cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.4.22.89 Par Nicolas Coolman (2016/04/22)
~ Démarré par cep (Administrator) (2016/04/23 02:29:53)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\cep\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\cep\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 32-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
OPIE: Opera 36.0.2130.66
MSIE: Internet Explorer v11.0.9600.18282

---\\ Informations sur les produits Windows (9) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_COA_SLP channel
Windows ID Activation : OK
~ Windows Partial Key : MJQMG
Windows License : OK
~ Windows Remaining Initializations Number : 4
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (1) - 1s
BitDefender Antivirus 2010 v13.0.18

---\\ Logiciels d'optimisation (1) - 1s
CCleaner v5.05

---\\ Surveillance de Logiciels (2) - 1s
Adobe Flash Player 21 PPAPI
Adobe Acrobat Reader DC - Français

---\\ Logiciels de partage P2P (1) - 1s
µTorrent v3.1.3

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 16 Model 6 Stepping 2, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3275.892 MB (31% free)
System Restore: Activé (Enable)
System drive C: has 205 GB () free of 476 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: CEP-PC
~ User Name: cep
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 205 GB free of 476 GB (System)

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 2s
[MD5.2A156D5EBF221EF2A6AE7CE452324DAC] - 22/01/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2973184] =>.Microsoft Corporation
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation
[MD5.EE3825FFE3F31B7FCB7B4A284197361B] - 31/03/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2121216] =>.Microsoft Corporation
[MD5.52449FD429D6053B78AE564DEF303870] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation
[MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.93B49FA857F7036A4EFF32371F6E7391] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation
[MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation
[MD5.7B9C4C7FAE04079D405AE658A7616ED0] - 17/03/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [124416] =>.Microsoft Corporation
[MD5.280122DDCF04B378EDD1AD54D71C1E54] - 20/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [187904] =>.Microsoft Corporation
[MD5.978E7A2E4BF4E8E70D0776EF0D9E97FB] - 11/01/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1212352] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation
[MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation
[MD5.BB8817D0508DD5EA69C770C8DEF5AB67] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation
[MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (15) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: Portrait Displays Display Tune Service (DTSRVC) . (.Portrait Displays, Inc. - DTSRVC.) - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe =>.Portrait Displays, Inc.®
O23 - Service: EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE =>.Seiko Epson Corporation
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE =>.Seiko Epson Corporation
O23 - Service: FsUsbExService (FsUsbExService) . (.Teruten - FsUsbDevice.) - C:\Windows\System32\FsUsbExService.Exe =>.Teruten
O23 - Service: Garmin Device Interaction Service (Garmin Device Interaction Service) . (.Garmin Ltd. or its subsidiaries - Garmin Service.) - C:\Program Files\Garmin\Device Interaction Service\GarminService.exe =>.Garmin International, Inc.®
O23 - Service: BitDefender Desktop Update Service (LIVESRV) . (.BitDefender S.R.L. - BitDefender Update Service.) - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe =>.BitDefender SRL®
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.4.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: Portrait Displays SDK Service (PdiService) . (.Portrait Displays, Inc. - pdisrvc.) - C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe =>.Portrait Displays, Inc.®
O23 - Service: Sosition Reports (SstrprSrv) . (...) - C:\Program Files\Sosition\SstrprSrv.exe =>.Huixin Zhao®
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
O23 - Service: BitDefender Virus Shield (VSSERV) . (.BitDefender S.R.L. - BitDefender Security Service.) - C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe =>.BITDEFENDER LLC®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (21) - 13s

SR - Auto [14/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [09/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [20/01/2015] [ 60744] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SS - Demand [19/10/2009] [ 183880] BitDefender Serveur Arrakis (Arrakis3) . (.BitDefender S.R.L. http://www.bitdefender.com.) - C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe =>.BITDEFENDER LLC®
SR - Auto [30/08/2011] [ 390504] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Demand [17/03/2015] [ 1046624] Desura Install Service (Desura Install Service) . (.Desura Net Pty Ltd.) - C:\Program Files\Common Files\Desura\desura_service.exe {00F5FB6B4A12F4161D49A56D5AC262B0CE}
SR - Auto [18/09/2012] [ 137112] Portrait Displays Display Tune Service (DTSRVC) . (.Portrait Displays, Inc..) - C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe =>.Portrait Displays, Inc.®
SR - Auto [17/12/2007] [ 143872] EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE =>.Seiko Epson Corporation
SR - Auto [11/01/2007] [ 113664] EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE =>.Seiko Epson Corporation
SR - Auto [18/04/2013] [ 233472] FsUsbExService (FsUsbExService) . (.Teruten.) - C:\Windows\System32\FsUsbExService.Exe =>.Teruten
SR - Auto [28/01/2016] [ 803856] Garmin Device Interaction Service (Garmin Device Interaction Service) . (.Garmin Ltd. or its subsidiaries.) - C:\Program Files\Garmin\Device Interaction Service\GarminService.exe =>.Garmin International, Inc.®
SS - Demand [13/02/2015] [ 540968] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SR - Auto [23/12/2011] [ 310856] BitDefender Desktop Update Service (LIVESRV) . (.BitDefender S.R.L..) - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe =>.BitDefender SRL®
SR - Auto [04/02/2015] [ 670536] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
SR - Auto [16/04/2012] [ 117552] Portrait Displays SDK Service (PdiService) . (.Portrait Displays, Inc..) - C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe =>.Portrait Displays, Inc.®
SS - Demand [11/11/2008] [ 620544] ServiceLayer (ServiceLayer) . (.Nokia..) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe =>.Nokia.
SS - Auto [14/04/2016] [ 310360] Sosition Reports (SstrprSrv) . (...) - C:\Program Files\Sosition\SstrprSrv.exe =>.Huixin Zhao®
SR - Auto [04/02/2015] [ 409800] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®
SR - Auto [05/06/2014] [ 93040] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
SR - Auto [23/12/2011] [ 1615688] BitDefender Virus Shield (VSSERV) . (.BitDefender S.R.L..) - C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe =>.BITDEFENDER LLC®

---\\ Processus lancés (37) - 3s
[MD5.9AF133F51F7832ABAD3EEA362C84FE43] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.4.) -- C:\Windows\System32\nvvsvc.exe [670536] [PID.748] =>.NVIDIA Corporation®
[MD5.A0BF3234CFFFBD1439757931B9BC57AA] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [409800] [PID.772] =>.NVIDIA Corporation®
[MD5.D727571BD79E5812ADBEB687DB595360] - (.BitDefender S.R.L. - BitDefender Update Service.) -- C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe [310856] [PID.916] =>.BitDefender SRL®
[MD5.B715ABF90831A37918EB4CAD2CF9DF69] - (.BitDefender S.R.L. - BitDefender Security Service.) -- C:\Program Files\BitDefender\BitDefender 2010\vsserv.exe [1615688] [PID.960] =>.BITDEFENDER LLC®
[MD5.8E82B3AA3DF1A8774A8A9162CBFC6913] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [938184] [PID.1532] =>.NVIDIA Corporation®
[MD5.9AF133F51F7832ABAD3EEA362C84FE43] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.4.) -- C:\Windows\System32\nvvsvc.exe [670536] [PID.1540] =>.NVIDIA Corporation®
[MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2028] =>.Adobe Systems, Incorporated®
[MD5.D2B87FC03BE28CD0B33C2B5C1119FD8E] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [60744] [PID.408] =>.Apple Inc.®
[MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.396] =>.Apple Inc.®
[MD5.2A90DF1996B2BE2C3FB679C90F7678FD] - (.Portrait Displays, Inc. - DTSRVC.) -- C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe [137112] [PID.1436] =>.Portrait Displays, Inc.®
[MD5.EC6A73CD8413F68655E5E0B99C415A21] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40ST7.EXE [143872] [PID.1896] =>.Seiko Epson Corporation
[MD5.8FE6AB59CAB8F2C038FEA9522A5EEBA7] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RP7.EXE [113664] [PID.1664] =>.Seiko Epson Corporation
[MD5.0796C1E47ADB9825269E64B9DAB4E741] - (.Teruten - FsUsbDevice.) -- C:\Windows\System32\FsUsbExService.Exe [233472] [PID.2088] =>.Teruten
[MD5.8C0A6229A1256930DEF4D79B2C0BA25C] - (.Garmin Ltd. or its subsidiaries - Garmin Service.) -- C:\Program Files\Garmin\Device Interaction Service\GarminService.exe [803856] [PID.2172] =>.Garmin International, Inc.®
[MD5.A91D56DFD932DD4D7CFD1CB226D8B09B] - (.Portrait Displays, Inc. - pdisrvc.) -- C:\Program Files\Common Files\Portrait Displays\Drivers\pdisrvc.exe [117552] [PID.2440] =>.Portrait Displays, Inc.®
[MD5.0A03E85A641F2672796D34F506066594] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe [93040] [PID.2548] =>.TomTom International BV®
[MD5.FB01D4AE207B9EFDBABFC55DC95C7E31] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713536] [PID.2632] =>.Microsoft Corporation®
[MD5.C649F293B8B047A2694F3C615D09BF17] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [193920] [PID.2708] =>.Microsoft Corporation®
[MD5.F32FAA558015CF3D714AEA1003B29E38] - (.BitDefender S.R.L. - BitDefender Agent.) -- C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe [1200880] [PID.1432] =>.Bitdefender SRL®
[MD5.35EC0D85A7E3A79B2288B7E898B51F60] - (...) -- C:\Program Files\FastSearch\cfr3011.exe [58695] [PID.3124] =>PUP.Optional.FastSearch
[MD5.1F52E8EBC111C7C578CC9E5BDF06EBE6] - (.BitDefender S.R.L. - BitDefender Security Center.) -- C:\Program Files\BitDefender\BitDefender 2010\seccenter.exe [1118232] [PID.900] =>.BitDefender SRL®
[MD5.F6C586C6D7A253ACA913FB49831797DE] - (.NVIDIA Corporation - NVIDIA Update Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [1795872] [PID.1280] =>.NVIDIA Corporation®
[MD5.1F014EA12ECB13C909DA9395E9CD3D18] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6278424] [PID.3620] =>.Piriform Ltd®
[MD5.E4A6457741387E87F1EB38E067E8B52B] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [1818952] [PID.2744] =>.NVIDIA Corporation®
[MD5.F132FDBBC0A040F07E10EA944FF57FEF] - (...) -- C:\Windows\Temp\nsfBB07.tmp\nsD3A6.tmp [6656] [PID.788]
[MD5.28835E73C1A753264552FB67813EEEE1] - (.FastSearch - .) -- C:\Program Files\FastSearch\uninstall.exe [65067] [PID.356] =>PUP.Optional.FastSearch
[MD5.66AC0C69B45AE64B6285B4F6B4D19FE6] - (...) -- C:\Program Files\Portrait Displays\Pivot Pro Plugin\wpCtrl.exe [674928] [PID.4016] =>.Portrait Displays, Inc.®
[MD5.06392B946EE84FE3297A56D120FB45E5] - (...) -- C:\Program Files\Portrait Displays\Pivot Pro Plugin\Floater.exe [711792] [PID.832] =>.Portrait Displays, Inc.®
[MD5.00A98CE4473BCE723277C280A94038C3] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\36.0.2130.66\opera.exe [648232] [PID.5676] =>.Opera Software ASA®
[MD5.A332405BCBA67F6C14AB5DE3C048920C] - (.Opera Software - Opera crash-reporter.) -- C:\Program Files\Opera\36.0.2130.66\opera_crashreporter.exe [519720] [PID.4140] =>.Opera Software ASA®
[MD5.00A98CE4473BCE723277C280A94038C3] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\36.0.2130.66\opera.exe [648232] [PID.5724] =>.Opera Software ASA®
[MD5.00A98CE4473BCE723277C280A94038C3] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\36.0.2130.66\opera.exe [648232] [PID.6068] =>.Opera Software ASA®
[MD5.00A98CE4473BCE723277C280A94038C3] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\36.0.2130.66\opera.exe [648232] [PID.3680] =>.Opera Software ASA®
[MD5.00A98CE4473BCE723277C280A94038C3] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\36.0.2130.66\opera.exe [648232] [PID.1396] =>.Opera Software ASA®
[MD5.00A98CE4473BCE723277C280A94038C3] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\36.0.2130.66\opera.exe [648232] [PID.2908] =>.Opera Software ASA®
[MD5.00A98CE4473BCE723277C280A94038C3] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\36.0.2130.66\opera.exe [648232] [PID.4676] =>.Opera Software ASA®
[MD5.20BBDBAD3357E07F011EDBAB7C0134DF] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\cep\Downloads\ZHPDiag3.exe [2192896] [PID.1980] =>.Nicolas Coolman

