cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.17.120 Par Nicolas Coolman (2015/08/17)
~ Démarré par Nono (Administrator) (2015/08/18 15:12:34)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Nono\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Nono\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1 Pro, 64-bit (Build 9600)

---\\ Navigateurs Internet (3) - 1s
GCIE: Google Chrome v44.0.2403.155
MFIE: Mozilla Firefox 33.1 (x86 fr) v33.1
MSIE: Internet Explorer v11.0.9600.17937

---\\ Informations sur les produits Windows (9) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_COA_NSLP channel
Windows ID Activation : OK
~ Windows Partial Key : C7GBQ
Windows License : OK
~ Windows Remaining Initializations Number : 1000
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 2s
Malwarebytes Anti-Malware version 2.1.8.1057
Windows Defender W81 (Activate)

---\\ Surveillance de Logiciels (1) - 2s
Adobe Flash Player 11 Plugin

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 16 Model 6 Stepping 2, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4190.408 MB (53% free)
~ System Restore: Activé (Enable)
~ System drive C: has 101 GB free of 290 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: NOELLIE
~ User Name: Nono
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 101 GB free of 290 GB (System)
~ Drive D: has 2 GB free of 14 GB
~ Drive E: has 0 GB free of 0 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 3s
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2501368]
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [54784]
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [145920]
[MD5.C555B5C8142844DED9E3BD94E6313000] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2427904]
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [572416]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [447488]
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [19456]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [134144]
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [76800]
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [108544]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [142848]
[MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\Windows\System32\drivers\MRxSmb.sys [401408]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [282624]
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [2025792]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [94208]
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [120832]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\Windows\System32\drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [107520]
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [310080]

---\\ Processus lancés (30) - 3s
[MD5.D45D3540C5AE2A48C6112DF03F06F374] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [238080] [PID.872]
[MD5.7595D53EE8E8B0BAA9A2DDDE867EBB0C] - (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\stacsv64.exe [247808] [PID.572]
[MD5.266AC092CE06722C9F9DFFE448F64AD8] - (...) -- C:\Windows\system32\Hpservice.exe [22528] [PID.1104]
[MD5.391C7D656EA83807DFB7B596E27B82CD] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984] [PID.1496]
[MD5.DF2D5FB7E9964C7E626ABE86ADA8C108] - (.Hewlett-Packard Company - SolutionsFrameworkService.) -- C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [47416] [PID.1772]
[MD5.C5E4602D85029C666A42890A3B2DFA45] - (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe [140936] [PID.1856]
[MD5.9983EDB70996D25AC22B15C826F2A7D0] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [2818896] [PID.1892]
[MD5.E99CD4524662A2DA7C73372C626669D8] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [5261584] [PID.2080]
[MD5.A3EDF2CEB34822F8F57A3F81F1D675F2] - (.RealVNC Ltd - VNC® Server.) -- C:\Program Files\RealVNC\VNC Server\vncserver.exe [4716424] [PID.2124]
[MD5.54FB3B0B29F76E839C648D2F5983A22C] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe [245576] [PID.2500]
[MD5.92D840650F95EB60659952AEECAFCE85] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe [305992] [PID.2912]
[MD5.3B3440BFAD410EC1EC19FC4CB5C60BA2] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [514048] [PID.4400]
[MD5.A3EDF2CEB34822F8F57A3F81F1D675F2] - (.RealVNC Ltd - VNC® Server.) -- C:\Program Files\RealVNC\VNC Server\vncserver.exe [4716424] [PID.4884]
[MD5.FF402950220A952E45A18AC84382918B] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe [14453520] [PID.3108]
[MD5.BB2A2652A8B78628E155B0D7A22D7598] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe [229648] [PID.4468]
[MD5.C4E32635D51CB9CCAE5E960ACAF19344] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe [264464] [PID.2384]
[MD5.A3EDF2CEB34822F8F57A3F81F1D675F2] - (.RealVNC Ltd - VNC® Server.) -- C:\Program Files\RealVNC\VNC Server\vncserver.exe [4716424] [PID.2052]
[MD5.4076E418CD3EB0E09FFBCD828C35CE26] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288] [PID.3588]
[MD5.BD0EA5C8A4EF518C46E05F99908A56CE] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [121640] [PID.2036]
[MD5.05F4E4075144C07D6DD11EF0035DB65B] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [53288576] [PID.2556]
[MD5.4FEF676192F096458390066B27704090] - (.Orange-France - Le Cloud d'Orange - Transfert de fichiers.) -- C:\Users\Nono\AppData\Local\Le Cloud Orange\omclient.exe [1463296] [PID.3148]
[MD5.ECDF500485D7E9E6252260993AE70E70] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1282632] [PID.5040]
[MD5.6B53177248AC5327FFB5CB2D5C500C94] - (.CANON INC. - Canon IJ Network Scanner Selector EX.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [453736] [PID.4028]
[MD5.082EB783973B14187B01A22226E0AE04] - (.CANON INC. - Canon Quick Menu Updater.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE [1088088] [PID.5472]
[MD5.1042EFC39A951A8978BB67C0A9E2E568] - (.CANON INC. - Canon Quick Menu Image Display.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.EXE [989800] [PID.5480]
[MD5.1E09DFA4048196C9D3CC40C485A39422] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.5872]
[MD5.FD2502770A29FEAC32648C42AC3F3668] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299008] [PID.5964]
[MD5.1390DE92E86D8EB286BCA30E9DFAD05D] - (...) -- C:\IQIYI Video\Common\Mobile\AndroidService.exe [728168] [PID.2724] =>PUP.Optional.IQIYIVideo
[MD5.D96E8743012C5A9E6B1E72964ACABEE8] - (.Adobe Systems Incorporated - Adobe® Flash® Player Utility.) -- C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe [862184] [PID.1476]
[MD5.8BBBDE2F8710EA78AE249C508F96F498] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Nono\Desktop\ZHPDiag3.exe [1902592] [PID.5084]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (14) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://r1---sn-hgn7zn7e.gvt1.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://r15---sn-hgn7zn76.gvt1.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://r20---sn-hgn7zn7e.gvt1.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://redirector.gvt1.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients1.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.googleusercontent.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com/
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com/
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr/
G2 - GCE: Preference [User Data\Default] [fcfenmboojpjinhpgggodefccipikbpd] Bing
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (17) - 4s
M0 - MFSP: prefs.js [Nono - q2sudk05.default] https://www.malwarebytes.org/restorebrowser//?type=hp&ts=1439734272&z=472673f063a2ce10e865320gcz8c3t8mdc6z2g9bdg&from=cmi&uid=WDCXWD3200BEKT-60V5T1_WD-WXD1A102549725497
P2 - EXT FILE: (...) -- C:\Users\Nono\AppData\Roaming\Mozilla\Firefox\Profiles\q2sudk05.default\searchplugins\bingp.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKCU] [@iqiyi.com/npWebPlayer] - (.爱奇艺公司.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google.) -- C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
P2 - FPN: [HKLM] [@iqiyi.com/npclient] - (.iQiyi.com.) -- C:\IQIYI Video\LStyle\npclient.dll =>PUP.Optional.IQIYIVideo
P2 - FPN: [HKLM] [@iqiyi.com/npWebPlayer] - (.爱奇艺公司.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo
P2 - FPN: [HKLM] [@Skype Technologies S.A..com/Skype Web Plugin] - (.Skype.) -- C:\Program Files (x86)\SkypeWebPlugin\npSkypeWebPlugin.dll

---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (1) - 0s
B2 - EXT: [GoHD] C:\Users\Nono\AppData\Roaming\Opera Software\Opera Stable\Extensions\fijhlnmmmgflacagjecncpmpnhjieggk

