~ ZHPDiag v2015.7.27.104 Par Nicolas Coolman (2015/07/27) ~ Démarré par Home (Administrator) (2015/07/27 17:00:04) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Home\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Home\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) ~ Windows 7, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 39.0 (x86 fr) v39.0 MSIE: Internet Explorer v11.0.9600.17914 ---\\ Logiciels de protection (2) - 0s Kaspersky Internet Security v15.0.2.361 Kaspersky Total Security v15.0.2.361 ---\\ Logiciels de protection et autres (Superflus) (1) - 1s SUPERAntiSpyware v6.0.1186 ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 18 NPAPI Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 6224.248 MB (44% free) ~ System Restore: Activé (Enable) ~ System drive C: has 107 GB free of 156 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: HOME-PC ~ User Name: Home ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 107 GB free of 156 GB (System) ~ Drive D: has 132 GB free of 156 GB ~ Drive E: has 146 GB free of 164 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (24) - 0s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] [MD5.E066FDC3A2074D926903B8C31EF3B347] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2427392] [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] [MD5.1877EB1495CFBDAB27D6A32F6DDF3818] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [MD5.1B6163C503398B23FF8B939C67747683] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165888] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] [MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] ---\\ Processus lancés (29) - 1s [MD5.897C1273B7D74E19DDA7EBF495BF0133] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [327680] [PID.780] [MD5.AC8776D69312891773BCEB821DEA1F2D] - (.DTools LIMITED - DTools.) -- C:\ProgramData\gWinManProg\ProtectWindowsManager.exe [435880] [PID.1504] [MD5.970C70F6B2953ED43822D3797855D84C] - (.SUPERAntiSpyware.com - Core Service.) -- C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344] [PID.1884] [MD5.A6FB9DB8F1A86861D955FD6975977AE0] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\IDT\WDM\AESTSr64.exe [89600] [PID.2020] [MD5.650F111D5CDA64C10AE4B9D1BA9D4FFF] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592] [PID.1056] [MD5.7DF4FC861D1AB4977195936025B1B940] - (.Atheros Commnucations - AdminService Application.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [80032] [PID.1224] [MD5.9C7C876ACB9B707ECD08BD434C46A4D3] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avp.exe [194000] [PID.1364] [MD5.5E04BB6AF6C31482DBD533FC71184EDB] - (...) -- C:\ProgramData\DhmReu\socahen.exe [124880] [PID.1336] [MD5.094A47AB1D4966C8CD318AD7EB1521A6] - (.SlimWare Utilities, Inc. - SlimDrivers.) -- C:\Users\Home\Desktop\SlimDrivers.exe [29395264] [PID.2112] [MD5.147B07777B0D8165DF5667BED5CC714B] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3898960] [PID.2244] [MD5.13AC765ED7515E95B17037D7C3CBB9BD] - (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE [7800088] [PID.2300] [MD5.BFC50B3F24800E659BAB4329CF3E5C95] - (.Camshare Inc. - Camfrog Video Chat update service.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe [1032680] [PID.2540] [MD5.EE2F470204244B37CA3032F04728595C] - (.Copyright © 2015 - .) -- C:\Program Files\Checker\check.exe [376832] [PID.2584] [MD5.4F9DD96AECDC12373D4203253D665C6D] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.2716] [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [269848] [PID.2800] [MD5.70AF0E844C9A684236B96E582D2B2E61] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avpui.exe [192768] [PID.2636] [MD5.FDE289355FD5F993AF3253FB85F6E8DD] - (.Copyright © 2015 - AgentMainService.) -- C:\ProgramData\ExtTag\ExtTag.exe [36864] [PID.3344] [MD5.93E58E4BAA9C12C5CCFB6A5E229C37D5] - (...) -- C:\ProgramData\DhmReu\socwhen.exe [124880] [PID.3796] [MD5.6481383ED822712592243C7AB4AF3B17] - (...) -- C:\Users\Home\AppData\Local\SauvegardeWindows\sauvegarde.exe [33280] [PID.3832] [MD5.258C050D197D923668B36C8D3F6A2353] - (.TuneUp Software - TuneUp Utilities Service.) -- C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2145080] [PID.4084] [MD5.37567E01AC541BD72DAF6260F7E82216] - (.Company - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe [335360] [PID.3236] [MD5.61E19C82125DFF3A83B445152A048AE6] - (.TuneUp Software - TuneUp Utilities.) -- C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe [2040120] [PID.4156] [MD5.C3FEE2A1D1B2E6A1E98681A103DABB17] - (.Copyright © 2015 - .) -- C:\Program Files\Checker\packages\099b3a92-c516-43a0-9d9b-a402444b6829\checker.exe [847360] [PID.4236] [MD5.C87043C1A03EC1572929149E5598E44A] - (...) -- C:\ProgramData\DhmReu\socdhen.exe [382976] [PID.5284] [MD5.A1B268D4A4C8825AD1548D575D91EE4A] - (...) -- C:\ProgramData\DhmReu\soc3hen.exe [98816] [PID.5472] [MD5.126194401F6AA0A6009A4A1EAED108A1] - (.Copyright © 2014 - StproW.) -- C:\ProgramData\ExtTag\dgl3vvow.exe [450560] [PID.5796] [MD5.5E508DEEA39C369CB846029001A7F6E8] - (...) -- C:\ProgramData\DhmReu\soc6hen.exe [118272] [PID.1212] [MD5.4F9DD96AECDC12373D4203253D665C6D] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.5488] [MD5.9C7C876ACB9B707ECD08BD434C46A4D3] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avp.exe [194000] [PID.6812] ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (12) - 1s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [akaelkiagnbfcccfnmbimdbplecgbikh] SavePass 1.1 =>PUP.Optional.CrossRider G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Docs G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gegdfeiahlfolhcfioipjlkombmgbakh] Cinem Plus 2.4cV25.07 G2 - GCE: Preference [User Data\Default] [hmobfennjmjnkdbklhcnnfbhfibedgkk] hmobfennjmjnkdbklhcnnfbhfibedgkk G2 - GCE: Preference [User Data\Default] [lkadffjmnaiokkdncgdlecdegajoiemi] (Orphean) G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (31) - 2s P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\jid1-TQvJxTBYHA8qXg@jetpack.xpi P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\translator@zoli.bod.xpi P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\youtubeunblocker@unblocker.yt.xpi P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi =>PUP.Optional.Sambreel P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\findit.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (.Itai Regev, sun0x0001 - SimilarWeb.) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\FirefoxAddon@similarWeb.com P2 - EXT: (. - SimilarSites.) -- C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\{E71B541F-5E72-5555-A47C-E47863195841} P2 - FPN: [HKCU] [@iqiyi.com/npWebPlayer] - (.pps-webplayer-plugin.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll P2 - FPN: [HKLM] [@iqiyi.com/npWebPlayer] - (.pps-webplayer-plugin.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.51.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.51.