303EAE5C364782EA78579CC9] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55624] [PID.1864] ©
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1892] ©
[MD5.12461829627C6ED75DC2D7AF94097F70] - (.Cucusoft, Inc. - Cucusoft Auto Update Service.) -- C:\Program Files\Cucusoft\AutoUpdate\AutoUpdateSrvc.exe [44696] [PID.1164]
[MD5.B23B61AF1349EAB73480714042C21518] - (.Cinema PlusV16.03 - CinemaP-1.9cV16.03 exe.) -- C:\Program Files (x86)\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.exe [1408512] [PID.2256] =>PUP.Optional.CrossRider
[MD5.C62FBA28888618418B377C9E72ED0DE5] - (.Cucusoft, Inc. - Cucusoft Net Guard Service 2012-04-21.) -- C:\Program Files\Cucusoft\NetGuard\BandwidthGuardSrvc.sys [223392] [PID.2524]
[MD5.361417A9AFC796BF529F12D78FC1BD2C] - (.Cucusoft, Inc. - Cucusoft Net Guard Service 2012-04-21.) -- C:\Program Files\Cucusoft\NetGuard\BandwidthGuardSrvc64.sys [292000] [PID.2564]
[MD5.3856D54FD710AB60B8C7A443BC625EAA] - (.Cucusoft, Inc. - Cucusoft SysMsg Proxy and Data Log Service.) -- C:\Program Files\Cucusoft\NetGuard\SysMsgProxySrvc.sys [255136] [PID.2592]
[MD5.D1A8631ADA1E71178D3DBF5AA2BC1E85] - (.Foxit Software Inc. - Foxit Cloud Safe Update Service.) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [244392] [PID.2816]
[MD5.3A0FF117B4ADC5ABE4D968E26A337158] - (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2375168] [PID.2836]
[MD5.D0A4FD099B7EE90B302BE9D1A13A2EBD] - (.MiniLite system - MiniLiteSvc.exe.) -- C:\Program Files (x86)\MiniLite\ProtectService.exe [132768] [PID.2948] =>PUP.Optional.AgentODR
[MD5.0417C188DA81AA5564B152CA4E00458A] - (.Copyright (C) 2013 - .) -- C:\ProgramData\MobileBrServ\mbbservice.exe [239696] [PID.3060]
[MD5.831883B107684301F48ACE752C963984] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [66872] [PID.1196]
[MD5.9B92ED281343A278E3A6AB6C9B21A369] - (.Baidu Inc. - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe [86840] [PID.2132]
[MD5.97F6FFB8A305A77D25C6C0E07B71D252] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [5024576] [PID.3092] ©
[MD5.AD5CCC7861FBE9BC3822D1C940CAC0C2] - (.Copyright (C) 2013 - ZDServ Application.) -- C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe [427264] [PID.3220]
[MD5.EE0AAEF8E4F5E84842C81560582DD942] - (...) -- C:\ProgramData\ZDSupport\ZDServ\CancelAutoPlay_Server.exe [426752] [PID.3576]
[MD5.CDA3CF88FB7C78DFFB629C390D82399F] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [167256] [PID.3736] ©
[MD5.C27FDBE58254BF6438535E386E17DC8C] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [391512] [PID.2640] ©
[MD5.D2A8A2A49F5B0426EA85C5FA09854531] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [415064] [PID.3388] ©
[MD5.B0A7458308E157ABF2B04555D12ACF4A] - (.Nokia - Nokia Launch Application.) -- C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1479680] [PID.3924] ©
[MD5.045117D0B7FB222B92A04B6A55D44899] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3829328] [PID.3904] ©
[MD5.5C2DEF31326B9F873ED0B5F0272589E2] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe [202256] [PID.1148]
[MD5.07A5F2043BAB61711F1C955F61DF70D6] - (.Internet Download Manager, Tonec Inc. - IDM Integration module.) -- C:\Program Files (x86)\Internet Download Manager\IDMIntegrator64.exe [83992] [PID.1704]
[MD5.C861851A0BBD9903E324487011AA3705] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.2176] ©
[MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\avast software\avast\avastui.exe [5515496] [PID.4240] ©
[MD5.2D841B7B7F6DEC32162EDFCC69D61F42] - (.Nokia - ServiceLayer Module.) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [615936] [PID.5016] ©
[MD5.E8CACCC0633414AB40EAEB1A5E288FCA] - (.Nokia - USB Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe [215552] [PID.1912] ©
[MD5.46A9D1FCC55EC6A62FE1D2ACE79C6CA8] - (.Nokia - Serial Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe [120832] [PID.2448] ©
[MD5.871E1E0FAE1EA1D1FCF4DDC8C9CC954D] - (.Nokia - Microsoft Bluetooth Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe [140288] [PID.4452] ©
[MD5.5793DC788F187C802A56450107C5424A] - (.Advanced Micro Devices, Inc. - Load MMdriver application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe [49664] [PID.3280] ©
[MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\avast\AvastSvc.exe [343336] [PID.2324] ©
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5552]
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.4940]
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.208]
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5280]
[MD5.3F3E04A8375E3E2109A44BD16998BF49] - (.MindGems Inc - Folder Size Freeware.) -- C:\Program Files (x86)\Folder Size\FolderSize.exe [2516480] [PID.236]
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5208]
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5740]
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.3948]
[MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.6936]
[MD5.E7EDF5F9D988069C62495EF24F419B32] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hp\Desktop\ZHPDiag3.exe [1908224] [PID.3292] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfaiecaipbfijlkohjkceigckpmdmgob] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (26) - 5s
M0 - MFSP: prefs.js [hp - wba20m1u.default] http://www.istartsurf.com/?type=hp&ts=1440608830&z=9f9617791469fa5fc4383bbg5zczee8qce0bdm2g6q&from=smt&uid=ST9500325AS_S2W1G3N0 =>PUP.Optional.IsStart
P2 - EXT FILE: (...) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\testpilot@labs.mozilla.com.xpi
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\istartsurf.xml =>PUP.Optional.IsStart
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\iobitascsurfingprotection@iobit.com ©
P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM CC.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\mozilla_cc@internetdownloadmanager.com
P2 - EXT: (. - summer games.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\pBcn5a5tL@gmail.com
P2 - EXT: (.OutBrowse - SavePass.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\RNEOMVW50611856@ZKVKQ22976610.com
P2 - EXT: (. - webranktoolbarprobcompcom.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\webrank-toolbar@probcomp.com
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll ©
P2 - FPN: [HKLM] [@checkpoint.com/FFApi] - (.Check Point.) -- C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll ©
P2 - FPN: [HKLM] [@ei.FilmFanatic.com/Plugin] - (.FilmFanatic.) -- C:\Program Files (x86)\FilmFanaticEI\Installr\1.bin\NPpaEISb.dll =>PUP.Optional.MindSpark
P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.688] - (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll
P2 - FPN: [HKLM] [@real.com/nprjplug;version=1.0.3.688] - (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.688] - (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.0.0] - (.the VideoLAN Team.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (20) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {04b84c46-5abb-476b-a7d7-40435d9ae611} Orphean
R3 - URLSearchHook: (no name) - {8f6846ea-ddff-459b-8c78-469b34d90a49} Orphean
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R3 - URLSearchHook: (no name) - {4d51f677-2a0b-43e2-b444-a2b384d24b91} Orphean

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (22)

---\\ Browser Helper Object de navigateur (BHO) (7) - 1s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL ©
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre8\bin\ssv.dll ©
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\avast\aswWebRepIE64.dll ©
O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll ©
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL ©
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre8\bin\jp2ssv.dll ©

---\\ Internet Explorer, Barre d'outil (7) - 1s
O3 - Toolbar: 0x77F6514D0B2AE243B444A2B384D24B91 - [HKCU]{4D51F677-2A0B-43E2-B444-A2B384D24B91} . (...) -- (.not file.)
O3 - Toolbar: 0x7F7C02D44A156640A1AD4243D8127440 - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.)
O3 - Toolbar: 0x08637D141406124189B131402F9B82C4 - [HKCU]{147D6308-0614-4112-89B1-31402F9B82C4} . (...) -- (.not file.)
O3 - Toolbar: 0x464CB804BB5A6B47A7D740435D9AE611 - [HKCU]{04B84C46-5ABB-476B-A7D7-40435D9AE611} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files (x86)\Newwara\prxtbNew0.dll
O3 - Toolbar: 0x00 - [HKLM]{D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.)
O3 - Toolbar: Newwara Toolbar - [HKLM]{04b84c46-5abb-476b-a7d7-40435d9ae611} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files (x86)\Newwara\prxtbNew0.dll
O3 - Toolbar: uTorrentControl_v6b Toolbar - [HKLM]{8f6846ea-ddff-459b-8c78-469b34d90a49} . (.Conduit Ltd. - Conduit Toolbar.) -- (.not file.) =>PUP.Optional.uTorrentControl

---\\ Applications lancées au démarrage du système (29) - 1s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe ©
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe ©
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe ©
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe ©
O4 - HKLM\..\Run: [CucusoftNetGuard] (Orphean)
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe ©
O4 - HKCU\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe ©
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe ©
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe ©
O4 - HKCU\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE ©
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe ©
O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe ©
O4 - HKLM\..\Wow6432Node\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe ©
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ©
O4 - HKLM\..\Wow6432Node\Run: [cmsc] . (.Kingsoft Corporation - Clean Master.) -- c:\program files (x86)\cmcm\Clean Master\cmtray.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\avast\avastui.exe ©
O4 - HKLM\..\Wow6432Node\Run: [CucusoftNetGuard] . (.Cucusoft, Inc. - Cucusoft Net Guard.) -- C:\Program Files\Cucusoft\NetGuard\BandwidthGuard.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe ©
O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe ©
O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe ©
O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe ©
O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe ©
O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe ©
O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE ©

---\\ Modification Domaine/Adresses DNS (12) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = hi.link
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = hi.link
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = hi.link

---\\ Protocole additionnel (24) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: deflate [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: gzip [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL ©

---\\ Liste des services NT non Microsoft et non désactivés (18) - 3s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe ©
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe ©
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\avast\AvastSvc.exe ©
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe ©
O23 - Service: (CS_AutoUpdate) . (.Cucusoft, Inc. - Cucusoft Auto Update Service.) - C:\Program Files\Cucusoft\AutoUpdate\AutoUpdateSrvc.exe
O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Software Inc. - Foxit Cloud Safe Update Service.) - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
O23 - Service: IHProtect Service (IHProtect Service) . (.MiniLite system - MiniLiteSvc.exe.) - C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe ©
O23 - Service: Mobile Broadband HL Service (Mobile Broadband HL Service) . (.Copyright (C) 2013 - .) - C:\ProgramData\MobileBrServ\mbbservice.exe
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe (.not file.)
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe
O23 - Service: TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH - TeamViewer 9.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe ©
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED - DTools.) - C:\ProgramData\JWinManProJ\WinManPro.exe =>PUP.Optional.WpManager
O23 - Service: ZDServ (ZDServ) . (.Copyright (C) 2013 - ZDServ Application.) - C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe

---\\ Enumère les données de BootExecute (1) - 0s
O34 - HKLM BootExecute: (sdnclean64.exe)

