~ ZHPDiag v2015.8.8.113 Par Nicolas Coolman (2015/08/8) ~ Démarré par Admin (Administrator) (2015/08/09 02:08:11) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Admin\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Admin\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v44.0.2403.130 MFIE: Mozilla Firefox 39.0.3 (x86 en-US) v39.0.3 MSIE: Internet Explorer v11.0.9600.17914 ---\\ Informations sur les produits Windows (4) - 16s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Logiciels de protection (1) - 1s Malwarebytes' Anti-Malware ---\\ Surveillance de Logiciels (1) - 1s Adobe Flash Player 18 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3665.22 MB (46% free) ~ System Restore: Activé (Enable) ~ System drive C: has 10 GB free of 76 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ADMIN-PC ~ User Name: Admin ~ Logged in as Administrator ---\\ Enumération des unités disques (5) - 0s ~ Drive C: has 10 GB free of 76 GB (System) ~ Drive D: has GB free of 2 GB ~ Drive E: has 16 GB free of 39 GB ~ Drive F: has 8 GB free of 33 GB ~ Drive G: has 1 GB free of 2 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (24) - 5s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320] [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256] [MD5.63B01F72FD727D5736DBEF54174D8F93] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1951232] [MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128] [MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536] [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944] [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584] [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656] [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544] [MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336] [MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544] [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896] [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888] [MD5.01C5B803F6E1FDF8F16F0763DA9B997D] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [124416] [MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904] [MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352] [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] [MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632] [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168] [MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752] [MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632] ---\\ Processus lancés (17) - 3s [MD5.4DC6B0772D1698F04FC79053A21C8260] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Windows\System32\AEADISRV.EXE [90112] [PID.1700] [MD5.73B0195E0405051CC2B69E84EC3F64D1] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [731840] [PID.1768] [MD5.26EABEEA7F30DCF21DA0577C4EE26FAA] - (.Foxit Corporation - Foxit Cloud Safe Update Service.) -- C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [242216] [PID.1804] [MD5.2ECE62321739623F52BB28AE0EBBC2D1] - (.XTab system - ProtectSvc.exe.) -- C:\Program Files\MiuiTab\ProtectService.exe [125056] [PID.1832] =>PUP.Optional.MiuiTab [MD5.1011C779C9FCD01AFA96490C86A50421] - (.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625304] [PID.1992] [MD5.360959BBD4F451E1AB811F4304232766] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [2568120] [PID.1164] [MD5.201E7AE2E2B101DC0844426097D298B8] - (.Dyn - A fully-featured cross platform DDNS update.) -- C:\Program Files\Dyn\Updater\dyn_updater.exe [1639216] [PID.660] [MD5.AFD15F701B550037FFDDE6B18171479D] - (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe [1314816] [PID.2984] [MD5.B7D90AF207653B8DADD4400F199EA687] - (.TeVii Technology Ltd. - TeVii Remote Control.) -- C:\Windows\TeViiRC.exe [328328] [PID.3000] [MD5.6E8357E50213A7E4B424F23F4102E0DA] - (.Cracked By Wh!5teR - ESET GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [2029640] [PID.3128] [MD5.F152A1C1F9CE2F13056D3BFB14F001CE] - (.Copyright (C) 2008 - AutoDect.) -- C:\Program Files\Internet Haut Débit Mobile\AutoDect.exe [128864] [PID.3232] [MD5.D447736259F18CBCA9E4CE09465CBB5D] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3829328] [PID.3280] [MD5.AEA5738E8CCEB85267861F304B9993A7] - (.TechSmith Corporation - SnagIt 8.) -- C:\Program Files\TechSmith\SnagIt 8\SnagIt32.exe [5517312] [PID.2276] [MD5.BD95E822E7A958BBCA842D078426A151] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [269848] [PID.6020] [MD5.2E50426D295B53935BB196CC63EC0313] - (.PandoraTV - .) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe [586904] [PID.6080] [MD5.10576CF2D993DC84FEAE185637A7E65C] - (.TechSmith Corporation - TechSmith HTML Help Helper.) -- C:\Program Files\TechSmith\SnagIt 8\TscHelp.exe [26112] [PID.6116] ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (12) - 0s G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cknebhggccemgcnbidipinkifmmegdel] Alexa Traffic Rank G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [eknmbllaehgdgginmokmkipolodpcnap] pricechiop =>PUP.Optional.Multiplug G2 - GCE: Preference [User Data\Default] [eoeocmdmhhgcmamcogoldekhicehiadi] NExxtCoup =>PUP.Optional.Multiplug G2 - GCE: Preference [User Data\Default] [fhpgipeghaccffbhgkjmooieflpoieef] __MSG_application_title__ G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (22) - 2s M0 - MFSP: prefs.js [Admin - bdcsbn63.default] http://www.delta-homes.com/?type=hp&ts=1434015348&z=c51640455ea9487593e8149g5z6c9zbe9gewbcbw6o&from=ient06110&uid=SAMSUNGXHD083GJ_S1VBJ9ASC10210C10210X =>PUP.Optional.Qvo6 P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\defsearchp@gmail.com.xpi =>PUP.Optional.PriceFountain P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\searchplugins\delta-homes.xml =>PUP.Optional.DeltaHomes P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\amazondotcom.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\eBay.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\twitter.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\wikipedia.xml P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (.lightningnewtab.com - Default NewTab.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\default_newtabff@gmail.com =>PUP.Optional.LightningNewTab P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Users\Admin\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Users\Admin\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_18_0_0_209.dll P2 - FPN: [HKLM] [@DVR/npmedia,version=33.2.0.4] - (...) -- C:\Program Files\webrec\WEB30\DVR32\33.2.0.4\npmedia.dll P2 - FPN: [HKLM] [@DVR/npTimeGrid,version=33.2.0.4] - (...) -- C:\Program Files\webrec\WEB30\DVR32\33.2.0.4\npTimeGrid.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf] - (.Foxit Corporation.) -- C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (11) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer, Proxy Management (R5) (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (24) ---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} . (.TechSmith Corporation - SnagIt Browser Helper Object for Internet E.) -- C:\Program Files\TechSmith\SnagIt 8\SnagItBHO.dll O2 - BHO: LuckyTab Class - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} . (.Thinknice Co. Limited - SupTab setup package.) -- C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab ---\\ Internet Explorer Toolbars (O3) (1) - 0s O3 - Toolbar: (no name) - [HKLM]{8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} (Orphean) ---\\ Applications lancées au démarrage du sytème (O4) (41) - 2s O4 - HKLM\..\Run: [SoundMAXPnP] . (.Analog Devices, Inc. - SMax4PNP.) -- C:\Program Files\Analog Devices\Core\smax4pnp.exe O4 - HKLM\..\Run: [TeViiRC] . (.TeVii Technology Ltd. - TeVii Remote Control.) -- C:\Windows\TeViiRC.exe O4 - HKLM\..\Run: [NeroFilterCheck] . (.Nero AG - NeroCheck.) -- C:\Windows\System32\NeroCheck.exe O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe O4 - HKLM\..\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe O4 - HKLM\..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe (.not file.) =>PUP.Optional.Mobogenie O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe O4 - HKLM\..\Run: [egui] . (.Cracked By Wh!5teR - ESET GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- c:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe O4 - HKLM\..\Run: [DivXMediaServer] . (.DivX, LLC - DivX DLNA Media Server.) -- C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe O4 - HKLM\..\Run: [DivXUpdate] . (.© Copyright 2000 - 2011 DivX, LLC - DivX Update.) -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe O4 - HKLM\..\Run: [NPSStartup] (Orphean) O4 - HKLM\..\Run: [autodetect] . (.Copyright (C) 2008 - AutoDect.) -- C:\Program Files\Internet Haut Débit Mobile\AutoDect.exe O4 - HKLM\..\Run: [bintin] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [Google Update] C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) O4 - HKCU\..\Run: [NextLive] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files\Steam\Steam.exe O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKCU\..\Run: [urlspace] C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.) O4 - HKCU\..\RunOnce: [BeginInteractiveOSUpgrade] . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\spreview.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Google Update] C:\Users\Admin\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [NextLive] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files\Steam\Steam.exe O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\Run: [urlspace] C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.) O4 - HKUS\S-1-5-21-1076428414-641238508-383798790-1000\..\RunOnce: [BeginInteractiveOSUpgrade] . (.Microsoft Corporation - Windows Update.) -- C:\Windows\System32\wuauclt.exe ---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Liste des services NT non Microsoft et non désactivés (O23) (16) - 1s O23 - Service: Andrea ADI Filters Service (AEADIFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Windows\System32\AEADISRV.EXE O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe O23 - Service: Dyn Updater (DynUpdater) . (.Dyn - A fully-featured cross platform DDNS update.) - C:\Program Files\Dyn\Updater\dyn_updater.exe O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe O23 - Service: Foxit Cloud Safe Update Service (FoxitCloudUpdateService) . (.Foxit Corporation - Foxit Cloud Safe Update Service.) - C:\Program Files\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.7.) - C:\Windows\System32\nvvsvc.exe O23 - Service: PandoraService (PanService) . (.Pandora.TV - Pandora.TV service file.) - C:\Program Files\PANDORA.TV\PanService\PandoraService.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: TeamViewer 9 (TeamViewer9) . (.TeamViewer GmbH - TeamViewer 9.) - C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe ---\\ Tâches planifiées en automatique (O39) (17) - 3s O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1054] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1058] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000Core.job [1026] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000UA.job [1078] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3802] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4054] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000Core [3656] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1076428414-641238508-383798790-1000UA [4052] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\LaunchSignup [4014] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\SidebarExecute [3148] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{53D1B0B1-F593-4DFB-B896-4CC09B5EC859} [3232] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{6F8D9A46-F6BD-4C0D-B87E-D86A922458E2} [3130] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{88D357DA-8EBB-4490-B9E6-810117A9A75E} [3234] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{CE144174-013B-4121-9BBC-4DB55DD072EE} [3156] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{F132D93A-CC80-4399-9D3E-6AD8EEDDB3AD} [3150] ---\\ Logiciels installés (O42) (99) - 12s O42 - Logiciel: Pandora Service - (.Pandora.TV.) [HKLM] -- 4F6D5E84-5826-4394-9F40-3A9A19165651_is1 O42 - Logiciel: AC3Filter 2.6.0b - (.Alexander Vigovsky.) [HKLM] -- AC3Filter_is1 O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI O42 - Logiciel: Adobe Photoshop 7.0 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Photoshop 7.0 O42 - Logiciel: Advanced RAR Password Recovery (remove only) - (...) [HKLM] -- Advanced RAR Password Recovery O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM] -- AIMP3 O42 - Logiciel: bitcontrol® Digital TV Link v2.5 - (.BitCtrl Systems GmbH.) [HKLM] -- bcDTVLink O42 - Logiciel: bitcontrol® MPEG-2 Video Decoder v1.5 - (.BitCtrl Systems GmbH.) [HKLM] -- bcMPEG2dec O42 - Logiciel: Configuration DivX - (.DivX, LLC.) [HKLM] -- DivX Setup O42 - Logiciel: DVB Dream version 2.7.1 - (...) [HKLM] -- DVB Dream_is1 O42 - Logiciel: Elecard AVC HD Editor - (.Elecard.) [HKLM] -- Elecard AVC HD Editor 1.0.100705 O42 - Logiciel: Elecard AVC HD Player - (.Elecard.) [HKLM] -- Elecard AVC HD Player 5.8.121004 O42 - Logiciel: Elecard AVC PlugIn for ProgDVB - (.Elecard.) [HKLM] -- Elecard AVC PlugIn for ProgDVB 3.0.120718 O42 - Logiciel: Elecard AVC PlugIn for WMP - (.Elecard.) [HKLM] -- Elecard AVC PlugIn for WMP 3.1.120718 O42 - Logiciel: Elecard Stream Inspector - (.Elecard.) [HKLM] -- Elecard Stream Inspector 1.2.110811 O42 - Logiciel: Fausto - (...) [HKLM] -- Fausto O42 - Logiciel: ffdshow v1.3.4531 [2014-06-28] - (...) [HKLM] -- ffdshow_is1 O42 - Logiciel: FileZilla Client 3.10.0.2 - (.Tim Kosse.) [HKLM] -- FileZilla Client O42 - Logiciel: FormatFactory 3.6.0.0 - (.Format Factory.) [HKLM] -- FormatFactory O42 - Logiciel: Foxit Reader - (.Foxit Corporation.) [HKLM] -- Foxit Reader_is1 O42 - Logiciel: GOM Player - (.Gretech Corporation.) [HKLM] -- GOM Player O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome O42 - Logiciel: HD Pack 2.6 - (...) [HKLM] -- HD Pack O42 - Logiciel: HD Pack 2.7 - (...) [HKLM] -- HD Pack 2.7 O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM] -- InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager O42 - Logiciel: K-Lite Codec Pack 10.1.5 Full - (...) [HKLM] -- KLiteCodecPack_is1 O42 - Logiciel: LAV Filters 0.65 - (.Hendrik Leppkes.) [HKLM] -- lavfilters_is1 O42 - Logiciel: Lazesoft Recover My Password version 3.2 Home Edition - (.Lazesoft.) [HKLM] -- LS-C4DC987A-47E2-487C-9F63-7E1DB5F88FC3_is1 O42 - Logiciel: Malwarebytes' Anti-Malware - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1 O42 - Logiciel: Mozilla Firefox 39.0.3 (x86 en-US) - (.Mozilla.) [HKLM] -- Mozilla Firefox 39.0.3 (x86 en-US) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService O42 - Logiciel: myTeVii - (...) [HKLM] -- MyTeVii O42 - Logiciel: No-IP DUC - (.Vitalwerks Internet Solutions LLC.) [HKLM] -- NoIPDUC O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo O42 - Logiciel: OSForensics - (.PassMark Software.) [HKLM] -- OSForensics_is1 O42 - Logiciel: Recover My Files - (.GetData Pty Ltd.) [HKLM] -- Recover My Files v5_is1 O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM] -- Steam O42 - Logiciel: TeamViewer 9 - (.TeamViewer.) [HKLM] -- TeamViewer 9 O42 - Logiciel: TeViiData - (...) [HKLM] -- TeViiData O42 - Logiciel: KMPlayer (remove only) - (.PandoraTV.) [HKLM] -- The KMPlayer O42 - Logiciel: Connexion par le Web au Bureau à distance - (...) [HKLM] -- TsActiveXClient O42 - Logiciel: Pro Evolution Soccer 2015 Update v1.05 - (...) [HKLM] -- UHJvRXZvbHV0aW9uU29jY2VyMjAxNQ==_is1 O42 - Logiciel: UltraISO Premium V9.6 - (...) [HKLM] -- UltraISO_is1 O42 - Logiciel: URL Helper - (...) [HKLM] -- URL Helper_is1 O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: WinPcap 4.1.1 - (.CACE Technologies.) [HKLM] -- WinPcapInst O42 - Logiciel: WinRAR 4.01 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: WinSCP 4.2.8 - (.Martin Prikryl.) [HKLM] -- winscp3_is1 O42 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 O42 - Logiciel: SnagIt 8 - (.TechSmith Corporation.) [HKLM] -- {0AEA9ECE-2AD0-4DF0-932E-F0AC6B771749} O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM] -- {196467F1-C11F-4F76-858B-5812ADC83B94} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} O42 - Logiciel: Skype™ 7.1 - (.Skype Technologies S.A..) [HKLM] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Java 8 Update 40 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218040F0} O42 - Logiciel: SimpleTV 0.4.7 b2 - (.SergeyVS.) [HKLM] -- {290A2821-B1F8-4566-B49A-25F349A5B5CB}_is1 O42 - Logiciel: MyLanViewer version 4.18.6 - (.S.K. Software.) [HKLM] -- {2D933C82-63E9-4640-A1EF-08E38F0CF4C2}_is1 O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F} O42 - Logiciel: Remote Desktop Connection - (.Microsoft.) [HKLM] -- {3E713D52-C967-41FB-AA24-3A92CC1025A4} O42 - Logiciel: Foxit Cloud - (.Foxit Corporation.) [HKLM] -- {41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1 O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} O42 - Logiciel: Camtasia Studio 8 - (.TechSmith Corporation.) [HKLM] -- {5303CFB5-D635-44F0-A94B-9611E81F07C4} O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} O42 - Logiciel: Pro Evolution Soccer 2014 - (.KONAMI.) [HKLM] -- {5EFD3544-2371-4900-8ACA-F157BA80FB0C} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: RAR Password Unlocker - (.RAR Password Unlocker, Inc..) [HKLM] -- {69B77D45-F5AD-4AB9-933D-352703324469}_is1 O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {80407BA7-7763-4395-AB98-5233F1B34E65} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F} O42 - Logiciel: Internet Haut Débit Mobile - (...) [HKLM] -- {93D34EE3-99B3-4DB1-8B0A-0A657466F90D} O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM] -- {A33E42AC-6A09-4373-96AA-B2806431A938} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Kingo ROOT version 1.3.6.2289 - (.Kingosoft Technology Ltd..) [HKLM] -- {AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1 O42 - Logiciel: NVIDIA Pilote 3D Vision 341.74 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision O42 - Logiciel: NVIDIA Pilote graphique 341.74 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA GeForce Experience 1.8.