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\content_blocker@kaspersky.com P2 - FPN: [HKLM] [@kaspersky.com/online_banking_08806E753BE44495B44E90AA2513BDC5] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\online_banking@kaspersky.com P2 - FPN: [HKLM] [@kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.0] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (16) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_ByuMcS4zqTgWbU8oOmgyTbrInc0OR2sTTWSAoDLaZ7zmD2YAySOh6gXTQCYRY28ITNmdc7RD7Uv7mGgcJIDk6egIPYhQg5dXtnHc6_S8-xP3Qrv6pWrxL_O9qqQU3fOGK5ESJYn5q9U5A3RAWMMccqLhGcR9M R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_byumcs4zqtgwbu8oomgytbrinc0or2sttwsaodlaz7zmd2yaysoh6gxtqcyry28itnmdc7rd7uv7mgguwkhtrnawte0th2nzis7udl6ed4nopqikzleptjazinmagoxebdumo4xtrmhujqpcte6cni_tcu6pj&q={searchterms} R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_byumcs4zqtgwbu8oomgytbrinc0or2sttwsaodlaz7zmd2yaysoh6gxtqcyry28itnmdc7rd7uv7mgguwkhtrnawte0th2nzis7udl6ed4nopqikzleptjazinmagoxebdumo4xtrmhujqpcte6cni_tcu6pj&q={searchterms} R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_byumcs4zqtgwbu8oomgytbrinc0or2sttwsaodlaz7zmd2yaysoh6gxtqcyry28itnmdc7rd7uv7mgguwkhtrnawte0th2nzis7udl6ed4nopqikzleptjazinmagoxebdumo4xtrmhujqpcte6cni_tcu6pj&q={searchterms} R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_byumcs4zqtgwbu8oomgytbrinc0or2sttwsaodlaz7zmd2yaysoh6gxtqcyry28itnmdc7rd7uv7mgguwkhtrnawte0th2nzis7udl6ed4nopqikzleptjazinmagoxebdumo4xtrmhujqpcte6cni_tcu6pj&q={searchterms} R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (R5) (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (O2) (6) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll O2 - BHO: VirtualKeyboardBrowserHelperObject [64Bits] - {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll O2 - BHO: (no name) [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean) O2 - BHO: ContentBlockerBrowserHelperObject [64Bits] - {93BC2EA7-2F17-4729-948A-D2E03FFB2412} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll O2 - BHO: Safe Money Plugin [64Bits] - {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} . (.Kaspersky Lab ZAO - Cumulative module contains VK, CB and OB pl.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean) ---\\ Applications lancées au démarrage du sytème (O4) (14) - 1s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe O4 - HKCU\..\Run: [SUPERAntiSpyware] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-3805760129-2392394421-2581643875-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-3805760129-2392394421-2581643875-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe O4 - HKUS\S-1-5-21-3805760129-2392394421-2581643875-1000\..\Run: [SUPERAntiSpyware] . (.SUPERAntiSpyware - SUPERAntiSpyware Application.) -- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe ---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s O20 - AppInit_DLLs: . (.Copyright (C) 2015 - .) - C:\ProgramData\ExtTag\1inadluc.dll ---\\ Liste des services NT non Microsoft et non désactivés (O23) (23) - 1s O23 - Service: SAS Core Service (!SASCORE) . (.SUPERAntiSpyware.com - Core Service.) - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\IDT\WDM\AESTSr64.exe O23 - Service: Atheros Bt&Wlan Coex Agent (Atheros Bt&Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe O23 - Service: AtherosSvc (AtherosSvc) . (.Atheros Commnucations - AdminService Application.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe O23 - Service: Kaspersky Anti-Virus Service 15.0.2 (AVP15.0.2) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avp.exe O23 - Service: bebtosho (bebtosho) . (...) - C:\ProgramData\DhmReu\socahen.exe O23 - Service: Camfrog Update Service (camfrog_update_service) . (.Camshare Inc. - Camfrog Video Chat update service.) - C:\Program Files (x86)\Camfrog\Camfrog Video Chat\update\cf_update_service.exe O23 - Service: Checker Service (Checker) . (.Copyright © 2015 - .) - C:\Program Files\Checker\check.exe O23 - Service: ExtTag service (ExtTag) . (...) - C:\ProgramData\ExtTag\ExtTag (.not file.) O23 - Service: HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\Windows\system32\Hpservice.exe O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: ipucatyj (ipucatyj) . (...) - C:\ProgramData\DhmReu\socwhen.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: Sauvegarde Windows 1.0.25 (KLBK32) . (...) - C:\Users\Home\AppData\Local\SauvegardeWindows\sauvegarde.exe O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: Reimage Real Time Protector (ReimageRealTimeProtector) . (...) - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe (.not file.) =>PUP.Optional.ReImageRepair O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @C:\Windows\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) . (.TuneUp Software - TuneUp Utilities Service.) - C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe O23 - Service: (Update service) . (.Company - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED - DTools.) - C:\ProgramData\gWinManProg\ProtectWindowsManager.exe =>PUP.Optional.Fuyu ---\\ Tâches planifiées en automatique (O39) (64) - 4s O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-1-6.job [3118] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-1-7.job [3454] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-10_user.job [2092] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-3.job [4474] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-4.job [4138] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5.job [2426] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5_user.job [2426] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-6.job [5498] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-7.job [5498] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-1-6.job [3136] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-1-7.job [3472] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-10_user.job [2110] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-3.job [4492] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-4.job [4492] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5.job [2444] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5_user.job [2444] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-6.job [5860] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-7.job [5516] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job [878] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job [882] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\Windows\Tasks\MedReminder.job [400] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\SlimDrivers Startup.job [356] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\yjjTkxaL2ai4fv.job [900] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-1-7 [6484] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-10_user [5112] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-3 [7504] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-4 [7168] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5 [5456] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5_user [5448] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-7 [8528] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-1-7 [6502] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-10_user [5130] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-3 [7522] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-4 [7522] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5 [5474] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5_user [5466] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-7 [8546] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Driver Booster Scan [3228] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Driver