---\\ Logiciels installés (180) - 37s
O42 - Logiciel: Package de pilotes Windows - Nokia Modem (06/09/2010 4.5) - (.Nokia.) [HKLM][64Bits] -- 34EA302E7F4CBD17A19E33BBCB72363234956D7E ©
O42 - Logiciel: Broadcom 802.11 Network Adapter - (.Broadcom Corporation.) [HKLM][64Bits] -- Broadcom 802.11 Network Adapter ©
O42 - Logiciel: Cucusoft Auto Update 1.0.5 - (...) [HKLM][64Bits] -- CucusoftAutoUpdate_is1
O42 - Logiciel: Cucusoft Net Guard 2.3.4.1 - (.Cucusoft, Inc..) [HKLM][64Bits] -- CucusoftNetGuard_is1
O42 - Logiciel: Package de pilotes Windows - Nokia Modem (06/09/2010 7.01.0.7) - (.Nokia.) [HKLM][64Bits] -- EEEE705096F837B7907659F100C9FE6DA001970F ©
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM][64Bits] -- FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D ©
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 1.0 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Help Viewer 1.0 Language Pack - FRA ©
O42 - Logiciel: GlassFish Server Open Source Edition 3.1.2.2 - (...) [HKLM][64Bits] -- nbi-glassfish-mod-3.1.2.23.2
O42 - Logiciel: Java(TM) Platform, Micro Edition Software Development Kit 3.2 - (.Oracle.) [HKLM][64Bits] -- nbi-javame-toolkit-3.0.0.0.1209212151 ©
O42 - Logiciel: NetBeans IDE 7.3 - (.NetBeans.org.) [HKLM][64Bits] -- nbi-nb-base-7.3.0.0.201302132200 ©
O42 - Logiciel: NetBeans IDE 7.4 - (.NetBeans.org.) [HKLM][64Bits] -- nbi-nb-base-7.4.0.0.201310111528 ©
O42 - Logiciel: OptimizerPro - (.BetterSoft.) [HKLM][64Bits] -- OptimizerPro
O42 - Logiciel: Potplayer-64 Bits - (.Daum Communications Corp..) [HKLM][64Bits] -- PotPlayer64
O42 - Logiciel: SAMSUNG Mobile Composite Device Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile Composite Device
O42 - Logiciel: SAMSUNG Mobile Modem Driver Set - (...) [HKLM][64Bits] -- SAMSUNG Mobile Modem
O42 - Logiciel: Samsung Mobile phone USB driver Drive Software - (...) [HKLM][64Bits] -- Samsung Mobile phone USB driver Drive
O42 - Logiciel: SAMSUNG Mobile USB Modem Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem
O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem 1.0
O42 - Logiciel: TeraCopy 2.12 - (.Code Sector Inc..) [HKLM][64Bits] -- TeraCopy_is1
O42 - Logiciel: Java 7 Update 60 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F06417060FF} ©
O42 - Logiciel: Java 8 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418000FF} ©
O42 - Logiciel: Crystal Reports Basic Runtime French Language Pack for Visual Studio 2008 ( - (.Business Objects.) [HKLM][64Bits] -- {26D96091-69F2-4249-B43D-EEE1E50C52B4} ©
O42 - Logiciel: Crystal Reports Basic Runtime for Visual Studio 2008 (x64) - (.Business Objects.) [HKLM][64Bits] -- {2BFA9B05-7418-4EDE-A6FC-620427BAAAA3} ©
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C} ©
O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM][64Bits] -- {4710662C-8204-4334-A977-B1AC9E547819} ©
O42 - Logiciel: AMD Media Foundation Decoders - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {499CBE65-4E07-B40A-624A-B5B7BD6F9A9C} ©
O42 - Logiciel: MSVC80_x64_v2 - (.Nokia.) [HKLM][64Bits] -- {4D668D4F-FAA2-4726-834C-31F4614F312E} ©
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} ©
O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools - (.Microsoft.) [HKLM][64Bits] -- {5B03A6F3-27D7-3D60-8635-3074EA5FBD6C} ©
O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries - (.Microsoft Corporation.) [HKLM][64Bits] -- {5DE154DF-A55E-4FA5-BE59-32E78FCACF3E} ©
O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {62EED300-E841-4083-A1D6-60B906271804} ©
O42 - Logiciel: Java SE Development Kit 7 Update 45 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0170450} ©
O42 - Logiciel: Pilote vidéo Pinnacle - (.Pinnacle Systems.) [HKLM][64Bits] -- {6DE721A5-5E89-4D74-994C-652BB3C0672E} ©
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} ©
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8D0A0350-B509-B362-4827-63E4C6520E7B} ©
O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and I - (.Microsoft Corporation.) [HKLM][64Bits] -- {9aa5f39c-a8de-46b0-919a-0248f8bc8490} ©
O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {A325B368-A9EC-40EF-A95C-9DEAD3683AE3} ©
O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Win32 Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {A992BBAA-723D-4574-A07F-983BF8FAA3E1} ©
O42 - Logiciel: Microsoft Device Emulator (64 bits) version 3.0 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {BE6BA13C-6B5E-34A7-AA93-793BCE428DE1} ©
O42 - Logiciel: Visual Studio .NET Prerequisites - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {DDA84A45-E4FE-37E0-AA42-A3DBF4943721} ©
O42 - Logiciel: 3D Driving-School - (...) [HKLM][64Bits] -- 3D Driving-School
O42 - Logiciel: ACSW - (.Ultra.) [HKLM][64Bits] -- ACSW_is1
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX ©
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Photoshop 7.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Photoshop 7.0 ©
O42 - Logiciel: ARMA 2 REINFORCEMENTS Uninstall - (...) [HKLM][64Bits] -- ARMA 2 REINFORCEMENTS
O42 - Logiciel: Audacity 1.2.6 - (...) [HKLM][64Bits] -- Audacity_is1
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast ©
O42 - Logiciel: Camersoft Webcam Recorder 3.1.08 - (.Camersoft Studio.) [HKLM][64Bits] -- Camersoft Webcam Recorder_is1
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 ©
O42 - Logiciel: Cheatbook Database 2010 - (...) [HKLM][64Bits] -- Cheatbook Database 2010
O42 - Logiciel: Clean Master - (.Cheetah Mobile.) [HKLM][64Bits] -- Clean Master
O42 - Logiciel: FastStone Capture 5.3 (French) - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Capture ©
O42 - Logiciel: FileZilla Client 3.7.3 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client ©
O42 - Logiciel: FormatFactory 2.60 - (.Free Time.) [HKLM][64Bits] -- FormatFactory ©
O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM][64Bits] -- Foxit Reader_is1
O42 - Logiciel: Free PDF to Word Doc Converter v1.1 - (.www.hellopdf.com.) [HKLM][64Bits] -- Free PDF to Word Doc Converter_is1
O42 - Logiciel: FreeArc 0.666 - (.Bulat Ziganshin.) [HKLM][64Bits] -- FreeArc
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: uTorrentControl_v6b Toolbar for IE - (.uTorrentControl_v6b.) [HKLM][64Bits] -- IECT3327997
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: UE3Redist - (.Epic Games.) [HKLM][64Bits] -- InstallShield_{2FB04107-7BC2-449C-915A-530B29B5E0FE} ©
O42 - Logiciel: CV et Lettres de Motivation - 9078 - (.Micro Application.) [HKLM][64Bits] -- InstallShield_{86764E89-55E0-4C0B-860B-4DC051743B30} ©
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager ©
O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM][64Bits] -- IObit Surfing Protection_is1 ©
O42 - Logiciel: istartsurf uninstall - (.istartsurf.) [HKLM][64Bits] -- istartsurf uninstall =>PUP.Optional.IsStart
O42 - Logiciel: Java Code Export 1.0 (Beta) - (.OverZone Software.) [HKLM][64Bits] -- Java Code Export (Beta)_is1
O42 - Logiciel: K-Lite Codec Pack 9.8.0 (Full) - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: LADSPA_plugins-win-0.4.15 - (.Audacity Team.) [HKLM][64Bits] -- LADSPA_plugins-win_is1 ©
O42 - Logiciel: Launch4j 3.1.0-beta2 - (.Grzegorz Kowal.) [HKLM][64Bits] -- Launch4j
O42 - Logiciel: Medal of Honor Warfighter - (.R.G. Mechanics, Panky.) [HKLM][64Bits] -- Medal of Honor Warfighter_R.G. Mechanics_is1
O42 - Logiciel: Microsoft Document Explorer 2008 - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Document Explorer 2008 ©
O42 - Logiciel: Module linguistique Microsoft Document Explorer 2008 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Document Explorer 2008 Language Pack - FRA ©
O42 - Logiciel: Visual Studio 2005 Tools pour Office Second Edition Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2005 Tools for Office Runtime ©
O42 - Logiciel: Mobile Broadband HL Service - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Mobile Broadband HL Service
O42 - Logiciel: Mozilla Firefox 29.0 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 29.0 (x86 en-US) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService ©
O42 - Logiciel: My Autoplay 10.3 Pro D - (.Arafasoft, Inc..) [HKLM][64Bits] -- My Autoplay_is1
O42 - Logiciel: Need for Speed Hot Pursuit 2 - (...) [HKLM][64Bits] -- Need for Speed Hot Pursuit 2
O42 - Logiciel: Nero 8 Micro v8.3.2.1 - (.www.nero.com.) [HKLM][64Bits] -- Nero8321_Micro_is1
O42 - Logiciel: Newwara Toolbar - (.Newwara.) [HKLM][64Bits] -- Newwara Toolbar
O42 - Logiciel: Nokia PC Suite - (.Nokia.) [HKLM][64Bits] -- Nokia PC Suite ©
O42 - Logiciel: Notepad++ - (...) [HKLM][64Bits] -- Notepad++
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL
O42 - Logiciel: openElement 1.44 R5 - (.openElement.) [HKLM][64Bits] -- openElement 1.44 R5 1.44.5
O42 - Logiciel: PowerISO - (.PowerISO Computing, Inc..) [HKLM][64Bits] -- PowerISO
O42 - Logiciel: PSPad editor - (.Jan Fiala.) [HKLM][64Bits] -- PSPad editor_is1
O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 12.0 ©
O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM][64Bits] -- Spark
O42 - Logiciel: SPlayer - (...) [HKLM][64Bits] -- SPlayer
O42 - Logiciel: Supercopier 4.0.1.13 - (.Supercopier.) [HKLM][64Bits] -- Supercopier
O42 - Logiciel: TeamViewer 9 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer 9 ©
O42 - Logiciel: TotalPDFConverter - (.Softplicity, Inc..) [HKLM][64Bits] -- Total PDF Converter_is1
O42 - Logiciel: Tunisia Sat Radio.Tn V1.1 - (.Tunsia-Sat.) [HKLM][64Bits] -- Tunisia Sat Radio.Tn V1.1
O42 - Logiciel: Microsoft Access 97 Upsizing Tools - (...) [HKLM][64Bits] -- UpsizingTools97
O42 - Logiciel: Visual Studio Tools for the Office system 3.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Visual Studio Tools for the Office system 3.0 Runtime ©
O42 - Logiciel: Module linguistique Visual Studio Tools pour Office System 3.0 Runtime - FR - (.Microsoft Corporation.) [HKLM][64Bits] -- Visual Studio Tools for the Office system 3.0 Runtime Language Pack - FRA ©
O42 - Logiciel: VLC media player 1.0.0 - (.VideoLAN Team.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: VST Bridge 1.1 - (...) [HKLM][64Bits] -- VST Bridge_is1
O42 - Logiciel: WinHTTrack Website Copier 3.47-27 - (.HTTrack.) [HKLM][64Bits] -- WinHTTrack Website Copier_is1
O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: VC 9.0 Runtime - (.Check Point Software Technologies Ltd.) [HKLM][64Bits] -- {02E89EFC-7B07-4D5A-AA03-9EC0902914EE}
O42 - Logiciel: Camera Mouse 2013 - (.Camera Mouse.) [HKLM][64Bits] -- {05875510-8BE5-4208-BEA1-369C2213A279}
O42 - Logiciel: Microsoft Encarta Maths - (.Microsoft Corporation.) [HKLM][64Bits] -- {07183840-959A-4B0D-8825-2C533F0DDB19} ©
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM][64Bits] -- {089DD780-DB3F-4CDB-A0C2-111360247298} ©
O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {0E33EC53-22CE-426C-A88B-2AAC231BAC85} ©
O42 - Logiciel: Soldier of Fortune Payback - (.Activision Value.) [HKLM][64Bits] -- {11BFB898-71E5-488A-A8FF-0E462667FB72}
O42 - Logiciel: Pinnacle Studio 15 - (.Pinnacle Systems.) [HKLM][64Bits] -- {1362E602-9625-42D3-B57F-CDA9D26F9DA8} ©
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM][64Bits] -- {1B9B5B3B-28E7-4E59-A80D-D670AA984514} ©
O42 - Logiciel: Angry Birds - (.Rovio.) [HKLM][64Bits] -- {1E11EE30-C0D4-46BC-9142-27EB4C37BE35} ©
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} ©
O42 - Logiciel: Nokia PC Suite - (.Nokia.) [HKLM][64Bits] -- {225DB4AA-3CFF-47E8-B3C8-6DAD713E986E} ©
O42 - Logiciel: Crystal Reports Basic French Language Pack for Visual Studio 2008 - (.Business Objects.) [HKLM][64Bits] -- {2516845C-017F-4036-828B-3365FF640AB6} ©
O42 - Logiciel: Java(TM) 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216023FF} ©
O42 - Logiciel: Java 7 Update 45 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF} ©
O42 - Logiciel: Java 8 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218000FF} ©
O42 - Logiciel: Folder Size 2.8.0.0 - (.MindGems, Inc..) [HKLM][64Bits] -- {2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1
O42 - Logiciel: Visual C++ 8.0 Runtime Setup Package (x64) - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D} ©
O42 - Logiciel: Java(TM) SE Development Kit 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0160230} ©
O42 - Logiciel: Java SE Development Kit 8 - (.Oracle Corporation.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0180000} ©
O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Fran - (.Microsoft Corporation.) [HKLM][64Bits] -- {3380F354-C5F7-4E71-8F51-EEE6C3F06C62} ©
O42 - Logiciel: BodyBuilding Info - (.buy-anabolic-steroids.com.) [HKLM][64Bits] -- {34B51F99-239E-4ECE-8E13-3055E4E1EC2F}
O42 - Logiciel: MySQL Connector J - (.Oracle Corporation.) [HKLM][64Bits] -- {382DF8A2-7305-4974-8C23-13372DB4E2D5} ©
O42 - Logiciel: Macromedia Flash MX - (.Macromedia.) [HKLM][64Bits] -- {3BE480ED-E17A-431A-981C-5C2EDDBCD3BF} ©
O42 - Logiciel: Macromedia Extension Manager - (.Nom de votre société.) [HKLM][64Bits] -- {3C8C9FB3-5FDF-40B4-B314-EAD722728C76}
O42 - Logiciel: Angry Birds Space - (.Rovio.) [HKLM][64Bits] -- {3F2A323E-60C4-41E8-8CCB-9715D1D750C3} ©
O42 - Logiciel: Foxit Cloud - (.Foxit Software Inc..) [HKLM][64Bits] -- {41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} ©
O42 - Logiciel: Adobe Illustrator CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4869414E-7AEA-4C8E-BE1C-8D40977FD517} ©
O42 - Logiciel: Sybase PowerAMC 15.1 - (.Sybase Inc..) [HKLM][64Bits] -- {48B0BE4A-EDC9-44C4-A3DB-67D62D75961F}
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} ©
O42 - Logiciel: Macromedia Dreamweaver 8 - (..) [HKLM][64Bits] -- {5FD788ED-1A37-4496-9BDD-463F493B27FA}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {64467D47-FFE4-4FBC-ABBA-A0DB829A17EB} ©
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} ©
O42 - Logiciel: Microsoft Document Explorer 2008 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6753B40C-0FBD-3BED-8A9D-0ACAC2DCD85D} ©
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} ©
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM][64Bits] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} ©
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {6F545E5E-4595-11E2-93B6-B8AC6F97B88E} ©
O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} ©
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ©
O42 - Logiciel: Skype™ 6.16 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} ©
O42 - Logiciel: Free Stuff version 1.5 - (...) [HKLM][64Bits] -- {7E1B484F-C15A-48C2-BF42-450310E39165}_is1
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM][64Bits] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AsktBar
O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM][64Bits] -- {888F1505-C2B3-4FDE-835D-36353EBD4754} ©
O42 - Logiciel: Visual Studio Tools for the Office system 3.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FB53850-246A-3507-8ADE-0060093FFEA6} ©
O42 - Logiciel: Windows Mobile 5.0 SDK R2 for Pocket PC - (.Microsoft Corporation.) [HKLM][64Bits] -- {94576E4F-703B-4038-806B-CDE9479A33AF} ©
O42 - Logiciel: Loadout Editor For ArmA2 Combined Operations & ACE 2 version 1.4 Update 4, - (.The [S.o.E] team.) [HKLM][64Bits] -- {9D374F73-F47B-4637-B1D2-75173CFBF6B3}_is1
O42 - Logiciel: Angry Birds Seasons - (.Rovio.) [HKLM][64Bits] -- {9E4F7DD0-C596-4501-AE16-77F18F7EE694} ©
O42 - Logiciel: MySQL Connector J - (.Oracle Corporation.) [HKLM][64Bits] -- {9EC952A0-A070-4309-A371-35D9A5B8AFB5} ©
O42 - Logiciel: Angry Birds Rio - (.Rovio.) [HKLM][64Bits] -- {A409B55C-DD9B-4157-86D7-FD6F4F0F2C1A} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Crystal Reports Basic for Visual Studio 2008 - (.Business Objects.) [HKLM][64Bits] -- {AA467959-A1D6-4F45-90CD-11DC57733F32} ©
O42 - Logiciel: Microsoft Document Explorer 2008 Language Pack - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {AACA7728-BE87-3D11-8A3F-773664BFCF1B} ©
O42 - Logiciel: JavaFX Scene Builder 1.1 - (.Oracle.) [HKLM][64Bits] -- {AB468309-88EB-4250-BFEA-45479091102B} ©
O42 - Logiciel: Adobe Reader XI (11.0.09) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} ©
O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1} ©
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} ©
O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} ©
O42 - Logiciel: ZDServer - (.ZTE Corporation.) [HKLM][64Bits] -- {C8197F5F-E0DC-44f1-8AF2-1AA5A84F695D}
O42 - Logiciel: Ashampoo Snap 6 v.6.0.10 - (.Ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- {C92AB6F1-770F-EA32-6CF7-8A0792FA1A4B}_is1
O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6} ©
O42 - Logiciel: Windows Mobile 5.0 SDK R2 for Smartphone - (.Microsoft Corporation.) [HKLM][64Bits] -- {CCFA733C-2F56-4E8C-90B4-B38807400B7A} ©
O42 - Logiciel: openElement 1.44 R5 - (.openElement.) [HKLM][64Bits] -- {CD08AF82-89EF-49D4-98AA-A4E50B16164C}
O42 - Logiciel: Age of Empires 3 complete version 1.14 - (.vol1.) [HKLM][64Bits] -- {D5D9F4B5-7CCE-458D-9ECA-FE9EFD7D607C}_is1
O42 - Logiciel: Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {D60023FA-3DF1-4537-93DD-13024CC4E366} ©
O42 - Logiciel: Hostless Dim@Net - (.ZTE Corporation.) [HKLM][64Bits] -- {E5A51591-76A6-46B3-84EF-7FA52A49D052}
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: RealUpgrade 1.0 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {F4F4F84E-804F-4E9A-84D7-C34283F0088F}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: MySQL Tools for 5.0 - (.MySQL AB, Sun Microsystems, Inc..) [HKLM][64Bits] -- {FCB10DE3-E190-4A7E-B06A-FAC61567ABFC}
O42 - Logiciel: Sybase PowerAMC 11.1 Evaluation - (...) [HKLM][64Bits] -- {FE492F35-7EE6-4DA5-BF68-56A9FC64A4E2}
O42 - Logiciel: VC Runtimes MSI - (.Microsoft.) [HKLM][64Bits] -- {FF29527A-44CD-3422-945E-981A13584000} ©
O42 - Logiciel: WindowsApplication1 - (.Microsoft.) [HKCU][64Bits] -- 1c2e603b0799b839 ©
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox ©
O42 - Logiciel: WindowsApplication1 - (.Microsoft.) [HKCU][64Bits] -- f322e3e10f271d98 ©
O42 - Logiciel: Download Balance - (.Mart Download corp.) [HKCU][64Bits] -- {9563BC59-9556-4805-8CD4-886781779D8D}