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (19) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (R5) (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Applications lancées au démarrage du sytème (O4) (25) - 1s
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKCU\..\Run: [ultracopier] C:\Program Files (x86)\Supercopier\supercopier.exe (.not file.)
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKCU\..\Run: [Le Cloud d'Orange - Transfert de fichiers Client] . (.Orange-France - Le Cloud d'Orange - Transfert de fichiers.) -- C:\Users\Nono\AppData\Local\Le Cloud Orange\omclient.exe
O4 - HKCU\..\Run: [CrashService] C:\Users\Nono\AppData\Local\Tortuga\Application\crash_service.exe (.not file.) =>PUP.Optional.Tortuga
O4 - HKCU\..\Run: [YTDownloader] C:\Program Files (x86)\YTDownloader\YTDownloader.exe (.not file.) =>PUP.Optional.YTDownloader
O4 - HKCU\..\Run: [apphide] C:\Program Files (x86)\baidu\pps.exe (.not file.)
O4 - HKCU\..\Run: [HCDNClient] . (.iQIYI.COM - 爱奇艺HCDN网络数据传输组件.) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Wow6432Node\Run: [AMD AVT] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\Cmd.exe
O4 - HKLM\..\Wow6432Node\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
O4 - HKLM\..\Wow6432Node\Run: [IJNetworkScannerSelectorEX] . (.CANON INC. - Canon IJ Network Scanner Selector EX.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
O4 - HKLM\..\Wow6432Node\Run: [YTDownloader] C:\Program Files (x86)\YTDownloader\YTDownloader.exe (.not file.) =>PUP.Optional.YTDownloader
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [DAEMON Tools Lite] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [ultracopier] C:\Program Files (x86)\Supercopier\supercopier.exe (.not file.)
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [Le Cloud d'Orange - Transfert de fichiers Client] . (.Orange-France - Le Cloud d'Orange - Transfert de fichiers.) -- C:\Users\Nono\AppData\Local\Le Cloud Orange\omclient.exe
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [CrashService] C:\Users\Nono\AppData\Local\Tortuga\Application\crash_service.exe (.not file.) =>PUP.Optional.Tortuga
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [YTDownloader] C:\Program Files (x86)\YTDownloader\YTDownloader.exe (.not file.) =>PUP.Optional.YTDownloader
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [apphide] C:\Program Files (x86)\baidu\pps.exe (.not file.)
O4 - HKUS\S-1-5-21-3408107558-1777013513-752187344-1001\..\Run: [HCDNClient] . (.iQIYI.COM - 爱奇艺HCDN网络数据传输组件.) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo

---\\ Raccourcis Global Startup (O4G) (7) - 2s
O4 - GS\Quicklaunch [Administrateur]: 爱奇艺PPS影音.lnk . (.爱奇艺 - 爱奇艺PPS影音.) C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O4 - GS\Startup [Administrateur]: 爱奇艺PPS影音.lnk . (.爱奇艺 - 爱奇艺PPS影音.) C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O4 - GS\Quicklaunch [Invité]: 爱奇艺PPS影音.lnk . (.爱奇艺 - 爱奇艺PPS影音.) C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O4 - GS\Startup [Invité]: 爱奇艺PPS影音.lnk . (.爱奇艺 - 爱奇艺PPS影音.) C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O4 - GS\Quicklaunch [Nono]: 爱奇艺PPS影音.lnk . (.爱奇艺 - 爱奇艺PPS影音.) C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O4 - GS\Startup [Nono]: 爱奇艺PPS影音.lnk . (.爱奇艺 - 爱奇艺PPS影音.) C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O4 - GS\Programs [Public]: 爱奇艺PPS影音.lnk . (.爱奇艺 - 爱奇艺PPS影音.) C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo

---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.150
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = localdomain
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.150
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = localdomain

---\\ Liste des services NT non Microsoft et non désactivés (O23) (11) - 0s
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe
O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @oem6.inf,%hpservice_desc%;HP Service (hpsrv) . (...) - C:\Windows\system32\Hpservice.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - SolutionsFrameworkService.) - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: Audio Service (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\stacsv64.exe
O23 - Service: TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH - TeamViewer 9.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: VNC Server (vncserver) . (.RealVNC Ltd - VNC® Server.) - C:\Program Files\RealVNC\VNC Server\vncserver.exe

---\\ Tâches planifiées en automatique (O39) (21) - 4s
[MD5.476BB014F3F68C0C15EDDD5B444DA8FF] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [257416]
[MD5.00000000000000000000000000000000] [APT] [cfr3011] (...) -- C:\PROGRA~2\FASTSE~1\cfr3011.exe (.not file.) [0] =>PUP.Optional.FastSearch
[MD5.00000000000000000000000000000000] [APT] [crash_service] (...) -- C:\Users\Nono\AppData\Local\Tortuga\Application\crash_service.exe (.not file.) [0] =>PUP.Optional.Tortuga
[MD5.00000000000000000000000000000000] [APT] [fcgpI1Ds] (...) -- C:\Users\Nono\AppData\Roaming\fcgpI1Ds.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648]
[MD5.00000000000000000000000000000000] [APT] [Iisumlub] (...) -- C:\ProgramData\Iisumlub\1.0.4.1\maovhimo.exe (.not file.) [0] =>Heuristic.PullUpdate
[MD5.00000000000000000000000000000000] [APT] [oC3ds1JkI2WfQHD] (...) -- C:\Users\Nono\AppData\Roaming\oC3ds1JkI2WfQHD.exe (.not file.) [0] =>PUP.Optional.CrossRider
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated
O39 - APT: fcgpI1Ds - (...) -- C:\Windows\Tasks\fcgpI1Ds.job [1000] =>PUP.Optional.CrossRider
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1088] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1092] =>.Google Inc.
O39 - APT: oC3ds1JkI2WfQHD - (...) -- C:\Windows\Tasks\oC3ds1JkI2WfQHD.job [1014] =>PUP.Optional.CrossRider
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3890] =>.Adobe Systems Incorporated
O39 - APT: cfr3011 - (...) -- C:\Windows\System32\Tasks\cfr3011 [3086] =>PUP.Optional.FastSearch
O39 - APT: crash_service - (...) -- C:\Windows\System32\Tasks\crash_service [3174] =>PUP.Optional.Tortuga
O39 - APT: fcgpI1Ds - (...) -- C:\Windows\System32\Tasks\fcgpI1Ds [4002] =>PUP.Optional.CrossRider
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3828] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4064] =>.Google Inc.
O39 - APT: Iisumlub - (...) -- C:\Windows\System32\Tasks\Iisumlub [3460] =>Heuristic.PullUpdate
O39 - APT: oC3ds1JkI2WfQHD - (...) -- C:\Windows\System32\Tasks\oC3ds1JkI2WfQHD [4016] =>PUP.Optional.CrossRider

---\\ Logiciels installés (O42) (46) - 8s
O42 - Logiciel: ENE CIR Receiver Driver - (.ENE.) [HKLM][64Bits] -- 5F4DD0919B4763856B77AD385DEEEFCDF01784A8
O42 - Logiciel: VNC Viewer 5.0.2 - (.RealVNC Ltd.) [HKLM][64Bits] -- RealVNCViewer_is1
O42 - Logiciel: VNC Server 5.0.2 - (.RealVNC Ltd.) [HKLM][64Bits] -- RealVNC_is1
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey
O42 - Logiciel: VNC Mirror Driver 1.8.0 - (.RealVNC Ltd..) [HKLM][64Bits] -- VNCMirror_is1
O42 - Logiciel: VNC Printer Driver 1.8.0 - (.RealVNC Ltd..) [HKLM][64Bits] -- VNCPrinter_is1
O42 - Logiciel: Canon MG3500 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3500_series
O42 - Logiciel: Java 7 Update 25 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417025FF}
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441}
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {66F8CA06-DAEE-8F7B-FEF9-2A59E622BBA7}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A70B905D-2E57-66A0-3BFE-66B8E71E0C70}
O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {CFF24F63-A683-4202-8526-3F9A77A3B0E8}
O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard.) [HKLM][64Bits] -- {D2C4DD25-93F1-4CB3-B05F-84F84899414C}
O42 - Logiciel: AMD Drag and Drop Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {D3DE00DF-4EFB-8013-3E93-D735E69CAF6A}
O42 - Logiciel: AMD Media Foundation Decoders - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DF1AFD96-296C-421E-FF16-16EB9350D54D}
O42 - Logiciel: Canon MG3500 series On-screen Manual - (.Canon Inc..) [HKLM][64Bits] -- Canon MG3500 series On-screen Manual
O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden
O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden Design Files
O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM][64Bits] -- CANONIJPLM100
O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM][64Bits] -- CanonMyPrinter
O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM][64Bits] -- CanonQuickMenu
O42 - Logiciel: Canon IJ Network Scanner Selector EX - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_Scanner_Selector_EX
O42 - Logiciel: Canon IJ Network Tool - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_UTILITY
O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Scan_Utility
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite
O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM][64Bits] -- Easy-WebPrint EX
O42 - Logiciel: Enregistrement utilisateur de Canon MG3500 series - (.‭Canon Inc..) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MG3500 series
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: 爱奇艺影音 - (.爱奇艺.) [HKLM][64Bits] -- IQIYI Video =>PUP.Optional.IQIYIVideo
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 33.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 33.1 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: TeamViewer 9 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer 9
O42 - Logiciel: VLC media player 2.0.0 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {86FD8326-909D-45F5-BB61-0619D0D31293}
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {88B2ABCF-9C00-47C1-8FC4-369B98845DD7}
O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B51DD93B-3CB5-4D9D-BFF2-FD19DBBBFD9A}
O42 - Logiciel: Adobe Flash Player 11 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFBC6337-B7B9-4AEE-BC19-CA910EED755D}
O42 - Logiciel: Le Cloud d'Orange - Transfert de fichiers - (.Orange-France.) [HKCU][64Bits] -- Le Cloud d'Orange - Transfert de fichiers