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 340.50 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB O42 - Logiciel: NVIDIA Logiciel système PhysX 9.13.1220 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA Virtual Audio 1.2.19 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044} O42 - Logiciel: Dyn Updater - (.Dyn.) [HKLM] -- {B855EFCD-9CD5-4F96-ADDC-8DA28364389E} O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM] -- {B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} O42 - Logiciel: LG Connection Manager - (.LGE.) [HKLM] -- {BBF60130-FB99-4909-B0F3-A511F25E13A9} O42 - Logiciel: CCcamInfoPHP v0.8.6 (DT6) - (.Zegato/DragTeam.) [HKLM] -- {BFB382CC-0A92-4A40-B6D1-4E72E0E6D2D1} O42 - Logiciel: LG Wireless USB Modem Driver - (.LG Electronics.) [HKLM] -- {C4C4642E-B5E3-4044-A3E6-BD997FF6F72E} O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Ma-Config.com - (.Cybelsoft.) [HKLM] -- {E896BE27-5592-4B33-A8EB-47737524886A} O42 - Logiciel: SoundMAX - (.Analog Devices.) [HKLM] -- {F0A37341-D692-11D4-A984-009027EC0A9C} O42 - Logiciel: SmartDVB - (.SmartWARE.) [HKLM] -- {FB5DB39C-3201-4082-BB88-F0D0C8D3B29B} O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU] -- PhotoFiltre Studio X O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent O42 - Logiciel: XBMC - (.Team XBMC.) [HKCU] -- XBMC O42 - Logiciel: Atraci 0.6.5 - (.Atraci Team.) [HKCU] -- {F4B2C5C1-F084-4858-B9C3-E641F5C12BBC}_is1 ---\\ HKCU & HKLM Software Keys (210) - 12s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AGEIA Technologies HKLM\SOFTWARE\Ahead HKLM\SOFTWARE\Analog Devices HKLM\SOFTWARE\Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\AviSynth HKLM\SOFTWARE\CM&V HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\cybelsoft HKLM\SOFTWARE\Cyberlink HKLM\SOFTWARE\Cygwin HKLM\SOFTWARE\DC-Unlocker HKLM\SOFTWARE\Debug HKLM\SOFTWARE\delta-homesSoftware =>PUP.Optional.DeltaHomes HKLM\SOFTWARE\Disc Soft HKLM\SOFTWARE\DivX HKLM\SOFTWARE\DVB Support HKLM\SOFTWARE\DVBDream HKLM\SOFTWARE\EA Games HKLM\SOFTWARE\EA Sports HKLM\SOFTWARE\EasyBoot Systems HKLM\SOFTWARE\Elcom HKLM\SOFTWARE\Elecard HKLM\SOFTWARE\EliteDVB HKLM\SOFTWARE\ESET HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\FileZilla 3 HKLM\SOFTWARE\FileZilla Client HKLM\SOFTWARE\Foxit Software HKLM\SOFTWARE\Freemake HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\GRETECH HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Icaros HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\IM Providers HKLM\SOFTWARE\InstalledOptions HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\Internet Haut Débit Mobile HKLM\SOFTWARE\InterVideo HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\Khronos HKLM\SOFTWARE\KLCodecPack HKLM\SOFTWARE\KMPlayer HKLM\SOFTWARE\KONAMI HKLM\SOFTWARE\LAV HKLM\SOFTWARE\Lazesoft HKLM\SOFTWARE\LG Electronics HKLM\SOFTWARE\LGE HKLM\SOFTWARE\Licenses HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Malwarebytes' Anti-Malware HKLM\SOFTWARE\MarkAny HKLM\SOFTWARE\Martin Prikryl HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MyLanViewer HKLM\SOFTWARE\Nero HKLM\SOFTWARE\Notepad++ HKLM\SOFTWARE\NVIDIA Corporation HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Opera Software HKLM\SOFTWARE\Pandora.TV HKLM\SOFTWARE\PIP =>Toolbar.Ask HKLM\SOFTWARE\Prog HKLM\SOFTWARE\Protexis HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\S3R521 HKLM\SOFTWARE\Saar Software HKLM\SOFTWARE\SAMSUNG HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SmartSound Software HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\SonicFocus HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager HKLM\SOFTWARE\TeamViewer HKLM\SOFTWARE\TechSmith HKLM\SOFTWARE\TeVii HKLM\SOFTWARE\TuneUp HKLM\SOFTWARE\Valve HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Vitalia HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\vPlug HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches HKLM\SOFTWARE\WIBU-SYSTEMS HKLM\SOFTWARE\WinPcap HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\Z3X HKLM\SOFTWARE\ZTEUSBDriverFlag HKCU\SOFTWARE\%CompanyFullName% HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader HKCU\SOFTWARE\2X HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\Analog Devices HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Avast Software HKCU\SOFTWARE\AVS HKCU\SOFTWARE\BitCtrl Systems GmbH HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\BST HKCU\SOFTWARE\ched HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit HKCU\SOFTWARE\Corel HKCU\SOFTWARE\Cyberlink HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\Defiant Technologies HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DivX HKCU\SOFTWARE\DivXNetworks HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\DreamMultimedia HKCU\SOFTWARE\DRPSu Updater HKCU\SOFTWARE\DSS HKCU\SOFTWARE\Dyn HKCU\SOFTWARE\EasyBoot Systems HKCU\SOFTWARE\Elcom HKCU\SOFTWARE\Elecard HKCU\SOFTWARE\ESET HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GetData HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\GRETECH HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstallCore =>PUP.Optional.InstallCore HKCU\SOFTWARE\InterVideo HKCU\SOFTWARE\Jactek HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\KMPlayer HKCU\SOFTWARE\LAV HKCU\SOFTWARE\LG Connection Manager HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Martin Prikryl HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Mixesoft HKCU\SOFTWARE\Mobileleader HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\MTK HKCU\SOFTWARE\MyLanViewer HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewBlue HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PhotoFiltre Studio X HKCU\SOFTWARE\ProtectedData HKCU\SOFTWARE\RealVNC HKCU\SOFTWARE\rejetto HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SimonTatham HKCU\SOFTWARE\SimpleTV by SergeyVS#3 HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SmartWARE HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\SOG HKCU\SOFTWARE\SourceForge HKCU\SOFTWARE\SupHpUISoft =>PUP.Optional.CrossRider HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\TeVii HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\URLHelper HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VideoLAN HKCU\SOFTWARE\Vitalwerks HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\XBMC HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\Zegato/DragTeam HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (O43) (333) - 14s O43 - CFD: 2015/06/16 00:56:32 - [] D -- C:\Program Files\AC3Filter O43 - CFD: 2014/03/07 14:47:27 - [] D -- C:\Program Files\Adobe O43 - CFD: 2015/05/23 09:54:13 - [0] D -- C:\Program Files\AGEIA Technologies O43 - CFD: 2015/04/19 10:59:05 - [] D -- C:\Program Files\AIMP3 O43 - CFD: 2013/06/10 17:03:26 - [] D -- C:\Program Files\Analog Devices O43 - CFD: 2014/03/17 21:50:21 - [] D -- C:\Program Files\CodeMeter O43 - CFD: 2015/05/08 17:03:11 - [] D -- C:\Program Files\Common Files O43 - CFD: 2014/05/31 15:16:16 - [] D -- C:\Program Files\DivX O43 - CFD: 2014/05/04 20:38:35 - [] D -- C:\Program Files\DragTeam O43 - CFD: 2014/04/21 23:15:10 - [] D -- C:\Program Files\DVBViewer O43 - CFD: 2013/12/18 11:04:47 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 2014/04/26 12:42:44 - [] D -- C:\Program Files\Dyn O43 - CFD: 2013/12/28 11:40:34 - [] D -- C:\Program Files\ElcomSoft O43 - CFD: 2014/01/04 16:16:28 - [] D -- C:\Program Files\Elecard O43 - CFD: 2013/12/18 02:43:11 - [] D -- C:\Program Files\ESET O43 - CFD: 2014/01/14 13:47:33 - [] D -- C:\Program Files\Fausto O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2015/01/19 09:30:44 - [] D -- C:\Program Files\FileZilla FTP Client O43 - CFD: 2014/08/15 23:31:11 - [] D -- C:\Program Files\Foxit Software O43 - CFD: 2013/12/18 02:52:16 - [] D -- C:\Program Files\FreeTime O43 - CFD: 2014/03/17 21:50:17 - [] D -- C:\Program Files\GetData O43 - CFD: 2014/10/08 22:35:13 - [] D -- C:\Program Files\Google O43 - CFD: 2015/04/21 22:22:25 - [] D -- C:\Program Files\GRETECH O43 - CFD: 2013/12/18 17:43:33 - [] D -- C:\Program Files\HD Pack 2.7 O43 - CFD: 2015/05/23 15:20:00 - [] D -- C:\Program Files\HTC O43 - CFD: 2015/04/23 11:28:53 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2015/04/13 10:22:21 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 2015/07/15 17:53:47 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2014/10/11 00:26:50 - [] D -- C:\Program Files\Internet Haut Débit Mobile O43 - CFD: 2015/03/04 02:48:37 - [] D -- C:\Program Files\Java O43 - CFD: 2013/12/18 20:28:23 - [] D -- C:\Program Files\K-Lite Codec Pack O43 - CFD: 2015/05/23 15:20:50 - [] D -- C:\Program Files\Kingo ROOT O43 - CFD: 2015/06/16 00:39:57 - [] D -- C:\Program Files\LAV Filters O43 - CFD: 2014/08/24 23:36:15 - [] D -- C:\Program Files\Lazesoft Recover My Password O43 - CFD: 2015/04/23 11:28:11 - [] D -- C:\Program Files\LG Connection Manager O43 - CFD: 2015/04/23 11:28:53 - [] D -- C:\Program Files\LG Electronics O43 - CFD: 2015/04/24 01:21:04 - [] D -- C:\Program Files\ma-config.com O43 - CFD: 2013/12/18 02:52:48 - [] D -- C:\Program Files\Malwarebytes' Anti-Malware O43 - CFD: 2014/10/10 12:52:23 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/05/14 09:17:49 - [] D -- C:\Program Files\Microsoft