Booster SkipUAC (Home) [2870] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Driver Booster Update [3172] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Java Update Scheduler [3704] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Programme de mise à jour en ligne de Adobe [3694] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\ReimageUpdater [4270] =>PUP.Optional.ReImageRepair O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\SlimDrivers Startup [2780] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 [2770] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Uninstaller_SkipUac_Home [2900] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Update Skype [3878] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\yjjTkxaL2ai4fv [3024] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{034AD47C-BFDA-40DA-AB09-D8DD5876AFEE} [3204] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{06B6003F-923D-4DCB-B45D-3E31BE4D7189} [3144] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{2959AE32-7717-4AA8-9D70-CCDA63BEA3C6} [3248] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{34FD61F9-8027-4B91-9D80-17B06FB7818B} [3230] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{56E8B900-C384-43B2-BF1F-359191A9BBCD} [3228] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{7C0939C1-D870-4A09-82FF-E0EEED0E3D89} [3180] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{C6EA79C2-D0A7-4B88-AE71-E8DF683D8FD7} [3180] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{D435633D-1542-447F-9F66-713E5C148A46} [3206] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{D8B42923-DA37-4F8B-98FD-061B6F0A88F4} [3204] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{DC30824F-21A0-43A3-B1C3-786F3217A703} [3124] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{E35973B7-10A8-49CD-9F32-2E6D30AC3EBE} [3204] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{E53B9C9B-2E61-431F-84AE-B872C0A67B18} [3196] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{EC41CD72-1C02-4A55-B6C9-34ABFD2B9F21} [3140] ---\\ Logiciels installés (O42) (41) - 8s O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} O42 - Logiciel: Bluetooth Win7 Suite (64) - (.Atheros Communications.) [HKLM][64Bits] -- {230D1595-57DA-4933-8C4E-375797EBB7E1} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {4332723E-06E5-47F8-B106-8A2971B01368} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {9E9C290F-18E8-412D-B4F2-6CD6B45E47C0} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {C2306F93-60AC-4401-B600-453376E771EC} O42 - Logiciel: SUPERAntiSpyware - (.SUPERAntiSpyware.com.) [HKLM][64Bits] -- {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {E0729EA8-444C-4AAF-AB69-3CE907F60A38} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {FE51B16C-A025-418A-A5D6-07D93B643AFB} O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI O42 - Logiciel: Camfrog Video Chat 6.10 - (.Camshare, Inc..) [HKLM][64Bits] -- Camfrog O42 - Logiciel: Driver Booster 2.4 - (.IObit.) [HKLM][64Bits] -- Driver Booster_is1 O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142} O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: Popcorn Time - (.Popcorn Time.) [HKLM][64Bits] -- Popcorn Time_is1 O42 - Logiciel: TuneUp Utilities 2014 - (.TuneUp Software.) [HKLM][64Bits] -- TuneUp Utilities O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {02FECEE0-16B2-43DB-BC3B-C844477FC142} O42 - Logiciel: TV 3L PC version 1.3.9.3 - (.Smart PC Soft, Ltd..) [HKLM][64Bits] -- {0BBD0F9C-12E5-456A-A6FC-372324F3D082}_is1 O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Java 8 Update 25 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218025F0} O42 - Logiciel: Java 8 Update 51 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218051F0} O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Skype Launcher - (.binaerkombinat.) [HKLM][64Bits] -- {82799854-39DF-4EC3-8778-918CE0C81A3F}_is1 O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: Qualcomm Atheros Driver Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} O42 - Logiciel: adblocker - (.adblocker.) [HKLM][64Bits] -- {D4764E74-A105-4D6A-8811-BAAF6FE4423C} O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Popcorn Time - (.Popcorn Official.) [HKCU][64Bits] -- Popcorn Time O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (135) - 8s HKLM\SOFTWARE\Wow6432Node\121_31 HKLM\SOFTWARE\Wow6432Node\3330850c-e458-4764-9cd5-a1017813c157 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\a99a4f61-9364-430e-b9ee-ae23219f1823 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Adguard HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\Anvisoft HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Atheros HKLM\SOFTWARE\Wow6432Node\Auslogics HKLM\SOFTWARE\Wow6432Node\Avnex HKLM\SOFTWARE\Wow6432Node\BSD HKLM\SOFTWARE\Wow6432Node\Camfrog HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV25.07 HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV25.07-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV25.07-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CLSID HKLM\SOFTWARE\Wow6432Node\Dell Computer Corporation HKLM\SOFTWARE\Wow6432Node\downchecker HKLM\SOFTWARE\Wow6432Node\EnigmaSoftwareGroup HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart HKLM\SOFTWARE\Wow6432Node\iTinySoft HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\KRT settings HKLM\SOFTWARE\Wow6432Node\Lamantine HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\mtControl HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OldTimer Tools HKLM\SOFTWARE\Wow6432Node\oursurfingSoftware =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Rtp HKLM\SOFTWARE\Wow6432Node\SavePass 1.1 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SavePass 1.1-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SavePass 1.1-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SimpleFiles =>PUP.Optional.SimpleFiles HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SlimWare Utilities Inc HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WindowsDoctor HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\Auslogics HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\BSD HKCU\SOFTWARE\Camfrog HKCU\SOFTWARE\Chedot HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Cinem Plus 2.4cV25.07 HKCU\SOFTWARE\Cinem Plus 2.4cV25.07-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\Cinem Plus 2.4cV25.