---\\ HKCU & HKLM Software Keys (94) - 8s
HKLM\SOFTWARE\Wow6432Node\2d01972f-a2f2-4efb-a16a-d9d5dbb7fe5d =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\56107743-7f1a-3cf9-0949-f49953fe377f =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\5edecf66-3e83-4e99-9c4f-fa2b6c2db080 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\acengine =>PUP.Optional.Abengine
HKLM\SOFTWARE\Wow6432Node\AIM Toolbar
HKLM\SOFTWARE\Wow6432Node\AMD
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies
HKLM\SOFTWARE\Wow6432Node\b33c8c8f-6ef7-4efa-9c5c-2922cb909cc7 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Canon
HKLM\SOFTWARE\Wow6432Node\Canon_Inc_IC
HKLM\SOFTWARE\Wow6432Node\Clara =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\Fabs AutoBackup
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\HPQ
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SkypeWebPlugin
HKLM\SOFTWARE\Wow6432Node\SpeedBit
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\AMD
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\F-Secure
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\fcgpI1Ds
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Kromtech
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\oC3ds1JkI2WfQHD
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Orange-France
HKCU\SOFTWARE\Philips
HKCU\SOFTWARE\PPStream
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\QyGameClient =>PUP.Optional.IQIYIVideo
HKCU\SOFTWARE\Raptr
HKCU\SOFTWARE\RealVNC
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\Tortuga =>PUP.Optional.Tortuga
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\Ultracopier
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\WTools
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Canon
HKCU\SOFTWARE\AppDataLow\Software\SmartWeb =>PUP.Optional.SmartWebSearch
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (O43) (196) - 8s
O43 - CFD: 2015/08/16 15:23:09 - [] D -- C:\Program Files (x86)\ Memes
O43 - CFD: 2015/08/16 17:16:16 - [0] D -- C:\Program Files (x86)\0a00a5be-fcb1-4420-afba-84d40dff1b78 =>PUP.Optional.CrossRider
O43 - CFD: 2015/08/16 17:16:16 - [0] D -- C:\Program Files (x86)\85b4851a-44a6-4f09-bfc6-955469066e0d =>PUP.Optional.CrossRider
O43 - CFD: 2014/02/19 12:58:03 - [] D -- C:\Program Files (x86)\AMD APP
O43 - CFD: 2014/02/19 12:58:06 - [] D -- C:\Program Files (x86)\AMD AVT
O43 - CFD: 2014/02/19 12:57:33 - [] D -- C:\Program Files (x86)\ATI Technologies
O43 - CFD: 2015/08/16 17:16:16 - [0] D -- C:\Program Files (x86)\bb59d1f1-3150-430a-9359-54d8a3288fa2 =>PUP.Optional.CrossRider
O43 - CFD: 2014/09/27 18:15:00 - [] D -- C:\Program Files (x86)\Canon
O43 - CFD: 2015/08/16 15:23:09 - [] D -- C:\Program Files (x86)\Cloud Save
O43 - CFD: 2015/08/16 15:49:40 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2014/02/17 22:54:06 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite
O43 - CFD: 2015/08/16 15:23:07 - [] D -- C:\Program Files (x86)\Driver Pro
O43 - CFD: 2015/08/15 16:31:03 - [] D -- C:\Program Files (x86)\Exploremedia =>PUP.Optional.Generic
O43 - CFD: 2015/08/16 17:16:43 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/08/16 15:10:25 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2014/02/19 12:28:59 - [] D -- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 2014/02/19 12:28:59 - [] D -- C:\Program Files (x86)\Hp
O43 - CFD: 2015/08/16 15:23:07 - [0] D -- C:\Program Files (x86)\IncludeRunner =>PUP.Optional.Graftor
O43 - CFD: 2015/08/16 17:22:47 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/08/16 14:33:23 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2014/08/08 16:07:58 - [] D -- C:\Program Files (x86)\MarkAny
O43 - CFD: 2014/02/18 08:21:54 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2014/02/18 08:23:29 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/08/16 17:24:31 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2014/02/18 08:23:28 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework
O43 - CFD: 2014/02/18 08:23:28 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/08/16 15:23:12 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/09 14:43:24 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/08/16 13:49:22 - [] D -- C:\Program Files (x86)\OLBPre =>PUP.Optional.MyPCBackup
O43 - CFD: 2015/08/15 16:31:38 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2015/08/14 18:24:13 - [0] D -- C:\Program Files (x86)\predm =>PUP.Optional.Downware
O43 - CFD: 2015/08/15 17:23:16 - [] D -- C:\Program Files (x86)\PriceLeossa =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 18:40:01 - [] D -- C:\Program Files (x86)\PriecELesS =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/15 16:35:43 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2014/08/08 16:06:53 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 2015/07/22 15:35:15 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2014/06/17 17:34:49 - [] D -- C:\Program Files (x86)\SkypeWebPlugin
O43 - CFD: 2015/08/18 14:52:06 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2014/02/19 13:00:06 - [] D -- C:\Program Files (x86)\TeamViewer
O43 - CFD: 2015/08/15 18:41:23 - [0] D -- C:\Program Files (x86)\TerminusLogistics
O43 - CFD: 2014/02/17 23:32:30 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/08/16 17:22:43 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/03/15 19:35:46 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/03/15 19:35:45 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/03/15 19:35:46 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/03/15 19:35:42 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/03/15 19:35:45 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2013/08/22 17:36:30 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2015/08/16 15:23:06 - [] D -- C:\Program Files (x86)\youtubeadblocker =>PUP.Optional.YouTubeAdBlock
O43 - CFD: 2015/08/18 14:53:49 - [] D -- C:\Program Files (x86)\YTDownloader =>PUP.Optional.YTDownloader
O43 - CFD: 2015/03/15 19:37:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/03/15 19:37:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/06/13 18:19:23 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2014/02/19 12:58:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
O43 - CFD: 2014/09/27 17:48:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG3500 series Manual
O43 - CFD: 2014/09/27 18:10:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
O43 - CFD: 2014/02/17 22:54:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 2014/09/27 18:09:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MG3500 series
O43 - CFD: 2015/08/16 15:23:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/08/16 15:23:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 2014/02/17 22:35:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/16 14:33:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2014/02/18 08:24:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 2015/08/16 17:02:59 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/08/03 17:24:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip =>PUP.Optional.PepperZip
O43 - CFD: 2014/02/17 22:25:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealVNC
O43 - CFD: 2014/02/18 08:24:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
O43 - CFD: 2014/09/14 08:27:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2013/08/22 17:36:33 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/08/16 15:23:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2015/08/16 16:20:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Optimizer =>PUP.Optional.SuperOptimizer
O43 - CFD: 2015/03/15 19:37:46 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2013/08/23 00:26:22 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/08/03 17:39:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/08/14 18:05:37 - [] D -- C:\ProgramData\19a87fa1ec024bbcbb41931263354405
O43 - CFD: 2015/08/15 16:22:26 - [] D -- C:\ProgramData\2acd4cb5c435461892520f3241ad43b9
O43 - CFD: 2015/08/03 17:42:46 - [] D -- C:\ProgramData\9727e7e600002114
O43 - CFD: 2015/08/16 15:23:05 - [] D -- C:\ProgramData\ahphbkmdhlgndjacblmoekochohoeojb
O43 - CFD: 2014/02/19 12:57:39 - [] D -- C:\ProgramData\AMD
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2014/02/19 14:00:46 - [] D -- C:\ProgramData\ATI
O43 - CFD: 2015/08/16 15:23:05 - [0] D -- C:\ProgramData\Browser =>PUP.Optional.SpeedBrowser