---\\ HKCU & HKLM Software Keys (342) - 38s
HKLM\SOFTWARE\Wow6432Node\Activision
HKLM\SOFTWARE\Wow6432Node\Adblock Pro
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\ADSECURITY
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Ahead
HKLM\SOFTWARE\Wow6432Node\AirConflictsSecretWars
HKLM\SOFTWARE\Wow6432Node\AirConflictsSecretWarsGUID
HKLM\SOFTWARE\Wow6432Node\AMD
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Ashampoo
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\AUTODATA
HKLM\SOFTWARE\Wow6432Node\Autodata Limited
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Avg
HKLM\SOFTWARE\Wow6432Node\Avid
HKLM\SOFTWARE\Wow6432Node\AviSynth
HKLM\SOFTWARE\Wow6432Node\AVS4YOU
HKLM\SOFTWARE\Wow6432Node\Axialis
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\Baidu
HKLM\SOFTWARE\Wow6432Node\BcmSetup
HKLM\SOFTWARE\Wow6432Node\BIStudio
HKLM\SOFTWARE\Wow6432Node\Bohemia Interactive
HKLM\SOFTWARE\Wow6432Node\Bohemia Interactive Studio
HKLM\SOFTWARE\Wow6432Node\BSProductManage
HKLM\SOFTWARE\Wow6432Node\Business Objects
HKLM\SOFTWARE\Wow6432Node\C07ft5Y
HKLM\SOFTWARE\Wow6432Node\Caphyon
HKLM\SOFTWARE\Wow6432Node\Cauldron
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\CheatBook
HKLM\SOFTWARE\Wow6432Node\CheckPoint
HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\cmcm
HKLM\SOFTWARE\Wow6432Node\Cucusoft
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Cygwin
HKLM\SOFTWARE\Wow6432Node\Danger Close Games
HKLM\SOFTWARE\Wow6432Node\DICE
HKLM\SOFTWARE\Wow6432Node\Digital Integration
HKLM\SOFTWARE\Wow6432Node\DivX
HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\Eidos
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\Element Technologie
HKLM\SOFTWARE\Wow6432Node\FAST Multimedia
HKLM\SOFTWARE\Wow6432Node\FileZilla 3
HKLM\SOFTWARE\Wow6432Node\FileZilla Client
HKLM\SOFTWARE\Wow6432Node\FilmFanaticEI =>PUP.Optional.MindSpark
HKLM\SOFTWARE\Wow6432Node\Flash Memory Toolkit
HKLM\SOFTWARE\Wow6432Node\FlashPeak
HKLM\SOFTWARE\Wow6432Node\Foxit Software
HKLM\SOFTWARE\Wow6432Node\FreeArc
HKLM\SOFTWARE\Wow6432Node\Freemake
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\GOG.com
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Huawei technologies
HKLM\SOFTWARE\Wow6432Node\Icaros
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\IObit
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\LAV
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Micro Application
HKLM\SOFTWARE\Wow6432Node\Mooii
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\My Company Name
HKLM\SOFTWARE\Wow6432Node\MySQL AB
HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound
HKLM\SOFTWARE\Wow6432Node\Need for Speed Hot Pursuit 2
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\Netscape
HKLM\SOFTWARE\Wow6432Node\Newwara
HKLM\SOFTWARE\Wow6432Node\Nokia
HKLM\SOFTWARE\Wow6432Node\Notepad++
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenAL
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Oracle
HKLM\SOFTWARE\Wow6432Node\Oracle America, Inc.
HKLM\SOFTWARE\Wow6432Node\Origin
HKLM\SOFTWARE\Wow6432Node\PC Connectivity Solution
HKLM\SOFTWARE\Wow6432Node\PCSuite
HKLM\SOFTWARE\Wow6432Node\Pegasus Imaging
HKLM\SOFTWARE\Wow6432Node\PegasusImaging
HKLM\SOFTWARE\Wow6432Node\Pinnacle Systems
HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\PowerISO
HKLM\SOFTWARE\Wow6432Node\PySoft
HKLM\SOFTWARE\Wow6432Node\RealNetworks
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\RichFX
HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited
HKLM\SOFTWARE\Wow6432Node\SavePass =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\SEGA
HKLM\SOFTWARE\Wow6432Node\ShiningMorning
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SourceTec
HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\SpeedBit
HKLM\SOFTWARE\Wow6432Node\SPlayer
HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\Sybase
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\Tensons
HKLM\SOFTWARE\Wow6432Node\Trymedia Systems =>PUP.Optional.Trymedia
HKLM\SOFTWARE\Wow6432Node\Ubi Soft
HKLM\SOFTWARE\Wow6432Node\Ubisoft
HKLM\SOFTWARE\Wow6432Node\Unreal Technology
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\VMware, Inc.
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WebToGo
HKLM\SOFTWARE\Wow6432Node\Windows
HKLM\SOFTWARE\Wow6432Node\WinHTTrack Website Copier
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\Xing Technology Corp.
HKLM\SOFTWARE\Wow6432Node\Even Balance
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\3D Driving-School
HKCU\SOFTWARE\AC3Filter
HKCU\SOFTWARE\ACE Compression Software
HKCU\SOFTWARE\Activision
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Akella
HKCU\SOFTWARE\Altium (Dream VCL)
HKCU\SOFTWARE\APN =>Toolbar.Ask
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Ashampoo
HKCU\SOFTWARE\Ask.com =>Toolbar.Ask
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Audacity
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Avg
HKCU\SOFTWARE\AVS4YOU
HKCU\SOFTWARE\Axialis
HKCU\SOFTWARE\baidu
HKCU\SOFTWARE\Baidu Security
HKCU\SOFTWARE\Battlefield 1942
HKCU\SOFTWARE\Battlefield Vietnam
HKCU\SOFTWARE\Besier 3D-Edutainment
HKCU\SOFTWARE\Bmupd
HKCU\SOFTWARE\Bohemia Interactive
HKCU\SOFTWARE\Bohemia Interactive Studio
HKCU\SOFTWARE\CameraMouse2013
HKCU\SOFTWARE\Camfrog
HKCU\SOFTWARE\Caphyon
HKCU\SOFTWARE\Caricature Software
HKCU\SOFTWARE\CDDB
HKCU\SOFTWARE\Cheat Engine
HKCU\SOFTWARE\CheckPoint
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\cmcm
HKCU\SOFTWARE\Code Sector
HKCU\SOFTWARE\Counter-Strike Source
HKCU\SOFTWARE\csvconverter
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Cygwin
HKCU\SOFTWARE\Dark Skull
HKCU\SOFTWARE\Datastead
HKCU\SOFTWARE\DAUM
HKCU\SOFTWARE\DivX
HKCU\SOFTWARE\DivXNetworks
HKCU\SOFTWARE\DownLite
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\DSS
HKCU\SOFTWARE\e2eSoft
HKCU\SOFTWARE\Eidos
HKCU\SOFTWARE\El Software Solutions
HKCU\SOFTWARE\elSoftware
HKCU\SOFTWARE\Epic Games
HKCU\SOFTWARE\EpicScale =>PUP.Optional.EpicScale
HKCU\SOFTWARE\ESSANET TECHNOLOGY sarl
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\FANiSO
HKCU\SOFTWARE\FlashPeak
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Freemake
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameHouse
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\Generateur Mot de Passe
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Helmsman
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IGA
HKCU\SOFTWARE\IGearSettings =>PUP.Optional.IGearSettings
HKCU\SOFTWARE\Illustrate
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\ispy
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\JustCause2
HKCU\SOFTWARE\KC Softwares
HKCU\SOFTWARE\Kegetys
HKCU\SOFTWARE\keyhole.com
HKCU\SOFTWARE\KGB Archiver
HKCU\SOFTWARE\LeaderTech
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\madshi
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Marseillesoft
HKCU\SOFTWARE\Massive Entertainment
HKCU\SOFTWARE\Mediachance
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\MegaCloud
HKCU\SOFTWARE\MiniTool Solution Ltd.
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MySQL AB
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Newwara
HKCU\SOFTWARE\Nokia
HKCU\SOFTWARE\Northcode Inc
HKCU\SOFTWARE\NWI
HKCU\SOFTWARE\o7RTBC1ROBKZCvWoU0xovKSG
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Odin Game Studio
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PC SOFT
HKCU\SOFTWARE\perforce
HKCU\SOFTWARE\Pinnacle Systems
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PowerISO
HKCU\SOFTWARE\PowerPack
HKCU\SOFTWARE\PSPad
HKCU\SOFTWARE\PySoft
HKCU\SOFTWARE\Raven Software
HKCU\SOFTWARE\RealNetworks
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Regsk
HKCU\SOFTWARE\Remedy Entertainment
HKCU\SOFTWARE\RLZer
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\Sakari Indie
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\ShiningMorning
HKCU\SOFTWARE\SIV
HKCU\SOFTWARE\Skunkstudios
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Softplicity
HKCU\SOFTWARE\SourceTec
HKCU\SOFTWARE\SPlayer
HKCU\SOFTWARE\summer games
HKCU\SOFTWARE\summergames
HKCU\SOFTWARE\Sybase
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\Tbccint =>PUP.Optional.Conduit
HKCU\SOFTWARE\Tbccint_HKLM =>PUP.Optional.Conduit
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\Tensons
HKCU\SOFTWARE\THETA AnIn
HKCU\SOFTWARE\TiznitInfo
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TurboPower
HKCU\SOFTWARE\TVideoGrabber
HKCU\SOFTWARE\txn
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\Ultracopier
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\WebToGo
HKCU\SOFTWARE\WinHTTrack Website Copier
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\Yahoo
HKCU\SOFTWARE\yuPlay
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\射手影音播放器
HKCU\SOFTWARE\로컬 응용 프로그램 마법사에서 생성된 응용 프로그램
HKCU\SOFTWARE\AppDataLow\ISWVolatile
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix
HKCU\SOFTWARE\AppDataLow\Toolbar
HKCU\SOFTWARE\AppDataLow\Software\AskToolbar =>Toolbar.Ask
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Newwara
HKCU\SOFTWARE\AppDataLow\Software\PriceGong =>PUP.Optional.PriceGong
HKCU\SOFTWARE\AppDataLow\Software\SavePass =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\AppDataLow\Software\Tbccint =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\TbccintSearchScopes =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\uTorrentControl_v6b

