cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.19.121 Par Nicolas Coolman (2015/08/19)
~ Démarré par YOUSSEF (Administrator) (2015/08/19 18:21:41)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\YOUSSEF\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\YOUSSEF\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10240)

---\\ Navigateurs Internet (4) - 0s
GCIE: Google Chrome v44.0.2403.155
MFIE: Mozilla Firefox 37.0.2 (x86 fr) v37.0.2
OPIE: Opera 31.0.1889.99 v31.0.1889.99
MSIE: Internet Explorer v11.0.10240.16384

---\\ Informations sur les produits Windows (9) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 8HVX7
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 2s
Malwarebytes Anti-Malware version 2.1.8.1057
Windows Defender W10 (Deactivate)

---\\ Logiciels d'optimisation (1) - 2s
CCleaner v5.05

---\\ Surveillance de Logiciels (2) - 2s
Adobe Flash Player 18 PPAPI
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 16657.252 MB (74% free)
~ System Restore: Activé (Enable)
~ System drive C: has 9 GB free of 109 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: YOUSSEF-PC
~ User Name: YOUSSEF
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 9 GB free of 109 GB (System)
~ Drive D: has 417 GB free of 476 GB
~ Drive E: has 437 GB free of 476 GB

---\\ Etat du Centre de Sécurité Windows (9) - 1s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (23) - 0s
[MD5.6E756C33B5ECBD96756086A34D9A90DC] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [4532304]
[MD5.5DED2A3F11AE916C8F2724947E736261] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [59392]
[MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [290312]
[MD5.FE32B8423711B4B4378C0BA3C3560ED4] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2741760]
[MD5.26EFEFD877A84EE9FBDE6DEE630892C9] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [578048]
[MD5.ECB1943967424DFB96E03F6A098434EF] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [430592]
[MD5.8C795953726C7D2DE72CE4748208C5ED] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480]
[MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [577888]
[MD5.8921DF6060DB5C7700AA48CB12E9EA08] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [28512]
[MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672]
[MD5.CA160E02F35A61C6F5C681FB4669C519] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080]
[MD5.25435407D97419627F4B10653433BF2B] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [138240]
[MD5.C277A49F8A8295840DEBC9240B75A282] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896]
[MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688]
[MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [143360]
[MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232]
[MD5.F0D791348AD254360CC3C3E501CCB745] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [273408]
[MD5.466EC5659C02ED53DBD47DC1BC2B8086] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448]
[MD5.38F1AE32339731F6E5A7281AE8042545] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [96768]
[MD5.CA60F6C03611AF1710BC903ED9F566FB] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960]
[MD5.A32AED8C644734B283A7C9D08D76064D] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128]
[MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [116576]
[MD5.823A237D871CD652C6BFD47BECB6810A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [378720]

---\\ Processus lancés (92) - 3s
[MD5.1B44B5244EAF26BEC315AE84B0AFFC66] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) -- C:\WINDOWS\system32\nvvsvc.exe [937616] [PID.1056]
[MD5.AC4F72ABB5ED596A0F3D9D1EDDC4B27C] - (.Intel Corporation - igfxCUIService Module.) -- C:\WINDOWS\system32\igfxCUIService.exe [351120] [PID.1168]
[MD5.DB1EC96C28212D0EAE597317EEFF6D67] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1253008] [PID.1396]
[MD5.1B44B5244EAF26BEC315AE84B0AFFC66] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) -- C:\WINDOWS\system32\nvvsvc.exe [937616] [PID.1404]
[MD5.564CB886D1A968B9798C1AB03F4EB54F] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [115512] [PID.1752]
[MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1764]
[MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2056]
[MD5.B52F9B2C63DF84B58E59016FE25648C0] - (.Autodesk, Inc. - AutoCAD component.) -- C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160] [PID.2072]
[MD5.ADC420616C501B45D26C0FD3EF1E54E4] - (.ArcSoft Inc. - ArcSoft Connect Service.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152] [PID.2080]
[MD5.92880AD7202BBED3047B89E543D3B178] - (...) -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp [137728] [PID.2088] =>PUP.Optional.CrossRider
[MD5.9AD736D2CFB4159930D6FEC2B199B721] - (.Connectify - .) -- C:\Program Files (x86)\Connectify\ConnectifyService.exe [217088] [PID.2096]
[MD5.DB5610839DBEBE48AA963DFA96FD7103] - (.ASUS Cloud Corporation - Asus WebStorage Windows Service.) -- C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [71168] [PID.2104]
[MD5.CBDF353624D1744734F2FD13B4786F90] - (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944] [PID.2136]
[MD5.C5323F961012E91A9E4BF4FF377655F3] - (...) -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp [209920] [PID.2284] =>PUP.Optional.CrossRider
[MD5.FF2B5BD81696966524816D4AEC6D93B9] - (.Copyright © 2015 - .) -- C:\Program Files\igfx32\igfx32.exe [379904] [PID.2324]
[MD5.FDEBB26E388550F77282B85BE3A14B0A] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Program Files\Elantech\ETDService.exe [147688] [PID.2332]
[MD5.6136907233F1939653BD219A493D0D58] - (...) -- C:\ProgramData\RajxeNerm\rikaofi.exe [124888] [PID.2340]
[MD5.F07F814FF63E42C2FB1EE9344012A435] - (.ASUSTek Computer Inc. - Driver MFT Service.) -- C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe [9728] [PID.2348]
[MD5.812400977140134B25074657B0C4F06A] - (...) -- C:\Users\YOUSSEF\AppData\Local\ADACEBF9-1440005647-3C40-857E-54A0508CAE42\snsxDA43.tmp [120832] [PID.2356] =>PUP.Optional.CrossRider
[MD5.42071F6E918FB4B07529B3E68D07028F] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) -- C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121288] [PID.2364]
[MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.2372]
[MD5.55FC14B287C6FF306C32B42628CE0D8C] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656] [PID.2388]
[MD5.1234BB5F8C7EC1E52F32A3EBF65F52EA] - (.pdfforge GmbH - PDF Architect 3.) -- C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [740568] [PID.2628]
[MD5.DCAA93D28D6FC75A4D80AE410008BA90] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008] [PID.2644]
[MD5.A9D14EDD8255B3B2E4918440F7B314C3] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.2656]
[MD5.EA268FDA5D1E5BA27E269B29F9041CF0] - (. - xrc.) -- C:\Users\YOUSSEF\AppData\Local\Stripin.exe [53760] [PID.2704]
[MD5.994981721AAB6A0D30AE0148D5A4AE47] - (...) -- C:\ProgramData\RajxeNerm\rikwofi.exe [124888] [PID.2820]
[MD5.22AA54FE5895DC445B95B7951BA9819D] - (.Connectify - Connectify Daemon Service.) -- C:\Program Files (x86)\Connectify\ConnectifyD.exe [3832568] [PID.2932]
[MD5.9FD4560FC7D25C90B1C208152F1EE8B1] - (...) -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs [760832] [PID.3064] =>PUP.Optional.CrossRider
[MD5.493BB6A50ECD60399EF4602E0EB45896] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7902864] [PID.2924]
[MD5.6A80F5C61899D79B755BC41E0C48E793] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [303928] [PID.1832]
[MD5.A9D14EDD8255B3B2E4918440F7B314C3] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.3884]
[MD5.950FAF6A5D98D25D96F9FD53B66B79FD] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [3350760] [PID.3660]
[MD5.D1E84FD391C747745B8B33769749256C] - (.Cinema Plus ProV19.08 - Cinem Plus 2.4cV19.08 exe.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10.exe [1530960] [PID.5196]
[MD5.0AB3840675DEF157D7B53281CCBCDA09] - (.Cinema Plus ProV19.08 - Cinem Plus 2.4cV19.08 exe.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14.exe [1544784] [PID.5232]
[MD5.D7C763585907733B9F97E08914AF3F9E] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [58440] [PID.5292]
[MD5.7FE8B062831F9280A96199964242619A] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19723888] [PID.5304]
[MD5.4F870EF9292559AB9DE6F31527A1DCBF] - (.ASUSTek Computer Inc. - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113312] [PID.5508]
[MD5.7C1954CE46AD478C718BF767712C8B2D] - (.Cinema Plus ProV19.08 - Cinem Plus 2.4cV19.08 exe.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6.exe [1518160] [PID.5572]
[MD5.0AB3840675DEF157D7B53281CCBCDA09] - (.Cinema Plus ProV19.08 - Cinem Plus 2.4cV19.08 exe.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6.exe [1544784] [PID.5752]
[MD5.CFAC0D3B76F75709B03360FDF910CF21] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [406328] [PID.5368]
[MD5.A1AAE034B1C463FDC571ADAB950C50D7] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [209720] [PID.6104]
[MD5.F1DEA3FB0F1686733B474DDE83954BE3] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2580200] [PID.6116]
[MD5.6454CCB70AAA1487F779F31E37C14B13] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\system32\igfxEM.exe [328080] [PID.5348]
[MD5.0B1B96CB8A81514B552F214436C89D88] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\system32\igfxHK.exe [249232] [PID.5224]
[MD5.D9133D4157664B1E2ACFC2CD56CCB599] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704] [PID.6912]
[MD5.7A9750497605E6568D540E125679BD69] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [365880] [PID.7884]
[MD5.2542F5B2419070FC2175888C42850060] - (...) -- C:\ProgramData\RajxeNerm\rik6ofi.exe [118272] [PID.8064]
[MD5.3244E954707B649F16ECB3D94CE56600] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2447688] [PID.8096]
[MD5.6118F4A23DA74C7B31A53FE3AFC94295] - (...) -- C:\ProgramData\RajxeNerm\rik3ofi.exe [98816] [PID.3980]
[MD5.FB3D90662AC791107A6E350F31974BB1] - (.Connectify - Connectify Hotspot.) -- C:\Program Files (x86)\Connectify\Connectify.exe [4160000] [PID.7828]
[MD5.08AB0163DA5ACC8E6165A4C0CAA473CD] - (...) -- C:\ProgramData\RajxeNerm\rikdofi.exe [382976] [PID.5352]
[MD5.29745BDA6C3E81D38B027C26C3540330] - (...) -- C:\Windows\System32\cpuminer-gw64.exe [4268096] [PID.8664]
[MD5.AB9990DB80EA3DAC0EAE50C906EF7ECA] - (.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe [1693024] [PID.9284]
[MD5.C81F59B7D524FB462F73B27757084618] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8204056] [PID.9392]
[MD5.A93081C475071AD9AFD82280B95DE923] - (.WIBU-SYSTEMS AG - WkSvMgr.) -- C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe [6580080] [PID.9764]
[MD5.A7810B302294793DE88542AAE177D1B1] - (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424] [PID.9840]
[MD5.F400694D7D2785F60133C20F7F2F4F7A] - (.ArcSoft Inc. - ArcSoft Connect Notifier.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac [309824] [PID.9872]
[MD5.17DC4F47FA704582F01F822B1FDB2128] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\YOUSSEF\AppData\Roaming\Dropbox\bin\Dropbox.exe [39179912] [PID.9948]
[MD5.9582680F41C0C4C6E6A2ACCADD7E723E] - (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Users\YOUSSEF\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe [493960] [PID.2756]
[MD5.34084D25BE6F48D072AA54DE630438FD] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.8468]
[MD5.579FD11E112542A0D5D43838CCA08309] - (.DTools LIMITED - DTools.) -- C:\ProgramData\ZWinManProZ\ProtectWindowsManager.exe [708264] [PID.2740]
[MD5.E315CADAEED4CAB91565C0AA3D5F0592] - (...) -- C:\Program Files (x86)\baidu\pps.exe [77824] [PID.3080]
[MD5.766D92F742823E2AE961801764A8AFCD] - (.Cinema PlusV19.08 - CinemaPlus-3.2cV19.08 exe.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-10.exe [1490000] [PID.10456] =>PUP.Optional.CrossRider
[MD5.57739E742ABC085C2A4340D4404B4A8B] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544] [PID.9760]
[MD5.4B53E6DBDC036C97363E168E04451592] - (.Cinema PlusV19.08 - CinemaPlus-3.2cV19.08 exe.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-6.exe [1274960] [PID.9528] =>PUP.Optional.CrossRider
[MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.8988]
[MD5.E2952760B05A256FB1412D20A41C89C1] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.9136]
[MD5.2A11A82524E909978B819D9A7558C4B8] - (.Cinema PlusV19.08 - CinemaPlus-3.2cV19.08 exe.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-1-6.exe [1334352] [PID.7952] =>PUP.Optional.CrossRider
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.1604]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.6752]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.8924]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.11240]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.232]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.9796]
[MD5.9BE6D4C111015110CFDE2470BFE9F90B] - (.ASUS Cloud Corporation - .) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.0.496\AsusWSPanel.exe [5561128] [PID.7812]
[MD5.ABFF2B3A80AA5348BE5E43EFD6B415D1] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [6554424] [PID.4076]
[MD5.83C982A395D00BAFF6515FB38424EA76] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880] [PID.6340]
[MD5.301E3FDFCF33640BB8763BA444BC5093] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160] [PID.1812]
[MD5.7FB4E7CFABFDC99B88165ECFC0C532C5] - (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamresearch.exe [1947960] [PID.10852]
[MD5.B92A3E99A8ED291379DA7D91422C5490] - (.Tencent - 电脑管家-TAO.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\TAOFrame.exe [293728] [PID.4484] =>PUP.Optional.TencentAddressBar
[MD5.CA60AEFDEEC384D06B45C5B7679E30F2] - (.Tencent - 电脑管家-实时防护服务.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCRTP.exe [297608] [PID.12156] =>PUP.Optional.TencentAddressBar
[MD5.9C6A3B8FA79A10BFEA3A6DD162AD3E6C] - (.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCTray.exe [355296] [PID.1632] =>PUP.Optional.TencentAddressBar
[MD5.16E27465FC02E6974704FD2187E92144] - (.Tencent - 腾讯高速下载引擎.) -- C:\program files (x86)\common files\Tencent\qqdownload\130\tencentdl.exe [1097272] [PID.4044] =>PUP.Optional.TencentAddressBar
[MD5.DEE34F38EB9C450D451AA4A891585FC0] - (.Tencent - 电脑管家-网络流量监控.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\plugins\QMNetMon\QQPCNetFlow.exe [1186144] [PID.11300] =>PUP.Optional.TencentAddressBar
[MD5.81C8BB74F949DC33DC14F41B0F6F39B0] - (.Tencent - 电脑管家-小火箭.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCRealTimeSpeedup.exe [571872] [PID.13284] =>PUP.Optional.TencentAddressBar
[MD5.F2154AD66B0E75FF4F4CE0717C063F38] - (.Tencent - 电脑管家-模块升级.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCPatch.exe [436704] [PID.10928] =>PUP.Optional.TencentAddressBar
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.13208]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.10076]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.6776]
[MD5.E0A3E3BC4E710FEB0AE037475BD7A4CF] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\YOUSSEF\Downloads\ZHPDiag3.exe [1894400] [PID.11592]
[MD5.F820401D0D2754C3A78C707927058A41] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.1492]