O43 - CFD: 2014/02/17 22:19:36 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2014/09/27 18:10:34 - [0] D -- C:\ProgramData\Canon IJ Network Tool
O43 - CFD: 2014/09/27 17:26:06 - [] HD -- C:\ProgramData\CanonBJ
O43 - CFD: 2014/09/27 17:50:08 - [] HD -- C:\ProgramData\CanonIJEGV
O43 - CFD: 2014/09/27 17:16:33 - [] HD -- C:\ProgramData\CanonIJETV
O43 - CFD: 2014/09/27 18:20:52 - [] HD -- C:\ProgramData\CanonIJMIG
O43 - CFD: 2015/08/16 16:09:53 - [] D -- C:\ProgramData\CanonIJPLM
O43 - CFD: 2014/09/27 17:54:19 - [] HD -- C:\ProgramData\CanonIJQuickMenu
O43 - CFD: 2014/09/30 17:05:50 - [] HD -- C:\ProgramData\CanonIJScan
O43 - CFD: 2014/09/27 17:30:42 - [] D -- C:\ProgramData\CanonIJWSpt
O43 - CFD: 2014/02/18 08:10:22 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2014/04/11 08:43:48 - [] D -- C:\ProgramData\F-Secure
O43 - CFD: 2015/08/18 15:02:33 - [0] D -- C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo
O43 - CFD: 2015/08/03 17:47:44 - [] HD -- C:\ProgramData\ljd
O43 - CFD: 2014/02/17 22:35:40 - [] D -- C:\ProgramData\ma-config.com
O43 - CFD: 2015/08/16 14:33:07 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2014/02/17 22:19:36 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/08/16 15:10:44 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/08/16 16:47:55 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2014/02/17 22:19:36 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2014/02/17 23:13:14 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/03/04 18:11:33 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/08/16 15:23:05 - [] D -- C:\ProgramData\qWtofFKjG
O43 - CFD: 2015/03/15 19:35:41 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2014/09/11 09:52:39 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 2015/07/22 15:38:30 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/08/16 17:16:15 - [] D -- C:\ProgramData\ZombieInvasion =>PUP.Optional.ZombieInvasion
O43 - CFD: 2015/08/15 18:30:32 - [] D -- C:\ProgramData\{07adef59-378c-0fed-07ad-def59378bd64}
O43 - CFD: 2014/02/19 12:58:01 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies
O43 - CFD: 2015/03/04 17:53:21 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2015/03/04 18:13:35 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2014/09/14 08:27:06 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/08/17 15:19:00 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/03/15 19:35:41 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2014/02/17 22:23:37 - [] D -- C:\Users\Nono\AppData\Roaming\Adobe
O43 - CFD: 2015/08/16 15:22:40 - [] D -- C:\Users\Nono\AppData\Roaming\Angry Library
O43 - CFD: 2014/02/19 14:00:46 - [] D -- C:\Users\Nono\AppData\Roaming\ATI
O43 - CFD: 2014/08/06 14:11:25 - [] D -- C:\Users\Nono\AppData\Roaming\Boomzap
O43 - CFD: 2014/09/30 17:05:22 - [] D -- C:\Users\Nono\AppData\Roaming\Canon
O43 - CFD: 2014/02/18 08:10:23 - [] D -- C:\Users\Nono\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 2015/08/15 17:55:13 - [] D -- C:\Users\Nono\AppData\Roaming\Driver Pro
O43 - CFD: 2014/04/11 08:43:47 - [] D -- C:\Users\Nono\AppData\Roaming\F-Secure
O43 - CFD: 2015/03/16 18:22:46 - [] D -- C:\Users\Nono\AppData\Roaming\Identities
O43 - CFD: 2015/08/18 15:01:58 - [] D -- C:\Users\Nono\AppData\Roaming\IQIYI Video =>PUP.Optional.IQIYIVideo
O43 - CFD: 2014/02/19 12:52:39 - [] D -- C:\Users\Nono\AppData\Roaming\library_dir
O43 - CFD: 2014/02/17 22:31:22 - [] D -- C:\Users\Nono\AppData\Roaming\Macromedia
O43 - CFD: 2015/08/16 15:12:03 - [] SD -- C:\Users\Nono\AppData\Roaming\Microsoft
O43 - CFD: 2014/02/17 23:15:17 - [] D -- C:\Users\Nono\AppData\Roaming\Mozilla
O43 - CFD: 2015/08/15 16:24:11 - [] D -- C:\Users\Nono\AppData\Roaming\Opera Software
O43 - CFD: 2015/02/23 19:56:53 - [] D -- C:\Users\Nono\AppData\Roaming\Orange-France
O43 - CFD: 2015/08/18 15:01:30 - [] D -- C:\Users\Nono\AppData\Roaming\ppslog
O43 - CFD: 2014/08/08 16:08:59 - [] D -- C:\Users\Nono\AppData\Roaming\Samsung
O43 - CFD: 2014/08/06 14:08:06 - [] RHD -- C:\Users\Nono\AppData\Roaming\SecuROM
O43 - CFD: 2015/08/18 14:52:24 - [] D -- C:\Users\Nono\AppData\Roaming\Skype
O43 - CFD: 2015/08/16 16:00:17 - [0] D -- C:\Users\Nono\AppData\Roaming\Store =>PUP.Optional.Nosibay
O43 - CFD: 2015/08/16 17:16:43 - [0] D -- C:\Users\Nono\AppData\Roaming\systweak =>PUP.Optional.Systweak
O43 - CFD: 2014/02/19 13:00:13 - [] D -- C:\Users\Nono\AppData\Roaming\TeamViewer
O43 - CFD: 2014/12/09 12:18:31 - [] D -- C:\Users\Nono\AppData\Roaming\vlc
O43 - CFD: 2015/08/16 15:59:07 - [0] D -- C:\Users\Nono\AppData\Roaming\WTools
O43 - CFD: 2015/08/18 15:12:57 - [] D -- C:\Users\Nono\AppData\Roaming\ZHP
O43 - CFD: 2014/02/19 14:00:58 - [] D -- C:\Users\Nono\AppData\Local\AMD
O43 - CFD: 2014/02/17 22:23:18 - [0] SHD -- C:\Users\Nono\AppData\Local\Application Data
O43 - CFD: 2014/02/19 14:00:46 - [] D -- C:\Users\Nono\AppData\Local\ATI
O43 - CFD: 2015/08/18 14:52:50 - [] D -- C:\Users\Nono\AppData\Local\BrowserHelper =>PUP.Optional.BrowserHelper
O43 - CFD: 2015/08/16 15:47:10 - [] D -- C:\Users\Nono\AppData\Local\CEF
O43 - CFD: 2015/08/03 18:04:33 - [] D -- C:\Users\Nono\AppData\Local\CrashRpt =>.Legitimate.CrashReports
O43 - CFD: 2014/12/09 16:41:39 - [0] D -- C:\Users\Nono\AppData\Local\Diagnostics
O43 - CFD: 2014/08/08 16:05:43 - [] D -- C:\Users\Nono\AppData\Local\Downloaded Installations
O43 - CFD: 2015/06/11 17:15:31 - [0] SHD -- C:\Users\Nono\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/11 17:15:31 - [0] SHD -- C:\Users\Nono\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/11 17:15:31 - [0] SHD -- C:\Users\Nono\AppData\Local\EmieUserList
O43 - CFD: 2014/09/11 09:53:50 - [0] D -- C:\Users\Nono\AppData\Local\F-Secure
O43 - CFD: 2015/08/17 15:18:34 - [] D -- C:\Users\Nono\AppData\Local\Facebook
O43 - CFD: 2015/08/03 17:23:38 - [] D -- C:\Users\Nono\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2014/09/14 10:29:37 - [] D -- C:\Users\Nono\AppData\Local\Google
O43 - CFD: 2015/06/13 15:42:26 - [] D -- C:\Users\Nono\AppData\Local\GWX
O43 - CFD: 2014/02/17 22:23:18 - [0] SHD -- C:\Users\Nono\AppData\Local\Historique
O43 - CFD: 2015/08/16 15:23:02 - [] D -- C:\Users\Nono\AppData\Local\Image Experience
O43 - CFD: 2015/08/16 16:13:35 - [] D -- C:\Users\Nono\AppData\Local\Installer =>PUP.Optional.InstallPedia
O43 - CFD: 2015/08/18 14:52:06 - [] D -- C:\Users\Nono\AppData\Local\Le Cloud Orange
O43 - CFD: 2014/02/19 12:26:30 - [] D -- C:\Users\Nono\AppData\Local\Macromedia
O43 - CFD: 2015/08/16 15:10:54 - [] D -- C:\Users\Nono\AppData\Local\Microsoft
O43 - CFD: 2014/02/18 08:21:51 - [0] D -- C:\Users\Nono\AppData\Local\Microsoft Help
O43 - CFD: 2015/04/28 10:19:29 - [] DC -- C:\Users\Nono\AppData\Local\MigWiz
O43 - CFD: 2014/11/05 16:46:33 - [] D -- C:\Users\Nono\AppData\Local\Mindspark_Interactive_Net
O43 - CFD: 2014/02/17 23:19:05 - [] D -- C:\Users\Nono\AppData\Local\Mozilla
O43 - CFD: 2015/08/15 16:24:12 - [] D -- C:\Users\Nono\AppData\Local\Opera Software
O43 - CFD: 2015/08/16 16:17:06 - [] D -- C:\Users\Nono\AppData\Local\Packages
O43 - CFD: 2015/08/03 17:37:55 - [] D -- C:\Users\Nono\AppData\Local\Programs
O43 - CFD: 2014/09/11 09:52:39 - [0] D -- C:\Users\Nono\AppData\Local\Samsung
O43 - CFD: 2014/03/03 11:01:40 - [] D -- C:\Users\Nono\AppData\Local\Skype
O43 - CFD: 2014/06/17 17:37:31 - [] D -- C:\Users\Nono\AppData\Local\SkypeWebPlugin
O43 - CFD: 2015/08/16 15:47:10 - [] D -- C:\Users\Nono\AppData\Local\Steam
O43 - CFD: 2015/08/18 15:01:44 - [] D -- C:\Users\Nono\AppData\Local\SysassistByHotWheel =>PUP.Optional.Generic
O43 - CFD: 2015/08/18 15:12:28 - [] D -- C:\Users\Nono\AppData\Local\Temp
O43 - CFD: 2014/02/17 22:23:18 - [0] SHD -- C:\Users\Nono\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/08/18 15:11:09 - [0] D -- C:\Users\Nono\AppData\Local\Unity
O43 - CFD: 2014/02/17 22:23:35 - [0] D -- C:\Users\Nono\AppData\Local\VirtualStore
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/08/16 17:29:55 - [] RD -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/02/23 17:58:11 - [] D -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Le Cloud d'Orange - Transfert de fichiers
O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/18 15:01:23 - [] RD -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2013/08/22 17:36:32 - [] RD -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/08/18 15:01:23 - [] D -- C:\Users\Nono\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\爱奇艺