---\\ Contenu des dossiers Programmes (577) - 46s
O43 - CFD: 2015/08/04 23:41:43 - [0] D -- C:\Program Files (x86)\69dc8177-a574-4dff-8461-b3267b078dcf =>PUP.Optional.CrossRider
O43 - CFD: 2014/12/03 01:56:17 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2014/11/05 15:35:41 - [] D -- C:\Program Files (x86)\Age of Empires 3 complete
O43 - CFD: 2011/09/29 08:19:13 - [] D -- C:\Program Files (x86)\AMD APP
O43 - CFD: 2013/01/15 09:46:00 - [] D -- C:\Program Files (x86)\Apache Software Foundation
O43 - CFD: 2013/10/10 15:17:35 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2013/11/05 02:44:38 - [] D -- C:\Program Files (x86)\Arafasoft
O43 - CFD: 2013/11/05 03:34:07 - [] D -- C:\Program Files (x86)\Ashampoo
O43 - CFD: 2011/09/29 08:18:37 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 2014/04/21 23:00:13 - [] D -- C:\Program Files (x86)\Audacity
O43 - CFD: 2012/02/29 18:24:57 - [] D -- C:\Program Files (x86)\AVG
O43 - CFD: 2013/11/05 03:11:41 - [0] D -- C:\Program Files (x86)\AVS4YOU
O43 - CFD: 2015/05/21 13:26:38 - [] D -- C:\Program Files (x86)\baidu
O43 - CFD: 2015/08/26 16:57:53 - [0] D -- C:\Program Files (x86)\Black_Box
O43 - CFD: 2014/06/28 13:22:42 - [] D -- C:\Program Files (x86)\Bohemia Interactive
O43 - CFD: 2013/10/10 15:16:47 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 2013/04/02 21:18:00 - [] D -- C:\Program Files (x86)\Business Objects
O43 - CFD: 2013/06/08 02:01:33 - [] D -- C:\Program Files (x86)\Camera Mouse
O43 - CFD: 2014/09/16 16:24:34 - [] D -- C:\Program Files (x86)\Camersoft
O43 - CFD: 2013/04/02 20:50:37 - [] D -- C:\Program Files (x86)\CE Remote Tools
O43 - CFD: 2011/09/30 21:04:43 - [] D -- C:\Program Files (x86)\Cheatbook Database 2010
O43 - CFD: 2015/08/05 23:40:29 - [] D -- C:\Program Files (x86)\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider
O43 - CFD: 2011/09/29 08:19:38 - [] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 2014/12/29 03:06:24 - [] D -- C:\Program Files (x86)\cmcm
O43 - CFD: 2014/10/20 13:35:09 - [0] D -- C:\Program Files (x86)\Codemasters
O43 - CFD: 2015/08/25 05:42:22 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2014/03/07 01:20:10 - [0] D -- C:\Program Files (x86)\concept design
O43 - CFD: 2011/11/06 22:43:46 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2013/02/13 04:06:12 - [] D -- C:\Program Files (x86)\DreamCatcher
O43 - CFD: 2015/04/25 21:13:20 - [] D -- C:\Program Files (x86)\EA GAMES
O43 - CFD: 2013/12/05 23:54:53 - [] D -- C:\Program Files (x86)\EasyPHP-12.1
O43 - CFD: 2014/09/26 17:00:51 - [] D -- C:\Program Files (x86)\Electronic Arts
O43 - CFD: 2013/02/26 20:50:49 - [] D -- C:\Program Files (x86)\FastStone Capture
O43 - CFD: 2014/02/10 13:07:07 - [] D -- C:\Program Files (x86)\FileZilla FTP Client
O43 - CFD: 2011/12/04 17:09:46 - [] D -- C:\Program Files (x86)\FilmFanaticEI =>PUP.Optional.MindSpark
O43 - CFD: 2014/10/20 13:35:39 - [] D -- C:\Program Files (x86)\Folder Size
O43 - CFD: 2014/12/04 03:32:50 - [] D -- C:\Program Files (x86)\Foxit Software
O43 - CFD: 2012/11/26 14:09:42 - [] D -- C:\Program Files (x86)\Free PDF to Word Doc Converter
O43 - CFD: 2012/02/21 21:23:28 - [] D -- C:\Program Files (x86)\Free Stuff
O43 - CFD: 2013/08/05 02:09:19 - [] D -- C:\Program Files (x86)\FreeArc
O43 - CFD: 2011/09/30 16:19:16 - [] D -- C:\Program Files (x86)\FreeTime
O43 - CFD: 2015/08/08 13:19:08 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/08/04 23:38:11 - [] D -- C:\Program Files (x86)\GUPlayer =>PUP.Optional.GUPlayer
O43 - CFD: 2014/12/25 17:24:16 - [] D -- C:\Program Files (x86)\Hostless Modem
O43 - CFD: 2013/04/02 20:54:51 - [] D -- C:\Program Files (x86)\HTML Help Workshop
O43 - CFD: 2015/08/26 17:02:16 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2011/09/29 09:02:46 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2013/08/07 06:02:18 - [] D -- C:\Program Files (x86)\Intelore
O43 - CFD: 2014/05/16 13:27:32 - [] D -- C:\Program Files (x86)\Internet Download Manager
O43 - CFD: 2012/03/03 19:06:56 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2014/04/08 16:48:11 - [] D -- C:\Program Files (x86)\InternetEverywhere
O43 - CFD: 2015/06/10 17:42:27 - [] D -- C:\Program Files (x86)\IObit
O43 - CFD: 2014/06/17 18:55:03 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2014/01/08 00:26:00 - [] D -- C:\Program Files (x86)\Java Code Export
O43 - CFD: 2013/11/05 03:29:59 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 2014/01/31 17:28:25 - [0] D -- C:\Program Files (x86)\KAPITALSIN
O43 - CFD: 2012/06/27 15:36:51 - [0] D -- C:\Program Files (x86)\KC Softwares
O43 - CFD: 2013/09/23 21:30:59 - [] D -- C:\Program Files (x86)\Kuma Games BETA
O43 - CFD: 2014/01/14 02:10:46 - [] D -- C:\Program Files (x86)\Launch4j
O43 - CFD: 2015/08/03 15:28:38 - [] D -- C:\Program Files (x86)\LEA
O43 - CFD: 2011/11/19 18:04:33 - [] D -- C:\Program Files (x86)\Learning Essentials
O43 - CFD: 2015/04/19 23:11:21 - [] D -- C:\Program Files (x86)\Macromedia
O43 - CFD: 2013/10/25 12:09:32 - [] D -- C:\Program Files (x86)\Manhunter
O43 - CFD: 2014/07/12 17:58:15 - [] D -- C:\Program Files (x86)\Micro Application
O43 - CFD: 2013/10/24 19:51:11 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2013/04/02 21:11:12 - [] D -- C:\Program Files (x86)\Microsoft Device Emulator
O43 - CFD: 2014/01/31 17:31:19 - [] D -- C:\Program Files (x86)\Microsoft Etudes
O43 - CFD: 2014/03/10 12:47:19 - [0] D -- C:\Program Files (x86)\Microsoft Expression
O43 - CFD: 2014/09/18 16:03:28 - [0] D -- C:\Program Files (x86)\Microsoft Games
O43 - CFD: 2013/10/31 20:35:23 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2013/04/02 20:50:37 - [] D -- C:\Program Files (x86)\Microsoft SDKs
O43 - CFD: 2013/11/24 05:43:05 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 2013/04/02 21:09:11 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2013/10/31 20:03:28 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework
O43 - CFD: 2013/04/02 21:09:11 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services
O43 - CFD: 2014/05/31 14:38:44 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 10.0
O43 - CFD: 2013/10/16 19:33:18 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 2013/04/02 21:18:00 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 9.0
O43 - CFD: 2013/04/02 20:48:14 - [] D -- C:\Program Files (x86)\Microsoft Web Designer Tools
O43 - CFD: 2013/04/02 21:14:07 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/08/26 18:10:34 - [] D -- C:\Program Files (x86)\MiniLite =>PUP.Optional.AgentODR
O43 - CFD: 2014/01/12 13:16:07 - [] D -- C:\Program Files (x86)\Modern
O43 - CFD: 2012/06/26 01:30:23 - [] D -- C:\Program Files (x86)\Movie Maker 2.6
O43 - CFD: 2015/04/01 23:55:27 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2014/03/29 04:46:34 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2014/05/31 14:38:43 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2011/10/05 13:58:26 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 2014/01/10 23:36:52 - [] D -- C:\Program Files (x86)\MySQL
O43 - CFD: 2012/05/06 19:07:21 - [] D -- C:\Program Files (x86)\NCH Swift Sound
O43 - CFD: 2011/09/30 19:05:31 - [] D -- C:\Program Files (x86)\Nero
O43 - CFD: 2013/10/11 17:35:03 - [] D -- C:\Program Files (x86)\Newwara
O43 - CFD: 2012/03/03 20:49:01 - [] D -- C:\Program Files (x86)\Nokia
O43 - CFD: 2014/12/29 03:11:38 - [] D -- C:\Program Files (x86)\Notepad++
O43 - CFD: 2013/03/29 04:31:46 - [] D -- C:\Program Files (x86)\NovaLogic
O43 - CFD: 2014/04/10 20:31:09 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/01/12 19:00:00 - [] D -- C:\Program Files (x86)\OpenAL
O43 - CFD: 2014/03/24 11:42:44 - [] D -- C:\Program Files (x86)\openElement
O43 - CFD: 2014/05/14 20:22:18 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2013/12/22 02:20:13 - [] D -- C:\Program Files (x86)\Oracle
O43 - CFD: 2012/02/24 19:37:25 - [] D -- C:\Program Files (x86)\PC Connectivity Solution
O43 - CFD: 2014/12/05 20:13:04 - [] D -- C:\Program Files (x86)\Pinnacle
O43 - CFD: 2011/10/15 02:21:22 - [] D -- C:\Program Files (x86)\PowerISO
O43 - CFD: 2013/01/13 22:10:56 - [] D -- C:\Program Files (x86)\PSPad editor
O43 - CFD: 2014/09/17 20:48:20 - [0] D -- C:\Program Files (x86)\R.G. Games
O43 - CFD: 2015/01/12 20:27:29 - [0] D -- C:\Program Files (x86)\R.G. Mechanics
O43 - CFD: 2011/09/30 16:20:57 - [] D -- C:\Program Files (x86)\Real
O43 - CFD: 2011/10/01 23:31:03 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/06/24 16:08:22 - [] D -- C:\Program Files (x86)\Rovio
O43 - CFD: 2014/06/20 19:31:41 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2015/04/19 21:57:20 - [] D -- C:\Program Files (x86)\SavePass =>PUP.Optional.CrossRider
O43 - CFD: 2015/05/25 21:53:02 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2013/12/21 01:39:26 - [] D -- C:\Program Files (x86)\SPlayer
O43 - CFD: 2015/08/26 22:04:25 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2
O43 - CFD: 2012/09/03 02:57:52 - [] D -- C:\Program Files (x86)\Square Enix
O43 - CFD: 2015/03/17 13:21:55 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2013/10/29 20:06:53 - [] D -- C:\Program Files (x86)\Sybase
O43 - CFD: 2014/04/05 14:51:52 - [] D -- C:\Program Files (x86)\Tbccint =>PUP.Optional.Conduit
O43 - CFD: 2014/05/08 20:00:51 - [] D -- C:\Program Files (x86)\TeamViewer
O43 - CFD: 2012/03/23 23:41:37 - [0] D -- C:\Program Files (x86)\Tensons
O43 - CFD: 2012/11/26 14:52:07 - [] D -- C:\Program Files (x86)\Total PDF Converter
O43 - CFD: 2009/07/14 05:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2011/09/30 20:36:05 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2014/08/07 02:44:09 - [] D -- C:\Program Files (x86)\Wargame Red Dragon
O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2011/10/05 14:23:34 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2011/10/05 14:23:36 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2013/04/02 21:10:48 - [] D -- C:\Program Files (x86)\Windows Mobile 5.0 SDK R2
O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2009/07/14 06:32:40 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/12/02 02:34:41 - [] D -- C:\Program Files (x86)\WinHTTrack
O43 - CFD: 2013/03/28 14:46:43 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2013/10/05 17:06:54 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3D Driving-School
O43 - CFD: 2011/09/29 08:10:56 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/08/15 21:20:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACSW
O43 - CFD: 2015/05/01 13:41:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Activision Value
O43 - CFD: 2011/09/29 08:10:48 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/11/05 15:35:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Empires 3 complete
O43 - CFD: 2013/11/04 05:19:23 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arafasoft
O43 - CFD: 2013/11/05 03:34:33 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
O43 - CFD: 2015/07/02 22:44:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2014/09/11 18:00:58 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axialis Software
O43 - CFD: 2015/05/21 13:26:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser
O43 - CFD: 2014/06/28 13:24:09 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
O43 - CFD: 2014/12/02 17:47:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\buy-anabolic-steroids.com
O43 - CFD: 2013/06/08 02:01:38 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camera Mouse
O43 - CFD: 2014/09/16 16:24:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camersoft Studio
O43 - CFD: 2011/09/29 08:19:08 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
O43 - CFD: 2014/12/29 03:06:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clean Master
O43 - CFD: 2014/09/11 18:00:58 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CustomMapStrikeatAbuDhabi
O43 - CFD: 2011/11/06 22:43:49 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
O43 - CFD: 2014/09/16 05:14:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum
O43 - CFD: 2014/12/25 17:24:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dim@Net
O43 - CFD: 2015/07/31 17:29:11 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
O43 - CFD: 2013/12/05 20:01:12 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyPHP 12.1
O43 - CFD: 2013/06/10 16:25:55 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eidos Interactive
O43 - CFD: 2013/02/26 20:50:49 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture
O43 - CFD: 2014/02/10 13:07:03 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 2014/10/20 13:35:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Folder Size
O43 - CFD: 2014/12/04 03:33:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
O43 - CFD: 2012/11/26 14:09:42 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Doc Converter
O43 - CFD: 2012/02/21 21:23:28 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Stuff
O43 - CFD: 2013/08/05 02:09:07 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeArc
O43 - CFD: 2015/08/26 16:50:09 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/01/17 15:58:19 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gest-Stock- Magasin
O43 - CFD: 2015/08/08 13:19:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2014/05/11 02:31:06 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 2014/12/25 17:29:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hostless Dim@Net
O43 - CFD: 2013/11/29 17:51:48 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 2014/04/08 16:48:11 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Everywhere
O43 - CFD: 2014/01/07 23:41:01 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2014/01/08 00:26:00 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Code Export
O43 - CFD: 2014/09/11 18:00:58 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
O43 - CFD: 2013/12/22 01:21:33 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java(TM) ME Platform SDK 3.2
O43 - CFD: 2013/12/22 02:20:36 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JavaFX Scene Builder
O43 - CFD: 2013/11/05 03:30:09 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 2014/01/31 17:28:22 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KAPITALSIN
O43 - CFD: 2014/01/14 02:10:46 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch4j
O43 - CFD: 2015/03/02 23:04:42 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEA
O43 - CFD: 2011/11/19 18:04:37 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les Indispensables Éducation
O43 - CFD: 2015/04/19 23:13:12 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macromedia
O43 - CFD: 2009/07/14 05:57:09 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/07/12 18:00:18 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application
O43 - CFD: 2014/01/31 17:30:19 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Etudes
O43 - CFD: 2013/12/22 15:16:47 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2013/04/02 21:16:22 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005
O43 - CFD: 2013/11/23 15:57:08 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2008
O43 - CFD: 2014/05/31 14:41:02 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010 Express
O43 - CFD: 2013/04/02 21:23:38 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v6.0A
O43 - CFD: 2012/07/20 04:42:33 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MrBurns[Ger] Maps
O43 - CFD: 2014/01/10 23:37:06 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL
O43 - CFD: 2011/09/30 19:05:34 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 2014/01/04 15:32:40 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans
O43 - CFD: 2012/03/03 20:49:04 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
O43 - CFD: 2013/01/13 22:43:58 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 2014/03/24 11:43:30 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\openElement 1.44 R5
O43 - CFD: 2015/01/18 03:32:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 15
O43 - CFD: 2011/10/15 02:21:23 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
O43 - CFD: 2013/01/13 22:10:56 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPad editor
O43 - CFD: 2015/01/12 20:27:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
O43 - CFD: 2011/09/30 16:20:54 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real
O43 - CFD: 2015/06/24 16:08:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rovio
O43 - CFD: 2013/02/09 02:46:54 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RY's GAMES
O43 - CFD: 2013/12/22 15:16:46 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
O43 - CFD: 2014/02/16 21:28:50 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
O43 - CFD: 2014/07/19 03:34:57 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2013/12/21 01:39:24 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPlayer
O43 - CFD: 2014/04/08 16:47:54 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/10/29 20:10:25 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sybase
O43 - CFD: 2009/07/14 16:35:02 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/04/29 13:46:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy
O43 - CFD: 2012/11/26 14:52:08 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total PDF Converter
O43 - CFD: 2011/09/30 20:36:10 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2013/12/02 02:34:41 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack
O43 - CFD: 2013/03/28 03:17:02 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2013/10/12 14:16:26 - [] HD -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2012/01/14 00:34:15 - [0] HD -- C:\ProgramData\4Sync
O43 - CFD: 2014/12/03 01:59:46 - [] HD -- C:\ProgramData\Adobe
O43 - CFD: 2014/11/05 15:36:26 - [] D -- C:\ProgramData\Age of Empires 3
O43 - CFD: 2014/10/21 13:57:48 - [0] D -- C:\ProgramData\ALM
O43 - CFD: 2014/09/20 15:33:22 - [] D -- C:\ProgramData\Apache
O43 - CFD: 2013/10/10 15:17:26 - [] HD -- C:\ProgramData\Apple
O43 - CFD: 2013/10/10 15:19:18 - [] HD -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2013/11/05 03:34:33 - [] HD -- C:\ProgramData\Ashampoo
O43 - CFD: 2011/09/29 08:16:28 - [] HD -- C:\ProgramData\Atheros
O43 - CFD: 2011/09/29 08:31:29 - [] HD -- C:\ProgramData\ATI
O43 - CFD: 2015/07/01 16:09:16 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2013/11/05 03:08:24 - [] HD -- C:\ProgramData\AVS4YOU
O43 - CFD: 2011/10/01 13:28:27 - [0] HD -- C:\ProgramData\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/05/20 23:41:04 - [] HD -- C:\ProgramData\Baidu
O43 - CFD: 2013/03/24 01:15:49 - [] HD -- C:\ProgramData\BetterSoft =>PUP.Optional.Offerware
O43 - CFD: 2014/10/13 23:30:08 - [] D -- C:\ProgramData\Bohemia Interactive
O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2011/11/05 13:39:46 - [] HD -- C:\ProgramData\CheckPoint
O43 - CFD: 2014/12/29 03:06:40 - [] D -- C:\ProgramData\cmcm
O43 - CFD: 2012/08/21 14:18:02 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2015/08/26 18:03:09 - [] D -- C:\ProgramData\Cucusoft
O43 - CFD: 2012/11/09 19:45:40 - [] HD -- C:\ProgramData\CyberLink
O43 - CFD: 2014/03/13 20:07:31 - [] HD -- C:\ProgramData\DatacardService
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2014/03/13 08:13:13 - [] HD -- C:\ProgramData\Dim@net
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/09/26 17:23:40 - [] SHD -- C:\ProgramData\DSS
O43 - CFD: 2014/05/28 22:12:36 - [] HD -- C:\ProgramData\EA Core
O43 - CFD: 2014/05/28 22:12:34 - [] HD -- C:\ProgramData\Electronic Arts
O43 - CFD: 2014/03/24 11:42:44 - [] HD -- C:\ProgramData\Element Technologie
O43 - CFD: 2015/04/16 16:55:02 - [0] D -- C:\ProgramData\EpicScale =>PUP.Optional.EpicScale
O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2014/03/07 01:30:28 - [0] HD -- C:\ProgramData\Freemake
O43 - CFD: 2013/11/28 22:10:01 - [0] HD -- C:\ProgramData\IDM
O43 - CFD: 2014/08/05 14:10:31 - [0] HD -- C:\ProgramData\img
O43 - CFD: 2012/03/03 20:46:05 - [] HD -- C:\ProgramData\Installations
O43 - CFD: 2013/03/28 03:46:35 - [] HD -- C:\ProgramData\InstallMate =>PUP.Optional.Tarma
O43 - CFD: 2015/06/10 17:43:30 - [] D -- C:\ProgramData\IObit
O43 - CFD: 2015/08/26 18:11:36 - [] D -- C:\ProgramData\JWinManProJ
O43 - CFD: 2014/12/29 03:06:40 - [] D -- C:\ProgramData\Kingsoft
O43 - CFD: 2013/05/05 20:56:17 - [] HD -- C:\ProgramData\Macromedia
O43 - CFD: 2014/06/02 15:18:49 - [] HD -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/06/10 14:08:15 - [] D -- C:\ProgramData\Malwarebytes Anti-Exploit
O43 - CFD: 2011/10/01 13:11:16 - [] HD -- C:\ProgramData\McAfee
O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2014/07/12 21:19:15 - [] HD -- C:\ProgramData\Micro Application
O43 - CFD: 2015/08/26 22:04:24 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2013/12/22 15:29:31 - [] HD -- C:\ProgramData\Microsoft Help
O43 - CFD: 2014/01/22 02:58:47 - [] HD -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 2014/01/31 17:37:42 - [] HD -- C:\ProgramData\MindGems
O43 - CFD: 2014/04/03 20:49:14 - [] HD -- C:\ProgramData\MobileBrServ
O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2014/12/29 03:11:29 - [0] HD -- C:\ProgramData\Mozilla
O43 - CFD: 2013/02/28 17:03:10 - [] HD -- C:\ProgramData\NMap
O43 - CFD: 2014/01/25 22:37:11 - [] HD -- C:\ProgramData\OCS Inventory NG
O43 - CFD: 2012/03/14 19:42:46 - [] HD -- C:\ProgramData\Office Genuine Advantage
O43 - CFD: 2014/06/17 19:05:44 - [0] HD -- C:\ProgramData\Oracle
O43 - CFD: 2015/02/20 03:12:59 - [] HD -- C:\ProgramData\Origin
O43 - CFD: 2013/11/10 04:38:41 - [] HD -- C:\ProgramData\Passmark
O43 - CFD: 2012/04/24 21:12:25 - [] HD -- C:\ProgramData\PC Suite
O43 - CFD: 2014/09/11 18:05:47 - [] D -- C:\ProgramData\PC1Data
O43 - CFD: 2014/02/24 00:01:48 - [] HD -- C:\ProgramData\phpDesigner
O43 - CFD: 2015/01/18 03:23:13 - [] HD -- C:\ProgramData\Pinnacle
O43 - CFD: 2015/01/18 03:23:13 - [0] D -- C:\ProgramData\Pinnacle Studio Plus