Silverlight O43 - CFD: 2014/03/04 15:01:36 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 2013/12/18 14:16:14 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 2013/12/18 14:14:36 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2014/03/05 15:01:43 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2013/12/18 14:15:56 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2015/07/01 23:58:39 - [] D -- C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab O43 - CFD: 2013/12/20 16:08:21 - [] D -- C:\Program Files\Mobogenie =>PUP.Optional.Mobogenie O43 - CFD: 2015/08/08 00:50:56 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2015/08/08 08:20:09 - [] D -- C:\Program Files\Mozilla Maintenance Service O43 - CFD: 2013/12/18 14:16:22 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2014/03/10 14:54:37 - [] D -- C:\Program Files\MSXML 4.0 O43 - CFD: 2015/03/25 00:09:38 - [] D -- C:\Program Files\MyLanViewer O43 - CFD: 2014/06/30 17:20:22 - [] D -- C:\Program Files\No-IP O43 - CFD: 2014/09/26 07:17:25 - [] D -- C:\Program Files\Notepad++ O43 - CFD: 2015/07/30 10:16:43 - [] D -- C:\Program Files\NVIDIA Corporation O43 - CFD: 2015/06/09 11:19:49 - [] D -- C:\Program Files\Opera O43 - CFD: 2015/05/01 11:31:02 - [] D -- C:\Program Files\OSForensics O43 - CFD: 2013/06/10 17:02:23 - [] D -- C:\Program Files\PANDORA.TV O43 - CFD: 2013/12/18 14:46:42 - [] D -- C:\Program Files\PhotoFiltre Studio X O43 - CFD: 2014/03/10 00:52:36 - [] D -- C:\Program Files\QuickTime O43 - CFD: 2014/10/13 10:26:07 - [] D -- C:\Program Files\RAR Password Unlocker O43 - CFD: 2009/07/14 05:52:30 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2014/06/06 21:42:17 - [] D -- C:\Program Files\Samsung O43 - CFD: 2015/08/04 01:52:38 - [] D -- C:\Program Files\SimpleTV O43 - CFD: 2015/02/25 01:39:10 - [] RD -- C:\Program Files\Skype O43 - CFD: 2014/03/10 00:50:15 - [] D -- C:\Program Files\SmartSound Software O43 - CFD: 2015/08/08 23:27:51 - [] D -- C:\Program Files\Steam O43 - CFD: 2014/06/15 13:52:08 - [] D -- C:\Program Files\StreamingStar O43 - CFD: 2015/04/03 22:43:21 - [] D -- C:\Program Files\SupTab =>PUP.Optional.SupTab O43 - CFD: 2014/08/18 22:35:51 - [] D -- C:\Program Files\TeamViewer O43 - CFD: 2014/10/07 22:25:53 - [] D -- C:\Program Files\TechSmith O43 - CFD: 2013/12/20 15:47:39 - [] D -- C:\Program Files\UltraISO O43 - CFD: 2014/01/23 13:28:57 - [] D -- C:\Program Files\uTorrent O43 - CFD: 2014/01/06 02:46:33 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2013/12/18 14:39:13 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2015/05/14 03:38:44 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2015/03/14 00:55:02 - [] D -- C:\Program Files\Windows Live O43 - CFD: 2013/12/18 11:04:47 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/06/10 15:13:56 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2013/06/10 16:58:00 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2013/12/18 11:04:46 - [] D -- C:\Program Files\Windows Photo Viewer O43 - CFD: 2013/12/18 11:04:46 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2013/12/18 11:04:47 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2014/06/15 13:53:31 - [] D -- C:\Program Files\WinPcap O43 - CFD: 2013/06/10 17:04:32 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2013/12/18 00:11:13 - [] D -- C:\Program Files\WinSCP O43 - CFD: 2014/06/07 11:59:54 - [] D -- C:\Program Files\XBMC O43 - CFD: 2014/01/12 01:05:49 - [] D -- C:\Program Files\ZHPDiag O43 - CFD: 2015/06/16 00:56:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter O43 - CFD: 2013/06/10 14:56:00 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2013/06/10 14:56:01 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2013/12/28 11:40:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced RAR Password Recovery O43 - CFD: 2015/04/19 10:59:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3 O43 - CFD: 2014/04/27 22:44:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AltDVB O43 - CFD: 2014/08/17 18:02:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\bitcontrol O43 - CFD: 2014/03/18 22:17:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BYclouder Samsung Phone Data Recovery O43 - CFD: 2014/05/31 15:15:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX O43 - CFD: 2015/03/29 18:49:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVB Dream O43 - CFD: 2015/06/15 19:46:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVB Dream1 O43 - CFD: 2013/12/18 02:07:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVB Support O43 - CFD: 2014/09/25 20:30:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dyn Updater O43 - CFD: 2014/01/04 16:19:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elecard O43 - CFD: 2013/12/25 14:45:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elips Corporation O43 - CFD: 2013/12/18 02:43:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET O43 - CFD: 2014/01/14 13:47:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fausto O43 - CFD: 2015/06/16 00:51:37 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow O43 - CFD: 2015/01/19 09:30:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 2014/08/15 23:31:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF O43 - CFD: 2014/08/15 23:13:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader O43 - CFD: 2015/04/01 05:53:10 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/04/21 22:22:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player O43 - CFD: 2014/10/08 22:35:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2013/12/18 11:58:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Pack 2.7 O43 - CFD: 2014/04/14 23:34:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2014/10/10 23:52:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Haut Débit Mobile O43 - CFD: 2015/03/04 02:47:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2013/12/18 20:28:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2015/05/23 15:17:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT O43 - CFD: 2015/06/16 00:39:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters O43 - CFD: 2014/08/24 23:34:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lazesoft Recover My Password O43 - CFD: 2015/04/23 11:27:36 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Connection Manager O43 - CFD: 2015/04/24 01:21:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com O43 - CFD: 2009/07/14 05:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2013/12/18 02:52:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware O43 - CFD: 2013/12/18 14:17:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/05/14 03:06:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/03/25 00:09:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyLanViewer O43 - CFD: 2015/03/15 16:50:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 2014/09/26 07:17:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2015/07/30 10:19:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 2015/03/14 11:56:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSForensics O43 - CFD: 2013/06/10 17:02:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PANDORATV O43 - CFD: 2013/12/18 14:46:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 2014/03/10 00:52:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 2014/10/13 10:26:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RAR Password Unlocker O43 - CFD: 2015/08/04 01:52:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimpleTV O43 - CFD: 2014/09/27 15:54:09 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2014/05/02 10:01:06 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartDVB O43 - CFD: 2014/10/07 22:25:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SnagIt 8 O43 - CFD: 2015/05/24 22:50:55 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/05/08 17:03:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2014/06/15 13:52:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StreamingStar O43 - CFD: 2009/07/14 08:49:10 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2014/05/15 00:02:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith O43 - CFD: 2013/12/20 15:47:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO O43 - CFD: 2015/08/06 10:28:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2014/06/15 13:53:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap O43 - CFD: 2013/06/10 17:04:32 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2013/12/18 00:11:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP O43 - CFD: 2014/01/12 01:02:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 2014/08/13 23:21:13 - [] D -- C:\ProgramData\1d21a0b72eb59dd6 O43 - CFD: 2014/09/17 22:16:55 - [] SHD -- C:\ProgramData\360Quarant O43 - CFD: 2014/03/10 00:51:28 - [] D -- C:\ProgramData\Apple O43 - CFD: 2014/03/10 00:52:14 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/06/10 09:40:59 - [] D -- C:\ProgramData\Ashampoo O43 - CFD: 2015/06/09 11:13:49 - [] D -- C:\ProgramData\Baidu O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2014/09/14 14:16:12 - [0] D -- C:\ProgramData\CMUV O43 - CFD: 2013/12/18 20:29:52 