~ ZHPDiag v2015.8.26.127 Par Nicolas Coolman (2015/08/26) ~ Démarré par hp (Administrator) (2015/08/26 22:05:11) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\hp\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Ultimate, 64-bit (Build 7600) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v44.0.2403.157 MFIE: Mozilla Firefox 29.0 (x86 en-US) v29.0 MSIE: Internet Explorer v8.0.7600.16385 ---\\ Informations sur les produits Windows (5) - 6s Windows Server License Manager Script : Absent (Not found) Windows ID Activation : Inconnue (Unknown) Windows Licence : Inconnue (Unknown) Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 4s Avast Free Antivirus v10.2.2218 Windows Defender W7 (Activate) ---\\ Surveillance de Logiciels (2) - 5s Adobe Flash Player 18 NPAPI Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4140.912 MB (26% free) ~ System Restore: Activé (Enable) ~ System drive C: has 99 GB free of 237 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: HP-PC ~ User Name: hp ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 99 GB free of 237 GB (System) ~ Drive D: has 58 GB free of 238 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 2s [MD5.0862495E0C825893DB75EF44FAEA8E93] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2870272] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] © [MD5.463302B41295A7FCAAC655CCB5DE79F8] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1197056] © [MD5.DA3E2A6FA9660CC75B471530CE88453A] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [389632] © [MD5.] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [231936] © [MD5.39FE85537B2475268B20D3823B8E753C] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [30208] © [MD5.6EF20DDF3172E97D69F596FB90602F29] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [499712] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] © [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] © [MD5.83D2D75E1EFB81B3450C18131443F7DB] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] © [MD5.9C253CE7311CA60FC11C774692A13208] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] © [MD5.0A49913402747A0B67DE940FB42CBDBB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] © [MD5.040D62A9D8AD28922632137ACDD984F2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [157696] © [MD5.9162B273A44AB9DCE5B44362731D062A] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [259072] © [MD5.356698A13C4630D5B31C37378D469196] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1659984] © [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] © [MD5.87A6E852A22991580D6D39ADC4790463] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [130048] © [MD5.9706B84DBABFC4B4CA46C5A82B14DFA3] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [165376] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] © [MD5.079125C4B17B01FCAEEBCE0BCB290C0F] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [99840] © [MD5.58F82EED8CA24B461441F9C3E4F0BF5C] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [294992] © ---\\ Processus lancés (45) - 5s [MD5.A2F5BEA5B45A8E7C4776F39C25E8699D] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [204288] [PID.432] © [MD5.16B8421D9ADCE43A78F77842953C379D] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [485376] [PID.1180] © [MD5.1938EDECEADB05D81416C9549A33A3D1] - (.DTools LIMITED - DTools.) -- C:\ProgramData\JWinManProJ\WinManPro.exe [707720] [PID.1644] =>PUP.Optional.WpManager [MD5.C5679E5186B2FC95BC76A8A9870D5456] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [64704] [PID.1844] © [MD5.30E3850F303EAE5C364782EA78579CC9] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [55624] [PID.1864] © [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1892] © [MD5.12461829627C6ED75DC2D7AF94097F70] - (.Cucusoft, Inc. - Cucusoft Auto Update Service.) -- C:\Program Files\Cucusoft\AutoUpdate\AutoUpdateSrvc.exe [44696] [PID.1164] [MD5.B23B61AF1349EAB73480714042C21518] - (.Cinema PlusV16.03 - CinemaP-1.9cV16.03 exe.) -- C:\Program Files (x86)\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.exe [1408512] [PID.2256] =>PUP.Optional.CrossRider [MD5.C62FBA28888618418B377C9E72ED0DE5] - (.Cucusoft, Inc. - Cucusoft Net Guard Service 2012-04-21.) -- C:\Program Files\Cucusoft\NetGuard\BandwidthGuardSrvc.sys [223392] [PID.2524] [MD5.361417A9AFC796BF529F12D78FC1BD2C] - (.Cucusoft, Inc. - Cucusoft Net Guard Service 2012-04-21.) -- C:\Program Files\Cucusoft\NetGuard\BandwidthGuardSrvc64.sys [292000] [PID.2564] [MD5.3856D54FD710AB60B8C7A443BC625EAA] - (.Cucusoft, Inc. - Cucusoft SysMsg Proxy and Data Log Service.) -- C:\Program Files\Cucusoft\NetGuard\SysMsgProxySrvc.sys [255136] [PID.2592] [MD5.D1A8631ADA1E71178D3DBF5AA2BC1E85] - (.Foxit Software Inc. - Foxit Cloud Safe Update Service.) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [244392] [PID.2816] [MD5.3A0FF117B4ADC5ABE4D968E26A337158] - (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2375168] [PID.2836] [MD5.D0A4FD099B7EE90B302BE9D1A13A2EBD] - (.MiniLite system - MiniLiteSvc.exe.) -- C:\Program Files (x86)\MiniLite\ProtectService.exe [132768] [PID.2948] =>PUP.Optional.AgentODR [MD5.0417C188DA81AA5564B152CA4E00458A] - (.Copyright (C) 2013 - .) -- C:\ProgramData\MobileBrServ\mbbservice.exe [239696] [PID.3060] [MD5.831883B107684301F48ACE752C963984] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [66872] [PID.1196] [MD5.9B92ED281343A278E3A6AB6C9B21A369] - (.Baidu Inc. - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe [86840] [PID.2132] [MD5.97F6FFB8A305A77D25C6C0E07B71D252] - (.TeamViewer GmbH - TeamViewer 9.) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [5024576] [PID.3092] © [MD5.AD5CCC7861FBE9BC3822D1C940CAC0C2] - (.Copyright (C) 2013 - ZDServ Application.) -- C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe [427264] [PID.3220] [MD5.EE0AAEF8E4F5E84842C81560582DD942] - (...) -- C:\ProgramData\ZDSupport\ZDServ\CancelAutoPlay_Server.exe [426752] [PID.3576] [MD5.CDA3CF88FB7C78DFFB629C390D82399F] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [167256] [PID.3736] © [MD5.C27FDBE58254BF6438535E386E17DC8C] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [391512] [PID.2640] © [MD5.D2A8A2A49F5B0426EA85C5FA09854531] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [415064] [PID.3388] © [MD5.B0A7458308E157ABF2B04555D12ACF4A] - (.Nokia - Nokia Launch Application.) -- C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1479680] [PID.3924] © [MD5.045117D0B7FB222B92A04B6A55D44899] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3829328] [PID.3904] © [MD5.5C2DEF31326B9F873ED0B5F0272589E2] - (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe [202256] [PID.1148] [MD5.07A5F2043BAB61711F1C955F61DF70D6] - (.Internet Download Manager, Tonec Inc. - IDM Integration module.) -- C:\Program Files (x86)\Internet Download Manager\IDMIntegrator64.exe [83992] [PID.1704] [MD5.C861851A0BBD9903E324487011AA3705] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299008] [PID.2176] © [MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\avast software\avast\avastui.exe [5515496] [PID.4240] © [MD5.2D841B7B7F6DEC32162EDFCC69D61F42] - (.Nokia - ServiceLayer Module.) -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [615936] [PID.5016] © [MD5.E8CACCC0633414AB40EAEB1A5E288FCA] - (.Nokia - USB Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe [215552] [PID.1912] © [MD5.46A9D1FCC55EC6A62FE1D2ACE79C6CA8] - (.Nokia - Serial Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe [120832] [PID.2448] © [MD5.871E1E0FAE1EA1D1FCF4DDC8C9CC954D] - (.Nokia - Microsoft Bluetooth Media Server.) -- C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe [140288] [PID.4452] © [MD5.5793DC788F187C802A56450107C5424A] - (.Advanced Micro Devices, Inc. - Load MMdriver application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MMLoadDrv.exe [49664] [PID.3280] © [MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\avast\AvastSvc.exe [343336] [PID.2324] © [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5552] [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.4940] [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.208] [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5280] [MD5.3F3E04A8375E3E2109A44BD16998BF49] - (.MindGems Inc - Folder Size Freeware.) -- C:\Program Files (x86)\Folder Size\FolderSize.exe [2516480] [PID.236] [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5208] [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.5740] [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.3948] [MD5.C2D0C69CC95DF5CAB27ADB6D1B5DE130] - (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe [981304] [PID.6936] [MD5.E7EDF5F9D988069C62495EF24F419B32] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hp\Desktop\ZHPDiag3.exe [1908224] [PID.3292] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/ G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfaiecaipbfijlkohjkceigckpmdmgob] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Preference [User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (26) - 5s M0 - MFSP: prefs.js [hp - wba20m1u.default] http://www.istartsurf.com/?type=hp&ts=1440608830&z=9f9617791469fa5fc4383bbg5zczee8qce0bdm2g6q&from=smt&uid=ST9500325AS_S2W1G3N0 =>PUP.Optional.IsStart P2 - EXT FILE: (...) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\testpilot@labs.mozilla.com.xpi P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazondotcom.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\istartsurf.xml =>PUP.Optional.IsStart P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\twitter.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\iobitascsurfingprotection@iobit.com © P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM CC.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\mozilla_cc@internetdownloadmanager.com P2 - EXT: (. - summer games.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\pBcn5a5tL@gmail.com P2 - EXT: (.OutBrowse - SavePass.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\RNEOMVW50611856@ZKVKQ22976610.com P2 - EXT: (. - webranktoolbarprobcompcom.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\webrank-toolbar@probcomp.com P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll © P2 - FPN: [HKLM] [@checkpoint.com/FFApi] - (.Check Point.) -- C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll © P2 - FPN: [HKLM] [@ei.FilmFanatic.com/Plugin] - (.FilmFanatic.) -- C:\Program Files (x86)\FilmFanaticEI\Installr\1.bin\NPpaEISb.dll =>PUP.Optional.MindSpark P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.688] - (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll P2 - FPN: [HKLM] [@real.com/nprjplug;version=1.0.3.688] - (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.688] - (.RealNetworks, Inc..) -- C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpjplug.dll P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@videolan.org/vlc,version=1.0.0] - (.the VideoLAN Team.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (20) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {04b84c46-5abb-476b-a7d7-40435d9ae611} Orphean R3 - URLSearchHook: (no name) - {8f6846ea-ddff-459b-8c78-469b34d90a49} Orphean R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R3 - URLSearchHook: (no name) - {4d51f677-2a0b-43e2-b444-a2b384d24b91} Orphean ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (22) ---\\ Browser Helper Object de navigateur (BHO) (7) - 1s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL © O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre8\bin\ssv.dll © O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\avast\aswWebRepIE64.dll © O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll © O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL © O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre8\bin\jp2ssv.dll © ---\\ Internet Explorer, Barre d'outil (7) - 1s O3 - Toolbar: 0x77F6514D0B2AE243B444A2B384D24B91 - [HKCU]{4D51F677-2A0B-43E2-B444-A2B384D24B91} . (...) -- (.not file.) O3 - Toolbar: 0x7F7C02D44A156640A1AD4243D8127440 - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.) O3 - Toolbar: 0x08637D141406124189B131402F9B82C4 - [HKCU]{147D6308-0614-4112-89B1-31402F9B82C4} . (...) -- (.not file.) O3 - Toolbar: 0x464CB804BB5A6B47A7D740435D9AE611 - [HKCU]{04B84C46-5ABB-476B-A7D7-40435D9AE611} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files (x86)\Newwara\prxtbNew0.dll O3 - Toolbar: 0x00 - [HKLM]{D4027C7F-154A-4066-A1AD-4243D8127440} . (...) -- (.not file.) O3 - Toolbar: Newwara Toolbar - [HKLM]{04b84c46-5abb-476b-a7d7-40435d9ae611} . (.Conduit Ltd. - Conduit Toolbar.) -- C:\Program Files (x86)\Newwara\prxtbNew0.dll O3 - Toolbar: uTorrentControl_v6b Toolbar - [HKLM]{8f6846ea-ddff-459b-8c78-469b34d90a49} . (.Conduit Ltd. - Conduit Toolbar.) -- (.not file.) =>PUP.Optional.uTorrentControl ---\\ Applications lancées au démarrage du système (29) - 1s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe © O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe © O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe © O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe © O4 - HKLM\..\Run: [CucusoftNetGuard] (Orphean) O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKCU\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe © O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe © O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe © O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKCU\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE © O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe © O4 - HKLM\..\Wow6432Node\Run: [TkBellExe] . (.RealNetworks, Inc. - RealNetworks Scheduler.) -- C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe © O4 - HKLM\..\Wow6432Node\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe © O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe © O4 - HKLM\..\Wow6432Node\Run: [cmsc] . (.Kingsoft Corporation - Clean Master.) -- c:\program files (x86)\cmcm\Clean Master\cmtray.exe O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\avast\avastui.exe © O4 - HKLM\..\Wow6432Node\Run: [CucusoftNetGuard] . (.Cucusoft, Inc. - Cucusoft Net Guard.) -- C:\Program Files\Cucusoft\NetGuard\BandwidthGuard.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe © O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe © O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe © O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\hp\AppData\Local\Google\Update\GoogleUpdate.exe © O4 - HKUS\S-1-5-21-1420159070-2386943417-3676011376-1000\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE © ---\\ Modification Domaine/Adresses DNS (12) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = hi.link O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpDomain = hi.link O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpDomain = hi.link ---\\ Protocole additionnel (24) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: deflate [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: gzip [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (18) - 3s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe © O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\avast\AvastSvc.exe © O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe © O23 - Service: (CS_AutoUpdate) . (.Cucusoft, Inc. - Cucusoft Auto Update Service.) - C:\Program Files\Cucusoft\AutoUpdate\AutoUpdateSrvc.exe O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Software Inc. - Foxit Cloud Safe Update Service.) - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe O23 - Service: IHProtect Service (IHProtect Service) . (.MiniLite system - MiniLiteSvc.exe.) - C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe © O23 - Service: Mobile Broadband HL Service (Mobile Broadband HL Service) . (.Copyright (C) 2013 - .) - C:\ProgramData\MobileBrServ\mbbservice.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe (.not file.) O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © O23 - Service: Baidu Spark Service (SparkSvc) . (.Baidu Inc. - spark.) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe O23 - Service: TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH - TeamViewer 9.