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CoinisRS =>PUP.Optional.InstallCore HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\FreeDownloadManager.ORG HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\Google HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Lamantine HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\LlamaWare HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\mtControl HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PCTuneUp HKCU\SOFTWARE\Popcorn Time HKCU\SOFTWARE\ProductSetup =>PUP.Optional.InstallCore HKCU\SOFTWARE\ProtectedData HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\Rtp HKCU\SOFTWARE\SavePass 1.1 =>PUP.Optional.CrossRider HKCU\SOFTWARE\SavePass 1.1-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\SavePass 1.1-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\SimpleTV by SergeyVS#3 HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Skypelauncher HKCU\SOFTWARE\SUPERAntiSpyware.com HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\tvp HKCU\SOFTWARE\undefined HKCU\SOFTWARE\Unity HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\iyamebmees HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (190) - 7s O43 - CFD: 2015/04/12 19:30:47 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/04/14 01:54:27 - [] D -- C:\Program Files (x86)\Bluetooth Suite O43 - CFD: 2015/07/25 14:49:26 - [] D -- C:\Program Files (x86)\Camfrog O43 - CFD: 2015/04/12 00:24:41 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 2015/07/26 21:10:53 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2015/05/12 00:18:43 - [] D -- C:\Program Files (x86)\Free Download Manager O43 - CFD: 2015/04/11 13:02:30 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/04/12 00:24:40 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/04/12 17:17:50 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/05/13 00:47:58 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 2015/07/15 17:09:29 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/07/25 19:30:32 - [] D -- C:\Program Files (x86)\IObit O43 - CFD: 2015/07/26 02:00:38 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2015/04/11 04:48:50 - [] D -- C:\Program Files (x86)\Kaspersky Lab O43 - CFD: 2015/04/27 23:07:37 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/05/16 10:31:38 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2015/04/14 16:56:27 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 2015/04/14 16:53:40 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2015/04/17 01:15:12 - [] D -- C:\Program Files (x86)\Microsoft Works O43 - CFD: 2015/04/14 16:56:09 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/07/26 19:07:33 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/07/26 20:43:17 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2015/04/14 16:56:37 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/05/19 22:52:22 - [] D -- C:\Program Files (x86)\Popcorn Time O43 - CFD: 2015/02/11 03:19:58 - [] D -- C:\Program Files (x86)\Portable O43 - CFD: 2015/04/12 00:25:29 - [] D -- C:\Program Files (x86)\Qualcomm Atheros O43 - CFD: 2015/04/12 19:57:46 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/02/11 03:25:52 - [] D -- C:\Program Files (x86)\Renesas Electronics O43 - CFD: 2015/07/03 02:16:39 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2015/04/17 19:37:52 - [] D -- C:\Program Files (x86)\SkypeLauncher O43 - CFD: 2015/07/27 01:11:26 - [] D -- C:\Program Files (x86)\Total Video Player O43 - CFD: 2015/04/16 20:11:52 - [] D -- C:\Program Files (x86)\TuneUp Utilities 2014 O43 - CFD: 2015/07/09 17:18:24 - [] D -- C:\Program Files (x86)\TV 3L PC O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2015/04/11 04:25:18 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2015/04/11 20:53:37 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2010/11/21 08:19:00 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/06/11 01:12:45 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2010/11/21 08:19:00 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2010/11/21 08:19:00 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/04/11 04:15:12 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2015/05/16 11:22:29 - [] D -- C:\Program Files (x86)\Yamicsoft O43 - CFD: 2015/07/26 19:11:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/02/11 02:48:15 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/07/23 23:08:50 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft O43 - CFD: 2015/07/25 19:35:01 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics O43 - CFD: 2015/07/16 17:08:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2 O43 - CFD: 2015/02/11 02:48:07 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/04/12 17:06:59 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/05/12 00:29:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/04/11 03:50:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/07/13 02:41:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/04/14 16:57:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/05/16 10:31:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/05/19 22:52:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time O43 - CFD: 2015/02/11 03:25:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Renesas Electronics O43 - CFD: 2015/07/21 02:45:22 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/04/17 19:37:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype Launcher O43 - CFD: 2015/04/14 00:14:25 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/07/26 20:39:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware O43 - CFD: 2015/04/11 12:59:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 O43 - CFD: 2015/07/09 17:18:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TV 3L PC O43 - CFD: 2015/04/11 04:25:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/02/11 03:51:24 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/04/16 22:54:41 - [] D -- C:\ProgramData\Atheros O43 - CFD: 2015/07/25 15:05:48 - [] D -- C:\ProgramData\Auslogics O43 - CFD: 2015/07/25 14:47:00 - [] D -- C:\ProgramData\BSD O43 - CFD: 2015/02/11 03:02:55 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/07/25 15:03:10 - [0] D -- C:\ProgramData\Camfrog Update O43 - CFD: 2015/04/11 12:55:49 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/07/25 23:53:44 - [] D -- C:\ProgramData\DhmReu O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/07/27 16:35:45 - [] D -- C:\ProgramData\ExtTag =>PUP.Optional.ExtTag O43 - CFD: 2015/07/27 16:28:43 - [] D -- C:\ProgramData\ExtTags =>PUP.Optional.ExtTag O43 - CFD: 2015/02/11 03:02:55 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/07/27 01:26:27 - [0] D -- C:\ProgramData\FixBackups O43 - CFD: 2015/05/12 00:16:06 - [] D -- C:\ProgramData\Free Download Manager O43 - CFD: 2015/07/26 00:18:06 - [] D -- C:\ProgramData\gWinManProg O43 - CFD: 2015/07/25 15:04:06 - [0] D -- C:\ProgramData\IDM O43 - CFD: 2015/07/26 00:17:06 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR O43 - CFD: 2015/04/12 17:17:13 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/07/25 14:17:29 - [] D -- C:\ProgramData\IObit O43 - CFD: 2015/07/26 02:34:25 - [0] D -- C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo O43 - CFD: 2015/07/27 16:55:50 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 2015/07/26 02:29:01 - [] D -- C:\ProgramData\LocalStorage O43 - CFD: 2015/05/26 17:57:02 - [] D -- C:\ProgramData\Logs O43 - CFD: 2015/07/25 19:57:40 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2015/02/11 03:02:55 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/07/27 01:33:00 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/07/15 03:05:16 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/02/11 03:02:55 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/02/11 04:49:32 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/07/26 02:01:28 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/07/26 17:07:29 - [] D -- C:\ProgramData\ProductData O43 - CFD: 2015/04/12 00:25:17 - [] D -- C:\ProgramData\Qualcomm Atheros O43 - CFD: 2015/07/03 02:16:32 - [] D -- C:\ProgramData\Skype O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/04/11 