~ ZHPDiag v2015.8.5.111 Par Nicolas Coolman (2015/08/5) ~ Démarré par jacky (Administrator) (2015/08/06 21:03:21) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Pas de fichier réseau ~ Mode: Scanner ~ Rapport: C:\Users\jacky\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\jacky\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) ~ Windows 7 Professional, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v44.0.2403.125 MSIE: Internet Explorer v11.0.9600.17914 ---\\ Informations sur les produits Windows (4) - 4s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : KO Windows Activation Technologies : OK ---\\ Logiciels de protection (3) - 2s Avast Free Antivirus v10.3.2225 Microsoft Security Client v4.8.0204.0 Microsoft Security Essentials v4.8.204.0 ---\\ Surveillance de Logiciels (1) - 3s Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 15 Model 107 Stepping 2, AuthenticAMD ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2030.008 MB (66% free) ~ System Restore: Activé (Enable) ~ System drive C: has 120 GB free of 152 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: JACKY-PC ~ User Name: jacky ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 120 GB free of 152 GB (System) ~ Drive D: has 0 GB free of 0 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 1s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256] [MD5.63B01F72FD727D5736DBEF54174D8F93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1951232] [MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128] [MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536] [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944] [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584] [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656] [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544] [MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336] [MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544] [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896] [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888] [MD5.5D16C921E3671636C0EBA3BBAAC5FD25] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [123904] [MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904] [MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352] [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] [MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632] [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168] [MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752] [MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632] ---\\ Processus lancés (10) - 2s [MD5.4956380A54B1C9E6BFDF3D80DACB9698] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1328] [MD5.579FD11E112542A0D5D43838CCA08309] - (.DTools LIMITED - DTools.) -- C:\ProgramData\8WinManPro8\ProtectWindowsManager.exe [708264] [PID.1496] [MD5.255E405D801CF01247390F38F92D8042] - (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe [17408] [PID.1856] [MD5.44C4F45CD2D5D1062384451489B9EB06] - (.XTab system - ProtectSvc.exe.) -- C:\Program Files\MiuiTab\ProtectService.exe [125112] [PID.1544] =>PUP.Optional.MiuiTab [MD5.58DEC0CB5A0D1D44A6FAC843903DCCC0] - (.SearchProtect - CmdShell.exe.) -- C:\Program Files\MiuiTab\CmdShell.exe [31928] [PID.888] =>PUP.Optional.MiuiTab [MD5.68DF41DDAB5EE81355F55CB5962A763D] - (.PhraseProfessor - PP Client Service.) -- C:\Program Files\PhraseProfessor_1.10.0.21\Service\ppsvc.exe [300128] [PID.900] =>PUP.Optional.Gen [MD5.972F2F2341E899052C9ECA70766167A9] - (.XTab system - SupHPNot.exe.) -- C:\Program Files\MiuiTab\HPNotify.exe [674488] [PID.132] =>PUP.Optional.MiuiTab [MD5.A4C778C47836C9786C6A648C828DFF2B] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3218624] [PID.2504] [MD5.D6FE9E0F705794A86F87A01B222290EF] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776] [PID.2928] [MD5.3D8B851E7EFCDC130E4B301BDDE10099] - (.PriceMeter - PriceMeterLiveUpdate Update.) -- C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe [150504] [PID.2820] =>PUP.Optional.PriceMeter ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (14) - 1s G2 - GCE: Preference [User Data\Default] [blmchfpimpbbdmgpcieclabeafkljbhm] Groovorio New Tab =>PUP.Optional.Groovorio G2 - GCE: Preference [User Data\Default] [chllelencipbhdcelplgadmefkopmpgd] chllelencipbhdcelplgadmefkopmpgd G2 - GCE: Preference [User Data\Default] [emebnfadbcfbcnebjhlohinanlbkcmhj] emebnfadbcfbcnebjhlohinanlbkcmhj G2 - GCE: Preference [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice G2 - GCE: Preference [User Data\Default] [epnpbkpfpmpbheinimppjadpcbkechhk] epnpbkpfpmpbheinimppjadpcbkechhk G2 - GCE: Preference [User Data\Default] [ffnepgjlfiinpkplhjmehkdhnaaongdk] ffnepgjlfiinpkplhjmehkdhnaaongdk G2 - GCE: Preference [User Data\Default] [gdalhedleemkkdjddjgfjmcnbpejpapp] gdalhedleemkkdjddjgfjmcnbpejpapp G2 - GCE: Preference [User Data\Default] [hniiadklfgdhjcmmkpggffjngihaaoip] Media+PlayerVidEd2.0 G2 - GCE: Preference [User Data\Default] [jffcmkkfbampimhpimhofhhkanhflfce] (Orphean) G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [lfijnebfkjdclmcedinoknekamigckii] lfijnebfkjdclmcedinoknekamigckii G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [onhbegdkgonhlokobjefolhpoidcnida] (Orphean) G2 - GCE: Preference [User Data\Default] [pjldngiecbcfldpghnimmdelafenmbni] pjldngiecbcfldpghnimmdelafenmbni ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (2) - 0s P2 - FPN: [HKLM] [@tools.updatepm.com/PriceMeterLiveUpdate Update;version=3] - (.PriceMeter.) -- C:\Program Files\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter P2 - FPN: [HKLM] [@tools.updatepm.com/PriceMeterLiveUpdate Update;version=9] - (.PriceMeter.) -- C:\Program Files\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://feed.helperbar.com/ =>PUP.Optional.HelperBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://isearch.zoo.com/ =>PUP.Optional.ZooToolbar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://feed.helperbar.com/ =>PUP.Optional.HelperBar R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.mystartsearch.com/ =>PUP.Optional.StartSearch R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://feed.helperbar.com/ =>PUP.Optional.HelperBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://feed.helperbar.com/ =>PUP.Optional.HelperBar R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://feed.helperbar.com/ =>PUP.Optional.HelperBar R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://isearch.zoo.com/ =>PUP.Optional.ZooToolbar R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R3 - URLSearchHook: (no name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} Orphean ---\\ Internet Explorer, Proxy Management (R5) (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s O2 - BHO: GoodTab Class - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} . (.Thinkgood Co. Limited - GoodTab.) -- C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.MiuiTab O2 - BHO: shopperz Helper - {72a94386-d7dd-4032-86b6-e013e104f0ab} (Orphean) =>PUP.Optional.Shopperz O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll ---\\ Internet Explorer Toolbars (O3) (1) - 0s O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du sytème (O4) (31) - 1s O4 - HKLM\..\Run: [fst_fr_185] (Orphean) O4 - HKLM\..\Run: [fst_fr_187] (Orphean) O4 - HKLM\..\Run: [fst_fr_384] (Orphean) O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe O4 - HKLM\..\Run: [YTDownloader] C:\Program Files\YTDownloader\YTDownloader.exe (.not file.) =>PUP.Optional.YTDownloader O4 - HKLM\..\Run: [gmsd_fr_306] (Orphean) O4 - HKLM\..\Run: [mbot_fr_598] (Orphean) O4 - HKLM\..\Run: [gmsd_fr_459] (Orphean) O4 - HKLM\..\Run: [gmsd_fr_005010009] (Orphean) O4 - HKLM\..\Run: [3D BubbleSound] C:\Program Files\BubbleSound\3D BubbleSound.exe (.not file.) =>PUP.Optional.BubbleSound O4 - HKLM\..\Run: [gmsd_fr_005010011] (Orphean) O4 - HKLM\..\Run: [gmsd_fr_005010013] (Orphean) O4 - HKLM\..\Run: [gmsd_fr_005010014] (Orphean) O4 - HKLM\..\Run: [rec_fr_39] (Orphean) O4 - HKLM\..\Run: [gmsd_fr_005010018] (Orphean) O4 - HKLM\..\Run: [rec_fr_40] (Orphean) O4 - HKLM\..\Run: [gmsd_fr_005010029] (Orphean) O4 - HKLM\..\Run: [UnlockerAssistant] . (...) -- C:\Program Files\Unlocker\UnlockerAssistant.exe O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe O4 - HKCU\..\Run: [PriceMeterW] C:\Users\jacky\AppData\Local\PriceMeter\pricemeterw.exe (.not file.) =>PUP.Optional.PriceMeter O4 - HKCU\..\Run: [WindApp] C:\Users\jacky\AppData\Roaming\Store\WindApp\WindApp Update.exe (.not file.) =>PUP.Optional.Nosibay O4 - HKCU\..\Run: [YTDownloader] C:\Program Files\YTDownloader\YTDownloader.exe (.not file.) =>PUP.Optional.YTDownloader O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_5E92C7F6ACCCF16807C24631F2D154C3] C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-3284676161-2801502409-1440924643-1000\..\Run: [PriceMeterW] C:\Users\jacky\AppData\Local\PriceMeter\pricemeterw.exe (.not file.) =>PUP.Optional.PriceMeter O4 - HKUS\S-1-5-21-3284676161-2801502409-1440924643-1000\..\Run: [WindApp] C:\Users\jacky\AppData\Roaming\Store\WindApp\WindApp Update.exe (.not file.) =>PUP.Optional.Nosibay O4 - HKUS\S-1-5-21-3284676161-2801502409-1440924643-1000\..\Run: [YTDownloader] C:\Program Files\YTDownloader\YTDownloader.exe (.not file.) =>PUP.Optional.YTDownloader O4 - HKUS\S-1-5-21-3284676161-2801502409-1440924643-1000\..\Run: [GoogleChromeAutoLaunch_5E92C7F6ACCCF16807C24631F2D154C3] C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse ---\\ Raccourcis Global Startup (O4G) (12) - 2s O4 - GS\Quicklaunch [Administrateur]: Crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\TaskBar [Administrateur]: crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [Administrateur]: crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [Administrateur]: RapidMediaConverterApp.lnk . (...) C:\Program Files\RapidMediaConverter\RapidMediaConverterApp.exe =>PUP.Optional.RapidMediaConverter O4 - GS\Quicklaunch [Invité]: Crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\TaskBar [Invité]: crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [Invité]: crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [Invité]: RapidMediaConverterApp.lnk . (...) C:\Program Files\RapidMediaConverter\RapidMediaConverterApp.exe =>PUP.Optional.RapidMediaConverter O4 - GS\Quicklaunch [jacky]: Crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\TaskBar [jacky]: crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [jacky]: crossbrowse.lnk . (...) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [jacky]: RapidMediaConverterApp.lnk . (...) C:\Program Files\RapidMediaConverter\RapidMediaConverterApp.exe =>PUP.Optional.RapidMediaConverter ---\\ Winsock hijacker (Layered Service Provider) (O10) (5) - 0s O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (...) -- C:\Windows\system32\MyOSProtect.dll (Not File) (Hijacker.Winsock) O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (...) -- C:\Windows\system32\MyOSProtect.dll (Not File) (Hijacker.Winsock) O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (...) -- C:\Windows\system32\MyOSProtect.dll (Not File) (Hijacker.Winsock) O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (...) -- C:\Windows\system32\MyOSProtect.dll (Not File) (Hijacker.Winsock) O10 - WLSP:\Catalog_Entries\000000000015\Winsock LSP File . (...) -- C:\Windows\system32\MyOSProtect.dll (Not File) (Hijacker.Winsock) ---\\ Modification Domaine/Adresses DNS (O17) (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.150,82.163.142.152 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 82.163.143.150,82.163.142.152 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 82.163.143.150,82.163.142.152 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s O20 - AppInit_DLLs: . (...) - c:\progra~1\searchprotect\searchprotect\bin\vc32loader.dll c:\programdata\flashbeat\flashbeat32.dll (.not file.) =>PUP.Optional.SearchProtect ---\\ Liste des services NT non Microsoft et non désactivés (O23) (13) - 7s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (asuservice) . (...) - C:\Program Files\Software Updater\suscan.exe (.not file.) O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe O23 - Service: Condescending Angle (Condescending Angle) . (...) - C:\Program Files\Condescending Angle\Condescending Angle.exe (.not file.) O23 - Service: CoupoonService (CoupoonService) . (...) - C:\Program Files\coupoon\iiwjljrnpc.exe (.not file.) O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR O23 - Service: PP 1.10.0.21 Client Service (ppsvc_1.10.0.21) . (.PhraseProfessor - PP Client Service.) - C:\Program Files\PhraseProfessor_1.10.0.21\Service\ppsvc.exe =>PUP.Optional.Gen O23 - Service: PriceMeterLiveUpdate Service (pricemeterliveUpdate) (pricemeterliveUpdate) . (.PriceMeter - PriceMeterLiveUpdate Update.) - C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter O23 - Service: Protect Monitor (ProtectMonitor) . (...) - C:\monitorsvc.exe =>Trojan.BitCoinMiner O23 - Service: UpdateCheck (UpdateCheck) . (...) - C:\Program Files\Coupoon\UpdateCheck.exe (.not file.) O23 - Service: Web Bar Service (wbsvc) (wbsvc) . (...) - C:\Program Files\WebBar\wbsvc.exe (.not file.) =>PUP.Optional.WebBar O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED - DTools.) - C:\ProgramData\8WinManPro8\ProtectWindowsManager.exe =>PUP.Optional.Fuyu ---\\ Tâches planifiées en automatique (O39) (61) - 5s O39 - APT: Orphean - (...) -- C:\Windows\Tasks\APSnotifierPP1.job [366] =>PUP.Optional.AnyProtect O39 - APT: Orphean - (...) -- C:\Windows\Tasks\APSnotifierPP2.job [364] =>PUP.Optional.AnyProtect O39 - APT: Orphean - (...) -- C:\Windows\Tasks\APSnotifierPP3.job [364] =>PUP.Optional.AnyProtect O39 - APT: Orphean - (...) -- C:\Windows\Tasks\big_phat_sports_helper_service.job [520] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\compare_for_fun_notification_service.job [1332] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\compare_for_fun_updating_service.job [694] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Crossbrowse.job [1044] =>PUP.Optional.CrossBrowse O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1050] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1054] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\HINATFEV1.job [330] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\LZPKWBP.job [1684] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\ParetoLogic Registration3.job [444] =>PUP.Optional.Paretologic O39 - APT: Orphean - (...) -- C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job [470] =>PUP.Optional.Paretologic O39 - APT: Orphean - (...) -- C:\Windows\Tasks\ParetoLogic Update Version3.job [418] =>PUP.Optional.Paretologic O39 - APT: Orphean - (...) -- C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineCore.job [948] =>PUP.Optional.PriceMeter O39 - APT: Orphean - (...) -- C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineUA.job [952] =>PUP.Optional.PriceMeter O39 - APT: Orphean - (...) -- C:\Windows\Tasks\PriceMeterUpdater.job [292] =>PUP.Optional.PriceMeter O39 - APT: Orphean - (...) -- C:\Windows\Tasks\temp_fab8a41b-2553-4ddb-a6e5-c20c78aba99e-1-6.job [3012] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Vosteran_helper.job [302] =>PUP.Optional.Vosteran O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\19175546-7cbf-447a-be6f-2cb033ecd63e-1-7 [5480] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\91dec6dc-092c-4b7b-bc64-7bcfaf2ef470-5 [4452] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\APSnotifierPP1 [2812] =>PUP.Optional.AnyProtect O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\APSnotifierPP2 [2810] =>PUP.Optional.AnyProtect O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\APSnotifierPP3 [2810] =>PUP.Optional.AnyProtect O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\ASP [3290] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\big_phat_sports_helper_service [3476] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\compare_for_fun_notification_service [4354] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\compare_for_fun_updating_service [3718] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3536] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Crossbrowse [4070] =>PUP.Optional.CrossBrowse O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\DoctorPC_Popup [3430] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\DoctorPC_Start [3166] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3798] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4050] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\HINATFEV1 [2852] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\LaunchSignup [4002] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\ParetoLogic Registration3 [3108] =>PUP.Optional.Paretologic O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\ParetoLogic Update Version3 [3232] =>PUP.Optional.Paretologic O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task [2896] =>PUP.Optional.Paretologic O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\pricemeterdownloader [3292] =>PUP.Optional.PriceMeter O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\PriceMeterLiveUpdateUpdateTaskMachineCore [3696] =>PUP.Optional.PriceMeter O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\PriceMeterLiveUpdateUpdateTaskMachineUA [3948] =>PUP.Optional.PriceMeter O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\PriceMeterUpdater [3232] =>PUP.Optional.PriceMeter O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Run_Bobby_Browser [3144] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\SpyHunter4Startup [3326] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\temp_fab8a41b-2553-4ddb-a6e5-c20c78aba99e-1-6 [5144] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Vosteran_helper [3242] =>PUP.Optional.Vosteran O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\WebBarLaunchTask [3262] =>PUP.Optional.WebBar O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\WIN-statsAdmin [3312] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\WIN-statsSystem [3236] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\YTDownloader [3570] =>PUP.Optional.YTDownloader O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{0286D775-45A1-41C6-A38C-6AFAF1C6FCCC} [3066] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{066F2F53-5D21-4D90-8AE6-30470BD7FA89} [3220] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{1537BEEF-A404-4981-A65C-F43FBBC88BE8} [3306] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{42F118F5-E08F-4AE8-80FF-236ACCDA75F1} [3102] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{E507FBAF-74B5-4C48-88AD-8CBC1FDD4FB8} [3152] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{E5670923-519E-401E-9A0C-D22DE2411A79} [2992] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{EBA63914-BB22-41CA-A76D-B3B75DFC1BC6} [3252] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{EE04B88C-565F-4FDE-8EAE-3868D8D9CE8D} [3066] ---\\ Logiciels installés (O42) (18) - 7s O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast O42 - Logiciel: Crossbrowse - (.The Crossbrowse Authors.) [HKLM] -- Crossbrowse =>PUP.Optional.CrossBrowse O42 - Logiciel: GamesDesktop 001.005010050 - (.GAMESDESKTOP.) [HKLM] -- gmsd_fr_005010050_is1 =>PUP.Optional.GamesDesktop O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome O42 - Logiciel: Media Downloader version 1.5 - (.Media Downloader.) [HKLM] -- Media Downloader_is1 =>PUP.Optional.MediaDownloader O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM] -- Microsoft Security Client O42 - Logiciel: mystartsearch uninstall - (.mystartsearch.) [HKLM] -- mystartsearch uninstall =>PUP.Optional.StartSearch O42 - Logiciel: PhraseProfessor 1.10.0.21 - (.PhraseProfessor.) [HKLM] -- PhraseProfessor_1.10.0.21 =>PUP.Optional.Gen O42 - Logiciel: SmartWeb - (.SoftBrain Technologies Ltd..) [HKLM] -- SmartWeb =>PUP.Optional.SmartWebSearch O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker O42 - Logiciel: CutterGeneration - (.Software Publisher.) [HKLM] -- {12DA0E6F-5543-440C-BAA2-28BF01070AFA}{f5261c2a} =>PUP.Optional.Graftor