---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (21) - 14s
O45 - LFCP:[MD5.4084417D4E0C57B3F82135EBDE32F79C] 2015/08/15 16:39:54 A -- C:\Windows\Prefetch\ADVANCEDSYSTEMPROTECTOR.EXE-E30B6CE6.pf =>PUP.Optional.AdvancedSystemProtector
O45 - LFCP:[MD5.61ECC7DBD0DD55982FC70B1FDC39857F] 2015/08/14 18:24:26 A -- C:\Windows\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-D2771D01.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.A138915B7E0EDD9BD182E063389EAB0D] 2015/08/16 14:32:47 A -- C:\Windows\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-E8AF4294.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.574D038AFD4AA3EA99C80B5F82D6D7A2] 2015/08/15 18:28:13 A -- C:\Windows\Prefetch\BUBBLE DOCK UNINSTALL.EXE-8652CC46.pf =>PUP.Optional.BubbleDock
O45 - LFCP:[MD5.8CA311A393F79B08EEF5F44BE8610AB2] 2015/08/16 14:47:36 A -- C:\Windows\Prefetch\BUBBLE DOCK UNINSTALL.EXE-C3A3EE08.pf =>PUP.Optional.BubbleDock
O45 - LFCP:[MD5.0688807C9A8180CC28D8A2383F74DC38] 2015/08/15 17:53:42 A -- C:\Windows\Prefetch\BUBBLE DOCK UNINSTALL.EXE-D53BB487.pf =>PUP.Optional.BubbleDock
O45 - LFCP:[MD5.F41C655A1114831A2FED58D8B3D15D62] 2015/08/16 14:29:20 A -- C:\Windows\Prefetch\BUBBLE DOCK.EXE-56FB7F86.pf =>PUP.Optional.BubbleDock
O45 - LFCP:[MD5.4E470B6866ED18ADA6CD67618706CFF2] 2015/08/16 15:46:15 A -- C:\Windows\Prefetch\CROSSBROWSE.EXE-CEDEC251.pf =>PUP.Optional.CrossBrowse
O45 - LFCP:[MD5.F5B823515496DE18B0C9EBCB359BD030] 2015/08/16 15:50:03 A -- C:\Windows\Prefetch\MOVIEDEA.EXE-644737CD.pf =>PUP.Optional.MovieDea
O45 - LFCP:[MD5.CA21E9F68792FACCEE3650ED5D71D56A] 2015/08/15 18:29:54 A -- C:\Windows\Prefetch\OLBPRE.EXE-C6385661.pf =>PUP.Optional.MyPCBackup
O45 - LFCP:[MD5.52F03A0FC12C7549A3CDD011FA12DD75] 2015/08/16 14:32:31 A -- C:\Windows\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-409AC59E.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.51DEAB48E338C0237462DC3DBCA56734] 2015/08/14 18:24:20 A -- C:\Windows\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-664DA60D.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.C1F59F75F05F88C523F108365309F850] 2015/08/14 18:49:24 A -- C:\Windows\Prefetch\PACKAGE_PRICELESS_INSTALLER_M-4D04E905.pf =>PUP.Optional.PriceLess
O45 - LFCP:[MD5.51D8E79E3EA7A50C5E8106A93A835022] 2015/08/14 18:23:12 A -- C:\Windows\Prefetch\PREDM.TMP-C8375F1E.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.8EED1ABAB6BA4B1F8DE7D0EEC46C2E23] 2015/08/16 15:58:35 A -- C:\Windows\Prefetch\SELECTION TOOLS UNINSTALL.EXE-0491330B.pf =>PUP.Optional.Nosibay
O45 - LFCP:[MD5.1B7924AFBEFBB354DF63032DF8E2A7CB] 2015/08/16 15:58:42 A -- C:\Windows\Prefetch\SELECTION TOOLS UNINSTALL.EXE-E2F918F1.pf =>PUP.Optional.Nosibay
O45 - LFCP:[MD5.DEDEDA4CE5EC8BC6E65808DA902E76FE] 2015/08/15 16:25:41 A -- C:\Windows\Prefetch\SYSTWEAKASP.TMP-8615CAFF.pf =>PUP.Optional.Systweak
O45 - LFCP:[MD5.27AF2B5FB2451BEFE69DD6055EC56FC2] 2015/08/16 14:01:19 A -- C:\Windows\Prefetch\UPGMSD_FR_005010060.EXE-02A03038.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.2B66C912ED84E2229462931385709D17] 2015/08/16 16:18:44 A -- C:\Windows\Prefetch\UPGMSD_FR_005010061.EXE-EDE5B522.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.80D9DE3D4A5F14933C48029E69D62CF3] 2015/08/16 16:07:48 A -- C:\Windows\Prefetch\UPMBOT_FR_003010050.EXE-20B24600.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.1B6BCC0B14246D05ACCCCD84841CA41F] 2015/08/18 14:53:30 A -- C:\Windows\Prefetch\YTDOWNLOADER.EXE-16291FE1.pf =>PUP.Optional.YTDownloader