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (31) - 4s
M0 - MFSP: prefs.js [cep - ip8rh3fs.default-1411903893815] http://www.oursurfing.com/?type=hp&ts=1441461990&z=b38d608e2a1cde5ce0d6fe0g2zdzeg2z6qbg4t4tez&from=amt&uid=WDCXWD5000AAKS-00V1A0_WD-WMAWF072096120961 =>PUP.Optional.OurSurfing
M0 - MFSP: prefs.js [cep - 41A66E7E5EE1] http://www.hohosearch.com/?ts=AHEqA3YkAHYkAU..&v=20160415&uid=BA9C599821A0878E97C3DACC32228188&ptid=epf1&mode=ffseng =>.Superfluous.Hohosearch
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\langpack-de@firefox.mozilla.org.xpi
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\searchplugins\ask-search.xml
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\searchplugins\Astromenda.xml =>PUP.Optional.Astromenda
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\searchplugins\oursurfing.xml =>PUP.Optional.OurSurfing
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi =>PUP.Optional.YesSearches
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\langpack-de@firefox.mozilla.org.xpi
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\ask-search.xml
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\Astromenda.xml =>PUP.Optional.Astromenda
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\DD1B66D4.xml
P2 - EXT FILE: (...) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\oursurfing.xml =>PUP.Optional.OurSurfing
P2 - EXT: (.roc - Default SearchProtected .) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\defsearchp@gmail.com
P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
P2 - EXT: (.smart-saverplus - SmartSaver+ 3.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\williamslake@yahoo.com =>PUP.Optional.CrossRider
P2 - EXT: (.Yahoo! - Yahoo! Toolbar.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} =>.Yahoo!
P2 - EXT: (. - BCC877E77F3F46328338DAEE4475DE35.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\{BCC877E7-7F3F-4632-8338-DAEE4475DE35}
P2 - EXT: (. - c9b4529aeeba4e48976ef3d3f9026e04.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\{c9b4529a-eeba-4e48-976e-f3d3f9026e04}
P2 - EXT: (.roc - Default SearchProtected .) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\defsearchp@gmail.com
P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
P2 - EXT: (.smart-saverplus - SmartSaver+ 3.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\williamslake@yahoo.com =>PUP.Optional.CrossRider
P2 - EXT: (.Yahoo! - Yahoo! Toolbar.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} =>.Yahoo!
P2 - EXT: (. - BCC877E77F3F46328338DAEE4475DE35.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{BCC877E7-7F3F-4632-8338-DAEE4475DE35}
P2 - EXT: (. - c9b4529aeeba4e48976ef3d3f9026e04.) -- C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{c9b4529a-eeba-4e48-976e-f3d3f9026e04}
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc.
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate

---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s
B2 - EXT: [Opera Stable] C:\Users\cep\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (12) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.snapdo.com/ =>PUP.Optional.SmartBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.snapdo.com/ =>PUP.Optional.SmartBar
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://feed.snapdo.com/ =>PUP.Optional.SmartBar
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (6) - 1s
O2 - BHO: Aide à la navigation SFR - {0F6E720A-1A6B-40E1-A294-1D4D19F156C8} . (.SFR - Aide à la navigation SFR.) -- C:\Program Files\SFR\Kit\SFRNavErrorHelper.dll =>.Societe Francaise de Radiotelephone (SFR)®
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll =>.Microsoft Corporation®
O2 - BHO: (no name) - {b608cc98-54de-4775-96c9-097de398500c} (Orphean)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Applications lancées au démarrage du système (15) - 0s
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] . (.BitDefender S.R.L. - IEShow Application.) -- C:\Program Files\BitDefender\BitDefender 2010\ieshow.exe =>.BITDEFENDER LLC®
O4 - HKLM\..\Run: [PivotSoftware] . (...) -- C:\Program Files\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe =>.Portrait Displays, Inc.®
O4 - HKLM\..\Run: [DT PLP] . (.Portrait Displays, Inc. - DT_Startup.) -- C:\Program Files\Common Files\Portrait Displays\Shared\DT_startup.exe =>.Portrait Displays, Inc.®
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Update Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [mbot_fr_014010080] (Orphean) =>PUP.Optional.CrossRider
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [EPSON Stylus SX400 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIEGE.EXE =>.Seiko Epson Corporation
O4 - HKUS\.DEFAULT\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files\Garmin\Express Tray\ExpressTray.exe =>.Garmin International, Inc.®
O4 - HKUS\S-1-5-18\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files\Garmin\Express Tray\ExpressTray.exe =>.Garmin International, Inc.®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3748802231-1187062933-2043878992-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-3748802231-1187062933-2043878992-1001\..\Run: [EPSON Stylus SX400 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\w32x86\3\E_FATIEGE.EXE =>.Seiko Epson Corporation

---\\ Raccourcis Global Startup (19) - 4s
O4 - GS\Desktop [Administrateur]: SmartControl.lnk . (.Portrait Displays, Inc - SmartControl.) C:\Program Files\Philips Display\SmartControl\dthtml.exe =>.Portrait Displays, Inc.®
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\cep\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Program Files\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\TaskBar [Administrateur]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\Desktop [cep]: SmartControl.lnk . (.Portrait Displays, Inc - SmartControl.) C:\Program Files\Philips Display\SmartControl\dthtml.exe =>.Portrait Displays, Inc.®
O4 - GS\Desktop [cep]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\cep\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [cep]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O4 - GS\Quicklaunch [cep]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Program Files\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\TaskBar [cep]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: BitDefender Antivirus 2010.lnk . (.BitDefender S.R.L. - BitDefender Agent.) C:\Program Files\BitDefender\BitDefender 2010\bdagent.exe =>.Bitdefender SRL®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Garmin Express.lnk . (.Garmin Ltd. or its subsidiaries - Garmin Express.) C:\Program Files\Garmin\Express\express.exe =>.Garmin International, Inc.®
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - iTunes.) C:\Program Files\iTunes\iTunes.exe =>.Apple Inc.®
O4 - GS\CommonDesktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®
O4 - GS\CommonDesktop [Public]: TomTom MyDrive Connect.lnk . (.TomTom - TomTom MyDrive Connect.) C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe =>.TomTom International BV®
O4 - GS\CommonDesktop [Public]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Program Files\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Winsock hijacker (Layered Service Provider) (5) - 0s
O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (.Abengine.) -- C:\Windows\System32\acengine.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (.Abengine.) -- C:\Windows\System32\acengine.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (.Abengine.) -- C:\Windows\System32\acengine.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (.Abengine.) -- C:\Windows\System32\acengine.dll =>Hijacker.Winsock
O10 - WLSP:\Catalog_Entries\000000000025\Winsock LSP File . (.Abengine.) -- C:\Windows\System32\acengine.dll =>Hijacker.Winsock

---\\ Modification Domaine/Adresses DNS (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{265B696F-CB48-4B78-88D2-5C8DCE7F930C}: NameServer = 82.163.143.177,82.163.142.179 =>PUP.Optional.DNSUnlocker
O17 - HKLM\System\CCS\Services\Tcpip\..\{35154C3E-913C-47E0-92DD-1E3E79FC6F0E}: NameServer = 104.197.191.4
O17 - HKLM\System\CCS\Services\Tcpip\..\{e29ac6c2-7037-11de-816d-806e6f6e6963}: NameServer = 104.197.191.4
O17 - HKLM\System\CCS\Services\Tcpip\..\{265B696F-CB48-4B78-88D2-5C8DCE7F930C}: DhcpNameServer = 192.168.1.1