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe © O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED - DTools.) - C:\ProgramData\JWinManProJ\WinManPro.exe =>PUP.Optional.WpManager O23 - Service: ZDServ (ZDServ) . (.Copyright (C) 2013 - ZDServ Application.) - C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe ---\\ Enumère les données de BootExecute (1) - 0s O34 - HKLM BootExecute: (sdnclean64.exe) ---\\ Logiciels installés (180) - 37s O42 - Logiciel: Package de pilotes Windows - Nokia Modem (06/09/2010 4.5) - (.Nokia.) [HKLM][64Bits] -- 34EA302E7F4CBD17A19E33BBCB72363234956D7E © O42 - Logiciel: Broadcom 802.11 Network Adapter - (.Broadcom Corporation.) [HKLM][64Bits] -- Broadcom 802.11 Network Adapter © O42 - Logiciel: Cucusoft Auto Update 1.0.5 - (...) [HKLM][64Bits] -- CucusoftAutoUpdate_is1 O42 - Logiciel: Cucusoft Net Guard 2.3.4.1 - (.Cucusoft, Inc..) [HKLM][64Bits] -- CucusoftNetGuard_is1 O42 - Logiciel: Package de pilotes Windows - Nokia Modem (06/09/2010 7.01.0.7) - (.Nokia.) [HKLM][64Bits] -- EEEE705096F837B7907659F100C9FE6DA001970F © O42 - Logiciel: Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) - (.Nokia.) [HKLM][64Bits] -- FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D © O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 1.0 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Help Viewer 1.0 Language Pack - FRA © O42 - Logiciel: GlassFish Server Open Source Edition 3.1.2.2 - (...) [HKLM][64Bits] -- nbi-glassfish-mod-3.1.2.23.2 O42 - Logiciel: Java(TM) Platform, Micro Edition Software Development Kit 3.2 - (.Oracle.) [HKLM][64Bits] -- nbi-javame-toolkit-3.0.0.0.1209212151 © O42 - Logiciel: NetBeans IDE 7.3 - (.NetBeans.org.) [HKLM][64Bits] -- nbi-nb-base-7.3.0.0.201302132200 © O42 - Logiciel: NetBeans IDE 7.4 - (.NetBeans.org.) [HKLM][64Bits] -- nbi-nb-base-7.4.0.0.201310111528 © O42 - Logiciel: OptimizerPro - (.BetterSoft.) [HKLM][64Bits] -- OptimizerPro O42 - Logiciel: Potplayer-64 Bits - (.Daum Communications Corp..) [HKLM][64Bits] -- PotPlayer64 O42 - Logiciel: SAMSUNG Mobile Composite Device Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile Composite Device O42 - Logiciel: SAMSUNG Mobile Modem Driver Set - (...) [HKLM][64Bits] -- SAMSUNG Mobile Modem O42 - Logiciel: Samsung Mobile phone USB driver Drive Software - (...) [HKLM][64Bits] -- Samsung Mobile phone USB driver Drive O42 - Logiciel: SAMSUNG Mobile USB Modem Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem 1.0 O42 - Logiciel: TeraCopy 2.12 - (.Code Sector Inc..) [HKLM][64Bits] -- TeraCopy_is1 O42 - Logiciel: Java 7 Update 60 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F06417060FF} © O42 - Logiciel: Java 8 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418000FF} © O42 - Logiciel: Crystal Reports Basic Runtime French Language Pack for Visual Studio 2008 ( - (.Business Objects.) [HKLM][64Bits] -- {26D96091-69F2-4249-B43D-EEE1E50C52B4} © O42 - Logiciel: Crystal Reports Basic Runtime for Visual Studio 2008 (x64) - (.Business Objects.) [HKLM][64Bits] -- {2BFA9B05-7418-4EDE-A6FC-620427BAAAA3} © O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C} © O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM][64Bits] -- {4710662C-8204-4334-A977-B1AC9E547819} © O42 - Logiciel: AMD Media Foundation Decoders - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {499CBE65-4E07-B40A-624A-B5B7BD6F9A9C} © O42 - Logiciel: MSVC80_x64_v2 - (.Nokia.) [HKLM][64Bits] -- {4D668D4F-FAA2-4726-834C-31F4614F312E} © O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} © O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools - (.Microsoft.) [HKLM][64Bits] -- {5B03A6F3-27D7-3D60-8635-3074EA5FBD6C} © O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries - (.Microsoft Corporation.) [HKLM][64Bits] -- {5DE154DF-A55E-4FA5-BE59-32E78FCACF3E} © O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {62EED300-E841-4083-A1D6-60B906271804} © O42 - Logiciel: Java SE Development Kit 7 Update 45 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0170450} © O42 - Logiciel: Pilote vidéo Pinnacle - (.Pinnacle Systems.) [HKLM][64Bits] -- {6DE721A5-5E89-4D74-994C-652BB3C0672E} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} © O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8D0A0350-B509-B362-4827-63E4C6520E7B} © O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and I - (.Microsoft Corporation.) [HKLM][64Bits] -- {9aa5f39c-a8de-46b0-919a-0248f8bc8490} © O42 - Logiciel: Broadcom Gigabit NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {A325B368-A9EC-40EF-A95C-9DEAD3683AE3} © O42 - Logiciel: Microsoft Windows SDK for Visual Studio 2008 Win32 Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {A992BBAA-723D-4574-A07F-983BF8FAA3E1} © O42 - Logiciel: Microsoft Device Emulator (64 bits) version 3.0 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {BE6BA13C-6B5E-34A7-AA93-793BCE428DE1} © O42 - Logiciel: Visual Studio .NET Prerequisites - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {DDA84A45-E4FE-37E0-AA42-A3DBF4943721} © O42 - Logiciel: 3D Driving-School - (...) [HKLM][64Bits] -- 3D Driving-School O42 - Logiciel: ACSW - (.Ultra.) [HKLM][64Bits] -- ACSW_is1 O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Adobe Photoshop 7.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Photoshop 7.0 © O42 - Logiciel: ARMA 2 REINFORCEMENTS Uninstall - (...) [HKLM][64Bits] -- ARMA 2 REINFORCEMENTS O42 - Logiciel: Audacity 1.2.6 - (...) [HKLM][64Bits] -- Audacity_is1 O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast © O42 - Logiciel: Camersoft Webcam Recorder 3.1.08 - (.Camersoft Studio.) [HKLM][64Bits] -- Camersoft Webcam Recorder_is1 O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 © O42 - Logiciel: Cheatbook Database 2010 - (...) [HKLM][64Bits] -- Cheatbook Database 2010 O42 - Logiciel: Clean Master - (.Cheetah Mobile.) [HKLM][64Bits] -- Clean Master O42 - Logiciel: FastStone Capture 5.3 (French) - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Capture © O42 - Logiciel: FileZilla Client 3.7.3 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client © O42 - Logiciel: FormatFactory 2.60 - (.Free Time.) [HKLM][64Bits] -- FormatFactory © O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM][64Bits] -- Foxit Reader_is1 O42 - Logiciel: Free PDF to Word Doc Converter v1.1 - (.www.hellopdf.com.) [HKLM][64Bits] -- Free PDF to Word Doc Converter_is1 O42 - Logiciel: FreeArc 0.666 - (.Bulat Ziganshin.) [HKLM][64Bits] -- FreeArc O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: uTorrentControl_v6b Toolbar for IE - (.uTorrentControl_v6b.) [HKLM][64Bits] -- IECT3327997 O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} © O42 - Logiciel: UE3Redist - (.Epic Games.) [HKLM][64Bits] -- InstallShield_{2FB04107-7BC2-449C-915A-530B29B5E0FE} © O42 - Logiciel: CV et Lettres de Motivation - 9078 - (.Micro Application.) [HKLM][64Bits] -- InstallShield_{86764E89-55E0-4C0B-860B-4DC051743B30} © O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager © O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM][64Bits] -- IObit Surfing Protection_is1 © O42 - Logiciel: istartsurf uninstall - (.istartsurf.) [HKLM][64Bits] -- istartsurf uninstall =>PUP.Optional.IsStart O42 - Logiciel: Java Code Export 1.0 (Beta) - (.OverZone Software.) [HKLM][64Bits] -- Java Code Export (Beta)_is1 O42 - Logiciel: K-Lite Codec Pack 9.8.0 (Full) - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: LADSPA_plugins-win-0.4.15 - (.Audacity Team.) [HKLM][64Bits] -- LADSPA_plugins-win_is1 © O42 - Logiciel: Launch4j 3.1.0-beta2 - (.Grzegorz Kowal.) [HKLM][64Bits] -- Launch4j O42 - Logiciel: Medal of Honor Warfighter - (.R.G. Mechanics, Panky.) [HKLM][64Bits] -- Medal of Honor Warfighter_R.G. Mechanics_is1 O42 - Logiciel: Microsoft Document Explorer 2008 - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Document Explorer 2008 © O42 - Logiciel: Module linguistique Microsoft Document Explorer 2008 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Document Explorer 2008 Language Pack - FRA © O42 - Logiciel: Visual Studio 2005 Tools pour Office Second Edition Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2005 Tools for Office Runtime © O42 - Logiciel: Mobile Broadband HL Service - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Mobile Broadband HL Service O42 - Logiciel: Mozilla Firefox 29.0 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 29.0 (x86 en-US) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: My Autoplay 10.3 Pro D - (.Arafasoft, Inc..) [HKLM][64Bits] -- My Autoplay_is1 O42 - Logiciel: Need for Speed Hot Pursuit 2 - (...) [HKLM][64Bits] -- Need for Speed Hot Pursuit 2 O42 - Logiciel: Nero 8 Micro v8.3.2.1 - (.www.nero.com.) [HKLM][64Bits] -- Nero8321_Micro_is1 O42 - Logiciel: Newwara Toolbar - (.Newwara.) [HKLM][64Bits] -- Newwara Toolbar O42 - Logiciel: Nokia PC Suite - (.Nokia.) [HKLM][64Bits] -- Nokia PC Suite © O42 - Logiciel: Notepad++ - (...) [HKLM][64Bits] -- Notepad++ O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL O42 - Logiciel: openElement 1.44 R5 - (.openElement.) [HKLM][64Bits] -- openElement 1.44 R5 1.44.5 O42 - Logiciel: PowerISO - (.PowerISO Computing, Inc..) [HKLM][64Bits] -- PowerISO O42 - Logiciel: PSPad editor - (.Jan Fiala.) [HKLM][64Bits] -- PSPad editor_is1 O42 - Logiciel: RealPlayer - (.RealNetworks.) [HKLM][64Bits] -- RealPlayer 12.0 © O42 - Logiciel: Baidu Browser - (.Baidu Inc..) [HKLM][64Bits] -- Spark O42 - Logiciel: SPlayer - (...) [HKLM][64Bits] -- SPlayer O42 - Logiciel: Supercopier 4.0.1.13 - (.Supercopier.) [HKLM][64Bits] -- Supercopier O42 - Logiciel: TeamViewer 9 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer 9 © O42 - Logiciel: TotalPDFConverter - (.Softplicity, Inc..) [HKLM][64Bits] -- Total PDF Converter_is1 O42 - Logiciel: Tunisia Sat Radio.Tn V1.1 - (.Tunsia-Sat.) [HKLM][64Bits] -- Tunisia Sat Radio.Tn V1.1 O42 - Logiciel: Microsoft Access 97 Upsizing Tools - (...) [HKLM][64Bits] -- UpsizingTools97 O42 - Logiciel: Visual Studio Tools for the Office system 3.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Visual Studio Tools for the Office system 3.0 Runtime © O42 - Logiciel: Module linguistique Visual Studio Tools pour Office System 3.0 Runtime - FR - (.Microsoft Corporation.) [HKLM][64Bits] -- Visual Studio Tools for the Office system 3.0 Runtime Language Pack - FRA © O42 - Logiciel: VLC media player 1.0.0 - (.VideoLAN Team.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: VST Bridge 1.1 - (...) [HKLM][64Bits] -- VST Bridge_is1 O42 - Logiciel: WinHTTrack Website Copier 3.47-27 - (.HTTrack.) [HKLM][64Bits] -- WinHTTrack Website Copier_is1 O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} © O42 - Logiciel: VC 9.0 Runtime - (.Check Point Software Technologies Ltd.) [HKLM][64Bits] -- {02E89EFC-7B07-4D5A-AA03-9EC0902914EE} O42 - Logiciel: Camera Mouse 2013 - (.Camera Mouse.) [HKLM][64Bits] -- {05875510-8BE5-4208-BEA1-369C2213A279} O42 - Logiciel: Microsoft Encarta Maths - (.Microsoft Corporation.) [HKLM][64Bits] -- {07183840-959A-4B0D-8825-2C533F0DDB19} © O42 - Logiciel: PC Connectivity Solution - (.Nokia.) [HKLM][64Bits] -- {089DD780-DB3F-4CDB-A0C2-111360247298} © O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {0E33EC53-22CE-426C-A88B-2AAC231BAC85} © O42 - Logiciel: Soldier of Fortune Payback - (.Activision Value.) [HKLM][64Bits] -- {11BFB898-71E5-488A-A8FF-0E462667FB72} O42 - Logiciel: Pinnacle Studio 15 - (.Pinnacle Systems.) [HKLM][64Bits] -- {1362E602-9625-42D3-B57F-CDA9D26F9DA8} © O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia.) [HKLM][64Bits] -- {1B9B5B3B-28E7-4E59-A80D-D670AA984514} © O42 - Logiciel: Angry Birds - (.Rovio.) [HKLM][64Bits] -- {1E11EE30-C0D4-46BC-9142-27EB4C37BE35} © O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} © O42 - Logiciel: Nokia PC Suite - (.Nokia.) [HKLM][64Bits] -- {225DB4AA-3CFF-47E8-B3C8-6DAD713E986E} © O42 - Logiciel: Crystal Reports Basic French Language Pack for Visual Studio 2008 - (.Business Objects.) [HKLM][64Bits] -- {2516845C-017F-4036-828B-3365FF640AB6} © O42 - Logiciel: Java(TM) 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216023FF} © O42 - Logiciel: Java 7 Update 45 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83217045FF} © O42 - Logiciel: Java 8 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218000FF} © O42 - Logiciel: Folder Size 2.8.0.0 - (.MindGems, Inc..) [HKLM][64Bits] -- {2DFA85ED-588F-4CE3-A175-29E52C3804A8}_is1 O42 - Logiciel: Visual C++ 8.0 Runtime Setup Package (x64) - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {2FDBBCEA-62DB-45F4-B6E5-0E1FB2A1F29D} © O42 - Logiciel: Java(TM) SE Development Kit 6 Update 23 - (.Oracle.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0160230} © O42 - Logiciel: Java SE Development Kit 8 - (.Oracle Corporation.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0180000} © O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Fran - (.Microsoft Corporation.) [HKLM][64Bits] -- {3380F354-C5F7-4E71-8F51-EEE6C3F06C62} © O42 - Logiciel: BodyBuilding Info - (.buy-anabolic-steroids.com.) [HKLM][64Bits] -- {34B51F99-239E-4ECE-8E13-3055E4E1EC2F} O42 - Logiciel: MySQL Connector J - (.Oracle Corporation.) [HKLM][64Bits] -- {382DF8A2-7305-4974-8C23-13372DB4E2D5} © O42 - Logiciel: Macromedia Flash MX - (.Macromedia.) [HKLM][64Bits] -- {3BE480ED-E17A-431A-981C-5C2EDDBCD3BF} © O42 - Logiciel: Macromedia Extension Manager - (.Nom de votre société.) [HKLM][64Bits] -- {3C8C9FB3-5FDF-40B4-B314-EAD722728C76} O42 - Logiciel: Angry Birds Space - (.Rovio.) [HKLM][64Bits] -- {3F2A323E-60C4-41E8-8CCB-9715D1D750C3} © O42 - Logiciel: Foxit Cloud - (.Foxit Software Inc..) [HKLM][64Bits] -- {41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1 O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} © O42 - Logiciel: Adobe Illustrator CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4869414E-7AEA-4C8E-BE1C-8D40977FD517} © O42 - Logiciel: Sybase PowerAMC 15.1 - (.Sybase Inc..) [HKLM][64Bits] -- {48B0BE4A-EDC9-44C4-A3DB-67D62D75961F} O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} © O42 - Logiciel: Macromedia Dreamweaver 8 - (..) [HKLM][64Bits] -- {5FD788ED-1A37-4496-9BDD-463F493B27FA} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {64467D47-FFE4-4FBC-ABBA-A0DB829A17EB} © O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} © O42 - Logiciel: Microsoft Document Explorer 2008 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6753B40C-0FBD-3BED-8A9D-0ACAC2DCD85D} © O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} © O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM][64Bits] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} © O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {6F545E5E-4595-11E2-93B6-B8AC6F97B88E} © O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: Skype™ 6.16 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7} © O42 - Logiciel: Free Stuff version 1.5 - (...) [HKLM][64Bits] -- {7E1B484F-C15A-48C2-BF42-450310E39165}_is1 O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM][64Bits] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AsktBar O42 - Logiciel: Ubisoft Game Launcher - (.UBISOFT.) [HKLM][64Bits] -- {888F1505-C2B3-4FDE-835D-36353EBD4754} © O42 - Logiciel: Visual Studio Tools for the Office system 3.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FB53850-246A-3507-8ADE-0060093FFEA6} © O42 - Logiciel: Windows Mobile 5.0 SDK R2 for Pocket PC - (.Microsoft Corporation.) [HKLM][64Bits] -- {94576E4F-703B-4038-806B-CDE9479A33AF} © O42 - Logiciel: Loadout Editor For ArmA2 Combined Operations & ACE 2 version 1.4 Update 4, - (.The [S.o.E] team.) [HKLM][64Bits] -- {9D374F73-F47B-4637-B1D2-75173CFBF6B3}_is1 O42 - Logiciel: Angry Birds Seasons - (.Rovio.) [HKLM][64Bits] -- {9E4F7DD0-C596-4501-AE16-77F18F7EE694} © O42 - Logiciel: MySQL Connector J - (.Oracle Corporation.) [HKLM][64Bits] -- {9EC952A0-A070-4309-A371-35D9A5B8AFB5} © O42 - Logiciel: Angry Birds Rio - (.Rovio.) [HKLM][64Bits] -- {A409B55C-DD9B-4157-86D7-FD6F4F0F2C1A} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Crystal Reports Basic for Visual Studio 2008 - (.Business Objects.) [HKLM][64Bits] -- {AA467959-A1D6-4F45-90CD-11DC57733F32} © O42 - Logiciel: Microsoft Document Explorer 2008 Language Pack - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {AACA7728-BE87-3D11-8A3F-773664BFCF1B} © O42 - Logiciel: JavaFX Scene Builder 1.1 - (.Oracle.) [HKLM][64Bits] -- {AB468309-88EB-4250-BFEA-45479091102B} © O42 - Logiciel: Adobe Reader XI (11.0.09) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} © O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1} © O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} © O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} © O42 - Logiciel: ZDServer - (.ZTE Corporation.) [HKLM][64Bits] -- {C8197F5F-E0DC-44f1-8AF2-1AA5A84F695D} O42 - Logiciel: Ashampoo Snap 6 v.6.0.10 - (.Ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- {C92AB6F1-770F-EA32-6CF7-8A0792FA1A4B}_is1 O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {CA3DD97D-1FD7-37A7-BD5C-FC4430C8B8E6} © O42 - Logiciel: Windows Mobile 5.0 SDK R2 for Smartphone - (.Microsoft Corporation.) [HKLM][64Bits] -- {CCFA733C-2F56-4E8C-90B4-B38807400B7A} © O42 - Logiciel: openElement 1.44 R5 - (.openElement.) [HKLM][64Bits] -- {CD08AF82-89EF-49D4-98AA-A4E50B16164C} O42 - Logiciel: Age of Empires 3 complete version 1.14 - (.vol1.) [HKLM][64Bits] -- {D5D9F4B5-7CCE-458D-9ECA-FE9EFD7D607C}_is1 O42 - Logiciel: Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {D60023FA-3DF1-4537-93DD-13024CC4E366} © O42 - Logiciel: Hostless Dim@Net - (.ZTE Corporation.) [HKLM][64Bits] -- {E5A51591-76A6-46B3-84EF-7FA52A49D052} O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: RealUpgrade 1.0 - (.RealNetworks, Inc..) [HKLM][64Bits] -- {F4F4F84E-804F-4E9A-84D7-C34283F0088F} O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: MySQL Tools for 5.0 - (.MySQL AB, Sun Microsystems, Inc..) [HKLM][64Bits] -- {FCB10DE3-E190-4A7E-B06A-FAC61567ABFC} O42 - Logiciel: Sybase PowerAMC 11.1 Evaluation - (...) [HKLM][64Bits] -- {FE492F35-7EE6-4DA5-BF68-56A9FC64A4E2} O42 - Logiciel: VC Runtimes MSI - (.Microsoft.) [HKLM][64Bits] -- {FF29527A-44CD-3422-945E-981A13584000} © O42 - Logiciel: WindowsApplication1 - (.Microsoft.) [HKCU][64Bits] -- 1c2e603b0799b839 © O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox © O42 - Logiciel: WindowsApplication1 - (.Microsoft.) [HKCU][64Bits] -- f322e3e10f271d98 © O42 - Logiciel: Download Balance - (.Mart Download corp.) [HKCU][64Bits] -- {9563BC59-9556-4805-8CD4-886781779D8D} ---\\ HKCU & HKLM Software Keys (342) - 38s HKLM\SOFTWARE\Wow6432Node\Activision HKLM\SOFTWARE\Wow6432Node\Adblock Pro HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\ADSECURITY HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Ahead HKLM\SOFTWARE\Wow6432Node\AirConflictsSecretWars HKLM\SOFTWARE\Wow6432Node\AirConflictsSecretWarsGUID HKLM\SOFTWARE\Wow6432Node\AMD HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Ashampoo HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\AUTODATA HKLM\SOFTWARE\Wow6432Node\Autodata Limited HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\Avg HKLM\SOFTWARE\Wow6432Node\Avid HKLM\SOFTWARE\Wow6432Node\AviSynth HKLM\SOFTWARE\Wow6432Node\AVS4YOU HKLM\SOFTWARE\Wow6432Node\Axialis HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\Baidu HKLM\SOFTWARE\Wow6432Node\BcmSetup HKLM\SOFTWARE\Wow6432Node\BIStudio HKLM\SOFTWARE\Wow6432Node\Bohemia Interactive HKLM\SOFTWARE\Wow6432Node\Bohemia Interactive Studio HKLM\SOFTWARE\Wow6432Node\BSProductManage HKLM\SOFTWARE\Wow6432Node\Business Objects HKLM\SOFTWARE\Wow6432Node\C07ft5Y HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\Cauldron HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\CheatBook HKLM\SOFTWARE\Wow6432Node\CheckPoint HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\cmcm HKLM\SOFTWARE\Wow6432Node\Cucusoft HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Cygwin HKLM\SOFTWARE\Wow6432Node\Danger Close Games HKLM\SOFTWARE\Wow6432Node\DICE HKLM\SOFTWARE\Wow6432Node\Digital Integration HKLM\SOFTWARE\Wow6432Node\DivX HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft HKLM\SOFTWARE\Wow6432Node\EA Games HKLM\SOFTWARE\Wow6432Node\Eidos HKLM\SOFTWARE\Wow6432Node\Electronic Arts HKLM\SOFTWARE\Wow6432Node\Element Technologie HKLM\SOFTWARE\Wow6432Node\FAST Multimedia HKLM\SOFTWARE\Wow6432Node\FileZilla 3 HKLM\SOFTWARE\Wow6432Node\FileZilla Client HKLM\SOFTWARE\Wow6432Node\FilmFanaticEI =>PUP.Optional.MindSpark HKLM\SOFTWARE\Wow6432Node\Flash Memory Toolkit HKLM\SOFTWARE\Wow6432Node\FlashPeak HKLM\SOFTWARE\Wow6432Node\Foxit Software HKLM\SOFTWARE\Wow6432Node\FreeArc HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\GOG.com HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Huawei technologies HKLM\SOFTWARE\Wow6432Node\Icaros HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\IObit HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes Anti-Exploit HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Micro Application HKLM\SOFTWARE\Wow6432Node\Mooii HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\My Company Name HKLM\SOFTWARE\Wow6432Node\MySQL AB HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound HKLM\SOFTWARE\Wow6432Node\Need for Speed Hot Pursuit 2 HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\Netscape HKLM\SOFTWARE\Wow6432Node\Newwara HKLM\SOFTWARE\Wow6432Node\Nokia HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OpenAL HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Oracle HKLM\SOFTWARE\Wow6432Node\Oracle America, Inc. HKLM\SOFTWARE\Wow6432Node\Origin HKLM\SOFTWARE\Wow6432Node\PC Connectivity Solution HKLM\SOFTWARE\Wow6432Node\PCSuite HKLM\SOFTWARE\Wow6432Node\Pegasus Imaging HKLM\SOFTWARE\Wow6432Node\PegasusImaging HKLM\SOFTWARE\Wow6432Node\Pinnacle Systems HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask HKLM\SOFTWARE\Wow6432Node\PowerISO HKLM\SOFTWARE\Wow6432Node\PySoft HKLM\SOFTWARE\Wow6432Node\RealNetworks HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\RichFX HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited HKLM\SOFTWARE\Wow6432Node\SavePass =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SEGA HKLM\SOFTWARE\Wow6432Node\ShiningMorning HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SourceTec HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\SpeedBit HKLM\SOFTWARE\Wow6432Node\SPlayer HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\Wow6432Node\Sybase HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\Tensons HKLM\SOFTWARE\Wow6432Node\Trymedia Systems =>PUP.Optional.Trymedia HKLM\SOFTWARE\Wow6432Node\Ubi Soft HKLM\SOFTWARE\Wow6432Node\Ubisoft HKLM\SOFTWARE\Wow6432Node\Unreal Technology HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\VMware, Inc. HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WebToGo HKLM\SOFTWARE\Wow6432Node\Windows HKLM\SOFTWARE\Wow6432Node\WinHTTrack Website Copier HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Xing Technology Corp. HKLM\SOFTWARE\Wow6432Node\Even Balance HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\3D Driving-School HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\ACE Compression Software HKCU\SOFTWARE\Activision HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Akella HKCU\SOFTWARE\Altium (Dream VCL) HKCU\SOFTWARE\APN =>Toolbar.Ask HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Ashampoo HKCU\SOFTWARE\Ask.com =>Toolbar.Ask HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Audacity HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Avg HKCU\SOFTWARE\AVS4YOU HKCU\SOFTWARE\Axialis HKCU\SOFTWARE\baidu HKCU\SOFTWARE\Baidu Security HKCU\SOFTWARE\Battlefield 1942 HKCU\SOFTWARE\Battlefield Vietnam HKCU\SOFTWARE\Besier 3D-Edutainment HKCU\SOFTWARE\Bmupd HKCU\SOFTWARE\Bohemia Interactive HKCU\SOFTWARE\Bohemia Interactive Studio HKCU\SOFTWARE\CameraMouse2013 HKCU\SOFTWARE\Camfrog HKCU\SOFTWARE\Caphyon HKCU\SOFTWARE\Caricature Software HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\Cheat Engine HKCU\SOFTWARE\CheckPoint HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\cmcm HKCU\SOFTWARE\Code Sector HKCU\SOFTWARE\Counter-Strike Source HKCU\SOFTWARE\csvconverter HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\Dark Skull HKCU\SOFTWARE\Datastead HKCU\SOFTWARE\DAUM HKCU\SOFTWARE\DivX HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\DownLite HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DSP-worx HKCU\SOFTWARE\DSS HKCU\SOFTWARE\e2eSoft HKCU\SOFTWARE\Eidos HKCU\SOFTWARE\El Software Solutions HKCU\SOFTWARE\elSoftware HKCU\SOFTWARE\Epic Games HKCU\SOFTWARE\EpicScale =>PUP.Optional.EpicScale HKCU\SOFTWARE\ESSANET TECHNOLOGY sarl HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\FANiSO HKCU\SOFTWARE\FlashPeak HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GameHouse HKCU\SOFTWARE\GameSpy HKCU\SOFTWARE\Generateur Mot de Passe HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Helmsman HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IGA HKCU\SOFTWARE\IGearSettings =>PUP.Optional.IGearSettings HKCU\SOFTWARE\Illustrate HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\InstallPath HKCU\SOFTWARE\Intel HKCU\SOFTWARE\ispy HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JEDI-VCL HKCU\SOFTWARE\JustCause2 HKCU\SOFTWARE\KC Softwares HKCU\SOFTWARE\Kegetys HKCU\SOFTWARE\keyhole.com HKCU\SOFTWARE\KGB Archiver HKCU\SOFTWARE\LeaderTech HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Marseillesoft HKCU\SOFTWARE\Massive Entertainment HKCU\SOFTWARE\Mediachance HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\MegaCloud HKCU\SOFTWARE\MiniTool Solution Ltd. HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MySQL AB HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Newwara HKCU\SOFTWARE\Nokia HKCU\SOFTWARE\Northcode Inc HKCU\SOFTWARE\NWI HKCU\SOFTWARE\o7RTBC1ROBKZCvWoU0xovKSG HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Odin Game Studio HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PC SOFT HKCU\SOFTWARE\perforce HKCU\SOFTWARE\Pinnacle Systems HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\PowerISO HKCU\SOFTWARE\PowerPack HKCU\SOFTWARE\PSPad HKCU\SOFTWARE\PySoft HKCU\SOFTWARE\Raven Software HKCU\SOFTWARE\RealNetworks HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Regsk HKCU\SOFTWARE\Remedy Entertainment HKCU\SOFTWARE\RLZer HKCU\SOFTWARE\Safer Networking Limited HKCU\SOFTWARE\Sakari Indie HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SecuROM HKCU\SOFTWARE\ShiningMorning HKCU\SOFTWARE\SIV HKCU\SOFTWARE\Skunkstudios HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\Softplicity HKCU\SOFTWARE\SourceTec HKCU\SOFTWARE\SPlayer HKCU\SOFTWARE\summer games HKCU\SOFTWARE\summergames HKCU\SOFTWARE\Sybase HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\Tbccint =>PUP.Optional.Conduit HKCU\SOFTWARE\Tbccint_HKLM =>PUP.Optional.Conduit HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Tensons HKCU\SOFTWARE\THETA AnIn HKCU\SOFTWARE\TiznitInfo HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TurboPower HKCU\SOFTWARE\TVideoGrabber HKCU\SOFTWARE\txn HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Ultracopier HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WebToGo HKCU\SOFTWARE\WinHTTrack Website Copier HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Yahoo HKCU\SOFTWARE\yuPlay HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\射手影音播放器 HKCU\SOFTWARE\로컬 응용 프로그램 마법사에서 생성된 응용 프로그램 HKCU\SOFTWARE\AppDataLow\ISWVolatile HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix HKCU\SOFTWARE\AppDataLow\Toolbar HKCU\SOFTWARE\AppDataLow\Software\AskToolbar =>Toolbar.Ask HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Newwara HKCU\SOFTWARE\AppDataLow\Software\PriceGong =>PUP.Optional.PriceGong HKCU\SOFTWARE\AppDataLow\Software\SavePass =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\AppDataLow\Software\Tbccint =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\Software\TbccintSearchScopes =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\Software\uTorrentControl_v6b ---\\ Contenu des dossiers Programmes (577) - 46s O43 - CFD: 2015/08/04 23:41:43 - [0] D -- C:\Program Files (x86)\69dc8177-a574-4dff-8461-b3267b078dcf =>PUP.Optional.CrossRider O43 - CFD: 2014/12/03 01:56:17 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2014/11/05 15:35:41 - [] D -- C:\Program Files (x86)\Age of Empires 3 complete O43 - CFD: 2011/09/29 08:19:13 - [] D -- C:\Program Files (x86)\AMD APP O43 - CFD: 2013/01/15 09:46:00 - [] D -- C:\Program Files (x86)\Apache Software Foundation O43 - CFD: 2013/10/10 15:17:35 - [] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2013/11/05 02:44:38 - [] D -- C:\Program Files (x86)\Arafasoft O43 - CFD: 2013/11/05 03:34:07 - [] D -- C:\Program Files (x86)\Ashampoo O43 - CFD: 2011/09/29 08:18:37 - [] D -- C:\Program Files (x86)\ATI Technologies O43 - CFD: 2014/04/21 23:00:13 - [] D -- C:\Program Files (x86)\Audacity O43 - CFD: 2012/02/29 18:24:57 - [] D -- C:\Program Files (x86)\AVG O43 - CFD: 2013/11/05 03:11:41 - [0] D -- C:\Program Files (x86)\AVS4YOU O43 - CFD: 2015/05/21 13:26:38 - [] D -- C:\Program Files (x86)\baidu O43 - CFD: 2015/08/26 16:57:53 - [0] D -- C:\Program Files (x86)\Black_Box O43 - CFD: 2014/06/28 13:22:42 - [] D -- C:\Program Files (x86)\Bohemia Interactive O43 - CFD: 2013/10/10 15:16:47 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2013/04/02 21:18:00 - [] D -- C:\Program Files (x86)\Business Objects O43 - CFD: 2013/06/08 02:01:33 - [] D -- C:\Program Files (x86)\Camera Mouse O43 - CFD: 2014/09/16 16:24:34 - [] D -- C:\Program Files (x86)\Camersoft O43 - CFD: 2013/04/02 20:50:37 - [] D -- C:\Program Files (x86)\CE Remote Tools O43 - CFD: 2011/09/30 21:04:43 - [] D -- C:\Program Files (x86)\Cheatbook Database 2010 O43 - CFD: 2015/08/05 23:40:29 - [] D -- C:\Program Files (x86)\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider O43 - CFD: 2011/09/29 08:19:38 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 2014/12/29 03:06:24 - [] D -- C:\Program Files (x86)\cmcm O43 - CFD: 2014/10/20 13:35:09 - [0] D -- C:\Program Files (x86)\Codemasters O43 - CFD: 2015/08/25 05:42:22 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2014/03/07 01:20:10 - [0] D -- C:\Program Files (x86)\concept design O43 - CFD: 2011/11/06 22:43:46 - [] D -- C:\Program Files (x86)\CyberLink O43 - CFD: 2013/02/13 04:06:12 - [] D -- C:\Program Files (x86)\DreamCatcher O43 - CFD: 2015/04/25 21:13:20 - [] D -- C:\Program Files (x86)\EA GAMES O43 - CFD: 2013/12/05 23:54:53 - [] D -- C:\Program Files (x86)\EasyPHP-12.1 O43 - CFD: 2014/09/26 17:00:51 - [] D -- C:\Program Files (x86)\Electronic Arts O43 - CFD: 2013/02/26 20:50:49 - [] D -- C:\Program Files (x86)\FastStone Capture O43 - CFD: 2014/02/10 13:07:07 - [] D -- C:\Program Files (x86)\FileZilla FTP Client O43 - CFD: 2011/12/04 17:09:46 - [] D -- C:\Program Files (x86)\FilmFanaticEI =>PUP.Optional.MindSpark O43 - CFD: 2014/10/20 13:35:39 - [] D -- C:\Program Files (x86)\Folder Size O43 - CFD: 2014/12/04 03:32:50 - [] D -- C:\Program Files (x86)\Foxit Software O43 - CFD: 2012/11/26 14:09:42 - [] D -- C:\Program Files (x86)\Free PDF to Word Doc Converter O43 - CFD: 2012/02/21 21:23:28 - [] D -- C:\Program Files (x86)\Free Stuff O43 - CFD: 2013/08/05 02:09:19 - [] D -- C:\Program Files (x86)\FreeArc O43 - CFD: 2011/09/30 16:19:16 - [] D -- C:\Program Files (x86)\FreeTime O43 - CFD: 2015/08/08 13:19:08 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/08/04 23:38:11 - [] D -- C:\Program Files (x86)\GUPlayer =>PUP.Optional.GUPlayer O43 - CFD: 2014/12/25 17:24:16 - [] D -- C:\Program Files (x86)\Hostless Modem O43 - CFD: 2013/04/02 20:54:51 - [] D -- C:\Program Files (x86)\HTML Help Workshop O43 - CFD: 2015/08/26 17:02:16 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2011/09/29 09:02:46 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2013/08/07 06:02:18 - [] D -- C:\Program Files (x86)\Intelore O43 - CFD: 2014/05/16 13:27:32 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 2012/03/03 19:06:56 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2014/04/08 16:48:11 - [] D -- C:\Program Files (x86)\InternetEverywhere O43 - CFD: 2015/06/10 17:42:27 - [] D -- C:\Program Files (x86)\IObit O43 - CFD: 2014/06/17 18:55:03 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2014/01/08 00:26:00 - [] D -- C:\Program Files (x86)\Java Code Export O43 - CFD: 2013/11/05 03:29:59 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 2014/01/31 17:28:25 - [0] D -- C:\Program Files (x86)\KAPITALSIN O43 - CFD: 2012/06/27 15:36:51 - [0] D -- C:\Program Files (x86)\KC Softwares O43 - CFD: 2013/09/23 21:30:59 - [] D -- C:\Program Files (x86)\Kuma Games BETA O43 - CFD: 2014/01/14 02:10:46 - [] D -- C:\Program Files (x86)\Launch4j O43 - CFD: 2015/08/03 15:28:38 - [] D -- C:\Program Files (x86)\LEA O43 - CFD: 2011/11/19 18:04:33 - [] D -- C:\Program Files (x86)\Learning Essentials O43 - CFD: 2015/04/19 23:11:21 - [] D -- C:\Program Files (x86)\Macromedia O43 - CFD: 2013/10/25 12:09:32 - [] D -- C:\Program Files (x86)\Manhunter O43 - CFD: 2014/07/12 17:58:15 - [] D -- C:\Program Files (x86)\Micro Application O43 - CFD: 2013/10/24 19:51:11 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2013/04/02 21:11:12 - [] D -- C:\Program Files (x86)\Microsoft Device Emulator O43 - CFD: 2014/01/31 17:31:19 - [] D -- C:\Program Files (x86)\Microsoft Etudes O43 - CFD: 2014/03/10 12:47:19 - [0] D -- C:\Program Files (x86)\Microsoft Expression O43 - CFD: 2014/09/18 16:03:28 - [0] D -- C:\Program Files (x86)\Microsoft Games O43 - CFD: 2013/10/31 20:35:23 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2013/04/02 20:50:37 - [] D -- C:\Program Files (x86)\Microsoft SDKs O43 - CFD: 2013/11/24 05:43:05 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 2013/04/02 21:09:11 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2013/10/31 20:03:28 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework O43 - CFD: 2013/04/02 21:09:11 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services O43 - CFD: 2014/05/31 14:38:44 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 10.0 O43 - CFD: 2013/10/16 19:33:18 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2013/04/02 21:18:00 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 9.0 O43 - CFD: 2013/04/02 20:48:14 - [] D -- C:\Program Files (x86)\Microsoft Web Designer Tools O43 - CFD: 2013/04/02 21:14:07 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/08/26 18:10:34 - [] D -- C:\Program Files (x86)\MiniLite =>PUP.Optional.AgentODR O43 - CFD: 2014/01/12 13:16:07 - [] D -- C:\Program Files (x86)\Modern O43 - CFD: 2012/06/26 01:30:23 - [] D -- C:\Program Files (x86)\Movie Maker 2.6 O43 - CFD: 2015/04/01 23:55:27 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2014/03/29 04:46:34 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2014/05/31 14:38:43 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2011/10/05 13:58:26 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 2014/01/10 23:36:52 - [] D -- C:\Program Files (x86)\MySQL O43 - CFD: 2012/05/06 19:07:21 - [] D -- C:\Program Files (x86)\NCH Swift Sound O43 - CFD: 2011/09/30 19:05:31 - [] D -- C:\Program Files (x86)\Nero O43 - CFD: 2013/10/11 17:35:03 - [] D -- C:\Program Files (x86)\Newwara O43 - CFD: 2012/03/03 20:49:01 - [] D -- C:\Program Files (x86)\Nokia O43 - CFD: 2014/12/29 03:11:38 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 2013/03/29 04:31:46 - [] D -- C:\Program Files (x86)\NovaLogic O43 - CFD: 2014/04/10 20:31:09 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2015/01/12 19:00:00 - [] D -- C:\Program Files (x86)\OpenAL O43 - CFD: 2014/03/24 11:42:44 - [] D -- C:\Program Files (x86)\openElement O43 - CFD: 2014/05/14 20:22:18 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 2013/12/22 02:20:13 - [] D -- C:\Program Files (x86)\Oracle O43 - CFD: 2012/02/24 19:37:25 - [] D -- C:\Program Files (x86)\PC Connectivity Solution O43 - CFD: 2014/12/05 20:13:04 - [] D -- C:\Program Files (x86)\Pinnacle O43 - CFD: 2011/10/15 02:21:22 - [] D -- C:\Program Files (x86)\PowerISO O43 - CFD: 2013/01/13 22:10:56 - [] D -- C:\Program Files (x86)\PSPad editor O43 - CFD: 2014/09/17 20:48:20 - [0] D -- C:\Program Files (x86)\R.G. Games O43 - CFD: 2015/01/12 20:27:29 - [0] D -- C:\Program Files (x86)\R.G. Mechanics O43 - CFD: 2011/09/30 16:20:57 - [] D -- C:\Program Files (x86)\Real O43 - CFD: 2011/10/01 23:31:03 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/06/24 16:08:22 - [] D -- C:\Program Files (x86)\Rovio O43 - CFD: 2014/06/20 19:31:41 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 2015/04/19 21:57:20 - [] D -- C:\Program Files (x86)\SavePass =>PUP.Optional.CrossRider O43 - CFD: 2015/05/25 21:53:02 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2013/12/21 01:39:26 - [] D -- C:\Program Files (x86)\SPlayer O43 - CFD: 2015/08/26 22:04:25 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2 O43 - CFD: 2012/09/03 02:57:52 - [] D -- C:\Program Files (x86)\Square Enix O43 - CFD: 2015/03/17 13:21:55 - [] D -- C:\Program Files (x86)\Steam O43 - CFD: 2013/10/29 20:06:53 - [] D -- C:\Program Files (x86)\Sybase O43 - CFD: 2014/04/05 14:51:52 - [] D -- C:\Program Files (x86)\Tbccint =>PUP.Optional.Conduit O43 - CFD: 2014/05/08 20:00:51 - [] D -- C:\Program Files (x86)\TeamViewer O43 - CFD: 2012/03/23 23:41:37 - [0] D -- C:\Program Files (x86)\Tensons O43 - CFD: 2012/11/26 14:52:07 - [] D -- C:\Program Files (x86)\Total PDF Converter O43 - CFD: 2009/07/14 05:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2011/09/30 20:36:05 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2014/08/07 02:44:09 - [] D -- C:\Program Files (x86)\Wargame Red Dragon O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2011/10/05 14:23:34 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2011/10/05 14:23:36 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2013/04/02 21:10:48 - [] D -- C:\Program Files (x86)\Windows Mobile 5.0 SDK R2 O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2009/07/14 06:32:40 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2009/07/14 16:24:08 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2013/12/02 02:34:41 - [] D -- C:\Program Files (x86)\WinHTTrack O43 - CFD: 2013/03/28 14:46:43 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2013/10/05 17:06:54 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3D Driving-School O43 - CFD: 2011/09/29 08:10:56 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/08/15 21:20:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACSW O43 - CFD: 2015/05/01 13:41:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Activision Value O43 - CFD: 2011/09/29 08:10:48 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/11/05 15:35:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Age of Empires 3 complete O43 - CFD: 2013/11/04 05:19:23 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arafasoft O43 - CFD: 2013/11/05 03:34:33 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo O43 - CFD: 2015/07/02 22:44:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 2014/09/11 18:00:58 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Axialis Software O43 - CFD: 2015/05/21 13:26:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Baidu Browser O43 - CFD: 2014/06/28 13:24:09 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive O43 - CFD: 2014/12/02 17:47:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\buy-anabolic-steroids.com O43 - CFD: 2013/06/08 02:01:38 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camera Mouse O43 - CFD: 2014/09/16 16:24:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camersoft Studio O43 - CFD: 2011/09/29 08:19:08 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 2014/12/29 03:06:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clean Master O43 - CFD: 2014/09/11 18:00:58 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CustomMapStrikeatAbuDhabi O43 - CFD: 2011/11/06 22:43:49 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam O43 - CFD: 2014/09/16 05:14:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum O43 - CFD: 2014/12/25 17:24:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dim@Net O43 - CFD: 2015/07/31 17:29:11 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES O43 - CFD: 2013/12/05 20:01:12 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyPHP 12.1 O43 - CFD: 2013/06/10 16:25:55 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eidos Interactive O43 - CFD: 2013/02/26 20:50:49 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture O43 - CFD: 2014/02/10 13:07:03 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 2014/10/20 13:35:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Folder Size O43 - CFD: 2014/12/04 03:33:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader O43 - CFD: 2012/11/26 14:09:42 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Doc Converter O43 - CFD: 2012/02/21 21:23:28 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Stuff O43 - CFD: 2013/08/05 02:09:07 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeArc O43 - CFD: 2015/08/26 16:50:09 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/01/17 15:58:19 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gest-Stock- Magasin O43 - CFD: 2015/08/08 13:19:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2014/05/11 02:31:06 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 2014/12/25 17:29:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hostless Dim@Net O43 - CFD: 2013/11/29 17:51:48 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2014/04/08 16:48:11 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Everywhere O43 - CFD: 2014/01/07 23:41:01 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2014/01/08 00:26:00 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Code Export O43 - CFD: 2014/09/11 18:00:58 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit O43 - CFD: 2013/12/22 01:21:33 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java(TM) ME Platform SDK 3.2 O43 - CFD: 2013/12/22 02:20:36 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JavaFX Scene Builder O43 - CFD: 2013/11/05 03:30:09 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2014/01/31 17:28:22 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KAPITALSIN O43 - CFD: 2014/01/14 02:10:46 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch4j O43 - CFD: 2015/03/02 23:04:42 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEA O43 - CFD: 2011/11/19 18:04:37 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les Indispensables Éducation O43 - CFD: 2015/04/19 23:13:12 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macromedia O43 - CFD: 2009/07/14 05:57:09 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/07/12 18:00:18 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application O43 - CFD: 2014/01/31 17:30:19 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Etudes O43 - CFD: 2013/12/22 15:16:47 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2013/04/02 21:16:22 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005 O43 - CFD: 2013/11/23 15:57:08 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2008 O43 - CFD: 2014/05/31 14:41:02 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010 Express O43 - CFD: 2013/04/02 21:23:38 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v6.0A O43 - CFD: 2012/07/20 04:42:33 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MrBurns[Ger] Maps O43 - CFD: 2014/01/10 23:37:06 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL O43 - CFD: 2011/09/30 19:05:34 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 2014/01/04 15:32:40 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans O43 - CFD: 2012/03/03 20:49:04 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite O43 - CFD: 2013/01/13 22:43:58 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2014/03/24 11:43:30 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\openElement 1.44 R5 O43 - CFD: 2015/01/18 03:32:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 15 O43 - CFD: 2011/10/15 02:21:23 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO O43 - CFD: 2013/01/13 22:10:56 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPad editor O43 - CFD: 2015/01/12 20:27:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics O43 - CFD: 2011/09/30 16:20:54 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real O43 - CFD: 2015/06/24 16:08:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rovio O43 - CFD: 2013/02/09 02:46:54 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RY's GAMES O43 - CFD: 2013/12/22 15:16:46 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 2014/02/16 21:28:50 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra O43 - CFD: 2014/07/19 03:34:57 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2013/12/21 01:39:24 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPlayer O43 - CFD: 2014/04/08 16:47:54 - [] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2013/10/29 20:10:25 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sybase O43 - CFD: 2009/07/14 16:35:02 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/04/29 13:46:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy O43 - CFD: 2012/11/26 14:52:08 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total PDF Converter O43 - CFD: 2011/09/30 20:36:10 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2013/12/02 02:34:41 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack O43 - CFD: 2013/03/28 03:17:02 - [] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2013/10/12 14:16:26 - [] HD -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 2012/01/14 00:34:15 - [0] HD -- C:\ProgramData\4Sync O43 - CFD: 2014/12/03 01:59:46 - [] HD -- C:\ProgramData\Adobe O43 - CFD: 2014/11/05 15:36:26 - [] D -- C:\ProgramData\Age of Empires 3 O43 - CFD: 2014/10/21 13:57:48 - [0] D -- C:\ProgramData\ALM O43 - CFD: 2014/09/20 15:33:22 - [] D -- C:\ProgramData\Apache O43 - CFD: 2013/10/10 15:17:26 - [] HD -- C:\ProgramData\Apple O43 - CFD: 2013/10/10 15:19:18 - [] HD -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2013/11/05 03:34:33 - [] HD -- C:\ProgramData\Ashampoo O43 - CFD: 2011/09/29 08:16:28 - [] HD -- C:\ProgramData\Atheros O43 - CFD: 2011/09/29 08:31:29 - [] HD -- C:\ProgramData\ATI O43 - CFD: 2015/07/01 16:09:16 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2013/11/05 03:08:24 - [] HD -- C:\ProgramData\AVS4YOU O43 - CFD: 2011/10/01 13:28:27 - [0] HD -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 2015/05/20 23:41:04 - [] HD -- C:\ProgramData\Baidu O43 - CFD: 2013/03/24 01:15:49 - [] HD -- C:\ProgramData\BetterSoft =>PUP.Optional.Offerware O43 - CFD: 2014/10/13 23:30:08 - [] D -- C:\ProgramData\Bohemia Interactive O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2011/11/05 13:39:46 - [] HD -- C:\ProgramData\CheckPoint O43 - CFD: 2014/12/29 03:06:40 - [] D -- C:\ProgramData\cmcm O43 - CFD: 2012/08/21 14:18:02 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2015/08/26 18:03:09 - [] D -- C:\ProgramData\Cucusoft O43 - CFD: 2012/11/09 19:45:40 - [] HD -- C:\ProgramData\CyberLink O43 - CFD: 2014/03/13 20:07:31 - [] HD -- C:\ProgramData\DatacardService O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2014/03/13 08:13:13 - [] HD -- C:\ProgramData\Dim@net O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2014/09/26 17:23:40 - [] SHD -- C:\ProgramData\DSS O43 - CFD: 2014/05/28 22:12:36 - [] HD -- C:\ProgramData\EA Core O43 - CFD: 2014/05/28 22:12:34 - [] HD -- C:\ProgramData\Electronic Arts O43 - CFD: 2014/03/24 11:42:44 - [] HD -- C:\ProgramData\Element Technologie O43 - CFD: 2015/04/16 16:55:02 - [0] D -- C:\ProgramData\EpicScale =>PUP.Optional.EpicScale O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2014/03/07 01:30:28 - [0] HD -- C:\ProgramData\Freemake O43 - CFD: 2013/11/28 22:10:01 - [0] HD -- C:\ProgramData\IDM O43 - CFD: 2014/08/05 14:10:31 - [0] HD -- C:\ProgramData\img O43 - CFD: 2012/03/03 20:46:05 - [] HD -- C:\ProgramData\Installations O43 - CFD: 2013/03/28 03:46:35 - [] HD -- C:\ProgramData\InstallMate =>PUP.Optional.Tarma O43 - CFD: 2015/06/10 17:43:30 - [] D -- C:\ProgramData\IObit O43 - CFD: 2015/08/26 18:11:36 - [] D -- C:\ProgramData\JWinManProJ O43 - CFD: 2014/12/29 03:06:40 - [] D -- C:\ProgramData\Kingsoft O43 - CFD: 2013/05/05 20:56:17 - [] HD -- C:\ProgramData\Macromedia O43 - CFD: 2014/06/02 15:18:49 - [] HD -- C:\ProgramData\Malwarebytes O43 - CFD: 2015/06/10 14:08:15 - [] D -- C:\ProgramData\Malwarebytes Anti-Exploit O43 - CFD: 2011/10/01 13:11:16 - [] HD -- C:\ProgramData\McAfee O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2014/07/12 21:19:15 - [] HD -- C:\ProgramData\Micro Application O43 - CFD: 2015/08/26 22:04:24 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2013/12/22 15:29:31 - [] HD -- C:\ProgramData\Microsoft Help O43 - CFD: 2014/01/22 02:58:47 - [] HD -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 2014/01/31 17:37:42 - [] HD -- C:\ProgramData\MindGems O43 - CFD: 2014/04/03 20:49:14 - [] HD -- C:\ProgramData\MobileBrServ O43 - CFD: 2011/09/29 08:13:53 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2014/12/29 03:11:29 - [0] HD -- C:\ProgramData\Mozilla O43 - CFD: 2013/02/28 17:03:10 - [] HD -- C:\ProgramData\NMap O43 - CFD: 2014/01/25 22:37:11 - [] HD -- C:\ProgramData\OCS Inventory NG O43 - CFD: 2012/03/14 19:42:46 - [] HD -- C:\ProgramData\Office Genuine Advantage O43 - CFD: 2014/06/17 19:05:44 - [0] HD -- C:\ProgramData\Oracle O43 - CFD: 2015/02/20 03:12:59 - [] HD -- C:\ProgramData\Origin O43 - CFD: 2013/11/10 04:38:41 - [] HD -- C:\ProgramData\Passmark O43 - CFD: 2012/04/24 21:12:25 - [] HD -- C:\ProgramData\PC Suite O43 - CFD: 2014/09/11 18:05:47 - [] D -- C:\ProgramData\PC1Data O43 - CFD: 2014/02/24 00:01:48 - [] HD -- C:\ProgramData\phpDesigner O43 - CFD: 2015/01/18 03:23:13 - [] HD -- C:\ProgramData\Pinnacle O43 - CFD: 2015/01/18 03:23:13 - [0] D -- C:\ProgramData\Pinnacle Studio Plus O43 - CFD: 2014/06/06 15:10:03 - [] HD -- C:\ProgramData\Pinnacle Studio Ultimate O43 - CFD: 2014/06/06 15:15:30 - [] HD -- C:\ProgramData\Pinnacle Studio Ultimate Collection O43 - CFD: 2013/12/12 19:29:50 - [] HD -- C:\ProgramData\PowerAMC 15 O43 - CFD: 2013/04/02 20:58:38 - [] HD -- C:\ProgramData\PreEmptive