~ ZHPDiag v2015.7.12.88 Par Nicolas Coolman (2015/07/12) ~ Démarré par Med (Administrator) (2015/07/13 05:15:14) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Med\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Med\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) ~ Windows 7, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 1s MFIE: Mozilla Firefox 38.0.5 (x86 fr) v38.0.5 MSIE: Internet Explorer v11.0.9600.16428 ---\\ Informations sur les produits Windows (3) - 8s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (1) - 1s Avast Premier v10.0.2208 ---\\ Surveillance de Logiciels (2) - 2s Adobe Flash Player 12 ActiveX & Plugin Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) ~ Total physical RAM (KB): 2784624 ~ System Restore: Activé (Enable) ~ System drive C: has 9 GB free of 71 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: MED-PC ~ User Name: Med ~ Logged in as Administrator ---\\ Enumération des unités disques (5) - 0s ~ Drive C: has 9 GB free of 71 GB (System) ~ Drive D: has 10 GB free of 87 GB ~ Drive E: has 79 GB free of 112 GB ~ Drive F: has 88 GB free of 204 GB ~ Drive G: has 0 GB free of 0 GB ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.40D777B7A95E00593EB1568C68514493] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256] [MD5.B5EB5BD3066959611E1F7A80FD6CC172] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1818112] [MD5.998507B046BA314CE8245364C686FA67] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128] [MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536] [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944] [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584] [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656] [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544] [MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336] [MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544] [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896] [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888] [MD5.ED3D3419B064F28D812995ED8CADC541] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [123904] [MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904] [MD5.5E43D2B0EE64123D4880DFA6626DEFDE] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1211752] [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] [MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632] [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168] [MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752] [MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632] ---\\ Processus lancés (40) - 6s [MD5.FA25836EE747B6057FB137373F8AAB02] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [251096] [PID.1388] [MD5.70D1E82146CCDD0632E362D428FD0A19] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [1007320] [PID.1420] [MD5.E3F7EC811923F3F1A77B185F22638E5E] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344] [PID.1636] [MD5.02D55E3F5B153F99B3743A69B95BFA52] - (.DTools LIMITED - Windows DTools.) -- C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [707240] [PID.1860] =>PUP.Optional.Fuyu [MD5.D25195B0A2075862E988B85161DF07FD] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [104416] [PID.1980] [MD5.A6CE73469591554279DA63BE715DBC93] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe [87968] [PID.2336] [MD5.B3ADA329556769DDAFE4EE8C6C0BC20F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [6635224] [PID.2504] [MD5.656DFDB81019B8A11EFB05D974701AFD] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [371976] [PID.2624] [MD5.02926E66A3E909194725D30911C0AEEF] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe [884440] [PID.2640] [MD5.695BE0A3D240FFF4B876D9289110634A] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5227648] [PID.2760] [MD5.F6987FF6C6D683F79FDCE707B071A997] - (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe [955392] [PID.2856] [MD5.CEC28A8DD313C36E2B3CD12C30A1B4D0] - (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files\AOMEI Backupper\ABService.exe [29912] [PID.3196] [MD5.945983732B6E7DBD58711493CB3E0CCD] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3821136] [PID.3328] [MD5.4B5A2CA81E92C2D9B353537E8850F838] - (.Cinema PlusV07.07 - CinemaP-1.9cV07.07 exe.) -- C:\Program Files\CinemaP-1.9cV07.07\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-6.exe [1518672] [PID.3504] =>PUP.Optional.CrossRider [MD5.B0E98F0852F59250075F1E4962E7A86A] - (.Cinema PlusV07.07 - CinemaP-1.9cV07.07 exe.) -- C:\Program Files\CinemaP-1.9cV07.07\ccf00e2b-042d-45a8-9173-63dfa4076cbe-6.exe [1316944] [PID.3824] =>PUP.Optional.CrossRider [MD5.FAA729BC3B4EC2900D14E1F0F4D30ED0] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [268248] [PID.3904] [MD5.7904B8331324003F34CB6055230D349E] - (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) -- C:\Program Files\Smadav\SM?RTP.exe [1679360] [PID.4060] [MD5.66AAE701A787E4BDF73116B79274DC86] - (...) -- C:\ProgramData\Djezzy connect\OnlineUpdate\ouc.exe [655744] [PID.2816] [MD5.5EF3427AE503B5C03A48F7C9FF458B69] - (.Copyright (C) 2008 - DCSHOST.) -- C:\ProgramData\DatacardService\HWDeviceService.exe [271712] [PID.2828] [MD5.E9E2DC4B14F2A20046683E2B699BA79C] - (.XTab system - ProtectSvc.exe.) -- C:\Program Files\MiuiTab\ProtectService.exe [125112] [PID.3348] =>PUP.Optional.MiuiTab [MD5.349AB4F70E2AC44970894E7F03E1576E] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [236384] [PID.3468] [MD5.C86A9AA1CBC4C3C2C5C9DD0F6D939926] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [458464] [PID.3780] [MD5.0DE6521016CAE929552DD557979E196C] - (.SearchProtect - CmdShell.exe.) -- C:\Program Files\MiuiTab\CmdShell.exe [29368] [PID.3784] =>PUP.Optional.MiuiTab [MD5.FFBEAE11DC8085973F26CEAA3AC0FEF5] - (.Nitro PDF Software - Solid Spool Service.) -- C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe [196928] [PID.3916] [MD5.B7E7A06B6AF471275BF70526A51DD71D] - (.Baidu Inc. - spark.) -- C:\Program Files\baidu\Baidu Browser\sparkservice.exe [84672] [PID.3952] [MD5.496208E0276BFAA171696D7EB38CCC01] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3192344] [PID.3644] [MD5.346BACE0E0958E73AC91A2724D81804F] - (.IVT Corporation - Bluetooth Application.) -- C:\Program Files\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [99080] [PID.4420] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.5620] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.5820] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.6112] [MD5.84B5D5396472C76E2DC550F4401EA233] - (.XTab system - SupHPNot.exe.) -- C:\Program Files\MiuiTab\HPNotify.exe [673976] [PID.6756] =>PUP.Optional.MiuiTab [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.7504] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.7512] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.7524] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.7532] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.10080] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.11636] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.9876] [MD5.12928FEBE193E1468C17420FE0DFB2DD] - (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe [978112] [PID.9712] [MD5.82D827A57565F0D97B7187B785866B2E] - (.Baidu.com, Inc. - spark.) -- C:\Program Files\baidu\Baidu Browser\SparkUpdate.exe [1359040] [PID.13100] ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (6) - 0s G2 - GCE: Extension [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] YouTube G2 - GCE: Extension [User Data\Default] [ckibcdccnfeookdmbahgiakhnjcddpki] ckibcdccnfeookdmbahgiakhnjcddpki G2 - GCE: Extension [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice G2 - GCE: Extension [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Extension [User Data\Default] [lkadffjmnaiokkdncgdlecdegajoiemi] CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider G2 - GCE: Extension [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (18) - 1s M0 - MFSP: prefs.js [Med - 8635goh7.default] http://www.oursurfing.com/?type=hppp&ts=1436274733&z=6d5101c61614d964c767c04g2z0c4qbocm0zfmdcdz&from=amt&uid=HGSTXHTS545050A7E380_TM8512ZJ2N3RUP2N3RUPX =>PUP.Optional.OurSurfing P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazon-france.