---\\ Protocole additionnel (26) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (68) - 15s
O42 - Logiciel: µTorrent - (...) [HKLM] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {7BBAEC47-1CC0-4CB8-ADB4-531B78DBD1DD} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 21 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated
O42 - Logiciel: ANT Drivers Installer x86 - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {5E58CA93-ABA0-4CDB-9E37-6C88A795C86E} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM] -- {447CDCE5-F555-429B-BFA6-642C3C6D684F} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E1DB0812-2D60-43DB-AE09-6C7027D93B28} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc.
O42 - Logiciel: AxCrypt 1.7.2126.0 - (.Axantum Software AB.) [HKLM] -- {E4C1DBF1-67D9-4973-9DEC-677E695E7CE0} =>.Axantum Software AB
O42 - Logiciel: BitDefender Antivirus 2010 - (.BitDefender.) [HKLM] -- {4B469F8F-F3AC-4F3C-84F3-CFB349B3905C} =>.BitDefender
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} =>.Apple Inc.
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Codecs for Windows 7 Pack 4.0.5 - (.Codecs for Windows 7 Pack.) [HKLM] -- Codecs for Windows 7 Pack {39B7C287C179FBD0F13185D66A9E71AB}
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} =>.Microsoft Corporation
O42 - Logiciel: CopyTrans Suite désinstallation uniquement - (.WindSolutions.) [HKCU] -- CopyTrans Suite =>.WindSolutions SA®
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: Désinstaller l'imprimante EPSON Stylus SX400 Series - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON Stylus SX400 Series =>.SEIKO EPSON Corporation®
O42 - Logiciel: DMUninstaller - (...) [HKLM] -- DMUninstaller
O42 - Logiciel: Elevated Installer - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {8B20B453-8EB7-4F65-BF42-DA8B18C33CB0} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: EPSON Scan - (...) [HKLM] -- EPSON Scanner =>.SEIKO EPSON Corporation®
O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} =>.Logitech, Inc.
O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited
O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {0733d53f-b41d-47cc-b336-d95751c4b2cb} =>.Garmin International, Inc.®
O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {5D34B8AF-7FB5-41AC-AEDC-B705FAF8BCAB} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: Garmin Express Tray - (.Garmin Ltd or its subsidiaries.) [HKLM] -- {86A1F284-5314-402B-90C3-9B4E47CEEC77} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {3A9FE6B1-EE7F-40AC-B831-AC7C9ABB58A0} =>.Apple Inc.
O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft VC9 runtime libraries - (.AOL Inc..) [HKLM] -- {553C904F-57A2-4113-888E-BA0C3D1C69C0}
O42 - Logiciel: Mises à jour NVIDIA 10.4.0 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: MyDriveConnect 4.0.7.2442 - (.TomTom.) [HKLM] -- MyDriveConnect =>.TomTom International BV®
O42 - Logiciel: MyFreeCodec - (...) [HKCU] -- MyFreeCodec
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG
O42 - Logiciel: Notification de cadeaux MSN - (.Microsoft.) [HKCU] -- Notification de cadeaux MSN =>.Microsoft
O42 - Logiciel: NVIDIA 3D Vision Controller Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIA StereoUSB Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote 3D Vision 341.44 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 341.44 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: Opera Stable 36.0.2130.66 - (.Opera Software.) [HKLM] -- Opera 36.0.2130.66 =>.Opera Software ASA®
O42 - Logiciel: Package de pilotes Windows - Dynastream Innovations, Inc. ANT LibUSB Driver - (.Dynastream Innovations, Inc..) [HKLM] -- F9D2A789F9CFF8CEC36B544F53877C80F1F73C46 =>.Microsoft Windows®
O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM] -- 504244733D18C8F63FF584AEB290E3904E791693 =>.Microsoft Windows Component Publisher®
O42 - Logiciel: Package de pilotes Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB ( - (.Silicon Labs Software.) [HKLM] -- D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2 =>.Microsoft Windows®
O42 - Logiciel: Panneau de configuration NVIDIA 341.44 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM] -- {34610DE0-3C13-42CA-8E32-01FFA38AB6E8} =>.Nokia
O42 - Logiciel: Pivot Pro Plugin - (.Portrait Displays, Inc..) [HKLM] -- {0217E1D1-BCEF-4A61-AF6D-F7740F65A066} =>.Portrait Displays, Inc.®
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.®
O42 - Logiciel: SDK - (.Portrait Displays, Inc..) [HKLM] -- {0DEA342C-15CB-4F52-97B6-06A9C4B9C06F} =>.Portrait Displays, Inc.®
O42 - Logiciel: Setup - (...) [HKLM] -- {7ADF667E-E14D-4D2C-827C-B0108F0D93BC} =>PUP.Optional.DesktopPlay
O42 - Logiciel: SFR - Kit de connexion - (.SFR.) [HKLM] -- SFR_Kit =>.SFR
O42 - Logiciel: SmartControl - (.Portrait Displays, Inc..) [HKLM] -- {F4EF231A-7218-41B1-AB84-F5B48B74C50A} =>.Portrait Displays, Inc.
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM] -- {7A2BB1C8-903D-4585-9F3B-CADD67D07D37}
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} =>.TomTom International B.V.
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM] -- {4412F224-3849-4461-A3E9-DEEF8D252790} =>.TomTom International B.V.
O42 - Logiciel: WinRAR 5.30 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (160) - 15s
HKLM\SOFTWARE\aartemisSoftware =>PUP.Optional.AArtemis
HKLM\SOFTWARE\acengine =>PUP.Optional.FastSearch
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\Ahead
HKLM\SOFTWARE\AMD
HKLM\SOFTWARE\AppDataLow
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc.
HKLM\SOFTWARE\ASUS
HKLM\SOFTWARE\ATI Technologies
HKLM\SOFTWARE\BitDefender
HKLM\SOFTWARE\Canon
HKLM\SOFTWARE\CDDB
HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\CyberLink
HKLM\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\Disc Soft
HKLM\SOFTWARE\EPSON
HKLM\SOFTWARE\FastSearch =>PUP.Optional.FastSearch
HKLM\SOFTWARE\Garmin
HKLM\SOFTWARE\GEAR Software
HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Hercules Technologies
HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKLM\SOFTWARE\IB Updater =>PUP.Optional.InstallBrain
HKLM\SOFTWARE\IncrediMail
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\Licenses
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\MidasHeurScanner
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\Nero
HKLM\SOFTWARE\Netscape
HKLM\SOFTWARE\Neuf
HKLM\SOFTWARE\Nikon
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OfferBox =>PUP.Optional.OfferBox
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\PC Connectivity Solution
HKLM\SOFTWARE\Portrait Displays
HKLM\SOFTWARE\Portrait Displays, Inc.
HKLM\SOFTWARE\PortraitDisplays
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\SAMSUNG
HKLM\SOFTWARE\Skype
HKLM\SOFTWARE\SmartSaver+ 3-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Softwin
HKLM\SOFTWARE\SONIX
HKLM\SOFTWARE\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\SrpnFiles =>.Superfluous.SpringFiles
HKLM\SOFTWARE\SweetIM =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Systweak =>.Superfluous.Systweak
HKLM\SOFTWARE\TomTom
HKLM\SOFTWARE\VBMZ =>PUP.Optional.Duuqu
HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\Wow6432Node
HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Ahead
HKCU\SOFTWARE\AMD
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\ASProtect
HKCU\SOFTWARE\ATI
HKCU\SOFTWARE\Axantum
HKCU\SOFTWARE\Bikepark Dev Team
HKCU\SOFTWARE\BitDefender
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Codecs for Windows 7 Pack
HKCU\SOFTWARE\Commercial Research
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\Cyberlink
HKCU\SOFTWARE\d55dad1e73aed17 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKCU\SOFTWARE\DC3_FEXEC =>Trojan.Fynloski
HKCU\SOFTWARE\DesktopPaints.com
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DownloadAstro
HKCU\SOFTWARE\DriverTuner =>PUP.Optional.DriverTuner
HKCU\SOFTWARE\DriverTuner_Init =>PUP.Optional.DriverTuner
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\Ecommfactory =>.Superfluous.Downloader
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Garmin
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\GoldenGate
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\IM
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JEDI-VCL
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\lollipop =>PUP.Optional.Lollipop
HKCU\SOFTWARE\LowRegistry
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OfferBox =>PUP.Optional.OfferBox
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Polipo
HKCU\SOFTWARE\Portrait Displays
HKCU\SOFTWARE\Portrait Displays, Inc.
HKCU\SOFTWARE\Raptr
HKCU\SOFTWARE\Redefinition Games
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SmartSaver+ 3 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\SweetIM =>PUP.Optional.SweetIM
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\DynConIE =>PUP.Optional.DynConIE
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\MarkAny
HKCU\SOFTWARE\AppDataLow\Software\Re_markit =>PUP.Optional.ReMarkIt
HKCU\SOFTWARE\AppDataLow\Software\uTorrentBar_FR =>.Superfluous.Conduit