---\\ Liste des pilotes du système (SDL) (O58) (47) - 5s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896]
O58 - SDL:2008/01/31 15:47:52 A . (.Hewlett-Packard Corporation - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [32768]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176]
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200]
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424]
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016]
O58 - SDL:2013/06/18 16:45:05 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athwnx.sys [3680256]
O58 - SDL:2012/11/16 23:08:32 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [11922944]
O58 - SDL:2012/11/16 21:39:12 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [359936]
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624]
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296]
O58 - SDL:2014/02/17 22:54:06 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283200]
O58 - SDL:2009/05/20 15:09:00 A . (.ENE TECHNOLOGY INC. - ENE CIR Driver for eHome(64).) -- C:\Windows\System32\drivers\enecir.sys [70656]
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024]
O58 - SDL:2008/01/31 15:47:52 A . (.Hewlett-Packard Corporation - HP Disk Filter - SATA.) -- C:\Windows\System32\drivers\hpdskflt.sys [21504]
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352]
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568]
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320]
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248]
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784]
O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816]
O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272]
O58 - SDL:2015/08/18 15:06:01 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [113880]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840]
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840]
O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [64216]
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368]
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288]
O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [591360]
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896]
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760]
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [108800]
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080]
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072]
O58 - SDL:2010/03/23 15:53:06 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt64.sys [505344]
O58 - SDL:2011/10/14 05:37:44 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [396848]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808]
O58 - SDL:2012/08/15 21:34:40 A . (.RealVNC Ltd. - VNC Mirror Miniport.) -- C:\Windows\System32\drivers\vncmirror.sys [4608]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (38) - 223s
O61 - LFC: 2015/08/18 15:01:41 A . (.爱奇艺.) -- C:\Users\Nono\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe [314984] =>PUP.Optional.IQIYIVideo
O61 - LFC: 2015/08/18 15:03:17 A . (.爱奇艺.) -- C:\Users\Nono\AppData\Roaming\IQIYI Video\LStyle\QyUpdate\IQIYIsetup_update_201506041.exe [7801192] =>PUP.Optional.IQIYIVideo
O61 - LFC: 2015/08/16 16:14:15 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\9a82f15555174bdf90797aeb08e85ab7[1].exe [71352]
O61 - LFC: 2015/08/16 16:18:50 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\BiTool[1].dll [59904]
O61 - LFC: 2015/08/16 16:30:11 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\policyname[1].exe [57665]
O61 - LFC: 2015/08/16 14:45:35 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\Reimage[1].exe [4] =>PUP.Optional.ReImageRepair
O61 - LFC: 2015/08/16 16:11:03 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\SearchUpdater[1].exe [121216]
O61 - LFC: 2015/08/16 16:14:18 A . (.FastSearch.) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\setupfa_4435[1].exe [4969936] =>PUP.Optional.FastSearch
O61 - LFC: 2015/08/16 16:11:30 A . (.SoftBrain Technologies Ltd..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\SmartWebInstaller[1].exe [759544] =>PUP.Optional.SmartWebSearch
O61 - LFC: 2015/08/16 16:13:01 A . (.shopperz.) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\sprz[1].exe [2963520] =>PUP.Optional.Shopperz
O61 - LFC: 2015/08/16 16:13:09 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\ytdieamodc_amodc_setup[1].exe [1513657]
O61 - LFC: 2015/08/16 16:14:11 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\15b365fe97056e31353ba58793643ff5[1].exe [91848]
O61 - LFC: 2015/08/16 16:12:53 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\Bundle_YTDownloader[1].exe [100379] =>PUP.Optional.YTDownloader
O61 - LFC: 2015/08/16 16:12:56 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\bxwr[1].exe [56292]
O61 - LFC: 2015/08/16 16:16:53 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\fdf809e7420bc26691f9efeb51b17a73[1].exe [67021]
O61 - LFC: 2015/08/16 16:11:11 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\setup[2].exe [1964104]
O61 - LFC: 2015/08/14 18:15:21 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\urlblockindex[1].bin [16]
O61 - LFC: 2015/08/16 16:30:15 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\VuuPC_VO2_8907[1].exe [229125] =>PUP.Optional.VuuPC
O61 - LFC: 2015/08/16 16:12:51 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\e73dd9d4bfabdb1eb2f12b4af7dede67[1].exe [64064]
O61 - LFC: 2015/08/16 16:14:01 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\fswr[1].exe [72182]
O61 - LFC: 2015/08/16 16:13:44 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\prepreinstaller_win3[1].exe [174592]
O61 - LFC: 2015/08/16 14:50:31 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\Setup[1].exe [588486]
O61 - LFC: 2015/08/16 16:18:45 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\smt[1].exe [211114]
O61 - LFC: 2015/08/18 15:11:13 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\urlblockindex[1].bin [16]
O61 - LFC: 2015/08/16 16:10:25 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\VOPackage[1].exe [1015802] =>PUP.Optional.Downware
O61 - LFC: 2015/08/16 16:10:59 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\W0kfpX[1].exe [205140]
O61 - LFC: 2015/08/16 16:11:18 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\7b2bc6f2ba9c4bacc39bf4fde5757a89[1].exe [99763]
O61 - LFC: 2015/08/16 16:31:15 A . (.CMI Limited.) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\AnyProtectSetup[1].exe [613255] =>PUP.Optional.AnyProtect
O61 - LFC: 2015/08/16 16:14:07 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\Bundle_FlowsurfCB[1].exe [100362] =>PUP.Optional.FlowSurf
O61 - LFC: 2015/08/16 16:11:06 A . (.Welnk.com.) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\cmi_mystartsearch[1].exe [269408] =>PUP.Optional.StartSearch
O61 - LFC: 2015/08/16 16:10:57 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\cmmdWriter[1].exe [41440]
O61 - LFC: 2015/08/16 16:16:06 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\FriendlyError_s4[1].exe [177664] =>PUP.Optional.FriendlyError
O61 - LFC: 2015/08/16 16:13:36 A . (.Cinema PlusV16.08.) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\setup[1].exe [14077256]
O61 - LFC: 2015/08/16 16:18:58 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\setup[2].exe [430272]
O61 - LFC: 2015/08/16 16:17:15 A . (..) -- C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\setup_gmsd_fr[1].exe [5803584]
O61 - LFC: 2015/08/16 16:13:33 A . (.Copyright (C) 2014.) -- C:\Users\Nono\AppData\Local\Installer\Install_5903\DCYTDownloader.exe [1446912] =>PUP.Optional.YTDownloader
O61 - LFC: 2015/08/18 15:03:19 A . (..) -- C:\Users\Nono\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/08/18 14:56:55 A . (..) -- C:\Users\Nono\AppData\Local\ATI\ACE\Manifest.Bin [30466]