---\\ Google Chrome, Démarrage,Recherche,Extensions (6) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr/
G2 - GCE: Preference [User Data\Default] [cmedhionkhpnakcndndgjdbohmhepckk] __MSG_extension_name__
G2 - GCE: Preference [User Data\Default] [gegdfeiahlfolhcfioipjlkombmgbakh] Cinem Plus 2.4cV19.08
G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [papbadoldddalgcjcicnikcfenodpghp] CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (27) - 2s
M0 - MFSP: prefs.js [YOUSSEF - kz1zjdyy.default] http://www.mystartsearch.com/?type=hp&ts=1439998921&z=37b8b1b08c237a3eff0a446g7z8c4tat1tdb4bfgft&from=cmi&uid=SanDiskXSD7SB3Q128G1002_150245402867 =>PUP.Optional.StartSearch
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\firefox@mega.co.nz.xpi
P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\searchplugins\mystartsearch.xml =>PUP.Optional.StartSearch
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - EXT: (.Cinema Plus ProV19.08 - Cinem Plus 2.4cV19.08.) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\6a1a03975fde4c8690f6b883c36bc1@7d88519bfe704d8cae3851239.com
P2 - EXT: (.Cinema PlusV19.08 - CinemaPlus-3.2cV19.08.) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\d4db60df25f14dae9dd18@185c395f9e794c9ab86be3eb.com
P2 - EXT: (.roc - Default SearchProtected .) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\defsearchp@gmail.com
P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
P2 - FPN: [HKCU] [@iqiyi.com/npWebPlayer] - (.pps-webplayer-plugin.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\YOUSSEF\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@iqiyi.com/npWebPlayer] - (.pps-webplayer-plugin.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo
P2 - FPN: [HKLM] [@qq.com/QQPCMgr] - (.Tencent Technology (Shenzhen) Company Limited.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\npQMExtensionsMozilla.dll =>PUP.Optional.TencentAddressBar
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate

---\\ Opera, Démarrage,Recherche,Plugins (2) - 0s
B2 - EXT: [Cinem Plus 2.4cV19.08] C:\Users\YOUSSEF\AppData\Roaming\Opera Software\Opera Stable\Extensions\gegdfeiahlfolhcfioipjlkombmgbakh
B2 - EXT: [CinemaPlus-3.2cV19.08] C:\Users\YOUSSEF\AppData\Roaming\Opera Software\Opera Stable\Extensions\papbadoldddalgcjcicnikcfenodpghp

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (24) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (1) - 0s
O2 - BHO: TSWebMon [64Bits] - {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} . (.Tencent - 电脑管家-网页防火墙.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\TSWebMon64.dat =>PUP.Optional.TencentAddressBar

---\\ Applications lancées au démarrage du système (32) - 2s
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
O4 - HKLM\..\Run: [Connectify Hotspot] . (.Connectify - Connectify Hotspot.) -- C:\Program Files (x86)\Connectify\Connectify.exe
O4 - HKLM\..\Run: [ETDCtrl] %ProgramFiles%\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [gpuminer] . (...) -- C:\Users\YOUSSEF\AppData\Roaming\cpuminer\sgminer\sgminer.cmd
O4 - HKLM\..\Run: [cpuminer] . (...) -- C:\WINDOWS\system32\cpuminer-gw64.exe
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_3EDD7D50BE92A56FF0F51CDACBF4D2E4] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKCU\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\OneDrive.exe
O4 - HKCU\..\Run: [apphide] . (...) -- C:\Program Files (x86)\baidu\pps.exe
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe
O4 - HKLM\..\Wow6432Node\Run: [WebStorage] . (...) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.0.496\ASUSWSLoader.exe
O4 - HKLM\..\Wow6432Node\Run: [ArcSoft Connection Service] . (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [ADSKAppManager] . (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe
O4 - HKLM\..\Wow6432Node\Run: [AdobeCEPServiceManager] . (.Adobe Systems Incorporated - Adobe CEP Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe
O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [ QQPCTray] . (.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCTray.exe =>PUP.Optional.TencentAddressBar
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe
O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [GoogleChromeAutoLaunch_3EDD7D50BE92A56FF0F51CDACBF4D2E4] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe
O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe
O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\OneDrive.exe
O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [apphide] . (...) -- C:\Program Files (x86)\baidu\pps.exe
O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\RunOnce: [Uninstall C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe

---\\ Modification Domaine/Adresses DNS (8) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 52.18.92.32,8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 169.254.18.38
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 52.18.92.32,8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 169.254.18.38
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1

---\\ Liste des services NT non Microsoft et non désactivés (37) - 2s
O23 - Service: ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc. - ArcSoft Connect Service.) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Autodesk Application Manager Service (AdAppMgrSvc) . (.Autodesk Inc. - Autodesk Application Manager.) - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
O23 - Service: Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation - Asus WebStorage Windows Service.) - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc. - AutoCAD component.) - C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
O23 - Service: File Size Charger (cobomiku) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp =>PUP.Optional.CrossRider
O23 - Service: Connectify (Connectify) . (.Connectify - .) - C:\Program Files (x86)\Connectify\ConnectifyService.exe
O23 - Service: DriverMFTService (DriverMFTService) . (.ASUSTek Computer Inc. - Driver MFT Service.) - C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe
O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate
O23 - Service: Kerning Down (gopibeko) . (...) - C:\Users\YOUSSEF\AppData\Local\ADACEBF9-1440005647-3C40-857E-54A0508CAE42\snsxDA43.tmp =>PUP.Optional.CrossRider
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: hutneosa (hutneosa) . (...) - C:\ProgramData\RajxeNerm\rikaofi.exe
O23 - Service: Key In Bold Italic (hyverumu) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp =>PUP.Optional.CrossRider
O23 - Service: Intel Bluetooth Service (iBtSiva) . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
O23 - Service: igfx UI Service (igfx32) . (.Copyright © 2015 - .) - C:\Program Files\igfx32\igfx32.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: (MBAMScheduler) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) - C:\WINDOWS\system32\nvvsvc.exe
O23 - Service: PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH - PDF Architect 3.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
O23 - Service: Home-Fax (produatpzo) . (. - xrc.) - C:\Users\YOUSSEF\AppData\Local\Stripin.exe
O23 - Service: QQPCMgr RTP Service (QQPCRTP) . (.Tencent - 电脑管家-实时防护服务.) - C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCRTP.exe =>PUP.Optional.TencentAddressBar
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: CamMonitor (uCamMonitor) . (.ArcSoft, Inc. - MgiSvr.) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
O23 - Service: utimcuca (utimcuca) . (...) - C:\ProgramData\RajxeNerm\rikwofi.exe
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED - DTools.) - C:\ProgramData\ZWinManProZ\ProtectWindowsManager.exe =>PUP.Optional.Fuyu
O23 - Service: Forename Tools (zytecuhe) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs =>PUP.Optional.CrossRider