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay-france.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo-france.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - FPN: [HKLM] [@adobe.com/AuthorwarePlayer] - (.Macromedia, Inc..) -- C:\Windows\System32\Macromed\AUTHORWA\np32asw.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_12_0_0_43.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll P2 - FPN: [HKLM] [@java.com/DTPlugin,version=10.51.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=10.51.2] - (.Oracle Corporation.) -- C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (11) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (R5) (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (O2) (6) - 0s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} . (.Ask.com - Ask.com Toolbar.) -- C:\Program Files\AskBarDis\bar\bin\askBar.dll =>PUP.Optional.AskBarDis O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\ssv.dll O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre7\bin\jp2ssv.dll ---\\ Internet Explorer Toolbars (O3) (2) - 0s O3 - Toolbar: 0x3ED041304BFDE044B7422D9B88305F98 - [HKCU]{3041D03E-FD4B-44E0-B742-2D9B88305F98} . (.Ask.com - Ask.com Toolbar.) -- C:\Program Files\AskBarDis\bar\bin\askBar.dll =>PUP.Optional.AskBarDis O3 - Toolbar: 0x00 - [HKLM]{3041d03e-fd4b-44e0-b742-2d9b88305f98} . (.Ask.com - Ask.com Toolbar.) -- C:\Program Files\AskBarDis\bar\bin\askBar.dll =>PUP.Optional.AskBarDis ---\\ Applications lancées au démarrage du sytème (O4) (20) - 2s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe O4 - HKLM\..\Run: [BtTray] . (.IVT Corporation - Bluetooth Application.) -- C:\Program Files\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe O4 - HKLM\..\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe O4 - HKLM\..\Run: [ControlCenter4] . (.Brother Industries, Ltd. - ControlCenter Launcher.) -- C:\Program Files\ControlCenter4\BrCcBoot.exe O4 - HKLM\..\Run: [BrStsMon00] . (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files\Browny02\Brother\BrStMonW.exe O4 - HKLM\..\Run: [BrHelp] . (.Brother Industries, Ltd. - Brother Help Application.) -- C:\Program Files\Brother\Brother Help\BrotherHelp.exe O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKCU\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-1811900291-3407406513-3232517833-1000\..\Run: [SuperCopier2.exe] . (.SFX TEAM - SuperCopier 2 (explorer file copy replaceme.) -- C:\Program Files\SuperCopier2\SuperCopier2.exe O4 - HKUS\S-1-5-21-1811900291-3407406513-3232517833-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ---\\ Raccourcis Global Startup (O4G) (6) - 9s O4 - GS\Desktop [Administrateur]: QQPlayer.lnk . (.Technologie de Tencent - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [Administrateur]: QQPlayer.lnk . (.Technologie de Tencent - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Desktop [Invité]: QQPlayer.lnk . (.Technologie de Tencent - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [Invité]: QQPlayer.lnk . (.Technologie de Tencent - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Desktop [Med]: QQPlayer.lnk . (.Technologie de Tencent - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar O4 - GS\Quicklaunch [Med]: QQPlayer.lnk . (.Technologie de Tencent - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>PUP.Optional.TencentAddressBar ---\\ Modification Domaine/Adresses DNS (O17) (12) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 213.177.160.2 8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 213.177.160.2 8.8.8.8 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 213.177.160.2 8.8.8.8 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 ---\\ Liste des services NT non Microsoft et non désactivés (O23) (19) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: avast! Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) - C:\Program Files\AOMEI Backupper\ABService.exe O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: Djezzy connect. OUC (Djezzy connect. RunOuc) . (...) - C:\Program Files\Djezzy connect\UpdateDog\ouc.exe O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate O23 - Service: HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService.exe O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) . (.Nitro PDF Software - Solid Spool Service.) - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - C:\Program Files\baidu\Baidu Browser\sparkservice.exe O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED - Windows DTools.) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe =>PUP.Optional.Fuyu ---\\ Tâches planifiées en automatique (O39) (30) - 1s O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Bidaily Synchronize Task[973b].job [382] =>PUP.Optional.BidailySync O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-6.job [3116] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-7.job [3116] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-10_user.job [2090] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-11.job [5162] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-3.job [4136] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-4.job [4136] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5.job [2424] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5_user.job [2424] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-6.job [5496] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-7.job [5160] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job [954] =>PUP.Optional.GlobalUpdate O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job [958] =>PUP.Optional.GlobalUpdate O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Bidaily Synchronize Task[973b] [3290] =>PUP.Optional.BidailySync O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-6 [6144] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-7 [6146] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-10_user [5106] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-11 [8192] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-3 [7166] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-4 [7166] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5 [5454] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5_user [5442] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-6 [8524] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-7 [8190] =>PUP.Optional.CrossRider O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore [3702] =>PUP.Optional.GlobalUpdate O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA [3956] =>PUP.Optional.GlobalUpdate O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\smadav [3212] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\SparkUpdater [4054] O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{7B1A3CF6-9753-4F89-9D84-DB5031EE90AE} [3136] ---\\ Logiciels installés (O42) (60) - 19s O42 - Logiciel: Adobe Flash Player 12 ActiveX & Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Shockwave Player + Authorware Web Player - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player + Authorware Web Player O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM] -- AIMP3 O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM] -- Ask Toolbar_is1 =>Toolbar.AsktBar O42 - Logiciel: Avast Premier - (.AVAST Software.) [HKLM] -- Avast O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM] -- BlueStacks App Player O42 - Logiciel: BurnAware Free 6.9.1 - (.Burnaware Technologies.) [HKLM] -- BurnAware Free O42 - Logiciel: CinemaP-1.9cV07.07 - (.Cinema PlusV07.07.) [HKLM] -- CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider O42 - Logiciel: Djezzy connect - (.Huawei Technologies Co.,Ltd.) [HKLM] -- Djezzy connect O42 - Logiciel: FormatFactory 3.00 - (.Free Time.) [HKLM] -- FormatFactory O42 - Logiciel: Foxit Reader 6.1.2.1224 - (.oszone.net.) [HKLM] -- Foxit Reader O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager O42 - Logiciel: KMP+ / The KMPlayer v3.2.0.19 Beta FR - (.www.kmplayer.com/fr.) [HKLM] -- KMP+ FR_is1 O42 - Logiciel: Mozilla Firefox 38.0.5 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 38.0.5 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: NetBeans IDE 8.0 - (.NetBeans.org.) [HKLM] -- nbi-nb-base-8.0.0.0.201403101706 O42 - Logiciel: oursurfing uninstall - (.oursurfing.) [HKLM] -- oursurfing uninstall =>PUP.Optional.OurSurfing O42 - Logiciel: Punto Switcher 3.2.9 - (.????ê?.) [HKLM] -- Punto Switcher O42 - Logiciel: SAM CoDeC Pack - (.www.SamLab.ws.) [HKLM] -- SAM CoDeC Pack O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM] -- Spark O42 - Logiciel: SuperCopier2 - (...) [HKLM] -- SuperCopier2 O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM] -- SynTPDeinstKey O42 - Logiciel: Ut Video Codec Suite - (.UMEZAWA Takeshi.) [HKLM] -- utvideo_is1 O42 - Logiciel: VLC media player 1.0.5 - (.VideoLAN Team.) [HKLM] -- VLC media player O42 - Logiciel: WinRAR 4.10 ÈíÊÇ 5 (32-ÈÊ) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: x264vfw - H.264/MPEG-4 AVC codec (remove only) - (...) [HKLM] -- x264vfw O42 - Logiciel: Xvid MPEG-4 Video Codec - (...) [HKLM] -- Xvid_is1 O42 - Logiciel: 7-Zip 9.30 - (.Igor Pavlov.) [HKLM] -- {23170F69-40C1-2701-0930-000001000000} O42 - Logiciel: Java 7 Update 51 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83217051FF} O42 - Logiciel: Borland C++Builder 6 - (.Borland Software Corporation.) [HKLM] -- {2864C41B-EF2D-4640-95A2-526276524519} O42 - Logiciel: Java SE Development Kit 7 Update 17 - (.Oracle.) [HKLM] -- {32A3A4F4-B792-11D6-A78A-00B0D0170170} O42 - Logiciel: Nitro PDF Professional - (.Nitro PDF Software.) [HKLM] -- {48DBC7A3-905B-4D74-A9B1-06BCB14CC126} O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM] -- {51A66ED3-200E-4147-8D1E-E8D30936FD26} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} O42 - Logiciel: Adobe Photoshop CC 2014 (32 Bit) - (.Adobe Systems Incorporated.) [HKLM] -- {7C25E7A0-A0A1-4B87-BB30-BF0FBDC37878} O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: SMADAV version 10.1.1 - (.SmadSoft.) [HKLM] -- {8B9FA5FF-3E61-4658-B0DA-E6DDB46D6BAD}_is1 O42 - Logiciel: Ralink RT3290 802.11bgn 1x1 Wi-Fi Adapter - (.Ralink.) [HKLM] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} O42 - Logiciel: AOMEI Backupper - (.AOMEI Technology Co., Ltd..) [HKLM] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536C09D}_is1 O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate O42 - Logiciel: Ralink Bluetooth Stack - (.Ralink Corporation.) [HKLM] -- {AB76292E-5DD2-01DC-97D5-FB9E69DE2ECC} O42 - Logiciel: Adobe Reader XI (11.0.03) - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-AB0000000001} O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM] -- {AFA1153A-F547-409B-B837-3A0D6C5A3FEC} O42 - Logiciel: Brother MFL-Pro Suite DCP-J132W - (.Brother Industries, Ltd..) [HKLM] -- {B742757A-7658-4E09-A51A-085CF0F7F4D3} O42 - Logiciel: Proteus 8 Professional - (.Labcenter Electronics.) [HKLM] -- {B8A525DB-6906-4F0C-92D7-33D55345E4E8} O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {C1594429-8296-4652-BF54-9DBE4932A44C} O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM] -- {C1F53C9F-C560-4292-9237-12786FE6BF62} O42 - Logiciel: USB Video Device - (.Realtek Semiconductor Corp..) [HKLM] -- {E0A7ED39-8CD6-4351-93C3-69CCA00D12B4} O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {E1DB0812-2D60-43DB-AE09-6C7027D93B28} O42 - Logiciel: Vegas Pro 11.0 - (.Sony.) [HKLM] -- {E734208F-E930-11E0-A055-F04DA23A5C58} O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM] -- {E9627240-E930-11E0-8690-F04DA23A5C58} O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Lagarith Lossless Codec (1.3.27) - (...) [HKLM] -- {F59AC46C-10C3-4023-882C-4212A92283B3}_is1 O42 - Logiciel: DriverPack Solution Updater - (.DriverPack Solution.) [HKCU] -- DRPSu Updater O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU] -- Google Chrome O42 - Logiciel: QQ??3.6 - (.????(??)????.) [HKCU] -- QQPlayer O42 - Logiciel: iMacros for Chrome File Access 1.0.0.805 - (.Ipswitch, Inc.) [HKCU] -- {97ABEAC7-C6E1-46F1-957B-F395EA4662B5}_is1 ---\\ HKCU & HKLM Software Keys (181) - 19s HKLM\SOFTWARE\7-Zip HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AIM Toolbar HKLM\SOFTWARE\AMD HKLM\SOFTWARE\AppDataLow HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\Baidu HKLM\SOFTWARE\BlueStacks HKLM\SOFTWARE\Borland HKLM\SOFTWARE\Brother HKLM\SOFTWARE\Brother Industries, Ltd. HKLM\SOFTWARE\Caphyon HKLM\SOFTWARE\CBSTEST HKLM\SOFTWARE\CCS, Inc. HKLM\SOFTWARE\CDDB HKLM\SOFTWARE\CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV07.07-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV07.07-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\CyberLink HKLM\SOFTWARE\Eset HKLM\SOFTWARE\f26f5b9c-97b4-48ab-a35a-9a3e13fac1cc =>PUP.Optional.CrossRider HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\Foxit Software HKLM\SOFTWARE\GEAR Software HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\HI-TECH Software HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Huawei technologies HKLM\SOFTWARE\IAR Systems HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\InstalledOptions HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\IVT Corporation HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\Keil HKLM\SOFTWARE\Labcenter Electronics HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\MC4D HKLM\SOFTWARE\Microchip HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nitro PDF HKLM\SOFTWARE\Nuance HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\oursurfingSoftware =>PUP.Optional.OurSurfing HKLM\SOFTWARE\PIP HKLM\SOFTWARE\Ralink HKLM\SOFTWARE\Ralink Corporation HKLM\SOFTWARE\RealNetworks HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\ReflexiveArcade HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\RTLSetup HKLM\SOFTWARE\SDCC HKLM\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\searchult =>PUP.Optional HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\Sony Creative Software HKLM\SOFTWARE\SpeedBit HKLM\SOFTWARE\SRS Labs HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\Synaptics HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Texas Instruments HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\VST HKLM\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKLM\SOFTWARE\WinAVR HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AOL HKCU\SOFTWARE\AOMEI HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\AskBarDis =>PUP.Optional.AskBarDis HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\baidu HKCU\SOFTWARE\Baidu Security HKCU\SOFTWARE\Borland HKCU\SOFTWARE\Brother HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\Challenge Pool HKCU\SOFTWARE\Cineform HKCU\SOFTWARE\CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV07.07-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV07.