---\\ Associations Shell Spawning (O67) (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe

---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (6) - 10s
O69 - SBI: prefs.js [Nono - q2sudk05.default] user_pref("extensions.a9321b2762c2e4c5fbd04b8118e512707c0c8a2d632754caca0b252e936311db9com32850.32850.name", "Object Browser"); =>PUP.Optional.ObjectBrowser
O69 - SBI: prefs.js [Nono - q2sudk05.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [Nono - q2sudk05.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [Nono - q2sudk05.default] user_pref("{3ea54411-9f2a-4a18-a93a-84312350f7c1}.ScriptData_product_name", "shopperz12082015"); =>PUP.Optional.Shopperz
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (36) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1084416]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [926208]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [227328]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [73728]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3704320]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000]
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [187904]
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) -- C:\Windows\System32\KeyboardFilterSvc.dll [92992]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (17) - 1s
O87 - FAEL: "{ED1DE724-1EDA-4903-8C75-83CF057FFFA7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr.exe (.not file.)
O87 - FAEL: "{F069DF15-2B20-4622-AE0E-69D62770FDD7}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr.exe (.not file.)
O87 - FAEL: "{EB6DE698-C20E-44FA-9461-D00560B3DF74}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr_im.exe (.not file.)
O87 - FAEL: "{6DACC1FB-D076-4961-B168-35406D4CC617}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Raptr\raptr_im.exe (.not file.)
O87 - FAEL: "{2124A070-B190-4DAF-A5AF-39CAABF9E5C4}" [In-None-P17-TRUE] .(.Skype - Skype Web Plugin.) -- C:\Program Files (x86)\SkypeWebPlugin\SkypeWebPlugin.exe
O87 - FAEL: "{EAF9EEAA-A1E1-47DB-94F2-568683D5563B}" [In-None-P17-TRUE] .(...) -- C:\Users\Nono\AppData\Roaming\IQIYI Video\LStyle\GpUpdate.exe (.not file.) =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{DF65481E-33B5-44C4-8C2C-68CA61F35CB5}" [In-None-P17-TRUE] .(.爱奇艺 - 爱奇艺万能播放器.) -- C:\IQIYI Video\GeePlayer\GeePlayer.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{72BBE599-4907-4F90-A117-6C33BA3A6CF5}" [In-None-P17-TRUE] .(.爱奇艺 - 爱奇艺升级模块.) -- C:\Users\Nono\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{182B0B26-A6CB-42A0-A193-D6BA2D164B71}" [In-None-P17-TRUE] .(.爱奇艺 - 爱奇艺PPS影音.) -- C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{ECA5BF45-E9D3-4FE1-BE35-6CF1429FF809}" [In-None-P17-TRUE] .(.爱奇艺公司 - 爱奇艺PPS影音 网页播放组件.) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{F6C44DBE-663F-41CB-B5E1-C5C9F4BD7E85}" [In-None-P17-TRUE] .(.iQIYI.COM - 爱奇艺HCDN网络数据传输组件.) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{BE2135E2-D4C7-42AA-9E84-1498E647A378}" [In-None-P17-TRUE] .(.爱奇艺 - 爱奇艺视频播放器.) -- C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{2F91DB27-AED0-4AD4-AC8E-4BD19B105D62}" [In-None-P17-TRUE] .(.爱奇艺 - 爱奇艺升级模块.) -- C:\Users\Nono\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{DFFB8840-87A9-4450-A9C2-ECEAB8BFE85B}" [In-None-P17-TRUE] .(.爱奇艺 - 爱奇艺PPS影音.) -- C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{E6BAD934-1DEB-4355-9F60-72034A8685AB}" [In-None-P17-TRUE] .(.爱奇艺公司 - 爱奇艺PPS影音 网页播放组件.) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{40BE0DC3-BDA2-494C-BE76-4AA819CE63CB}" [In-None-P17-TRUE] .(.iQIYI.COM - 爱奇艺HCDN网络数据传输组件.) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo
O87 - FAEL: "{DE2D594B-BB70-43B2-8A15-939F7055E017}" [In-None-P17-TRUE] .(.爱奇艺 - 爱奇艺视频播放器.) -- C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo

---\\ Enumère les codes produits des logiciels (PUC) (O90) (1) - 2s
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate

---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) (1) - 5s
[MD5.] [WIS][2015/08/16 16:15:27] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\b0416.msi [32768] =>PUP.Optional.GlobalUpdate

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (17) - 21s
SS - Demand [2014/02/17 23:27:11] [ 257416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - Disabled [2009/03/02 19:42:58] [ 89600] Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\AESTSr64.exe
SR - Auto [2012/11/16 22:44:58] [ 238080] (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe
SR - Auto [2012/11/16 17:27:28] [ 361984] AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
SS - Disabled [2014/09/14 10:28:17] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Disabled [2014/09/14 10:28:17] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - Auto [2008/01/31 15:47:52] [ 22528] @oem6.inf,%hpservice_desc%;HP Service (hpsrv) . (...) - C:\Windows\system32\Hpservice.exe
SR - Auto [2014/02/05 15:39:00] [ 47416] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
SR - Auto [2013/05/14 11:50:44] [ 140936] Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2013.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
SR - Auto [2014/01/20 12:12:06] [ 2818896] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe
SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
SS - Demand [2015/01/20 19:08:42] [ 114288] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - Auto [2010/03/23 15:53:06] [ 247808] Audio Service (STacSV) . (.IDT, Inc..) - C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_960c1f056a541068\stacsv64.exe
SS - Demand [2015/08/12 20:26:20] [ 838336] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
SR - Auto [2015/04/09 08:46:59] [ 5261584] TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
SR - Auto [2012/08/15 21:54:36] [ 4716424] VNC Server (vncserver) . (.RealVNC Ltd.) - C:\Program Files\RealVNC\VNC Server\vncserver.exe

---\\ Recherche de clés de registre Tracing (O100) (2) - 1s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EliteUnzip_RASAPI32 =>PUP.Optional.MyWebSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EliteUnzip_RASMANCS =>PUP.Optional.MyWebSearch