O43 - CFD: 2014/06/06 15:10:03 - [] HD -- C:\ProgramData\Pinnacle Studio Ultimate
O43 - CFD: 2014/06/06 15:15:30 - [] HD -- C:\ProgramData\Pinnacle Studio Ultimate Collection
O43 - CFD: 2013/12/12 19:29:50 - [] HD -- C:\ProgramData\PowerAMC 15
O43 - CFD: 2013/04/02 20:58:38 - [] HD -- C:\ProgramData\PreEmptive Solutions
O43 - CFD: 2013/11/05 16:27:59 - [] HD -- C:\ProgramData\RAiN
O43 - CFD: 2011/10/22 19:23:46 - [] HD -- C:\ProgramData\Real
O43 - CFD: 2014/10/21 14:01:52 - [] HD -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 2013/01/27 02:32:24 - [] HD -- C:\ProgramData\RELOADED
O43 - CFD: 2013/12/02 02:20:52 - [] HD -- C:\ProgramData\Save Data
O43 - CFD: 2014/12/29 03:11:39 - [0] HD -- C:\ProgramData\Skype
O43 - CFD: 2013/03/28 03:46:32 - [] HD -- C:\ProgramData\SoftSafe
O43 - CFD: 2012/03/23 23:57:59 - [] HD -- C:\ProgramData\SpeedBit
O43 - CFD: 2015/08/26 22:04:12 - [] D -- C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/01/10 19:32:30 - [] HD -- C:\ProgramData\Steam
O43 - CFD: 2015/01/18 03:23:13 - [] D -- C:\ProgramData\Studio 15
O43 - CFD: 2013/11/25 19:54:08 - [] HD -- C:\ProgramData\Sun
O43 - CFD: 2014/04/05 14:51:48 - [] HD -- C:\ProgramData\Tbccint =>PUP.Optional.Conduit
O43 - CFD: 2013/01/31 23:30:52 - [] AHD -- C:\ProgramData\Temp
O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2012/07/11 04:13:26 - [] HD -- C:\ProgramData\Trymedia =>PUP.Optional.Trymedia
O43 - CFD: 2015/08/26 20:34:35 - [0] D -- C:\ProgramData\update
O43 - CFD: 2012/11/24 18:46:20 - [] HD -- C:\ProgramData\VMware
O43 - CFD: 2012/11/06 21:39:51 - [] HD -- C:\ProgramData\Web Installer
O43 - CFD: 2011/10/22 21:53:26 - [0] HD -- C:\ProgramData\WebacamSurveyor
O43 - CFD: 2014/12/25 17:24:19 - [] D -- C:\ProgramData\ZDSupport
O43 - CFD: 2014/12/03 01:56:47 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2013/10/12 14:16:25 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2011/09/29 08:19:11 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 2013/11/05 03:11:42 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia
O43 - CFD: 2013/12/22 15:08:56 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2014/02/24 23:41:06 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft
O43 - CFD: 2014/05/28 22:15:50 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 2011/12/21 02:35:43 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2011/09/29 09:02:47 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2014/01/07 23:41:50 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2013/05/05 20:58:03 - [] D -- C:\Program Files (x86)\Common Files\Macromedia
O43 - CFD: 2013/04/02 20:58:42 - [] D -- C:\Program Files (x86)\Common Files\Merge Modules
O43 - CFD: 2014/05/31 14:39:39 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2011/09/30 19:05:32 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 2012/03/03 20:49:01 - [] D -- C:\Program Files (x86)\Common Files\Nokia
O43 - CFD: 2012/03/03 20:49:03 - [] D -- C:\Program Files (x86)\Common Files\PCSuite
O43 - CFD: 2015/01/18 03:23:25 - [] D -- C:\Program Files (x86)\Common Files\Pegasus Imaging
O43 - CFD: 2014/06/06 15:11:49 - [] D -- C:\Program Files (x86)\Common Files\Pinnacle
O43 - CFD: 2011/09/30 16:21:01 - [] D -- C:\Program Files (x86)\Common Files\Real
O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2014/07/19 03:34:55 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2013/01/29 14:03:47 - [] D -- C:\Program Files (x86)\Common Files\SourceTec
O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2013/12/22 14:59:52 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2014/06/22 13:38:49 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 2011/09/30 16:20:52 - [] D -- C:\Program Files (x86)\Common Files\xing shared
O43 - CFD: 2015/01/18 03:23:13 - [] D -- C:\Program Files (x86)\Common Files\Yahoo!
O43 - CFD: 2012/09/06 19:55:26 - [0] SHD -- C:\Users\hp\AppData\Roaming\.#
O43 - CFD: 2014/12/02 18:22:40 - [] D -- C:\Users\hp\AppData\Roaming\Adobe
O43 - CFD: 2013/03/24 01:24:51 - [0] D -- C:\Users\hp\AppData\Roaming\Agile Web Solutions
O43 - CFD: 2012/08/31 00:39:59 - [] D -- C:\Users\hp\AppData\Roaming\Airport Control Simulator
O43 - CFD: 2015/06/10 17:42:30 - [] D -- C:\Users\hp\AppData\Roaming\Apple Computer
O43 - CFD: 2013/11/06 13:58:55 - [] D -- C:\Users\hp\AppData\Roaming\ArmA II Launcher
O43 - CFD: 2011/09/29 08:31:29 - [] D -- C:\Users\hp\AppData\Roaming\ATI
O43 - CFD: 2015/07/02 16:53:22 - [] D -- C:\Users\hp\AppData\Roaming\AVAST Software
O43 - CFD: 2013/11/05 03:08:24 - [] D -- C:\Users\hp\AppData\Roaming\AVS4YOU
O43 - CFD: 2012/08/23 14:15:45 - [] D -- C:\Users\hp\AppData\Roaming\Awem
O43 - CFD: 2011/10/01 13:28:27 - [] D -- C:\Users\hp\AppData\Roaming\Babylon =>PUP.Optional.Babylon
O43 - CFD: 2015/05/21 13:25:47 - [] D -- C:\Users\hp\AppData\Roaming\Baidu
O43 - CFD: 2013/11/10 05:03:11 - [] D -- C:\Users\hp\AppData\Roaming\CheckPoint
O43 - CFD: 2013/12/02 02:23:12 - [] D -- C:\Users\hp\AppData\Roaming\Complete Website Downloader
O43 - CFD: 2014/03/07 01:20:08 - [] D -- C:\Users\hp\AppData\Roaming\concept design
O43 - CFD: 2011/11/06 22:45:24 - [] D -- C:\Users\hp\AppData\Roaming\CyberLink
O43 - CFD: 2012/03/28 16:54:23 - [] D -- C:\Users\hp\AppData\Roaming\Dev-Cpp
O43 - CFD: 2015/08/26 20:31:15 - [] D -- C:\Users\hp\AppData\Roaming\DMCache
O43 - CFD: 2013/06/10 17:51:14 - [] D -- C:\Users\hp\AppData\Roaming\Doublefine
O43 - CFD: 2015/06/01 00:50:49 - [] D -- C:\Users\hp\AppData\Roaming\Dropbox
O43 - CFD: 2015/08/23 14:48:28 - [] D -- C:\Users\hp\AppData\Roaming\dvdcss
O43 - CFD: 2014/02/24 23:41:05 - [] D -- C:\Users\hp\AppData\Roaming\DVDVideoSoft
O43 - CFD: 2013/03/24 01:37:05 - [] D -- C:\Users\hp\AppData\Roaming\EurekaLog
O43 - CFD: 2011/12/04 17:08:27 - [] D -- C:\Users\hp\AppData\Roaming\FastStone
O43 - CFD: 2014/08/09 04:27:19 - [] D -- C:\Users\hp\AppData\Roaming\FileZilla
O43 - CFD: 2012/03/01 23:00:41 - [] D -- C:\Users\hp\AppData\Roaming\Foxit
O43 - CFD: 2014/12/13 00:06:13 - [] D -- C:\Users\hp\AppData\Roaming\Foxit Software
O43 - CFD: 2013/08/05 02:09:25 - [] D -- C:\Users\hp\AppData\Roaming\FreeArc
O43 - CFD: 2014/07/29 15:53:26 - [] D -- C:\Users\hp\AppData\Roaming\Gmail Notifier Plus
O43 - CFD: 2012/08/08 05:18:50 - [] D -- C:\Users\hp\AppData\Roaming\Groove Games
O43 - CFD: 2011/09/29 08:14:31 - [] D -- C:\Users\hp\AppData\Roaming\Identities
O43 - CFD: 2015/08/10 21:09:37 - [] D -- C:\Users\hp\AppData\Roaming\IDM
O43 - CFD: 2011/09/29 08:18:49 - [] D -- C:\Users\hp\AppData\Roaming\InstallShield
O43 - CFD: 2014/06/20 19:32:48 - [] D -- C:\Users\hp\AppData\Roaming\Intelli-studio
O43 - CFD: 2014/04/03 12:56:58 - [] D -- C:\Users\hp\AppData\Roaming\InternetEverywhere
O43 - CFD: 2015/06/10 17:42:25 - [] D -- C:\Users\hp\AppData\Roaming\IObit
O43 - CFD: 2013/06/12 20:13:54 - [] D -- C:\Users\hp\AppData\Roaming\isetbz
O43 - CFD: 2013/11/05 15:58:58 - [] D -- C:\Users\hp\AppData\Roaming\iSpy
O43 - CFD: 2015/08/26 18:10:18 - [] D -- C:\Users\hp\AppData\Roaming\istartsurf =>PUP.Optional.IsStart
O43 - CFD: 2013/12/22 02:21:06 - [] D -- C:\Users\hp\AppData\Roaming\JavaFX Scene Builder
O43 - CFD: 2012/06/27 15:35:13 - [] D -- C:\Users\hp\AppData\Roaming\KC Softwares
O43 - CFD: 2013/05/05 21:00:39 - [] D -- C:\Users\hp\AppData\Roaming\Macromedia
O43 - CFD: 2014/06/03 14:10:38 - [] D -- C:\Users\hp\AppData\Roaming\Malwarebytes
O43 - CFD: 2011/11/06 22:46:16 - [0] D -- C:\Users\hp\AppData\Roaming\ManyCam
O43 - CFD: 2014/09/15 16:47:07 - [] D -- C:\Users\hp\AppData\Roaming\Medal of Honor Warfighter
O43 - CFD: 2009/07/14 16:35:02 - [0] D -- C:\Users\hp\AppData\Roaming\Media Center Programs
O43 - CFD: 2014/11/07 03:42:53 - [] D -- C:\Users\hp\AppData\Roaming\Media Player Classic
O43 - CFD: 2012/11/07 13:59:46 - [0] D -- C:\Users\hp\AppData\Roaming\MegaCloud
O43 - CFD: 2012/11/06 21:51:15 - [0] D -- C:\Users\hp\AppData\Roaming\MegaCloudBackup
O43 - CFD: 2015/01/18 03:36:59 - [] SD -- C:\Users\hp\AppData\Roaming\Microsoft
O43 - CFD: 2013/12/03 21:52:07 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft Corporation
O43 - CFD: 2015/04/20 22:06:41 - [] D -- C:\Users\hp\AppData\Roaming\Mozilla
O43 - CFD: 2014/02/11 13:54:41 - [] D -- C:\Users\hp\AppData\Roaming\MySQL
O43 - CFD: 2011/10/01 22:31:08 - [] D -- C:\Users\hp\AppData\Roaming\Nero
O43 - CFD: 2014/01/04 15:47:55 - [] D -- C:\Users\hp\AppData\Roaming\NetBeans
O43 - CFD: 2015/08/26 18:04:06 - [] D -- C:\Users\hp\AppData\Roaming\NetGuard
O43 - CFD: 2012/02/24 20:19:15 - [] D -- C:\Users\hp\AppData\Roaming\Nokia
O43 - CFD: 2013/01/13 22:45:20 - [] D -- C:\Users\hp\AppData\Roaming\Notepad++
O43 - CFD: 2014/03/07 01:18:07 - [] D -- C:\Users\hp\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
O43 - CFD: 2014/03/24 11:44:24 - [] D -- C:\Users\hp\AppData\Roaming\openElement
O43 - CFD: 2013/01/29 19:41:54 - [0] D -- C:\Users\hp\AppData\Roaming\Opera
O43 - CFD: 2014/05/14 20:22:15 - [0] D -- C:\Users\hp\AppData\Roaming\Opera Software
O43 - CFD: 2012/02/26 20:32:26 - [] D -- C:\Users\hp\AppData\Roaming\PC Suite
O43 - CFD: 2013/10/25 15:38:07 - [] D -- C:\Users\hp\AppData\Roaming\PhotoScape
O43 - CFD: 2013/09/10 22:13:41 - [] D -- C:\Users\hp\AppData\Roaming\PixelPlanet
O43 - CFD: 2014/09/16 05:21:03 - [] D -- C:\Users\hp\AppData\Roaming\PotPlayerMini64
O43 - CFD: 2015/06/11 05:52:51 - [] D -- C:\Users\hp\AppData\Roaming\ProductData
O43 - CFD: 2013/01/13 22:16:23 - [] D -- C:\Users\hp\AppData\Roaming\PSpad
O43 - CFD: 2012/08/13 05:29:48 - [] D -- C:\Users\hp\AppData\Roaming\Real
O43 - CFD: 2015/06/24 16:09:07 - [] D -- C:\Users\hp\AppData\Roaming\Rovio
O43 - CFD: 2011/12/14 19:28:20 - [0] D -- C:\Users\hp\AppData\Roaming\Samsung
O43 - CFD: 2014/04/22 20:48:38 - [] RHD -- C:\Users\hp\AppData\Roaming\SecuROM
O43 - CFD: 2015/08/04 22:23:00 - [] D -- C:\Users\hp\AppData\Roaming\Skype
O43 - CFD: 2012/11/26 14:52:15 - [] D -- C:\Users\hp\AppData\Roaming\Softplicity
O43 - CFD: 2013/11/06 15:21:03 - [] D -- C:\Users\hp\AppData\Roaming\Spirited Machine
O43 - CFD: 2015/08/26 21:45:32 - [] D -- C:\Users\hp\AppData\Roaming\SPlayer
O43 - CFD: 2014/10/21 14:05:55 - [] D -- C:\Users\hp\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 2014/01/08 14:15:11 - [] D -- C:\Users\hp\AppData\Roaming\Sun
O43 - CFD: 2014/09/11 21:13:38 - [] D -- C:\Users\hp\AppData\Roaming\TeamViewer
O43 - CFD: 2013/11/07 20:14:15 - [] D -- C:\Users\hp\AppData\Roaming\Temp
O43 - CFD: 2015/04/30 22:15:53 - [] D -- C:\Users\hp\AppData\Roaming\TeraCopy
O43 - CFD: 2014/01/30 11:44:51 - [] D -- C:\Users\hp\AppData\Roaming\Thinstall
O43 - CFD: 2013/01/12 13:00:27 - [] D -- C:\Users\hp\AppData\Roaming\twd
O43 - CFD: 2015/08/26 22:03:24 - [0] D -- C:\Users\hp\AppData\Roaming\uTorrent
O43 - CFD: 2015/08/25 00:22:54 - [] D -- C:\Users\hp\AppData\Roaming\vlc
O43 - CFD: 2012/11/24 18:43:35 - [] D -- C:\Users\hp\AppData\Roaming\VMware
O43 - CFD: 2011/12/10 22:02:13 - [] D -- C:\Users\hp\AppData\Roaming\WebcamMax
O43 - CFD: 2012/08/07 17:21:26 - [] D -- C:\Users\hp\AppData\Roaming\webtogo
O43 - CFD: 2011/09/30 16:23:07 - [] D -- C:\Users\hp\AppData\Roaming\WinRAR
O43 - CFD: 2014/09/11 17:29:32 - [] D -- C:\Users\hp\AppData\Roaming\Wise Disk Cleaner
O43 - CFD: 2015/08/26 22:05:50 - [] D -- C:\Users\hp\AppData\Roaming\ZHP
O43 - CFD: 2014/10/02 03:21:25 - [] D -- C:\Users\hp\AppData\Local\2K Games
O43 - CFD: 2014/01/12 13:38:32 - [] D -- C:\Users\hp\AppData\Local\Activision
O43 - CFD: 2015/08/26 02:00:23 - [] D -- C:\Users\hp\AppData\Local\Adobe
O43 - CFD: 2014/09/20 15:43:30 - [] D -- C:\Users\hp\AppData\Local\Apache
O43 - CFD: 2011/10/05 00:34:02 - [] D -- C:\Users\hp\AppData\Local\APN
O43 - CFD: 2013/10/10 15:17:38 - [] D -- C:\Users\hp\AppData\Local\Apple
O43 - CFD: 2013/10/10 15:20:40 - [] D -- C:\Users\hp\AppData\Local\Apple Computer
O43 - CFD: 2011/09/29 08:14:06 - [0] SHD -- C:\Users\hp\AppData\Local\Application Data
O43 - CFD: 2012/05/06 19:01:08 - [] D -- C:\Users\hp\AppData\Local\Apps
O43 - CFD: 2013/11/10 00:24:11 - [] D -- C:\Users\hp\AppData\Local\ArmA 2 OA
O43 - CFD: 2015/08/24 13:51:33 - [] D -- C:\Users\hp\AppData\Local\ArmA 2 REINFORCEMENTS
O43 - CFD: 2014/10/19 22:48:57 - [] D -- C:\Users\hp\AppData\Local\Arma 3
O43 - CFD: 2011/09/29 08:31:29 - [] D -- C:\Users\hp\AppData\Local\ATI
O43 - CFD: 2013/05/05 21:38:51 - [] D -- C:\Users\hp\AppData\Local\Axialis
O43 - CFD: 2013/11/03 04:26:41 - [] D -- C:\Users\hp\AppData\Local\bitComposer
O43 - CFD: 2012/01/14 01:43:26 - [] D -- C:\Users\hp\AppData\Local\Chromium
O43 - CFD: 2015/08/26 21:55:50 - [] D -- C:\Users\hp\AppData\Local\CrashDumps
O43 - CFD: 2015/01/10 19:34:17 - [] D -- C:\Users\hp\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 2011/11/06 22:45:17 - [] D -- C:\Users\hp\AppData\Local\CyberLink
O43 - CFD: 2014/01/02 20:11:21 - [0] D -- C:\Users\hp\AppData\Local\Deployment
O43 - CFD: 2013/10/24 19:24:26 - [] D -- C:\Users\hp\AppData\Local\Diagnostics
O43 - CFD: 2015/08/05 23:43:11 - [] D -- C:\Users\hp\AppData\Local\Download Balance
O43 - CFD: 2015/02/28 00:36:49 - [] D -- C:\Users\hp\AppData\Local\Downloaded Installations
O43 - CFD: 2014/01/09 01:50:49 - [] D -- C:\Users\hp\AppData\Local\Eclipse
O43 - CFD: 2014/03/24 11:42:45 - [] D -- C:\Users\hp\AppData\Local\Element Technologie
O43 - CFD: 2011/10/02 00:00:31 - [] D -- C:\Users\hp\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2011/10/22 21:41:52 - [] D -- C:\Users\hp\AppData\Local\Facebook
O43 - CFD: 2012/07/13 01:59:45 - [] D -- C:\Users\hp\AppData\Local\FANiSO
O43 - CFD: 2015/01/18 00:02:30 - [] D -- C:\Users\hp\AppData\Local\Foxit Reader
O43 - CFD: 2014/03/07 01:26:28 - [] D -- C:\Users\hp\AppData\Local\Freemake Music Box
O43 - CFD: 2015/07/02 23:37:30 - [] D -- C:\Users\hp\AppData\Local\Google
O43 - CFD: 2011/09/29 08:14:06 - [0] SHD -- C:\Users\hp\AppData\Local\Historique
O43 - CFD: 2015/08/04 23:45:08 - [] D -- C:\Users\hp\AppData\Local\Image Beach
O43 - CFD: 2013/04/11 20:43:16 - [] D -- C:\Users\hp\AppData\Local\Incomedia
O43 - CFD: 2015/08/26 18:10:51 - [] D -- C:\Users\hp\AppData\Local\Installer =>PUP.Optional.InstallPedia
O43 - CFD: 2013/06/12 20:13:54 - [] D -- C:\Users\hp\AppData\Local\isetbz
O43 - CFD: 2013/03/31 00:18:57 - [] D -- C:\Users\hp\AppData\Local\Macromedia
O43 - CFD: 2011/11/06 22:46:33 - [] D -- C:\Users\hp\AppData\Local\MagicCamera
O43 - CFD: 2014/12/07 03:19:33 - [] D -- C:\Users\hp\AppData\Local\Microsoft
O43 - CFD: 2012/09/13 14:19:22 - [] D -- C:\Users\hp\AppData\Local\Microsoft Games
O43 - CFD: 2014/06/21 21:24:33 - [] D -- C:\Users\hp\AppData\Local\Microsoft Help
O43 - CFD: 2012/03/08 21:32:46 - [] D -- C:\Users\hp\AppData\Local\Microsoft_Corporation
O43 - CFD: 2014/08/09 04:26:52 - [0] DC -- C:\Users\hp\AppData\Local\MigWiz
O43 - CFD: 2015/05/20 22:38:45 - [] D -- C:\Users\hp\AppData\Local\MiniService
O43 - CFD: 2013/10/14 01:27:21 - [] D -- C:\Users\hp\AppData\Local\Mozilla
O43 - CFD: 2014/04/22 20:56:24 - [] D -- C:\Users\hp\AppData\Local\My Games
O43 - CFD: 2013/12/09 18:26:33 - [] D -- C:\Users\hp\AppData\Local\NetBeans
O43 - CFD: 2013/01/29 19:41:55 - [0] D -- C:\Users\hp\AppData\Local\Opera
O43 - CFD: 2014/05/14 20:22:15 - [0] D -- C:\Users\hp\AppData\Local\Opera Software
O43 - CFD: 2011/12/04 17:10:55 - [0] D -- C:\Users\hp\AppData\Local\PackageAware =>PUP.Optional.BearShare
O43 - CFD: 2013/11/10 04:39:12 - [] D -- C:\Users\hp\AppData\Local\PassMark
O43 - CFD: 2014/06/06 15:14:04 - [] D -- C:\Users\hp\AppData\Local\Pinnacle
O43 - CFD: 2014/09/29 16:26:24 - [] D -- C:\Users\hp\AppData\Local\PluginForChrome
O43 - CFD: 2013/01/17 11:37:46 - [] D -- C:\Users\hp\AppData\Local\Programs
O43 - CFD: 2014/12/03 23:21:35 - [] D -- C:\Users\hp\AppData\Local\PunkBuster
O43 - CFD: 2014/03/08 18:02:01 - [] D -- C:\Users\hp\AppData\Local\Quadriga Games
O43 - CFD: 2014/01/18 02:36:43 - [] D -- C:\Users\hp\AppData\Local\Rockstar Games
O43 - CFD: 2014/10/05 01:33:20 - [] D -- C:\Users\hp\AppData\Local\SKIDROW
O43 - CFD: 2014/07/19 03:35:47 - [] D -- C:\Users\hp\AppData\Local\Skype
O43 - CFD: 2013/01/29 13:49:08 - [] D -- C:\Users\hp\AppData\Local\Sothink
O43 - CFD: 2015/05/20 22:40:40 - [] D -- C:\Users\hp\AppData\Local\Spark
O43 - CFD: 2013/11/06 15:27:17 - [] D -- C:\Users\hp\AppData\Local\Spirited_Machine
O43 - CFD: 2013/03/18 20:52:56 - [] D -- C:\Users\hp\AppData\Local\storage
O43 - CFD: 2015/08/26 22:06:35 - [] D -- C:\Users\hp\AppData\Local\Temp
O43 - CFD: 2011/09/29 08:14:06 - [0] SHD -- C:\Users\hp\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/01/30 11:44:51 - [] D -- C:\Users\hp\AppData\Local\Thinstall
O43 - CFD: 2013/02/09 03:03:48 - [] D -- C:\Users\hp\AppData\Local\VirtualStore
O43 - CFD: 2014/08/05 14:04:37 - [] D -- C:\Users\hp\AppData\Local\WDSetup
O43 - CFD: 2014/08/17 04:14:19 - [] D -- C:\Users\hp\AppData\Local\William_Hart
O43 - CFD: 2014/04/26 01:01:08 - [0] D -- C:\Users\hp\AppData\Local\WMTools Downloaded Files
O43 - CFD: 2014/09/17 02:22:57 - [] D -- C:\Users\hp\AppData\Local\World in Conflict
O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\3D Driving-School
O43 - CFD: 2014/08/06 04:27:16 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2014/08/06 04:27:16 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Arafasoft
O43 - CFD: 2014/09/11 18:00:58 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ArmA II Launcher
O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
O43 - CFD: 2015/07/02 16:46:38 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus
O43 - CFD: 2014/09/11 18:00:58 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Axialis Software
O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black_Box
O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camera Mouse
O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
O43 - CFD: 2011/09/30 21:04:29 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cheatbook Database2010
O43 - CFD: 2014/09/11 18:00:58 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CustomMapStrikeatAbuDhabi
O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam
O43 - CFD: 2015/06/01 00:50:14 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 2012/07/17 03:19:57 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EA GAMES
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EasyPHP 12.1
O43 - CFD: 2012/05/18 17:22:37 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eidos
O43 - CFD: 2013/06/10 16:25:55 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eidos Interactive
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastStone Capture
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Folder Size
O43 - CFD: 2011/09/30 16:19:25 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Doc Converter
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Stuff
O43 - CFD: 2014/08/06 04:27:15 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeArc
O43 - CFD: 2015/04/18 21:39:09 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gest-Stock- Magasin
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 2014/08/06 04:27:15 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 2014/04/08 16:48:11 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Everywhere
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java Code Export
O43 - CFD: 2014/09/11 18:00:58 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java Development Kit
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java(TM) ME Platform SDK 3.2
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JavaFX Scene Builder
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KAPITALSIN
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Launch4j
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LEA
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Les Indispensables Éducation
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Macromedia
O43 - CFD: 2014/08/06 04:27:16 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2014/09/11 18:00:58 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Micro Application
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Etudes
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005
O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2008
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010 Express
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v6.0A
O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MrBurns[Ger] Maps
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MySQL
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetBeans
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\openElement 1.44 R5
O43 - CFD: 2014/01/18 03:23:40 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerISO
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PSPad editor
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\R.G. Catalyst
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Real
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RY's GAMES
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SharePoint
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SPlayer
O43 - CFD: 2014/12/10 19:18:15 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/04/29 13:44:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sybase
O43 - CFD: 2009/07/14 16:35:02 - [0] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total PDF Converter
O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/02/05 17:05:38 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WebcamMax
O43 - CFD: 2014/08/06 04:27:11 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinHTTrack
O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 13s
O45 - LFCP:[MD5.20248BF598B0388E2BA753A057FA8D11] 2015/08/26 18:10:28 A -- C:\Windows\Prefetch\MINILITE_V6.6.2.2771.EXE-7505B5DC.pf =>PUP.Optional.AgentODR
O45 - LFCP:[MD5.4F665898853DD4369017883C064B763F] 2015/08/26 18:03:55 A -- C:\Windows\Prefetch\SMT_ISTARTSURF.EXE-FCA23EC0.pf =>PUP.Optional.IsStart
O45 - LFCP:[MD5.617A10A5B3BF769262EAF2A74CFC7F08] 2015/08/26 18:10:26 A -- C:\Windows\Prefetch\WPM_V20.0.0.2295.EXE-7D4523F2.pf =>PUP.Optional.WpManager