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CoreAAC HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\DRPSu Updater HKCU\SOFTWARE\DSP-worx HKCU\SOFTWARE\Ectaco HKCU\SOFTWARE\Embarcadero HKCU\SOFTWARE\ESET HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\iMacros HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KMPlayer HKCU\SOFTWARE\Kromtech HKCU\SOFTWARE\Labcenter Electronics HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MC4D HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Microchip HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-BE HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\New Wave Concepts HKCU\SOFTWARE\Nitro PDF HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\PIP HKCU\SOFTWARE\Psiphon3 HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Revenger inc. HKCU\SOFTWARE\SamLab.ws HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SFX TEAM HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\SMAD?V HKCU\SOFTWARE\SolidDocuments HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ut Video Codec Suite HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\yagarto HKCU\SOFTWARE\Yandex HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\Zyl Soft HKCU\SOFTWARE\AppDataLow\AskBarDis =>PUP.Optional.AskBarDis HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (225) - 12s O43 - CFD: 2015/06/07 18:14:15 - [] D -- C:\Program Files\7-Zip O43 - CFD: 2015/07/07 14:13:58 - [] D -- C:\Program Files\Adobe O43 - CFD: 2015/06/07 18:15:12 - [] D -- C:\Program Files\AIMP3 O43 - CFD: 2015/06/22 14:31:11 - [] D -- C:\Program Files\AOMEI Backupper O43 - CFD: 2015/06/11 22:59:41 - [] D -- C:\Program Files\Apple Software Update O43 - CFD: 2015/06/07 17:01:00 - [] D -- C:\Program Files\AskBarDis =>PUP.Optional.AskBarDis O43 - CFD: 2015/06/13 14:31:05 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2015/07/07 14:13:58 - [] D -- C:\Program Files\b5232a51-8cec-4ae6-bc7f-d07cb79f20d4 =>PUP.Optional.CrossRider O43 - CFD: 2015/06/07 17:07:08 - [] D -- C:\Program Files\baidu O43 - CFD: 2015/06/22 13:54:11 - [] D -- C:\Program Files\BlueStacks O43 - CFD: 2015/06/11 22:59:10 - [] D -- C:\Program Files\Bonjour O43 - CFD: 2015/06/17 16:40:42 - [] D -- C:\Program Files\Borland O43 - CFD: 2015/06/09 22:35:59 - [] D -- C:\Program Files\Brother O43 - CFD: 2015/06/09 22:35:52 - [] D -- C:\Program Files\Browny02 O43 - CFD: 2015/06/07 18:14:53 - [] D -- C:\Program Files\BurnAware Free O43 - CFD: 2015/07/07 14:14:50 - [] D -- C:\Program Files\CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider O43 - CFD: 2015/06/09 22:47:14 - [] D -- C:\Program Files\Circuit Wizard 2 O43 - CFD: 2015/06/17 16:40:42 - [] D -- C:\Program Files\Common Files O43 - CFD: 2015/06/09 22:35:51 - [] D -- C:\Program Files\ControlCenter4 O43 - CFD: 2015/06/11 08:16:17 - [] D -- C:\Program Files\Djezzy connect O43 - CFD: 2010/11/21 01:39:28 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 2015/07/13 04:56:49 - [] D -- C:\Program Files\Enigma Software Group =>.Enigma Software O43 - CFD: 2015/06/07 16:56:44 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2015/06/07 17:00:53 - [] D -- C:\Program Files\Foxit Software O43 - CFD: 2015/07/08 11:37:05 - [] D -- C:\Program Files\FreeTime O43 - CFD: 2015/07/07 14:13:13 - [] D -- C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/06/25 14:05:42 - [] D -- C:\Program Files\Google O43 - CFD: 2015/06/09 22:34:28 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2015/06/07 18:35:35 - [] D -- C:\Program Files\Intel O43 - CFD: 2015/06/20 08:52:50 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 2015/06/28 19:45:44 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2015/06/09 03:04:37 - [] D -- C:\Program Files\Java O43 - CFD: 2015/06/28 18:36:36 - [] D -- C:\Program Files\Labcenter Electronics O43 - CFD: 2010/11/21 01:39:25 - [] D -- C:\Program Files\Microsoft Games O43 - CFD: 2015/06/14 14:14:41 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/06/14 14:14:37 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 2015/06/14 14:10:27 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2015/06/14 14:15:09 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2015/06/14 14:13:27 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2015/07/07 14:12:43 - [] D -- C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab O43 - CFD: 2015/06/27 14:21:08 - [] D -- C:\Program Files\MotoGP3 O43 - CFD: 2015/07/12 00:45:37 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2015/06/09 00:24:14 - [] D -- C:\Program Files\Mozilla Maintenance Service O43 - CFD: 2015/06/14 14:14:53 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2015/07/11 14:23:57 - [] D -- C:\Program Files\NetBeans 8.0 O43 - CFD: 2015/06/11 08:51:07 - [] D -- C:\Program Files\Nitro PDF O43 - CFD: 2015/06/07 18:28:30 - [] D -- C:\Program Files\Ralink Corporation O43 - CFD: 2015/06/07 18:34:11 - [] D -- C:\Program Files\Realtek O43 - CFD: 2009/07/14 05:52:30 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2015/06/07 18:09:35 - [] D -- C:\Program Files\SAM CoDeC Pack O43 - CFD: 2015/07/02 08:25:05 - [] D -- C:\Program Files\Smadav O43 - CFD: 2015/06/20 11:44:58 - [] D -- C:\Program Files\Sony O43 - CFD: 2015/06/07 16:58:57 - [] D -- C:\Program Files\SuperCopier2 O43 - CFD: 2015/06/07 17:05:29 - [] D -- C:\Program Files\Synaptics O43 - CFD: 2015/06/10 23:03:14 - [] D -- C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2015/07/10 12:52:02 - [] D -- C:\Program Files\The KMPlayer FR O43 - CFD: 2015/07/10 21:35:26 - [] D -- C:\Program Files\UC Browser 9.4 PC Handler O43 - CFD: 2009/07/14 05:53:23 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2015/06/07 17:09:22 - [] D -- C:\Program Files\utvideo O43 - CFD: 2015/06/07 17:01:28 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2015/06/13 22:57:42 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2015/06/28 19:45:47 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2010/11/21 01:30:45 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/06/28 19:45:47 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2015/06/07 16:56:44 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2010/11/21 01:30:45 - [] D -- C:\Program Files\Windows Photo Viewer O43 - CFD: 2010/11/20 22:33:48 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2010/11/21 01:30:45 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2015/06/07 17:02:50 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2015/06/07 17:09:23 - [] D -- C:\Program Files\x264vfw O43 - CFD: 2015/06/07 17:09:23 - [] D -- C:\Program Files\Xvid O43 - CFD: 2015/06/07 18:14:54 - [] D -- C:\Program Files\Yandex O43 - CFD: 2015/06/24 19:32:02 - [] D -- C:\Program Files\Zyl Soft O43 - CFD: 2015/06/07 18:14:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 2015/06/07 18:28:56 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/06/07 16:54:20 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/06/07 18:15:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3 O43 - CFD: 2015/06/07 18:12:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper O43 - CFD: 2015/06/13 14:35:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 2015/06/07 17:07:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser O43 - CFD: 2015/06/22 13:54:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks O43 - CFD: 2015/06/21 13:28:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Borland C++Builder 6 O43 - CFD: 2015/06/09 22:36:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother O43 - CFD: 2015/06/07 18:14:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free O43 - CFD: 2015/06/11 08:16:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Djezzy connect O43 - CFD: 2015/06/07 18:14:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader O43 - CFD: 2015/06/22 