---\\ Tâches planifiées en automatique (137) - 7s
[MD5.AA05E636A09DE188D3316DC1445258D0] [APT] [483D9590-42DB-4BAD-88FD-9ADA924A951] (...) -- C:\Users\YOUSSEF\AppData\Local\483D9590-42DB-4BAD-88FD-9ADA924A951\483D9590-42DB-4BAD-88FD-9ADA924A951.exe [1964104] =>Heuristic.Graftor
[MD5.0AB3840675DEF157D7B53281CCBCDA09] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6.exe [1544784]
[MD5.D9F7CBAFF796BB739DB33B4573002D65] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7.exe [1033296]
[MD5.D1E84FD391C747745B8B33769749256C] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10_user] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10.exe [1530960]
[MD5.382780402657EEDA54CF8AAC0F496C87] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11.exe [1475664]
[MD5.D9F7CBAFF796BB739DB33B4573002D65] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13.exe [1033296]
[MD5.0AB3840675DEF157D7B53281CCBCDA09] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14.exe [1544784]
[MD5.382780402657EEDA54CF8AAC0F496C87] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3.exe [1475664]
[MD5.5ECD3277A752DB6E31F2DE983693C8E5] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4.exe [1492560]
[MD5.0D6E758F59A2E9DE9E6813845587C97A] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5.exe [1090128]
[MD5.0D6E758F59A2E9DE9E6813845587C97A] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5_user] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5.exe [1090128]
[MD5.7C1954CE46AD478C718BF767712C8B2D] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6.exe [1518160]
[MD5.D9F7CBAFF796BB739DB33B4573002D65] [APT] [84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7] (.Cinema Plus ProV19.08.) -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7.exe [1033296]
[MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104]
[MD5.0FBC0E179CA71FAD0832FF479439BFFB] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [1156296]
[MD5.BBF37D81780EBB4919636CF7E5C789BE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000]
[MD5.00000000000000000000000000000000] [APT] [APSnotifierPP1] (...) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect
[MD5.00000000000000000000000000000000] [APT] [APSnotifierPP2] (...) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect
[MD5.00000000000000000000000000000000] [APT] [APSnotifierPP3] (...) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect
[MD5.AB6818A7FF17230A6E5119F6CDD1F85B] [APT] [AR28Bjeu] (.Copyright 2001.) -- C:\Users\YOUSSEF\AppData\Roaming\AR28Bjeu.exe [1246720] =>PUP.Optional.CrossRider
[MD5.761986319F4F6EDB33B3F046D254C781] [APT] [ASUS Live Update1] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2998552]
[MD5.761986319F4F6EDB33B3F046D254C781] [APT] [ASUS Live Update2] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2998552]
[MD5.978842E6FD1592812F85391AB44A50F3] [APT] [ASUS Smart Gesture Launcher] (.AsusTek.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [18232]
[MD5.D7C763585907733B9F97E08914AF3F9E] [APT] [ASUS Splendid ACMON] (.ASUS.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [58440]
[MD5.7FE8B062831F9280A96199964242619A] [APT] [ASUS USB Charger Plus] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19723888]
[MD5.140237BA8BD1AAC665893A4A456ABDD9] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3732480] =>HackTool.AutoKMS
[MD5.00000000000000000000000000000000] [APT] [Bidaily Synchronize Task[pr]] (...) -- c:\programdata\{76ea22e4-9e8e-2a92-76ea-a22e49e88b92}\xf-adsk2016_x64.exe (.not file.) [0] =>PUP.Optional.BidailySync
[MD5.1F014EA12ECB13C909DA9395E9CD3D18] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6278424]
[MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core] (.Dropbox, Inc..) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512]
[MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA] (.Dropbox, Inc..) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512]
[MD5.2A11A82524E909978B819D9A7558C4B8] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-1-6] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-1-6.exe [1334352] =>PUP.Optional.CrossRider
[MD5.E7EABF0F0BBAFE93428FF67775889009] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-1-7] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-1-7.exe [1088592] =>PUP.Optional.CrossRider
[MD5.766D92F742823E2AE961801764A8AFCD] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-10_user] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-10.exe [1490000] =>PUP.Optional.CrossRider
[MD5.F3E510C904AE565E612BA35452C32650] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-11] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-11.exe [1411152] =>PUP.Optional.CrossRider
[MD5.F3E510C904AE565E612BA35452C32650] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-3] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-3.exe [1411152] =>PUP.Optional.CrossRider
[MD5.8C77D187B41A1626CB53D8366F29F2AB] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-4] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-4.exe [1286736] =>PUP.Optional.CrossRider
[MD5.0C8F716D0543E3E17F907E70D185C0DE] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-5] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-5.exe [1034320] =>PUP.Optional.CrossRider
[MD5.0C8F716D0543E3E17F907E70D185C0DE] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-5_user] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-5.exe [1034320] =>PUP.Optional.CrossRider
[MD5.4B53E6DBDC036C97363E168E04451592] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-6] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-6.exe [1274960] =>PUP.Optional.CrossRider
[MD5.E7EABF0F0BBAFE93428FF67775889009] [APT] [ff265884-4149-4037-8ed8-9682e7effb7f-7] (.Cinema PlusV19.08.) -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-7.exe [1088592] =>PUP.Optional.CrossRider
[MD5.3C14AAE26EA06BADAC98520773772CEB] [APT] [globalUpdateUpdateTaskMachineCore] (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608] =>PUP.Optional.GlobalUpdate
[MD5.3C14AAE26EA06BADAC98520773772CEB] [APT] [globalUpdateUpdateTaskMachineUA] (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608] =>PUP.Optional.GlobalUpdate
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848]
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA1d08f77cb9ea6cd] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848]
[MD5.AB6818A7FF17230A6E5119F6CDD1F85B] [APT] [Hs3piYsnMms8dKYOpeCLPkerOi] (.Copyright 2001.) -- C:\Users\YOUSSEF\AppData\Roaming\Hs3piYsnMms8dKYOpeCLPkerOi.exe [1246720] =>PUP.Optional.CrossRider
[MD5.3A1D89B89C9D62951957F0839578DD9B] [APT] [r0ayMPGzt3xRaOdH3H] (.Copyright 2001.) -- C:\Users\YOUSSEF\AppData\Roaming\r0ayMPGzt3xRaOdH3H.exe [1579520] =>PUP.Optional.CrossRider
[MD5.3A1D89B89C9D62951957F0839578DD9B] [APT] [TZHGKjrcyRl24U] (.Copyright 2001.) -- C:\Users\YOUSSEF\AppData\Roaming\TZHGKjrcyRl24U.exe [1579520] =>PUP.Optional.CrossRider
[MD5.B5C90CBC7AC91FF982C2C8C71ABBE5EA] [APT] [ASUS\ASUS Product Register Service] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1271424]
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6.job [3164] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7.job [3164] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10_user - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10_user.job [2138] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11.job [5210] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13.job [3498] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14.job [3162] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3.job [4184] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4.job [4520] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5.job [2472] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5_user - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5_user.job [2472] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6.job [5544] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7.job [5544] =>PUP.Optional.CrossRider
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job [1064] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated
O39 - APT: APSnotifierPP1 - (...) -- C:\WINDOWS\Tasks\APSnotifierPP1.job [378] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP2 - (...) -- C:\WINDOWS\Tasks\APSnotifierPP2.job [376] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP3 - (...) -- C:\WINDOWS\Tasks\APSnotifierPP3.job [376] =>PUP.Optional.AnyProtect
O39 - APT: AR28Bjeu - (.Copyright 2001.) -- C:\WINDOWS\Tasks\AR28Bjeu.job [1018] =>PUP.Optional.CrossRider
O39 - APT: Bidaily Synchronize Task[pr] - (...) -- C:\WINDOWS\Tasks\Bidaily Synchronize Task[pr].job [370] =>PUP.Optional.BidailySync
O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core.job [1174] =>.Dropbox, Inc.
O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA.job [1226] =>.Dropbox, Inc.
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-1-6 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-6.job [3164] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-1-7 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-7.job [3164] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-10_user - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-10_user.job [2138] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-11 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-11.job [5210] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-3 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-3.job [4184] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-4 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-4.job [4520] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-5 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5.job [2472] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-5_user - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5_user.job [2472] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-6 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-6.job [5544] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-7 - (.Cinema PlusV19.08.) -- C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-7.job [5544] =>PUP.Optional.CrossRider
O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job [996] =>PUP.Optional.GlobalUpdate
O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job [1000] =>PUP.Optional.GlobalUpdate
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1094] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1098] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA1d08f77cb9ea6cd - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f77cb9ea6cd.job [1098] =>.Google Inc.
O39 - APT: Hs3piYsnMms8dKYOpeCLPkerOi - (.Copyright 2001.) -- C:\WINDOWS\Tasks\Hs3piYsnMms8dKYOpeCLPkerOi.job [1054] =>PUP.Optional.CrossRider
O39 - APT: r0ayMPGzt3xRaOdH3H - (.Copyright 2001.) -- C:\WINDOWS\Tasks\r0ayMPGzt3xRaOdH3H.job [1038] =>PUP.Optional.CrossRider
O39 - APT: TZHGKjrcyRl24U - (.Copyright 2001.) -- C:\WINDOWS\Tasks\TZHGKjrcyRl24U.job [1030] =>PUP.Optional.CrossRider
O39 - APT: 483D9590-42DB-4BAD-88FD-9ADA924A951 - (...) -- C:\WINDOWS\System32\Tasks\483D9590-42DB-4BAD-88FD-9ADA924A951 [4410] =>Heuristic.Graftor
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6 [6284] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7 [6284] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10_user - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10_user [5326] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11 [8328] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13 [6676] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14 [6340] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3 [7300] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4 [7636] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5 [5588] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5_user - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5_user [5658] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6 [8660] =>PUP.Optional.CrossRider
O39 - APT: 84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7 - (.Cinema Plus ProV19.08.) -- C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7 [8660] =>PUP.Optional.CrossRider
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3996] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier [4204] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] =>.Adobe Systems Incorporated
O39 - APT: APSnotifierPP1 - (...) -- C:\WINDOWS\System32\Tasks\APSnotifierPP1 [2876] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP2 - (...) -- C:\WINDOWS\System32\Tasks\APSnotifierPP2 [2874] =>PUP.Optional.AnyProtect
O39 - APT: APSnotifierPP3 - (...) -- C:\WINDOWS\System32\Tasks\APSnotifierPP3 [2874] =>PUP.Optional.AnyProtect
O39 - APT: AR28Bjeu - (.Copyright 2001.) -- C:\WINDOWS\System32\Tasks\AR28Bjeu [4140] =>PUP.Optional.CrossRider
O39 - APT: ASUS Live Update1 - (.ASUSTeK Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS Live Update1 [3544] =>.ASUSTeK Computer Inc.
O39 - APT: ASUS Live Update2 - (.ASUSTeK Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS Live Update2 [3534] =>.ASUSTeK Computer Inc.
O39 - APT: ASUS Smart Gesture Launcher - (.AsusTek.) -- C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher [3628] =>.AsusTek
O39 - APT: ASUS Splendid ACMON - (.ASUS.) -- C:\WINDOWS\System32\Tasks\ASUS Splendid ACMON [3096] =>.ASUS
O39 - APT: ASUS USB Charger Plus - (.ASUSTek Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS USB Charger Plus [3026] =>.ASUSTek Computer Inc.
O39 - APT: AutoKMS - (.CODYQX4.) -- C:\WINDOWS\System32\Tasks\AutoKMS [3802] =>HackTool.AutoKMS
O39 - APT: Bidaily Synchronize Task[pr] - (...) -- C:\WINDOWS\System32\Tasks\Bidaily Synchronize Task[pr] [3372] =>PUP.Optional.BidailySync
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2908] =>.Piriform Ltd
O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core [3910] =>.Dropbox, Inc.
O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA [4290] =>.Dropbox, Inc.
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-1-6 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-6 [6284] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-1-7 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-7 [6284] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-10_user - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-10_user [5326] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-11 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-11 [8328] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-3 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-3 [7300] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-4 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-4 [7636] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-5 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5 [5588] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-5_user - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5_user [5658] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-6 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-6 [8660] =>PUP.Optional.CrossRider
O39 - APT: ff265884-4149-4037-8ed8-9682e7effb7f-7 - (.Cinema PlusV19.08.) -- C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-7 [8660] =>PUP.Optional.CrossRider
O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore [3838] =>PUP.Optional.GlobalUpdate
O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA [4070] =>PUP.Optional.GlobalUpdate
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3944] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4180] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA1d08f77cb9ea6cd - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d08f77cb9ea6cd [4180] =>.Google Inc.
O39 - APT: Hs3piYsnMms8dKYOpeCLPkerOi - (.Copyright 2001.) -- C:\WINDOWS\System32\Tasks\Hs3piYsnMms8dKYOpeCLPkerOi [4214] =>PUP.Optional.CrossRider
O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for YOUSSEF-PC-YOUSSEF YOUSSEF-PC [5226]
O39 - APT: r0ayMPGzt3xRaOdH3H - (.Copyright 2001.) -- C:\WINDOWS\System32\Tasks\r0ayMPGzt3xRaOdH3H [4180] =>PUP.Optional.CrossRider
O39 - APT: TZHGKjrcyRl24U - (.Copyright 2001.) -- C:\WINDOWS\System32\Tasks\TZHGKjrcyRl24U [4166] =>PUP.Optional.CrossRider