03:51:07 - [] D -- C:\ProgramData\Sun O43 - CFD: 2015/07/26 18:54:29 - [] D -- C:\ProgramData\SUPERAntiSpyware.com O43 - CFD: 2015/07/26 18:58:23 - [] D -- C:\ProgramData\SUPERSetup O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/07/21 18:05:57 - [] D -- C:\ProgramData\ToolGet O43 - CFD: 2015/07/21 00:41:05 - [] D -- C:\ProgramData\ToolGets O43 - CFD: 2015/04/11 12:59:42 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2015/02/11 03:14:00 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/04/14 01:52:33 - [] D -- C:\Program Files (x86)\Common Files\Atheros O43 - CFD: 2015/04/18 01:14:59 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2015/04/12 17:08:26 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 2015/04/11 05:04:23 - [] D -- C:\Program Files (x86)\Common Files\IObit O43 - CFD: 2015/07/26 02:01:04 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/04/17 01:15:17 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2015/04/12 17:17:14 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/04/11 04:07:27 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2015/04/18 01:11:27 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/07/26 00:40:48 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 2015/04/11 05:21:47 - [] D -- C:\Users\Home\AppData\Roaming\Adobe O43 - CFD: 2015/04/11 05:04:46 - [] D -- C:\Users\Home\AppData\Roaming\Apple Computer O43 - CFD: 2015/04/20 20:44:18 - [] D -- C:\Users\Home\AppData\Roaming\Avnex O43 - CFD: 2015/05/10 16:58:45 - [] D -- C:\Users\Home\AppData\Roaming\Camfrog O43 - CFD: 2015/07/27 16:39:38 - [] D -- C:\Users\Home\AppData\Roaming\DMCache O43 - CFD: 2015/07/24 20:02:24 - [] D -- C:\Users\Home\AppData\Roaming\Dull Galaxy O43 - CFD: 2015/07/27 02:14:51 - [0] D -- C:\Users\Home\AppData\Roaming\Elex-tech =>PUP.Optional.Elex O43 - CFD: 2015/02/11 03:03:29 - [] D -- C:\Users\Home\AppData\Roaming\Identities O43 - CFD: 2015/07/25 19:49:57 - [] D -- C:\Users\Home\AppData\Roaming\IDM O43 - CFD: 2015/07/26 03:12:27 - [] D -- C:\Users\Home\AppData\Roaming\IObit O43 - CFD: 2015/04/11 05:21:47 - [] D -- C:\Users\Home\AppData\Roaming\Macromedia O43 - CFD: 2010/11/21 08:29:27 - [0] D -- C:\Users\Home\AppData\Roaming\Media Center Programs O43 - CFD: 2015/07/26 17:27:24 - [] SD -- C:\Users\Home\AppData\Roaming\Microsoft O43 - CFD: 2015/04/27 23:02:59 - [] D -- C:\Users\Home\AppData\Roaming\Mozilla O43 - CFD: 2015/07/25 15:03:58 - [] D -- C:\Users\Home\AppData\Roaming\ProductData O43 - CFD: 2015/04/12 00:15:18 - [] D -- C:\Users\Home\AppData\Roaming\SimpleTV V03 O43 - CFD: 2015/07/27 16:52:02 - [] D -- C:\Users\Home\AppData\Roaming\Skype O43 - CFD: 2015/07/27 02:08:16 - [] D -- C:\Users\Home\AppData\Roaming\SSN =>PUP.Optional.SaveSerpNow O43 - CFD: 2015/07/26 18:54:54 - [] D -- C:\Users\Home\AppData\Roaming\SUPERAntiSpyware.com O43 - CFD: 2015/04/11 12:59:12 - [] D -- C:\Users\Home\AppData\Roaming\TuneUp Software O43 - CFD: 2015/05/26 17:43:03 - [] D -- C:\Users\Home\AppData\Roaming\uTorrent O43 - CFD: 2015/07/16 02:25:09 - [] D -- C:\Users\Home\AppData\Roaming\vlc O43 - CFD: 2015/04/11 04:15:21 - [] D -- C:\Users\Home\AppData\Roaming\WinRAR O43 - CFD: 2015/07/27 17:00:10 - [] D -- C:\Users\Home\AppData\Roaming\ZHP O43 - CFD: 2015/07/26 20:52:56 - [] D -- C:\Users\Home\AppData\Local\Adobe O43 - CFD: 2015/07/21 22:07:16 - [] D -- C:\Users\Home\AppData\Local\Anvisoft O43 - CFD: 2015/02/11 03:03:07 - [0] SHD -- C:\Users\Home\AppData\Local\Application Data O43 - CFD: 2015/04/13 00:30:55 - [] D -- C:\Users\Home\AppData\Local\Avg2014 O43 - CFD: 2015/04/16 22:53:40 - [] D -- C:\Users\Home\AppData\Local\BMExplorer O43 - CFD: 2015/04/11 03:59:37 - [] D -- C:\Users\Home\AppData\Local\Camfrog O43 - CFD: 2015/07/23 21:45:40 - [] D -- C:\Users\Home\AppData\Local\Chedot O43 - CFD: 2015/07/27 16:39:34 - [] D -- C:\Users\Home\AppData\Local\CrashDumps O43 - CFD: 2015/07/15 02:29:49 - [] D -- C:\Users\Home\AppData\Local\Diagnostics O43 - CFD: 2015/07/26 19:11:44 - [] D -- C:\Users\Home\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/04/13 16:51:31 - [] D -- C:\Users\Home\AppData\Local\Geckofx O43 - CFD: 2015/07/25 23:48:35 - [] D -- C:\Users\Home\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/04/11 04:10:55 - [] D -- C:\Users\Home\AppData\Local\Google O43 - CFD: 2015/02/11 03:03:07 - [0] SHD -- C:\Users\Home\AppData\Local\Historique O43 - CFD: 2015/04/11 05:21:47 - [] D -- C:\Users\Home\AppData\Local\Macromedia O43 - CFD: 2015/04/21 00:13:21 - [] D -- C:\Users\Home\AppData\Local\Microsoft O43 - CFD: 2015/04/27 18:41:47 - [] D -- C:\Users\Home\AppData\Local\Microsoft Games O43 - CFD: 2015/04/14 16:52:06 - [0] D -- C:\Users\Home\AppData\Local\Microsoft Help O43 - CFD: 2015/02/11 04:49:42 - [] D -- C:\Users\Home\AppData\Local\Mozilla O43 - CFD: 2015/07/25 13:26:25 - [] D -- C:\Users\Home\AppData\Local\Popcorn Time O43 - CFD: 2015/06/10 01:30:32 - [] D -- C:\Users\Home\AppData\Local\Popcorn-Time O43 - CFD: 2015/05/19 22:52:26 - [] D -- C:\Users\Home\AppData\Local\PopcornTimeDesktop O43 - CFD: 2015/02/11 03:12:32 - [] D -- C:\Users\Home\AppData\Local\Programs O43 - CFD: 2015/07/25 23:55:21 - [] D -- C:\Users\Home\AppData\Local\SauvegardeWindows O43 - CFD: 2015/04/11 03:54:52 - [] D -- C:\Users\Home\AppData\Local\Skype O43 - CFD: 2015/07/25 19:41:29 - [] D -- C:\Users\Home\AppData\Local\SlimWare Utilities Inc O43 - CFD: 2015/04/13 02:20:59 - [] D -- C:\Users\Home\AppData\Local\Smart_PC_Soft O43 - CFD: 2015/07/25 22:52:55 - [] D -- C:\Users\Home\AppData\Local\SysassistByHotWheel =>PUP.Optional O43 - CFD: 2015/07/27 16:59:59 - [] D -- C:\Users\Home\AppData\Local\Temp O43 - CFD: 2015/02/11 03:03:07 - [0] SHD -- C:\Users\Home\AppData\Local\Temporary Internet Files O43 - CFD: 2015/07/26 23:53:06 - [0] D -- C:\Users\Home\AppData\Local\tmp11864 O43 - CFD: 2015/04/11 12:59:12 - [] D -- C:\Users\Home\AppData\Local\TuneUp Software O43 - CFD: 2015/07/26 02:33:41 - [0] D -- C:\Users\Home\AppData\Local\Unity O43 - CFD: 2015/07/26 02:29:01 - [] D -- C:\Users\Home\AppData\Local\VirtualStore O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/07/21 02:33:47 - [] RD -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/04/11 03:59:35 - [] D -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camfrog Video Chat O43 - CFD: 2015/05/12 00:29:57 - [] D -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/25 13:26:25 - [0] D -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time O43 - CFD: 2015/02/11 03:20:06 - [] D -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs O43 - CFD: 2015/07/26 02:33:04 - [] RD -- C:\Users\Home\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (2) - 5s O45 - LFCP:[MD5.06297E71B5ABFC942F4EB98ADF277620] 2015/07/25 13:04:42 A -- C:\Windows\Prefetch\OLBPRE.EXE-C6385661.pf =>PUP.Optional.MyPCBackup O45 - LFCP:[MD5.2223FD99942691B732513FC2689A5F3A] 2015/07/26 02:31:37 A -- C:\Windows\Prefetch\PERFORMANCEOPTIMIZER.EXE-A8E428FE.pf =>PUP.Optional.BProtector ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (8) - 1s O53 - SMSR:HKLM\...\startupreg\apphide [Key] . (...) -- C:\Program Files (x86)\baidu\baidu.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\AthBtTray [Key] . (.Atheros Commnucations - Bluetooth Suite Common Rescource.) -- C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe O53 - SMSR:HKLM\...