~ ZHPDiag v2015.10.2.147 Par Nicolas Coolman (2015/10/02) ~ Démarré par CHTIOUI (Administrator) (2015/10/03 08:20:29) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\CHTIOUI\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\CHTIOUI\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 32-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 41.0.1 (x86 fr) v41.0.1 MSIE: Internet Explorer v11.0.9600.18015 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (2) - 8s Avast Internet Security v10.4.2233 Windows Defender W7 (Activate) ---\\ Surveillance de Logiciels (2) - 9s Adobe Flash Player 19 NPAPI Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 37 Stepping 5, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2545.52 MB (44% free) ~ System Restore: Activé (Enable) ~ System drive C: has 188 GB free of 228 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: CHTIOUI-PC ~ User Name: CHTIOUI ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 188 GB free of 228 GB (System) ~ Drive E: has 2 GB free of 20 GB ~ Drive F: has 0 GB free of 0 GB ~ Drive I: has 160 GB free of 227 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 2s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2616320] © [MD5.51138BEEA3E2C21EC44D0932C71762A8] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [44544] © [MD5.B5C5DCAD3899512020D135600129D665] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [96256] © [MD5.A8C80A92549AFDD6891C8159D4C0A107] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [1951232] © [MD5.52449FD429D6053B78AE564DEF303870] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [304128] © [MD5.E3AE23569749DE12D45BA3B489A036AE] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [193536] © [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [270336] © [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.D0B388DA1D111A34366E04EB4A5DD156] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [338944] © [MD5.338C86357871C167A96AB976519BF59E] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [21584] © [MD5.77EA11B065E0A8AB902D78145CA51E10] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [70656] © [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [108544] © [MD5.F024449C97EC1E464AAFFDA18593DB88] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [78336] © [MD5.9036377B8A6C15DC2EEC53E489D159B5] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [108544] © [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [80896] © [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [101888] © [MD5.BAF4E2BE25E8EDFDAA98AA17D92E3C35] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [124416] © [MD5.280122DDCF04B378EDD1AD54D71C1E54] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [187904] © [MD5.C8DFF8D07755A66C7A4A738930F0FEAC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1212352] © [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [79360] © [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] © [MD5.B973FCFC50DC1434E1970A146F7E3885] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\Windows\System32\drivers\rdpdr.sys [133632] © [MD5.3E21C083B8A01CB70BA1F09303010FCE] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [71168] © [MD5.7FE680A3DFA421C4A8E4879AE4C5AAB0] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [74752] © [MD5.F497F67932C6FA693D7DE2780631CFE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [245632] © ---\\ Processus lancés (31) - 1s [MD5.53FAB287B49A67F1D90D5560DA7DC8BD] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv.exe [319570] [PID.1084] © [MD5.C0BEB56ED79B59B7B33D0AA6C38A0BA6] - (.Hewlett-Packard Company - HpService.) -- C:\Windows\System32\Hpservice.exe [26168] [PID.1372] © [MD5.11120878E5276B367E1A10FF8C9B595B] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1552] © [MD5.F423D12EE3D40C26BF415B0DCDF60F40] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [109008] [PID.1928] © [MD5.FCCEA7BC58701E4437878F2FA85331C1] - (.Cinema PlusV24.09 - CinemaPlus-3.2cV24.09 exe.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-1-6.exe [1665104] [PID.588] =>PUP.Optional.CrossRider [MD5.1A5385C7378950DF0E2C2A2B2098C8F8] - (.Cinema PlusV24.09 - CinemaPlus-3.2cV24.09 exe.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-6.exe [1596496] [PID.1408] =>PUP.Optional.CrossRider [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2248] © [MD5.F5ECF788D4C3A56D15CAFF9667EC81B2] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [143856] [PID.2312] © [MD5.3BBBD36C5D935F3A63CC7D171E563331] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [178672] [PID.2332] © [MD5.827DBC22C96EECF6D36A13162FABAFD3] - (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) -- C:\Program Files\IDT\WDM\AESTSrv.exe [81920] [PID.2408] © [MD5.01F4EFC92FFBD083B13D66D7FBB83405] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [179184] [PID.2436] © [MD5.B7358BA4F4CE6EF97C0A6AAFEBD3287C] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe [1704028] [PID.2684] © [MD5.D470EB94988531FE20A2A78766BB6858] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe [896632] [PID.2712] © [MD5.95B960980034877821E7FB5BFE25136E] - (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) -- C:\Program