---\\ Logiciels installés (148) - 10s
O42 - Logiciel: Package de pilotes Windows - ASUS (ATP) Mouse (06/17/2015 1.0.0.262) - (.ASUS.) [HKLM][64Bits] -- 14588A15B66655338DBCC021FFA81E31DC281859
O42 - Logiciel: Windows Driver Package - ASUS (ATP) Mouse (03/17/2014 1.0.0.207) - (.ASUS.) [HKLM][64Bits] -- AA2CC56D4BBEE037DC99871F5F6551133D2A0CC3
O42 - Logiciel: Artlantis Studio 5.1.2.5 (64 bit) - (.Abvent R&D.) [HKLM][64Bits] -- Artlantis Studio 5 (64 bit)
O42 - Logiciel: Autodesk AutoCAD 2016 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- AutoCAD 2016 - Français (French)
O42 - Logiciel: Autodesk 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk 3ds Max 2015
O42 - Logiciel: Autodesk Content Service - (.Autodesk.) [HKLM][64Bits] -- Autodesk Content Service
O42 - Logiciel: Autodesk DirectConnect 2015 64-bit - (.Autodesk.) [HKLM][64Bits] -- Autodesk DirectConnect 2015 64-bit
O42 - Logiciel: Autodesk ReCap 2016 - (.Autodesk.) [HKLM][64Bits] -- Autodesk ReCap 2016
O42 - Logiciel: Autodesk Revit Architecture 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk Revit Architecture 2015
O42 - Logiciel: Autodesk Revit Architecture Content Libraries 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk Revit Architecture Content Libraries 2015
O42 - Logiciel: Autodesk Revit Interoperability for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk Revit Interoperability for 3ds Max 2015
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: Connectify 2015 - (.Connectify.) [HKLM][64Bits] -- Connectify
O42 - Logiciel: CPU Miner - (.Open Source.) [HKLM][64Bits] -- cpuminer
O42 - Logiciel: ELAN Touchpad 15.8.4.3_X64_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech
O42 - Logiciel: Lumion 5.0 - (.Act-3D B.V..) [HKLM][64Bits] -- Lumion 5.0_is1
O42 - Logiciel: V-Ray for 3dsmax 2015 for x64 - (.Chaos Software Ltd.) [HKLM][64Bits] -- V-Ray for 3dsmax 2015 for x64
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}
O42 - Logiciel: WibuKey Setup (WibuKey Remove) - (.WIBU-SYSTEMS AG.) [HKLM][64Bits] -- {00060000-0000-1004-8002-0000C06B5161}
O42 - Logiciel: Autodesk Revit Interoperability for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {0BB716E0-1500-0610-0000-097DC2F354DF}
O42 - Logiciel: Autodesk BIM 360 Revit 2015 Add-in 64 bit - (.Autodesk.) [HKLM][64Bits] -- {37E1C3A1-7DBF-4250-9314-46167B68383D}
O42 - Logiciel: ASUS Video DSP - (.ASUS.) [HKLM][64Bits] -- {46E0F6B1-3061-46C0-9184-6D8D5A0A621D}
O42 - Logiciel: Autodesk Network License Manager - (.Autodesk.) [HKLM][64Bits] -- {4BE91685-1632-47FC-B563-A8A542C6664C}
O42 - Logiciel: Autodesk BIM 360 Glue AutoCAD 2016 Add-in 64 bit - (.Autodesk.) [HKLM][64Bits] -- {4BEE127E-95C4-434D-ABAC-65155192BB24}
O42 - Logiciel: Autodesk 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {52B37EC7-D836-0410-0264-3C24BCED2010}
O42 - Logiciel: AutoCAD 2016 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-F001-040C-2102-0060B0CE6BBA}
O42 - Logiciel: Autodesk 3ds Max 2015 Populate Data - (.Autodesk.) [HKLM][64Bits] -- {57E92DED-DC6C-41E5-B9E1-76D83BD2EABE}
O42 - Logiciel: Revit Architecture 2015 - (.Autodesk.) [HKLM][64Bits] -- {7346B4A0-1500-0110-0000-705C0D862004}
O42 - Logiciel: Revit Architecture 2015 Language Pack - English - (.Autodesk.) [HKLM][64Bits] -- {7346B4A0-1500-0111-0409-705C0D862004}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}
O42 - Logiciel: Microsoft Access MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Excel MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft PowerPoint MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Publisher MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Outlook MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Word MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft InfoPath MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft DCF MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft OneNote MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Groove MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0409-1000-0000000FF1CE}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}
O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0117-0409-1000-0000000FF1CE}
O42 - Logiciel: Microsoft Lync MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}
O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{40930C8E-A677-414C-A72F-DFDEB10738FB}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2}
O42 - Logiciel: Autodesk Inventor Server Engine for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {9167CA34-4E48-49E3-8892-3C439739D2D3}
O42 - Logiciel: Revit Architecture Content Libraries 2015 - (.Autodesk.) [HKLM][64Bits] -- {941030D0-1500-0110-0000-818BB38A95FC}
O42 - Logiciel: Autodesk Content Service Language Pack - (.Autodesk.) [HKLM][64Bits] -- {A37CDB58-AAE8-0001-8C13-E0F7BACB0D5F}
O42 - Logiciel: Autodesk Workflows 2015 - (.Autodesk, Inc..) [HKLM][64Bits] -- {A90DD6F8-60D2-4803-AFF6-796400E73E1B}
O42 - Logiciel: NVIDIA Graphics Driver 333.17 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: NVIDIA GeForce Experience 2.4.5.44 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience
O42 - Logiciel: NVIDIA PhysX System Software 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7}
O42 - Logiciel: Autodesk 3ds Max 2016 SDK - (.Autodesk.) [HKLM][64Bits] -- {E0820BD5-930B-43EC-A3C1-2634D38A1931}
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: Adobe Flash Player 18 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI
O42 - Logiciel: AMCap - (.Noël Danjou.) [HKLM][64Bits] -- AMCap
O42 - Logiciel: Autodesk Application Manager - (.Autodesk.) [HKLM][64Bits] -- Autodesk Application Manager
O42 - Logiciel: Cinem Plus 2.4cV19.08 - (.Cinema Plus ProV19.08.) [HKLM][64Bits] -- Cinem Plus 2.4cV19.08
O42 - Logiciel: CinemaPlus-3.2cV19.08 - (.Cinema PlusV19.08.) [HKLM][64Bits] -- CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
O42 - Logiciel: Free All Office Converter Pro 5.8 - (.Word-Pdf-Convert Software, Inc..) [HKLM][64Bits] -- Free All Office Converter Pro_is1
O42 - Logiciel: Friendly Error - (...) [HKLM][64Bits] -- FriendlyError
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: Google Earth Pro 7.1.1.1888 Final - (.Friends in War.) [HKLM][64Bits] -- Google Earth Pro 7.1.1.1888 Final7.1.1.1888
O42 - Logiciel: CyberLink MediaStory - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{55762F9A-FCE3-45d5-817B-051218658423}
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Mozilla Firefox 37.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 37.0.2 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: mystartsearch uninstall - (.mystartsearch.) [HKLM][64Bits] -- mystartsearch uninstall =>PUP.Optional.StartSearch
O42 - Logiciel: Opera Stable 31.0.1889.99 - (.Opera Software.) [HKLM][64Bits] -- Opera 31.0.1889.99
O42 - Logiciel: PDF Architect 3 - (.pdfforge GmbH.) [HKLM][64Bits] -- PDF Architect 3
O42 - Logiciel: Forum Terminal - (.Forum Terminal.) [HKLM][64Bits] -- SoftwareUpdater =>PUP.Optional.SoftwareUpdater
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: Remote Desktop Access (VuuPC) - (.CMI Limited.) [HKLM][64Bits] -- VOPackage =>PUP.Optional.Downware
O42 - Logiciel: WebStorage - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- WebStorage
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Wondershare DVD Slideshow Builder Deluxe(Build 6.2.0.0) - (.Wondershare Software Co.,Ltd..) [HKLM][64Bits] -- Wondershare DVD Slideshow Builder Deluxe_is1
O42 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1
O42 - Logiciel: PDF Architect 3 Convert Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {030F33BF-22CB-4668-85B3-C61AB025A68E}
O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D}
O42 - Logiciel: adblocker - (.adblocker.) [HKLM][64Bits] -- {0BD2877D-739C-474F-88AC-E83884C3089C}
O42 - Logiciel: ASUS Screen Saver - (.ASUS.) [HKLM][64Bits] -- {0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}
O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357
O42 - Logiciel: Device Setup - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {1F07F2C7-596F-4F34-B805-2C61A3E50E5A}
O42 - Logiciel: PDF Settings CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1FBAE18D-4DE4-47AA-83EC-D1B046F262DC}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: Autodesk Material Library 2016 - (.Autodesk.) [HKLM][64Bits] -- {29A7D6EC-63C2-42FD-8143-5812ABD2923F}
O42 - Logiciel: PDF Architect 3 Create Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {38BA288B-C4F4-4C62-9237-4BFAB374F966}
O42 - Logiciel: Autodesk Material Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {427F733F-4D6C-45BC-9324-EB743104C321}
O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357
O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D}
O42 - Logiciel: Autodesk AutoCAD Performance Feedback Tool 1.2.4 - (.Autodesk.) [HKLM][64Bits] -- {4E20873D-BC20-495C-AFD9-B18877B7F9BB}
O42 - Logiciel: Autodesk App Manager 2016 - (.Autodesk.) [HKLM][64Bits] -- {4ECF9E00-2978-46AF-BD80-455EFEAB7A93}
O42 - Logiciel: Autodesk Material Library Low Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {4FBC9635-AC56-4378-8FDE-C4D3ED072681}
O42 - Logiciel: PDF Architect 3 Edit Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {5183F03D-90FA-493B-A074-F0F78B8486AD}
O42 - Logiciel: CyberLink MediaStory - (.CyberLink Corp..) [HKLM][64Bits] -- {55762F9A-FCE3-45d5-817B-051218658423}
O42 - Logiciel: PDF Architect 3 OCR Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {59DD82EB-8F92-42FF-B55E-E14C62911CF6}
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A}
O42 - Logiciel: FARO LS 1.1.502.0 (64bit) - (.FARO Scanner Production.) [HKLM][64Bits] -- {66D83FE0-D798-4B38-86FE-FB48151E5AEF}
O42 - Logiciel: PDF Architect 3 Secure Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {6B47603A-B271-423C-B811-A2D4BE49E965}
O42 - Logiciel: Autodesk Material Library Base Resolution Image Library 2016 - (.Autodesk.) [HKLM][64Bits] -- {6B4CFC6E-ECB0-47FE-95D3-65C680ED0687}
O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DA2B636-698A-3294-BF4A-B5E11B238CDD}.KB958357
O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65}
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476}
O42 - Logiciel: ArcSoft Magic-i Visual Effects 2 - (.ArcSoft.) [HKLM][64Bits] -- {8866BCB3-3818-4C66-83BC-92006B5EFE50}
O42 - Logiciel: FARO LS 1.1.501.0 (64bit) - (.FARO Scanner Production.) [HKLM][64Bits] -- {8A470330-70B2-49AD-86AF-79885EF9898A}
O42 - Logiciel: Autodesk Backburner 2015 - (.Autodesk.) [HKLM][64Bits] -- {8C5F38D2-8EFE-49A4-B3F5-BF3210FED168}
O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}.KB958357
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D}
O42 - Logiciel: Autodesk Advanced Material Library Image Library 2016 - (.Autodesk.) [HKLM][64Bits] -- {94AD53E7-493B-4291-8714-7A3B761D2783}
O42 - Logiciel: Microsoft PowerPoint Viewer - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-0409-0000-0000000FF1CE}
O42 - Logiciel: PDF Split And Merge Basic - (.Andrea Vacondio.) [HKLM][64Bits] -- {9A40D2F8-9458-458B-95E3-B57797C574E1}
O42 - Logiciel: Autodesk Material Library Medium Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {9F6466D9-6EFC-4A10-B931-C72D1A3F1763}
O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}
O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
O42 - Logiciel: Autodesk Material Library Base Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {ABE2F70B-8D94-44E9-AA04-F0DB35063D62}
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215}
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100}
O42 - Logiciel: PDF Architect 3 Review Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {AE15160F-9383-4268-8849-B7D98FD9ABE8}
O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}
O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}.KB958357
O42 - Logiciel: Asus FaceID - (.ASUS.) [HKLM][64Bits] -- {C4071085-DDF0-403F-90F9-27582FC22C9B}
O42 - Logiciel: PDF Architect 3 Forms Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {C48CBC40-678B-4A4D-96B7-3011B6859B4C}
O42 - Logiciel: Importation de SketchUp 2016 - (.Autodesk.) [HKLM][64Bits] -- {C769FB7C-1F55-4B31-9A2A-21CEC50F4F92}
O42 - Logiciel: Applications recommandées Autodesk 2016 - (.Autodesk.) [HKLM][64Bits] -- {D42F37CD-9AF9-4435-A474-B387C5BB6B47}
O42 - Logiciel: PDF Architect 3 Insert Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {E18844B2-D8B0-4AE4-8BE5-6245DD65068B}
O42 - Logiciel: Final Draft - (.Final Draft, Inc..) [HKLM][64Bits] -- {E8FDC52C-83F4-4A0F-AA65-D0E8C0F3302F}
O42 - Logiciel: PDF Architect 3 View Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {EB24E9E7-4BC1-4FD7-BF86-BDE07A7A03D7}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Adobe Illustrator CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {F2321021-08A2-44D6-B1DF-BDB415F23EC3}
O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}.KB958357
O42 - Logiciel: PDF Architect 3 Asian Fonts Pack - (.pdfforge GmbH.) [HKLM][64Bits] -- {F7D1786D-908C-4CE8-A870-0CB29F3C1C43}
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM][64Bits] -- {FC76E6BB-7CBB-4CD6-8178-3BCADC0526C3}
O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU][64Bits] -- Akamai
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox
O42 - Logiciel: GameRanger - (.GameRanger Technologies.) [HKCU][64Bits] -- GameRanger
O42 - Logiciel: StartIsBack+ - (.startisback.com.) [HKCU][64Bits] -- StartIsBack
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent

---\\ HKCU & HKLM Software Keys (170) - 10s
HKLM\SOFTWARE\Wow6432Node\121_31
HKLM\SOFTWARE\Wow6432Node\34c0a551-96ae-4d5b-8083-a0c22f931be7 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\a73a813f-3b57-4580-9717-a3e9d1e42834 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdsFix
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AIM Toolbar
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\ArcSoft
HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\AsLdr
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\Autodesk
HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08
HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\downchecker =>PUP.Optional.DownChecker
HKLM\SOFTWARE\Wow6432Node\ECAREME
HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\Wow6432Node\Foxit Software
HKLM\SOFTWARE\Wow6432Node\g3n-h@ckm@n
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Macrovision
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\PDF Architect 3
HKLM\SOFTWARE\Wow6432Node\PDF Split And Merge Basic
HKLM\SOFTWARE\Wow6432Node\Piriform
HKLM\SOFTWARE\Wow6432Node\PowerPivot
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Generic
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\SpeedBit
HKLM\SOFTWARE\Wow6432Node\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Wow6432Node\sysinternals
HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wondershare
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Abvent
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AdsFix
HKCU\SOFTWARE\Akamai
HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\AR28Bjeu
HKCU\SOFTWARE\ArcSoft
HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\Autodesk
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Cinem Plus 2.4cV19.08
HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\DropboxUpdate
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\Elantech
HKCU\SOFTWARE\Final Draft
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\g3n-h@ckm@n
HKCU\SOFTWARE\GameRanger
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Kromtech
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mootools
HKCU\SOFTWARE\Motion Analysis
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PCPrivacyDockLanguage
HKCU\SOFTWARE\PDF Architect 3
HKCU\SOFTWARE\PDF Split And Merge Basic
HKCU\SOFTWARE\PDF Tools AG
HKCU\SOFTWARE\PDFCreator.net
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\StartIsBack
HKCU\SOFTWARE\SYNCJM
HKCU\SOFTWARE\sysinternals
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TZHGKjrcyRl24U
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WIBU-SYSTEMS
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wondershare
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\MB_temp
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\sialcicotam
HKCU\SOFTWARE\AppDataLow\Software\Unity
HKCU\SOFTWARE\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ =>PUP.Optional.CrossRider

---\\ Contenu des dossiers Programmes (271) - 6s
O43 - CFD: 2015/04/21 14:08:30 - [] D -- C:\Program Files (x86)\1-click run
O43 - CFD: 2015/08/19 17:43:03 - [] D -- C:\Program Files (x86)\3e658ce7-ac10-4c4b-912a-611ea0097a82 =>PUP.Optional.CrossRider
O43 - CFD: 2015/08/19 17:33:49 - [] D -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42 =>PUP.Optional.CrossRider
O43 - CFD: 2015/05/17 17:14:16 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/01/19 21:53:46 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 2015/04/19 14:15:19 - [] D -- C:\Program Files (x86)\ArcSoft
O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 2015/04/24 17:05:42 - [] D -- C:\Program Files (x86)\Autodesk
O43 - CFD: 2015/08/19 17:42:43 - [] D -- C:\Program Files (x86)\baidu
O43 - CFD: 2015/08/19 17:43:03 - [] D -- C:\Program Files (x86)\cc3757cf-d009-47a8-ab94-dc4e1cfb3fe7 =>PUP.Optional.CrossRider
O43 - CFD: 2015/08/19 17:34:34 - [] D -- C:\Program Files (x86)\Cinem Plus 2.4cV19.08
O43 - CFD: 2015/08/19 17:43:31 - [] D -- C:\Program Files (x86)\CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
O43 - CFD: 2015/08/19 18:17:57 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/05/19 18:24:31 - [] D -- C:\Program Files (x86)\Connectify
O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Cyberlink
O43 - CFD: 2015/05/08 19:18:30 - [] D -- C:\Program Files (x86)\Facebook Full size Profile Pictures
O43 - CFD: 2015/08/19 17:30:40 - [] D -- C:\Program Files (x86)\Final Draft 9
O43 - CFD: 2015/07/31 21:33:42 - [] D -- C:\Program Files (x86)\Foxit PhantomPDF
O43 - CFD: 2015/08/19 18:12:03 - [] D -- C:\Program Files (x86)\FriendlyError =>PUP.Optional.FriendlyError
O43 - CFD: 2015/08/19 17:33:39 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/04/18 20:22:44 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/07/31 21:33:44 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/07/31 21:33:45 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/08/10 02:04:28 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/06/01 01:27:33 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/08/19 17:47:31 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2015/05/21 08:32:56 - [] D -- C:\Program Files (x86)\McAfee
O43 - CFD: 2015/01/19 22:03:49 - [] D -- C:\Program Files (x86)\mcafee.com
O43 - CFD: 2015/04/21 14:25:13 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2015/04/21 23:33:44 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET
O43 - CFD: 2015/06/14 17:52:30 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/04/21 14:28:25 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 2015/07/31 21:33:46 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/04/30 16:24:53 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/04/25 10:29:10 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/07/31 22:24:00 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/06/14 17:52:26 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 2015/04/18 21:26:31 - [] D -- C:\Program Files (x86)\Noël Danjou
O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/08/09 13:10:15 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2015/05/19 01:58:11 - [] D -- C:\Program Files (x86)\PCP =>PUP.Optional.PCPrivacyDock
O43 - CFD: 2015/06/29 11:22:56 - [] D -- C:\Program Files (x86)\PDF Architect 3
O43 - CFD: 2015/06/01 01:20:26 - [] D -- C:\Program Files (x86)\PDF Split And Merge Basic
O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2015/07/31 22:24:00 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/07/23 01:02:26 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/01/19 21:55:33 - [0] D -- C:\Program Files (x86)\Temp
O43 - CFD: 2015/08/19 18:17:55 - [] D -- C:\Program Files (x86)\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 2015/04/19 12:38:59 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/05/14 15:15:43 - [] D -- C:\Program Files (x86)\WIBU-SYSTEMS
O43 - CFD: 2015/05/14 15:15:43 - [] D -- C:\Program Files (x86)\WIBUKEY
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2015/07/10 13:04:22 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/07/10 13:04:22 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/10 13:04:22 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2015/04/18 21:27:44 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 2015/05/17 21:58:34 - [] D -- C:\Program Files (x86)\Wondershare
O43 - CFD: 2015/05/12 21:35:19 - [] D -- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/07/10 18:28:37 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Magic-i Visual Effects 2
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Artlantis Studio 5 (64 bit)
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk 3ds Max 2015
O43 - CFD: 2015/07/31 21:33:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk Backburner 2015
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk ReCap 2016
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Connectify 2015
O43 - CFD: 2015/07/31 21:38:40 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink MediaStory
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF
O43 - CFD: 2015/07/31 21:33:50 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/05/19 02:12:07 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lumion 5.0
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/08/19 17:47:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 3
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Split And Merge Basic
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revit Architecture 2015
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/07/31 21:38:40 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/07/10 18:28:36 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
O43 - CFD: 2015/05/19 01:43:23 - [] D -- C:\ProgramData\10089127066734900838
O43 - CFD: 2015/04/21 14:18:42 - [] D -- C:\ProgramData\Abvent
O43 - CFD: 2015/05/17 17:14:19 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/05/04 13:26:26 - [0] D -- C:\ProgramData\ALM
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/04/19 14:19:28 - [] D -- C:\ProgramData\ArcSoft
O43 - CFD: 2015/08/19 17:41:38 - [] D -- C:\ProgramData\ASUS Smart Gesture
O43 - CFD: 2014/10/29 08:25:41 - [] D -- C:\ProgramData\ASUS WebStorage
O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\ASUSLogos
O43 - CFD: 2015/05/22 13:05:46 - [] D -- C:\ProgramData\Autodesk
O43 - CFD: 2015/06/22 23:51:24 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 2015/07/31 21:42:18 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 2015/04/19 12:16:00 - [] D -- C:\ProgramData\Connectify
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/06/17 13:34:51 - [] D -- C:\ProgramData\Dropbox
O43 - CFD: 2015/04/20 12:37:23 - [] D -- C:\ProgramData\FARO
O43 - CFD: 2015/08/19 17:30:40 - [] D -- C:\ProgramData\Final Draft
O43 - CFD: 2015/08/19 17:31:07 - [] D -- C:\ProgramData\FLEXnet
O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 2015/05/19 09:11:51 - [] D -- C:\ProgramData\Intel
O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\Intel.sav
O43 - CFD: 2015/08/19 18:14:32 - [0] D -- C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo
O43 - CFD: 2015/05/10 15:43:37 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2015/07/31 21:42:18 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/07/31 21:33:50 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/08/13 03:52:41 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/08/01 03:22:30 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 2015/04/21 14:26:46 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 2015/07/31 21:42:18 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/04/18 20:46:03 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/07/31 21:29:53 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/06/01 01:27:34 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/04/24 16:35:38 - [] D -- C:\ProgramData\PDF Architect 3
O43 - CFD: 2015/08/19 17:33:17 - [] D -- C:\ProgramData\RajxeNerm
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2015/05/19 09:11:50 - [0] D -- C:\ProgramData\Roaming
O43 - CFD: 2015/07/31 21:30:43 - [] D -- C:\ProgramData\SetupTPDriver
O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/06/01 01:27:46 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/07/31 21:33:51 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/08/19 18:19:40 - [] D -- C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 2015/08/19 18:19:41 - [0] D -- C:\ProgramData\TXQMPC
O43 - CFD: 2015/04/18 22:51:04 - [] D -- C:\ProgramData\USBChargerPlus
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 2014/10/29 08:25:41 - [] D -- C:\ProgramData\WebStorage
O43 - CFD: 2015/07/31 21:33:51 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2015/05/17 21:58:34 - [] D -- C:\ProgramData\Wondershare
O43 - CFD: 2015/08/19 17:43:25 - [] D -- C:\ProgramData\ZWinManProZ
O43 - CFD: 2015/05/17 17:14:10 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/04/19 14:15:20 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft
O43 - CFD: 2015/04/24 17:09:31 - [] D -- C:\Program Files (x86)\Common Files\Autodesk Shared
O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\AWS
O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/07/31 21:29:59 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2015/06/01 01:27:46 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/08/19 17:30:45 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD: 2015/05/21 19:47:50 - [] D -- C:\Program Files (x86)\Common Files\mcafee
O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/04/19 11:41:31 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/08/19 18:17:57 - [] D -- C:\Program Files (x86)\Common Files\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 2015/08/19 17:30:30 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 2015/05/17 21:58:58 - [] D -- C:\Program Files (x86)\Common Files\Wondershare
O43 - CFD: 2015/07/03 01:27:32 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Abvent_Artlantis5
O43 - CFD: 2015/07/03 10:08:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Adobe
O43 - CFD: 2015/08/19 17:43:00 - [] SHD -- C:\Users\YOUSSEF\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect
O43 - CFD: 2015/04/19 14:07:13 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ArcSoft
O43 - CFD: 2015/05/29 11:46:19 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ASUS WebStorage
O43 - CFD: 2015/07/11 19:25:04 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Autodesk
O43 - CFD: 2015/04/22 00:06:38 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\awsRun
O43 - CFD: 2015/08/19 17:33:33 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\cpuminer
O43 - CFD: 2015/08/19 17:42:08 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Dropbox
O43 - CFD: 2015/06/16 14:37:33 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\dvdcss
O43 - CFD: 2015/08/19 17:33:53 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Final Draft
O43 - CFD: 2015/06/27 00:44:28 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Foxit Software
O43 - CFD: 2015/05/21 21:14:36 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\GameRanger
O43 - CFD: 2015/04/27 11:14:33 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Identities
O43 - CFD: 2015/05/19 09:11:50 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\Intel
O43 - CFD: 2015/08/19 18:10:59 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\IQIYI Video =>PUP.Optional.IQIYIVideo
O43 - CFD: 2015/04/18 20:22:47 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Macromedia
O43 - CFD: 2015/07/31 21:40:19 - [] SD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft
O43 - CFD: 2015/04/18 20:46:20 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla
O43 - CFD: 2015/08/19 17:42:22 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch
O43 - CFD: 2015/04/24 22:59:41 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\NVIDIA
O43 - CFD: 2015/04/18 21:49:14 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Opera Software
O43 - CFD: 2015/04/24 16:43:22 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\PDF Architect 3
O43 - CFD: 2015/05/04 00:39:27 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\PDF Producer
O43 - CFD: 2015/08/19 17:44:48 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ppslog
O43 - CFD: 2015/05/16 17:15:57 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Quest3D
O43 - CFD: 2015/07/28 11:17:02 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Skype
O43 - CFD: 2015/06/18 16:26:15 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 2015/08/19 18:13:17 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\systweak =>PUP.Optional.Systweak
O43 - CFD: 2015/08/19 18:18:03 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 2015/08/19 18:22:06 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent
O43 - CFD: 2015/08/19 15:53:58 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\vlc
O43 - CFD: 2015/08/19 17:33:24 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\VOPackage =>PUP.Optional.Downware
O43 - CFD: 2015/06/01 10:09:30 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\WebStorage
O43 - CFD: 2015/05/19 13:17:11 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\WildTangent
O43 - CFD: 2015/04/21 14:11:27 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\WinRAR
O43 - CFD: 2015/08/19 18:21:58 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ZHP
O43 - CFD: 2015/08/19 17:41:56 - [] D -- C:\Users\YOUSSEF\AppData\Local\483D9590-42DB-4BAD-88FD-9ADA924A951
O43 - CFD: 2015/08/19 17:46:05 - [] D -- C:\Users\YOUSSEF\AppData\Local\ADACEBF9-1440005647-3C40-857E-54A0508CAE42
O43 - CFD: 2015/07/22 22:03:35 - [] D -- C:\Users\YOUSSEF\AppData\Local\Adobe
O43 - CFD: 2015/04/18 21:30:24 - [] D -- C:\Users\YOUSSEF\AppData\Local\Akamai
O43 - CFD: 2015/07/31 21:32:03 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\Application Data
O43 - CFD: 2015/04/19 13:56:32 - [] D -- C:\Users\YOUSSEF\AppData\Local\ArcSoft
O43 - CFD: 2015/07/11 19:25:04 - [] D -- C:\Users\YOUSSEF\AppData\Local\Autodesk
O43 - CFD: 2015/07/18 15:06:03 - [] D -- C:\Users\YOUSSEF\AppData\Local\CEF
O43 - CFD: 2015/08/01 03:23:00 - [] D -- C:\Users\YOUSSEF\AppData\Local\Comms
O43 - CFD: 2015/06/17 13:34:52 - [] D -- C:\Users\YOUSSEF\AppData\Local\Dropbox
O43 - CFD: 2015/08/01 12:03:12 - [] D -- C:\Users\YOUSSEF\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/06/10 18:02:36 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/10 18:02:36 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/10 18:02:36 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\EmieUserList
O43 - CFD: 2015/08/19 17:33:39 - [] D -- C:\Users\YOUSSEF\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/08/01 03:22:32 - [] D -- C:\Users\YOUSSEF\AppData\Local\Google
O43 - CFD: 2015/06/03 12:18:47 - [] D -- C:\Users\YOUSSEF\AppData\Local\GWX
O43 - CFD: 2015/07/31 21:32:03 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\Historique
O43 - CFD: 2015/04/19 14:47:08 - [] D -- C:\Users\YOUSSEF\AppData\Local\Macromedia
O43 - CFD: 2015/08/01 11:35:31 - [] D -- C:\Users\YOUSSEF\AppData\Local\Microsoft
O43 - CFD: 2015/04/21 14:25:07 - [0] D -- C:\Users\YOUSSEF\AppData\Local\Microsoft Help
O43 - CFD: 2015/08/01 03:24:42 - [] D -- C:\Users\YOUSSEF\AppData\Local\MicrosoftEdge
O43 - CFD: 2015/04/18 20:46:20 - [] D -- C:\Users\YOUSSEF\AppData\Local\Mozilla
O43 - CFD: 2015/08/01 03:23:01 - [0] D -- C:\Users\YOUSSEF\AppData\Local\NetworkTiles
O43 - CFD: 2015/04/18 21:26:34 - [] D -- C:\Users\YOUSSEF\AppData\Local\Noël Danjou
O43 - CFD: 2015/04/20 10:15:16 - [] D -- C:\Users\YOUSSEF\AppData\Local\NVIDIA
O43 - CFD: 2015/04/20 10:15:35 - [] D -- C:\Users\YOUSSEF\AppData\Local\NVIDIA Corporation
O43 - CFD: 2015/04/18 21:49:14 - [] D -- C:\Users\YOUSSEF\AppData\Local\Opera Software
O43 - CFD: 2015/08/03 15:01:40 - [] D -- C:\Users\YOUSSEF\AppData\Local\Packages
O43 - CFD: 2015/05/19 01:58:59 - [] D -- C:\Users\YOUSSEF\AppData\Local\PC_Privacy_Dock =>PUP.Optional.PCPrivacyDock
O43 - CFD: 2015/06/01 01:25:23 - [] D -- C:\Users\YOUSSEF\AppData\Local\PDFCreator
O43 - CFD: 2015/05/03 22:35:47 - [] D -- C:\Users\YOUSSEF\AppData\Local\Programs
O43 - CFD: 2015/08/01 03:21:05 - [] D -- C:\Users\YOUSSEF\AppData\Local\Publishers
O43 - CFD: 2015/04/18 20:36:19 - [] D -- C:\Users\YOUSSEF\AppData\Local\Skype
O43 - CFD: 2015/04/18 21:22:50 - [] D -- C:\Users\YOUSSEF\AppData\Local\StartIsBack
O43 - CFD: 2015/08/19 17:45:03 - [] D -- C:\Users\YOUSSEF\AppData\Local\SysassistByHotWheel =>PUP.Optional.Generic
O43 - CFD: 2015/08/19 18:22:20 - [] D -- C:\Users\YOUSSEF\AppData\Local\Temp
O43 - CFD: 2015/07/31 21:32:03 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/08/01 03:20:58 - [] D -- C:\Users\YOUSSEF\AppData\Local\TileDataLayer
O43 - CFD: 2015/08/19 17:44:46 - [] D -- C:\Users\YOUSSEF\AppData\Local\Unity
O43 - CFD: 2015/05/09 01:22:35 - [] D -- C:\Users\YOUSSEF\AppData\Local\VirtualRouterPlus
O43 - CFD: 2015/08/19 18:18:11 - [] D -- C:\Users\YOUSSEF\AppData\Local\VirtualStore
O43 - CFD: 2015/05/17 21:58:59 - [] D -- C:\Users\YOUSSEF\AppData\Local\Wondershare
O43 - CFD: 2015/07/31 21:32:14 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/08/01 03:20:58 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/08/16 03:14:25 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMCap
O43 - CFD: 2015/04/21 19:40:48 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
O43 - CFD: 2015/08/11 11:00:48 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs
O43 - CFD: 2015/08/19 18:13:42 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/08/19 17:33:25 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage =>PUP.Optional.Downware
O43 - CFD: 2015/07/10 13:04:45 - [] RSD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 2015/08/19 18:17:56 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件