---\\ Enumération des clés StartupReg (7) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
O53 - SMSR:HKLM\...\startupreg\AdobeCS6ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (...) -- C:\Program Files\CCleaner\CCleaner64.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Facebook Update [Key] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe
O53 - SMSR:HKLM\...\startupreg\Java(TM) ME Platform SDK 3.2 [Key] . (...) -- C:\Java_ME_platform_SDK_3.2\bin\device-manager.exe
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O53 - SMSR:HKLM\...\startupreg\WebcamMaxAutoRun [Key] . (...) -- C:\Program Files (x86)\WebcamMax\wcmmon.exe (.not file.)

---\\ Liste des pilotes du système (73) - 8s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [106576] ©
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [28752] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] ©
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] ©
O58 - SDL:2015/07/02 16:50:27 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [29168]
O58 - SDL:2015/07/02 16:50:27 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [89944] ©
O58 - SDL:2015/07/02 16:50:26 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] ©
O58 - SDL:2015/07/02 16:50:27 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [65736]
O58 - SDL:2015/07/02 16:50:10 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1047320] ©
O58 - SDL:2015/07/02 19:08:08 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [442264] ©
O58 - SDL:2015/07/02 16:50:27 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [137288] ©
O58 - SDL:2015/07/02 16:50:27 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [272248]
O58 - SDL:2011/07/28 23:23:16 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [9980416] ©
O58 - SDL:2011/07/28 21:54:10 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [309248] ©
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] ©
O58 - SDL:2011/09/29 08:18:47 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL664.SYS [4171328] ©
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] ©
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] ©
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] ©
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] ©
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] ©
O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmbox64.sys [27136] ©
O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmbx64.sys [19968] ©
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] ©
O58 - SDL:2015/02/18 01:27:59 A . (.Connectify - NDIS filter driver.) -- C:\Windows\System32\drivers\cnnctfy2.sys [31344]
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] ©
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] ©
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] ©
O58 - SDL:2009/07/14 02:47:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [77888] ©
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410688] ©
O58 - SDL:2013/11/28 01:24:18 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [175480] ©
O58 - SDL:2011/04/10 10:51:08 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [12223936] ©
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] ©
O58 - SDL:2010/10/15 00:28:18 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [317440] ©
O58 - SDL:2014/12/29 03:06:35 A . (.Kingsoft Corporation - Kingsoft KSAPI Module.) -- C:\Windows\System32\drivers\ksapi.sys [81768]
O58 - SDL:2014/12/29 03:06:36 A . (.Kingsoft Corporation - Kingsoft KSAPI Module.) -- C:\Windows\System32\drivers\ksapi64.sys [56680]
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] ©
O58 - SDL:2008/03/13 08:46:00 A . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture D.) -- C:\Windows\System32\drivers\ManyCam_x64.sys [27136]
O58 - SDL:2005/09/23 22:18:34 A . (.Pinnacle Systems GmbH - Pinnacle Marvin Discrete Bus Enumerator.) -- C:\Windows\System32\drivers\MarvinBus64.sys [261120] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] ©
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] ©
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] ©
O58 - SDL:2009/07/14 02:48:27 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [149056] ©
O58 - SDL:2009/07/14 02:45:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [167488] ©
O58 - SDL:2008/08/28 12:44:42 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfdx64.sys [25600] ©
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] ©
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] ©
O58 - SDL:2011/06/10 06:34:52 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [539240] ©
O58 - SDL:2011/09/19 15:32:46 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [338536] ©
O58 - SDL:2010/04/12 09:55:00 A . (.PowerISO Computing, Inc. - PowerISO Virtual Drive.) -- C:\Windows\System32\drivers\scdemu.sys [91568]
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] ©
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] ©
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] ©
O58 - SDL:2014/11/14 07:27:43 A . (.Ray Hinchliffe - System Information Viewer X64 Driver.) -- C:\Windows\System32\drivers\SIVX64.sys [157432]
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] ©
O58 - SDL:2014/12/01 10:18:40 A . (.Nanjing Tongxiang Network Technology Co.,LTD - TX WiFi NAT Driver.) -- C:\Windows\System32\drivers\txwifinat64.sys [35248]
O58 - SDL:2012/12/13 13:50:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] ©
O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerfltjx64.sys [9216] ©
O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerfltx64.sys [9216] ©
O58 - SDL:2011/02/03 15:31:44 A . (.e2eSoft - VCam WDM Driver.) -- C:\Windows\System32\drivers\VCam_WDM.sys [106424]
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] ©
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ©
O58 - SDL:2011/06/23 07:43:04 A . (.Windows (R) Win 7 DDK provider - WebcamMax Capture.) -- C:\Windows\System32\drivers\wcmvcam64.sys [1071032] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 106s
O61 - LFC: 2015/08/26 17:14:46 AT . (.CrowdStrike, Inc..) -- C:\Users\hp\Desktop\CrowdInspect\crowdinspect64.exe [252480]
O61 - LFC: 2015/08/24 07:51:46 A . (.TODO: .) -- C:\Users\hp\AppData\Roaming\istartsurf\UninstallManager.exe [374784] =>PUP.Optional.IsStart
O61 - LFC: 2015/08/26 18:10:29 A . (.Copyright (C) 2014.) -- C:\Users\hp\AppData\Local\Installer\Install_26110\DCytaiesmt_smtyc_setup.exe [1222640]
O61 - LFC: 2015/08/26 18:10:29 A . (.Copyright (C) 2014.) -- C:\Users\hp\AppData\Local\Installer\Install_1226\DCytaiesmt_smtyc_setup.exe [1222640]
O61 - LFC: 2015/08/25 17:36:47 A . (..) -- C:\Users\hp\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/08/26 18:24:09 A . (..) -- C:\Users\hp\AppData\Local\ATI\ACE\Manifest.Bin [29689]

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe

---\\ Menu de démarrage Internet (22) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe http://www.istartsurf.com/ =>PUP.Optional.IsStart
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.istartsurf.com/ ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\SlimBrowser\sbframe.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/ ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Internet Explorer\iexplore.ex http://www.istartsurf.com/ =>PUP.Optional.IsStart
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Opera\Opera.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\SlimBrowser\sbframe.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.)