\startupreg\AtherosBtStack [Key] . (.Atheros Communications - Serveur Stack Bluetooth.) -- C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe O53 - SMSR:HKLM\...\startupreg\Camfrog [Key] . (.Camshare, Inc. - Camfrog Video Chat.) -- C:\Program Files (x86)\Camfrog\Camfrog Video Chat\Camfrog Video Chat.exe O53 - SMSR:HKLM\...\startupreg\HCDNClient [Key] . (...) -- C:\IQIYI Video\Common\QyKernel.exe (.not file.) =>PUP.Optional.IQIYIVideo O53 - SMSR:HKLM\...\startupreg\IDMan [Key] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe O53 - SMSR:HKLM\...\startupreg\NUSB3MON [Key] . (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (...) -- C:\Program Files (x86)\Skype\Phone\Skype.exe (.not file.) ---\\ Liste des pilotes du système (SDL) (O58) (78) - 4s O58 - SDL:2015/04/11 12:34:08 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [43840] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] O58 - SDL:2015/07/16 17:41:18 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [4108288] O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] O58 - SDL:2011/05/09 18:28:02 A . (.Atheros - Atheros A2DP driver.) -- C:\Windows\System32\drivers\btath_a2dp.sys [298656] O58 - SDL:2011/05/09 18:28:02 A . (.Atheros - Atheros BUS driver.) -- C:\Windows\System32\drivers\btath_bus.sys [29344] O58 - SDL:2011/05/09 18:28:04 A . (.Atheros - Atheros HCRP driver.) -- C:\Windows\System32\drivers\btath_hcrp.sys [201376] O58 - SDL:2011/05/09 18:28:04 A . (.Atheros - Atheros AVRCP driver.) -- C:\Windows\System32\drivers\btath_rcp.sys [154272] O58 - SDL:2015/04/12 17:54:20 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [597192] O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] O58 - SDL:2015/06/24 01:31:21 A . (.Kaspersky Lab UK Ltd - Cryptographic Module.) -- C:\Windows\System32\drivers\cm_km_w.sys [247016] O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] O58 - SDL:2015/04/11 12:34:08 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\drivers\hpdskflt.sys [31040] O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] O58 - SDL:2013/11/08 11:22:00 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [632168] O58 - SDL:2013/11/08 11:22:00 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [28008] O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] O58 - SDL:2015/03/27 02:10:52 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [192984] O58 - SDL:2015/07/16 17:18:22 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [5375448] O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] O58 - SDL:2015/04/11 12:27:58 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [454416] O58 - SDL:2015/02/11 04:31:00 A . (.JMicron Technology Corporation - JMicron PCIe Flash Media Controller Driver.) -- C:\Windows\System32\drivers\jmcr.sys [176880] O58 - SDL:2015/06/24 01:32:40 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [478392] O58 - SDL:2015/06/24 01:32:40 A . (.Kaspersky Lab ZAO - Virtual Disk fre_wnet_x64.) -- C:\Windows\System32\drivers\kldisk.sys [64368] O58 - SDL:2015/06/24 01:31:26 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\drivers\klflt.sys [159960] O58 - SDL:2015/07/01 00:10:05 A . (.Kaspersky Lab ZAO - KLHK [fre_wlh_x64].) -- C:\Windows\System32\drivers\klhk.sys [225976] O58 - SDL:2015/06/24 01:31:27 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klif.sys [850608] O58 - SDL:2015/06/24 01:32:41 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\Windows\System32\drivers\klim6.sys [39280] O58 - SDL:2015/06/24 01:31:29 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x6.) -- C:\Windows\System32\drivers\klkbdflt.sys [40304] O58 - SDL:2015/06/24 01:31:30 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [39280] O58 - SDL:2015/06/24 01:32:42 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [24944] O58 - SDL:2015/06/24 01:32:42 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wnet_amd64.) -- C:\Windows\System32\drivers\kltdi.sys [65208] O58 - SDL:2015/06/24 01:32:42 A . (.Kaspersky Lab ZAO - Network filtering component.) -- C:\Windows\System32\drivers\klwtp.sys [85360] O58 - SDL:2015/06/24 01:32:42 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) -- C:\Windows\System32\drivers\kneps.sys [190648] O58 - SDL:2009/06/10 22:34:18 A . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controll.) -- C:\Windows\System32\drivers\L1C62x64.sys [57344] O58 - SDL:2009/06/20 04:09:57 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\L1E62x64.sys [54272] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] O58 - SDL:2009/06/10 22:35:36 A . (.Ralink Technology Corp. - Ralink 802.11n Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28ux.sys [867328] O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] O58 - SDL:2010/12/11 20:50:36 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\nusb3hub.sys [80384] O58 - SDL:2015/04/11 12:34:37 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [181760] O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] O58 - SDL:2015/04/11 12:26:05 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [977624] O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] O58 - SDL:2015/07/16 17:11:04 A . (.Sunplus - AVStream.) -- C:\Windows\System32\drivers\SPUVCBv_x64.sys [674592] O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] O58 - SDL:2015/02/11 04:35:30 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt64.sys [543744] O58 - SDL:2015/07/27 16:41:26 A . (...) -- C:\Windows\System32\drivers\SWDUMon.sys [16152] O58 - SDL:2014/10/10 09:37:16 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [129312] O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (22) - 11s O61 - LFC: 2015/07/26 02:53:29 A . (.EffectMatrix Inc..) -- C:\Users\Home\Downloads\MPlayerUpdate.exe [3841337] O61 - LFC: 2015/07/26 01:55:24 A . (.Oracle Corporation.) -- C:\Users\Home\Downloads\setup.exe [29727656] O61 - LFC: 2015/07/26 20:50:01 A . (.Installer.) -- C:\Users\Home\Downloads\Programs\adobe_flash_player.exe [817392] O61 - LFC: 2015/07/26 21:14:35 A . (..) -- C:\Users\Home\Downloads\Programs\BDPUARLauncher.exe [47225760] O61 - LFC: 2015/07/25 19:49:58 A . (..) -- C:\Users\Home\Downloads\Programs\Firefox Setup Stub 39.0.exe [242904] O61 - LFC: 2015/07/26 19:00:25 A . (..) -- C:\Users\Home\Downloads\Programs\Firefox Setup Stub 39.0_2.exe [242904] O61 - LFC: 2015/07/26 01:58:41 A . (.Oracle Corporation.) -- C:\Users\Home\Downloads\Programs\jxpiinstall_2.exe [562784] O61 - LFC: 2015/07/26 02:52:55 A . (.Program Application.) -- C:\Users\Home\Downloads\Programs\mediaplayer_update.exe [814808] O61 - LFC: 2015/07/27 02:07:18 A . (.Dummy, Ltd..) -- C:\Users\Home\Downloads\Programs\YAC PC Cleaner Crack Free Download_10924_i37331890_il345.exe [1528848] O61 - LFC: 2015/07/27 01:51:05 A . (.Copyright (c) 2011-2015 Elex do Brasil Participações.) -- C:\Users\Home\Downloads\Programs\yet_another_cleaner_sk_2227316.exe [867672] =>PUP.Optional.YetAnotherCleaner O61 - LFC: 2015/07/26 18:12:44 A . (..) -- C:\Users\Home\AppData\Roaming\appdataFr25.bin [24] O61 - LFC: 2015/07/27 16:40:47 A . (.Tonec Inc..) -- C:\Users\Home\AppData\Roaming\IDM\idmmzcc5\components2\idmcchandler2.dll [332824] O61 - LFC: 2015/07/27 16:40:47 A . (.Tonec Inc..) -- C:\Users\Home\AppData\Roaming\IDM\idmmzcc5\components2\idmcchandler2_64.dll [460824] O61 - LFC: 2015/07/27 16:40:47 A . (.Tonec