Solutions O43 - CFD: 2013/11/05 16:27:59 - [] HD -- C:\ProgramData\RAiN O43 - CFD: 2011/10/22 19:23:46 - [] HD -- C:\ProgramData\Real O43 - CFD: 2014/10/21 14:01:52 - [] HD -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2013/01/27 02:32:24 - [] HD -- C:\ProgramData\RELOADED O43 - CFD: 2013/12/02 02:20:52 - [] HD -- C:\ProgramData\Save Data O43 - CFD: 2014/12/29 03:11:39 - [0] HD -- C:\ProgramData\Skype O43 - CFD: 2013/03/28 03:46:32 - [] HD -- C:\ProgramData\SoftSafe O43 - CFD: 2012/03/23 23:57:59 - [] HD -- C:\ProgramData\SpeedBit O43 - CFD: 2015/08/26 22:04:12 - [] D -- C:\ProgramData\Spybot - Search & Destroy O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/01/10 19:32:30 - [] HD -- C:\ProgramData\Steam O43 - CFD: 2015/01/18 03:23:13 - [] D -- C:\ProgramData\Studio 15 O43 - CFD: 2013/11/25 19:54:08 - [] HD -- C:\ProgramData\Sun O43 - CFD: 2014/04/05 14:51:48 - [] HD -- C:\ProgramData\Tbccint =>PUP.Optional.Conduit O43 - CFD: 2013/01/31 23:30:52 - [] AHD -- C:\ProgramData\Temp O43 - CFD: 2009/07/14 06:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2012/07/11 04:13:26 - [] HD -- C:\ProgramData\Trymedia =>PUP.Optional.Trymedia O43 - CFD: 2015/08/26 20:34:35 - [0] D -- C:\ProgramData\update O43 - CFD: 2012/11/24 18:46:20 - [] HD -- C:\ProgramData\VMware O43 - CFD: 2012/11/06 21:39:51 - [] HD -- C:\ProgramData\Web Installer O43 - CFD: 2011/10/22 21:53:26 - [0] HD -- C:\ProgramData\WebacamSurveyor O43 - CFD: 2014/12/25 17:24:19 - [] D -- C:\ProgramData\ZDSupport O43 - CFD: 2014/12/03 01:56:47 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2013/10/12 14:16:25 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2011/09/29 08:19:11 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies O43 - CFD: 2013/11/05 03:11:42 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia O43 - CFD: 2013/12/22 15:08:56 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2014/02/24 23:41:06 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft O43 - CFD: 2014/05/28 22:15:50 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller O43 - CFD: 2011/12/21 02:35:43 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2011/09/29 09:02:47 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2014/01/07 23:41:50 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2013/05/05 20:58:03 - [] D -- C:\Program Files (x86)\Common Files\Macromedia O43 - CFD: 2013/04/02 20:58:42 - [] D -- C:\Program Files (x86)\Common Files\Merge Modules O43 - CFD: 2014/05/31 14:39:39 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2011/09/30 19:05:32 - [] D -- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 2012/03/03 20:49:01 - [] D -- C:\Program Files (x86)\Common Files\Nokia O43 - CFD: 2012/03/03 20:49:03 - [] D -- C:\Program Files (x86)\Common Files\PCSuite O43 - CFD: 2015/01/18 03:23:25 - [] D -- C:\Program Files (x86)\Common Files\Pegasus Imaging O43 - CFD: 2014/06/06 15:11:49 - [] D -- C:\Program Files (x86)\Common Files\Pinnacle O43 - CFD: 2011/09/30 16:21:01 - [] D -- C:\Program Files (x86)\Common Files\Real O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2014/07/19 03:34:55 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2013/01/29 14:03:47 - [] D -- C:\Program Files (x86)\Common Files\SourceTec O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2013/12/22 14:59:52 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2014/06/22 13:38:49 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 2011/09/30 16:20:52 - [] D -- C:\Program Files (x86)\Common Files\xing shared O43 - CFD: 2015/01/18 03:23:13 - [] D -- C:\Program Files (x86)\Common Files\Yahoo! O43 - CFD: 2012/09/06 19:55:26 - [0] SHD -- C:\Users\hp\AppData\Roaming\.# O43 - CFD: 2014/12/02 18:22:40 - [] D -- C:\Users\hp\AppData\Roaming\Adobe O43 - CFD: 2013/03/24 01:24:51 - [0] D -- C:\Users\hp\AppData\Roaming\Agile Web Solutions O43 - CFD: 2012/08/31 00:39:59 - [] D -- C:\Users\hp\AppData\Roaming\Airport Control Simulator O43 - CFD: 2015/06/10 17:42:30 - [] D -- C:\Users\hp\AppData\Roaming\Apple Computer O43 - CFD: 2013/11/06 13:58:55 - [] D -- C:\Users\hp\AppData\Roaming\ArmA II Launcher O43 - CFD: 2011/09/29 08:31:29 - [] D -- C:\Users\hp\AppData\Roaming\ATI O43 - CFD: 2015/07/02 16:53:22 - [] D -- C:\Users\hp\AppData\Roaming\AVAST Software O43 - CFD: 2013/11/05 03:08:24 - [] D -- C:\Users\hp\AppData\Roaming\AVS4YOU O43 - CFD: 2012/08/23 14:15:45 - [] D -- C:\Users\hp\AppData\Roaming\Awem O43 - CFD: 2011/10/01 13:28:27 - [] D -- C:\Users\hp\AppData\Roaming\Babylon =>PUP.Optional.Babylon O43 - CFD: 2015/05/21 13:25:47 - [] D -- C:\Users\hp\AppData\Roaming\Baidu O43 - CFD: 2013/11/10 05:03:11 - [] D -- C:\Users\hp\AppData\Roaming\CheckPoint O43 - CFD: 2013/12/02 02:23:12 - [] D -- C:\Users\hp\AppData\Roaming\Complete Website Downloader O43 - CFD: 2014/03/07 01:20:08 - [] D -- C:\Users\hp\AppData\Roaming\concept design O43 - CFD: 2011/11/06 22:45:24 - [] D -- C:\Users\hp\AppData\Roaming\CyberLink O43 - CFD: 2012/03/28 16:54:23 - [] D -- C:\Users\hp\AppData\Roaming\Dev-Cpp O43 - CFD: 2015/08/26 20:31:15 - [] D -- C:\Users\hp\AppData\Roaming\DMCache O43 - CFD: 2013/06/10 17:51:14 - [] D -- C:\Users\hp\AppData\Roaming\Doublefine O43 - CFD: 2015/06/01 00:50:49 - [] D -- C:\Users\hp\AppData\Roaming\Dropbox O43 - CFD: 2015/08/23 14:48:28 - [] D -- C:\Users\hp\AppData\Roaming\dvdcss O43 - CFD: 2014/02/24 23:41:05 - [] D -- C:\Users\hp\AppData\Roaming\DVDVideoSoft O43 - CFD: 2013/03/24 01:37:05 - [] D -- C:\Users\hp\AppData\Roaming\EurekaLog O43 - CFD: 2011/12/04 17:08:27 - [] D -- C:\Users\hp\AppData\Roaming\FastStone O43 - CFD: 2014/08/09 04:27:19 - [] D -- C:\Users\hp\AppData\Roaming\FileZilla O43 - CFD: 2012/03/01 23:00:41 - [] D -- C:\Users\hp\AppData\Roaming\Foxit O43 - CFD: 2014/12/13 00:06:13 - [] D -- C:\Users\hp\AppData\Roaming\Foxit Software O43 - CFD: 2013/08/05 02:09:25 - [] D -- C:\Users\hp\AppData\Roaming\FreeArc O43 - CFD: 2014/07/29 15:53:26 - [] D -- C:\Users\hp\AppData\Roaming\Gmail Notifier Plus O43 - CFD: 2012/08/08 05:18:50 - [] D -- C:\Users\hp\AppData\Roaming\Groove Games O43 - CFD: 2011/09/29 08:14:31 - [] D -- C:\Users\hp\AppData\Roaming\Identities O43 - CFD: 2015/08/10 21:09:37 - [] D -- C:\Users\hp\AppData\Roaming\IDM O43 - CFD: 2011/09/29 08:18:49 - [] D -- C:\Users\hp\AppData\Roaming\InstallShield O43 - CFD: 2014/06/20 19:32:48 - [] D -- C:\Users\hp\AppData\Roaming\Intelli-studio O43 - CFD: 2014/04/03 12:56:58 - [] D -- C:\Users\hp\AppData\Roaming\InternetEverywhere O43 - CFD: 2015/06/10 17:42:25 - [] D -- C:\Users\hp\AppData\Roaming\IObit O43 - CFD: 2013/06/12 20:13:54 - [] D -- C:\Users\hp\AppData\Roaming\isetbz O43 - CFD: 2013/11/05 15:58:58 - [] D -- C:\Users\hp\AppData\Roaming\iSpy O43 - CFD: 2015/08/26 18:10:18 - [] D -- C:\Users\hp\AppData\Roaming\istartsurf =>PUP.Optional.IsStart O43 - CFD: 2013/12/22 02:21:06 - [] D -- C:\Users\hp\AppData\Roaming\JavaFX Scene Builder O43 - CFD: 2012/06/27 15:35:13 - [] D -- C:\Users\hp\AppData\Roaming\KC Softwares O43 - CFD: 2013/05/05 21:00:39 - [] D -- C:\Users\hp\AppData\Roaming\Macromedia O43 - CFD: 2014/06/03 14:10:38 - [] D -- C:\Users\hp\AppData\Roaming\Malwarebytes O43 - CFD: 2011/11/06 22:46:16 - [0] D -- C:\Users\hp\AppData\Roaming\ManyCam O43 - CFD: 2014/09/15 16:47:07 - [] D -- C:\Users\hp\AppData\Roaming\Medal of Honor Warfighter O43 - CFD: 2009/07/14 16:35:02 - [0] D -- C:\Users\hp\AppData\Roaming\Media Center Programs O43 - CFD: 2014/11/07 03:42:53 - [] D -- C:\Users\hp\AppData\Roaming\Media Player Classic O43 - CFD: 2012/11/07 13:59:46 - [0] D -- C:\Users\hp\AppData\Roaming\MegaCloud O43 - CFD: 2012/11/06 21:51:15 - [0] D -- C:\Users\hp\AppData\Roaming\MegaCloudBackup O43 - CFD: 2015/01/18 03:36:59 - [] SD -- C:\Users\hp\AppData\Roaming\Microsoft O43 - CFD: 2013/12/03 21:52:07 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft Corporation O43 - CFD: 2015/04/20 22:06:41 - [] D -- C:\Users\hp\AppData\Roaming\Mozilla O43 - CFD: 2014/02/11 13:54:41 - [] D -- C:\Users\hp\AppData\Roaming\MySQL O43 - CFD: 2011/10/01 22:31:08 - [] D -- C:\Users\hp\AppData\Roaming\Nero O43 - CFD: 2014/01/04 15:47:55 - [] D -- C:\Users\hp\AppData\Roaming\NetBeans O43 - CFD: 2015/08/26 18:04:06 - [] D -- C:\Users\hp\AppData\Roaming\NetGuard O43 - CFD: 2012/02/24 20:19:15 - [] D -- C:\Users\hp\AppData\Roaming\Nokia O43 - CFD: 2013/01/13 22:45:20 - [] D -- C:\Users\hp\AppData\Roaming\Notepad++ O43 - CFD: 2014/03/07 01:18:07 - [] D -- C:\Users\hp\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy O43 - CFD: 2014/03/24 11:44:24 - [] D -- C:\Users\hp\AppData\Roaming\openElement O43 - CFD: 2013/01/29 19:41:54 - [0] D -- C:\Users\hp\AppData\Roaming\Opera O43 - CFD: 2014/05/14 20:22:15 - [0] D -- C:\Users\hp\AppData\Roaming\Opera Software O43 - CFD: 2012/02/26 20:32:26 - [] D -- C:\Users\hp\AppData\Roaming\PC Suite O43 - CFD: 2013/10/25 15:38:07 - [] D -- C:\Users\hp\AppData\Roaming\PhotoScape O43 - CFD: 2013/09/10 22:13:41 - [] D -- C:\Users\hp\AppData\Roaming\PixelPlanet O43 - CFD: 2014/09/16 05:21:03 - [] D -- C:\Users\hp\AppData\Roaming\PotPlayerMini64 O43 - CFD: 2015/06/11 05:52:51 - [] D -- C:\Users\hp\AppData\Roaming\ProductData O43 - CFD: 2013/01/13 22:16:23 - [] D -- C:\Users\hp\AppData\Roaming\PSpad O43 - CFD: 2012/08/13 05:29:48 - [] D -- C:\Users\hp\AppData\Roaming\Real O43 - CFD: 2015/06/24 16:09:07 - [] D -- C:\Users\hp\AppData\Roaming\Rovio O43 - CFD: 2011/12/14 19:28:20 - [0] D -- C:\Users\hp\AppData\Roaming\Samsung O43 - CFD: 2014/04/22 20:48:38 - [] RHD -- C:\Users\hp\AppData\Roaming\SecuROM O43 - CFD: 2015/08/04 22:23:00 - [] D -- C:\Users\hp\AppData\Roaming\Skype O43 - CFD: 2012/11/26 14:52:15 - [] D -- C:\Users\hp\AppData\Roaming\Softplicity O43 - CFD: 2013/11/06 15:21:03 - [] D -- C:\Users\hp\AppData\Roaming\Spirited Machine O43 - CFD: 2015/08/26 21:45:32 - [] D -- C:\Users\hp\AppData\Roaming\SPlayer O43 - CFD: 2014/10/21 14:05:55 - [] D -- C:\Users\hp\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 2014/01/08 14:15:11 - [] D -- C:\Users\hp\AppData\Roaming\Sun O43 - CFD: 2014/09/11 21:13:38 - [] D -- C:\Users\hp\AppData\Roaming\TeamViewer O43 - CFD: 2013/11/07 20:14:15 - [] D -- C:\Users\hp\AppData\Roaming\Temp O43 - CFD: 2015/04/30 22:15:53 - [] D -- C:\Users\hp\AppData\Roaming\TeraCopy O43 - CFD: 2014/01/30 11:44:51 - [] D -- C:\Users\hp\AppData\Roaming\Thinstall O43 - CFD: 2013/01/12 13:00:27 - [] D -- C:\Users\hp\AppData\Roaming\twd O43 - CFD: 2015/08/26 22:03:24 - [0] D -- C:\Users\hp\AppData\Roaming\uTorrent O43 - CFD: 2015/08/25 00:22:54 - [] D -- C:\Users\hp\AppData\Roaming\vlc O43 - CFD: 2012/11/24 18:43:35 - [] D -- C:\Users\hp\AppData\Roaming\VMware O43 - CFD: 2011/12/10 22:02:13 - [] D -- C:\Users\hp\AppData\Roaming\WebcamMax O43 - CFD: 2012/08/07 17:21:26 - [] D -- C:\Users\hp\AppData\Roaming\webtogo O43 - CFD: 2011/09/30 16:23:07 - [] D -- C:\Users\hp\AppData\Roaming\WinRAR O43 - CFD: 2014/09/11 17:29:32 - [] D -- C:\Users\hp\AppData\Roaming\Wise Disk Cleaner O43 - CFD: 2015/08/26 22:05:50 - [] D -- C:\Users\hp\AppData\Roaming\ZHP O43 - CFD: 2014/10/02 03:21:25 - [] D -- C:\Users\hp\AppData\Local\2K Games O43 - CFD: 2014/01/12 13:38:32 - [] D -- C:\Users\hp\AppData\Local\Activision O43 - CFD: 2015/08/26 02:00:23 - [] D -- C:\Users\hp\AppData\Local\Adobe O43 - CFD: 2014/09/20 15:43:30 - [] D -- C:\Users\hp\AppData\Local\Apache O43 - CFD: 2011/10/05 00:34:02 - [] D -- C:\Users\hp\AppData\Local\APN O43 - CFD: 2013/10/10 15:17:38 - [] D -- C:\Users\hp\AppData\Local\Apple O43 - CFD: 2013/10/10 15:20:40 - [] D -- C:\Users\hp\AppData\Local\Apple Computer O43 - CFD: 2011/09/29 08:14:06 - [0] SHD -- C:\Users\hp\AppData\Local\Application Data O43 - CFD: 2012/05/06 19:01:08 - [] D -- C:\Users\hp\AppData\Local\Apps O43 - CFD: 2013/11/10 00:24:11 - [] D -- C:\Users\hp\AppData\Local\ArmA 2 OA O43 - CFD: 2015/08/24 13:51:33 - [] D -- C:\Users\hp\AppData\Local\ArmA 2 REINFORCEMENTS O43 - CFD: 2014/10/19 22:48:57 - [] D -- C:\Users\hp\AppData\Local\Arma 3 O43 - CFD: 2011/09/29 08:31:29 - [] D -- C:\Users\hp\AppData\Local\ATI O43 - CFD: 2013/05/05 21:38:51 - [] D -- C:\Users\hp\AppData\Local\Axialis O43 - CFD: 2013/11/03 04:26:41 - [] D -- C:\Users\hp\AppData\Local\bitComposer O43 - CFD: 2012/01/14 01:43:26 - [] D -- C:\Users\hp\AppData\Local\Chromium O43 - CFD: 2015/08/26 21:55:50 - [] D -- C:\Users\hp\AppData\Local\CrashDumps O43 - CFD: 2015/01/10 19:34:17 - [] D -- C:\Users\hp\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 2011/11/06 22:45:17 - [] D -- C:\Users\hp\AppData\Local\CyberLink O43 - CFD: 2014/01/02 20:11:21 - [0] D -- C:\Users\hp\AppData\Local\Deployment O43 - CFD: 2013/10/24 19:24:26 - [] D -- C:\Users\hp\AppData\Local\Diagnostics O43 - CFD: 2015/08/05 23:43:11 - [] D -- C:\Users\hp\AppData\Local\Download Balance O43 - CFD: 2015/02/28 00:36:49 - [] D -- C:\Users\hp\AppData\Local\Downloaded Installations O43 - CFD: 2014/01/09 01:50:49 - [] D -- C:\Users\hp\AppData\Local\Eclipse O43 - CFD: 2014/03/24 11:42:45 - [] D -- C:\Users\hp\AppData\Local\Element Technologie O43 - CFD: 2011/10/02 00:00:31 - [] D -- C:\Users\hp\AppData\Local\ElevatedDiagnostics O43 - CFD: 2011/10/22 21:41:52 - [] D -- C:\Users\hp\AppData\Local\Facebook O43 - CFD: 2012/07/13 01:59:45 - [] D -- C:\Users\hp\AppData\Local\FANiSO O43 - CFD: 2015/01/18 00:02:30 - [] D -- C:\Users\hp\AppData\Local\Foxit Reader O43 - CFD: 2014/03/07 01:26:28 - [] D -- C:\Users\hp\AppData\Local\Freemake Music Box O43 - CFD: 2015/07/02 23:37:30 - [] D -- C:\Users\hp\AppData\Local\Google O43 - CFD: 2011/09/29 08:14:06 - [0] SHD -- C:\Users\hp\AppData\Local\Historique O43 - CFD: 2015/08/04 23:45:08 - [] D -- C:\Users\hp\AppData\Local\Image Beach O43 - CFD: 2013/04/11 20:43:16 - [] D -- C:\Users\hp\AppData\Local\Incomedia O43 - CFD: 2015/08/26 18:10:51 - [] D -- C:\Users\hp\AppData\Local\Installer =>PUP.Optional.InstallPedia O43 - CFD: 2013/06/12 20:13:54 - [] D -- C:\Users\hp\AppData\Local\isetbz O43 - CFD: 2013/03/31 00:18:57 - [] D -- C:\Users\hp\AppData\Local\Macromedia O43 - CFD: 2011/11/06 22:46:33 - [] D -- C:\Users\hp\AppData\Local\MagicCamera O43 - CFD: 2014/12/07 03:19:33 - [] D -- C:\Users\hp\AppData\Local\Microsoft O43 - CFD: 2012/09/13 14:19:22 - [] D -- C:\Users\hp\AppData\Local\Microsoft Games O43 - CFD: 2014/06/21 21:24:33 - [] D -- C:\Users\hp\AppData\Local\Microsoft Help O43 - CFD: 2012/03/08 21:32:46 - [] D -- C:\Users\hp\AppData\Local\Microsoft_Corporation O43 - CFD: 2014/08/09 04:26:52 - [0] DC -- C:\Users\hp\AppData\Local\MigWiz O43 - CFD: 2015/05/20 22:38:45 - [] D -- C:\Users\hp\AppData\Local\MiniService O43 - CFD: 2013/10/14 01:27:21 - [] D -- C:\Users\hp\AppData\Local\Mozilla O43 - CFD: 2014/04/22 20:56:24 - [] D -- C:\Users\hp\AppData\Local\My Games O43 - CFD: 2013/12/09 18:26:33 - [] D -- C:\Users\hp\AppData\Local\NetBeans O43 - CFD: 2013/01/29 19:41:55 - [0] D -- C:\Users\hp\AppData\Local\Opera O43 - CFD: 2014/05/14 20:22:15 - [0] D -- C:\Users\hp\AppData\Local\Opera Software O43 - CFD: 2011/12/04 17:10:55 - [0] D -- C:\Users\hp\AppData\Local\PackageAware =>PUP.Optional.BearShare O43 - CFD: 2013/11/10 04:39:12 - [] D -- C:\Users\hp\AppData\Local\PassMark O43 - CFD: 2014/06/06 15:14:04 - [] D -- C:\Users\hp\AppData\Local\Pinnacle O43 - CFD: 2014/09/29 16:26:24 - [] D -- C:\Users\hp\AppData\Local\PluginForChrome O43 - CFD: 2013/01/17 11:37:46 - [] D -- C:\Users\hp\AppData\Local\Programs O43 - CFD: 2014/12/03 23:21:35 - [] D -- C:\Users\hp\AppData\Local\PunkBuster O43 - CFD: 2014/03/08 18:02:01 - [] D -- C:\Users\hp\AppData\Local\Quadriga Games O43 - CFD: 2014/01/18 02:36:43 - [] D -- C:\Users\hp\AppData\Local\Rockstar Games O43 - CFD: 2014/10/05 01:33:20 - [] D -- C:\Users\hp\AppData\Local\SKIDROW O43 - CFD: 2014/07/19 03:35:47 - [] D -- C:\Users\hp\AppData\Local\Skype O43 - CFD: 2013/01/29 13:49:08 - [] D -- C:\Users\hp\AppData\Local\Sothink O43 - CFD: 2015/05/20 22:40:40 - [] D -- C:\Users\hp\AppData\Local\Spark O43 - CFD: 2013/11/06 15:27:17 - [] D -- C:\Users\hp\AppData\Local\Spirited_Machine O43 - CFD: 2013/03/18 20:52:56 - [] D -- C:\Users\hp\AppData\Local\storage O43 - CFD: 2015/08/26 22:06:35 - [] D -- C:\Users\hp\AppData\Local\Temp O43 - CFD: 2011/09/29 08:14:06 - [0] SHD -- C:\Users\hp\AppData\Local\Temporary Internet Files O43 - CFD: 2014/01/30 11:44:51 - [] D -- C:\Users\hp\AppData\Local\Thinstall O43 - CFD: 2013/02/09 03:03:48 - [] D -- C:\Users\hp\AppData\Local\VirtualStore O43 - CFD: 2014/08/05 14:04:37 - [] D -- C:\Users\hp\AppData\Local\WDSetup O43 - CFD: 2014/08/17 04:14:19 - [] D -- C:\Users\hp\AppData\Local\William_Hart O43 - CFD: 2014/04/26 01:01:08 - [0] D -- C:\Users\hp\AppData\Local\WMTools Downloaded Files O43 - CFD: 2014/09/17 02:22:57 - [] D -- C:\Users\hp\AppData\Local\World in Conflict