---\\ Contenu des dossiers Programmes (370) - 29s
O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\0590C4A0-1441462133-11D5-BF65-002618B522A2 =>PUP.Optional.CrossRider
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 15/11/2015 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 03/11/2014 - [] D -- C:\Program Files\AMD
O43 - CFD: 16/01/2014 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc.®
O43 - CFD: 09/09/2011 - [] D -- C:\Program Files\Axantum =>.Axantum Software AB®
O43 - CFD: 23/12/2011 - [] D -- C:\Program Files\BitDefender =>.BITDEFENDER LLC®
O43 - CFD: 21/10/2011 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.®
O43 - CFD: 03/05/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 17/04/2016 - [0] D -- C:\Program Files\Checked List =>PUP.Optional.CheckedList
O43 - CFD: 13/09/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 05/09/2015 - [] D -- C:\Program Files\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 15/12/2012 - [] D -- C:\Program Files\CyberLink
O43 - CFD: 06/09/2015 - [] D -- C:\Program Files\Desura
O43 - CFD: 11/01/2015 - [] D -- C:\Program Files\DIFX =>.Microsoft Windows Component Publisher®
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 07/02/2016 - [] D -- C:\Program Files\Emoticon
O43 - CFD: 07/02/2016 - [] D -- C:\Program Files\epson
O43 - CFD: 22/04/2016 - [] D -- C:\Program Files\FastSearch =>PUP.Optional.FastSearch
O43 - CFD: 05/04/2011 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 19/12/2012 - [0] D -- C:\Program Files\File Type Assistant =>Adware.InstallCore
O43 - CFD: 04/02/2016 - [] D -- C:\Program Files\Garmin =>.Garmin International, Inc.®
O43 - CFD: 05/09/2015 - [] D -- C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 23/01/2016 - [] D -- C:\Program Files\Google
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\hohobnd {1D709D810040872B48C7953084C288D1}
O43 - CFD: 07/03/2016 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 13/04/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 10/03/2015 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 10/03/2015 - [] D -- C:\Program Files\iTunes =>.Apple Inc.®
O43 - CFD: 23/01/2015 - [] D -- C:\Program Files\Java =>.Oracle America, Inc.®
O43 - CFD: 05/02/2012 - [] D -- C:\Program Files\MarkAny
O43 - CFD: 29/05/2012 - [0] D -- C:\Program Files\Microsoft
O43 - CFD: 16/07/2011 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition
O43 - CFD: 11/03/2015 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 05/04/2011 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 05/04/2011 - [0] D -- C:\Program Files\MSXML 4.0
O43 - CFD: 16/12/2015 - [] D -- C:\Program Files\MX Bikes
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\MyDrive Connect =>.TomTom International BV®
O43 - CFD: 25/05/2013 - [] D -- C:\Program Files\MyFree Codec
O43 - CFD: 29/07/2012 - [] D -- C:\Program Files\NCH Software =>.Conduit Ltd.®
O43 - CFD: 05/04/2011 - [] D -- C:\Program Files\Nero
O43 - CFD: 06/09/2015 - [0] D -- C:\Program Files\Nosibay =>PUP.Optional.SPointer
O43 - CFD: 13/09/2015 - [] D -- C:\Program Files\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 21/04/2016 - [] D -- C:\Program Files\Opera =>.Opera Software ASA®
O43 - CFD: 05/02/2012 - [] D -- C:\Program Files\PC Connectivity Solution =>.Microsoft Windows Component Publisher®
O43 - CFD: 23/08/2011 - [] D -- C:\Program Files\Philips
O43 - CFD: 22/03/2013 - [] D -- C:\Program Files\Philips Display =>.Portrait Displays, Inc.®
O43 - CFD: 22/03/2013 - [] D -- C:\Program Files\Portrait Displays =>.Portrait Displays, Inc.®
O43 - CFD: 06/09/2015 - [0] D -- C:\Program Files\predm =>PUP.Optional.Downware
O43 - CFD: 24/01/2014 - [] D -- C:\Program Files\QuickTime =>Riskware.QuickTime
O43 - CFD: 27/08/2014 - [] D -- C:\Program Files\Raptr
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 21/01/2016 - [0] D -- C:\Program Files\Rockstar Games
O43 - CFD: 26/09/2012 - [] D -- C:\Program Files\rpidity =>PUP.Optional.Boxore
O43 - CFD: 05/02/2012 - [] D -- C:\Program Files\Samsung =>.Samsung Electronics CO., LTD.®
O43 - CFD: 10/08/2014 - [0] D -- C:\Program Files\SearchProtect =>PUP.Optional.SearchProtect
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files\SFR =>.Societe Francaise de Radiotelephone (SFR)®
O43 - CFD: 06/09/2015 - [0] D -- C:\Program Files\Simple for You =>PUP.Optional.SimpleForYou
O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\SmartSaver+ 3 =>PUP.Optional.CrossRider
O43 - CFD: 12/01/2013 - [] D -- C:\Program Files\Software =>PUP.Optional.Boxore
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\Sosition =>.Huixin Zhao®
O43 - CFD: 29/06/2014 - [] D -- C:\Program Files\TomTom HOME 2 =>.TomTom International BV®
O43 - CFD: 15/02/2013 - [] D -- C:\Program Files\TomTom International B.V
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 05/12/2013 - [] D -- C:\Program Files\Uninstaller =>PUP.Optional.Generic
O43 - CFD: 04/05/2013 - [] D -- C:\Program Files\uTorrent =>.BitTorrent Inc®
O43 - CFD: 15/12/2012 - [] D -- C:\Program Files\uTorrentBar_FR =>PUP.Optional.uTorrentBar
O43 - CFD: 08/04/2013 - [0] D -- C:\Program Files\VideoLAN
O43 - CFD: 15/12/2012 - [] D -- C:\Program Files\Winamp
O43 - CFD: 13/07/2013 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 14/02/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 27/06/2012 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation®
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 05/04/2011 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 19/01/2016 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 13/09/2015 - [0] D -- C:\Program Files\ZedTV
O43 - CFD: 10/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 23/12/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 09/09/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axantum AxCrypt
O43 - CFD: 23/12/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitDefender 2010
O43 - CFD: 03/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 18/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codecs for Windows 7 Pack
O43 - CFD: 07/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 10/02/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 04/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
O43 - CFD: 05/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
O43 - CFD: 10/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 23/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 13/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 14/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 25/05/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec
O43 - CFD: 13/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 06/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SFR
O43 - CFD: 22/03/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartControl
O43 - CFD: 19/08/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 27/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
O43 - CFD: 27/06/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 18/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 10/03/2015 - [] D -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 05/12/2013 - [] D -- C:\ProgramData\20f0b9deeaa063d4
O43 - CFD: 30/08/2014 - [0] D -- C:\ProgramData\2308189059
O43 - CFD: 15/11/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 05/04/2011 - [] D -- C:\ProgramData\Ahead
O43 - CFD: 03/11/2014 - [0] D -- C:\ProgramData\AMD
O43 - CFD: 15/11/2014 - [] D -- C:\ProgramData\APN =>Toolbar.Ask
O43 - CFD: 05/09/2015 - [0] D -- C:\ProgramData\App37
O43 - CFD: 24/01/2014 - [] D -- C:\ProgramData\Apple
O43 - CFD: 04/08/2011 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 10/03/2015 - [] D -- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\b653d270-54f5-1 =>.Superfluous.Polluteware
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\b653d270-7753-0 =>.Superfluous.Polluteware
O43 - CFD: 06/03/2012 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon
O43 - CFD: 23/12/2011 - [] D -- C:\ProgramData\BitDefender
O43 - CFD: 05/04/2011 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 30/11/2014 - [] HD -- C:\ProgramData\CanonBJ
O43 - CFD: 01/12/2014 - [0] HD -- C:\ProgramData\CanonEPP
O43 - CFD: 01/12/2014 - [0] HD -- C:\ProgramData\CanonIJEPPEX2
O43 - CFD: 01/02/2013 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 15/12/2012 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 15/12/2015 - [0] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 25/08/2015 - [] D -- C:\ProgramData\Desura
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 07/02/2016 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 05/04/2011 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 17/05/2015 - [] D -- C:\ProgramData\Garmin
O43 - CFD: 06/09/2015 - [] D -- C:\ProgramData\Hruxseeia
O43 - CFD: 06/12/2012 - [] D -- C:\ProgramData\Logishrd
O43 - CFD: 15/08/2012 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 05/04/2011 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 12/12/2014 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 13/04/2016 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 05/04/2011 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 12/09/2015 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 29/07/2012 - [0] D -- C:\ProgramData\NCH Software
O43 - CFD: 22/04/2016 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 03/11/2014 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 23/01/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 04/02/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 05/04/2011 - [] D -- C:\ProgramData\PC Drivers HeadQuarters =>.Superfluous.PCDriversHeadQuarters
O43 - CFD: 05/02/2012 - [] D -- C:\ProgramData\PC Suite
O43 - CFD: 15/12/2012 - [] D -- C:\ProgramData\Quick PC Booster
O43 - CFD: 29/01/2015 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 05/12/2013 - [0] D -- C:\ProgramData\ShoppingChip =>PUP.Optional.ShoppingChip
O43 - CFD: 13/09/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 12/01/2013 - [] D -- C:\ProgramData\Software =>PUP.Optional.Boxore
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 05/12/2013 - [] D -- C:\ProgramData\Sun
O43 - CFD: 29/01/2013 - [] D -- C:\ProgramData\Tarma Installer =>.Superfluous.Tarma
O43 - CFD: 05/12/2013 - [0] D -- C:\ProgramData\TEMP
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 02/02/2013 - [] D -- C:\ProgramData\TuneUp Software
O43 - CFD: 06/04/2011 - [] D -- C:\ProgramData\UDL
O43 - CFD: 29/01/2013 - [] D -- C:\ProgramData\VisualBee =>PUP.Optional.VisualBeeToolbar
O43 - CFD: 09/09/2015 - [] D -- C:\ProgramData\vWdsManProv =>PUP.Optional.WdsManPro
O43 - CFD: 11/03/2015 - [] D -- C:\ProgramData\WindSolutions
O43 - CFD: 30/08/2014 - [0] D -- C:\ProgramData\WinSpeed =>Trojan.SProtector
O43 - CFD: 01/02/2013 - [0] SHD -- C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
O43 - CFD: 02/02/2013 - [] SHD -- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936}
O43 - CFD: 01/02/2013 - [0] SHD -- C:\ProgramData\{55A29068-F2CE-456C-9148-C869879E2357}
O43 - CFD: 01/02/2013 - [0] SHD -- C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
O43 - CFD: 15/11/2015 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Common Files\Adobe AIR
O43 - CFD: 16/01/2014 - [] D -- C:\Program Files\Common Files\Apple
O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\Common Files\ATI Technologies
O43 - CFD: 23/12/2011 - [] D -- C:\Program Files\Common Files\BitDefender
O43 - CFD: 14/05/2014 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 25/08/2015 - [] D -- C:\Program Files\Common Files\Desura
O43 - CFD: 23/01/2015 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 06/12/2012 - [] D -- C:\Program Files\Common Files\LogiShrd
O43 - CFD: 27/06/2012 - [] D -- C:\Program Files\Common Files\microsoft shared
O43 - CFD: 23/12/2011 - [] D -- C:\Program Files\Common Files\MSSoap
O43 - CFD: 22/03/2013 - [] D -- C:\Program Files\Common Files\Portrait Displays
O43 - CFD: 15/12/2012 - [] D -- C:\Program Files\Common Files\PX Storage Engine
O43 - CFD: 05/02/2012 - [] D -- C:\Program Files\Common Files\Samsung
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines
O43 - CFD: 09/11/2011 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 06/04/2011 - [] D -- C:\Program Files\Common Files\Windows Live
O43 - CFD: 13/10/2014 - [] D -- C:\Users\cep\AppData\Roaming\.ascentia
O43 - CFD: 01/09/2015 - [] D -- C:\Users\cep\AppData\Roaming\.hellomine
O43 - CFD: 21/04/2016 - [] D -- C:\Users\cep\AppData\Roaming\.minecraft
O43 - CFD: 20/08/2015 - [0] D -- C:\Users\cep\AppData\Roaming\.technic
O43 - CFD: 16/03/2013 - [] D -- C:\Users\cep\AppData\Roaming\Adobe
O43 - CFD: 15/12/2012 - [] D -- C:\Users\cep\AppData\Roaming\Ahead
O43 - CFD: 04/08/2011 - [] D -- C:\Users\cep\AppData\Roaming\Apple Computer
O43 - CFD: 27/08/2014 - [] D -- C:\Users\cep\AppData\Roaming\ATI
O43 - CFD: 08/04/2013 - [] D -- C:\Users\cep\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution
O43 - CFD: 05/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\BitDefender
O43 - CFD: 21/03/2015 - [] D -- C:\Users\cep\AppData\Roaming\dclogs
O43 - CFD: 22/03/2013 - [] D -- C:\Users\cep\AppData\Roaming\DisplayTune
O43 - CFD: 17/11/2012 - [] D -- C:\Users\cep\AppData\Roaming\dvdcss
O43 - CFD: 22/04/2016 - [0] D -- C:\Users\cep\AppData\Roaming\Fiiig
O43 - CFD: 17/05/2015 - [] D -- C:\Users\cep\AppData\Roaming\Garmin
O43 - CFD: 23/08/2014 - [] HD -- C:\Users\cep\AppData\Roaming\GoldenGate
O43 - CFD: 05/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\Identities
O43 - CFD: 22/02/2015 - [] D -- C:\Users\cep\AppData\Roaming\java
O43 - CFD: 06/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\Leadertech
O43 - CFD: 27/08/2014 - [] D -- C:\Users\cep\AppData\Roaming\library_dir
O43 - CFD: 06/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\Logishrd
O43 - CFD: 06/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\Logitech
O43 - CFD: 07/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\Macromedia
O43 - CFD: 26/07/2013 - [] D -- C:\Users\cep\AppData\Roaming\main
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\cep\AppData\Roaming\Media Center Programs
O43 - CFD: 05/12/2013 - [] SD -- C:\Users\cep\AppData\Roaming\Microsoft
O43 - CFD: 05/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\Mozilla
O43 - CFD: 28/07/2012 - [] D -- C:\Users\cep\AppData\Roaming\NCH Software
O43 - CFD: 06/09/2015 - [0] D -- C:\Users\cep\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock
O43 - CFD: 03/02/2015 - [] D -- C:\Users\cep\AppData\Roaming\NVIDIA
O43 - CFD: 15/08/2012 - [] D -- C:\Users\cep\AppData\Roaming\OfferBox =>PUP.Optional.OfferBox
O43 - CFD: 26/02/2012 - [] D -- C:\Users\cep\AppData\Roaming\Opera