---\\ Recherche d'infection sur les navigateurs (31) - 16s
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.newtab.url", "http://www.istartsurf.com/newtab/?type=nt&ts=1440608830&z=9f9617791469fa5fc4383bbg5zczee8qce0bdm2[...] =>PUP.Optional.IsStart
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.search.defaultenginename", "istartsurf"); =>PUP.Optional.IsStart
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.search.selectedEngine", "istartsurf"); =>PUP.Optional.IsStart
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.startup.homepage", "http://www.istartsurf.com/?type=hp&ts=1440608830&z=9f9617791469fa5fc4383bbg5zczee8qce0bdm2g[...] =>PUP.Optional.IsStart
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.BabylonToolbar.prtkDS", 0); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.BabylonToolbar.prtkHmpg", 0); =>PUP.Optional.Babylon
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealpl[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri [...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_regBundledWithSoftware.expiration[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_regBundledWithSoftware.value", "%[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.name", "SavePass 1.1"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.crossrider.bic", "1480c65851292b1979529e1f16369fd9"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.enabledAddons", "deskCutv2%40gmail.com:0.0.10,testpilot%40labs.mozilla.com:1.2.3,mozilla_cc%40internetdownlo[...] =>PUP.Optional.DeskCut
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.browser.startup.homepage", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.keyword.URL", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.scripts.1.domain-blacklist", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", ""); =>PUP.Optional.SweetIM
O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.searchguard.enable", ""); =>PUP.Optional.SweetIM
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Search the web (Babylon)) - http://search.babylon.com/ =>PUP.Optional.Babylon
O69 - SBI: SearchScopes [HKCU] {1D219222-B7ED-4699-B1AC-7CCCFF5AE37F} - (Search the web (Softonic)) - http://search.softonic.com/ =>PUP.Optional.Softonic
O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (Newwara Customized Web Search) - http://search.conduit.com/ =>PUP.Optional.Conduit
O69 - SBI: SearchScopes [HKCU] {BFDF3161-17FD-4113-8CA4-7798DB2A8F09} - (Ask Search) - http://websearch.ask.com/ =>Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {E0306B8F-8727-48A6-BD24-8CBAA42297E3} - (uTorrentControl_v6b Customized Web Search) - http://trovi.com/

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] ©
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [776192] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [845824] ©
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [676864] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [343552] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316416] ©
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [706560] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2418176] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [848384] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [369664] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [565760] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] ©
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [104960] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1114624] ©
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [208384] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] ©

---\\ Liste des exceptions du parefeu Windows (132) - 36s
O87 - FAEL: "TCP Query User{3FA19574-05E6-484E-BF33-46668502FD5E}E:\battlefield vietnam\bfvietnam.exe" [In-None-P6-TRUE] .(...) -- E:\battlefield vietnam\bfvietnam.exe (.not file.)
O87 - FAEL: "UDP Query User{C547552E-3369-4846-8EB3-FDC476665221}E:\battlefield vietnam\bfvietnam.exe" [In-None-P17-TRUE] .(...) -- E:\battlefield vietnam\bfvietnam.exe (.not file.)
O87 - FAEL: "TCP Query User{E0DA3856-0276-4D78-9D23-6E7A2AE9B43D}D:\game\battlefield vietnam\bfvietnam.exe" [In-None-P6-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam.exe (.not file.)
O87 - FAEL: "UDP Query User{AE49374D-2D99-4594-8D34-F643DB06C902}D:\game\battlefield vietnam\bfvietnam.exe" [In-None-P17-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam.exe (.not file.)
O87 - FAEL: "TCP Query User{E7AB3E0D-9E84-48C1-8DA5-99167280FEDC}C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe (.not file.)
O87 - FAEL: "UDP Query User{913D7E7C-B1B0-412D-9B07-138169A332C4}C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe (.not file.)
O87 - FAEL: "TCP Query User{E10C6C45-11EC-485D-B411-F01452D1C1AE}C:\vdp\vdp.exe" [In-None-P6-TRUE] .(...) -- C:\vdp\vdp.exe (.not file.)
O87 - FAEL: "UDP Query User{3CC9B5B4-1231-458F-BAC7-889A70019A1D}C:\vdp\vdp.exe" [In-None-P17-TRUE] .(...) -- C:\vdp\vdp.exe (.not file.)
O87 - FAEL: "TCP Query User{6F2C50C0-3800-47F4-BBB9-DC1C5E8DFBAC}D:\game\battlefield vietnam\bfvietnam_w32ded.exe" [In-None-P6-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam_w32ded.exe (.not file.)
O87 - FAEL: "UDP Query User{42000A0E-F088-4656-B134-A917A7EA8129}D:\game\battlefield vietnam\bfvietnam_w32ded.exe" [In-None-P17-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam_w32ded.exe (.not file.)
O87 - FAEL: "TCP Query User{2AEA52F7-1D9E-4D35-9077-72EDCDA0FCF5}C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe (.not file.)
O87 - FAEL: "UDP Query User{12CF78E0-D061-4ABB-8DED-5619A31B7346}C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe (.not file.)
O87 - FAEL: "TCP Query User{BFF0EAAB-4F64-41A6-A928-E845196CB744}C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe (.not file.)
O87 - FAEL: "UDP Query User{C17072A4-7347-4C22-9EB8-13B560A63C26}C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe (.not file.)
O87 - FAEL: "TCP Query User{195F17DC-8985-4AA6-9251-F5C4DAE2327A}D:\game\battlefield 2142\2142\bf2142.exe" [In-None-P6-TRUE] .(...) -- D:\game\battlefield 2142\2142\bf2142.exe (.not file.)
O87 - FAEL: "UDP Query User{440BB268-799F-47E3-8B75-2552265B6D08}D:\game\battlefield 2142\2142\bf2142.exe" [In-None-P17-TRUE] .(...) -- D:\game\battlefield 2142\2142\bf2142.exe (.not file.)
O87 - FAEL: "TCP Query User{2DF94DD0-A10F-4B57-98CA-0CFEBAE73119}D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe" [In-None-P6-TRUE] .(...) -- D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe (.not file.)
O87 - FAEL: "UDP Query User{C8E4548F-AD03-49F7-8904-8550A64A13F5}D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe" [In-None-P17-TRUE] .(...) -- D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe (.not file.)
O87 - FAEL: "TCP Query User{57AF99E2-D749-4E5A-85E2-5E1E4E3DBB37}C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe (.not file.)
O87 - FAEL: "UDP Query User{0A3854DE-1F65-4F9E-A07D-8FA05071D1D9}C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe (.not file.)
O87 - FAEL: "TCP Query User{C7D6C04F-41F1-4C9D-8976-2A43D2CE8158}C:\program files (x86)\arma - cold war assault\coldwarassault.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault.exe (.not file.)
O87 - FAEL: "UDP Query User{D3D2F4C6-1AB6-491D-A17D-7C07DDBD2D0D}C:\program files (x86)\arma - cold war assault\coldwarassault.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault.exe (.not file.)
O87 - FAEL: "TCP Query User{4F5DAB19-93A9-42F8-AF53-B2C7B1A0E3F6}C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe (.not file.)
O87 - FAEL: "UDP Query User{677E8D42-C198-4C3E-85E4-F483F939C062}C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe (.not file.)
O87 - FAEL: "TCP Query User{6C370242-5659-4443-A67D-0CB5C3183B1A}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (.not file.)
O87 - FAEL: "UDP Query User{A61EC470-BC77-473B-B718-444B9187109E}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (.not file.)
O87 - FAEL: "TCP Query User{F9616ACE-BC53-48F3-A91A-D8A41D78714F}D:\game\cs source\counter strike source 2010\hl2.exe" [In-None-P6-TRUE] .(...) -- D:\game\cs source\counter strike source 2010\hl2.exe (.not file.)
O87 - FAEL: "UDP Query User{2D41E8EC-1C31-411B-9C10-FD53BE04A22C}D:\game\cs source\counter strike source 2010\hl2.exe" [In-None-P17-TRUE] .(...) -- D:\game\cs source\counter strike source 2010\hl2.exe (.not file.)
O87 - FAEL: "TCP Query User{C2F6BBF3-46D7-405B-A6DF-F8A63AC952A6}C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe (.not file.)
O87 - FAEL: "UDP Query User{C1D574D2-2EF3-4637-917E-ACB8A7AA7D06}C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe (.not file.)
O87 - FAEL: "TCP Query User{01023CEA-966A-4920-BB00-D898B2518467}C:\program files (x86)\real\realplayer\realplay.exe" [In-None-P6-TRUE] .(.RealNetworks, Inc. - RealPlayer.) -- C:\program files (x86)\real\realplayer\realplay.exe
O87 - FAEL: "UDP Query User{48393D2A-A5D9-4B31-B621-DDAD4BFD21DA}C:\program files (x86)\real\realplayer\realplay.exe" [In-None-P17-TRUE] .(.RealNetworks, Inc. - RealPlayer.) -- C:\program files (x86)\real\realplayer\realplay.exe
O87 - FAEL: "TCP Query User{F0BEB52A-4B6D-49CE-80C7-743DDD7CA691}C:\program files (x86)\postal2stp\system\postal2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\postal2stp\system\postal2.exe (.not file.)
O87 - FAEL: "UDP Query User{45AD73B1-ADAE-4CE3-9267-54B0D9A703B4}C:\program files (x86)\postal2stp\system\postal2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\postal2stp\system\postal2.exe (.not file.)
O87 - FAEL: "{C5583276-7FCD-4DE0-8CE6-F9C0225419BA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>PUP.Optional.RelevantKnowledge
O87 - FAEL: "{DAB087ED-06DE-4DFC-8ECD-740E651D4FD6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>PUP.Optional.RelevantKnowledge
O87 - FAEL: "TCP Query User{FE1F0B39-0759-4E7C-B178-7C8CDA98935D}D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe" [In-None-P6-TRUE] .(...) -- D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe (.not file.)
O87 - FAEL: "UDP Query User{C428A85F-0496-4439-8625-E93D846E8829}D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe" [In-None-P17-TRUE] .(...) -- D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe (.not file.)
O87 - FAEL: "TCP Query User{A45B587C-5F4C-42EA-A5DB-513FDD77E5ED}C:\program files\codemasters\operationflashpoint\operationflashpoint.exe" [In-None-P6-TRUE] .(...) -- C:\program files\codemasters\operationflashpoint\operationflashpoint.exe (.not file.)
O87 - FAEL: "UDP Query User{B8CE7058-4118-49CE-A825-F8F3EFF5BBD4}C:\program files\codemasters\operationflashpoint\operationflashpoint.exe" [In-None-P17-TRUE] .(...) -- C:\program files\codemasters\operationflashpoint\operationflashpoint.exe (.not file.)
O87 - FAEL: "TCP Query User{B1144899-A077-4B5D-B84E-081A4764EA5D}D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe" [In-None-P6-TRUE] .(...) -- D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe (.not file.)
O87 - FAEL: "UDP Query User{350B51BE-8939-4AD2-94EE-B6820531AB2C}D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe" [In-None-P17-TRUE] .(...) -- D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe (.not file.)
O87 - FAEL: "TCP Query User{8020298E-F586-41B1-9C03-FD3CFBF81C2F}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "UDP Query User{B9494EDD-047E-46B7-9C24-AC83ED684C8F}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe
O87 - FAEL: "TCP Query User{EF5B9BE9-E9A1-4D80-8A92-FFDA48B93C98}C:\games\acsw\acsw.exe" [In-None-P6-TRUE] .(...) -- C:\games\acsw\acsw.exe (.not file.)
O87 - FAEL: "UDP Query User{24155968-4703-4031-86F6-14C782982FD0}C:\games\acsw\acsw.exe" [In-None-P17-TRUE] .(...) -- C:\games\acsw\acsw.exe (.not file.)
O87 - FAEL: "TCP Query User{9F9D967D-553E-48B5-A319-E32FA8A34815}C:\program files (x86)\srware iron\iron.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\srware iron\iron.exe (.not file.)
O87 - FAEL: "UDP Query User{9CCBF7BE-4E59-463E-B745-150F1B9115AD}C:\program files (x86)\srware iron\iron.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\srware iron\iron.exe (.not file.)
O87 - FAEL: "{3AE92957-B6AA-48D2-9483-5CE7124E7AF9}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\dfx2.exe (.not file.)
O87 - FAEL: "{EC4EB9A6-C9E5-4F4D-A3A2-E3023D0F5962}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\dfx2.exe (.not file.)
O87 - FAEL: "{93F2D64D-D433-46EE-8378-795DEC98A80C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\UPDATE.EXE (.not file.)
O87 - FAEL: "{BCA6F21D-11EE-42EE-95BD-B00EB6FF73DE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\UPDATE.EXE (.not file.)
O87 - FAEL: "TCP Query User{C91C5036-5F2D-47FC-A0C8-D149B835B6F4}C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe (.not file.)
O87 - FAEL: "UDP Query User{6DE8DACB-CA98-4177-AF55-4A4FCF7D8471}C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe (.not file.)
O87 - FAEL: "{B6956DBC-4610-4DD8-A804-D96F0B48F365}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe (.not file.)
O87 - FAEL: "{99CE5AB2-4BD3-4DB8-BF20-E82592A96A49}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe (.not file.)
O87 - FAEL: "{09133650-AD75-45C3-8E87-4D47E36A828A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Opera\opera.exe (.not file.)
O87 - FAEL: "{E72F0087-6D01-4705-9531-5991EB33F0A8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Opera\opera.exe (.not file.)
O87 - FAEL: "{701F1ABC-1D42-4571-85A4-A94593DC076E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\ma-config.com\x64\maconfservice.exe (.not file.)
O87 - FAEL: "{163F8E42-5E06-42FC-A216-3E4A01716904}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ma-config.com\x64\maconfservice.exe (.not file.)
O87 - FAEL: "TCP Query User{BF634750-C520-4782-B1F9-84812331E398}D:\game\setup games\25 to life\25 to life\setup\ttl.exe" [In-None-P6-TRUE] .(...) -- D:\game\setup games\25 to life\25 to life\setup\ttl.exe (.not file.)
O87 - FAEL: "UDP Query User{E6D1B861-181D-429F-AF1A-BDEE6C1231DA}D:\game\setup games\25 to life\25 to life\setup\ttl.exe" [In-None-P17-TRUE] .(...) -- D:\game\setup games\25 to life\25 to life\setup\ttl.exe (.not file.)
O87 - FAEL: "TCP Query User{78F5F245-E771-420C-9EB1-CDD065252A28}C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe (.not file.)
O87 - FAEL: "UDP Query User{587664D8-F429-4650-B3E5-75807C6A934E}C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe (.not file.)
O87 - FAEL: "{AF6F1AAD-5C6A-49DF-AEB5-1A4A50BD795B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (.not file.)
O87 - FAEL: "{A14FD2C1-CD35-4100-B5B5-DD39FBFDD291}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (.not file.)
O87 - FAEL: "TCP Query User{E2D4B223-EBA2-4CF2-B90B-DE21B7C0FC2B}C:\program files (x86)\hypersonic4\binaries\win32\udk.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\hypersonic4\binaries\win32\udk.exe (.not file.)
O87 - FAEL: "UDP Query User{F642669F-34BF-475E-9525-4A0CCBC4AA11}C:\program files (x86)\hypersonic4\binaries\win32\udk.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\hypersonic4\binaries\win32\udk.exe (.not file.)
O87 - FAEL: "TCP Query User{7AC92B16-D50F-47D2-8A0D-76066497311F}C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe (.not file.)
O87 - FAEL: "UDP Query User{51C56A4F-FAD2-4ED5-B351-D20CE91A4F94}C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe (.not file.)
O87 - FAEL: "TCP Query User{F3A91E82-1AA3-4FF1-825E-608ED6525E43}D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe" [In-None-P6-TRUE] .(...) -- D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe
O87 - FAEL: "UDP Query User{231C7666-AD2E-46D2-BE3D-C381AA02EDC4}D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe" [In-None-P17-TRUE] .(...) -- D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe
O87 - FAEL: "{1402BBE5-DB45-44F8-BB94-EECAFD1F1910}" [In-None-P6-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\Program Files (x86)\Bohemia Interactive\ArmA 2 REINFORCEMENTS\arma2RFT.exe
O87 - FAEL: "{46560F1B-DF7D-44E0-BE76-5C23D2C028E2}" [In-None-P17-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\Program Files (x86)\Bohemia Interactive\ArmA 2 REINFORCEMENTS\arma2RFT.exe
O87 - FAEL: "TCP Query User{4DD26206-C605-4E70-BA56-67D75A63A3C6}C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe (.not file.)
O87 - FAEL: "UDP Query User{C0A0671C-EA92-4D7D-813B-F425DAAC35A3}C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe (.not file.)
O87 - FAEL: "{C8214B93-9D14-4562-8FF0-397A0B6FBA22}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office15\outlook.exe (.not file.)
O87 - FAEL: "{BAD56A07-53ED-44F1-8A77-46D17E84757E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSnano\qemu-system-i386.exe (.not file.) =>HackTool.AutoKMS
O87 - FAEL: "{D07729B1-695B-4D31-A628-F11552595EE0}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSnano\qemu-system-i386.exe (.not file.) =>HackTool.AutoKMS
O87 - FAEL: "TCP Query User{CFCBCFDD-4ECC-496D-856C-F4E334619C8F}C:\program files (x86)\ispy\ispy\ispy.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ispy\ispy\ispy.exe (.not file.)
O87 - FAEL: "UDP Query User{BD24B96B-8512-4B2E-A566-00730C0E64E2}C:\program files (x86)\ispy\ispy\ispy.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ispy\ispy\ispy.exe (.not file.)
O87 - FAEL: "TCP Query User{4668AB79-0C6D-4AC3-989D-64FC1D4837BB}C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe (.not file.)
O87 - FAEL: "UDP Query User{47511CBF-B48A-428F-9244-7353A480DD1F}C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe (.not file.)
O87 - FAEL: "TCP Query User{12E08471-C3C0-4ACD-BD2E-05D8AE511485}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe (.not file.)
O87 - FAEL: "UDP Query User{C24EC213-903B-4066-A990-2CBF1693A044}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe (.not file.)
O87 - FAEL: "TCP Query User{F284F1DA-EE02-45AA-8137-7A853E7807C3}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe" [In-None-P6-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe
O87 - FAEL: "UDP Query User{1003CE3C-DF37-4D8B-B44C-DC26FC6A4734}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe" [In-None-P17-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe
O87 - FAEL: "TCP Query User{DA28948E-F77E-4E09-8EDE-365C8096CD9F}C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe (.not file.)
O87 - FAEL: "UDP Query User{7910EEC3-B779-44FF-B84E-E53751C4BF2B}C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe (.not file.)
O87 - FAEL: "TCP Query User{6A43D87B-403D-4613-A222-D9CF692EC72F}C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe" [In-None-P6-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe
O87 - FAEL: "UDP Query User{B1645A7E-5686-4787-AB90-C3913747B27D}C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe" [In-None-P17-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe
O87 - FAEL: "TCP Query User{5A6DFDB7-C754-4B94-BFC0-83C8EFE1AB7D}C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe" [In-None-P6-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe
O87 - FAEL: "UDP Query User{9EC45922-EF11-4047-A077-2DB70AFC377E}C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe" [In-None-P17-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe
O87 - FAEL: "TCP Query User{6AB59496-CADA-433C-A371-CCE941EF5823}C:\eclipse\eclipse.exe" [In-None-P6-TRUE] .(...) -- C:\eclipse\eclipse.exe (.not file.)
O87 - FAEL: "UDP Query User{3F6A84E4-4863-4583-8258-AD59B0F522A1}C:\eclipse\eclipse.exe" [In-None-P17-TRUE] .(...) -- C:\eclipse\eclipse.exe (.not file.)
O87 - FAEL: "TCP Query User{499AE615-5412-4C14-9695-2095F29DD080}C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe (.not file.)
O87 - FAEL: "UDP Query User{47B19262-FF53-4289-82D1-95DCAB86580B}C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe (.not file.)
O87 - FAEL: "TCP Query User{A029F66A-9921-4E50-A1D6-A00B9E018D5C}C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe (.not file.)
O87 - FAEL: "UDP Query User{7AF78072-CAD1-4FE7-B214-0862077F2C1A}C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe (.not file.)
O87 - FAEL: "TCP Query User{E697A4C1-B76E-46B3-8140-6F159A0B6439}C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe (.not file.)
O87 - FAEL: "UDP Query User{F9051D1B-6FCB-47D0-B3DD-F0C76ED7C215}C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe (.not file.)
O87 - FAEL: "TCP Query User{D07804F3-D18A-489E-88FA-35F876A9A196}C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe (.not file.)
O87 - FAEL: "UDP Query User{1F4D4FCB-E11F-4DEA-9C7C-7ED1B4C26A2D}C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe (.not file.)
O87 - FAEL: "TCP Query User{D4825827-5392-46EA-9094-BAAA41A85A83}C:\program files (x86)\sierra\swat 4\content\system\swat4.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\sierra\swat 4\content\system\swat4.exe (.not file.)
O87 - FAEL: "UDP Query User{14DBB5B2-D6C3-4955-8774-E6553C783F80}C:\program files (x86)\sierra\swat 4\content\system\swat4.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\sierra\swat 4\content\system\swat4.exe (.not file.)
O87 - FAEL: "TCP Query User{1CB4C6D3-20D7-4DC7-92AE-C5DC4BAA4A11}C:\program files (x86)\phpdesigner 8\phpdesigner.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\phpdesigner 8\phpdesigner.exe (.not file.)
O87 - FAEL: "UDP Query User{A95AF500-92E3-485B-B078-C341A3B6133E}C:\program files (x86)\phpdesigner 8\phpdesigner.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\phpdesigner 8\phpdesigner.exe (.not file.)
O87 - FAEL: "TCP Query User{34816B7D-A6AE-4A26-9C4A-9F5D5C641367}C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe (.not file.)
O87 - FAEL: "UDP Query User{DE6A9C42-BB43-4A52-A148-936F339DF046}C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe (.not file.)
O87 - FAEL: "{5A297B1A-639F-4DC1-9A7C-3B767B4F5980}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\Spark.exe (.not file.)
O87 - FAEL: "{A0AD174F-3E47-4CB3-BF46-2DFD558E5C2C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\Spark.exe (.not file.)
O87 - FAEL: "{9C7A96A5-BA8A-4FBE-B93B-9BB0B0D57D42}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\bdtray.exe (.not file.)
O87 - FAEL: "{16CA8686-CD41-4454-8716-6022DADA0704}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\bdtray.exe (.not file.)
O87 - FAEL: "TCP Query User{19439055-5AAA-4354-A9E3-04EA09461FD4}C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe (.not file.)
O87 - FAEL: "UDP Query User{02D1869E-E64A-47E8-A0A7-CEC7B2AA2D32}C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe (.not file.)
O87 - FAEL: "TCP Query User{41614EB6-5F00-4277-A628-D200ABD62551}D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe" [In-None-P6-TRUE] .(...) -- D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe (.not file.)
O87 - FAEL: "UDP Query User{5883E46E-FDBC-433D-BFDA-293B62D2558A}D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe" [In-None-P17-TRUE] .(...) -- D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe (.not file.)
O87 - FAEL: "TCP Query User{F21C3F4E-1A1A-40AD-8148-DE995337F680}D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe" [In-None-P6-TRUE] .(...) -- D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe (.not file.)
O87 - FAEL: "UDP Query User{7F73C7B3-47BA-469E-B292-5812B0D421B0}D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe" [In-None-P17-TRUE] .(...) -- D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe (.not file.)
O87 - FAEL: "TCP Query User{90FFC08B-222C-4D77-ADB1-D9DAD9386C7B}C:\program files (x86)\ea games\command and conquer generals\game.dat" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ea games\command and conquer generals\game.dat (.not file.)
O87 - FAEL: "UDP Query User{D7E1FD62-E57A-4F34-A005-F5EF375AB74C}C:\program files (x86)\ea games\command and conquer generals\game.dat" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ea games\command and conquer generals\game.dat (.not file.)
O87 - FAEL: "{5407D854-62A5-40A1-AF68-827F7349CF86}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{874CC636-A02C-4843-A4B9-F99E622AAB67}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe
O87 - FAEL: "{6CC28C6E-F7AE-4B01-A674-8F061370022A}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "{6640F816-A048-430C-9ED6-A8EF118316FE}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe
O87 - FAEL: "Daum PotPlayer(PotPlayerMini64.exe)" [In-None-P6-TRUE] .(.Daum Communications - PotPlayer.) -- C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe
O87 - FAEL: "{0EDD94E0-D5AA-4CEC-8507-3B9FC2154F94}" [In-None-P6-FALSE] .(.Daum Communications - PotPlayer.) -- C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe
O87 - FAEL: "TCP Query User{9CCC71D4-0C2B-4961-9162-80DD48D044BA}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe (.not file.)
O87 - FAEL: "UDP Query User{A3506BC9-3948-4541-9111-95EA09176AC5}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe (.not file.)
O87 - FAEL: "TCP Query User{1BD77C88-53F2-4A58-B1D1-E120544F5F5B}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe (.not file.)
O87 - FAEL: "UDP Query User{947467D9-2EA6-44C6-BD2C-2F581BAE5988}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe (.not file.)
O87 - FAEL: "TCP Query User{AA57C8A0-A181-466D-9479-8737AE9AD19B}C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe (.not file.)