O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\3D Driving-School O43 - CFD: 2014/08/06 04:27:16 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2014/08/06 04:27:16 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Arafasoft O43 - CFD: 2014/09/11 18:00:58 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ArmA II Launcher O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo O43 - CFD: 2015/07/02 16:46:38 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\avast! Free Antivirus O43 - CFD: 2014/09/11 18:00:58 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Axialis Software O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black_Box O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Camera Mouse O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center O43 - CFD: 2011/09/30 21:04:29 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cheatbook Database2010 O43 - CFD: 2014/09/11 18:00:58 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CustomMapStrikeatAbuDhabi O43 - CFD: 2014/08/06 04:27:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink YouCam O43 - CFD: 2015/06/01 00:50:14 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 2012/07/17 03:19:57 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EA GAMES O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EasyPHP 12.1 O43 - CFD: 2012/05/18 17:22:37 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eidos O43 - CFD: 2013/06/10 16:25:55 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eidos Interactive O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FastStone Capture O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Folder Size O43 - CFD: 2011/09/30 16:19:25 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Doc Converter O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Stuff O43 - CFD: 2014/08/06 04:27:15 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeArc O43 - CFD: 2015/04/18 21:39:09 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gest-Stock- Magasin O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Earth O43 - CFD: 2014/08/06 04:27:15 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2014/04/08 16:48:11 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Everywhere O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2014/08/06 04:27:08 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java Code Export O43 - CFD: 2014/09/11 18:00:58 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java Development Kit O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Java(TM) ME Platform SDK 3.2 O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JavaFX Scene Builder O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KAPITALSIN O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Launch4j O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LEA O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Les Indispensables Éducation O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Macromedia O43 - CFD: 2014/08/06 04:27:16 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/09/11 18:00:58 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Micro Application O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Etudes O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005 O43 - CFD: 2014/08/06 04:27:09 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2008 O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010 Express O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Windows SDK v6.0A O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MrBurns[Ger] Maps O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MySQL O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetBeans O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\openElement 1.44 R5 O43 - CFD: 2014/01/18 03:23:40 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerISO O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PSPad editor O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\R.G. Catalyst O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Real O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RY's GAMES O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SharePoint O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SPlayer O43 - CFD: 2014/12/10 19:18:15 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/04/29 13:44:12 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sybase O43 - CFD: 2009/07/14 16:35:02 - [0] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total PDF Converter O43 - CFD: 2014/08/06 04:27:10 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/02/05 17:05:38 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WebcamMax O43 - CFD: 2014/08/06 04:27:11 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinHTTrack O43 - CFD: 2014/08/06 04:27:16 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (3) - 13s O45 - LFCP:[MD5.20248BF598B0388E2BA753A057FA8D11] 2015/08/26 18:10:28 A -- C:\Windows\Prefetch\MINILITE_V6.6.2.2771.EXE-7505B5DC.pf =>PUP.Optional.AgentODR O45 - LFCP:[MD5.4F665898853DD4369017883C064B763F] 2015/08/26 18:03:55 A -- C:\Windows\Prefetch\SMT_ISTARTSURF.EXE-FCA23EC0.pf =>PUP.Optional.IsStart O45 - LFCP:[MD5.617A10A5B3BF769262EAF2A74CFC7F08] 2015/08/26 18:10:26 A -- C:\Windows\Prefetch\WPM_V20.0.0.2295.EXE-7D4523F2.pf =>PUP.Optional.WpManager ---\\ Enumération des clés StartupReg (7) - 1s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O53 - SMSR:HKLM\...\startupreg\AdobeCS6ServiceManager [Key] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] . (...) -- C:\Program Files\CCleaner\CCleaner64.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Facebook Update [Key] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\hp\AppData\Local\Facebook\Update\FacebookUpdate.exe O53 - SMSR:HKLM\...\startupreg\Java(TM) ME Platform SDK 3.2 [Key] . (...) -- C:\Java_ME_platform_SDK_3.2\bin\device-manager.exe O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O53 - SMSR:HKLM\...\startupreg\WebcamMaxAutoRun [Key] . (...) -- C:\Program Files (x86)\WebcamMax\wcmmon.exe (.not file.) ---\\ Liste des pilotes du système (73) - 8s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] © O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] © O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [106576] © O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] © O58 - SDL:2009/07/14 02:52:21 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [28752] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] © O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] © O58 - SDL:2015/07/02 16:50:27 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [29168] O58 - SDL:2015/07/02 16:50:27 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [89944] © O58 - SDL:2015/07/02 16:50:26 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] © O58 - SDL:2015/07/02 16:50:27 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [65736] O58 - SDL:2015/07/02 16:50:10 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1047320] © O58 - SDL:2015/07/02 19:08:08 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [442264] © O58 - SDL:2015/07/02 16:50:27 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [137288] © O58 - SDL:2015/07/02 16:50:27 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [272248] O58 - SDL:2011/07/28 23:23:16 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [9980416] © O58 - SDL:2011/07/28 21:54:10 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [309248] © O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2011/09/29 08:18:47 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL664.SYS [4171328] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmbox64.sys [27136] © O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Nokia USB Phone Bus Driver.) -- C:\Windows\System32\drivers\ccdcmbx64.sys [19968] © O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] © O58 - SDL:2015/02/18 01:27:59 A . (.Connectify - NDIS filter driver.) -- C:\Windows\System32\drivers\cnnctfy2.sys [31344] O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] © O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2009/07/14 02:47:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [77888] © O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410688] © O58 - SDL:2013/11/28 01:24:18 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [175480] © O58 - SDL:2011/04/10 10:51:08 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [12223936] © O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] © O58 - SDL:2010/10/15 00:28:18 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [317440] © O58 - SDL:2014/12/29 03:06:35 A . (.Kingsoft Corporation - Kingsoft KSAPI Module.) -- C:\Windows\System32\drivers\ksapi.sys [81768] O58 - SDL:2014/12/29 03:06:36 A . (.Kingsoft Corporation - Kingsoft KSAPI Module.) -- C:\Windows\System32\drivers\ksapi64.sys [56680] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] © O58 - SDL:2008/03/13 08:46:00 A . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture D.) -- C:\Windows\System32\drivers\ManyCam_x64.sys [27136] O58 - SDL:2005/09/23 22:18:34 A . (.Pinnacle Systems GmbH - Pinnacle Marvin Discrete Bus Enumerator.) -- C:\Windows\System32\drivers\MarvinBus64.sys [261120] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] © O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] © O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] © O58 - SDL:2009/07/14 02:48:27 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [149056] © O58 - SDL:2009/07/14 02:45:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [167488] © O58 - SDL:2008/08/28 12:44:42 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfdx64.sys [25600] © O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] © O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] © O58 - SDL:2011/06/10 06:34:52 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [539240] © O58 - SDL:2011/09/19 15:32:46 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [338536] © O58 - SDL:2010/04/12 09:55:00 A . (.PowerISO Computing, Inc. - PowerISO Virtual Drive.) -- C:\Windows\System32\drivers\scdemu.sys [91568] O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] © O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] © O58 - SDL:2014/11/14 07:27:43 A . (.Ray Hinchliffe - System Information Viewer X64 Driver.) -- C:\Windows\System32\drivers\SIVX64.sys [157432] O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] © O58 - SDL:2014/12/01 10:18:40 A . (.Nanjing Tongxiang Network Technology Co.,LTD - TX WiFi NAT Driver.) -- C:\Windows\System32\drivers\txwifinat64.sys [35248] O58 - SDL:2012/12/13 13:50:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerfltjx64.sys [9216] © O58 - SDL:2012/11/16 18:19:14 A . (.Nokia - Filter Driver for Nokia USB Phone Bus Drive.) -- C:\Windows\System32\drivers\usbser_lowerfltx64.sys [9216] © O58 - SDL:2011/02/03 15:31:44 A . (.e2eSoft - VCam WDM Driver.) -- C:\Windows\System32\drivers\VCam_WDM.sys [106424] O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] © O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] © O58 - SDL:2011/06/23 07:43:04 A . (.Windows (R) Win 7 DDK provider - WebcamMax Capture.) -- C:\Windows\System32\drivers\wcmvcam64.sys [1071032] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 106s O61 - LFC: 2015/08/26 17:14:46 AT . (.CrowdStrike, Inc..) -- C:\Users\hp\Desktop\CrowdInspect\crowdinspect64.exe [252480] O61 - LFC: 2015/08/24 07:51:46 A . (.TODO: .) -- C:\Users\hp\AppData\Roaming\istartsurf\UninstallManager.exe [374784] =>PUP.Optional.IsStart O61 - LFC: 2015/08/26 18:10:29 A . (.Copyright (C) 2014.) -- C:\Users\hp\AppData\Local\Installer\Install_26110\DCytaiesmt_smtyc_setup.exe [1222640] O61 - LFC: 2015/08/26 18:10:29 A . (.Copyright (C) 2014.) -- C:\Users\hp\AppData\Local\Installer\Install_1226\DCytaiesmt_smtyc_setup.exe [1222640] O61 - LFC: 2015/08/25 17:36:47 A . (..) -- C:\Users\hp\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] O61 - LFC: 2015/08/26 18:24:09 A . (..) -- C:\Users\hp\AppData\Local\ATI\ACE\Manifest.Bin [29689] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe ---\\ Menu de démarrage Internet (22) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe http://www.istartsurf.com/ =>PUP.Optional.IsStart O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.istartsurf.com/ © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\SlimBrowser\sbframe.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.istartsurf.com/ © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Internet Explorer\iexplore.ex http://www.istartsurf.com/ =>PUP.Optional.IsStart O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Opera\Opera.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\SlimBrowser\sbframe.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Copyright (C) 2011 - spark.) -- C:\Program Files (x86)\baidu\Baidu Browser\spark.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Opera\Opera.exe (.not file.) ---\\ Recherche d'infection sur les navigateurs (31) - 16s O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.newtab.url", "http://www.istartsurf.com/newtab/?type=nt&ts=1440608830&z=9f9617791469fa5fc4383bbg5zczee8qce0bdm2[...] =>PUP.Optional.IsStart O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.search.defaultenginename", "istartsurf"); =>PUP.Optional.IsStart O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.search.selectedEngine", "istartsurf"); =>PUP.Optional.IsStart O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("browser.startup.homepage", "http://www.istartsurf.com/?type=hp&ts=1440608830&z=9f9617791469fa5fc4383bbg5zczee8qce0bdm2g[...] =>PUP.Optional.IsStart O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.BabylonToolbar.prtkDS", 0); =>PUP.Optional.Babylon O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.BabylonToolbar.prtkHmpg", 0); =>PUP.Optional.Babylon O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealpl[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri [...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_regBundledWithSoftware.expiration[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.internaldb.monetization_plugin_regBundledWithSoftware.value", "%[...] =>PUP.Optional.Monetization O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.aRNEOMVW50611856ZKVKQ22976610com61908.61908.name", "SavePass 1.1"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.crossrider.bic", "1480c65851292b1979529e1f16369fd9"); =>PUP.Optional.CrossRider O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("extensions.enabledAddons", "deskCutv2%40gmail.com:0.0.10,testpilot%40labs.mozilla.com:1.2.3,mozilla_cc%40internetdownlo[...] =>PUP.Optional.DeskCut O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", ""); =>PUP.Optional.SweetIM O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", ""); =>PUP.Optional.SweetIM O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.browser.startup.homepage", ""); =>PUP.Optional.SweetIM O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.previous.keyword.URL", ""); =>PUP.Optional.SweetIM O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.scripts.1.domain-blacklist", ""); =>PUP.Optional.SweetIM O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_DS", ""); =>PUP.Optional.SweetIM O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.searchguard.UserRejectedGuard_HP", ""); =>PUP.Optional.SweetIM O69 - SBI: prefs.js [hp - wba20m1u.default] user_pref("sweetim.toolbar.searchguard.enable", ""); =>PUP.Optional.SweetIM O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (Search the web (Babylon)) - http://search.babylon.com/ =>PUP.Optional.Babylon O69 - SBI: SearchScopes [HKCU] {1D219222-B7ED-4699-B1AC-7CCCFF5AE37F} - (Search the web (Softonic)) - http://search.softonic.com/ =>PUP.Optional.Softonic O69 - SBI: SearchScopes [HKCU] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (Newwara Customized Web Search) - http://search.conduit.com/ =>PUP.Optional.Conduit O69 - SBI: SearchScopes [HKCU] {BFDF3161-17FD-4113-8CA4-7798DB2A8F09} - (Ask Search) - http://websearch.ask.com/ =>Toolbar.Ask O69 - SBI: SearchScopes [HKCU] {E0306B8F-8727-48A6-BD24-8CBAA42297E3} - (uTorrentControl_v6b Customized Web Search) - http://trovi.com/ ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [776192] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [845824] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [676864] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [343552] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316416] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [706560] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2418176] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [848384] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [369664] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [565760] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [104960] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1114624] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [208384] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] © ---\\ Liste des exceptions du parefeu Windows (132) - 36s O87 - FAEL: "TCP Query User{3FA19574-05E6-484E-BF33-46668502FD5E}E:\battlefield vietnam\bfvietnam.exe" [In-None-P6-TRUE] .