O43 - CFD: 21/04/2016 - [] D -- C:\Users\cep\AppData\Roaming\Opera Software
O43 - CFD: 21/09/2014 - [] D -- C:\Users\cep\AppData\Roaming\Oracle
O43 - CFD: 05/02/2012 - [] D -- C:\Users\cep\AppData\Roaming\PC Suite
O43 - CFD: 06/09/2015 - [] D -- C:\Users\cep\AppData\Roaming\PriceFountain =>PUP.Optional.PriceFountain
O43 - CFD: 14/06/2013 - [] D -- C:\Users\cep\AppData\Roaming\Samsung
O43 - CFD: 13/09/2015 - [] D -- C:\Users\cep\AppData\Roaming\Skype
O43 - CFD: 13/12/2015 - [] D -- C:\Users\cep\AppData\Roaming\skyz
O43 - CFD: 01/11/2011 - [] D -- C:\Users\cep\AppData\Roaming\Softativity
O43 - CFD: 06/09/2015 - [0] D -- C:\Users\cep\AppData\Roaming\Store =>PUP.Optional.Nosibay
O43 - CFD: 05/12/2013 - [0] D -- C:\Users\cep\AppData\Roaming\Systweak =>.Superfluous.Systweak
O43 - CFD: 07/05/2012 - [0] D -- C:\Users\cep\AppData\Roaming\Temp
O43 - CFD: 15/12/2012 - [] D -- C:\Users\cep\AppData\Roaming\Todae
O43 - CFD: 15/02/2013 - [] D -- C:\Users\cep\AppData\Roaming\TomTom
O43 - CFD: 04/02/2013 - [] D -- C:\Users\cep\AppData\Roaming\TuneUp Software
O43 - CFD: 21/04/2016 - [] D -- C:\Users\cep\AppData\Roaming\uTorrent
O43 - CFD: 03/03/2012 - [] D -- C:\Users\cep\AppData\Roaming\Vidalia
O43 - CFD: 12/01/2013 - [] D -- C:\Users\cep\AppData\Roaming\WebPlayerBdd =>PUP.Optional.SocialSkinz
O43 - CFD: 22/03/2015 - [0] D -- C:\Users\cep\AppData\Roaming\Windows
O43 - CFD: 11/03/2015 - [] D -- C:\Users\cep\AppData\Roaming\WindSolutions
O43 - CFD: 06/04/2011 - [] D -- C:\Users\cep\AppData\Roaming\WinRAR
O43 - CFD: 06/09/2015 - [0] D -- C:\Users\cep\AppData\Roaming\WTools =>PUP.Optional.Nosibay
O43 - CFD: 17/04/2016 - [0] D -- C:\Users\cep\AppData\Roaming\YbunhhRowpa
O43 - CFD: 23/04/2016 - [] D -- C:\Users\cep\AppData\Roaming\ZHP
O43 - CFD: 15/11/2015 - [] D -- C:\Users\cep\AppData\Local\Adobe
O43 - CFD: 27/05/2011 - [] D -- C:\Users\cep\AppData\Local\adslTV
O43 - CFD: 15/12/2012 - [] D -- C:\Users\cep\AppData\Local\Ahead
O43 - CFD: 27/08/2014 - [] D -- C:\Users\cep\AppData\Local\AMD
O43 - CFD: 04/08/2011 - [] D -- C:\Users\cep\AppData\Local\Apple
O43 - CFD: 04/08/2011 - [] D -- C:\Users\cep\AppData\Local\Apple Computer
O43 - CFD: 05/04/2011 - [0] SHD -- C:\Users\cep\AppData\Local\Application Data
O43 - CFD: 23/08/2014 - [] D -- C:\Users\cep\AppData\Local\ApplicationHistory
O43 - CFD: 08/05/2011 - [] D -- C:\Users\cep\AppData\Local\Apps
O43 - CFD: 27/08/2014 - [] D -- C:\Users\cep\AppData\Local\ATI
O43 - CFD: 21/01/2016 - [0] D -- C:\Users\cep\AppData\Local\BeamNG
O43 - CFD: 20/12/2015 - [] D -- C:\Users\cep\AppData\Local\Canal.MyCanal
O43 - CFD: 15/11/2015 - [] D -- C:\Users\cep\AppData\Local\CEF
O43 - CFD: 06/09/2015 - [] D -- C:\Users\cep\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse
O43 - CFD: 08/05/2011 - [0] D -- C:\Users\cep\AppData\Local\Deployment
O43 - CFD: 03/01/2016 - [0] D -- C:\Users\cep\AppData\Local\Diagnostics
O43 - CFD: 04/12/2012 - [] D -- C:\Users\cep\AppData\Local\DisplayTune
O43 - CFD: 29/06/2014 - [] D -- C:\Users\cep\AppData\Local\Downloaded Installations
O43 - CFD: 10/02/2012 - [] D -- C:\Users\cep\AppData\Local\Electronic_Arts_Inc
O43 - CFD: 03/01/2016 - [0] D -- C:\Users\cep\AppData\Local\ElevatedDiagnostics
O43 - CFD: 25/08/2015 - [0] SHD -- C:\Users\cep\AppData\Local\EmieBrowserModeList
O43 - CFD: 25/08/2015 - [0] SHD -- C:\Users\cep\AppData\Local\EmieSiteList
O43 - CFD: 25/08/2015 - [0] SHD -- C:\Users\cep\AppData\Local\EmieUserList
O43 - CFD: 10/08/2014 - [] D -- C:\Users\cep\AppData\Local\Facebook
O43 - CFD: 23/08/2014 - [] D -- C:\Users\cep\AppData\Local\gameo =>PUP.Optional.Gameo
O43 - CFD: 17/01/2015 - [] D -- C:\Users\cep\AppData\Local\Garmin
O43 - CFD: 17/05/2015 - [] D -- C:\Users\cep\AppData\Local\Garmin_Ltd._or_its_subsid
O43 - CFD: 10/08/2014 - [0] D -- C:\Users\cep\AppData\Local\GGEmpire
O43 - CFD: 05/09/2015 - [] D -- C:\Users\cep\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 31/08/2011 - [] D -- C:\Users\cep\AppData\Local\Google
O43 - CFD: 04/06/2015 - [] D -- C:\Users\cep\AppData\Local\GWX
O43 - CFD: 05/04/2011 - [0] SHD -- C:\Users\cep\AppData\Local\Historique
O43 - CFD: 30/01/2016 - [0] SHD -- C:\Users\cep\AppData\Local\icsxml
O43 - CFD: 28/12/2014 - [] D -- C:\Users\cep\AppData\Local\KowMedia
O43 - CFD: 12/01/2013 - [] D -- C:\Users\cep\AppData\Local\Kreapixel =>PUP.Optional.SocialSkinz
O43 - CFD: 05/12/2013 - [0] D -- C:\Users\cep\AppData\Local\Lollipop =>PUP.Optional.Lollipop
O43 - CFD: 23/06/2012 - [] D -- C:\Users\cep\AppData\Local\Macromedia
O43 - CFD: 01/01/2016 - [] D -- C:\Users\cep\AppData\Local\Mega Limited
O43 - CFD: 30/01/2016 - [] D -- C:\Users\cep\AppData\Local\MetaGeek,_LLC
O43 - CFD: 06/02/2016 - [] D -- C:\Users\cep\AppData\Local\Microsoft
O43 - CFD: 28/01/2016 - [] D -- C:\Users\cep\AppData\Local\Microsoft Help
O43 - CFD: 01/10/2013 - [] D -- C:\Users\cep\AppData\Local\Mozilla
O43 - CFD: 30/01/2016 - [0] SHD -- C:\Users\cep\AppData\Local\ms-drivers
O43 - CFD: 03/11/2014 - [] D -- C:\Users\cep\AppData\Local\NVIDIA
O43 - CFD: 26/02/2012 - [] D -- C:\Users\cep\AppData\Local\Opera
O43 - CFD: 21/04/2016 - [] D -- C:\Users\cep\AppData\Local\Opera Software
O43 - CFD: 30/04/2013 - [] D -- C:\Users\cep\AppData\Local\Programs
O43 - CFD: 27/08/2011 - [] D -- C:\Users\cep\AppData\Local\quicklz.com_outssider
O43 - CFD: 27/07/2012 - [] D -- C:\Users\cep\AppData\Local\rocherdigital
O43 - CFD: 29/01/2015 - [] D -- C:\Users\cep\AppData\Local\Samsung
O43 - CFD: 13/09/2015 - [] D -- C:\Users\cep\AppData\Local\Skype
O43 - CFD: 12/01/2013 - [] D -- C:\Users\cep\AppData\Local\Software =>PUP.Optional.Boxore
O43 - CFD: 10/08/2014 - [] D -- C:\Users\cep\AppData\Local\Songr
O43 - CFD: 10/08/2014 - [0] D -- C:\Users\cep\AppData\Local\StormFall =>PUP.Optional.StormFall
O43 - CFD: 23/04/2016 - [] D -- C:\Users\cep\AppData\Local\Temp
O43 - CFD: 17/04/2016 - [0] D -- C:\Users\cep\AppData\Local\Tempfolder
O43 - CFD: 05/04/2011 - [0] SHD -- C:\Users\cep\AppData\Local\Temporary Internet Files
O43 - CFD: 15/02/2013 - [] D -- C:\Users\cep\AppData\Local\TomTom
O43 - CFD: 03/03/2012 - [] D -- C:\Users\cep\AppData\Local\Vidalia
O43 - CFD: 02/02/2013 - [] D -- C:\Users\cep\AppData\Local\VirtualStore
O43 - CFD: 29/01/2013 - [0] D -- C:\Users\cep\AppData\Local\VisualBeeExe =>PUP.Optional.VisualBeeToolbar
O43 - CFD: 27/03/2016 - [] D -- C:\Users\cep\AppData\Local\Windows Live
O43 - CFD: 06/09/2015 - [0] D -- C:\Users\cep\AppData\Local\ZombieInvasion =>PUP.Optional.ZombieInvasion
O43 - CFD: 26/10/2011 - [0] D -- C:\Users\cep\AppData\Local\{01EA7756-76EB-4353-BB10-E417628EE0C8} =>.Superfluous.Empty
O43 - CFD: 06/04/2011 - [0] D -- C:\Users\cep\AppData\Local\{02AF4816-E43B-4281-8577-F54AFAFD061F} =>.Superfluous.Empty
O43 - CFD: 04/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{07C5F250-49A5-440D-BDB3-3E08D10BBC73} =>.Superfluous.Empty
O43 - CFD: 09/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{07EA9A92-7248-4A2F-AB2F-F386EBEAE1FA} =>.Superfluous.Empty
O43 - CFD: 17/08/2011 - [0] D -- C:\Users\cep\AppData\Local\{0C64824E-97FC-444E-AB38-D818E46DC719} =>.Superfluous.Empty
O43 - CFD: 15/08/2012 - [0] D -- C:\Users\cep\AppData\Local\{1957AE95-D1E6-466D-B3E6-8840DA0F7236} =>.Superfluous.Empty
O43 - CFD: 03/02/2013 - [0] D -- C:\Users\cep\AppData\Local\{2227BCE6-A199-47AE-B1AE-9594C6339C10} =>.Superfluous.Empty
O43 - CFD: 22/05/2014 - [0] D -- C:\Users\cep\AppData\Local\{25139549-CBD8-487C-8F43-F850178A1233} =>.Superfluous.Empty
O43 - CFD: 17/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{30300A89-5BA5-43F6-97E9-F31353C0D04E} =>.Superfluous.Empty
O43 - CFD: 22/05/2014 - [0] D -- C:\Users\cep\AppData\Local\{30433A51-DD76-47EB-8B51-7D6C66CCF2F5} =>.Superfluous.Empty
O43 - CFD: 11/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{36AA155C-AC34-4057-BDB0-56B7C685248F} =>.Superfluous.Empty
O43 - CFD: 26/10/2011 - [0] D -- C:\Users\cep\AppData\Local\{398E89BF-5F81-458F-ADC7-DA10A7CB0787} =>.Superfluous.Empty
O43 - CFD: 27/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{3D01F658-7159-4733-9D73-1723D18382C7} =>.Superfluous.Empty
O43 - CFD: 11/06/2011 - [0] D -- C:\Users\cep\AppData\Local\{44AF6528-78A0-455A-9079-0D3320CB9CC7} =>.Superfluous.Empty
O43 - CFD: 13/02/2016 - [0] D -- C:\Users\cep\AppData\Local\{4610A7E7-C80E-45D1-8DF4-F5F05AD66946} =>.Superfluous.Empty
O43 - CFD: 03/07/2013 - [0] D -- C:\Users\cep\AppData\Local\{4C243845-8C39-423D-9F22-589832501CC0} =>.Superfluous.Empty
O43 - CFD: 26/10/2011 - [0] D -- C:\Users\cep\AppData\Local\{57C1DA42-6FEF-4372-A8EB-90E37E47EFFA} =>.Superfluous.Empty
O43 - CFD: 18/02/2012 - [0] D -- C:\Users\cep\AppData\Local\{66E1BBF5-264C-47F3-95FA-6F67228D9E3E} =>.Superfluous.Empty
O43 - CFD: 06/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{675C8F71-DC7C-40AC-AFB7-BC00C8360E61} =>.Superfluous.Empty
O43 - CFD: 04/02/2016 - [0] D -- C:\Users\cep\AppData\Local\{6F12D5FE-1DF6-405B-9FB0-36D2BF4DCDF9} =>.Superfluous.Empty
O43 - CFD: 27/03/2016 - [0] D -- C:\Users\cep\AppData\Local\{77B37C25-2A6F-4FF3-8DB3-2520D87BC585} =>.Superfluous.Empty
O43 - CFD: 26/10/2011 - [0] D -- C:\Users\cep\AppData\Local\{7A006E82-517D-49A0-AB01-C9FA3B962753} =>.Superfluous.Empty
O43 - CFD: 25/03/2016 - [0] D -- C:\Users\cep\AppData\Local\{7AF388DF-C29A-4DA8-90FB-B6E563A1AADF} =>.Superfluous.Empty
O43 - CFD: 22/04/2016 - [0] D -- C:\Users\cep\AppData\Local\{84600A0A-9BD9-41DF-962B-9E37F1151D23} =>.Superfluous.Empty
O43 - CFD: 18/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{87262499-E815-4995-A445-F21B708D16E9} =>.Superfluous.Empty
O43 - CFD: 15/08/2012 - [0] D -- C:\Users\cep\AppData\Local\{923B2049-4478-4C36-8FAD-21B55ABCA250} =>.Superfluous.Empty
O43 - CFD: 07/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{925EBB03-A09B-4BCC-B30D-4AE046F332B4} =>.Superfluous.Empty
O43 - CFD: 05/06/2013 - [0] D -- C:\Users\cep\AppData\Local\{926052AB-616F-4E3F-816F-5975F310B81C} =>.Superfluous.Empty
O43 - CFD: 08/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{95A5E33A-E3E3-4B10-A6D2-4F58C0F27047} =>.Superfluous.Empty
O43 - CFD: 25/10/2011 - [0] D -- C:\Users\cep\AppData\Local\{95E63B62-01D5-41D5-A8F4-B002CFF9812A} =>.Superfluous.Empty
O43 - CFD: 18/11/2012 - [0] D -- C:\Users\cep\AppData\Local\{9EDCD8A8-3145-42D5-87FE-8E04391C8924} =>.Superfluous.Empty
O43 - CFD: 18/09/2012 - [0] D -- C:\Users\cep\AppData\Local\{A0525524-BF60-4347-B9A5-6B402FA53A37} =>.Superfluous.Empty
O43 - CFD: 10/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{B06BF115-428C-499B-A7B9-4B6AD34142E2} =>.Superfluous.Empty
O43 - CFD: 20/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{B67B80D1-068B-432E-A864-B6737BC6B9D0} =>.Superfluous.Empty
O43 - CFD: 25/10/2011 - [0] D -- C:\Users\cep\AppData\Local\{B6B72C58-62A1-4C2F-A550-A0D6C914BE07} =>.Superfluous.Empty
O43 - CFD: 27/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{B9F9CE50-9686-4BD7-A3F9-A168B6D3F948} =>.Superfluous.Empty
O43 - CFD: 28/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{BAA8175A-5AE1-4556-937F-6BF6D9AC6107} =>.Superfluous.Empty
O43 - CFD: 04/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{BC187363-E561-490F-B7FC-F8B2468330F7} =>.Superfluous.Empty
O43 - CFD: 06/02/2016 - [0] D -- C:\Users\cep\AppData\Local\{BFBD2453-65A3-4006-B529-87A6616E077B} =>.Superfluous.Empty
O43 - CFD: 26/10/2012 - [0] D -- C:\Users\cep\AppData\Local\{BFD45899-E7F1-43A8-803D-F6155F92F377} =>.Superfluous.Empty
O43 - CFD: 27/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{CCFBC40F-3ED5-4D72-95E3-55E472025389} =>.Superfluous.Empty
O43 - CFD: 06/02/2016 - [0] D -- C:\Users\cep\AppData\Local\{D6B0DD23-76C7-4572-9624-2E84D03BF7FD} =>.Superfluous.Empty
O43 - CFD: 28/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{DED73E39-E94E-46CA-A5E3-813476DBA930} =>.Superfluous.Empty
O43 - CFD: 19/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{E6C37EBA-D3F6-4475-8CDD-3AA15C7D9AED} =>.Superfluous.Empty
O43 - CFD: 08/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{E777CFAE-4089-4AB6-A6D0-4075C26DBCF0} =>.Superfluous.Empty
O43 - CFD: 21/05/2014 - [0] D -- C:\Users\cep\AppData\Local\{E848669F-2853-4390-A147-BE0A0FAD5416} =>.Superfluous.Empty
O43 - CFD: 05/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{EB27CC65-AEFF-48CF-8C6B-232B2D57BB3E} =>.Superfluous.Empty
O43 - CFD: 18/02/2012 - [0] D -- C:\Users\cep\AppData\Local\{EBEA7A11-BDA6-490C-983A-B6DC2A4034F8} =>.Superfluous.Empty
O43 - CFD: 12/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{F2192F27-68D0-40A0-BE2B-BEC8B83BD0C5} =>.Superfluous.Empty
O43 - CFD: 27/03/2016 - [0] D -- C:\Users\cep\AppData\Local\{F5E9D8EF-B9EC-4CEC-B515-14C8704CF989} =>.Superfluous.Empty
O43 - CFD: 27/06/2012 - [0] D -- C:\Users\cep\AppData\Local\{F738E550-A0EE-403C-B50C-E95F33F39C35} =>.Superfluous.Empty
O43 - CFD: 10/05/2011 - [0] D -- C:\Users\cep\AppData\Local\{F7A12BBE-7A83-4E7E-9E00-456AEE1E272A} =>.Superfluous.Empty
O43 - CFD: 30/04/2013 - [0] D -- C:\Users\cep\AppData\Local\Programs\Common
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\cep\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 12/02/2016 - [] RD -- C:\Users\cep\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 11/03/2015 - [] D -- C:\Users\cep\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\cep\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 12/02/2016 - [] RD -- C:\Users\cep\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 18/01/2016 - [] D -- C:\Users\cep\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (13) - 1s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.
O53 - SMSR:HKLM\...\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} [Key] . (...) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Connexion SFR 9props.exe [Key] . (.SFR - Propriétés de la connexion SFR.) -- C:\Program Files\SFR\Kit\9props.exe =>.SFR
O53 - SMSR:HKLM\...\startupreg\GarminExpressTrayApp [Key] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files\Garmin\Express Tray\ExpressTray.exe =>.Garmin Ltd. or its subsidiaries
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (...) -- C:\Users\cep\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\GoogleChromeAutoLaunch_C9C9D8D71616DF8D858C725B17F54661 [Key] . (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.
O53 - SMSR:HKLM\...\startupreg\KiesHelper [Key] . (...) -- C:\Program Files\Samsung\Kies\KiesHelper.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\KiesTrayAgent [Key] . (...) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NeroFilterCheck [Key] . (...) -- C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\QuickTime Plugin Install [Key] . (...) -- C:\Program Files\QuickTime\Plugins\DeleteMe1.exe
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (...) -- C:\Program Files\QuickTime\QTTask.exe (.not file.)