---\\ Enumère les codes produits des logiciels (1) - 7s
O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- c:\program files (x86)\ask.com\fv_1342.ico =>Toolbar.AsktBar

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (26) - 64s

SR - Auto [2014/09/12 10:43:06] [ 64704] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe ©
SS - Demand [2015/08/13 17:27:14] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [2011/07/28 22:35:34] [ 204288] (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe ©
SR - Auto [2013/09/07 08:13:38] [ 55624] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe ©
SR - Auto [2015/07/02 16:50:19] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\avast\AvastSvc.exe ©
SR - Auto [2011/08/30 22:05:32] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe ©
SS - Disabled [2014/12/29 03:06:28] [ 315240] Clean Master Core Service (cmcore) . (.Kingsoft Corporation.) - c:\program files (x86)\cmcm\Clean Master\cmcore.exe
SR - Auto [2012/07/17 14:55:12] [ 44696] (CS_AutoUpdate) . (.Cucusoft, Inc..) - C:\Program Files\Cucusoft\AutoUpdate\AutoUpdateSrvc.exe
SR - Auto [2015/06/02 16:24:26] [ 244392] Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Software Inc..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
SS - Auto [2015/08/08 13:02:28] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [2015/08/08 13:02:28] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SR - Auto [2011/09/19 15:32:46] [ 2375168] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
SS - Demand [2004/10/22 03:24:18] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe ©
SR - Auto [2015/08/24 07:59:18] [ 132768] IHProtect Service (IHProtect Service) . (.MiniLite system.) - C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR
SS - Auto [2015/08/12 15:06:45] [ 2909472] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe ©
SR - Auto [2013/07/23 04:47:24] [ 239696] Mobile Broadband HL Service (Mobile Broadband HL Service) . (.Copyright (C) 2013.) - C:\ProgramData\MobileBrServ\mbbservice.exe
SS - Demand [2014/03/28 23:47:55] [ 119408] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe ©
SR - Demand [2010/06/14 15:07:14] [ 615936] ServiceLayer (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe ©
SS - Auto [2014/04/03 20:21:48] [ 315008] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SR - Auto [2015/06/17 14:57:18] [ 86840] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe
SS - Demand [2015/04/03 04:38:25] [ 1370424] Baidu Spark Updater (SparkUpdater) . (.Baidu.com, Inc..) - C:\Program Files (x86)\baidu\SparkUpdate\Sparkupdate.exe
SS - Demand [2010/02/19 13:37:14] [ 517096] (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe ©
SR - Auto [2014/04/25 10:56:12] [ 5024576] TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe ©
SR - Auto [2015/08/26 18:10:22] [ 707720] WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED.) - C:\ProgramData\JWinManProJ\WinManPro.exe =>PUP.Optional.WpManager
SR - Auto [2014/02/10 15:35:20] [ 427264] ZDServ (ZDServ) . (.Copyright (C) 2013.) - C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe

---\\ Recherche de clés de registre Tracing (4) - 8s
HKLM\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASAPI32 =>PUP.Optional.RegistryReviver
HKLM\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASMANCS =>PUP.Optional.RegistryReviver
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar

---\\ Scan Additionnel (79) - 0s
C:\ProgramData\JWinManProJ\WinManPro.exe =>PUP.Optional.WpManager
C:\Program Files (x86)\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\istartsurf.xml =>PUP.Optional.IsStart
C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo
C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
C:\Program Files (x86)\FilmFanaticEI\Installr\1.bin\NPpaEISb.dll =>PUP.Optional.MindSpark
HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR
HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AsktBar
HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon
HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\FilmFanaticEI =>PUP.Optional.MindSpark
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\SavePass =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\Wow6432Node\Trymedia Systems =>PUP.Optional.Trymedia
HKCU\SOFTWARE\APN =>Toolbar.Ask
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\Ask.com =>Toolbar.Ask
HKCU\SOFTWARE\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\EpicScale =>PUP.Optional.EpicScale
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\IGearSettings =>PUP.Optional.IGearSettings
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Tbccint =>PUP.Optional.Conduit
HKCU\SOFTWARE\Tbccint_HKLM =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix
HKCU\SOFTWARE\AppDataLow\Software\AskToolbar =>Toolbar.Ask
HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\PriceGong =>PUP.Optional.PriceGong
HKCU\SOFTWARE\AppDataLow\Software\SavePass =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar
HKCU\SOFTWARE\AppDataLow\Software\Tbccint =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow\Software\TbccintSearchScopes =>PUP.Optional.Conduit
C:\Program Files (x86)\69dc8177-a574-4dff-8461-b3267b078dcf =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider
C:\Program Files (x86)\FilmFanaticEI =>PUP.Optional.MindSpark
C:\Program Files (x86)\GUPlayer =>PUP.Optional.GUPlayer
C:\Program Files (x86)\MiniLite =>PUP.Optional.AgentODR
C:\Program Files (x86)\SavePass =>PUP.Optional.CrossRider
C:\Program Files (x86)\Tbccint =>PUP.Optional.Conduit
C:\ProgramData\Babylon =>PUP.Optional.Babylon
C:\ProgramData\BetterSoft =>PUP.Optional.Offerware
C:\ProgramData\EpicScale =>PUP.Optional.EpicScale
C:\ProgramData\InstallMate =>PUP.Optional.Tarma
C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
C:\ProgramData\Tbccint =>PUP.Optional.Conduit
C:\ProgramData\Trymedia =>PUP.Optional.Trymedia
C:\Users\hp\AppData\Roaming\Babylon =>PUP.Optional.Babylon
C:\Users\hp\AppData\Roaming\istartsurf =>PUP.Optional.IsStart
C:\Users\hp\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
C:\Users\hp\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\Users\hp\AppData\Local\Installer =>PUP.Optional.InstallPedia
C:\Users\hp\AppData\Local\PackageAware =>PUP.Optional.BearShare
C:\Windows\Prefetch\MINILITE_V6.6.2.2771.EXE-7505B5DC.pf =>PUP.Optional.AgentODR
C:\Windows\Prefetch\SMT_ISTARTSURF.EXE-FCA23EC0.pf =>PUP.Optional.IsStart
C:\Windows\Prefetch\WPM_V20.0.0.2295.EXE-7D4523F2.pf =>PUP.Optional.WpManager
C:\Users\hp\AppData\Roaming\istartsurf\UninstallManager.exe =>PUP.Optional.IsStart
HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF =>Toolbar.AsktBar
HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF =>Toolbar.AsktBar
HKLM64\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASAPI32 =>PUP.Optional.RegistryReviver
HKLM64\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASMANCS =>PUP.Optional.RegistryReviver
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar

---\\ Récapitulatif des éléments trouvées sur votre station (37) - 0s
http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart
http://www.nicolascoolman.fr/blog =>PUP.Optional.BDYahoo
http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab
http://www.nicolascoolman.fr/pup-mindspark/ =>PUP.Optional.MindSpark
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/blog =>PUP.Optional.uTorrentControl
http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS
http://www.nicolascoolman.fr/blog =>Toolbar.AsktBar
http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/pup-advancedsystemprotector/ =>PUP.Optional.AdvancedSystemProtector
http://www.nicolascoolman.fr/pup-mocaflix/ =>PUP.Optional.MocaFlix
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/adware-trymedia/ =>PUP.Optional.Trymedia
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/blog =>PUP.Optional.EpicScale
http://www.nicolascoolman.fr/blog =>PUP.Optional.IGearSettings
http://www.nicolascoolman.fr/adware-pricegong/ =>PUP.Optional.PriceGong
http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.GUPlayer
http://www.nicolascoolman.fr/pup-offerware/ =>PUP.Optional.Offerware
http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma
http://www.nicolascoolman.fr/adware-opencandy/ =>PUP.Optional.OpenCandy
http://www.nicolascoolman.fr/blog =>.Superfluous.CrashReports
http://www.nicolascoolman.fr/adware-installpedia/ =>PUP.Optional.InstallPedia
http://www.nicolascoolman.fr/pup-bearshare/ =>PUP.Optional.BearShare
http://www.nicolascoolman.fr/blog =>PUP.Optional.Monetization
http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut
http://www.nicolascoolman.fr/pup-sweetim/ =>PUP.Optional.SweetIM
http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic
http://www.nicolascoolman.fr/adware-relevantknowledge/ =>PUP.Optional.RelevantKnowledge
http://www.nicolascoolman.fr/blog =>PUP.Optional.RegistryReviver
http://www.nicolascoolman.fr/blog =>Toolbar.AskBar

~ End of the scan, 42775 items in 479 seconds (1872)(0)()

Publicité


Signaler le contenu de ce document

Publicité