O42 - Logiciel: SaveItCoupons - (.SaveItCoupons.) [HKLM] -- {37476589-E48E-439E-A706-56189E2ED4C4}_is1 =>PUP.Optional.Multiplug O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM] -- {6E3939AE-9996-4D07-9A30-14C78AE93576} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215} O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: RapidMediaConverter - (.RapidMediaConverter.) [HKCU] -- RapidMediaConverter =>PUP.Optional.RapidMediaConverter ---\\ HKCU & HKLM Software Keys (196) - 7s HKLM\SOFTWARE\9ba1ffdf-6d10-ce25-dd4b-6fbf02a8391b =>PUP.Optional.CrossRider HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AdvertisingSupport =>PUP.Optional.AdvertisingSupport HKLM\SOFTWARE\AIM Toolbar HKLM\SOFTWARE\anset HKLM\SOFTWARE\AppDataLow HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Boost =>PUP.Optional.Boost HKLM\SOFTWARE\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\Browser Guard HKLM\SOFTWARE\BrowserChoice HKLM\SOFTWARE\BubbleSound =>PUP.Optional.BubbleSound HKLM\SOFTWARE\Clara =>PUP.Optional.SupTab HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\coupoon =>PUP.Optional.Multiplug HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\DealPlyLive =>PUP.Optional.Dealply HKLM\SOFTWARE\DriverRestore =>PUP.Optional.DriverRestore HKLM\SOFTWARE\EnigmaSoftwareGroup HKLM\SOFTWARE\EZ Software Updater =>PUP.Optional.EZSoftwareUpdater HKLM\SOFTWARE\FastSearch =>PUP.Optional.FastSearch HKLM\SOFTWARE\Flashbeat =>PUP.Optional.FlashBeat HKLM\SOFTWARE\FreeSoftToday =>PUP.Optional.Multiplug HKLM\SOFTWARE\GAMESDESKTOP =>PUP.Optional.GamesDesktop HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Google HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\IGS HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut HKLM\SOFTWARE\Intel HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKLM\SOFTWARE\LogMeInRescueCallingCard HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\MaxPower HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\NVIDIA Corporation HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic HKLM\SOFTWARE\PCTRunner =>PUP.Optional.WebProtect HKLM\SOFTWARE\PhraseProfessor_1.10.0.21 =>PUP.Optional.Gen HKLM\SOFTWARE\PriceMeterLiveUpdate HKLM\SOFTWARE\QuickRef_1.10.0.9 =>PUP.Optional.QuickRef HKLM\SOFTWARE\Reg HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\rrsavings =>PUP.Optional.SupraSavings HKLM\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\searchult =>PUP.Optional.Gen HKLM\SOFTWARE\Skype HKLM\SOFTWARE\Software HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SpeedBit HKLM\SOFTWARE\SPPDCOM =>PUP.Optional.PCSpeedUp HKLM\SOFTWARE\StormWatchApp =>PUP.Optional.StormWatch HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager HKLM\SOFTWARE\SystemK =>PUP.Optional.SystemK HKLM\SOFTWARE\Systweak =>PUP.Optional.Systweak HKLM\SOFTWARE\Taronja HKLM\SOFTWARE\troll HKLM\SOFTWARE\Tune =>PUP.Optional.Systweak HKLM\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive HKLM\SOFTWARE\Uniblue =>PUP.Optional.Uniblue HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\Wajam =>PUP.Optional.Wajam HKLM\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches HKLM\SOFTWARE\Windows HKLM\SOFTWARE\WinU HKLM\SOFTWARE\WordProser_1.10.0.5 =>PUP.Optional.WordProser HKLM\SOFTWARE\WordShark_1.10.0.19 =>PUP.Optional.WordShark HKLM\SOFTWARE\WordShark_1.10.0.20 =>PUP.Optional.WordShark HKLM\SOFTWARE\WordSurfer_1.10.0.19 =>PUP.Optional.WordSurfer HKLM\SOFTWARE\Wpm =>PUP.Optional.WpManager HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\AOL HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\BoBrowser =>PUP.Optional.BoBrowser HKCU\SOFTWARE\Boost =>PUP.Optional.Boost HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore HKCU\SOFTWARE\BrowserV02.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\BuzzitOB HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CinemaPlus-3.2cV21.06-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CleanerProConfig =>PUP.Optional.CleanerPro HKCU\SOFTWARE\CleanerProLanguage =>PUP.Optional.CleanerPro HKCU\SOFTWARE\ClientConnect =>PUP.Optional.ClientConnect HKCU\SOFTWARE\CoinisRS =>PUP.Optional.InstallCore HKCU\SOFTWARE\compare for fun HKCU\SOFTWARE\compareforfun HKCU\SOFTWARE\Corez HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser HKCU\SOFTWARE\DoctorPCConfig HKCU\SOFTWARE\DoctorPCLanguage HKCU\SOFTWARE\freesofttoday =>PUP.Optional.Multiplug HKCU\SOFTWARE\gamesdesktop =>PUP.Optional.GamesDesktop HKCU\SOFTWARE\Genesis =>PUP.Optional.Genesis HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GoHD-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Google HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallCore =>PUP.Optional.InstallCore HKCU\SOFTWARE\InstallPath HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Kromtech HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\LogMeInRescueCallingCard HKCU\SOFTWARE\LZPKWBP HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Massive Media HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Optimizer Pro =>PUP.Optional.OptimizerPro HKCU\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic HKCU\SOFTWARE\PC Speed Maximizer =>PUP.Optional.PCSpeedMaximizer HKCU\SOFTWARE\PCTRunner =>PUP.Optional.WebProtect HKCU\SOFTWARE\PriceMeterLiveUpdate HKCU\SOFTWARE\PriceMeterUpdater =>PUP.Optional.PriceMeter HKCU\SOFTWARE\ProPCCleanerConfig =>PUP.Optional.ProPCCleaner HKCU\SOFTWARE\ProPCCleanerLanguage =>PUP.Optional.ProPCCleaner HKCU\SOFTWARE\RapidMediaConverterApp =>PUP.Optional.RapidMediaConverter HKCU\SOFTWARE\Reg HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\SearchProtectIN4T =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT2 =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT3 =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT4 =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\Skyhook Wireless HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\Software HKCU\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKCU\SOFTWARE\Store =>PUP.Optional.Gen HKCU\SOFTWARE\StormWatch =>PUP.Optional.StormWatch HKCU\SOFTWARE\StormWatchApp =>PUP.Optional.StormWatch HKCU\SOFTWARE\Super Optimizer =>PUP.Optional.SuperOptimizer HKCU\SOFTWARE\Systweak =>PUP.Optional.Systweak HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\test HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Tune =>PUP.Optional.Systweak HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\Vittalia =>PUP.Optional.Vittalia HKCU\SOFTWARE\Vosteran Browser =>PUP.Optional.Vosteran HKCU\SOFTWARE\Wajam =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\winservice86-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\BlockAndSurf =>PUP.Optional.BlockAndSurf HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\DynConIE =>PUP.Optional.DynConIE HKCU\SOFTWARE\AppDataLow\Software\Re-markit =>PUP.Optional.ReMarkIt HKCU\SOFTWARE\AppDataLow\Software\rrsavings =>PUP.Optional.SupraSavings HKCU\SOFTWARE\AppDataLow\Software\Simplytech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\AppDataLow\Software\SmartWeb =>PUP.Optional.SmartWebSearch ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (189) - 7s O43 - CFD: 2015/02/28 23:05:03 - [] D -- C:\Program Files\Adobe O43 - CFD: 2015/08/04 10:12:00 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2015/07/29 13:33:00 - [] D -- C:\Program Files\Common Files O43 - CFD: 2015/08/02 10:13:53 - [0] D -- C:\Program Files\CutterGeneration O43 - CFD: 2014/05/17 00:31:44 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 2014/05/16 11:24:34 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2015/08/04 12:58:24 - [] D -- C:\Program Files\gmsd_fr_005010011 =>PUP.Optional.CrossRider O43 - CFD: 2015/08/04 12:59:53 - [] D -- C:\Program Files\gmsd_fr_005010050 =>PUP.Optional.CrossRider O43 - CFD: 2015/08/03 15:29:46 - [] D -- C:\Program Files\Google O43 - CFD: 2015/08/04 12:54:18 - [] D -- C:\Program Files\IGS O43 - CFD: 2015/07/31 18:46:03 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2015/07/15 22:32:29 - [] D -- C:\Program Files\Media Downloader =>PUP.Optional.MediaDownloader O43 - CFD: 2014/10/10 23:06:57 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/05/24 00:08:21 - [] D -- C:\Program Files\Microsoft Security Client O43 - CFD: 2015/05/23 23:38:03 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2014/06/20 23:13:02 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 2014/10/10 23:07:15 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2014/06/20 23:13:31 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2014/05/16 14:47:36 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2015/08/04 09:40:57 - [] D -- C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab O43 - CFD: 2014/06/20 23:13:12 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2014/05/21 22:13:21 - [0] D -- C:\Program Files\Nosibay =>PUP.Optional.SPointer O43 - CFD: 2015/07/13 22:12:18 - [] D -- C:\Program Files\NVIDIA Corporation O43 - CFD: 2015/08/04 12:53:52 - [] D -- C:\Program Files\PCTRunner =>PUP.Optional.WebProtect O43 - CFD: 2015/08/02 10:29:45 - [] D -- C:\Program Files\PhraseProfessor_1.10.0.21 =>PUP.Optional.Gen O43 - CFD: 2014/05/20 06:38:07 - [0] D -- C:\Program Files\predm =>PUP.Optional.Downware O43 - CFD: 2014/06/09 20:44:23 - [] D -- C:\Program Files\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter O43 - CFD: 2015/08/04 12:52:37 - [0] D -- C:\Program Files\rec_fr_53 =>PUP.Optional.CrossRider O43 - CFD: 2009/07/14 06:52:30 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2015/08/04 12:53:52 - [] D -- C:\Program Files\Reimageplus.com =>PUP.Optional.ReImageRepair O43 - CFD: 2015/07/06 19:45:10 - [] D -- C:\Program Files\SearchProtect =>PUP.Optional.SearchProtect O43 - CFD: 2014/06/07 22:59:02 - [] D -- C:\Program Files\Software =>PUP.Optional.Boxore O43 - CFD: 2015/08/04 12:53:59 - [] D -- C:\Program Files\SupTab =>PUP.Optional.SupTab O43 - CFD: 2009/07/14 06:53:23 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2015/08/03 14:35:00 - [] D -- C:\Program Files\Unlocker O43 - CFD: 2014/05/17 23:40:40 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2015/05/23 23:43:00 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2014/05/17 00:31:44 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/06/21 22:13:20 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2014/05/16 11:24:34 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2014/05/17 00:31:44 - [] D -- C:\Program Files\Windows Photo Viewer O43 - CFD: 2014/05/17 00:31:44 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2015/08/04 10:17:05 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2014/10/07 18:31:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/08/04 10:18:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 2015/08/02 11:06:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2014/09/12 21:25:54 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/08/03 15:30:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2009/07/14 06:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/15 22:32:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Downloader =>PUP.Optional.MediaDownloader O43 - CFD: 2014/06/20 23:14:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/05/22 23:17:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/08/02 10:26:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rapid Media Converter =>PUP.Optional.RapidMediaConverter O43 - CFD: 2015/03/11 23:04:15 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2009/07/14 11:00:41 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/06/21 21:15:01 - [] D -- C:\ProgramData\14398933871681296645 O43 - CFD: 2014/10/01 21:47:40 - [] D -- C:\ProgramData\2308189059 O43 - CFD: 2015/08/04 10:28:00 - [0] D -- C:\ProgramData\2ae8d26e8b8c41cbad14585e712e8d34 O43 - CFD: 2015/05/15 22:55:01 - [0] D -- C:\ProgramData\44056c80000056c9 O43 - CFD: 2015/06/21 22:05:38 - [0] D -- C:\ProgramData\6ef0177000006a22 O43 - CFD: 2015/08/04 09:41:04 - [] D -- C:\ProgramData\8WinManPro8 O43 - CFD: 2015/08/02 10:16:30 - [] D -- C:\ProgramData\abc O43 - CFD: 2015/02/28 23:05:08 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2014/11/29 00:17:42 - [] D -- C:\ProgramData\atjs O43 - CFD: 2015/08/04 10:09:29 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2015/07/12 12:31:32 - [0] D -- C:\ProgramData\b872aaa700005b3d O43 - CFD: 2015/08/03 14:17:20 - [0] D -- C:\ProgramData\Babylon =>PUP.Optional.Babylon O43 - CFD: 2014/05/16 11:24:34 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2014/09/07 22:47:08 - [] D -- C:\ProgramData\c7d34a1145e75905 O43 - CFD: 2014/06/11 22:09:41 - [0] D -- C:\ProgramData\CostMin =>PUP.Optional.Multiplug O43 - CFD: 2015/04/20 22:11:28 - [] D -- C:\ProgramData\d2b51e04b9a44c7096388767c4f44c0c O43 - CFD: 2015/08/02 10:14:25 - [0] D -- C:\ProgramData\dbcf690c00001f6c O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2014/05/16 11:24:34 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2014/12/11 22:16:50 - [] D -- C:\ProgramData\Google O43 - CFD: 2014/09/26 22:36:20 - [] D -- C:\ProgramData\IePluginService =>Trojan.SProtector O43 - CFD: 2015/08/04 09:40:52 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR O43 - CFD: 2015/07/30 10:56:41 - [] D -- C:\ProgramData\InstallSightSDK =>PUP.Optional.WebBar O43 - CFD: 2014/05/31 21:29:14 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2014/05/16 11:24:34 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2014/12/11 21:02:08 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/07/31 18:45:55 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2014/05/16 11:24:34 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/06/30 19:58:30 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2014/10/06 19:18:01 - [] D -- C:\ProgramData\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2014/06/09 20:44:22 - [] D -- C:\ProgramData\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter O43 - CFD: 2014/09/06 20:44:04 - [] D -- C:\ProgramData\SaveItCoupons =>PUP.Optional.Multiplug O43 - CFD: 2015/06/22 22:25:15 - [] D -- C:\ProgramData\Skype O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2014/09/07 22:49:32 - [0] D -- C:\ProgramData\surfkeepiTa =>PUP.Optional.Multiplug O43 - CFD: 2014/06/12 23:14:52 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 2009/07/14 06:53:55 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2014/06/11 21:39:41 - [0] D -- C:\ProgramData\WowCoUpON =>PUP.Optional.Multiplug O43 - CFD: 2014/05/20 06:33:59 - [] D -- C:\ProgramData\WPM =>PUP.Optional.WpManager O43 - CFD: 2015/07/29 14:35:42 - [] D -- C:\ProgramData\ZombieNews =>PUP.Optional.ZombieNews O43 - CFD: 2015/08/04 12:55:43 - [] D -- C:\ProgramData\{9d398ec8-4f56-84a1-9d39-98ec84f53b21} O43 - CFD: 2015/02/28 23:05:28 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2014/06/20 23:13:56 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2014/10/10 23:08:34 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2014/10/06 19:18:01 - [] D -- C:\Program Files\Common Files\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2009/07/14 04:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2015/08/04 12:52:24 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2014/09/22 21:03:17 - [0] D -- C:\Program Files\Common Files\Wise Installation Wizard O43 - CFD: 2015/08/04 12:55:22 - [] D -- C:\Users\jacky\AppData\Roaming\4C4C4544-1425078561-4410-8051-C6C04F53334A O43 - CFD: 2015/08/04 12:54:25 - [] D -- C:\Users\jacky\AppData\Roaming\4C4C4544-1425238983-4410-8051-C6C04F53334A O43 - CFD: 2015/08/04 12:55:45 - [0] D -- C:\Users\jacky\AppData\Roaming\4C4C4544-1426105982-4410-8051-C6C04F53334A O43 - CFD: 2015/08/04 12:54:25 - [] D -- C:\Users\jacky\AppData\Roaming\4C4C4544-1426107689-4410-8051-C6C04F53334A O43 - CFD: 2015/08/04 12:54:25 - [0] D -- C:\Users\jacky\AppData\Roaming\4C4C4544-1426193141-4410-8051-C6C04F53334A O43 - CFD: 2015/08/04 12:54:30 - [] D -- C:\Users\jacky\AppData\Roaming\4ND4Fo2 O43 - CFD: 2014/05/19 22:05:33 - [0] D -- C:\Users\jacky\AppData\Roaming\Activeris =>PUP.Optional.Activeris O43 - CFD: 2014/09/09 22:14:51 - [] D -- C:\Users\jacky\AppData\Roaming\Adobe O43 - CFD: 2015/06/21 21:56:22 - [] SHD -- C:\Users\jacky\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect O43 - CFD: 2015/08/04 10:26:44 - [] D -- C:\Users\jacky\AppData\Roaming\AVAST Software O43 - CFD: 2015/08/03 14:17:20 - [] D -- C:\Users\jacky\AppData\Roaming\Babylon =>PUP.Optional.Babylon O43 - CFD: 2014/09/22 21:31:43 - [] D -- C:\Users\jacky\AppData\Roaming\DriverCure =>PUP.Optional.Paretologic O43 - CFD: 2015/08/04 12:54:30 - [] D -- C:\Users\jacky\AppData\Roaming\Ec3BJlw O43 - CFD: 2014/05/23 23:29:51 - [] D -- C:\Users\jacky\AppData\Roaming\Google O43 - CFD: 2014/05/16 11:24:52 - [] D -- C:\Users\jacky\AppData\Roaming\Identities O43 - CFD: 2015/08/04 12:53:52 - [] D -- C:\Users\jacky\AppData\Roaming\IQmRpy4 O43 - CFD: 2014/09/26 19:45:36 - [] D -- C:\Users\jacky\AppData\Roaming\ironsource =>PUP.Optional.Ironsource O43 - CFD: 2014/05/16 14:34:32 - [] D -- C:\Users\jacky\AppData\Roaming\Macromedia O43 - CFD: 2009/07/14 11:00:41 - [0] D -- C:\Users\jacky\AppData\Roaming\Media Center Programs O43 - CFD: 2014/10/04 20:33:19 - [] SD -- C:\Users\jacky\AppData\Roaming\Microsoft O43 - CFD: 2015/08/04 09:39:20 - [] D -- C:\Users\jacky\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch O43 - CFD: 2014/09/09 22:45:38 - [0] D -- C:\Users\jacky\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock O43 - CFD: 2014/09/24 21:30:48 - [] D -- C:\Users\jacky\AppData\Roaming\ParetoLogic =>PUP.Optional.Paretologic O43 - CFD: 2014/06/09 20:44:19 - [] D -- C:\Users\jacky\AppData\Roaming\PriceMeterUpdater =>PUP.Optional.PriceMeter O43 - CFD: 2015/08/02 10:26:11 - [] D -- C:\Users\jacky\AppData\Roaming\RapidMediaConverter =>PUP.Optional.RapidMediaConverter O43 - CFD: 2015/06/22 22:24:59 - [] D -- C:\Users\jacky\AppData\Roaming\Skype O43 - CFD: 2014/09/09 22:17:03 - [0] D -- C:\Users\jacky\AppData\Roaming\Store =>PUP.Optional.Nosibay O43 - CFD: 2015/08/04 12:53:58 - [] D -- C:\Users\jacky\AppData\Roaming\SupTab =>PUP.Optional.SupTab O43 - CFD: 2015/06/25 21:54:18 - [] D -- C:\Users\jacky\AppData\Roaming\Systweak =>PUP.Optional.Systweak O43 - CFD: 2014/09/23 22:02:36 - [] D -- C:\Users\jacky\AppData\Roaming\vlc O43 - CFD: 2015/06/23 21:20:12 - [] D -- C:\Users\jacky\AppData\Roaming\webssearches =>PUP.Optional.WebsSearches O43 - CFD: 2015/08/06 21:03:42 - [] D -- C:\Users\jacky\AppData\Roaming\ZHP O43 - CFD: 2015/08/04 12:57:41 - [] D -- C:\Users\jacky\AppData\Local\4C4C4544-1425079259-4410-8051-C6C04F53334A O43 - CFD: 2015/08/04 12:55:30 - [] D -- C:\Users\jacky\AppData\Local\4C4C4544-1426109868-4410-8051-C6C04F53334A O43 - CFD: 2015/03/12 22:40:19 - [] D -- C:\Users\jacky\AppData\Local\Adobe O43 - CFD: 2014/05/16 11:24:46 - [0] SHD -- C:\Users\jacky\AppData\Local\Application Data O43 - CFD: 2014/07/15 21:51:43 - [] D -- C:\Users\jacky\AppData\Local\Apps O43 - CFD: 2015/08/03 14:17:26 - [] D -- C:\Users\jacky\AppData\Local\Babylon =>PUP.Optional.Babylon O43 - CFD: 2014/12/12 23:50:10 - [] D -- C:\Users\jacky\AppData\Local\BoBrowser =>PUP.Optional.BoBrowser O43 - CFD: 2014/06/11 21:35:45 - [] D -- C:\Users\jacky\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser O43 - CFD: 2014/06/11 21:35:39 - [] D -- C:\Users\jacky\AppData\Local\Comodo O43 - CFD: 2014/12/18 23:09:19 - [] D -- C:\Users\jacky\AppData\Local\CrashRpt =>.Legitimate.CrashReports O43 - CFD: 2015/07/02 19:19:18 - [] D -- C:\Users\jacky\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2015/03/14 22:54:54 - [0] D -- C:\Users\jacky\AppData\Local\Deployment O43 - CFD: 2015/08/05 13:02:52 - [] D -- C:\Users\jacky\AppData\Local\Diagnostics O43 - CFD: 2015/01/02 23:23:55 - [] D -- C:\Users\jacky\AppData\Local\Doctor_PC =>PUP.Optional.DoctorPC O43 - CFD: 2014/10/10 22:46:20 - [] D -- C:\Users\jacky\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/06/22 22:35:51 - [0] SHD -- C:\Users\jacky\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/06/22 22:35:51 - [0] SHD -- C:\Users\jacky\AppData\Local\EmieSiteList O43 - CFD: 2015/06/22 22:35:51 - [0] SHD -- C:\Users\jacky\AppData\Local\EmieUserList O43 - CFD: 2014/10/05 22:51:01 - [] D -- C:\Users\jacky\AppData\Local\fontconfig O43 - CFD: 2014/05/19 22:01:11 - [] D -- C:\Users\jacky\AppData\Local\freeSOFTtoday =>PUP.Optional.FreeSoftToday O43 - CFD: 2014/09/26 22:21:54 - [] D -- C:\Users\jacky\AppData\Local\fst_fr_187 =>PUP.Optional.FreeSoftToday O43 - CFD: 2014/06/11 21:54:43 - [0] D -- C:\Users\jacky\AppData\Local\Genesis_06111935 O43 - CFD: 2014/05/19 21:48:30 - [] D -- C:\Users\jacky\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/08/04 12:53:41 - [] D -- C:\Users\jacky\AppData\Local\gmsd_fr_005010011 =>PUP.Optional.CrossRider O43 - CFD: 2015/08/04 12:59:00 - [] D -- C:\Users\jacky\AppData\Local\gmsd_fr_005010050 =>PUP.Optional.CrossRider O43 - CFD: 2015/03/12 23:11:47 - [] D -- C:\Users\jacky\AppData\Local\gmsd_fr_306 =>PUP.Optional.CrossRider O43 - CFD: 2014/12/11 22:16:50 - [] D -- C:\Users\jacky\AppData\Local\Google O43 - CFD: 2015/06/23 21:24:21 - [] D -- C:\Users\jacky\AppData\Local\GWX O43 - CFD: 2014/05/16 11:24:46 - [0] SHD -- C:\Users\jacky\AppData\Local\Historique O43 - CFD: 2014/07/12 12:55:16 - [] D -- C:\Users\jacky\AppData\Local\Massive Media O43 - CFD: 2014/09/30 22:05:32 - [] D -- C:\Users\jacky\AppData\Local\Microsoft O43 - CFD: 2014/05/16 12:04:10 - [0] D -- C:\Users\jacky\AppData\Local\Microsoft Help O43 - CFD: 2014/12/12 23:05:04 - [] D -- C:\Users\jacky\AppData\Local\MySearchs O43 - CFD: 2014/06/09 20:44:22 - [] D -- C:\Users\jacky\AppData\Local\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter O43 - CFD: 2014/05/19 21:48:19 - [] D -- C:\Users\jacky\AppData\Local\Programs O43 - CFD: 2015/08/02 10:24:50 - [] D -- C:\Users\jacky\AppData\Local\RapidMediaConverter =>PUP.Optional.RapidMediaConverter O43 - CFD: 2015/07/21 21:04:53 - [] D -- C:\Users\jacky\AppData\Local\rec_fr_53 =>PUP.Optional.CrossRider O43 - CFD: 2015/07/06 19:48:44 - [] D -- C:\Users\jacky\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect O43 - CFD: 2015/06/22 21:14:38 - [] D -- C:\Users\jacky\AppData\Local\Skype O43 - CFD: 2015/08/04 12:59:00 - [] D -- C:\Users\jacky\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch O43 - CFD: 2015/08/06 21:02:29 - [] D -- C:\Users\jacky\AppData\Local\Temp O43 - CFD: 2014/05/16 11:24:46 - [0] SHD -- C:\Users\jacky\AppData\Local\Temporary Internet Files O43 - CFD: 2014/06/11 21:35:44 - [] D -- C:\Users\jacky\AppData\Local\Torch =>PUP.Optional.Torch O43 - CFD: 2014/09/28 10:03:54 - [] D -- C:\Users\jacky\AppData\Local\VirtualStore O43 - CFD: 2015/01/11 11:11:43 - [] D -- C:\Users\jacky\AppData\Local\Vosteran =>PUP.Optional.Vosteran O43 - CFD: 2015/08/02 10:12:34 - [] D -- C:\Users\jacky\AppData\Local\WebBar =>PUP.Optional.WebBar O43 - CFD: 2015/07/02 22:19:53 - [] D -- C:\Users\jacky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/08/02 10:24:42 - [] D -- C:\Users\jacky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rapid Media Converter =>PUP.Optional.RapidMediaConverter O43 - CFD: 2015/08/04 12:59:00 - [] RD -- C:\Users\jacky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/08/03 14:33:00 - [] D -- C:\Users\jacky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (6) - 7s O45 - LFCP:[MD5.011DBE855794F294837A6EB007937CFF] 2015/07/12 13:03:56 A -- C:\Windows\Prefetch\GLOBALUPDATE.EXE-61A5F66C.pf =>PUP.Optional.GlobalUpdate O45 - LFCP:[MD5.1B216AAE1DE0B4A3F69E7F867D28418B] 2015/07/06 19:25:18 A -- C:\Windows\Prefetch\GLOBALUPDATECRASHHANDLER.EXE-FA9E3BB4.pf =>PUP.Optional.GlobalUpdate O45 - LFCP:[MD5.2A5D41084B465209ED8F27D9292EB7FD] 2015/08/06 20:57:52 A -- C:\Windows\Prefetch\PRICEMETERLIVEUPDATE.EXE-052551B2.pf =>PUP.Optional.PriceMeter O45 - LFCP:[MD5.E6DC15471202B802FAA5E449BB0C661A] 2015/08/04 09:40:55 A -- C:\Windows\Prefetch\SMARTWEBAPP.EXE-25B5EF67.pf =>PUP.Optional.SmartWebSearch O45 - LFCP:[MD5.2C3D4C1BEA1D72FF3C5F9ED38E78C20B] 2015/08/04 09:40:55 A -- C:\Windows\Prefetch\SMARTWEBHELPER.EXE-066613BA.pf =>PUP.Optional.SmartWebSearch O45 - LFCP:[MD5.D5EBE891C772F5BD927972366A73CA8A] 2015/08/04 12:07:40 A -- C:\Windows\Prefetch\UPGMSD_FR_005010011.EXE-D3DA24FB.pf =>PUP.Optional.CrossRider ---\\ Liste des pilotes du système (SDL) (O58) (69) - 8s O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] O58 - SDL:2009/07/14 03:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] O58 - SDL:2009/07/14 03:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] O58 - SDL:2009/07/14 03:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] O58 - SDL:2011/03/11 07:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] O58 - SDL:2009/07/14 03:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] O58 - SDL:2015/08/04 10:17:34 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [24016] O58 - SDL:2015/08/04 10:17:34 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [76000] O58 - SDL:2015/08/04 10:17:34 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [81728] O58 - SDL:2015/08/04 10:17:34 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [49776] O58 - SDL:2015/08/04 10:17:16 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [788784] O58 - SDL:2015/08/04 10:17:34 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [433264] O58 - SDL:2015/08/04 10:17:35 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [113592] O58 - SDL:2015/08/04 10:17:34 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [208664] O58 - SDL:2009/07/14 00:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] O58 - SDL:2009/07/14 00:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] O58 - SDL:2009/07/14 02:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] O58 - SDL:2009/07/14 00:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] O58 - SDL:2009/07/14 00:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] O58 - SDL:2009/07/14 03:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] O58 - SDL:2009/07/14 03:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] O58 - SDL:2009/07/14 03:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] O58 - SDL:2009/07/14 00:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] O58 - SDL:2009/07/14 00:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] O58 - SDL:2009/07/14 03:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] O58 - SDL:2011/03/11 07:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] O58 - SDL:2009/07/14 03:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] O58 - SDL:2009/07/14 03:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] O58 - SDL:2009/07/14 03:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] O58 - SDL:2009/07/14 03:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] O58 - SDL:2015/08/04 10:17:15 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\Windows\System32\drivers\ngvss.sys [95112] O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] O58 - SDL:2011/03/11 07:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] O58 - SDL:2014/09/01 20:29:18 A . (...) -- C:\Windows\System32\drivers\pcwatch.sys [20480] =>PUP.Optional.WebProtect O58 - SDL:2015/07/28 23:47:42 A . (.PhraseProfessor - PP TDI Driver x86.) -- C:\Windows\System32\drivers\ppfd_vt_1_10_0_21.sys [56464] =>PUP.Optional.Gen O58 - SDL:2015/07/28 23:47:44 A . (.PhraseProfessor - PP WFP Driver x86.) -- C:\Windows\System32\drivers\ppfd_vw_1_10_0_21.sys [48528] =>PUP.Optional.Gen O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] O58 - SDL:2009/07/14 03:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] O58 - SDL:2009/07/13 22:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] O58 - SDL:2009/07/14 03:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] O58 - SDL:2009/07/14 03:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] O58 - SDL:2009/07/14 03:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] O58 - SDL:2009/07/14 03:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] O58 - SDL:2009/07/13 23:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 23:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 23:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 23:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 23:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 23:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 23:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 23:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 23:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 23:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 23:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 23:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 23:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 23:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (6) - 39s O61 - LFC: 2015/08/06 20:31:24 A . (.Dell, Inc..) -- C:\Users\jacky\Downloads\NIC_DRVR_WIN_R205375.EXE [72980424] O61 - LFC: 2015/08/06 20:44:16 A . (..) -- C:\Users\jacky\Downloads\R143065.EXE [8772528] O61 - LFC: 2015/08/06 20:21:46 A . (..) -- C:\Users\jacky\Downloads\R161009.EXE [5778976] O61 - LFC: 2015/08/06 20:25:16 A . (..) -- C:\Users\jacky\Downloads\R226265.exe [73767704] O61 - LFC: 2015/08/03 14:12:10 A . (..) -- C:\Users\jacky\Downloads\unlocker_1-9-2_fr_20237.exe [1078591] O61 - LFC: 2015/08/06 20:56:48 A . (..) -- C:\Users\jacky\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] ---\\ Associations Shell Spawning (O67) (1) - 0s O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ---\\ Menu de démarrage Internet (SMI) (O68) (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (23) - 1s O69 - SBI: SearchScopes [HKCU] 0254A456217441A8AAFCE94AC69B9CCA - (Web Search) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {006ee092-9658-4fd6-bd8e-a21a348e59f5} - (Groovorio) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} - (Trovi search) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} - (Trovi) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {09813B89-31D4-4F1C-B9AA-ACB5E5F1D593} - ((www.google.com)[2] Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} - (My