---\\ Liste des pilotes du système (99) - 12s
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows®
O58 - SDL:2014/04/18 04:39:04 A . (.Advanced Micro Devices - AMD ACP Kernel Service Driver.) -- C:\Windows\System32\drivers\amdacpksd.sys [247520] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows®
O58 - SDL:2010/10/18 06:24:14 A . (.Google Inc - ADB Interface.) -- C:\Windows\System32\drivers\androidusb.sys [32408] =>.ZTE CORPORATION ®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows®
O58 - SDL:2004/08/13 09:56:20 A . (. - ATK0110 ACPI Utility.) -- C:\Windows\System32\drivers\ASACPI.sys [5810]
O58 - SDL:2013/12/19 18:44:40 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW73.sys [77824] =>.Advanced Micro Devices
O58 - SDL:2014/04/18 04:35:20 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [13515264] =>.Advanced Micro Devices, Inc.
O58 - SDL:2014/04/18 03:06:30 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [512000] =>.Advanced Micro Devices, Inc.
O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation
O58 - SDL:2011/12/23 16:37:19 A . (.BitDefender S.R.L. Bucharest, ROMANIA - BitDefender Active Virus Control Filter Dri.) -- C:\Windows\System32\drivers\bdfm.sys [153448] =>.BITDEFENDER LLC®
O58 - SDL:2009/10/19 18:04:00 A . (.BitDefender LLC - BitDefender Firewall NDIS6 Filter Driver.) -- C:\Windows\System32\drivers\BdfNdisf6.sys [72200] =>.BITDEFENDER LLC®
O58 - SDL:2011/12/23 16:37:34 A . (.BitDefender - BitDefender AntiVirus FS filter driver.) -- C:\Windows\System32\drivers\bdfsfltr.sys [291352] =>.BITDEFENDER LLC®
O58 - SDL:2011/12/23 16:37:15 A . (.BitDefender S.R.L. Bucharest, ROMANIA - BitDefender AntiVirus Hypervisor driver.) -- C:\Windows\System32\drivers\bdhv.sys [106464] =>.BITDEFENDER LLC®
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation
O58 - SDL:2016/04/17 16:05:52 A . (.Cherimoya Ltd - Cherimoya Ltd.) -- C:\Windows\System32\drivers\cherimoya.sys [62272] {11210F67981213BDF75F3E4545F51866170D} =>PUP.Optional.Shopperz
O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation
O58 - SDL:2012/08/21 14:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [26840] =>.GEAR Software Inc.®
O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows®
O58 - SDL:2009/02/09 10:42:42 A . (.Guillemot Corporation - Filter Driver for the Hercules Webcams (MJP.) -- C:\Windows\System32\drivers\hxctlflt.sys [99968] =>.Guillemot Corporation
O58 - SDL:2009/07/14 03:20:36 N . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332352] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows®
O58 - SDL:2010/12/21 11:56:12 A . (...) -- C:\Windows\System32\drivers\jabcj.sys [196416] {1D2B284ECB106540AD12D73696884E94}
O58 - SDL:2010/08/24 19:30:52 A . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\Windows\System32\drivers\LHidFilt.Sys [38864] =>.Logitech®
O58 - SDL:2010/08/24 19:31:02 A . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\Windows\System32\drivers\LMouFilt.Sys [37328] =>.Logitech®
O58 - SDL:2011/04/06 00:54:53 A . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\Windows\System32\drivers\LNonPnP.sys [16400] =>.Logitech®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows®
O58 - SDL:2012/05/12 13:31:00 A . (.MotioninJoy - MotioninJoy DS3 driver.) -- C:\Windows\System32\drivers\MijXfilt.sys [99400] =>.MotionInjoy
O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows®
O58 - SDL:2014/08/19 23:16:18 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\Windows\System32\drivers\nvhda32v.sys [162592] =>.NVIDIA Corporation®
O58 - SDL:2015/02/20 00:44:26 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10702664] =>.NVIDIA Corporation®
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows®
O58 - SDL:2008/08/26 10:26:12 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfd.sys [18816] =>.Nokia
O58 - SDL:2012/04/16 12:01:56 A . (.Portrait Displays, Inc. - PdiPorts Device Driver.) -- C:\Windows\System32\drivers\PdiPorts.sys [17328] =>.Portrait Displays, Inc.®
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows®
O58 - SDL:2009/03/01 23:05:32 A . (.Realtek Corporation - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [139776] =>.Realtek Corporation
O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows®
O58 - SDL:2007/07/17 18:07:42 A . (.Sonix Co. Ltd. - USB PC Camera driver.) -- C:\Windows\System32\drivers\snpstd3.sys [10371072]
O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [88576] =>.DEVGURU CO LTD®
O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [184192] =>.DEVGURU CO LTD®
O58 - SDL:2014/01/22 08:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\Windows\System32\drivers\ssudserd.sys [184192] =>.DEVGURU CO LTD®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI - SAMSUNG USB Mobile Device.) -- C:\Windows\System32\drivers\ss_bbus.sys [98432] =>.MCCI Corporation®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcm.sys [12416] =>.MCCI Corporation®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcmnt.sys [12416] =>.MCCI Corporation®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI Corporation - SAMSUNG USB Mobile Modem Filter.) -- C:\Windows\System32\drivers\ss_bmdfl.sys [14848] =>.MCCI Corporation®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI Corporation - SAMSUNG USB Mobile Modem.) -- C:\Windows\System32\drivers\ss_bmdm.sys [123648] =>.MCCI Corporation®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI Corporation - SAMSUNG USB Mobile Logging Device Driver.) -- C:\Windows\System32\drivers\ss_bserd.sys [100224] =>.MCCI Corporation®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwh.sys [12288] =>.MCCI Corporation®
O58 - SDL:2009/09/19 07:30:10 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwhnt.sys [12288] =>.MCCI Corporation®
O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows®
O58 - SDL:2014/08/15 23:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl.sys [45056] =>.Apple, Inc.
O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows®
O58 - SDL:2010/02/08 05:45:04 A . (.WiFi Media Connect - WiFi Media Connect Virtual Audio Device.) -- C:\Windows\System32\drivers\wfmcvad.sys [19456]
O58 - SDL:2011/01/13 03:17:18 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\zghsmdm.sys [106752] =>.ZTE Incorporated
O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029]
O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097]
O58 - SDL:2013/04/18 12:09:20 A . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [37344]
O58 - SDL:1996/04/03 21:33:26 A . (...) -- C:\Windows\System32\giveio.sys [5248]
O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809]
O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]
O58 - SDL:2007/04/04 11:30:12 A . (...) -- C:\Windows\System32\Machnm32.sys [7432] =>.Concept Software Inc.®
O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866]
O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]
O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]
O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]
O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]
O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952]
O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672]
O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776]
O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536]
O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672]
O58 - SDL:2011/03/18 18:08:54 A . (.Almico Software - SpeedFan x32 Driver.) -- C:\Windows\System32\speedfan.sys [25240] =>.Sokno S.R.L.®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 31s
O61 - LFC: 2016/04/16 21:21:46 A . (..) -- C:\Users\cep\AppData\Roaming\NVIDIA\GLCache\cb05ea612e23ecc768fb87881d9bc45f\577a3d2a9fe9fea5\82bd674ac494837f.bin [163908]
O61 - LFC: 2016/04/17 17:52:54 A . (..) -- C:\Users\cep\AppData\Local\Canal.MyCanal\MyCanalLauncher.exe [184320]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software ASA®