14:32:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind O43 - CFD: 2015/06/07 16:54:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/06/20 08:51:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/06/07 18:13:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2009/07/14 05:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/06/14 14:18:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/06/09 03:09:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans O43 - CFD: 2015/06/28 18:38:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proteus 8 Professional O43 - CFD: 2015/06/07 18:14:55 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Punto Switcher O43 - CFD: 2015/06/07 18:09:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAM CoDeC Pack O43 - CFD: 2015/07/02 08:24:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMADAV Antivirus O43 - CFD: 2015/06/20 11:46:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony O43 - CFD: 2009/07/14 05:41:57 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2010/11/21 01:39:19 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/07/08 11:34:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The KMPlayer FR O43 - CFD: 2015/07/11 04:06:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UC Browser 9.4 PC Handler O43 - CFD: 2015/06/07 17:01:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/06/07 17:02:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/06/28 01:43:10 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/06/07 18:45:10 - [] D -- C:\ProgramData\AomeiBR O43 - CFD: 2015/06/11 22:59:35 - [] D -- C:\ProgramData\Apple O43 - CFD: 2015/06/11 23:00:49 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/06/13 14:31:05 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2015/07/09 02:16:19 - [] D -- C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB O43 - CFD: 2015/06/07 17:07:04 - [] D -- C:\ProgramData\Baidu O43 - CFD: 2015/06/22 13:54:42 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 2015/06/22 13:51:16 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 2015/06/09 22:36:37 - [] D -- C:\ProgramData\Brother O43 - CFD: 2015/06/07 16:56:44 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/06/09 22:35:51 - [] D -- C:\ProgramData\ControlCenter4 O43 - CFD: 2015/06/11 08:16:59 - [] D -- C:\ProgramData\DatacardService O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/06/08 12:11:30 - [] D -- C:\ProgramData\Djezzy connect O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/06/07 16:56:44 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/06/20 08:51:49 - [0] D -- C:\ProgramData\IDM O43 - CFD: 2015/07/07 14:12:39 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR O43 - CFD: 2015/06/07 18:31:27 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/06/28 18:36:36 - [] D -- C:\ProgramData\Labcenter Electronics O43 - CFD: 2015/06/07 16:56:44 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/06/28 19:42:56 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/06/14 14:18:10 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/06/07 16:56:44 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/06/07 18:13:56 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/06/25 12:14:13 - [] D -- C:\ProgramData\NFS Underground O43 - CFD: 2015/06/11 08:51:08 - [] D -- C:\ProgramData\Nitro PDF O43 - CFD: 2015/06/17 14:37:24 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/06/07 18:26:22 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 2015/06/17 14:43:16 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2015/06/20 11:49:02 - [] D -- C:\ProgramData\Sony O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/06/07 18:45:42 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/07/07 14:12:18 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu O43 - CFD: 2015/06/07 18:45:51 - [] D -- C:\ProgramData\Yandex O43 - CFD: 2015/06/24 19:32:02 - [] D -- C:\ProgramData\{45E11C69-C9A5-41D5-8489-BC28D04C4CE8} O43 - CFD: 2015/06/24 02:19:01 - [] D -- C:\ProgramData\{7a1f9534-e6ec-e001-7a1f-f9534e6e54d3} O43 - CFD: 2015/06/22 13:38:09 - [] HDC -- C:\ProgramData\{C49877F5-B9A4-4C4D-AB8D-F7F9DA1A9BBB} O43 - CFD: 2015/06/28 01:43:27 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2015/07/09 02:16:18 - [] D -- C:\Program Files\Common Files\Apple O43 - CFD: 2015/06/21 13:28:05 - [] D -- C:\Program Files\Common Files\Borland Shared O43 - CFD: 2015/06/14 14:14:36 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2015/06/14 14:15:02 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2015/06/11 08:51:08 - [] D -- C:\Program Files\Common Files\Nitro PDF O43 - CFD: 2015/06/07 18:30:41 - [] D -- C:\Program Files\Common Files\postureAgent O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2015/06/14 14:10:01 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2015/06/17 14:48:21 - [] D -- C:\Users\Med\AppData\Roaming\Adobe O43 - CFD: 2015/06/12 17:33:37 - [] D -- C:\Users\Med\AppData\Roaming\AIMP3 O43 - CFD: 2015/06/12 16:29:40 - [] D -- C:\Users\Med\AppData\Roaming\Apple Computer O43 - CFD: 2015/06/13 14:36:22 - [] D -- C:\Users\Med\AppData\Roaming\AVAST Software O43 - CFD: 2015/06/07 18:10:34 - [] D -- C:\Users\Med\AppData\Roaming\Baidu O43 - CFD: 2015/06/12 10:35:24 - [] RD -- C:\Users\Med\AppData\Roaming\Brother O43 - CFD: 2015/07/01 12:49:38 - [] D -- C:\Users\Med\AppData\Roaming\ControlCenter4 O43 - CFD: 2015/07/13 01:57:18 - [] D -- C:\Users\Med\AppData\Roaming\DMCache O43 - CFD: 2015/06/11 08:49:13 - [] D -- C:\Users\Med\AppData\Roaming\Downloaded Installations O43 - CFD: 2015/06/07 17:09:02 - [] D -- C:\Users\Med\AppData\Roaming\DRPSu O43 - CFD: 2015/06/10 16:23:53 - [] D -- C:\Users\Med\AppData\Roaming\dvdcss O43 - CFD: 2015/06/07 17:00:53 - [] D -- C:\Users\Med\AppData\Roaming\Foxit O43 - CFD: 2015/06/09 22:26:21 - [] D -- C:\Users\Med\AppData\Roaming\Foxit Software O43 - CFD: 2015/06/07 16:57:04 - [] D -- C:\Users\Med\AppData\Roaming\Identities O43 - CFD: 2015/07/12 10:07:37 - [] D -- C:\Users\Med\AppData\Roaming\IDM O43 - CFD: 2015/06/07 18:25:32 - [] D -- C:\Users\Med\AppData\Roaming\InstallShield O43 - CFD: 2015/06/28 18:34:15 - [] D -- C:\Users\Med\AppData\Roaming\Labcenter Electronics O43 - CFD: 2015/06/08 16:36:11 - [] D -- C:\Users\Med\AppData\Roaming\Macromedia O43 - CFD: 2015/06/26 14:54:50 - [] D -- C:\Users\Med\AppData\Roaming\MAXON O43 - CFD: 2010/11/21 01:39:19 - [0] D -- C:\Users\Med\AppData\Roaming\Media Center Programs O43 - CFD: 2015/07/12 16:19:08 - [] SD -- C:\Users\Med\AppData\Roaming\Microsoft O43 - CFD: 2015/06/07 18:34:55 - [] D -- C:\Users\Med\AppData\Roaming\Mozilla O43 - CFD: 2015/06/09 12:12:31 - [] D -- C:\Users\Med\AppData\Roaming\NetBeans O43 - CFD: 2015/07/04 18:29:08 - [] D -- C:\Users\Med\AppData\Roaming\Nitro PDF O43 - CFD: 2015/07/07 14:11:54 - [] D -- C:\Users\Med\AppData\Roaming\oursurfing =>PUP.Optional.OurSurfing O43 - CFD: 2015/07/05 17:18:52 - [] D -- C:\Users\Med\AppData\Roaming\Psiphon3 O43 - CFD: 2015/06/20 11:48:56 - [0] D -- C:\Users\Med\AppData\Roaming\Publish Providers O43 - CFD: 2015/07/02 01:03:38 - [0] D -- C:\Users\Med\AppData\Roaming\Smadav O43 - CFD: 2015/06/20 11:48:34 - [] D -- C:\Users\Med\AppData\Roaming\Sony O43 - CFD: 2015/06/07 18:45:42 - [] D -- C:\Users\Med\AppData\Roaming\Synaptics O43 - CFD: 2015/06/10 23:04:50 - [] D -- C:\Users\Med\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2015/07/07 20:06:00 - [] D -- C:\Users\Med\AppData\Roaming\vlc O43 - CFD: 2015/06/07 18:10:04 - [] D -- C:\Users\Med\AppData\Roaming\WinRAR O43 - CFD: 2015/06/08 17:19:38 - [] D -- C:\Users\Med\AppData\Roaming\Yandex O43 - CFD: 2015/07/13 05:15:48 - [] D -- C:\Users\Med\AppData\Roaming\ZHP O43 - CFD: 2015/06/17 16:47:40 - [] D -- C:\Users\Med\AppData\Local\Adobe O43 - CFD: 2015/06/11 22:59:43 - [] D -- C:\Users\Med\AppData\Local\Apple O43 - CFD: 2015/06/11 23:01:38 - [] D -- C:\Users\Med\AppData\Local\Apple Computer O43 - CFD: 2015/06/07 16:56:54 - [0] SHD -- C:\Users\Med\AppData\Local\Application Data O43 - CFD: 2015/06/07 18:45:51 - [] D -- C:\Users\Med\AppData\Local\bluesoleil O43 - CFD: 2015/06/22 13:51:13 - [] D -- C:\Users\Med\AppData\Local\Bluestacks O43 - CFD: 2015/06/09 15:23:05 - [] D -- C:\Users\Med\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/07/07 14:13:13 - [] D -- C:\Users\Med\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/06/08 13:52:41 - [] D -- C:\Users\Med\AppData\Local\Google O43 - CFD: 2015/06/07 16:56:54 - [0] SHD -- C:\Users\Med\AppData\Local\Historique O43 - CFD: 2015/06/28 18:48:25 - [] D -- C:\Users\Med\AppData\Local\Labcenter Electronics O43 - CFD: 2015/07/11 18:45:09 - [] D -- C:\Users\Med\AppData\Local\Microsoft O43 - CFD: 2015/06/25 11:56:01 - [] D -- C:\Users\Med\AppData\Local\Microsoft Games O43 - CFD: 2015/06/07 18:50:14 - [0] D -- C:\Users\Med\AppData\Local\Microsoft Help O43 - CFD: 2015/06/07 18:35:00 - [] D -- C:\Users\Med\AppData\Local\Mozilla O43 - CFD: 2015/06/09 12:11:32 - [] D -- C:\Users\Med\AppData\Local\NetBeans O43 - CFD: 2015/06/22 13:31:48 - [0] D -- C:\Users\Med\AppData\Local\PackageAware =>PUP.Optional.BearShare O43 - CFD: 2015/06/08 14:58:08 - [] D -- C:\Users\Med\AppData\Local\Programs O43 - CFD: 2015/06/20 11:48:20 - [] D -- C:\Users\Med\AppData\Local\Sony O43 - CFD: 2015/06/07 17:04:20 - [] D -- C:\Users\Med\AppData\Local\Spark O43 - CFD: 2015/07/13 05:16:09 - [] D -- C:\Users\Med\AppData\Local\Temp O43 - CFD: 2015/06/07 16:56:54 - [0] SHD -- C:\Users\Med\AppData\Local\Temporary Internet Files O43 - CFD: 2015/06/07 16:56:56 - [0] D -- C:\Users\Med\AppData\Local\VirtualStore O43 - CFD: 2009/07/14 05:42:04 - [] RD -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/06/13 23:04:39 - [] RD -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/07/08 11:37:22 - [] D -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 2015/06/29 14:26:47 - [] D -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/06/08 13:52:50 - [] D -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/06/20 08:51:44 - [] D -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2009/07/14 05:37:42 - [] RD -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/06/13 23:04:39 - [] RD -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/06/07 16:58:57 - [] D -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SuperCopier2 O43 - CFD: 2015/06/10 23:03:20 - [] D -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2015/06/07 17:02:50 - [] D -- C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (3) - 0s O53 - SMSR:HKLM\...\startupreg\DrvUpdater [Key] . (.DriverPack Solution - DRP Su Updater.) -- C:\Users\Med\AppData\Roaming\DRPSu\DrvUpdater.exe O53 - SMSR:HKLM\...\startupreg\RtsCM [Key] . (.Realtek Semiconductor Corp. - Realtek Camera Man.) -- RTSCM.EXE (.not file.) O53 - SMSR:HKLM\...\startupreg\SynTPEnh [Key] . (...) -- %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe (.not file.) ---\\ Liste des pilotes du système (SDL) (O58) (102) - 21s O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] O58 - SDL:2010/11/20 22:29:03 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] O58 - SDL:2010/11/20 22:29:03 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] O58 - SDL:2015/06/13 14:32:37 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [24184] O58 - SDL:2015/06/13 14:32:23 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [26136] O58 - SDL:2015/06/13 14:32:37 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [70384] O58 - SDL:2015/06/13 14:31:48 A . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdisFlt.sys [271288] O58 - SDL:2015/06/13 14:32:37 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [81768] O58 - SDL:2015/06/13 14:32:37 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [49944] O58 - SDL:2015/06/17 15:28:43 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswsnx.sys [787800] O58 - SDL:2015/06/17 15:17:37 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [423784] O58 - SDL:2015/06/13 14:32:37 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [91496] O58 - SDL:2015/06/13 14:32:37 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [206248] O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] O58 - SDL:2012/06/15 12:52:36 A . (.Ralink Corporation. - Bluelet Audio Driver.) -- C:\Windows\System32\drivers\blueletaudio.sys [31328] O58 - SDL:2012/07/10 16:27:30 A . (.Ralink Corporation - AddOn Audio SCO Driver.) -- C:\Windows\System32\drivers\BlueletSCOAudio.sys [31840] O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] O58 - SDL:2012/06/15 10:22:50 A . (.IVT Corporation - Bluetooth Audio Bus Driver.) -- C:\Windows\System32\drivers\BtAudioBus.sys [20320] O58 - SDL:2012/07/20 12:27:18 A . (.Ralink Corporation - Bluetooth L2CAP_SCO Interface Profile Drive.) -- C:\Windows\System32\drivers\BtL2caScoIf.sys [44616] O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [25856] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ewusbmdm.sys [199168] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\ewusbwwan.sys [377856] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [19200] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [102784] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [76544] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [95616] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [70016] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [27520] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [202752] O58 - SDL:2012/06/06 02:18:34 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [11136] O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] O58 - SDL:2012/04/06 08:17:42 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [46080] O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] O58 - SDL:2013/11/16 05:00:24 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStorA.sys [489832] O58 - SDL:2013/11/16 05:00:16 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [24424] O58 - SDL:2010/11/20 22:29:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] O58 - SDL:2013/10/26 21:35:22 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [108000] O58 - SDL:2013/12/06 18:50:23 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [3768320] O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] O58 - SDL:2013/12/18 19:02:07 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [364504] O58 - SDL:2012/10/02 09:58:44 A . (.Ralink Corporation - Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\IvtUrbBtFlt.sys [40544] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] O58 - SDL:2012/06/06 02:18:34 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [861696] O58 - SDL:2013/11/25 21:25:22 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\Windows\System32\drivers\netr28.sys [2122952] O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] O58 - SDL:2010/11/20 22:29:03 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] O58 - SDL:2010/11/20 22:29:03 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] O58 - SDL:2012/04/06 14:16:20 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [521320] O58 - SDL:2013/12/02 15:36:26 A . (.Ralink Technology, Corp. - Ralink Bluetooth Adapter.) -- C:\Windows\System32\drivers\rtbth.sys [930504] O58 - SDL:2014/01/23 07:22:48 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3001048] O58 - SDL:2011/10/28 01:27:52 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsP2Stor.sys [195176] O58 - SDL:2013/12/10 16:47:02 