Online Search) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {2E00D31D-D171-423D-836D-1A4D7EA7F1A9} - (Astromenda) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (mystartsearch) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {50C28FF0-315D-4A43-BB2B-3446B63E7754} - (Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {5A5D361F-30AC-46BF-8D80-1E4AC3C305C3} - (Vosteran) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Bing) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {80c554b9-c7f8-4a21-9471-06d606da78a2} - (Bing) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {8BA82EFF-53C4-4607-BD2B-0435815FA04F} - ((www.google.com)[5] Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {ACE221A1-4780-4068-A5F7-925957637552} - ((www.google.com)[4] Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {BF8AE307-8FB1-4F21-B50B-03382C779AEC} - (Search The Web (mysearchs)) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {C6E963CF-D8D4-4601-9C84-3C1EC9EC00A5} - ((www.google.com)[3] Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {CC865B26-C31D-4D23-B17B-96548EEF03F6} - (Groovorio) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} - ((www.google.com) Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {E52E82BE-C689-4BAD-9B5C-B03B28DB24FF} - ((www.google.com)[6] Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCR] {afdbddaa-5d3f-42ee-b79c-185a7020515b} [DefaultScope] - (Zoo Search) - http://isearch.zoo.com/ =>PUP.Optional.ZooToolbar ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2045952] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (12) - 1s O87 - FAEL: "{64231B56-D06A-4C63-8DE3-844F840D8E50}" [In-None-P6-FALSE] .(...) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (.not file.) O87 - FAEL: "{DC170F0C-E3CE-4E3C-9091-7A32DA0F3781}" [In-None-P17-FALSE] .(...) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (.not file.) O87 - FAEL: "TCP Query User{8A6AE665-BC4A-42C1-BA46-8006B8CA9FD3}C:\program files\jfilemanager\jfilemanager.exe" [In-None-P6-TRUE] .(...) -- C:\program files\jfilemanager\jfilemanager.exe (.not file.) =>PUP.Optional.JFileManager O87 - FAEL: "UDP Query User{E4E44C89-BCBC-4287-9ABC-6FA7A3EBEE61}C:\program files\jfilemanager\jfilemanager.exe" [In-None-P17-TRUE] .(...) -- C:\program files\jfilemanager\jfilemanager.exe (.not file.) =>PUP.Optional.JFileManager O87 - FAEL: "{F3502DB8-61D9-4BB1-9085-3745A4E8AB4F}" [In-None-P17-TRUE] .(...) -- C:\Users\jacky\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O87 - FAEL: "{964960C9-953A-4D98-847F-1DB8CAD8A450}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Bench\Proxy\proc.exe (.not file.) O87 - FAEL: "{FF62E480-2DF7-40DE-8EBB-60441D1371F1}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Bench\Proxy\pwdg.exe (.not file.) O87 - FAEL: "{95D793E1-C64D-4443-904C-DADF3442447E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse O87 - FAEL: "{BC7B6D33-0C24-4B6C-B68B-34B03AB542CA}" [In-None-P6-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe O87 - FAEL: "{28E95EB9-B393-41FE-BEC5-272B7E73C74F}" [In-None-P17-TRUE] .(.AVAST Software - avast! NG front end.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe O87 - FAEL: "{D3CE2836-A072-47C6-BED4-BA33BEC2E8B2}" [In-None-P17-TRUE] .(...) -- C:\Users\jacky\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O87 - FAEL: "{178BAD74-143A-46D0-A01D-0A51B2F2917C}" [In-None-P17-FALSE] .(...) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse ---\\ Recherche de clés de registre Tracing (O100) (44) - 3s HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\ConstaSurf_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\ConstaSurf_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\DizzyDing_RASAPI32 =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\DizzyDing_RASMANCS =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\FastPlayer_RASAPI32 =>PUP.Optional.FastPlayer HKLM\SOFTWARE\Microsoft\Tracing\FastPlayer_RASMANCS =>PUP.Optional.FastPlayer HKLM\SOFTWARE\Microsoft\Tracing\flvplayer update v13_RASAPI32 =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Microsoft\Tracing\flvplayer update v13_RASMANCS =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Microsoft\Tracing\GreenerWeb_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\GreenerWeb_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\JFileManager_RASAPI32 =>PUP.Optional.JFileManager HKLM\SOFTWARE\Microsoft\Tracing\JFileManager_RASMANCS =>PUP.Optional.JFileManager HKLM\SOFTWARE\Microsoft\Tracing\KrabWeb_RASAPI32 =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\KrabWeb_RASMANCS =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\MixVideoPlayer_RASAPI32 =>PUP.Optional.MixVideoPlayer HKLM\SOFTWARE\Microsoft\Tracing\MixVideoPlayer_RASMANCS =>PUP.Optional.MixVideoPlayer HKLM\SOFTWARE\Microsoft\Tracing\ScanTack_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\ScanTack_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\Smartbar_RASAPI32 =>PUP.Optional.SmartBar HKLM\SOFTWARE\Microsoft\Tracing\Smartbar_RASMANCS =>PUP.Optional.SmartBar HKLM\SOFTWARE\Microsoft\Tracing\SmarterPower_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\SmarterPower_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateConstaSurf_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateConstaSurf_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateDizzyDing_RASAPI32 =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\updateDizzyDing_RASMANCS =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\updateGreenerWeb_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateGreenerWeb_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateKrabWeb_RASAPI32 =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\updateKrabWeb_RASMANCS =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\updateScanTack_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateScanTack_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateSmarterPower_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateSmarterPower_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilConstaSurf_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilConstaSurf_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilScanTack_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilScanTack_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilSmarterPower_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilSmarterPower_RASMANCS =>PUP.Optional.Sambreel ---\\ Scan Additionnel (O88) (294) - 0s C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.MiuiTab C:\Program Files\MiuiTab\CmdShell.exe =>PUP.Optional.MiuiTab C:\Program Files\PhraseProfessor_1.10.0.21\Service\ppsvc.exe =>PUP.Optional.Gen C:\Program Files\MiuiTab\HPNotify.exe =>PUP.Optional.MiuiTab C:\Program Files\PriceMeterLiveUpdate\Update\PriceMeterLiveUpdate.exe =>PUP.Optional.PriceMeter C:\Users\jacky\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmchfpimpbbdmgpcieclabeafkljbhm C:\Program Files\PriceMeterLiveUpdate\Update\1.3.23.0\npGoogleUpdate3.dll =>PUP.Optional.PriceMeter C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.MiuiTab HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1F91A9A1-01BA-4c81-863D-3BA0751E1419} =>PUP.Optional.MiuiTab HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR HKLM\SYSTEM\CurrentControlSet\Services\ppsvc_1.10.0.21 =>PUP.Optional.Gen HKLM\SYSTEM\CurrentControlSet\Services\pricemeterliveUpdate =>PUP.Optional.PriceMeter HKLM\SYSTEM\CurrentControlSet\Services\ProtectMonitor =>Trojan.BitCoinMiner C:\monitorsvc.exe =>Trojan.BitCoinMiner HKLM\SYSTEM\CurrentControlSet\Services\wbsvc =>PUP.Optional.WebBar HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu C:\ProgramData\8WinManPro8\ProtectWindowsManager.exe =>PUP.Optional.Fuyu C:\Windows\Tasks\APSnotifierPP1.job =>PUP.Optional.AnyProtect C:\Windows\Tasks\APSnotifierPP2.job =>PUP.Optional.AnyProtect C:\Windows\Tasks\APSnotifierPP3.job =>PUP.Optional.AnyProtect C:\Windows\Tasks\Crossbrowse.job =>PUP.Optional.CrossBrowse C:\Windows\Tasks\ParetoLogic Registration3.job =>PUP.Optional.Paretologic C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job =>PUP.Optional.Paretologic C:\Windows\Tasks\ParetoLogic Update Version3.job =>PUP.Optional.Paretologic C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineCore.job =>PUP.Optional.PriceMeter C:\Windows\Tasks\PriceMeterLiveUpdateUpdateTaskMachineUA.job =>PUP.Optional.PriceMeter C:\Windows\Tasks\PriceMeterUpdater.job =>PUP.Optional.PriceMeter C:\Windows\Tasks\Vosteran_helper.job =>PUP.Optional.Vosteran C:\Windows\System32\Tasks\19175546-7cbf-447a-be6f-2cb033ecd63e-1-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\91dec6dc-092c-4b7b-bc64-7bcfaf2ef470-5 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\APSnotifierPP1 =>PUP.Optional.AnyProtect C:\Windows\System32\Tasks\APSnotifierPP2 =>PUP.Optional.AnyProtect C:\Windows\System32\Tasks\APSnotifierPP3 =>PUP.Optional.AnyProtect C:\Windows\System32\Tasks\Crossbrowse =>PUP.Optional.CrossBrowse C:\Windows\System32\Tasks\ParetoLogic Registration3 =>PUP.Optional.Paretologic C:\Windows\System32\Tasks\ParetoLogic Update Version3 =>PUP.Optional.Paretologic C:\Windows\System32\Tasks\ParetoLogic Update Version3 Startup Task =>PUP.Optional.Paretologic C:\Windows\System32\Tasks\pricemeterdownloader =>PUP.Optional.PriceMeter C:\Windows\System32\Tasks\PriceMeterLiveUpdateUpdateTaskMachineCore =>PUP.Optional.PriceMeter C:\Windows\System32\Tasks\PriceMeterLiveUpdateUpdateTaskMachineUA =>PUP.Optional.PriceMeter C:\Windows\System32\Tasks\PriceMeterUpdater =>PUP.Optional.PriceMeter C:\Windows\System32\Tasks\Vosteran_helper =>PUP.Optional.Vosteran C:\Windows\System32\Tasks\WebBarLaunchTask =>PUP.Optional.WebBar C:\Windows\System32\Tasks\YTDownloader =>PUP.Optional.YTDownloader HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse =>PUP.Optional.CrossBrowse HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_005010050_is1 =>PUP.Optional.GamesDesktop HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Media