(...) -- E:\battlefield vietnam\bfvietnam.exe (.not file.) O87 - FAEL: "UDP Query User{C547552E-3369-4846-8EB3-FDC476665221}E:\battlefield vietnam\bfvietnam.exe" [In-None-P17-TRUE] .(...) -- E:\battlefield vietnam\bfvietnam.exe (.not file.) O87 - FAEL: "TCP Query User{E0DA3856-0276-4D78-9D23-6E7A2AE9B43D}D:\game\battlefield vietnam\bfvietnam.exe" [In-None-P6-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam.exe (.not file.) O87 - FAEL: "UDP Query User{AE49374D-2D99-4594-8D34-F643DB06C902}D:\game\battlefield vietnam\bfvietnam.exe" [In-None-P17-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam.exe (.not file.) O87 - FAEL: "TCP Query User{E7AB3E0D-9E84-48C1-8DA5-99167280FEDC}C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe (.not file.) O87 - FAEL: "UDP Query User{913D7E7C-B1B0-412D-9B07-138169A332C4}C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\activision value\soldier of fortune payback\sof3.exe (.not file.) O87 - FAEL: "TCP Query User{E10C6C45-11EC-485D-B411-F01452D1C1AE}C:\vdp\vdp.exe" [In-None-P6-TRUE] .(...) -- C:\vdp\vdp.exe (.not file.) O87 - FAEL: "UDP Query User{3CC9B5B4-1231-458F-BAC7-889A70019A1D}C:\vdp\vdp.exe" [In-None-P17-TRUE] .(...) -- C:\vdp\vdp.exe (.not file.) O87 - FAEL: "TCP Query User{6F2C50C0-3800-47F4-BBB9-DC1C5E8DFBAC}D:\game\battlefield vietnam\bfvietnam_w32ded.exe" [In-None-P6-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam_w32ded.exe (.not file.) O87 - FAEL: "UDP Query User{42000A0E-F088-4656-B134-A917A7EA8129}D:\game\battlefield vietnam\bfvietnam_w32ded.exe" [In-None-P17-TRUE] .(...) -- D:\game\battlefield vietnam\bfvietnam_w32ded.exe (.not file.) O87 - FAEL: "TCP Query User{2AEA52F7-1D9E-4D35-9077-72EDCDA0FCF5}C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe (.not file.) O87 - FAEL: "UDP Query User{12CF78E0-D061-4ABB-8DED-5619A31B7346}C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii trial\empires2.exe (.not file.) O87 - FAEL: "TCP Query User{BFF0EAAB-4F64-41A6-A928-E845196CB744}C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe (.not file.) O87 - FAEL: "UDP Query User{C17072A4-7347-4C22-9EB8-13B560A63C26}C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ea games\battlefield 1942 secret weapons of wwii demo\bf1942.exe (.not file.) O87 - FAEL: "TCP Query User{195F17DC-8985-4AA6-9251-F5C4DAE2327A}D:\game\battlefield 2142\2142\bf2142.exe" [In-None-P6-TRUE] .(...) -- D:\game\battlefield 2142\2142\bf2142.exe (.not file.) O87 - FAEL: "UDP Query User{440BB268-799F-47E3-8B75-2552265B6D08}D:\game\battlefield 2142\2142\bf2142.exe" [In-None-P17-TRUE] .(...) -- D:\game\battlefield 2142\2142\bf2142.exe (.not file.) O87 - FAEL: "TCP Query User{2DF94DD0-A10F-4B57-98CA-0CFEBAE73119}D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe" [In-None-P6-TRUE] .(...) -- D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe (.not file.) O87 - FAEL: "UDP Query User{C8E4548F-AD03-49F7-8904-8550A64A13F5}D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe" [In-None-P17-TRUE] .(...) -- D:\game\myegy.com.call.of.duty.2.emmo.fullrip\myegy.com.call.of.duty.2.emmo\codmp.exe (.not file.) O87 - FAEL: "TCP Query User{57AF99E2-D749-4E5A-85E2-5E1E4E3DBB37}C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe (.not file.) O87 - FAEL: "UDP Query User{0A3854DE-1F65-4F9E-A07D-8FA05071D1D9}C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\downloads\compressed\call_of_duty_2_by_special_7\call of duty 2 by special 7\call of duty 2 by soecial 7\codmp.exe (.not file.) O87 - FAEL: "TCP Query User{C7D6C04F-41F1-4C9D-8976-2A43D2CE8158}C:\program files (x86)\arma - cold war assault\coldwarassault.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault.exe (.not file.) O87 - FAEL: "UDP Query User{D3D2F4C6-1AB6-491D-A17D-7C07DDBD2D0D}C:\program files (x86)\arma - cold war assault\coldwarassault.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault.exe (.not file.) O87 - FAEL: "TCP Query User{4F5DAB19-93A9-42F8-AF53-B2C7B1A0E3F6}C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe (.not file.) O87 - FAEL: "UDP Query User{677E8D42-C198-4C3E-85E4-F483F939C062}C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\arma - cold war assault\coldwarassault_server.exe (.not file.) O87 - FAEL: "TCP Query User{6C370242-5659-4443-A67D-0CB5C3183B1A}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (.not file.) O87 - FAEL: "UDP Query User{A61EC470-BC77-473B-B718-444B9187109E}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii\empires2.exe (.not file.) O87 - FAEL: "TCP Query User{F9616ACE-BC53-48F3-A91A-D8A41D78714F}D:\game\cs source\counter strike source 2010\hl2.exe" [In-None-P6-TRUE] .(...) -- D:\game\cs source\counter strike source 2010\hl2.exe (.not file.) O87 - FAEL: "UDP Query User{2D41E8EC-1C31-411B-9C10-FD53BE04A22C}D:\game\cs source\counter strike source 2010\hl2.exe" [In-None-P17-TRUE] .(...) -- D:\game\cs source\counter strike source 2010\hl2.exe (.not file.) O87 - FAEL: "TCP Query User{C2F6BBF3-46D7-405B-A6DF-F8A63AC952A6}C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe (.not file.) O87 - FAEL: "UDP Query User{C1D574D2-2EF3-4637-917E-ACB8A7AA7D06}C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\myegy.com-soldier.of.fortune.2\myegy.com-soldier.of.fortune.2\sof2mp.exe (.not file.) O87 - FAEL: "TCP Query User{01023CEA-966A-4920-BB00-D898B2518467}C:\program files (x86)\real\realplayer\realplay.exe" [In-None-P6-TRUE] .(.RealNetworks, Inc. - RealPlayer.) -- C:\program files (x86)\real\realplayer\realplay.exe O87 - FAEL: "UDP Query User{48393D2A-A5D9-4B31-B621-DDAD4BFD21DA}C:\program files (x86)\real\realplayer\realplay.exe" [In-None-P17-TRUE] .(.RealNetworks, Inc. - RealPlayer.) -- C:\program files (x86)\real\realplayer\realplay.exe O87 - FAEL: "TCP Query User{F0BEB52A-4B6D-49CE-80C7-743DDD7CA691}C:\program files (x86)\postal2stp\system\postal2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\postal2stp\system\postal2.exe (.not file.) O87 - FAEL: "UDP Query User{45AD73B1-ADAE-4CE3-9267-54B0D9A703B4}C:\program files (x86)\postal2stp\system\postal2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\postal2stp\system\postal2.exe (.not file.) O87 - FAEL: "{C5583276-7FCD-4DE0-8CE6-F9C0225419BA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>PUP.Optional.RelevantKnowledge O87 - FAEL: "{DAB087ED-06DE-4DFC-8ECD-740E651D4FD6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>PUP.Optional.RelevantKnowledge O87 - FAEL: "TCP Query User{FE1F0B39-0759-4E7C-B178-7C8CDA98935D}D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe" [In-None-P6-TRUE] .(...) -- D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe (.not file.) O87 - FAEL: "UDP Query User{C428A85F-0496-4439-8625-E93D846E8829}D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe" [In-None-P17-TRUE] .(...) -- D:\game\myegy.com.fa18.operation.desert.storm.by.amrengineer\fa-18 op desert storm flight.exe (.not file.) O87 - FAEL: "TCP Query User{A45B587C-5F4C-42EA-A5DB-513FDD77E5ED}C:\program files\codemasters\operationflashpoint\operationflashpoint.exe" [In-None-P6-TRUE] .(...) -- C:\program files\codemasters\operationflashpoint\operationflashpoint.exe (.not file.) O87 - FAEL: "UDP Query User{B8CE7058-4118-49CE-A825-F8F3EFF5BBD4}C:\program files\codemasters\operationflashpoint\operationflashpoint.exe" [In-None-P17-TRUE] .(...) -- C:\program files\codemasters\operationflashpoint\operationflashpoint.exe (.not file.) O87 - FAEL: "TCP Query User{B1144899-A077-4B5D-B84E-081A4764EA5D}D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe" [In-None-P6-TRUE] .(...) -- D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe (.not file.) O87 - FAEL: "UDP Query User{350B51BE-8939-4AD2-94EE-B6820531AB2C}D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe" [In-None-P17-TRUE] .(...) -- D:\pc gamer\world.war.ii.combat.road.to.berlin\system\berlin.exe (.not file.) O87 - FAEL: "TCP Query User{8020298E-F586-41B1-9C03-FD3CFBF81C2F}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe O87 - FAEL: "UDP Query User{B9494EDD-047E-46B7-9C24-AC83ED684C8F}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe O87 - FAEL: "TCP Query User{EF5B9BE9-E9A1-4D80-8A92-FFDA48B93C98}C:\games\acsw\acsw.exe" [In-None-P6-TRUE] .(...) -- C:\games\acsw\acsw.exe (.not file.) O87 - FAEL: "UDP Query User{24155968-4703-4031-86F6-14C782982FD0}C:\games\acsw\acsw.exe" [In-None-P17-TRUE] .(...) -- C:\games\acsw\acsw.exe (.not file.) O87 - FAEL: "TCP Query User{9F9D967D-553E-48B5-A319-E32FA8A34815}C:\program files (x86)\srware iron\iron.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\srware iron\iron.exe (.not file.) O87 - FAEL: "UDP Query User{9CCBF7BE-4E59-463E-B745-150F1B9115AD}C:\program files (x86)\srware iron\iron.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\srware iron\iron.exe (.not file.) O87 - FAEL: "{3AE92957-B6AA-48D2-9483-5CE7124E7AF9}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\dfx2.exe (.not file.) O87 - FAEL: "{EC4EB9A6-C9E5-4F4D-A3A2-E3023D0F5962}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\dfx2.exe (.not file.) O87 - FAEL: "{93F2D64D-D433-46EE-8378-795DEC98A80C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\UPDATE.EXE (.not file.) O87 - FAEL: "{BCA6F21D-11EE-42EE-95BD-B00EB6FF73DE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\NovaLogic\Delta Force Xtreme 2\UPDATE.EXE (.not file.) O87 - FAEL: "TCP Query User{C91C5036-5F2D-47FC-A0C8-D149B835B6F4}C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe (.not file.) O87 - FAEL: "UDP Query User{6DE8DACB-CA98-4177-AF55-4A4FCF7D8471}C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\25 to life\25 to life\setup\ttl.exe (.not file.) O87 - FAEL: "{B6956DBC-4610-4DD8-A804-D96F0B48F365}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe (.not file.) O87 - FAEL: "{99CE5AB2-4BD3-4DB8-BF20-E82592A96A49}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe (.not file.) O87 - FAEL: "{09133650-AD75-45C3-8E87-4D47E36A828A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Opera\opera.exe (.not file.) O87 - FAEL: "{E72F0087-6D01-4705-9531-5991EB33F0A8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Opera\opera.exe (.not file.) O87 - FAEL: "{701F1ABC-1D42-4571-85A4-A94593DC076E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\ma-config.com\x64\maconfservice.exe (.not file.) O87 - FAEL: "{163F8E42-5E06-42FC-A216-3E4A01716904}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ma-config.com\x64\maconfservice.exe (.not file.) O87 - FAEL: "TCP Query User{BF634750-C520-4782-B1F9-84812331E398}D:\game\setup games\25 to life\25 to life\setup\ttl.exe" [In-None-P6-TRUE] .(...) -- D:\game\setup games\25 to life\25 to life\setup\ttl.exe (.not file.) O87 - FAEL: "UDP Query User{E6D1B861-181D-429F-AF1A-BDEE6C1231DA}D:\game\setup games\25 to life\25 to life\setup\ttl.exe" [In-None-P17-TRUE] .(...) -- D:\game\setup games\25 to life\25 to life\setup\ttl.exe (.not file.) O87 - FAEL: "TCP Query User{78F5F245-E771-420C-9EB1-CDD065252A28}C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe (.not file.) O87 - FAEL: "UDP Query User{587664D8-F429-4650-B3E5-75807C6A934E}C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\konami\pro evolution soccer 2013\pes2013.exe (.not file.) O87 - FAEL: "{AF6F1AAD-5C6A-49DF-AEB5-1A4A50BD795B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (.not file.) O87 - FAEL: "{A14FD2C1-CD35-4100-B5B5-DD39FBFDD291}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (.not file.) O87 - FAEL: "TCP Query User{E2D4B223-EBA2-4CF2-B90B-DE21B7C0FC2B}C:\program files (x86)\hypersonic4\binaries\win32\udk.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\hypersonic4\binaries\win32\udk.exe (.not file.) O87 - FAEL: "UDP Query User{F642669F-34BF-475E-9525-4A0CCBC4AA11}C:\program files (x86)\hypersonic4\binaries\win32\udk.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\hypersonic4\binaries\win32\udk.exe (.not file.) O87 - FAEL: "TCP Query User{7AC92B16-D50F-47D2-8A0D-76066497311F}C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe (.not file.) O87 - FAEL: "UDP Query User{51C56A4F-FAD2-4ED5-B351-D20CE91A4F94}C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\appdata\local\temp\_istmp1.dir\_istmp0.dir\nov1.exe (.not file.) O87 - FAEL: "TCP Query User{F3A91E82-1AA3-4FF1-825E-608ED6525E43}D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe" [In-None-P6-TRUE] .(...) -- D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe O87 - FAEL: "UDP Query User{231C7666-AD2E-46D2-BE3D-C381AA02EDC4}D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe" [In-None-P17-TRUE] .(...) -- D:\game\setup games\cs source\cs source\counter strike source 2010\hl2.exe O87 - FAEL: "{1402BBE5-DB45-44F8-BB94-EECAFD1F1910}" [In-None-P6-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\Program Files (x86)\Bohemia Interactive\ArmA 2 REINFORCEMENTS\arma2RFT.exe O87 - FAEL: "{46560F1B-DF7D-44E0-BE76-5C23D2C028E2}" [In-None-P17-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\Program Files (x86)\Bohemia Interactive\ArmA 2 REINFORCEMENTS\arma2RFT.exe O87 - FAEL: "TCP Query User{4DD26206-C605-4E70-BA56-67D75A63A3C6}C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe (.not file.) O87 - FAEL: "UDP Query User{C0A0671C-EA92-4D7D-813B-F425DAAC35A3}C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\activision\call of duty 2\CoD2MP_s.exe (.not file.) O87 - FAEL: "{C8214B93-9D14-4562-8FF0-397A0B6FBA22}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office15\outlook.exe (.not file.) O87 - FAEL: "{BAD56A07-53ED-44F1-8A77-46D17E84757E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSnano\qemu-system-i386.exe (.not file.) =>HackTool.AutoKMS O87 - FAEL: "{D07729B1-695B-4D31-A628-F11552595EE0}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSnano\qemu-system-i386.exe (.not file.) =>HackTool.AutoKMS O87 - FAEL: "TCP Query User{CFCBCFDD-4ECC-496D-856C-F4E334619C8F}C:\program files (x86)\ispy\ispy\ispy.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ispy\ispy\ispy.exe (.not file.) O87 - FAEL: "UDP Query User{BD24B96B-8512-4B2E-A566-00730C0E64E2}C:\program files (x86)\ispy\ispy\ispy.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ispy\ispy\ispy.exe (.not file.) O87 - FAEL: "TCP Query User{4668AB79-0C6D-4AC3-989D-64FC1D4837BB}C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe (.not file.) O87 - FAEL: "UDP Query User{47511CBF-B48A-428F-9244-7353A480DD1F}C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\arma2launcher101\arma2 launcher.exe (.not file.) O87 - FAEL: "TCP Query User{12E08471-C3C0-4ACD-BD2E-05D8AE511485}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe (.not file.) O87 - FAEL: "UDP Query User{C24EC213-903B-4066-A990-2CBF1693A044}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2 launcher.exe (.not file.) O87 - FAEL: "TCP Query User{F284F1DA-EE02-45AA-8137-7A853E7807C3}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe" [In-None-P6-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe O87 - FAEL: "UDP Query User{1003CE3C-DF37-4D8B-B44C-DC26FC6A4734}C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe" [In-None-P17-TRUE] .(.Bohemia Interactive - ArmA 2 OA.) -- C:\program files (x86)\bohemia interactive\arma 2 reinforcements\arma2oaserver.exe O87 - FAEL: "TCP Query User{DA28948E-F77E-4E09-8EDE-365C8096CD9F}C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe (.not file.) O87 - FAEL: "UDP Query User{7910EEC3-B779-44FF-B84E-E53751C4BF2B}C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\netbeans 7.3\javacard\jcdk3.0.2_connectededition\bin\cjcre.exe (.not file.) O87 - FAEL: "TCP Query User{6A43D87B-403D-4613-A222-D9CF692EC72F}C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe" [In-None-P6-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe O87 - FAEL: "UDP Query User{B1645A7E-5686-4787-AB90-C3913747B27D}C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe" [In-None-P17-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\cldc-hi\bin\runmidlet.exe O87 - FAEL: "TCP Query User{5A6DFDB7-C754-4B94-BFC0-83C8EFE1AB7D}C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe" [In-None-P6-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe O87 - FAEL: "UDP Query User{9EC45922-EF11-4047-A077-2DB70AFC377E}C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe" [In-None-P17-TRUE] .