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for XP/Vista/Win7/Win8.) -- C:\Windows\System32\drivers\rtsuvc.sys [7091416] O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] O58 - SDL:2012/04/06 08:17:40 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver.sys [20240] O58 - SDL:2014/01/24 10:24:52 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [27888] O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] O58 - SDL:2012/04/06 08:17:34 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [320272] O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] O58 - SDL:2013/05/07 13:27:10 A . (...) -- C:\Windows\System32\ambakdrv.sys [26424] O58 - SDL:2013/05/07 13:27:10 A . (...) -- C:\Windows\System32\ammntdrv.sys [129720] O58 - SDL:2013/02/06 14:52:48 A . (...) -- C:\Windows\System32\amwrtdrv.sys [14392] O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (2) - 39s O61 - LFC: 2015/07/07 16:38:52 A . (..) -- C:\Users\Med\ZHPCleaner.exe [37] O61 - LFC: 2015/07/07 16:38:52 A . (..) -- C:\Users\Med\AppData\Roaming\ZHP\ZHPCleaner.exe [37] ---\\ Associations Shell Spawning (O67) (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Editeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe ---\\ Menu de démarrage Internet (SMI) (O68) (16) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Users\Med\AppData\Local\Google\Chrome\Application\chrome.exe http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Med\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Med\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Users\Med\AppData\Local\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (27) - 18s O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.defaultenginename", "oursurfing"); =>PUP.Optional.OurSurfing O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.searchengine.alias", "oursurfing"); =>PUP.Optional.OurSurfing O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.searchengine.iconURL", "http://www.oursurfing.com/web/favicon.ico"); =>PUP.Optional.OurSurfing O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.searchengine.name", "oursurfing"); =>PUP.Optional.OurSurfing O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.searchengine.ptid", "amt"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.searchengine.uid", "HGSTXHTS545050A7E380_TM8512ZJ2N3RUP2N3RUPX"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.searchengine.url", "http://www.oursurfing.com/web/?type=dspp&ts=1436274733&z=6d5101c61614d964c767c04g2z0[...] =>PUP.Optional.OurSurfing O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.search.selectedEngine", "oursurfing"); =>PUP.Optional.OurSurfing O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("browser.startup.homepage", "http://www.oursurfing.com/?type=hppp&ts=1436274733&z=6d5101c61614d964c767c04g2z0c4qbocm0zfm[...] =>PUP.Optional.OurSurfing O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealpl[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri [...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_regBundledWithSoftware.expiration[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.internaldb.monetization_plugin_regBundledWithSoftware.value", "%[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.aAVJYFVOD75109374HCDE39471360com72895.72895.name", "CinemaP-1.9cV07.07"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.crossrider.bic", "14e69291e350a493b4ed25e71fc62650"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [Med - 8635goh7.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (oursurfing) - http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O69 - SBI: SearchScopes [HKCU] {CF739809-1C6C-47C0-85B9-569DBB141420} - (Ask Search) - http://www.oursurfing.com/ =>PUP.Optional.OurSurfing O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://www.oursurfing.com/ =>PUP.Optional.OurSurfing ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [674304] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [473600] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1973728] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (14) - 2s O87 - FAEL: "{EA99E270-5A4B-41A6-ADB7-789C593BE921}" [In-None-P6-TRUE] .(.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe O87 - FAEL: "{234A9724-2438-4F45-B81B-2EBB3309E8A3}" [In-None-P17-TRUE] .(.Copyright (C) 2011 - spark.) -- C:\Program Files\baidu\Baidu Browser\Spark.exe O87 - FAEL: "{C110D7A0-C239-457B-9A23-FC5EB811A801}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Baidu Browser\bdtray.exe O87 - FAEL: "{B62EFAD2-888C-4AEF-BD68-563261DEC255}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Baidu Browser\bdtray.exe O87 - FAEL: "{1CF4850A-C984-48E7-A405-A234C1C7EF45}" [In-None-P6-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe O87 - FAEL: "{E5D2D3A6-8F10-4783-AF6F-4338A68B8FCD}" [In-None-P17-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe O87 - FAEL: "TCP Query User{76BF8C02-B659-4B74-966B-83607A496F3A}C:\program files\motogp3\motogp.exe" [In-None-P6-TRUE] .(...) -- C:\program files\motogp3\motogp.exe O87 - FAEL: "UDP Query User{9A3AB99C-1BEF-4E8F-A060-B6E0A0216CD6}C:\program files\motogp3\motogp.exe" [In-None-P17-TRUE] .(...) -- C:\program files\motogp3\motogp.exe O87 - FAEL: "{81B585C2-2136-4E09-8947-07D992401FFA}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Labcenter Electronics\Proteus 8 Professional\BIN\PDS.EXE O87 - FAEL: "{FB8A3798-31E7-41D8-B7A7-D5E4E17F87F7}" [Out-None-P17-TRUE] .(...) -- C:\Program Files\Labcenter Electronics\Proteus 8 Professional\BIN\PDS.EXE O87 - FAEL: "TCP Query User{C60D8027-B619-42B2-ADFC-6660BE0315FD}F:\programmes\jeux\paste jeour\return to castle wolfenstein sur rostombb\wolfmp.exe" [In-None-P6-TRUE] .(...) -- F:\programmes\jeux\paste jeour\return to castle wolfenstein sur rostombb\wolfmp.exe O87 - FAEL: "UDP Query User{E6C50762-892D-41FE-86EF-D05475A7834E}F:\programmes\jeux\paste jeour\return to castle wolfenstein sur rostombb\wolfmp.exe" [In-None-P17-TRUE] .(...) -- F:\programmes\jeux\paste jeour\return to castle wolfenstein sur rostombb\wolfmp.exe O87 - FAEL: "TCP Query User{66A8D3BD-F6B9-4AF7-B743-C464CF2E3768}C:\program files\java\jre7\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre7\bin\javaw.exe O87 - FAEL: "UDP Query User{3A268C10-A189-4628-B34E-282D8731122A}C:\program files\java\jre7\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre7\bin\javaw.exe ---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) (1) - 6s [MD5.] [WIS][2015/07/07 14:13:12] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\5466b7.msi [32768] =>PUP.Optional.GlobalUpdate ---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (29) - 54s SR - Auto [2013/05/11 11:37:26] [ 65640] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe SR - Auto [2014/01/23 07:22:26] [ 87968] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe SR - Auto [2015/01/19 23:30:38] [ 60744] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe SR - Auto [2015/06/13 14:32:29] [ 50344] avast! Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe SR - Auto [2015/06/13 14:31:48] [ 104416] avast! Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe SR - Demand [2015/06/13 14:31:55] [ 3192344] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe SR - Auto [2013/08/26 16:15:02] [ 29912] AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd..) - C:\Program Files\AOMEI Backupper\ABService.exe SR - Auto [2011/08/30 23:05:02] [ 390504] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe SR - Demand [2012/10/26 09:40:10] [ 282112] BrYNSvc (BrYNSvc) . (.Brother Industries, Ltd..) - C:\Program Files\Browny02\BrYNSvc.exe SR - Demand [2012/09/19 17:36:40] [ 99080] BsHelpCS (BsHelpCS) . (.IVT Corporation.) - C:\Program Files\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe SS - Demand [2015/05/28 10:58:40] [ 433880] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-Service.exe SS - Demand [2015/05/28 10:58:58] [ 413400] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe SS - Demand [2015/05/28 11:00:18] [ 806616] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-UpdaterService.exe SS - Demand [2013/12/18 01:21:16] [ 279024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\IntelCpHeciSvc.exe SS - Auto [2012/06/28 03:46:07] [ 655744] Djezzy connect. OUC (Djezzy connect. RunOuc) . (...) - C:\Program Files\Djezzy connect\UpdateDog\ouc.exe SS - Auto [2015/07/07 14:13:12] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files\globalUpdate\Update\globalupdate.exe SS - Demand [2015/07/07 14:13:12] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files\globalUpdate\Update\globalupdate.exe SR - Auto [2011/03/14 16:27:28] [ 271712] HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008.) - C:\ProgramData\DatacardService\HWDeviceService.exe SR - Auto [2015/06/24 03:08:12] [ 125112] IHProtect Service (IHProtect Service) . (.XTab system.) - C:\Program Files\MiuiTab\ProtectService.exe SR - Auto [2012/02/02 21:25:30] [ 458464] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe SR - Auto [2012/04/06 08:17:42] [ 161560] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe SR - Auto [2012/04/06 08:17:46] [ 277784] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SS - Demand [2015/05/26 02:12:49] [ 148080] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe SR - Auto [2010/07/09 14:21:50] [ 196928] NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) . (.Nitro PDF Software.) - C:\Program Files\Nitro PDF\Professional\NitroPDFDriverService.exe SR - Auto [2014/01/23 07:22:48] [ 251096] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe SR - Auto [2015/03/13 04:41:41] [ 84672] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files\baidu\Baidu Browser\sparkservice.exe SS - Demand [2015/03/13 04:41:41] [ 1359040] Baidu Spark Updater (SparkUpdater) . (.Baidu.com, Inc..) - C:\Program Files\baidu\SparkUpdate\Sparkupdate.exe SR - Auto [2012/04/06 08:17:46] [ 363800] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe SR - Auto [2015/07/07 14:12:16] [ 707240] WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED.) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe ---\\ Scan Additionnel (O88) (108) - 0s C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe =>PUP.Optional.Fuyu C:\Program Files\CinemaP-1.9cV07.07\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-6.exe =>PUP.Optional.CrossRider C:\Program Files\CinemaP-1.9cV07.07\ccf00e2b-042d-45a8-9173-63dfa4076cbe-6.exe =>PUP.Optional.CrossRider C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.MiuiTab C:\Program Files\MiuiTab\CmdShell.exe =>PUP.Optional.MiuiTab C:\Program Files\MiuiTab\HPNotify.exe =>PUP.Optional.MiuiTab C:\Users\Med\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate C:\Program Files\AskBarDis\bar\bin\askBar.dll =>PUP.Optional.AskBarDis HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed} =>PUP.Optional.AskBarDis C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} =>PUP.Optional.LuckyTab HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu C:\Windows\Tasks\Bidaily Synchronize Task[973b].job =>PUP.Optional.BidailySync C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-10_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-11.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-3.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-4.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\Bidaily Synchronize Task[973b] =>PUP.Optional.BidailySync C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-6 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-1-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-10_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-11 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-3 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-4 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-5_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-6 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\ccf00e2b-042d-45a8-9173-63dfa4076cbe-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ask Toolbar_is1 =>Toolbar.AsktBar HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\oursurfing uninstall =>PUP.Optional.OurSurfing HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKLM\SOFTWARE\CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV07.07-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV07.07-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\oursurfingSoftware =>PUP.Optional.OurSurfing HKLM\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\searchult =>PUP.Optional HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\AskBarDis =>PUP.Optional.AskBarDis HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKCU\SOFTWARE\CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV07.07-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV07.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\AskBarDis =>PUP.Optional.AskBarDis =>PUP.Optional.AskBarDis HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider =>PUP.Optional.CrossRider C:\Program Files\AskBarDis =>PUP.Optional.AskBarDis C:\Program Files\b5232a51-8cec-4ae6-bc7f-d07cb79f20d4 =>PUP.Optional.CrossRider C:\Program Files\CinemaP-1.9cV07.07 =>PUP.Optional.CrossRider C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab C:\Program Files\Tencent =>PUP.Optional.TencentAddressBar C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu C:\Users\Med\AppData\Roaming\oursurfing =>PUP.Optional.OurSurfing C:\Users\Med\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar C:\Users\Med\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\Med\AppData\Local\PackageAware =>PUP.Optional.BearShare C:\Users\Med\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Clients\StartMenuInternet\BaiduSpark.EXE\shell\Open\command [Bad: C:\Program Files\baidu\Baidu Browser\Spark.exe http://www.oursurfing.com/] =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\Open\command [Bad: C:\Program Files\Mozilla Firefox\firefox.exe http://www.oursurfing.com/] =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\Open\command [Bad: C:\Users\Med\AppData\Local\Google\Chrome\Application\chrome.exe http://www.oursurfing.com/] =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\Open\command [Bad: C:\Program Files\Internet Explorer\iexplore.ex http://www.oursurfing.com/] =>PUP.Optional.OurSurfing C:\Windows\Installer\5466b7.msi =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate ---\\ Récapitulatif des détections trouvées sur votre station (28) - 0s http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.MiuiTab http://www.nicolascoolman.fr/blog =>PUP.Optional.OurSurfing http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/blog =>PUP.Optional.AskBarDis http://www.nicolascoolman.fr/blog =>PUP.Optional.LuckyTab http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR http://www.nicolascoolman.fr/blog =>PUP.Optional.BidailySync http://www.nicolascoolman.fr/blog =>Toolbar.AsktBar http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBooster http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/blog =>PUP.Optional http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork http://www.nicolascoolman.fr/pup-bearshare/ =>PUP.Optional.BearShare http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine http://www.nicolascoolman.fr/blog =>PUP.Optional.Monetization http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart ~ End of the scan, 32897 items in 213 seconds (1100)(0)()