Downloader_is1 =>PUP.Optional.MediaDownloader HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall =>PUP.Optional.StartSearch HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PhraseProfessor_1.10.0.21 =>PUP.Optional.Gen HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SmartWeb =>PUP.Optional.SmartWebSearch HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{f5261c2a} =>PUP.Optional.Graftor HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E48E-439E-A706-56189E2ED4C4}_is1 =>PUP.Optional.Multiplug HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RapidMediaConverter =>PUP.Optional.RapidMediaConverter HKLM\SOFTWARE\AdvertisingSupport =>PUP.Optional.AdvertisingSupport HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKLM\SOFTWARE\Babylon =>PUP.Optional.Babylon HKLM\SOFTWARE\Boost =>PUP.Optional.Boost HKLM\SOFTWARE\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\BubbleSound =>PUP.Optional.BubbleSound HKLM\SOFTWARE\Clara =>PUP.Optional.SupTab HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\DealPlyLive =>PUP.Optional.Dealply HKLM\SOFTWARE\DriverRestore =>PUP.Optional.DriverRestore HKLM\SOFTWARE\EZ Software Updater =>PUP.Optional.EZSoftwareUpdater HKLM\SOFTWARE\FastSearch =>PUP.Optional.FastSearch HKLM\SOFTWARE\Flashbeat =>PUP.Optional.FlashBeat HKLM\SOFTWARE\FreeSoftToday =>PUP.Optional.Multiplug HKLM\SOFTWARE\GAMESDESKTOP =>PUP.Optional.GamesDesktop HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Infonaut_1.10.0.14 =>PUP.Optional.Infonaut HKLM\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKLM\SOFTWARE\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic HKLM\SOFTWARE\PhraseProfessor_1.10.0.21 =>PUP.Optional.Gen HKLM\SOFTWARE\QuickRef_1.10.0.9 =>PUP.Optional.QuickRef HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\rrsavings =>PUP.Optional.SupraSavings HKLM\SOFTWARE\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\searchult =>PUP.Optional.Gen HKLM\SOFTWARE\SPPDCOM =>PUP.Optional.PCSpeedUp HKLM\SOFTWARE\StormWatchApp =>PUP.Optional.StormWatch HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager HKLM\SOFTWARE\SystemK =>PUP.Optional.SystemK HKLM\SOFTWARE\Systweak =>PUP.Optional.Systweak HKLM\SOFTWARE\Tune =>PUP.Optional.Systweak HKLM\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive HKLM\SOFTWARE\Uniblue =>PUP.Optional.Uniblue HKLM\SOFTWARE\Wajam =>PUP.Optional.Wajam HKLM\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches HKLM\SOFTWARE\WordProser_1.10.0.5 =>PUP.Optional.WordProser HKLM\SOFTWARE\WordShark_1.10.0.19 =>PUP.Optional.WordShark HKLM\SOFTWARE\WordShark_1.10.0.20 =>PUP.Optional.WordShark HKLM\SOFTWARE\WordSurfer_1.10.0.19 =>PUP.Optional.WordSurfer HKLM\SOFTWARE\Wpm =>PUP.Optional.WpManager HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask HKCU\SOFTWARE\BoBrowser =>PUP.Optional.BoBrowser HKCU\SOFTWARE\Boost =>PUP.Optional.Boost HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore HKCU\SOFTWARE\BrowserV02.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV21.06-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CleanerProConfig =>PUP.Optional.CleanerPro HKCU\SOFTWARE\CleanerProLanguage =>PUP.Optional.CleanerPro HKCU\SOFTWARE\ClientConnect =>PUP.Optional.ClientConnect HKCU\SOFTWARE\CoinisRS =>PUP.Optional.InstallCore HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser HKCU\SOFTWARE\freesofttoday =>PUP.Optional.Multiplug HKCU\SOFTWARE\gamesdesktop =>PUP.Optional.GamesDesktop HKCU\SOFTWARE\Genesis =>PUP.Optional.Genesis HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GoHD-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\InstallCore =>PUP.Optional.InstallCore HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer HKCU\SOFTWARE\Optimizer Pro =>PUP.Optional.OptimizerPro HKCU\SOFTWARE\ParetoLogic =>PUP.Optional.Paretologic HKCU\SOFTWARE\PC Speed Maximizer =>PUP.Optional.PCSpeedMaximizer HKCU\SOFTWARE\PCTRunner =>PUP.Optional.WebProtect HKCU\SOFTWARE\PriceMeterUpdater =>PUP.Optional.PriceMeter HKCU\SOFTWARE\ProPCCleanerConfig =>PUP.Optional.ProPCCleaner HKCU\SOFTWARE\ProPCCleanerLanguage =>PUP.Optional.ProPCCleaner HKCU\SOFTWARE\RapidMediaConverterApp =>PUP.Optional.RapidMediaConverter HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\SearchProtectIN4T =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT2 =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT3 =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectINT4 =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\Smartbar =>PUP.Optional.SmartBar HKCU\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKCU\SOFTWARE\Store =>PUP.Optional.Gen HKCU\SOFTWARE\StormWatch =>PUP.Optional.StormWatch HKCU\SOFTWARE\StormWatchApp =>PUP.Optional.StormWatch HKCU\SOFTWARE\Super Optimizer =>PUP.Optional.SuperOptimizer HKCU\SOFTWARE\Systweak =>PUP.Optional.Systweak HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork HKCU\SOFTWARE\Tune =>PUP.Optional.Systweak HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\Vittalia =>PUP.Optional.Vittalia HKCU\SOFTWARE\Vosteran Browser =>PUP.Optional.Vosteran HKCU\SOFTWARE\Wajam =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\winservice86-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\BlockAndSurf =>PUP.Optional.BlockAndSurf =>PUP.Optional.BlockAndSurf HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\DynConIE =>PUP.Optional.DynConIE =>PUP.Optional.DynConIE HKCU\SOFTWARE\AppDataLow\Software\Re-markit =>PUP.Optional.ReMarkIt =>PUP.Optional.ReMarkIt HKCU\SOFTWARE\AppDataLow\Software\rrsavings =>PUP.Optional.SupraSavings =>PUP.Optional.SupraSavings HKCU\SOFTWARE\AppDataLow\Software\Simplytech =>PUP.Optional.SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\AppDataLow\Software\SmartWeb =>PUP.Optional.SmartWebSearch =>PUP.Optional.SmartWebSearch C:\Program Files\gmsd_fr_005010011 =>PUP.Optional.CrossRider C:\Program Files\gmsd_fr_005010050 =>PUP.Optional.CrossRider C:\Program Files\Media Downloader =>PUP.Optional.MediaDownloader C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab C:\Program Files\Nosibay =>PUP.Optional.SPointer C:\Program Files\PCTRunner =>PUP.Optional.WebProtect C:\Program Files\PhraseProfessor_1.10.0.21 =>PUP.Optional.Gen C:\Program Files\predm =>PUP.Optional.Downware C:\Program Files\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter C:\Program Files\rec_fr_53 =>PUP.Optional.CrossRider C:\Program Files\Reimageplus.com =>PUP.Optional.ReImageRepair C:\Program Files\SearchProtect =>PUP.Optional.SearchProtect C:\Program Files\Software =>PUP.Optional.Boxore C:\Program Files\SupTab =>PUP.Optional.SupTab C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse =>PUP.Optional.CrossBrowse C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Downloader =>PUP.Optional.MediaDownloader C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rapid Media Converter =>PUP.Optional.RapidMediaConverter C:\ProgramData\Babylon =>PUP.Optional.Babylon C:\ProgramData\CostMin =>PUP.Optional.Multiplug C:\ProgramData\IePluginService =>Trojan.SProtector C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR C:\ProgramData\InstallSightSDK =>PUP.Optional.WebBar C:\ProgramData\ParetoLogic =>PUP.Optional.Paretologic C:\ProgramData\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter C:\ProgramData\SaveItCoupons =>PUP.Optional.Multiplug C:\ProgramData\surfkeepiTa =>PUP.Optional.Multiplug C:\ProgramData\WowCoUpON =>PUP.Optional.Multiplug C:\ProgramData\WPM =>PUP.Optional.WpManager C:\ProgramData\ZombieNews =>PUP.Optional.ZombieNews C:\Program Files\Common Files\ParetoLogic =>PUP.Optional.Paretologic C:\Users\jacky\AppData\Roaming\Activeris =>PUP.Optional.Activeris C:\Users\jacky\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect C:\Users\jacky\AppData\Roaming\Babylon =>PUP.Optional.Babylon C:\Users\jacky\AppData\Roaming\DriverCure =>PUP.Optional.Paretologic C:\Users\jacky\AppData\Roaming\ironsource =>PUP.Optional.Ironsource C:\Users\jacky\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch C:\Users\jacky\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock C:\Users\jacky\AppData\Roaming\ParetoLogic =>PUP.Optional.Paretologic C:\Users\jacky\AppData\Roaming\PriceMeterUpdater =>PUP.Optional.PriceMeter C:\Users\jacky\AppData\Roaming\RapidMediaConverter =>PUP.Optional.RapidMediaConverter C:\Users\jacky\AppData\Roaming\Store =>PUP.Optional.Nosibay C:\Users\jacky\AppData\Roaming\SupTab =>PUP.Optional.SupTab C:\Users\jacky\AppData\Roaming\Systweak =>PUP.Optional.Systweak C:\Users\jacky\AppData\Roaming\webssearches =>PUP.Optional.WebsSearches C:\Users\jacky\AppData\Local\Babylon =>PUP.Optional.Babylon C:\Users\jacky\AppData\Local\BoBrowser =>PUP.Optional.BoBrowser C:\Users\jacky\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser C:\Users\jacky\AppData\Local\CrashRpt =>.Legitimate.CrashReports C:\Users\jacky\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse C:\Users\jacky\AppData\Local\Doctor_PC =>PUP.Optional.DoctorPC C:\Users\jacky\AppData\Local\freeSOFTtoday =>PUP.Optional.FreeSoftToday C:\Users\jacky\AppData\Local\fst_fr_187 =>PUP.Optional.FreeSoftToday C:\Users\jacky\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\jacky\AppData\Local\gmsd_fr_005010011 =>PUP.Optional.CrossRider C:\Users\jacky\AppData\Local\gmsd_fr_005010050 =>PUP.Optional.CrossRider C:\Users\jacky\AppData\Local\gmsd_fr_306 =>PUP.Optional.CrossRider C:\Users\jacky\AppData\Local\PriceMeterLiveUpdate =>PUP.Optional.PriceMeter C:\Users\jacky\AppData\Local\RapidMediaConverter =>PUP.Optional.RapidMediaConverter C:\Users\jacky\AppData\Local\rec_fr_53 =>PUP.Optional.CrossRider C:\Users\jacky\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect C:\Users\jacky\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch C:\Users\jacky\AppData\Local\Torch =>PUP.Optional.Torch C:\Users\jacky\AppData\Local\Vosteran =>PUP.Optional.Vosteran C:\Users\jacky\AppData\Local\WebBar =>PUP.Optional.WebBar C:\Users\jacky\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rapid Media Converter =>PUP.Optional.RapidMediaConverter