(...) -- C:\java_me_platform_sdk_3.2\runtimes\impng\bin\runmidlet.exe O87 - FAEL: "TCP Query User{6AB59496-CADA-433C-A371-CCE941EF5823}C:\eclipse\eclipse.exe" [In-None-P6-TRUE] .(...) -- C:\eclipse\eclipse.exe (.not file.) O87 - FAEL: "UDP Query User{3F6A84E4-4863-4583-8258-AD59B0F522A1}C:\eclipse\eclipse.exe" [In-None-P17-TRUE] .(...) -- C:\eclipse\eclipse.exe (.not file.) O87 - FAEL: "TCP Query User{499AE615-5412-4C14-9695-2095F29DD080}C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe (.not file.) O87 - FAEL: "UDP Query User{47B19262-FF53-4289-82D1-95DCAB86580B}C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\eclipse-standard-kepler-sr1-win32\eclipse\eclipse.exe (.not file.) O87 - FAEL: "TCP Query User{A029F66A-9921-4E50-A1D6-A00B9E018D5C}C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe (.not file.) O87 - FAEL: "UDP Query User{7AF78072-CAD1-4FE7-B214-0862077F2C1A}C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\Modern\Call of Duty - World at War\CoDWaW.exe (.not file.) O87 - FAEL: "TCP Query User{E697A4C1-B76E-46B3-8140-6F159A0B6439}C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe (.not file.) O87 - FAEL: "UDP Query User{F9051D1B-6FCB-47D0-B3DD-F0C76ED7C215}C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\modern\call of duty - world at war\codwawmp.exe (.not file.) O87 - FAEL: "TCP Query User{D07804F3-D18A-489E-88FA-35F876A9A196}C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe (.not file.) O87 - FAEL: "UDP Query User{1F4D4FCB-E11F-4DEA-9C7C-7ED1B4C26A2D}C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\office\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\startimes.com.office.2013.kmsmicro.activator.v3.10.mr.mohand\qemu\qemu.exe (.not file.) O87 - FAEL: "TCP Query User{D4825827-5392-46EA-9094-BAAA41A85A83}C:\program files (x86)\sierra\swat 4\content\system\swat4.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\sierra\swat 4\content\system\swat4.exe (.not file.) O87 - FAEL: "UDP Query User{14DBB5B2-D6C3-4955-8774-E6553C783F80}C:\program files (x86)\sierra\swat 4\content\system\swat4.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\sierra\swat 4\content\system\swat4.exe (.not file.) O87 - FAEL: "TCP Query User{1CB4C6D3-20D7-4DC7-92AE-C5DC4BAA4A11}C:\program files (x86)\phpdesigner 8\phpdesigner.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\phpdesigner 8\phpdesigner.exe (.not file.) O87 - FAEL: "UDP Query User{A95AF500-92E3-485B-B078-C341A3B6133E}C:\program files (x86)\phpdesigner 8\phpdesigner.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\phpdesigner 8\phpdesigner.exe (.not file.) O87 - FAEL: "TCP Query User{34816B7D-A6AE-4A26-9C4A-9F5D5C641367}C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe (.not file.) O87 - FAEL: "UDP Query User{DE6A9C42-BB43-4A52-A148-936F339DF046}C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\battlefield.1942.pc.game(djdevastate™)_2\battlefield.1942.pc.game(djdevastate™)\bf1942.exe (.not file.) O87 - FAEL: "{5A297B1A-639F-4DC1-9A7C-3B767B4F5980}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\Spark.exe (.not file.) O87 - FAEL: "{A0AD174F-3E47-4CB3-BF46-2DFD558E5C2C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\Spark.exe (.not file.) O87 - FAEL: "{9C7A96A5-BA8A-4FBE-B93B-9BB0B0D57D42}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\bdtray.exe (.not file.) O87 - FAEL: "{16CA8686-CD41-4454-8716-6022DADA0704}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\baidu\Spark26.5.9999.3313\bdtray.exe (.not file.) O87 - FAEL: "TCP Query User{19439055-5AAA-4354-A9E3-04EA09461FD4}C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe (.not file.) O87 - FAEL: "UDP Query User{02D1869E-E64A-47E8-A0A7-CEC7B2AA2D32}C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\bitcomposer games\global ops - commando libya\binaries\globalops.exe (.not file.) O87 - FAEL: "TCP Query User{41614EB6-5F00-4277-A628-D200ABD62551}D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe" [In-None-P6-TRUE] .(...) -- D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe (.not file.) O87 - FAEL: "UDP Query User{5883E46E-FDBC-433D-BFDA-293B62D2558A}D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe" [In-None-P17-TRUE] .(...) -- D:\telechargement torrents\counter strike global offensive [multi][pcdvd][steam unlocked][[ind][www.gamestorrents.com]\ind-csgoff\ind-csgoff\csgo.exe (.not file.) O87 - FAEL: "TCP Query User{F21C3F4E-1A1A-40AD-8148-DE995337F680}D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe" [In-None-P6-TRUE] .(...) -- D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe (.not file.) O87 - FAEL: "UDP Query User{7F73C7B3-47BA-469E-B292-5812B0D421B0}D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe" [In-None-P17-TRUE] .(...) -- D:\downlowd\nfs_mw\need for speed most wanted\need for speed most wanted\speed.exe (.not file.) O87 - FAEL: "TCP Query User{90FFC08B-222C-4D77-ADB1-D9DAD9386C7B}C:\program files (x86)\ea games\command and conquer generals\game.dat" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\ea games\command and conquer generals\game.dat (.not file.) O87 - FAEL: "UDP Query User{D7E1FD62-E57A-4F34-A005-F5EF375AB74C}C:\program files (x86)\ea games\command and conquer generals\game.dat" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\ea games\command and conquer generals\game.dat (.not file.) O87 - FAEL: "{5407D854-62A5-40A1-AF68-827F7349CF86}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{874CC636-A02C-4843-A4B9-F99E622AAB67}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{6CC28C6E-F7AE-4B01-A674-8F061370022A}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{6640F816-A048-430C-9ED6-A8EF118316FE}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "Daum PotPlayer(PotPlayerMini64.exe)" [In-None-P6-TRUE] .(.Daum Communications - PotPlayer.) -- C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe O87 - FAEL: "{0EDD94E0-D5AA-4CEC-8507-3B9FC2154F94}" [In-None-P6-FALSE] .(.Daum Communications - PotPlayer.) -- C:\Program Files\DAUM\PotPlayer\PotPlayerMini64.exe O87 - FAEL: "TCP Query User{9CCC71D4-0C2B-4961-9162-80DD48D044BA}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe (.not file.) O87 - FAEL: "UDP Query User{A3506BC9-3948-4541-9111-95EA09176AC5}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict soviet assault server\wic_ds.exe (.not file.) O87 - FAEL: "TCP Query User{1BD77C88-53F2-4A58-B1D1-E120544F5F5B}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe (.not file.) O87 - FAEL: "UDP Query User{947467D9-2EA6-44C6-BD2C-2F581BAE5988}C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\r.g. games\world in conflict soviet assault\world in conflict\wic.exe (.not file.) O87 - FAEL: "TCP Query User{AA57C8A0-A181-466D-9479-8737AE9AD19B}C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1.exe (.not file.) ---\\ Enumère les codes produits des logiciels (1) - 7s O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- c:\program files (x86)\ask.com\fv_1342.ico =>Toolbar.AsktBar ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (26) - 64s SR - Auto [2014/09/12 10:43:06] [ 64704] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2015/08/13 17:27:14] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2011/07/28 22:35:34] [ 204288] (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe © SR - Auto [2013/09/07 08:13:38] [ 55624] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe © SR - Auto [2015/07/02 16:50:19] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\avast\AvastSvc.exe © SR - Auto [2011/08/30 22:05:32] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SS - Disabled [2014/12/29 03:06:28] [ 315240] Clean Master Core Service (cmcore) . (.Kingsoft Corporation.) - c:\program files (x86)\cmcm\Clean Master\cmcore.exe SR - Auto [2012/07/17 14:55:12] [ 44696] (CS_AutoUpdate) . (.Cucusoft, Inc..) - C:\Program Files\Cucusoft\AutoUpdate\AutoUpdateSrvc.exe SR - Auto [2015/06/02 16:24:26] [ 244392] Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Software Inc..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe SS - Auto [2015/08/08 13:02:28] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/08/08 13:02:28] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SR - Auto [2011/09/19 15:32:46] [ 2375168] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe SS - Demand [2004/10/22 03:24:18] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe © SR - Auto [2015/08/24 07:59:18] [ 132768] IHProtect Service (IHProtect Service) . (.MiniLite system.) - C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR SS - Auto [2015/08/12 15:06:45] [ 2909472] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe © SR - Auto [2013/07/23 04:47:24] [ 239696] Mobile Broadband HL Service (Mobile Broadband HL Service) . (.Copyright (C) 2013.) - C:\ProgramData\MobileBrServ\mbbservice.exe SS - Demand [2014/03/28 23:47:55] [ 119408] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SR - Demand [2010/06/14 15:07:14] [ 615936] ServiceLayer (ServiceLayer) . (.Nokia.) - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe © SS - Auto [2014/04/03 20:21:48] [ 315008] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SR - Auto [2015/06/17 14:57:18] [ 86840] Baidu Spark Service (SparkSvc) . (.Baidu Inc..) - C:\Program Files (x86)\baidu\Baidu Browser\sparkservice.exe SS - Demand [2015/04/03 04:38:25] [ 1370424] Baidu Spark Updater (SparkUpdater) . (.Baidu.com, Inc..) - C:\Program Files (x86)\baidu\SparkUpdate\Sparkupdate.exe SS - Demand [2010/02/19 13:37:14] [ 517096] (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe © SR - Auto [2014/04/25 10:56:12] [ 5024576] TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe © SR - Auto [2015/08/26 18:10:22] [ 707720] WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED.) - C:\ProgramData\JWinManProJ\WinManPro.exe =>PUP.Optional.WpManager SR - Auto [2014/02/10 15:35:20] [ 427264] ZDServ (ZDServ) . (.Copyright (C) 2013.) - C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe ---\\ Recherche de clés de registre Tracing (4) - 8s HKLM\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASAPI32 =>PUP.Optional.RegistryReviver HKLM\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASMANCS =>PUP.Optional.RegistryReviver HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar ---\\ Scan Additionnel (79) - 0s C:\ProgramData\JWinManProJ\WinManPro.exe =>PUP.Optional.WpManager C:\Program Files (x86)\CinemaP-1.9cV16.03\e653cf25-f107-4cbe-b8d1-5dadaea354f2-1-6.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\istartsurf.xml =>PUP.Optional.IsStart C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\wba20m1u.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab C:\Program Files (x86)\FilmFanaticEI\Installr\1.bin\NPpaEISb.dll =>PUP.Optional.MindSpark HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.Optional.IsStart HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AsktBar HKLM\SOFTWARE\Wow6432Node\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\FilmFanaticEI =>PUP.Optional.MindSpark HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart HKLM\SOFTWARE\Wow6432Node\PIP =>Toolbar.Ask HKLM\SOFTWARE\Wow6432Node\SavePass =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\SP Global =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\SProtector =>PUP.Optional.MocaFlix HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.WpManager HKLM\SOFTWARE\Wow6432Node\Trymedia Systems =>PUP.Optional.Trymedia HKCU\SOFTWARE\APN =>Toolbar.Ask HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\Ask.com =>Toolbar.Ask HKCU\SOFTWARE\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV16.03-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\EpicScale =>PUP.Optional.EpicScale HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\IGearSettings =>PUP.Optional.IGearSettings HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\Tbccint =>PUP.Optional.Conduit HKCU\SOFTWARE\Tbccint_HKLM =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\SProtector =>PUP.Optional.MocaFlix HKCU\SOFTWARE\AppDataLow\Software\AskToolbar =>Toolbar.Ask HKCU\SOFTWARE\AppDataLow\Software\Conduit =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\Software\ConduitSearchScopes =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\PriceGong =>PUP.Optional.PriceGong HKCU\SOFTWARE\AppDataLow\Software\SavePass =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\AppDataLow\Software\Tbccint =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow\Software\TbccintSearchScopes =>PUP.Optional.Conduit C:\Program Files (x86)\69dc8177-a574-4dff-8461-b3267b078dcf =>PUP.Optional.CrossRider C:\Program Files (x86)\CinemaP-1.9cV16.03 =>PUP.Optional.CrossRider C:\Program Files (x86)\FilmFanaticEI =>PUP.Optional.MindSpark C:\Program Files (x86)\GUPlayer =>PUP.Optional.GUPlayer C:\Program Files (x86)\MiniLite =>PUP.Optional.AgentODR C:\Program Files (x86)\SavePass =>PUP.Optional.CrossRider C:\Program Files (x86)\Tbccint =>PUP.Optional.Conduit C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\ProgramData\BetterSoft =>PUP.Optional.Offerware C:\ProgramData\EpicScale =>PUP.Optional.EpicScale C:\ProgramData\InstallMate =>PUP.Optional.Tarma C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\ProgramData\Tbccint =>PUP.Optional.Conduit C:\ProgramData\Trymedia =>PUP.Optional.Trymedia C:\Users\hp\AppData\Roaming\Babylon =>PUP.Optional.Babylon C:\Users\hp\AppData\Roaming\istartsurf =>PUP.Optional.IsStart C:\Users\hp\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy C:\Users\hp\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Users\hp\AppData\Local\Installer =>PUP.Optional.InstallPedia C:\Users\hp\AppData\Local\PackageAware =>PUP.Optional.BearShare C:\Windows\Prefetch\MINILITE_V6.6.2.2771.EXE-7505B5DC.pf =>PUP.Optional.AgentODR C:\Windows\Prefetch\SMT_ISTARTSURF.EXE-FCA23EC0.pf =>PUP.Optional.IsStart C:\Windows\Prefetch\WPM_V20.0.0.2295.EXE-7D4523F2.pf =>PUP.Optional.WpManager C:\Users\hp\AppData\Roaming\istartsurf\UninstallManager.exe =>PUP.Optional.IsStart HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF =>Toolbar.AsktBar HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF =>Toolbar.AsktBar HKLM64\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASAPI32 =>PUP.Optional.RegistryReviver HKLM64\SOFTWARE\Microsoft\Tracing\RegistryReviver_RASMANCS =>PUP.Optional.RegistryReviver HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASAPI32 =>Toolbar.AskBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AskPartnerCobrandingTool_RASMANCS =>Toolbar.AskBar ---\\ Récapitulatif des éléments trouvées sur votre station (37) - 0s http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart http://www.nicolascoolman.fr/blog =>PUP.Optional.BDYahoo http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab http://www.nicolascoolman.fr/pup-mindspark/ =>PUP.Optional.MindSpark http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/blog =>PUP.Optional.uTorrentControl http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/blog =>Toolbar.AsktBar http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask http://www.nicolascoolman.fr/pup-advancedsystemprotector/ =>PUP.Optional.AdvancedSystemProtector http://www.nicolascoolman.fr/pup-mocaflix/ =>PUP.Optional.MocaFlix http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/adware-trymedia/ =>PUP.Optional.Trymedia http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/blog =>PUP.Optional.EpicScale http://www.nicolascoolman.fr/blog =>PUP.Optional.IGearSettings http://www.nicolascoolman.fr/adware-pricegong/ =>PUP.Optional.PriceGong http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/blog =>PUP.Optional.GUPlayer http://www.nicolascoolman.fr/pup-offerware/ =>PUP.Optional.Offerware http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma http://www.nicolascoolman.fr/adware-opencandy/ =>PUP.Optional.OpenCandy http://www.nicolascoolman.fr/blog =>.Superfluous.CrashReports http://www.nicolascoolman.fr/adware-installpedia/ =>PUP.Optional.InstallPedia http://www.nicolascoolman.fr/pup-bearshare/ =>PUP.Optional.BearShare http://www.nicolascoolman.fr/blog =>PUP.Optional.Monetization http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut http://www.nicolascoolman.fr/pup-sweetim/ =>PUP.Optional.SweetIM http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic http://www.nicolascoolman.fr/adware-relevantknowledge/ =>PUP.Optional.RelevantKnowledge http://www.nicolascoolman.fr/blog =>PUP.Optional.RegistryReviver http://www.nicolascoolman.fr/blog =>Toolbar.AskBar ~ End of the scan, 42775 items in 479 seconds (1872)(0)()