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2013/12/20 15:41:18 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2014/05/31 15:16:16 - [] D -- C:\ProgramData\DivX O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2014/04/26 12:42:48 - [] D -- C:\ProgramData\Dyn O43 - CFD: 2014/03/10 00:50:18 - [] D -- C:\ProgramData\eSellerate O43 - CFD: 2013/12/18 02:43:11 - [] D -- C:\ProgramData\ESET O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/03/25 01:42:23 - [0] D -- C:\ProgramData\firebird O43 - CFD: 2014/03/04 01:51:14 - [0] D -- C:\ProgramData\Freemake O43 - CFD: 2015/04/21 22:27:28 - [] D -- C:\ProgramData\GRETECH O43 - CFD: 2014/03/06 01:01:07 - [] D -- C:\ProgramData\HostIt O43 - CFD: 2013/12/18 14:47:01 - [0] D -- C:\ProgramData\IDM O43 - CFD: 2015/06/11 10:35:46 - [] D -- C:\ProgramData\IePluginServices =>Trojan.SProtector O43 - CFD: 2015/06/11 10:37:23 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR O43 - CFD: 2014/08/13 23:02:39 - [] D -- C:\ProgramData\InstallMate =>PUP.Optional.Tarma O43 - CFD: 2014/01/14 22:39:37 - [] D -- C:\ProgramData\IsolatedStorage O43 - CFD: 2015/05/03 14:45:46 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 2015/04/24 01:21:04 - [] D -- C:\ProgramData\ma-config.com O43 - CFD: 2013/12/18 02:52:44 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2015/05/24 22:35:26 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/04/17 02:21:45 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/07/15 15:36:56 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2013/06/10 16:58:00 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2014/10/14 15:01:37 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2014/03/10 23:04:34 - [] D -- C:\ProgramData\Nero O43 - CFD: 2014/08/13 23:21:49 - [0] D -- C:\ProgramData\NExxtCoup =>PUP.Optional.Multiplug O43 - CFD: 2015/08/08 23:27:36 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2014/01/07 23:15:08 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/05/13 01:19:12 - [] D -- C:\ProgramData\ohkgfhejgebkkloppjflcalbbdcfohdf O43 - CFD: 2015/03/04 02:49:01 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2013/12/23 12:14:41 - [] D -- C:\ProgramData\Origin O43 - CFD: 2015/02/11 09:49:05 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/03/14 11:56:10 - [] D -- C:\ProgramData\PassMark O43 - CFD: 2014/09/14 14:15:37 - [] D -- C:\ProgramData\ProgDVB O43 - CFD: 2014/10/06 20:35:26 - [] D -- C:\ProgramData\Protexis O43 - CFD: 2014/05/15 00:02:53 - [] D -- C:\ProgramData\regid.1995-08.com.techsmith O43 - CFD: 2014/06/06 21:42:04 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2015/02/25 01:39:07 - [] D -- C:\ProgramData\Skype O43 - CFD: 2014/03/10 00:50:35 - [] D -- C:\ProgramData\SmartSound Software Inc O43 - CFD: 2013/06/10 17:03:26 - [] D -- C:\ProgramData\SonicFocus O43 - CFD: 2015/01/16 14:32:27 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/05/03 14:45:42 - [] D -- C:\ProgramData\Steam O43 - CFD: 2014/07/04 04:34:37 - [] D -- C:\ProgramData\Sun O43 - CFD: 2014/10/07 22:26:07 - [] D -- C:\ProgramData\TechSmith O43 - CFD: 2009/07/14 05:53:55 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/04/21 22:28:38 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2014/08/13 23:29:29 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu O43 - CFD: 2015/04/21 22:28:43 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 2014/03/07 14:47:27 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2013/12/18 02:43:04 - [] D -- C:\Program Files\Common Files\Ahead O43 - CFD: 2014/03/10 00:51:28 - [] D -- C:\Program Files\Common Files\Apple O43 - CFD: 2014/08/17 18:02:25 - [] D -- C:\Program Files\Common Files\BitCtrl O43 - CFD: 2014/05/15 09:45:14 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2014/05/31 15:15:52 - [] D -- C:\Program Files\Common Files\DivX Shared O43 - CFD: 2014/01/04 16:18:52 - [] D -- C:\Program Files\Common Files\Elecard O43 - CFD: 2013/12/20 15:47:39 - [] D -- C:\Program Files\Common Files\EZB Systems O43 - CFD: 2015/03/04 02:48:14 - [] D -- C:\Program Files\Common Files\Java O43 - CFD: 2014/03/05 15:01:49 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2014/09/27 15:54:08 - [] D -- C:\Program Files\Common Files\Skype O43 - CFD: 2009/07/14 03:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2015/05/08 17:03:11 - [] D -- C:\Program Files\Common Files\Steam O43 - CFD: 2013/12/18 14:14:17 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2014/05/15 00:02:40 - [] D -- C:\Program Files\Common Files\TechSmith Shared O43 - CFD: 2014/03/04 14:57:54 - [] D -- C:\Program Files\Common Files\Windows Live O43 - CFD: 2014/10/07 22:24:58 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard O43 - CFD: 2015/05/17 12:59:59 - [] D -- C:\Users\Admin\AppData\Roaming\AC3Filter O43 - CFD: 2015/04/30 01:33:22 - [] D -- C:\Users\Admin\AppData\Roaming\Adobe O43 - CFD: 2015/08/05 04:25:11 - [] D -- C:\Users\Admin\AppData\Roaming\AIMP3 O43 - CFD: 2015/04/30 10:14:46 - [] D -- C:\Users\Admin\AppData\Roaming\Apple Computer O43 - CFD: 2015/08/09 02:08:33 - [] D -- C:\Users\Admin\AppData\Roaming\DMCache O43 - CFD: 2015/05/04 22:10:36 - [] D -- C:\Users\Admin\AppData\Roaming\dvdcss O43 - CFD: 2015/04/30 10:15:21 - [] D -- C:\Users\Admin\AppData\Roaming\ESET O43 - CFD: 2015/08/07 01:49:41 - [] D -- C:\Users\Admin\AppData\Roaming\FileZilla O43 - CFD: 2015/07/20 00:31:08 - [] D -- C:\Users\Admin\AppData\Roaming\Foxit Software O43 - CFD: 2015/06/04 00:48:08 - [] D -- C:\Users\Admin\AppData\Roaming\IDM O43 - CFD: 2015/05/01 01:23:11 - [] D -- C:\Users\Admin\AppData\Roaming\Macromedia O43 - CFD: 2015/08/06 17:36:55 - [] D -- C:\Users\Admin\AppData\Roaming\Malwarebytes O43 - CFD: 2015/07/31 02:54:29 - [] SD -- C:\Users\Admin\AppData\Roaming\Microsoft O43 - CFD: 2015/04/30 01:28:54 - [] D -- C:\Users\Admin\AppData\Roaming\Mozilla O43 - CFD: 2015/06/16 00:15:35 - [] D -- C:\Users\Admin\AppData\Roaming\MPC-HC O43 - CFD: 2015/05/01 02:35:33 - [] D -- C:\Users\Admin\AppData\Roaming\Notepad++ O43 - CFD: 2015/05/14 23:22:55 - [] D -- C:\Users\Admin\AppData\Roaming\NVIDIA O43 - CFD: 2015/06/09 11:11:55 - [] D -- C:\Users\Admin\AppData\Roaming\Opera Software O43 - CFD: 2015/06/03 00:49:45 - [] D -- C:\Users\Admin\AppData\Roaming\PhotoFiltre Studio X O43 - CFD: 2015/08/09 01:56:22 - [] D -- C:\Users\Admin\AppData\Roaming\SimpleTV V03 O43 - CFD: 2015/07/24 15:15:50 - [] D -- C:\Users\Admin\AppData\Roaming\Skype O43 - CFD: 2015/06/24 02:26:02 - [] D -- C:\Users\Admin\AppData\Roaming\Spiritsoft O43 - CFD: 2015/05/01 22:57:33 - [] D -- C:\Users\Admin\AppData\Roaming\TechSmith O43 - CFD: 2015/08/08 23:28:04 - [] D -- C:\Users\Admin\AppData\Roaming\uTorrent O43 - CFD: 2015/08/08 15:34:28 - [] D -- C:\Users\Admin\AppData\Roaming\vlc O43 - CFD: 2015/05/02 11:23:00 - [] D -- C:\Users\Admin\AppData\Roaming\WinRAR O43 - CFD: 2015/08/09 02:09:11 - [] D -- C:\Users\Admin\AppData\Roaming\ZHP O43 - CFD: 2015/05/24 22:46:13 - [0] D -- C:\Users\Admin\AppData\Local\Adobe O43 - CFD: 2013/06/10 16:58:08 - [0] SHD -- C:\Users\Admin\AppData\Local\Application Data O43 - CFD: 2015/03/15 10:32:51 - [] D -- C:\Users\Admin\AppData\Local\Apps O43 - CFD: 2015/06/10 09:53:21 - [] D -- C:\Users\Admin\AppData\Local\Ashampoo Movie Studio Pro O43 - CFD: 2014/11/22 02:02:11 - [] D -- C:\Users\Admin\AppData\Local\Atraci O43 - CFD: 2013/12/20 15:44:29 - [] D -- C:\Users\Admin\AppData\Local\cache O43 - CFD: 2015/07/22 08:25:19 - [] D -- C:\Users\Admin\AppData\Local\CEF O43 - CFD: 2014/08/13 23:01:22 - [] D -- C:\Users\Admin\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser O43 - CFD: 2014/08/13 23:01:22 - [] D -- C:\Users\Admin\AppData\Local\Comodo O43 - CFD: 2015/08/08 23:31:26 - [] D -- C:\Users\Admin\AppData\Local\CrashDumps O43 - CFD: 2014/05/02 10:01:45 - [] D -- C:\Users\Admin\AppData\Local\CrashRpt =>.Legitimate.CrashReports O43 - CFD: 2015/07/20 12:15:03 - [0] D -- C:\Users\Admin\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/06/10 15:19:37 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/06/10 15:19:37 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieSiteList O43 - CFD: 2015/06/10 15:19:37 - [0] SHD -- C:\Users\Admin\AppData\Local\EmieUserList O43 - CFD: 2013/12/21 17:55:39 - [] D -- C:\Users\Admin\AppData\Local\ESET O43 - CFD: 2014/01/14 22:39:44 - [] D -- C:\Users\Admin\AppData\Local\FileViewPro O43 - CFD: 2014/03/04 01:39:55 - [] D -- C:\Users\Admin\AppData\Local\FreemakeVideoConverter O43 - CFD: 2013/12/20 15:44:28 - [] D -- C:\Users\Admin\AppData\Local\genienext =>PUP.Optional.NextLive O43 - CFD: 2014/08/13 23:11:38 - [] D -- C:\Users\Admin\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2014/10/08 19:02:45 - [] D -- C:\Users\Admin\AppData\Local\Google O43 - CFD: 2013/12/18 00:09:34 - [] D -- C:\Users\Admin\AppData\Local\GPUMonitor O43 - CFD: 2015/06/01 11:19:15 - [] D -- C:\Users\Admin\AppData\Local\GWX O43 - CFD: 2013/06/10 16:58:08 - [0] SHD -- C:\Users\Admin\AppData\Local\Historique O43 - CFD: 2015/04/17 09:48:44 - [] D -- C:\Users\Admin\AppData\Local\Kingosoft O43 - CFD: 2014/10/30 22:09:47 - [] D -- C:\Users\Admin\AppData\Local\Macromedia O43 - CFD: 2015/03/14 02:03:12 - [] D -- C:\Users\Admin\AppData\Local\Microsoft O43 - CFD: 2013/12/18 13:30:38 - [0] D -- C:\Users\Admin\AppData\Local\Microsoft Help O43 - CFD: 2013/12/20 16:08:21 - [] D -- C:\Users\Admin\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie O43 - CFD: 2014/10/19 12:14:17 - [] D -- C:\Users\Admin\AppData\Local\Mozilla O43 - CFD: 2015/03/25 03:07:33 - [] D -- C:\Users\Admin\AppData\Local\MyLanViewer O43 - CFD: 2014/03/10 15:07:31 - [] D -- C:\Users\Admin\AppData\Local\Nero O43 - CFD: 2014/03/10 15:06:59 - [] D -- C:\Users\Admin\AppData\Local\Nero_AG O43 - CFD: 2014/01/09 00:09:39 - [] D -- C:\Users\Admin\AppData\Local\NVIDIA O43 - CFD: 2014/01/07 23:15:05 - [] D -- C:\Users\Admin\AppData\Local\NVIDIA Corporation O43 - CFD: 2015/06/09 11:12:22 - [] D -- C:\Users\Admin\AppData\Local\Opera Software O43 - CFD: 2013/12/18 00:13:09 - [] D -- C:\Users\Admin\AppData\Local\Programs O43 - CFD: 2014/07/04 22:46:59 - [] D -- C:\Users\Admin\AppData\Local\Skype O43 - CFD: 2015/03/09 00:42:36 - [] D -- C:\Users\Admin\AppData\Local\SmartDVB O43 - CFD: 2014/10/12 23:39:47 - [] D -- C:\Users\Admin\AppData\Local\SpaceKace O43 - CFD: 2014/01/01 12:44:02 - [] D -- C:\Users\Admin\AppData\Local\SRS Labs O43 - CFD: 2015/05/09 09:26:03 - [] D -- C:\Users\Admin\AppData\Local\Steam O43 - CFD: 2014/10/07 22:27:33 - [] D -- C:\Users\Admin\AppData\Local\TechSmith O43 - CFD: 2015/08/09 02:08:43 - [] D -- C:\Users\Admin\AppData\Local\Temp O43 - CFD: 2013/06/10 16:58:08 - [0] SHD -- C:\Users\Admin\AppData\Local\Temporary Internet Files O43 - CFD: 2014/08/13 23:01:22 - [] D -- C:\Users\Admin\AppData\Local\Torch =>PUP.Optional.Torch O43 - CFD: 2015/04/21 22:31:03 - [] D -- C:\Users\Admin\AppData\Local\TuneUp Software O43 - CFD: 2013/12/18 02:51:07 - [] D -- C:\Users\Admin\AppData\Local\VirtualStore O43 - CFD: 2014/06/30 17:20:48 - [] D -- C:\Users\Admin\AppData\Local\Vitalwerks O43 - CFD: 2015/08/07 09:45:38 - [] D -- C:\Users\Admin\AppData\Local\Windows Live O43 - CFD: 2009/07/14 05:42:04 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/03/11 12:01:33 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2013/12/28 11:40:34 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced RAR Password Recovery O43 - CFD: 2014/10/09 00:01:47 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Atraci O43 - CFD: 2014/08/17 18:02:25 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\bitcontrol O43 - CFD: 2014/05/04 20:38:54 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCcamInfoPHP v0.8.6 (DT6) O43 - CFD: 2013/12/18 02:07:43 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVB Support O43 - CFD: 2013/12/25 14:45:29 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Elips Corporation O43 - CFD: 2014/01/14 13:47:31 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fausto O43 - CFD: 2015/06/09 11:20:13 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 2013/12/18 03:23:43 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2014/04/14 23:34:29 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2009/07/14 05:37:42 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2014/06/30 17:20:22 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC O43 - CFD: 2014/09/26 07:17:24 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 2015/02/19 22:28:55 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\P2PSurveillance O43 - CFD: 2013/12/18 14:46:42 - [0] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 2014/03/17 21:50:22 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recover My Files v5 O43 - CFD: 2014/05/02 10:01:23 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartDVB O43 - CFD: 2015/05/13 01:18:51 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2013/12/17 23:57:21 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeVii O43 - CFD: 2014/04/04 23:12:55 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeViiData O43 - CFD: 2015/04/21 22:24:21 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer O43 - CFD: 2015/03/15 10:32:51 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool O43 - CFD: 2013/06/10 17:04:32 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2014/06/07 11:59:54 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XBMC ---\\ Liste des pilotes du système (SDL) (O58) (85) - 10s O58 - SDL:2009/05/18 14:32:58 A . (.Analog Devices, Inc. - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\ADIHdAud.sys [381440] O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] O58 - SDL:2009/10/26 23:54:24 A . (.HTC, Corporation - ADB Interface.) -- C:\Windows\System32\drivers\ANDROIDUSB.sys [25088] O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] O58 - SDL:2008/03/05 01:00:40 A . (.DemoForge, LLC - Mirage Driver.) -- C:\Windows\System32\drivers\dfmirage.sys [34128] O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] O58 - SDL:2009/07/13 23:02:52 A . (.Intel Corporation - Pilote de la carte Intel(R) Gigabit NDIS 6..) -- C:\Windows\System32\drivers\e1k6032.sys [164864] O58 - SDL:2013/10/01 18:12:08 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1k6232.sys [369416] O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] O58 - SDL:2012/12/07 18:27:50 A . (.Windows (R) Win 7 DDK provider - RawPacket NDIS Protocol Driver.) -- C:\Windows\System32\drivers\htcnprot.sys [23040] O58 - SDL:2011/03/11 06:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] O58 - SDL:2013/11/28 01:24:18 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [108000] O58 - SDL:2009/06/10 22:19:30 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [4756480] O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] O58 - SDL:2005/09/01 13:03:04 N . (.Ahead Software AG - NERO IMAGEDRIVE SCSI miniport.) -- C:\Windows\System32\drivers\imagedrv.sys [5888] O58 - SDL:2005/09/01 13:03:04 N . (.Ahead Software AG - Nero Image Server.) -- C:\Windows\System32\drivers\imagesrv.sys [127488] O58 - SDL:2009/09/23 02:31:44 A . (.LG Electronics Inc - LG Wireless USB Multi function Driver.) -- C:\Windows\System32\drivers\lgwusbbus.sys [13696] O58 - SDL:2009/09/23 02:31:44 A . (.LG Electronics Inc - LG Wireless USB Modem Driver.) -- C:\Windows\System32\drivers\lgwusbmodem.sys [25216] O58 - SDL:2009/09/23 02:31:46 A . (.LG Electronics Inc - LG Wireless USB Serial1 Driver.) -- C:\Windows\System32\drivers\lgwusbser01.sys [21248] O58 - SDL:2009/09/23 02:31:48 A . (.LG Electronics Inc - LG Wireless USB Serial2 Driver.) -- C:\Windows\System32\drivers\lgwusbser02.sys [21248] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] O58 - SDL:2009/11/05 13:20:50 A . (.ZTE Incorporated - ZTE CDROM Filter.) -- C:\Windows\System32\drivers\massfilter.sys [9216] O58 - SDL:2010/01/07 17:07:04 A . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [19160] O58 - SDL:2010/01/07 17:07:14 A . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [38224] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] O58 - SDL:2009/10/20 19:19:44 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [50704] O58 - SDL:2015/06/29 23:46:44 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10704072] O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] O58 - SDL:2013/12/05 09:42:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad32v.sys [34080] O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] O58 - SDL:2009/11/10 16:28:44 A . (.Copyright (C) 2008 SRS Labs, Inc. - SRS Premium Sound driver.) -- C:\Windows\System32\drivers\SRS_PremiumSound_i386.sys [246000] O58 - SDL:2007/10/25 17:26:10 A . (...) -- C:\Windows\System32\drivers\StarOpen.sys [5632] O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] O58 - SDL:2010/06/07 07:37:04 A . (.TeVii Technology, Ltd. - TeViiData Virtual Network Driver.) -- C:\Windows\System32\drivers\TeViiData.sys [17752] O58 - SDL:2011/07/27 10:09:08 A . (.TeVii Technology Ltd. - .) -- C:\Windows\System32\drivers\TeViiS2.sys [130184] O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] O58 - SDL:2009/11/05 13:20:32 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys [105088] O58 - SDL:2009/11/05 13:20:42 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbnmea.sys [105088] O58 - SDL:2009/11/05 13:20:44 A . (.ZTE Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ZTEusbser6k.sys [105088] O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2010/06/14 09:32:54 A . (...) -- C:\Windows\System32\FsUsbExDisk.Sys [36608] O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (12) - 30s O61 - LFC: 2015/08/02 16:08:29 A . (.Tonec Inc..) -- C:\Users\Admin\Downloads\Programs\idman623build17.exe [6640080] O61 - LFC: 2015/08/04 01:52:09 A . (.SergeyVS.) -- C:\Users\Admin\Downloads\Programs\SimpleTV 0.4.7 b2 setup (VLC 2.0.2).exe [36566480] O61 - LFC: 2015/08/02 14:09:45 A . (..) -- C:\Users\Admin\Downloads\Programs\tc00398200d.exe [13886712] O61 - LFC: 2015/08/02 13:24:31 A . (..) -- C:\Users\Admin\Downloads\Programs\tc80091200d.exe [126776016] O61 - LFC: 2015/08/06 10:27:35 A . (..) -- C:\Users\Admin\Downloads\Programs\vlc-2.2.1-win32.exe [28849904] O61 - LFC: 2015/08/03 23:20:36 A . (..) -- C:\Users\Admin\Documents\KONAMI\Pro Evolution Soccer 2015\save\LG 02.bin [14076840] O61 - LFC: 2015/08/03 23:20:38 A . (..) -- C:\Users\Admin\Documents\KONAMI\Pro Evolution Soccer 2015\save\SYSTEM.bin [136577] O61 - LFC: 2015/08/01 10:08:14 A . (.BitTorrent Inc..) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe [1693024] O61 - LFC: 2015/08/01 10:08:14 A . (.BitTorrent Inc..) -- C:\Users\Admin\AppData\Roaming\uTorrent\updates\3.4.3_40760.exe [1693024] O61 - LFC: 2015/08/07 15:24:28 A . (..) -- C:\Users\Admin\AppData\Local\NVIDIA\NvBackend\Packages\00007beb\DAO.19838421.exe [5951752] O61 - LFC: 2015/08/04 10:05:05 A . (..) -- C:\Users\Admin\AppData\Local\NVIDIA\NvBackend\Packages\00007bb7\DAO.19826035.exe [5931992] O61 - LFC: 2015/08/09 01:19:01 A . (..) -- C:\Users\Admin\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] ---\\ Associations Shell Spawning (O67) (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (SMI) (O68) (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://istart.webssearches.com/ =>PUP.Optional.WebsSearches O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (16) - 3s O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.defaultenginename", "delta-homes"); =>PUP.Optional.Qvo6 O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.alias", "delta-homes"); =>PUP.Optional.Qvo6 O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.iconURL", "http://search.delta-homes.com/favicon.ico"); =>PUP.Optional.Qvo6 O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.name", "delta-homes"); =>PUP.Optional.Qvo6 O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.ptid", "ient06110"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.uid", "SAMSUNGXHD083GJ_S1VBJ9ASC10210C10210X"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.searchengine.url", "http://search.delta-homes.com/web/?type=ds&ts=1434015348&z=c51640455ea9487593e8149g5[...] =>PUP.Optional.Qvo6 O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.search.selectedEngine", "delta-homes"); =>PUP.Optional.Qvo6 O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("browser.startup.homepage", "http://www.delta-homes.com/?type=hp&ts=1434015348&z=c51640455ea9487593e8149g5z6c9zbe9gewbcb[...] =>PUP.Optional.Qvo6 O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [Admin - bdcsbn63.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://do-search.com/ =>PUP.Optional.DoSearches O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://do-search.com/ =>PUP.Optional.DoSearches O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (delta-homes) - http://do-search.com/ =>PUP.Optional.DoSearches O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://do-search.com/ =>PUP.Optional.DoSearches ---\\ Enumère les fichiers Crack & Keygen (CKF) (O82) (1) - 68s O82 - LFC: 2014/03/06 01:00:45 A . (.HostIt.) -- C:\Users\Admin\Downloads\PhotoFiltre Studio X v10 6 2 Keygen rar.exe [321216] =>.Crack,Keygen ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2057216] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] ---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (66) - 4s O87 - FAEL: "TCP Query User{11536CAC-77F2-40E9-A1FD-EC95F99FFFF8}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P6-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.) O87 - FAEL: "UDP Query User{BEBE30AB-5A70-4E26-9A56-6C110190491E}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P17-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.) O87 - FAEL: "TCP Query User{92F1665A-6D13-479B-9833-2E70DD799F1C}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P6-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.) O87 - FAEL: "UDP Query User{F75F3C8D-AC60-4AA2-B699-000E29BDF7FD}I:\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P17-TRUE] .(...) -- I:\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.) O87 - FAEL: "TCP Query User{A3756A98-5B6C-449D-BAFA-FF49D6771D3E}C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P6-TRUE] .(...) -- C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.) O87 - FAEL: "UDP Query User{056E2C8E-906E-4997-81FF-5DAB2E2DD1A6}C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe" [In-None-P17-TRUE] .(...) -- C:\users\admin\desktop\hfs v2.3 build 262\hfs v2.3 build 262.exe (.not file.) O87 - FAEL: "TCP Query User{EFBF898B-D957-4F66-BEDC-EF8A39A5DCEA}E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P6-TRUE] .(.Ysf Zone - Ysf Zone.) -- E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe O87 - FAEL: "UDP Query User{9EF0C317-1F86-4B6A-8CBA-D9AD24EB3AEF}E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P17-TRUE] .(.Ysf Zone - Ysf Zone.) -- E:\desktop\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe O87 - FAEL: "TCP Query User{1BA2B65D-29FC-4B1D-B2C0-8D2DFFAA34A3}F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe" [In-None-P6-TRUE] .(.BernyR - Dreambox Control Center.) -- F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe O87 - FAEL: "UDP Query User{DBADF53B-5E38-43CD-A26F-8C9749387007}F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe" [In-None-P17-TRUE] .(.BernyR - Dreambox Control Center.) -- F:\nouveau dossier\nouveau dossier1\dcc\dcc.exe O87 - FAEL: "TCP Query User{F7912039-80F3-45F3-B1BC-F43B898B2228}C:\program files\simpletv\tv.exe" [In-None-P6-TRUE] .(.VSG - SimpleTV v0.4.7 b2.) -- C:\program files\simpletv\tv.exe O87 - FAEL: "UDP Query User{F69AA429-AD5F-4DCF-B7CC-EF9A4F593576}C:\program files\simpletv\tv.exe" [In-None-P17-TRUE] .(.VSG - SimpleTV v0.4.7 b2.) -- C:\program files\simpletv\tv.exe O87 - FAEL: "TCP Query User{5BB75163-1DB6-4C8E-81C8-09CEBD53A09B}F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe" [In-None-P6-TRUE] .(.John V. - Settings Editor (Enigma 1 & 2, Neutrino, Tr.) -- F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe O87 - FAEL: "UDP Query User{E61204F7-9A8C-4B61-8580-360FD5B2303F}F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe" [In-None-P17-TRUE] .(.John V. - Settings Editor (Enigma 1 & 2, Neutrino, Tr.) -- F:\nouveau dossier\nouveau dossier1\dreamset236\dreamset.exe O87 - FAEL: "{CE25BAE8-A801-4135-8457-529BDF488758}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe O87 - FAEL: "{E5D5E7B2-6358-42D9-9BFB-6422083B1E54}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe O87 - FAEL: "{90496940-D87A-42FD-A426-F19E2E0D6A7C}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe O87 - FAEL: "{296EDD91-E062-4603-B3B0-D1FD0A980312}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe O87 - FAEL: "{E53158A1-500B-48E9-9738-28F15967A25E}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{D90D5986-BA15-49A1-8515-3EF92FCAC6F4}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{BE09FBDE-77D5-4712-B279-8CF9FD50D55B}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe (.not file.) O87 - FAEL: "{33564583-13D8-483D-99B4-1B516F5C458D}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsasvr.exe (.not file.) O87 - FAEL: "{651D618E-9A0F-4087-BD0E-6F93C17C5245}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe (.not file.) O87 - FAEL: "{CF4FF0C4-DE91-40B4-A829-75DA60ED5855}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Samsung\Samsung New PC Studio\npsvsvr.exe (.not file.) O87 - FAEL: "TCP Query User{5A31358D-3322-4B9A-83F2-B83BBB180AC3}C:\program files\xbmc\xbmc.exe" [In-None-P6-TRUE] .(.Team XBMC - XBMC.) -- C:\program files\xbmc\xbmc.exe O87 - FAEL: "UDP Query User{3A859023-067B-4BE3-B281-0C62CE7FFFEC}C:\program files\xbmc\xbmc.exe" [In-None-P17-TRUE] .(.Team XBMC - XBMC.) -- C:\program files\xbmc\xbmc.exe O87 - FAEL: "TCP Query User{6E0B5E95-C6D2-4854-A381-99802C9F47EC}F:\program files\konami\pro evolution soccer 2014\pes2014.exe" [In-None-P6-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2014.) -- F:\program files\konami\pro evolution soccer 2014\pes2014.exe O87 - FAEL: "UDP Query User{6C80B3E7-8E2B-4B1E-8A96-BDE6B3A7F5D4}F:\program files\konami\pro evolution soccer 2014\pes2014.exe" [In-None-P17-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2014.) -- F:\program files\konami\pro evolution soccer 2014\pes2014.exe O87 - FAEL: "{FEAB588B-FB72-478F-B2DA-18F569FFA154}" [In-None-P6-TRUE] .(...) -- F:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013.exe (.not file.) O87 - FAEL: "{B4DDD70C-BB55-49F6-8A30-E7FD01491484}" [In-None-P17-TRUE] .(...) -- F:\Program Files\KONAMI\Pro Evolution Soccer 2013\pes2013.exe (.not file.) O87 - FAEL: "TCP Query User{186168C9-F78F-4969-8956-7599ADC2E562}C:\program files\winscp\winscp.exe" [In-None-P6-TRUE] .(.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) -- C:\program files\winscp\winscp.exe O87 - FAEL: "UDP Query User{AEA82634-DB1B-4DD5-8EFB-8750E9098E53}C:\program files\winscp\winscp.exe" [In-None-P17-TRUE] .(.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) -- C:\program files\winscp\winscp.exe O87 - FAEL: "TCP Query User{E7A66567-BB54-4B99-9479-309A291E4CDB}C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe" [In-None-P6-TRUE] .(...) -- C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe (.not file.) O87 - FAEL: "UDP Query User{30DA4923-9895-4405-903D-284507DB2836}C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe" [In-None-P17-TRUE] .(...) -- C:\program files\webrec\p2pclient\1.01.34.0\p2pserver.exe (.not file.) O87 - FAEL: "TCP Query User{5F9341C6-F2CD-4791-9E50-795158D7D93C}C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe" [In-None-P6-TRUE] .