Inc..) -- C:\Users\Home\AppData\Roaming\IDM\idmmzcc5\components2\idmmzcc.dll [34216] O61 - LFC: 2015/07/27 16:40:47 A . (.Tonec Inc..) -- C:\Users\Home\AppData\Roaming\IDM\idmmzcc5\components2\idmmzcc64.dll [28512] O61 - LFC: 2015/07/27 16:40:47 A . (.Tonec Inc..) -- C:\Users\Home\AppData\Roaming\IDM\idmmzcc5\components12\idmmzcc.dll [26648] O61 - LFC: 2015/07/27 16:40:47 A . (.Tonec Inc..) -- C:\Users\Home\AppData\Roaming\IDM\idmmzcc5\components12\idmmzcc64.dll [31768] O61 - LFC: 2015/07/27 16:40:47 A . (.Tonec Inc..) -- C:\Users\Home\AppData\Roaming\IDM\idmmzcc5\components\idmmzcc.dll [34216] O61 - LFC: 2015/07/26 22:34:21 A . (..) -- C:\Users\Home\AppData\Roaming\IDM\DwnlData\Home\drweb-1000-win-space_265\drweb-1000-win-space.exe [332000] O61 - LFC: 2015/07/26 22:34:02 A . (..) -- C:\Users\Home\AppData\Roaming\IDM\DwnlData\Home\drweb-1000-win-space_264\drweb-1000-win-space.exe [419120] O61 - LFC: 2015/07/27 16:41:26 A . (..) -- C:\Users\Home\AppData\Local\SlimWare Utilities Inc\SlimDrivers\SWDUMon.sys [16152] O61 - LFC: 2015/07/25 23:55:21 A . (..) -- C:\Users\Home\AppData\Local\SauvegardeWindows\sauvegarde.exe [33280] ---\\ Associations Shell Spawning (O67) (1) - 1s O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ---\\ Menu de démarrage Internet (SMI) (O68) (5) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (9) - 12s O69 - SBI: prefs.js [Home - dskin173.default-1430670608347] user_pref("extensions.FilterResults.cg", "11faf3df-e239-457c-9c32-3321ecd1b0e4"); =>PUP.Optional.FilterResults O69 - SBI: prefs.js [Home - dskin173.default-1430670608347] user_pref("extensions.FirefoxAddon@similarWeb.com.server", "https://t.similarsites.com"); =>PUP.Optional.SimilarSites O69 - SBI: prefs.js [Home - dskin173.default-1430670608347] user_pref("extensions.crossrider.bic", "14ecb1cdeca15b4cb05e218c8b7b09df"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [Home - dskin173.default-1430670608347] user_pref("extensions.{E71B541F-5E72-5555-A47C-E47863195841}.server", "https://t.similarsites.com"); =>PUP.Optional.SimilarSites O69 - SBI: SearchScopes [HKCU] {012E1000-F331-11DB-8314-0800200C9A66} - (Google) - http://www.istartsurf.com/ =>PUP.Optional.IsStart O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.istartsurf.com/ =>PUP.Optional.IsStart O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} - (e) - http://www.istartsurf.com/ =>PUP.Optional.IsStart O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://www.istartsurf.com/ =>PUP.Optional.IsStart O69 - SBI: SearchScopes [HKCU] {ielnksrch} [DefaultScope] - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_ByuMcS4zqTgWbU8oOmgyTbrInc0OR2sTTWSAoDLaZ7zmD2YAySOh6gXTQCYRY28ITNmdc7RD7Uv7mGguwkHtRNAWTE0Th2nziS7udL6Ed4nOpQIKZlEPtJAziNmaGoxebduMo4XTrmHUjQPctE6cNi_TcU6Pj&q={searchTerms} ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (34) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: UxTuneUp (UxTuneUp) . (.TuneUp Software - TuneUp Theme Extension.) -- C:\Windows\System32\uxtuneup.dll [43320] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2603008] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (49) - 2s O87 - FAEL: "WMPNSS-Out-TCP" [Out-None-P6-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMPNSS-In-TCP" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMPNSS-Out-UDP" [Out-None-P17-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMPNSS-In-UDP" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMPNSS-Out-TCP-NoScope" [Out-None-P6-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMPNSS-In-TCP-NoScope" [In-None-P6-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMPNSS-Out-UDP-NoScope" [Out-None-P17-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMPNSS-In-UDP-NoScope" [In-None-P17-FALSE] .(...) -- C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe O87 - FAEL: "WMP-Out-TCP-x86" [Out-None-P6-FALSE] .(...) -- C:\ProgramFiles(x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-Out-UDP-x86" [Out-None-P17-FALSE] .(...) -- C:\ProgramFiles(x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "WMP-In-UDP-x86" [In-None-P17-FALSE] .(...) -- C:\ProgramFiles(x86)\Windows Media Player\wmplayer.exe O87 - FAEL: "{25C3C485-4505-4AAF-B43B-4C3B9F8EA4DF}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Skype\Phone\Skype.exe O87 - FAEL: "TCP Query User{A54D88FA-0990-4ADC-B5C2-4AC04ADECD3A}C:\users\home\desktop\dcc.exe" [In-None-P6-TRUE] .(.BernyR - Dreambox Control Center.) -- C:\users\home\desktop\dcc.exe O87 - FAEL: "UDP Query User{E744FE8C-06E0-4E83-BA43-76161EB316D2}C:\users\home\desktop\dcc.exe" [In-None-P17-TRUE] .(.BernyR - Dreambox Control Center.) -- C:\users\home\desktop\dcc.exe O87 - FAEL: "{11F0C610-4181-4DEB-9D9D-1FEF33971205}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Home\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{5BBC5C13-B89A-4F26-8D21-81F8EE8F52F5}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Home\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{773D1A94-BA3A-454F-8A08-148FFCCF66AD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Firefox Developer Edition\firefox.exe O87 - FAEL: "{422D9900-EBD4-4101-A0DE-B17B2D560D3F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe O87 - FAEL: "{BBBF0422-0041-4676-AF3E-E88CF4A3D346}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe O87 - FAEL: "{4EF53EE8-F43F-4CCF-81D8-0305F4A2B98A}" [In-None-P6-TRUE] .(.Company - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe O87 - FAEL: "{B2BF72A8-B48B-43D9-8560-836831E4BBBB}" [In-None-P17-TRUE] .(.Company - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe O87 - FAEL: "{AC71D44A-D1CC-4859-8815-08EA1B8D0558}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\SimpleFiles.exe =>PUP.Optional.SimpleFiles O87 - FAEL: "{E04CCD22-74F3-4587-962A-8A8546952612}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\SimpleFiles.exe =>PUP.Optional.SimpleFiles O87 - FAEL: "{50ED6270-D269-4558-A31E-7CE4CF94558F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\downloader.exe =>PUP.Optional.SimpleFiles O87 - FAEL: "{C049F401-6EB5-4464-A931-BC3C9E832380}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\SimpleFiles\downloader.exe =>PUP.Optional.SimpleFiles O87 - FAEL: "{EDED4A61-6716-4686-B08D-29652738E28F}" [In-None-P17-TRUE] .(...) -- C:\Users\Home\AppData\Roaming\IQIYI Video\LStyle\GpUpdate.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{0B1796FF-C543-425C-86FE-D0D0F72375DF}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\GeePlayer\GeePlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{595EAC8B-FE1C-4ECB-ADB8-AB99954355C4}" [In-None-P17-TRUE] .(...) -- C:\Users\Home\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{5D676CB1-CB8B-46D4-91B1-D3779E2AC756}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{D1080138-F165-45C3-8C93-DC6E828BCA45}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{9DF841BE-C29A-4151-B6BA-244A289B6BE0}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{A45E7A95-AEBE-4096-99EB-9F3DA56522AB}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{69C45779-4417-4084-84A0-56211F11EF46}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\DhmReu\socahen.exe O87 - FAEL: "{0DBF87FB-02B9-49F8-9E34-9B0A25A731A1}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\DhmReu\socahen.exe O87 - FAEL: "{70863BA3-7C56-4C58-A30B-555985D6036A}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\DhmReu\socahen.exe O87 - FAEL: "{193942E2-ADEE-4EB6-82CB-D886D3A70F0A}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\DhmReu\socahen.exe O87 - FAEL: "{0DF7209A-2091-4E52-A010-77A503C7DFF7}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\DhmReu\socahen.exe O87 - FAEL: "{52D2E3F8-D72D-40FF-992F-DEC4697B094D}" [In-None-P17-TRUE] .