---\\ Scan Additionnel (O88) (105) - 0s
C:\IQIYI Video\Common\Mobile\AndroidService.exe =>PUP.Optional.IQIYIVideo
C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo
C:\IQIYI Video\LStyle\npclient.dll =>PUP.Optional.IQIYIVideo
C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo
HKCU\SOFTWARE\fcgpI1Ds =>PUP.Optional.CrossRider
HKCU\SOFTWARE\oC3ds1JkI2WfQHD =>PUP.Optional.CrossRider
C:\Windows\Tasks\fcgpI1Ds.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\oC3ds1JkI2WfQHD.job =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\cfr3011 =>PUP.Optional.FastSearch
C:\Windows\System32\Tasks\crash_service =>PUP.Optional.Tortuga
C:\Windows\System32\Tasks\fcgpI1Ds =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\Iisumlub =>Heuristic.PullUpdate
C:\Windows\System32\Tasks\oC3ds1JkI2WfQHD =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IQIYI Video =>PUP.Optional.IQIYIVideo
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\2d01972f-a2f2-4efb-a16a-d9d5dbb7fe5d =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\56107743-7f1a-3cf9-0949-f49953fe377f =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\5edecf66-3e83-4e99-9c4f-fa2b6c2db080 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\acengine =>PUP.Optional.Abengine
HKLM\SOFTWARE\Wow6432Node\b33c8c8f-6ef7-4efa-9c5c-2922cb909cc7 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Clara =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\QyGameClient =>PUP.Optional.IQIYIVideo
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\Tortuga =>PUP.Optional.Tortuga
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\AppDataLow\Software\SmartWeb =>PUP.Optional.SmartWebSearch
C:\Program Files (x86)\0a00a5be-fcb1-4420-afba-84d40dff1b78 =>PUP.Optional.CrossRider
C:\Program Files (x86)\85b4851a-44a6-4f09-bfc6-955469066e0d =>PUP.Optional.CrossRider
C:\Program Files (x86)\bb59d1f1-3150-430a-9359-54d8a3288fa2 =>PUP.Optional.CrossRider
C:\Program Files (x86)\Exploremedia =>PUP.Optional.Generic
C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\IncludeRunner =>PUP.Optional.Graftor
C:\Program Files (x86)\OLBPre =>PUP.Optional.MyPCBackup
C:\Program Files (x86)\predm =>PUP.Optional.Downware
C:\Program Files (x86)\PriceLeossa =>PUP.Optional.Multiplug
C:\Program Files (x86)\PriecELesS =>PUP.Optional.Multiplug
C:\Program Files (x86)\youtubeadblocker =>PUP.Optional.YouTubeAdBlock
C:\Program Files (x86)\YTDownloader =>PUP.Optional.YTDownloader
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip =>PUP.Optional.PepperZip
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Optimizer =>PUP.Optional.SuperOptimizer
C:\ProgramData\Browser =>PUP.Optional.SpeedBrowser
C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo
C:\ProgramData\ZombieInvasion =>PUP.Optional.ZombieInvasion
C:\Users\Nono\AppData\Roaming\IQIYI Video =>PUP.Optional.IQIYIVideo
C:\Users\Nono\AppData\Roaming\Store =>PUP.Optional.Nosibay
C:\Users\Nono\AppData\Roaming\systweak =>PUP.Optional.Systweak
C:\Users\Nono\AppData\Local\BrowserHelper =>PUP.Optional.BrowserHelper
C:\Users\Nono\AppData\Local\CrashRpt =>.Legitimate.CrashReports
C:\Users\Nono\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\Nono\AppData\Local\Installer =>PUP.Optional.InstallPedia
C:\Users\Nono\AppData\Local\SysassistByHotWheel =>PUP.Optional.Generic
C:\Windows\Prefetch\ADVANCEDSYSTEMPROTECTOR.EXE-E30B6CE6.pf =>PUP.Optional.AdvancedSystemProtector
C:\Windows\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-D2771D01.pf =>PUP.Optional.WebBar
C:\Windows\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-E8AF4294.pf =>PUP.Optional.WebBar
C:\Windows\Prefetch\BUBBLE DOCK UNINSTALL.EXE-8652CC46.pf =>PUP.Optional.BubbleDock
C:\Windows\Prefetch\BUBBLE DOCK UNINSTALL.EXE-C3A3EE08.pf =>PUP.Optional.BubbleDock
C:\Windows\Prefetch\BUBBLE DOCK UNINSTALL.EXE-D53BB487.pf =>PUP.Optional.BubbleDock
C:\Windows\Prefetch\BUBBLE DOCK.EXE-56FB7F86.pf =>PUP.Optional.BubbleDock
C:\Windows\Prefetch\CROSSBROWSE.EXE-CEDEC251.pf =>PUP.Optional.CrossBrowse
C:\Windows\Prefetch\MOVIEDEA.EXE-644737CD.pf =>PUP.Optional.MovieDea
C:\Windows\Prefetch\OLBPRE.EXE-C6385661.pf =>PUP.Optional.MyPCBackup
C:\Windows\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-409AC59E.pf =>PUP.Optional.WebBar
C:\Windows\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-664DA60D.pf =>PUP.Optional.WebBar
C:\Windows\Prefetch\PACKAGE_PRICELESS_INSTALLER_M-4D04E905.pf =>PUP.Optional.PriceLess
C:\Windows\Prefetch\PREDM.TMP-C8375F1E.pf =>PUP.Optional.Downware
C:\Windows\Prefetch\SELECTION TOOLS UNINSTALL.EXE-0491330B.pf =>PUP.Optional.Nosibay
C:\Windows\Prefetch\SELECTION TOOLS UNINSTALL.EXE-E2F918F1.pf =>PUP.Optional.Nosibay
C:\Windows\Prefetch\SYSTWEAKASP.TMP-8615CAFF.pf =>PUP.Optional.Systweak
C:\Windows\Prefetch\UPGMSD_FR_005010060.EXE-02A03038.pf =>PUP.Optional.CrossRider
C:\Windows\Prefetch\UPGMSD_FR_005010061.EXE-EDE5B522.pf =>PUP.Optional.CrossRider
C:\Windows\Prefetch\UPMBOT_FR_003010050.EXE-20B24600.pf =>PUP.Optional.CrossRider
C:\Windows\Prefetch\YTDOWNLOADER.EXE-16291FE1.pf =>PUP.Optional.YTDownloader
C:\Users\Nono\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo
C:\Users\Nono\AppData\Roaming\IQIYI Video\LStyle\QyUpdate\IQIYIsetup_update_201506041.exe =>PUP.Optional.IQIYIVideo
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\Reimage[1].exe =>PUP.Optional.ReImageRepair
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\setupfa_4435[1].exe =>PUP.Optional.FastSearch
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\SmartWebInstaller[1].exe =>PUP.Optional.SmartWebSearch
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\EQUVUANH\sprz[1].exe =>PUP.Optional.Shopperz
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\Bundle_YTDownloader[1].exe =>PUP.Optional.YTDownloader
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\BTQ4J4G1\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\AYATTV3H\VOPackage[1].exe =>PUP.Optional.Downware
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\AnyProtectSetup[1].exe =>PUP.Optional.AnyProtect
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\Bundle_FlowsurfCB[1].exe =>PUP.Optional.FlowSurf
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\cmi_mystartsearch[1].exe =>PUP.Optional.StartSearch
C:\Users\Nono\AppData\Local\Microsoft\Windows\INetCache\IE\34EG4QNF\FriendlyError_s4[1].exe =>PUP.Optional.FriendlyError
C:\Users\Nono\AppData\Local\Installer\Install_5903\DCYTDownloader.exe =>PUP.Optional.YTDownloader
C:\IQIYI Video\GeePlayer\GeePlayer.exe =>PUP.Optional.IQIYIVideo
C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo
C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo
C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo
HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
C:\Windows\Installer\b0416.msi =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EliteUnzip_RASAPI32 =>PUP.Optional.MyWebSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\EliteUnzip_RASMANCS =>PUP.Optional.MyWebSearch

---\\ Récapitulatif des éléments trouvées sur votre station (48) - 0s
http://www.nicolascoolman.fr/blog =>PUP.Optional.IQIYIVideo
http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.Tortuga
http://www.nicolascoolman.fr/pup-ytdownloader/ =>PUP.Optional.YTDownloader
http://www.nicolascoolman.fr/blog =>PUP.Optional.FastSearch
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>Heuristic.PullUpdate
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/blog =>PUP.Optional.Abengine
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/blog =>PUP.Optional.MaxComputerCleaner
http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/pup-smartwebsearch/ =>PUP.Optional.SmartWebSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.Graftor
http://www.nicolascoolman.fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup
http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware
http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug
http://www.nicolascoolman.fr/blog =>PUP.Optional.YouTubeAdBlock
http://www.nicolascoolman.fr/blog =>PUP.Optional.PepperZip
http://www.nicolascoolman.fr/blog =>PUP.Optional.SuperOptimizer
http://www.nicolascoolman.fr/blog =>PUP.Optional.SpeedBrowser
http://www.nicolascoolman.fr/blog =>PUP.Optional.ZombieInvasion
http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay
http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Optional.Systweak
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserHelper
http://www.nicolascoolman.fr/blog =>.Legitimate.CrashReports
http://www.nicolascoolman.fr/adware-installpedia/ =>PUP.Optional.InstallPedia
http://www.nicolascoolman.fr/pup-advancedsystemprotector/ =>PUP.Optional.AdvancedSystemProtector
http://www.nicolascoolman.fr/blog =>PUP.Optional.WebBar
http://www.nicolascoolman.fr/pup-bubbledock/ =>PUP.Optional.BubbleDock
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse
http://www.nicolascoolman.fr/blog =>PUP.Optional.MovieDea
http://www.nicolascoolman.fr/blog =>PUP.Optional.PriceLess
http://www.nicolascoolman.fr/rogue-reimagerepair/ =>PUP.Optional.ReImageRepair
http://www.nicolascoolman.fr/blog =>PUP.Optional.Shopperz
http://www.nicolascoolman.fr/pup-vuupc/ =>PUP.Optional.VuuPC
http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional.FlowSurf
http://www.nicolascoolman.fr/blog =>PUP.Optional.FriendlyError
http://www.nicolascoolman.fr/pup-objectbrowser/ =>PUP.Optional.ObjectBrowser
http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart
http://www.nicolascoolman.fr/adware-mywebsearch/ =>PUP.Optional.MyWebSearch

~ End of the scan, 32398 items in 475 seconds (956)(0)()

Publicité


Signaler le contenu de ce document

Publicité