---\\ Derniers fichiers créés dans Windows Prefetcher (4) - 5s
O45 - LFCP:[MD5.EE562FE88C9AD8BC7E2499AD5C04E82F] 2015/08/19 17:33:41 A -- C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-A6D433B3.pf =>PUP.Optional.GlobalUpdate
O45 - LFCP:[MD5.CC028A4CFBA7809122F6267610D74A68] 2015/08/19 17:47:00 A -- C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-AFA6DA21.pf =>PUP.Optional.GlobalUpdate
O45 - LFCP:[MD5.3C7DA879367194AE6C85AB6BC025FB40] 2015/08/19 18:17:57 A -- C:\WINDOWS\Prefetch\TENCENTDL.EXE-28374EB5.pf =>PUP.Optional.TencentAddressBar
O45 - LFCP:[MD5.6759E754DBD5C0E61B52B08469B52C59] 2015/08/19 18:18:12 A -- C:\WINDOWS\Prefetch\TENCENTDL.EXE-CE7E3EFE.pf =>PUP.Optional.TencentAddressBar

---\\ Liste des pilotes du système (66) - 2s
O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360]
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456]
O58 - SDL:2014/03/27 15:00:12 A . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\WINDOWS\System32\drivers\AiCharger.sys [17152]
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296]
O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424]
O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976]
O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936]
O58 - SDL:2008/04/04 10:10:12 A . (.ArcSoft, Inc. - For X64.) -- C:\WINDOWS\System32\drivers\ArcSoftKsUFilter.sys [19968]
O58 - SDL:2015/05/13 05:44:24 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [19976]
O58 - SDL:2015/06/30 17:14:30 A . (.ASUS Corporation - Asus TP Filter Driver(X64).) -- C:\WINDOWS\System32\drivers\AsusTP.sys [100776]
O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624]
O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296]
O58 - SDL:2015/04/30 10:22:51 A . (.Connectify - NDISRD helper driver.) -- C:\WINDOWS\System32\drivers\cnnctfy3.sys [42152]
O58 - SDL:2015/08/03 13:11:19 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\WINDOWS\System32\drivers\ETD.sys [477784]
O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896]
O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352]
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128]
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608]
O58 - SDL:2014/06/26 04:56:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [670056]
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120]
O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000]
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800]
O58 - SDL:2015/03/20 00:41:08 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) USB Driver.) -- C:\WINDOWS\System32\drivers\ibtusb.sys [253680]
O58 - SDL:2015/07/18 00:36:32 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [6389688]
O58 - SDL:2014/06/16 05:27:10 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [450520]
O58 - SDL:2014/05/07 00:39:17 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296]
O58 - SDL:2014/05/07 00:39:17 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032]
O58 - SDL:2012/08/06 05:17:18 A . (. - Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbfiltr.sys [17280]
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896]
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800]
O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168]
O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784]
O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816]
O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272]
O58 - SDL:2015/08/19 17:47:33 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [113880]
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744]
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840]
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376]
O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840]
O58 - SDL:2015/06/18 08:42:02 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216]
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128]
O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwbw02.sys [3496216]
O58 - SDL:2015/07/13 20:45:08 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11139216]
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368]
O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240]
O58 - SDL:2015/04/03 15:21:00 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [38032]
O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208]
O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720]
O58 - SDL:2015/07/07 23:25:38 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [895256]
O58 - SDL:2015/06/24 22:57:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4504320]
O58 - SDL:2015/05/14 11:44:38 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [751632]
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896]
O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760]
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800]
O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072]
O58 - SDL:2015/08/19 18:17:55 A . (.Tencent - 电脑管家-TAO游戏启动加速驱动.) -- C:\WINDOWS\System32\drivers\TAOAccelerator64.sys [99640] =>PUP.Optional.TencentAddressBar
O58 - SDL:2015/08/19 18:17:55 A . (.Tencent Technology(Shenzhen) Company Limited - TAOKernel.) -- C:\WINDOWS\System32\drivers\TAOKernel64.sys [174392]
O58 - SDL:2013/12/09 17:26:24 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [100312]
O58 - SDL:2015/08/19 18:17:55 A . (.电脑管家 - 电脑管家-驱动模块.) -- C:\WINDOWS\System32\drivers\TFsFltX64.sys [87864]
O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032]
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752]
O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504]
O58 - SDL:2015/05/14 15:15:36 A . (.WIBU-SYSTEMS AG - WIBU-KEY Plug&Play Driver for Windows.) -- C:\WINDOWS\System32\drivers\Wibukey2_64.sys [21376]
O58 - SDL:2015/05/14 15:15:36 A . (.WIBU-SYSTEMS AG - WibuKey Windows NT Kernel Driver.) -- C:\WINDOWS\System32\drivers\WibuKey64.sys [106760]
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976]
O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (62) - 13s
O61 - LFC: 2015/08/19 17:30:30 A . (..) -- C:\Users\YOUSSEF\Downloads\finaldraft907Win\Final Draft.exe [41240872]
O61 - LFC: 2015/08/19 17:32:45 A . (.WOXGY.) -- C:\Users\YOUSSEF\Downloads\final draft 9 activation code\final draft 9 activation code.exe [734888]
O61 - LFC: 2015/08/19 17:41:36 A . (..) -- C:\Users\YOUSSEF\AppData\Roaming\sp_data.sys [93]
O61 - LFC: 2015/08/19 17:33:24 A . (..) -- C:\Users\YOUSSEF\AppData\Roaming\VOPackage\Uninstall.exe [66712] =>PUP.Optional.Downware
O61 - LFC: 2015/08/19 17:33:08 A . (..) -- C:\Users\YOUSSEF\AppData\Roaming\VOPackage\VOPackage.exe [944041] =>PUP.Optional.Downware
O61 - LFC: 2015/08/17 22:47:00 A . (..) -- C:\Users\YOUSSEF\AppData\Roaming\mystartsearch\key.dll [57856] =>PUP.Optional.StartSearch
O61 - LFC: 2015/08/17 22:45:44 A . (.Skytech Co., Ltd..) -- C:\Users\YOUSSEF\AppData\Roaming\mystartsearch\UninstallManager.exe [1783808] =>PUP.Optional.StartSearch
O61 - LFC: 2015/08/19 17:33:39 A . (..) -- C:\Users\YOUSSEF\AppData\Roaming\cpuminer\sgminer\lyra2rev2GeForce GTX 850Mgw64l4lgtc4096.bin [727868]
O61 - LFC: 2015/08/17 13:16:03 A . (..) -- C:\Users\YOUSSEF\AppData\Roaming\cpuminer\sgminer\sgminer.cmd [218]
O61 - LFC: 2015/08/19 17:33:23 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Stripin.exe [53760]
O61 - LFC: 2015/08/19 17:44:46 A . (.Unity Technologies ApS.) -- C:\Users\YOUSSEF\AppData\Local\Unity\WebPlayer\Uninstall.exe [644549]
O61 - LFC: 2015/08/19 16:00:20 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Data.bin [3231460]
O61 - LFC: 2015/08/19 04:26:34 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_150_0_Data.bin [3224560]
O61 - LFC: 2015/08/19 04:26:34 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_150_0_Header.bin [9640]
O61 - LFC: 2015/08/19 17:40:41 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2015/08/19 16:01:25 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635755819305445371.bin [93785]
O61 - LFC: 2015/08/19 12:00:08 A . (..) -- C:\Users\YOUSSEF\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5148272]
O61 - LFC: 2015/08/19 16:54:53 A . (..) -- C:\Users\YOUSSEF\AppData\Local\NVIDIA\NvBackend\Packages\00007cb2\CoProc update.19877308.exe [516856]
O61 - LFC: 2015/08/19 16:54:56 A . (..) -- C:\Users\YOUSSEF\AppData\Local\NVIDIA\NvBackend\Packages\00007ca9\DAO.19875341.exe [6035912]
O61 - LFC: 2015/08/19 17:42:38 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvdrssel.bin [1]
O61 - LFC: 2015/08/19 17:41:56 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\36e0f22eacad857de2cd3b76aedc24a7[1].exe [53784]
O61 - LFC: 2015/08/19 17:43:09 A . (.AnyProtect.com.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\AnyProtect[1].exe [6434816] =>PUP.Optional.AnyProtect
O61 - LFC: 2015/08/19 18:11:35 A . (.Welnk.com.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\cmi_mystartsearch[1].exe [269408] =>PUP.Optional.StartSearch
O61 - LFC: 2015/08/19 18:11:39 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\FriendlyError_s4[1].exe [177664] =>PUP.Optional.FriendlyError
O61 - LFC: 2015/08/19 17:33:04 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\setup[1].exe [74052]
O61 - LFC: 2015/08/19 17:42:44 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\smt[1].exe [211114]
O61 - LFC: 2015/08/19 17:33:49 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\1pyTi7[1].exe [137728]
O61 - LFC: 2015/08/19 17:42:45 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\BiTool[1].dll [59904]
O61 - LFC: 2015/08/19 17:41:56 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\Bundle_CPUminer[1].exe [100529]
O61 - LFC: 2015/08/19 17:42:31 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\fdf809e7420bc26691f9efeb51b17a73[1].exe [71409]
O61 - LFC: 2015/08/19 17:33:36 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\runasu[1].exe [93696]
O61 - LFC: 2015/08/19 17:34:12 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\runasu[2].exe [93696]
O61 - LFC: 2015/08/19 17:41:55 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\setup[1].exe [1964104]
O61 - LFC: 2015/08/19 17:42:50 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\setup[2].exe [430296]
O61 - LFC: 2015/08/19 17:33:57 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\SFSetup[1].exe [359945]
O61 - LFC: 2015/08/19 18:13:04 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\VuuPC_VO2_8907[1].exe [229215] =>PUP.Optional.VuuPC
O61 - LFC: 2015/08/19 17:32:51 A . (.XPVisChecker.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\XPVistaChecker[1].exe [50076]
O61 - LFC: 2015/08/19 17:42:43 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\4bbda52393b575e64d530bd478a6717b[1].exe [60457]
O61 - LFC: 2015/08/19 18:11:31 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\fFedgS2H[1].exe [158251]
O61 - LFC: 2015/08/19 18:12:13 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\FinalInstaller_dotnet4[1].exe [3001344]
O61 - LFC: 2015/08/19 17:33:43 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\JOSrv[1].exe [209920]
O61 - LFC: 2015/08/19 18:12:59 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\policyname[1].exe [57665]
O61 - LFC: 2015/08/19 17:42:42 A . (.Cinema PlusV19.08.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\setup[1].exe [13922832]
O61 - LFC: 2015/08/19 18:12:07 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\setup_362[1].exe [254464]
O61 - LFC: 2015/08/19 17:34:15 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\Update_Notifier[1].exe [514560]
O61 - LFC: 2015/08/19 18:11:29 A . (.Copyright 2013.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\Validate[1].exe [61981]
O61 - LFC: 2015/08/19 17:33:07 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\VOPackage[1].exe [944041] =>PUP.Optional.Downware
O61 - LFC: 2015/08/19 17:33:11 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\10100016[1].exe [1542880]
O61 - LFC: 2015/08/19 18:13:52 A . (.CMI Limited.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\AnyProtectSetup[1].exe [613255] =>PUP.Optional.AnyProtect
O61 - LFC: 2015/08/19 17:33:04 A . (.Copyright (C) 2015.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\CM20150622[1].exe [172032]
O61 - LFC: 2015/08/19 18:11:30 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\cmmdWriter[1].exe [41440]
O61 - LFC: 2015/08/19 17:33:05 A . (.© 2015.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\install[1].exe [372789]
O61 - LFC: 2015/08/19 18:13:16 A . (.systweak.com.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\rcpsetup_17970[1].exe [4445480]
O61 - LFC: 2015/08/19 18:11:32 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\SearchUpdater[1].exe [121216]
O61 - LFC: 2015/08/19 17:33:23 A . (.Cinema Plus ProV19.08.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\setup[1].exe [14060192]
O61 - LFC: 2015/08/19 17:34:16 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\SU_Srv[1].exe [120832]
O61 - LFC: 2015/08/19 15:51:06 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\GameDVR\KnownGameList.bin [48528]
O61 - LFC: 2015/08/19 17:44:18 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/08/19 18:15:51 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [380]
O61 - LFC: 2015/08/19 17:34:14 A . (..) -- C:\Users\YOUSSEF\AppData\Local\ADACEBF9-1440005647-3C40-857E-54A0508CAE42\rnsnDA54.exe [93696]
O61 - LFC: 2015/08/19 17:34:16 A . (..) -- C:\Users\YOUSSEF\AppData\Local\ADACEBF9-1440005647-3C40-857E-54A0508CAE42\Uninstall.exe [51000]
O61 - LFC: 2015/08/19 17:41:55 A . (..) -- C:\Users\YOUSSEF\AppData\Local\483D9590-42DB-4BAD-88FD-9ADA924A951\483D9590-42DB-4BAD-88FD-9ADA924A951.exe [1964104]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (16) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\Firefox.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\Launcher.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\launcher.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\launcher.exe

---\\ Recherche d'infection sur les navigateurs (12) - 12s
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.newtab.url", "http://www.mystartsearch.com/newtab/?type=nt&ts=1439998921&z=37b8b1b08c237a3eff0a446g7z8c4tat1tdb[...] =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.alias", "mystartsearch"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/favicon.ico"); =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.name", "mystartsearch"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.ptid", "cmi"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.uid", "SanDiskXSD7SB3Q128G1002_150245402867"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=ds&ts=1439998921&z=37b8b1b08c237a3eff0a446g7z[...] =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.startup.homepage", "http://www.mystartsearch.com/?type=hp&ts=1439998921&z=37b8b1b08c237a3eff0a446g7z8c4tat1tdb4[...] =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("extensions.enabledAddons", "deskCutv2%40gmail.com:0.0.10,defsearchp%40gmail.com:1.0.0.1039,pdf_architect_3_conv%40pdfar[...] =>PUP.Optional.DeskCut
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (mystartsearch) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch

---\\ Enumère les services démarrés par Svchost (41) - 4s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324608]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056]
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424]
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [186368]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2235904]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920]
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488]
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440]
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392]
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040]
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [717312]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136]
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776]
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016]
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [988672]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368]

---\\ Liste des exceptions du parefeu Windows (14) - 4s
O87 - FAEL: "UDP Query User{1C41E10C-3756-4EB7-B727-8C927479A185}E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe" [In-None-P17-TRUE] .(...) -- E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe
O87 - FAEL: "TCP Query User{6F126225-296F-4ECF-AFB2-F49524EE9F62}E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe" [In-None-P6-TRUE] .(...) -- E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe
O87 - FAEL: "{C3D7814F-6002-41F0-B5D1-E23945E6BFCC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse
O87 - FAEL: "{5FD827C9-3560-4939-BA6F-5C2B62D1074B}" [In-None-P17-TRUE] .(...) -- D:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
O87 - FAEL: "{91ABCEB9-7A7B-495B-829B-6275DD17667F}" [In-None-P6-TRUE] .(...) -- D:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
O87 - FAEL: "{62FB954A-7222-45B2-8A26-87B1C2EF6C20}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe
O87 - FAEL: "{102803E2-DBE0-4B7D-904A-4E28C65BB177}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe
O87 - FAEL: "{830CA0CC-57DE-4DA7-858F-C37740C1E4CE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe
O87 - FAEL: "{136D4C5E-0CBF-48B7-BC51-A038E0F7C483}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe
O87 - FAEL: "{1606CE0D-D42E-4087-9E60-FB5ADE138192}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe
O87 - FAEL: "{D819E449-AFE9-4A6B-8AEE-1E2886C3B08C}" [In-None-P6-TRUE] .(.Connectify - Connectify Hotspot.) -- C:\Program Files (x86)\Connectify\Connectify.exe
O87 - FAEL: "{599885E7-2E6F-4D4B-80E1-2C40153FD0E3}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{F4BE3EE2-76BC-4814-898F-8DD25C841299}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe
O87 - FAEL: "{71F11E72-BAA2-4D42-91EF-9B7B140A6F4D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.)

---\\ Enumère les codes produits des logiciels (1) - 7s
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate

---\\ Recherche des packages WindowsInstaller (1) - 8s
[MD5.] [WIS][2015/08/19 17:33:38] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\WINDOWS\Installer\60a26f.msi [32768] =>PUP.Optional.GlobalUpdate