(...) -- C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe (.not file.) O87 - FAEL: "UDP Query User{63219231-60DC-461D-82E1-507E94B3679A}C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe" [In-None-P17-TRUE] .(...) -- C:\users\admin\appdata\local\temp\rar$ex59.168\rtmpexplorer\rtmpsrv.exe (.not file.) O87 - FAEL: "TCP Query User{A53F4D7F-8E03-431A-A6F3-7898B31796F1}F:\program files\pro evolution soccer 2015\pes2015.exe" [In-None-P6-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2015.) -- F:\program files\pro evolution soccer 2015\pes2015.exe O87 - FAEL: "UDP Query User{F1EEE630-5DC3-4932-B82F-CC49E82EC223}F:\program files\pro evolution soccer 2015\pes2015.exe" [In-None-P17-TRUE] .(.Konami Digital Entertainment Co., Ltd. - Pro Evolution Soccer 2015.) -- F:\program files\pro evolution soccer 2015\pes2015.exe O87 - FAEL: "{7FAA89ED-A0C2-4CB3-B3A5-EFB6533892E1}" [In-None-P6-TRUE] .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe O87 - FAEL: "{4777E698-9E2D-4D3F-B695-839A8012EF0C}" [In-None-P17-TRUE] .(.BitTorrent, Inc. - µTorrent.) -- C:\Program Files\uTorrent\uTorrent.exe O87 - FAEL: "{12038EDC-DB28-4AC4-915C-BA14588C2D36}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.) O87 - FAEL: "{AA71438F-E935-4B0C-A5F0-30608F84FD55}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.) O87 - FAEL: "{DED7132C-E619-4CBC-8C77-7147569947A3}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.) O87 - FAEL: "{0E17D431-CBB8-4109-98B0-60230396AB4F}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX44.304\jingling.exe (.not file.) O87 - FAEL: "{05C0604E-BB1F-4665-8E5F-EE93A7B131F8}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX11.848\jingling.exe (.not file.) O87 - FAEL: "{54960933-196B-411B-9A1D-E10BCC9B674B}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX11.848\jingling.exe (.not file.) O87 - FAEL: "{0B6C8F3A-2EEB-4F01-8B95-28E4B2D0E10D}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX63.704\jingling.exe (.not file.) O87 - FAEL: "{169690C2-181E-4927-93D2-753EFB00C15F}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX63.704\jingling.exe (.not file.) O87 - FAEL: "{047C0E2C-B924-4CD0-BFD5-FF5E4FAAA3BD}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX34.176\jingling.exe (.not file.) O87 - FAEL: "{E9CCB872-E59A-43F8-B166-E872969F4ECF}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX34.176\jingling.exe (.not file.) O87 - FAEL: "{66BA45D7-85EE-41CD-A8EA-23EA71F5A01C}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX25.848\jingling.exe (.not file.) O87 - FAEL: "{4A93DCE0-A48D-47E0-BEF0-C4B8E6401ECA}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX25.848\jingling.exe (.not file.) O87 - FAEL: "{B1629006-702D-4F87-8D84-34D2FB550DA4}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.) O87 - FAEL: "{0403EF9C-438D-4AC3-91D7-3B36857DAE0A}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.) O87 - FAEL: "{83111D9E-03B7-4675-BAE1-8493CE703D48}" [In-None-P6-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.) O87 - FAEL: "{BEC8E41C-BE0E-433B-97FC-AD5631AFA83B}" [In-None-P17-TRUE] .(...) -- C:\Users\Admin\AppData\Local\Temp\Rar$EX36.048\jingling.exe (.not file.) O87 - FAEL: "TCP Query User{C4EA96B7-89FC-4D63-9053-494962978FF3}F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P6-TRUE] .(.Ysf Zone - Ysf Zone.) -- F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe O87 - FAEL: "UDP Query User{57BEB179-C2EF-4A27-8081-5DB1EEFAF0E6}F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe" [In-None-P17-TRUE] .(.Ysf Zone - Ysf Zone.) -- F:\nouveau dossier\flycccam_v0.4_beta2_free_version\sssp_cccam1.3.1.exe O87 - FAEL: "{B04AD8D2-2B84-400D-8F64-089071961BF1}" [In-None-P6-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe O87 - FAEL: "{E9F899F3-41EC-4E6A-91D3-E267A09FA7E7}" [In-None-P17-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe O87 - FAEL: "{B5D6CE8C-38BA-41FB-9203-60B1BFEDFC8B}" [In-None-P6-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe O87 - FAEL: "{D654D82B-E02B-45F6-87CD-F2F18365304D}" [In-None-P17-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe O87 - FAEL: "{DF4DDAEF-8C28-41DE-BEF1-FC01230ACDF9}" [In-None-P6-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe O87 - FAEL: "{AFE0D837-85EE-4A11-BF36-CDEC6AED5850}" [In-None-P17-TRUE] .(...) -- C:\Program Files\PANDORA.TV\PanService\PanProcess.exe O87 - FAEL: "{86D5F7C3-58B9-469B-A6CE-9BFF4F89816E}" [In-None-P6-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe O87 - FAEL: "{110EE792-C2BF-4145-B599-A8FB4A2E22C3}" [In-None-P17-TRUE] .(.Pandora.TV - Pandora.TV service file.) -- C:\Program Files\PANDORA.TV\PanService\PandoraService.exe ---\\ Recherche de clés de registre Tracing (O100) (2) - 1s HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASAPI32 =>PUP.Optional.TornTV HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASMANCS =>PUP.Optional.TornTV ---\\ Scan Additionnel (O88) (47) - 0s C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.MiuiTab C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eknmbllaehgdgginmokmkipolodpcnap C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoeocmdmhhgcmamcogoldekhicehiadi C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\defsearchp@gmail.com.xpi =>PUP.Optional.PriceFountain C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\searchplugins\delta-homes.xml =>PUP.Optional.DeltaHomes C:\Program Files\Mozilla Firefox\browser\searchplugins\yahoo.xml =>PUP.Optional.BDYahoo C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\bdcsbn63.default\extensions\default_newtabff@gmail.com =>PUP.Optional.LightningNewTab C:\Program Files\MiuiTab\SupTab.dll =>PUP.Optional.LuckyTab HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} =>PUP.Optional.LuckyTab HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR C:\Program Files\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR HKLM\SOFTWARE\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\delta-homesSoftware =>PUP.Optional.DeltaHomes HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\PIP =>Toolbar.Ask HKLM\SOFTWARE\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches HKCU\SOFTWARE\1ClickDownload =>PUP.Optional.1ClickDownloader HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\Conduit =>PUP.Optional.Conduit HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\InstallCore =>PUP.Optional.InstallCore HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic HKCU\SOFTWARE\SupHpUISoft =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider =>PUP.Optional.CrossRider C:\Program Files\MiuiTab =>PUP.Optional.MiuiTab C:\Program Files\Mobogenie =>PUP.Optional.Mobogenie C:\Program Files\SupTab =>PUP.Optional.SupTab C:\ProgramData\IePluginServices =>Trojan.SProtector C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR C:\ProgramData\InstallMate =>PUP.Optional.Tarma C:\ProgramData\NExxtCoup =>PUP.Optional.Multiplug C:\ProgramData\WindowsMangerProtect =>PUP.Optional.Fuyu C:\Users\Admin\AppData\Local\Chromatic Browser =>PUP.Optional.ChromaticBrowser C:\Users\Admin\AppData\Local\CrashRpt =>.Legitimate.CrashReports C:\Users\Admin\AppData\Local\genienext =>PUP.Optional.NextLive C:\Users\Admin\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\Admin\AppData\Local\Mobogenie =>PUP.Optional.Mobogenie C:\Users\Admin\AppData\Local\Torch =>PUP.Optional.Torch HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASAPI32 =>PUP.Optional.TornTV HKLM\SOFTWARE\Microsoft\Tracing\Torntv Downloader_RASMANCS =>PUP.Optional.TornTV ---\\ Récapitulatif des éléments trouvées sur votre station (34) - 0s http://www.nicolascoolman.fr/blog =>PUP.Optional.MiuiTab http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug http://www.nicolascoolman.fr/hijacker-qvo6/ =>PUP.Optional.Qvo6 http://www.nicolascoolman.fr/blog =>PUP.Optional.PriceFountain http://www.nicolascoolman.fr/blog =>PUP.Optional.DeltaHomes http://www.nicolascoolman.fr/blog =>PUP.Optional.BDYahoo http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart http://www.nicolascoolman.fr/blog =>PUP.Optional.LuckyTab http://www.nicolascoolman.fr/pup-mobogenie/ =>PUP.Optional.Mobogenie http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager http://www.nicolascoolman.fr/hijacker-webssearches/ =>PUP.Optional.WebsSearches http://www.nicolascoolman.fr/pup-1clickdownloader/ =>PUP.Optional.1ClickDownloader http://www.nicolascoolman.fr/adware-installcore/ =>PUP.Optional.InstallCore http://www.nicolascoolman.fr/blog =>PUP.Optional.Softonic http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/trojan-sprotector/ =>Trojan.SProtector http://www.nicolascoolman.fr/pup-tarma/ =>PUP.Optional.Tarma http://www.nicolascoolman.fr/blog =>PUP.Optional.ChromaticBrowser http://www.nicolascoolman.fr/blog =>.Legitimate.CrashReports http://www.nicolascoolman.fr/pup-nextlive/ =>PUP.Optional.NextLive http://www.nicolascoolman.fr/blog =>PUP.Optional.Torch http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart http://www.nicolascoolman.fr/pup-dosearches/ =>PUP.Optional.DoSearches http://www.nicolascoolman.fr/hijacker-torntv/ =>PUP.Optional.TornTV ~ End of the scan, 33247 items in 231 seconds (1207)(1)()