C:\Windows\Prefetch\GLOBALUPDATE.EXE-61A5F66C.pf =>PUP.Optional.GlobalUpdate C:\Windows\Prefetch\GLOBALUPDATECRASHHANDLER.EXE-FA9E3BB4.pf =>PUP.Optional.GlobalUpdate C:\Windows\Prefetch\PRICEMETERLIVEUPDATE.EXE-052551B2.pf =>PUP.Optional.PriceMeter C:\Windows\Prefetch\SMARTWEBAPP.EXE-25B5EF67.pf =>PUP.Optional.SmartWebSearch C:\Windows\Prefetch\SMARTWEBHELPER.EXE-066613BA.pf =>PUP.Optional.SmartWebSearch C:\Windows\Prefetch\UPGMSD_FR_005010011.EXE-D3DA24FB.pf =>PUP.Optional.CrossRider C:\Windows\System32\drivers\pcwatch.sys =>PUP.Optional.WebProtect C:\Windows\System32\drivers\ppfd_vt_1_10_0_21.sys =>PUP.Optional.Gen C:\Windows\System32\drivers\ppfd_vw_1_10_0_21.sys =>PUP.Optional.Gen HKLM\SYSTEM\CurrentControlSet\Services\MyOSProtect =>PUP.Optional.MyOSProtect C:\Program Files\PCTRunner\MyOSProtect.exe =>PUP.Optional.MyOSProtect HKLM\SYSTEM\CurrentControlSet\Services\pricemeterliveUpdatem =>PUP.Optional.PriceMeter HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.Optional.AdvancedSystemProtector HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\ConstaSurf_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\ConstaSurf_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\DizzyDing_RASAPI32 =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\DizzyDing_RASMANCS =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\FastPlayer_RASAPI32 =>PUP.Optional.FastPlayer HKLM\SOFTWARE\Microsoft\Tracing\FastPlayer_RASMANCS =>PUP.Optional.FastPlayer HKLM\SOFTWARE\Microsoft\Tracing\flvplayer update v13_RASAPI32 =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Microsoft\Tracing\flvplayer update v13_RASMANCS =>PUP.Optional.FLVPlayer HKLM\SOFTWARE\Microsoft\Tracing\GreenerWeb_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\GreenerWeb_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\JFileManager_RASAPI32 =>PUP.Optional.JFileManager HKLM\SOFTWARE\Microsoft\Tracing\JFileManager_RASMANCS =>PUP.Optional.JFileManager HKLM\SOFTWARE\Microsoft\Tracing\KrabWeb_RASAPI32 =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\KrabWeb_RASMANCS =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\MixVideoPlayer_RASAPI32 =>PUP.Optional.MixVideoPlayer HKLM\SOFTWARE\Microsoft\Tracing\MixVideoPlayer_RASMANCS =>PUP.Optional.MixVideoPlayer HKLM\SOFTWARE\Microsoft\Tracing\ScanTack_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\ScanTack_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\Smartbar_RASAPI32 =>PUP.Optional.SmartBar HKLM\SOFTWARE\Microsoft\Tracing\Smartbar_RASMANCS =>PUP.Optional.SmartBar HKLM\SOFTWARE\Microsoft\Tracing\SmarterPower_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\SmarterPower_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateConstaSurf_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateConstaSurf_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateDizzyDing_RASAPI32 =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\updateDizzyDing_RASMANCS =>PUP.Optional.DizzyDing HKLM\SOFTWARE\Microsoft\Tracing\updateGreenerWeb_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateGreenerWeb_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateKrabWeb_RASAPI32 =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\updateKrabWeb_RASMANCS =>PUP.Optional.KrabWeb HKLM\SOFTWARE\Microsoft\Tracing\updateScanTack_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateScanTack_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateSmarterPower_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\updateSmarterPower_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilConstaSurf_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilConstaSurf_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilScanTack_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilScanTack_RASMANCS =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilSmarterPower_RASAPI32 =>PUP.Optional.Sambreel HKLM\SOFTWARE\Microsoft\Tracing\utilSmarterPower_RASMANCS =>PUP.Optional.Sambreel ---\\ Récapitulatif des éléments trouvées sur votre station (102) - 0s http://www.nicolascoolman.fr/blog =>PUP.Optional.MiuiTab http://www.nicolascoolman.fr/blog =>PUP.Optional.Gen http://www.nicolascoolman.fr/pup-pricemeter/ =>PUP.Optional.PriceMeter http://www.nicolascoolman.fr/pup-groovorio/ =>PUP.Optional.Groovorio http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch http://www.nicolascoolman.fr/pup-helperbar/ =>PUP.Optional.HelperBar http://www.nicolascoolman.fr/pup-zootoolbar/ =>PUP.Optional.ZooToolbar http://www.nicolascoolman.fr/blog =>PUP.Optional.Shopperz http://www.nicolascoolman.fr/pup-ytdownloader/ =>PUP.Optional.YTDownloader http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.BubbleSound http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse http://www.nicolascoolman.fr/blog =>PUP.Optional.RapidMediaConverter http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR http://www.nicolascoolman.fr/trojan-bitcoinminer/ =>Trojan.BitCoinMiner http://www.nicolascoolman.fr/blog =>PUP.Optional.WebBar http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect http://www.nicolascoolman.fr/blog =>PUP.Optional.Paretologic http://www.nicolascoolman.fr/blog =>PUP.Optional.Vosteran http://www.nicolascoolman.fr/blog =>PUP.Optional.GamesDesktop http://www.nicolascoolman.fr/blog =>PUP.Optional.MediaDownloader http://www.nicolascoolman.fr/pup-smartwebsearch/ =>PUP.Optional.SmartWebSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.Graftor http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug http://www.nicolascoolman.fr/blog =>PUP.Optional.AdvertisingSupport http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask http://www.nicolascoolman.fr/pup-babylon/ =>PUP.Optional.Babylon http://www.nicolascoolman.fr/blog =>PUP.Optional.Boost http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/pup-dealply/ =>PUP.Optional.Dealply http://www.nicolascoolman.fr/blog =>PUP.Optional.DriverRestore http://www.nicolascoolman.fr/blog =>PUP.Optional.EZSoftwareUpdater http://www.nicolascoolman.fr/blog =>PUP.Optional.FastSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.FlashBeat http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBooster http://www.nicolascoolman.fr/blog =>PUP.Optional.Infonaut http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch http://www.nicolascoolman.fr/blog =>PUP.Optional.WebProtect http://www.nicolascoolman.fr/blog =>PUP.Optional.QuickRef http://www.nicolascoolman.fr/rogue-reimagerepair/ =>PUP.Optional.ReImageRepair http://www.nicolascoolman.fr/pup-suprasavings/ =>PUP.Optional.SupraSavings http://www.nicolascoolman.fr/rogue-pcspeedup/ =>PUP.Optional.PCSpeedUp http://www.nicolascoolman.fr/blog =>PUP.Optional.StormWatch http://www.nicolascoolman.fr/pup-superClick/ =>PUP.Optional.SuperClick http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager http://www.nicolascoolman.fr/pup-systemk/ =>PUP.Optional.SystemK http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Optional.Systweak http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive http://www.nicolascoolman.fr/blog =>PUP.Optional.Uniblue http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam http://www.nicolascoolman.fr/hijacker-webssearches/ =>PUP.Optional.WebsSearches http://www.nicolascoolman.fr/blog =>PUP.Optional.WordProser http://www.nicolascoolman.fr/pup-wordshark/ =>PUP.Optional.WordShark http://www.nicolascoolman.fr/blog =>PUP.Optional.WordSurfer http://www.nicolascoolman.fr/pup-1clickdownloader/ =>PUP.Optional.1ClickDownloader http://www.nicolascoolman.fr/blog =>PUP.Optional.BoBrowser http://www.nicolascoolman.fr/blog =>PUP.Optional.CleanerPro http://www.nicolascoolman.fr/blog =>PUP.Optional.ClientConnect http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowser http://www.nicolascoolman.fr/pup-genesis/ =>PUP.Optional.Genesis http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar http://www.nicolascoolman.fr/adware-spointer/ =>PUP.Optional.SPointer http://www.nicolascoolman.fr/pup-optimizerpro/ =>PUP.Optional.OptimizerPro http://www.nicolascoolman.fr/rogue-pcspeedmaximizer/ =>PUP.Optional.PCSpeedMaximizer http://www.nicolascoolman.fr/blog =>PUP.Optional.ProPCCleaner http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater http://www.nicolascoolman.fr/blog =>PUP.Optional.SuperOptimizer http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork http://www.nicolascoolman.fr/pup-vittalia/ =>PUP.Optional.Vittalia http://www.nicolascoolman.fr/pup-blockandsurf/ =>PUP.Optional.BlockAndSurf http://www.nicolascoolman.fr/blog =>PUP.Optional.DynConIE http://www.nicolascoolman.fr/pup-remarkit/ =>PUP.Optional.ReMarkIt http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware http://www.nicolascoolman.fr/trojan-sprotector/ =>Trojan.SProtector http://www.nicolascoolman.fr/blog =>PUP.Optional.ZombieNews http://www.nicolascoolman.fr/pup-activeris/ =>PUP.Optional.Activeris http://www.nicolascoolman.fr/blog =>PUP.Optional.Ironsource http://www.nicolascoolman.fr/pup-bubbledock/ =>PUP.Optional.BubbleDock http://www.nicolascoolman.fr/blog =>PUP.Optional.ChromaticBrowser http://www.nicolascoolman.fr/blog =>.Legitimate.CrashReports http://www.nicolascoolman.fr/blog =>PUP.Optional.DoctorPC http://www.nicolascoolman.fr/adware-freesofttoday/ =>PUP.Optional.FreeSoftToday http://www.nicolascoolman.fr/blog =>PUP.Optional.Torch http://www.nicolascoolman.fr/pup-jfilemanager/ =>PUP.Optional.JFileManager http://www.nicolascoolman.fr/blog =>PUP.Optional.MyOSProtect http://www.nicolascoolman.fr/pup-advancedsystemprotector/ =>PUP.Optional.AdvancedSystemProtector http://www.nicolascoolman.fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup http://www.nicolascoolman.fr/blog =>PUP.Optional.Sambreel http://www.nicolascoolman.fr/blog =>PUP.Optional.DizzyDing http://www.nicolascoolman.fr/blog =>PUP.Optional.FastPlayer http://www.nicolascoolman.fr/blog =>PUP.Optional.FLVPlayer http://www.nicolascoolman.fr/pup-krabweb/ =>PUP.Optional.KrabWeb http://www.nicolascoolman.fr/blog =>PUP.Optional.MixVideoPlayer ~ End of the scan, 20662 items in 705 seconds (1284)(0)()