(...) -- C:\Users\Home\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{3C31E154-7A4C-4028-BBA8-AF55CD706A73}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{0B594207-24E4-487E-957A-55E0C32CF8F0}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{503D9F79-5CFF-4B25-9E8F-F400B70077A4}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{F56DE21D-1FAB-46F3-9828-28A784D1675D}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{E6302664-4315-4A6F-9769-8B73B9CC6672}" [In-None-P17-TRUE] .(...) -- C:\Users\Home\AppData\Roaming\IQIYI Video\LStyle\GpUpdate.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{293D7816-379E-4A65-BF0B-0DFE0078188C}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\GeePlayer\GeePlayer\GeePlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{3D1A0B76-CFFD-4A16-B5AB-FB2C634E1571}" [In-None-P17-TRUE] .(...) -- C:\Users\Home\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{27543B1C-FCA8-4EA2-B307-764027754C36}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{9C1EF98C-FDF9-4936-A6E3-8FC29DD46682}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{58359599-9033-45CF-B044-30CA42E61724}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{4467E2F7-8DD9-4134-A7C4-3D35FE622439}" [In-None-P17-TRUE] .(...) -- C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo ---\\ Enumère les codes produits des logiciels (PUC) (O90) (1) - 0s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) (1) - 2s [MD5.] [WIS][2015/07/21 01:44:26] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\188693.msi [32768] =>PUP.Optional.GlobalUpdate ---\\ Recherche de clés de registre Tracing (O100) (2) - 0s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASAPI32 =>PUP.Optional.BProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASMANCS =>PUP.Optional.BProtector ---\\ Scan Additionnel (O88) (89) - 0s C:\Users\Home\AppData\Local\Google\Chrome\User Data\Default\Extensions\akaelkiagnbfcccfnmbimdbplecgbikh C:\Users\Home\AppData\Roaming\Mozilla\Firefox\Profiles\dskin173.default-1430670608347\extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi =>PUP.Optional.Sambreel HKLM\SYSTEM\CurrentControlSet\Services\ReimageRealTimeProtector =>PUP.Optional.ReImageRepair HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu C:\ProgramData\gWinManProg\ProtectWindowsManager.exe =>PUP.Optional.Fuyu C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-1-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-1-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-10_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-3.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-4.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-1-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-1-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-10_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-3.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-4.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-1-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-10_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-3 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-4 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-5_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\0de8e6c1-9db5-4bb2-af4f-95cd6cd3186e-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-1-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-10_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-3 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-4 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-5_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c0666679-7610-4a82-ac27-3315d1cfee15-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ReimageUpdater =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV25.07-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV25.07-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart HKLM\SOFTWARE\Wow6432Node\oursurfingSoftware =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Wow6432Node\SavePass 1.1 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SavePass 1.1-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SavePass 1.1-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SimpleFiles =>PUP.Optional.SimpleFiles HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\Cinem Plus 2.4cV25.07-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\Cinem Plus 2.4cV25.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CoinisRS =>PUP.Optional.InstallCore HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\ProductSetup =>PUP.Optional.InstallCore HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\SavePass 1.1 =>PUP.Optional.CrossRider HKCU\SOFTWARE\SavePass 1.1-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\SavePass 1.1-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider =>PUP.Optional.CrossRider C:\ProgramData\ExtTag =>PUP.Optional.ExtTag C:\ProgramData\ExtTags =>PUP.Optional.ExtTag C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo C:\Users\Home\AppData\Roaming\Elex-tech =>PUP.Optional.Elex C:\Users\Home\AppData\Roaming\SSN =>PUP.Optional.SaveSerpNow C:\Users\Home\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\Home\AppData\Local\SysassistByHotWheel =>PUP.Optional C:\Windows\Prefetch\OLBPRE.EXE-C6385661.pf =>PUP.Optional.MyPCBackup C:\Windows\Prefetch\PERFORMANCEOPTIMIZER.EXE-A8E428FE.pf =>PUP.Optional.BProtector C:\Users\Home\Downloads\Programs\yet_another_cleaner_sk_2227316.exe =>PUP.Optional.YetAnotherCleaner HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate C:\Windows\Installer\188693.msi =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASAPI32 =>PUP.Optional.BProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASMANCS =>PUP.Optional.BProtector ---\\ Récapitulatif des éléments trouvées sur votre station (23) - 0s http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.Sambreel http://www.nicolascoolman.fr/blog =>PUP.Optional.IQIYIVideo http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/rogue-reimagerepair/ =>PUP.Optional.ReImageRepair http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart http://www.nicolascoolman.fr/blog =>PUP.Optional.OurSurfing http://www.nicolascoolman.fr/blog =>PUP.Optional.SimpleFiles http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore http://www.nicolascoolman.fr/blog =>PUP.Optional.ExtTag http://www.nicolascoolman.fr/pup-elex/ =>PUP.Optional.Elex http://www.nicolascoolman.fr/blog =>PUP.Optional.SaveSerpNow http://www.nicolascoolman.fr/blog =>PUP.Optional http://www.nicolascoolman.fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup http://www.nicolascoolman.fr/pup-bprotector/ =>PUP.Optional.BProtector http://www.nicolascoolman.fr/blog =>PUP.Optional.YetAnotherCleaner http://www.nicolascoolman.fr/pup-filterresults/ =>PUP.Optional.FilterResults http://www.nicolascoolman.fr/adware-similarsites/ =>PUP.Optional.SimilarSites ~ End of the scan, 19786 items in 89 seconds (989)(0)()