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (50) - 27s
SR - Auto [2010/03/18 11:19:26] [ 113152] ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
SR - Auto [2014/12/05 04:27:44] [ 599944] Autodesk Application Manager Service (AdAppMgrSvc) . (.Autodesk Inc..) - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe
SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - Demand [2015/08/14 03:53:27] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - Auto [2014/03/26 17:24:44] [ 115512] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
SR - Auto [2014/08/20 07:14:40] [ 71168] Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation.) - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
SR - Auto [2011/11/21 16:19:50] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
SR - Auto [2015/02/05 20:47:50] [ 31160] Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc..) - C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe
SR - Auto [2015/08/19 17:33:49] [ 137728] File Size Charger (cobomiku) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp =>PUP.Optional.CrossRider
SR - Auto [2015/04/09 17:29:44] [ 217088] Connectify (Connectify) . (.Connectify.) - C:\Program Files (x86)\Connectify\ConnectifyService.exe
SS - Demand [2015/07/18 00:36:00] [ 283024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe
SR - Auto [2014/01/09 17:34:30] [ 9728] DriverMFTService (DriverMFTService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe
SR - Auto [2015/08/03 13:11:20] [ 147688] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe
SS - Demand [2015/08/19 17:30:45] [ 1045840] FlexNet Licensing Service (FlexNet Licensing Service) . (.Flexera Software LLC..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
SS - Demand [2015/04/20 12:26:48] [ 1369856] FlexNet Licensing Service 64 (FlexNet Licensing Service 64) . (.Flexera Software LLC.) - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
SR - Auto [2015/06/03 23:06:06] [ 1152656] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
SS - Auto [2015/08/19 17:42:56] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate
SS - Demand [2015/08/19 17:42:56] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate
SR - Auto [2015/08/19 17:34:16] [ 120832] Kerning Down (gopibeko) . (...) - C:\Users\YOUSSEF\AppData\Local\ADACEBF9-1440005647-3C40-857E-54A0508CAE42\snsxDA43.tmp =>PUP.Optional.CrossRider
SS - Auto [2015/04/18 20:22:12] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - Demand [2015/04/18 20:22:12] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SR - Auto [2015/08/19 14:06:50] [ 124888] hutneosa (hutneosa) . (...) - C:\ProgramData\RajxeNerm\rikaofi.exe
SR - Auto [2015/08/19 17:33:43] [ 209920] Key In Bold Italic (hyverumu) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp =>PUP.Optional.CrossRider
SR - Auto [2014/05/09 09:27:16] [ 121288] Intel Bluetooth Service (iBtSiva) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
SR - Auto [2015/08/19 16:25:48] [ 379904] igfx UI Service (igfx32) . (.Copyright © 2015.) - C:\Program Files\igfx32\igfx32.exe
SR - Auto [2015/07/18 00:35:40] [ 351120] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\system32\igfxCUIService.exe
SR - Auto [2013/08/27 16:32:14] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe
SS - Demand [2013/08/27 16:32:30] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
SR - Auto [2013/12/09 17:26:24] [ 131544] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
SR - Auto [2013/12/09 17:26:24] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
SR - Auto [2013/12/09 17:27:02] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
SR - Auto [2015/06/18 08:39:46] [ 1871160] (MBAMScheduler) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
SR - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
SS - Demand [2011/09/15 06:19:54] [ 86016] mental ray Satellite for Autodesk 3ds Max 2015 64-bit (mi-raysat_3dsmax2015_64) . (...) - D:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe
SS - Demand [2015/04/24 14:23:54] [ 148080] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SR - Auto [2015/06/03 23:06:06] [ 1893008] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
SR - Auto [2015/06/03 23:06:03] [23007376] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
SR - Auto [2015/07/13 19:37:03] [ 937616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe
SS - Demand [2015/04/24 12:21:22] [ 2244312] PDF Architect 3 (PDF Architect 3) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\ws.exe
SS - Demand [2015/04/24 12:21:06] [ 901336] PDF Architect 3 CrashHandler (PDF Architect 3 CrashHandler) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe
SR - Auto [2015/04/24 12:21:12] [ 740568] PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe
SR - Auto [2015/08/19 17:33:23] [ 53760] Home-Fax (produatpzo) . (...) - C:\Users\YOUSSEF\AppData\Local\Stripin.exe
SR - Auto [2015/08/19 18:17:55] [ 297608] QQPCMgr RTP Service (QQPCRTP) . (.Tencent.) - C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCRTP.exe =>PUP.Optional.TencentAddressBar
SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SS - Demand [2010/02/19 13:37:14] [ 517096] SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
SR - Demand [2015/08/19 18:17:55] [ 293728] TAOFrame (TAOFrame) . (.Tencent.) - C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\TAOFrame.exe =>PUP.Optional.TencentAddressBar
SS - Auto [2009/03/12 16:50:12] [ 117248] CamMonitor (uCamMonitor) . (.ArcSoft, Inc..) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
SR - Auto [2015/08/19 14:06:42] [ 124888] utimcuca (utimcuca) . (...) - C:\ProgramData\RajxeNerm\rikwofi.exe
SR - Auto [2015/08/19 17:42:24] [ 708264] WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED.) - C:\ProgramData\ZWinManProZ\ProtectWindowsManager.exe =>PUP.Optional.Fuyu
SR - Auto [2015/08/19 16:42:44] [ 760832] Forename Tools (zytecuhe) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs =>PUP.Optional.CrossRider

---\\ Scan Additionnel (208) - 1s
C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp =>PUP.Optional.CrossRider
C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp =>PUP.Optional.CrossRider
C:\Users\YOUSSEF\AppData\Local\ADACEBF9-1440005647-3C40-857E-54A0508CAE42\snsxDA43.tmp =>PUP.Optional.CrossRider
C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-10.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-6.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-1-6.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\TAOFrame.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCRTP.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCTray.exe =>PUP.Optional.TencentAddressBar
C:\program files (x86)\common files\Tencent\qqdownload\130\tencentdl.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\plugins\QMNetMon\QQPCNetFlow.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCRealTimeSpeedup.exe =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCPatch.exe =>PUP.Optional.TencentAddressBar
C:\Users\YOUSSEF\AppData\Local\Google\Chrome\User Data\Default\Extensions\papbadoldddalgcjcicnikcfenodpghp
C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\searchplugins\mystartsearch.xml =>PUP.Optional.StartSearch
C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\npQMExtensionsMozilla.dll =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\TSWebMon64.dat =>PUP.Optional.TencentAddressBar
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} =>PUP.Optional.TencentAddressBar
HKLM\SYSTEM\CurrentControlSet\Services\cobomiku =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate
HKLM\SYSTEM\CurrentControlSet\Services\gopibeko =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\hyverumu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\QQPCRTP =>PUP.Optional.TencentAddressBar
HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu
C:\ProgramData\ZWinManProZ\ProtectWindowsManager.exe =>PUP.Optional.Fuyu
HKLM\SYSTEM\CurrentControlSet\Services\zytecuhe =>PUP.Optional.CrossRider
C:\Users\YOUSSEF\AppData\Local\483D9590-42DB-4BAD-88FD-9ADA924A951\483D9590-42DB-4BAD-88FD-9ADA924A951.exe =>Heuristic.Graftor
HKCU\SOFTWARE\AR28Bjeu =>PUP.Optional.CrossRider
C:\Users\YOUSSEF\AppData\Roaming\AR28Bjeu.exe =>PUP.Optional.CrossRider
C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-1-7.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-11.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-3.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-4.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-5.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08\ff265884-4149-4037-8ed8-9682e7effb7f-7.exe =>PUP.Optional.CrossRider
C:\Users\YOUSSEF\AppData\Roaming\Hs3piYsnMms8dKYOpeCLPkerOi.exe =>PUP.Optional.CrossRider
C:\Users\YOUSSEF\AppData\Roaming\r0ayMPGzt3xRaOdH3H.exe =>PUP.Optional.CrossRider
HKCU\SOFTWARE\TZHGKjrcyRl24U =>PUP.Optional.CrossRider
C:\Users\YOUSSEF\AppData\Roaming\TZHGKjrcyRl24U.exe =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10_user.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5_user.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\APSnotifierPP1.job =>PUP.Optional.AnyProtect
C:\WINDOWS\Tasks\APSnotifierPP2.job =>PUP.Optional.AnyProtect
C:\WINDOWS\Tasks\APSnotifierPP3.job =>PUP.Optional.AnyProtect
C:\WINDOWS\Tasks\AR28Bjeu.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\Bidaily Synchronize Task[pr].job =>PUP.Optional.BidailySync
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-6.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-7.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-10_user.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-11.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-3.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-4.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5_user.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-6.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-7.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate
C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate
C:\WINDOWS\Tasks\Hs3piYsnMms8dKYOpeCLPkerOi.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\r0ayMPGzt3xRaOdH3H.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\TZHGKjrcyRl24U.job =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\483D9590-42DB-4BAD-88FD-9ADA924A951 =>Heuristic.Graftor
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-6 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-1-7 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-10_user =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-11 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-13 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-14 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-3 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-4 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-5_user =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-6 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\84c93899-8c1f-4a5b-9c8a-1af06c28b9e5-7 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\APSnotifierPP1 =>PUP.Optional.AnyProtect
C:\WINDOWS\System32\Tasks\APSnotifierPP2 =>PUP.Optional.AnyProtect
C:\WINDOWS\System32\Tasks\APSnotifierPP3 =>PUP.Optional.AnyProtect
C:\WINDOWS\System32\Tasks\AR28Bjeu =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\AutoKMS =>HackTool.AutoKMS
C:\WINDOWS\System32\Tasks\Bidaily Synchronize Task[pr] =>PUP.Optional.BidailySync
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-6 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-1-7 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-10_user =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-11 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-3 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-4 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-5_user =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-6 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\ff265884-4149-4037-8ed8-9682e7effb7f-7 =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate
C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate
C:\WINDOWS\System32\Tasks\Hs3piYsnMms8dKYOpeCLPkerOi =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\r0ayMPGzt3xRaOdH3H =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\TZHGKjrcyRl24U =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater =>PUP.Optional.SoftwareUpdater
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage =>PUP.Optional.Downware
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\34c0a551-96ae-4d5b-8083-a0c22f931be7 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\a73a813f-3b57-4580-9717-a3e9d1e42834 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar
HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\Wow6432Node\downchecker =>PUP.Optional.DownChecker
HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Generic
HKLM\SOFTWARE\Wow6432Node\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar
HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider
HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\_CrossriderRegNamePlaceHolder_ =>PUP.Optional.CrossRider
C:\Program Files (x86)\3e658ce7-ac10-4c4b-912a-611ea0097a82 =>PUP.Optional.CrossRider
C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42 =>PUP.Optional.CrossRider
C:\Program Files (x86)\cc3757cf-d009-47a8-ab94-dc4e1cfb3fe7 =>PUP.Optional.CrossRider
C:\Program Files (x86)\CinemaPlus-3.2cV19.08 =>PUP.Optional.CrossRider
C:\Program Files (x86)\FriendlyError =>PUP.Optional.FriendlyError
C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\PCP =>PUP.Optional.PCPrivacyDock
C:\Program Files (x86)\Tencent =>PUP.Optional.TencentAddressBar
C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo
C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
C:\Program Files (x86)\Common Files\Tencent =>PUP.Optional.TencentAddressBar
C:\Users\YOUSSEF\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect
C:\Users\YOUSSEF\AppData\Roaming\IQIYI Video =>PUP.Optional.IQIYIVideo
C:\Users\YOUSSEF\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch
C:\Users\YOUSSEF\AppData\Roaming\systweak =>PUP.Optional.Systweak
C:\Users\YOUSSEF\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
C:\Users\YOUSSEF\AppData\Roaming\VOPackage =>PUP.Optional.Downware
C:\Users\YOUSSEF\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\YOUSSEF\AppData\Local\PC_Privacy_Dock =>PUP.Optional.PCPrivacyDock
C:\Users\YOUSSEF\AppData\Local\SysassistByHotWheel =>PUP.Optional.Generic
C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-A6D433B3.pf =>PUP.Optional.GlobalUpdate
C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-AFA6DA21.pf =>PUP.Optional.GlobalUpdate
C:\WINDOWS\Prefetch\TENCENTDL.EXE-28374EB5.pf =>PUP.Optional.TencentAddressBar
C:\WINDOWS\Prefetch\TENCENTDL.EXE-CE7E3EFE.pf =>PUP.Optional.TencentAddressBar
C:\WINDOWS\System32\drivers\TAOAccelerator64.sys =>PUP.Optional.TencentAddressBar
C:\Users\YOUSSEF\AppData\Roaming\VOPackage\Uninstall.exe =>PUP.Optional.Downware
C:\Users\YOUSSEF\AppData\Roaming\VOPackage\VOPackage.exe =>PUP.Optional.Downware
C:\Users\YOUSSEF\AppData\Roaming\mystartsearch\key.dll =>PUP.Optional.StartSearch
C:\Users\YOUSSEF\AppData\Roaming\mystartsearch\UninstallManager.exe =>PUP.Optional.StartSearch
C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\AnyProtect[1].exe =>PUP.Optional.AnyProtect
C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\cmi_mystartsearch[1].exe =>PUP.Optional.StartSearch
C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\FriendlyError_s4[1].exe =>PUP.Optional.FriendlyError
C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC
C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\VOPackage[1].exe =>PUP.Optional.Downware
C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\AnyProtectSetup[1].exe =>PUP.Optional.AnyProtect
HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate
C:\WINDOWS\Installer\60a26f.msi =>PUP.Optional.GlobalUpdate
HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate
HKLM\SYSTEM\CurrentControlSet\Services\TAOFrame =>PUP.Optional.TencentAddressBar

---\\ Récapitulatif des éléments trouvées sur votre station (36) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab
http://www.nicolascoolman.fr/blog =>PUP.Optional.IQIYIVideo
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/hijacker-browsers/ =>PUP.Optional.Browser
http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu
http://www.nicolascoolman.fr/blog =>Heuristic.Graftor
http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect
http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS
http://www.nicolascoolman.fr/blog =>PUP.Optional.BidailySync
http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater
http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware
http://www.nicolascoolman.fr/blog =>Toolbar.AskBar
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse
http://www.nicolascoolman.fr/blog =>PUP.Optional.DownChecker
http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch
http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBooster
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/pup-superClick/ =>PUP.Optional.SuperClick
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowser
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech
http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork
http://www.nicolascoolman.fr/blog =>PUP.Optional.FriendlyError
http://www.nicolascoolman.fr/blog =>PUP.Optional.PCPrivacyDock
http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Optional.Systweak
http://www.nicolascoolman.fr/pup-vuupc/ =>PUP.Optional.VuuPC
http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine
http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut

~ End of the scan, 60596 items in 174 seconds (1585)(0)()

Publicité


Signaler le contenu de ce document

Publicité