---\\ Menu de démarrage Internet (20) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://aartemis.com/ =>PUP.Optional.AArtemis
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Opera\Opera.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =>.Opera Software ASA®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\Opera\Opera.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software

---\\ Recherche d'infection sur les navigateurs (124) - 39s
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("browser.search.defaultenginename", "oursurfing"); =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("browser.search.searchengine.alias", "oursurfing"); =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("browser.search.searchengine.iconURL", "http://www.oursurfing.com/favicon.ico"); =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("browser.search.searchengine.name", "oursurfing"); =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("browser.search.searchengine.url", "http://www.oursurfing.com/web/?type=ds&ts=1441461990&z=b38d608e2a1cde5ce0d6fe0g2zdze[...] =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("browser.startup.homepage", "http://www.oursurfing.com/?type=hp&ts=1441461990&z=b38d608e2a1cde5ce0d6fe0g2zdzeg2z6qbg4t4t[...] =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.AL", 4); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.aflt", "ast_ir_14_42_other"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.appId", "{9CB2CD61-FFA0-406C-9D2D-8FDE6F4A4D8A}"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.cd", "2XzuyEtN2Y1L1QzutDtDtByCtCzz0ByDtBtB0AtB0CyCtC0FtN0D0Tzu0StCtDtCyBtN1L2XzutAtFtBtFtCtFyDtN1[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.cr", "979447050"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.1475e97c0146bfb1c490339546d9e72ee", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.851d81cdad83573282e611040475985c", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data._dy", "20141125"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.a._dy", "20141019"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.a.aliveDate", "20141019"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.a.instlDate", "20141013"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.b3.aliveDate", "20141221"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.cc", "fr"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.data.ccfc1eb13092ea34473c169417eefd00", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.dfltLng", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.dfltSrch", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.dnsErr", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.excTlbr", false); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.general.guid", "efbdd735-47a4-4a46-bbc5-f82f01535fb2"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.hmpg", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.hmpgUrl", "http://astromenda.com/?f=1&a=ast_ir_14_42_other&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0ByDtBt[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.id", "002618B522A2C61F"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.instlDay", "16356"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.instlRef", "142905_b"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.newTabUrl", "http://astromenda.com/?f=2&a=ast_ir_14_42_other&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0ByDt[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.prdct", "astrmndasr"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.prtnrId", "WSE_Astromenda"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.srchPrvdr", "Astromenda"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.tlbrId", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.tlbrSrchUrl", "http://astromenda.com/?f=3&a=ast_ir_14_42_other&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0By[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.vrsn", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr.vrsni", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr_i.newTab", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr_i.smplGrp", "none"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.astrmndasr_i.vrsnTs", "19:1:29"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.__defualt_browser__.value", "%22crossbrowser%22"); =>PUP.Optional.CrossBrowser
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030 00[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 203[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2030[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri Feb[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.name", "SmartSaver+ 3.1"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.awilliamslakeyahoocom61806.61806.publisher", "smart-saverplus"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.crossrider.bic", "14f9dd8b8e93134ca63dcd59cd60d65e"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.enabledAddons", "defsearchp%40gmail.com:1.0.0.1039,deskCutv2%40gmail.com:0.0.10,%7Bc9b4529a-eeba-4e48-976e-f[...] =>PUP.Optional.DeskCut
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [cep - ip8rh3fs.default-1411903893815] user_pref("extensions.xpiState", "{\"app-profile\":{\"defsearchp@gmail.com\":{\"d\":\"C:\\\\Users\\\\cep\\\\AppData\\\\Roaming\\\\[...] =>PUP.Optional.PriceFountain
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.newtab.url", "http://www.hohosearch.com/?ts=AHEqA3YkAHYkAU..&v=20160415&uid=BA9C599821A0878E97C3DACC32228188&pt[...] =>.Superfluous.Hohosearch
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.defaultenginename", "hohosearch"); =>.Superfluous.Hohosearch
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.searchengine.alias", "oursurfing"); =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.searchengine.hp", "http://www.hohosearch.com/?ts=AHEqA3YkAHYkAU..&v=20160415&uid=BA9C599821A0878E97C3DAC[...] =>.Superfluous.Hohosearch
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.searchengine.iconURL", "http://www.oursurfing.com/favicon.ico"); =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.searchengine.name", "oursurfing"); =>PUP.Optional.OurSurfing
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.searchengine.sp", "http://www.hohosearch.com/chrome.php?mode=ffsengext&ptid=epf1&q={searchTerms}&ts=AHEq[...] =>.Superfluous.Hohosearch
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.searchengine.url", "http://www.hohosearch.com/chrome.php?mode=ffsengext&ptid=epf1&q={searchTerms}&ts=AHE[...] =>.Superfluous.Hohosearch
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.search.selectedEngine", "hohosearch"); =>.Superfluous.Hohosearch
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("browser.startup.homepage", "http://www.hohosearch.com/?ts=AHEqA3YkAHYkAU..&v=20160415&uid=BA9C599821A0878E97C3DACC32228[...] =>.Superfluous.Hohosearch
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.AL", 4); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.aflt", "ast_ir_14_42_other"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.appId", "{9CB2CD61-FFA0-406C-9D2D-8FDE6F4A4D8A}"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.cd", "2XzuyEtN2Y1L1QzutDtDtByCtCzz0ByDtBtB0AtB0CyCtC0FtN0D0Tzu0StCtDtCyBtN1L2XzutAtFtBtFtCtFyDtN1[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.cr", "979447050"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.1475e97c0146bfb1c490339546d9e72ee", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.851d81cdad83573282e611040475985c", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data._dy", "20141125"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.a._dy", "20141019"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.a.aliveDate", "20141019"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.a.instlDate", "20141013"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.b3.aliveDate", "20141221"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.cc", "fr"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.data.ccfc1eb13092ea34473c169417eefd00", "1"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.dfltLng", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.dfltSrch", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.dnsErr", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.excTlbr", false); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.general.guid", "efbdd735-47a4-4a46-bbc5-f82f01535fb2"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.hmpg", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.hmpgUrl", "http://astromenda.com/?f=1&a=ast_ir_14_42_other&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0ByDtBt[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.id", "002618B522A2C61F"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.instlDay", "16356"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.instlRef", "142905_b"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.newTabUrl", "http://astromenda.com/?f=2&a=ast_ir_14_42_other&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0ByDt[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.prdct", "astrmndasr"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.prtnrId", "WSE_Astromenda"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.srchPrvdr", "Astromenda"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.tlbrId", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.tlbrSrchUrl", "http://astromenda.com/?f=3&a=ast_ir_14_42_other&cd=2XzuyEtN2Y1L1QzutDtDtByCtCzz0By[...] =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.vrsn", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr.vrsni", ""); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr_i.newTab", true); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr_i.smplGrp", "none"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.astrmndasr_i.vrsnTs", "19:1:29"); =>PUP.Optional.Astromenda
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.__defualt_browser__.value", "%22crossbrowser%22"); =>PUP.Optional.CrossBrowser
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030 00[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 203[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2030[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri Feb[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.name", "SmartSaver+ 3.1"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.awilliamslakeyahoocom61806.61806.publisher", "smart-saverplus"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.crossrider.bic", "14f9dd8b8e93134ca63dcd59cd60d65e"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.enabledAddons", "defsearchp%40gmail.com:1.0.0.1039,deskCutv2%40gmail.com:0.0.10,%7Bc9b4529a-eeba-4e48-976e-f[...] =>PUP.Optional.DeskCut
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [cep - 41A66E7E5EE1] user_pref("extensions.xpiState", "{\"app-profile\":{\"defsearchp@gmail.com\":{\"d\":\"C:\\\\Users\\\\cep\\\\AppData\\\\Roaming\\\\[...] =>PUP.Optional.PriceFountain
O69 - SBI: SearchScopes [HKCU] {006ee092-9658-4fd6-bd8e-a21a348e59f5} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} - (Astromenda) - http://astromenda.com/ =>PUP.Optional.Astromenda
O69 - SBI: SearchScopes [HKLM] {006ee092-9658-4fd6-bd8e-a21a348e59f5} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} - (Web Search) - http://feed.snapdo.com/ =>PUP.Optional.SmartBar

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2062848] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [751104] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (3) - 1s
O87 - FAEL: "{7BC344EB-EE58-4BB2-B693-2FD6066ECE26}" [In-None-P17-TRUE] .(.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
O87 - FAEL: "TCP Query User{69559F25-1775-479A-9129-9EBDDD23340A}C:\program files\mx bikes\mxbikes.exe" [In-None-P6-TRUE] .(...) -- C:\program files\mx bikes\mxbikes.exe
O87 - FAEL: "UDP Query User{A0769AC4-9207-42DD-9A12-7409BC8783EF}C:\program files\mx bikes\mxbikes.exe" [In-None-P17-TRUE] .(...) -- C:\program files\mx bikes\mxbikes.exe

---\\ Recherche de clés de registre Tracing (14) - 5s
HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Microsoft\Tracing\ApnStub_RASAPI32 =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\ApnStub_RASMANCS =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore
HKLM\SOFTWARE\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore
HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32 =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\dlLogic_RASAPI32 =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\dlLogic_RASMANCS =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\ExtensionUpdaterService_RASAPI32 =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Microsoft\Tracing\ExtensionUpdaterService_RASMANCS =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32 =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS =>PUP.Optional.IMBooster

---\\ Scan Additionnel (120) - 0s
C:\Program Files\FastSearch\cfr3011.exe =>PUP.Optional.FastSearch
C:\Program Files\FastSearch\uninstall.exe =>PUP.Optional.FastSearch
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\searchplugins\Astromenda.xml =>PUP.Optional.Astromenda
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\searchplugins\oursurfing.xml =>PUP.Optional.OurSurfing
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\@E9438230-A7DF-4D1F-8F2D-CA1D0F0F7924.xpi =>PUP.Optional.YesSearches
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\Astromenda.xml =>PUP.Optional.Astromenda
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\oursurfing.xml =>PUP.Optional.OurSurfing
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\ip8rh3fs.default-1411903893815\extensions\williamslake@yahoo.com =>PUP.Optional.CrossRider
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
C:\Users\cep\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\williamslake@yahoo.com =>PUP.Optional.CrossRider
C:\Windows\System32\acengine.dll =>Hijacker.Winsock
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC} =>PUP.Optional.DesktopPlay
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC} =>PUP.Optional.DesktopPlay
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
HKLM\SOFTWARE\aartemisSoftware =>PUP.Optional.AArtemis
HKLM\SOFTWARE\acengine =>PUP.Optional.FastSearch
HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKLM\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKLM\SOFTWARE\FastSearch =>PUP.Optional.FastSearch
HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKLM\SOFTWARE\IB Updater =>PUP.Optional.InstallBrain
HKLM\SOFTWARE\OfferBox =>PUP.Optional.OfferBox
HKLM\SOFTWARE\SmartSaver+ 3-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\SProtector =>PUP.Optional.MocaFlix
HKLM\SOFTWARE\SrpnFiles =>.Superfluous.SpringFiles
HKLM\SOFTWARE\SweetIM =>PUP.Optional.SweetIM
HKLM\SOFTWARE\Systweak =>.Superfluous.Systweak
HKLM\SOFTWARE\VBMZ =>PUP.Optional.Duuqu
HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro
HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse
HKCU\SOFTWARE\d55dad1e73aed17 =>PUP.Optional.Heuristic
HKCU\SOFTWARE\DataMngr =>PUP.Optional.Datamngr
HKCU\SOFTWARE\DC3_FEXEC =>Trojan.Fynloski
HKCU\SOFTWARE\DriverTuner =>PUP.Optional.DriverTuner
HKCU\SOFTWARE\DriverTuner_Init =>PUP.Optional.DriverTuner
HKCU\SOFTWARE\Ecommfactory =>.Superfluous.Downloader
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider
HKCU\SOFTWARE\ImInstaller =>Toolbar.IncrediMail
HKCU\SOFTWARE\InstallCore =>Adware.InstallCore
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\lollipop =>PUP.Optional.Lollipop
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\OfferBox =>PUP.Optional.OfferBox
HKCU\SOFTWARE\SmartSaver+ 3 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Store =>PUP.Optional.Generic
HKCU\SOFTWARE\SweetIM =>PUP.Optional.SweetIM
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\DynConIE =>PUP.Optional.DynConIE
HKCU\SOFTWARE\AppDataLow\Software\Re_markit =>PUP.Optional.ReMarkIt
HKCU\SOFTWARE\AppDataLow\Software\uTorrentBar_FR =>.Superfluous.Conduit
C:\Program Files\0590C4A0-1441462133-11D5-BF65-002618B522A2 =>PUP.Optional.CrossRider
C:\Program Files\Checked List =>PUP.Optional.CheckedList
C:\Program Files\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Program Files\FastSearch =>PUP.Optional.FastSearch
C:\Program Files\File Type Assistant =>Adware.InstallCore
C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files\Nosibay =>PUP.Optional.SPointer
C:\Program Files\predm =>PUP.Optional.Downware
C:\Program Files\QuickTime =>Riskware.QuickTime
C:\Program Files\rpidity =>PUP.Optional.Boxore
C:\Program Files\SearchProtect =>PUP.Optional.SearchProtect
C:\Program Files\Simple for You =>PUP.Optional.SimpleForYou
C:\Program Files\SmartSaver+ 3 =>PUP.Optional.CrossRider
C:\Program Files\Software =>PUP.Optional.Boxore
C:\Program Files\Uninstaller =>PUP.Optional.Generic
C:\Program Files\uTorrentBar_FR =>PUP.Optional.uTorrentBar
C:\ProgramData\APN =>Toolbar.Ask
C:\ProgramData\b653d270-54f5-1 =>.Superfluous.Polluteware
C:\ProgramData\b653d270-7753-0 =>.Superfluous.Polluteware
C:\ProgramData\Babylon =>PUP.Optional.Babylon
C:\ProgramData\PC Drivers HeadQuarters =>.Superfluous.PCDriversHeadQuarters
C:\ProgramData\ShoppingChip =>PUP.Optional.ShoppingChip
C:\ProgramData\Software =>PUP.Optional.Boxore
C:\ProgramData\Tarma Installer =>.Superfluous.Tarma
C:\ProgramData\VisualBee =>PUP.Optional.VisualBeeToolbar
C:\ProgramData\vWdsManProv =>PUP.Optional.WdsManPro
C:\ProgramData\WinSpeed =>Trojan.SProtector
C:\Users\cep\AppData\Roaming\BabSolution =>PUP.Optional.BabSolution
C:\Users\cep\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock
C:\Users\cep\AppData\Roaming\OfferBox =>PUP.Optional.OfferBox
C:\Users\cep\AppData\Roaming\PriceFountain =>PUP.Optional.PriceFountain
C:\Users\cep\AppData\Roaming\Store =>PUP.Optional.Nosibay
C:\Users\cep\AppData\Roaming\Systweak =>.Superfluous.Systweak
C:\Users\cep\AppData\Roaming\WebPlayerBdd =>PUP.Optional.SocialSkinz
C:\Users\cep\AppData\Roaming\WTools =>PUP.Optional.Nosibay
C:\Users\cep\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse
C:\Users\cep\AppData\Local\gameo =>PUP.Optional.Gameo
C:\Users\cep\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\cep\AppData\Local\Kreapixel =>PUP.Optional.SocialSkinz
C:\Users\cep\AppData\Local\Lollipop =>PUP.Optional.Lollipop
C:\Users\cep\AppData\Local\Software =>PUP.Optional.Boxore
C:\Users\cep\AppData\Local\StormFall =>PUP.Optional.StormFall
C:\Users\cep\AppData\Local\VisualBeeExe =>PUP.Optional.VisualBeeToolbar
C:\Users\cep\AppData\Local\ZombieInvasion =>PUP.Optional.ZombieInvasion
C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse
C:\Windows\System32\drivers\cherimoya.sys =>PUP.Optional.Shopperz
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9} =>PUP.Optional.Astromenda
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{2E00D31D-D171-423D-836D-1A4D7EA7F1A9} =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector
HKLM\SOFTWARE\Microsoft\Tracing\ApnStub_RASAPI32 =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\ApnStub_RASMANCS =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Tracing\boxore_RASAPI32 =>PUP.Optional.Boxore
HKLM\SOFTWARE\Microsoft\Tracing\boxore_RASMANCS =>PUP.Optional.Boxore
HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32 =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\dlLogic_RASAPI32 =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\dlLogic_RASMANCS =>.Superfluous.Conduit
HKLM\SOFTWARE\Microsoft\Tracing\ExtensionUpdaterService_RASAPI32 =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Microsoft\Tracing\ExtensionUpdaterService_RASMANCS =>PUP.Optional.IncrediBar
HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32 =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS =>PUP.Optional.IMBooster

---\\ Récapitulatif des éléments trouvés sur votre station (70) - 0s
http://www.nicolascoolman.fr/?p=641 =>PUP.Optional.SoftwareUpdater
http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/?p=398 =>PUP.Optional.ReMarkIt
http://www.nicolascoolman.fr/?p=558 =>PUP.Optional.RegistryPowerCleaner
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SpeedUpMyPC
http://www.nicolascoolman.fr/pup-astromenda/ =>PUP.Optional.Astromenda
http://www.nicolascoolman.fr/pup-optional-fastsearch/ =>PUP.Optional.FastSearch
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.OurSurfing
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Hohosearch
http://www.nicolascoolman.info/2016/04/21/pup-optional-yessearches/ =>PUP.Optional.YesSearches
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.LightningNewTab
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/?p=308 =>PUP.Optional.SmartBar
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DNSUnlocker
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DesktopPlay
http://www.nicolascoolman.fr/?p=4664 =>Heuristic.Suspect
http://www.nicolascoolman.fr/?p=698 =>PUP.Optional.AArtemis
http://www.nicolascoolman.fr/pup-optional-crossbrowse =>PUP.Optional.CrossBrowse
http://www.nicolascoolman.fr/?p=270 =>PUP.Optional.Datamngr
http://www.nicolascoolman.fr/?p=600 =>PUP.Optional.InstallBrain
http://www.nicolascoolman.fr/?p=345 =>PUP.Optional.OfferBox
http://www.nicolascoolman.fr/?p=1344 =>PUP.Optional.MocaFlix
http://www.nicolascoolman.com/forum/post33538.html#p33538 =>.Superfluous.SpringFiles
http://www.nicolascoolman.fr/?p=332 =>PUP.Optional.SweetIM
http://www.nicolascoolman.fr/pup-systweak/ =>.Superfluous.Systweak
http://www.nicolascoolman.fr/?p=199 =>PUP.Optional.Duuqu
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.WdsManPro
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Heuristic
http://www.nicolascoolman.fr/?p=759 =>Trojan.Fynloski
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DriverTuner
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=5143 =>Toolbar.IncrediMail
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/?p=302 =>PUP.Optional.Lollipop
http://www.nicolascoolman.fr/?p=205 =>PUP.Optional.SPointer
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Generic
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DynConIE
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/pup-optional-checkedlist/ =>PUP.Optional.CheckedList
http://www.nicolascoolman.fr/?p=401 =>PUP.Optional.Downware
http://www.nicolascoolman.info/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime
http://www.nicolascoolman.fr/?p=90 =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/?p=1633 =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/pup-optional-simpleforyou/ =>PUP.Optional.SimpleForYou
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.uTorrentBar
http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Polluteware
http://www.nicolascoolman.fr/?p=170 =>PUP.Optional.Babylon
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.PCDriversHeadQuarters
http://www.nicolascoolman.fr/?p=1341 =>PUP.Optional.ShoppingChip
http://www.nicolascoolman.fr/?p=259 =>.Superfluous.Tarma
http://www.nicolascoolman.fr/?p=619 =>PUP.Optional.VisualBeeToolbar
http://www.nicolascoolman.fr/?p=187 =>Trojan.SProtector
http://www.nicolascoolman.fr/?p=440 =>PUP.Optional.BabSolution
http://www.nicolascoolman.fr/?p=177 =>PUP.Optional.BubbleDock
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.PriceFountain
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Nosibay
http://www.nicolascoolman.fr/?p=195 =>PUP.Optional.SocialSkinz
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Gameo
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.StormFall
http://www.nicolascoolman.fr/pup-optional-zombieinvasion/ =>PUP.Optional.ZombieInvasion
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Shopperz
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.CrossBrowser
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Monetization
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DeskCut
http://www.nicolascoolman.fr/?p=666 =>PUP.Optional.QuickStart
http://www.nicolascoolman.fr/?p=336 =>PUP.Optional.AdvancedSystemProtector
http://www.nicolascoolman.fr/?p=175 =>PUP.Optional.IncrediBar
http://www.nicolascoolman.fr/?p=224 =>PUP.Optional.IMBooster

~ End of the scan, 34604 items in 00h04mn32s (1415)(0)

Publicité


Signaler le contenu de ce document

Publicité