Files\BlueStacks\HD-LogRotatorService.exe [413304] [PID.3260] © [MD5.5EBFF8D302047F4709F3A4F1231236E9] - (.BlueStack Systems, Inc. - BlueStacks Updater Service.) -- C:\Program Files\BlueStacks\HD-UpdaterService.exe [831096] [PID.3500] © [MD5.485CBE0A862457BC1BCA099F16A96202] - (...) -- C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\hnswC311.tmp [203776] [PID.3652] =>PUP.Optional.CrossRider [MD5.DFD1D30D8B68D883B5858748F7E35AD2] - (.Hi-Rez Studios - HiPatchService.) -- C:\Program Files\Hi-Rez Studios\HiPatchService.exe [9216] [PID.3792] © [MD5.EA6138B3A73FC603B676722C3BF9D811] - (...) -- C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\knsi8223.tmp [370176] [PID.2104] =>PUP.Optional.CrossRider [MD5.8A9919DAE95708B073827EA3C88DFF03] - (.Copyright 2015. All rights reserved. - Service.) -- C:\Program Files\RayDld\ihpmServer.exe [268520] [PID.1380] =>PUP.Optional.CrossRider [MD5.D5FB37BC0C0A09030310DBCF8D8553FE] - (.TODO: <公司名> - TODO: <文件说明>.) -- C:\Program Files\SFK\SSFK.exe [458400] [PID.1156] [MD5.F9082B46869BB5DF3421027EDC558656] - (.DTools LIMITED - DTools.) -- C:\ProgramData\cWdsManProc\WdsManPro.exe [442504] [PID.2216] =>PUP.Optional.WdsManPro [MD5.5240A6EF7387964F2DA24A60FAAA5FB0] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [3219136] [PID.3852] © [MD5.123CE08362EE48BBA7F9F1D7EB50F24F] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544] [PID.4268] © [MD5.A3E33718D1090A1587AC069597EC4FA6] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3907152] [PID.4284] © [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [269848] [PID.4592] © [MD5.AA93F6052984CA2FE8EB771535CB2920] - (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files\Raptr\raptr.exe [67344] [PID.4632] © [MD5.6FE45A21163CBBC996247499E785F557] - (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files\Raptr\raptr_im.exe [46352] [PID.4716] © [MD5.36D49A1E5DD693BA9B6F3F981B71687A] - (.Reimage® - Reimage Express.) -- C:\Program Files\Reimage\Reimage Express\ReiExpressContainer.exe [10681848] [PID.4420] =>PUP.Optional.ReImageRepair [MD5.6241810294275CEA59EBA9733080E5EE] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720] [PID.1560] © [MD5.601C233CDC2422AD7244D423ED8DFB50] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [377000] [PID.2744] © [MD5.DD7DAC8A6913EB893372091E96871F95] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\CHTIOUI\Downloads\Programs\ZHPDiag3.exe [1940992] [PID.3508] © ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (9) - 2s P2 - EXT FILE: (...) -- C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\extensions\LVD-SAE@iacsearchandmedia.com.xpi =>PUP.Optional.IACSearchAndMedia P2 - EXT FILE: (...) -- C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\searchplugins\ask-search.xml P2 - EXT FILE: (...) -- C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\searchplugins\mystartsearch.xml =>PUP.Optional.StartSearch P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - EXT: (.roc - Default SearchProtected .) -- C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\extensions\defsearchp@gmail.com P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_19_0_0_185.dll © P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate ---\\ Opera, Démarrage,Recherche,Plugins (5) - 0s B2 - EXT: [chphlpgkkbolifaimnlloiipkdnihall] C:\Users\CHTIOUI\AppData\Roaming\Opera Software\Opera Stable\Extensions\chphlpgkkbolifaimnlloiipkdnihall B2 - EXT: [ghnomdcacenbmilgjigehppbamfndblo] C:\Users\CHTIOUI\AppData\Roaming\Opera Software\Opera Stable\Extensions\ghnomdcacenbmilgjigehppbamfndblo B2 - EXT: [jccocffecajimkdjgfpjhlpiimcnadhb] C:\Users\CHTIOUI\AppData\Roaming\Opera Software\Opera Stable\Extensions\jccocffecajimkdjgfpjhlpiimcnadhb B2 - EXT: [CinemaP-1.9cV24.09] C:\Users\CHTIOUI\AppData\Roaming\Opera Software\Opera Stable\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi B2 - EXT: [CinemaPlus-3.2cV24.09] C:\Users\CHTIOUI\AppData\Roaming\Opera Software\Opera Stable\Extensions\papbadoldddalgcjcicnikcfenodpghp ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (2) - 0s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll © O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll © ---\\ Applications lancées au démarrage du système (16) - 1s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe © O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe © O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe © O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray.exe © O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe © O4 - HKLM\..\Run: [Raptr] . (.Raptr, Inc - Raptr Desktop App.) -- C:\Program Files\Raptr\raptrstub.exe © O4 - HKLM\..\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe © O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe © O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe © O4 - HKCU\..\RunOnce: [Application Restart #0] C:\Program Files\Google\Chrome\Application\chrome.exe (.not file.) O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-1818312252-4233433043-2011893322-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe © O4 - HKUS\S-1-5-21-1818312252-4233433043-2011893322-1000\..\RunOnce: [Application Restart #0] C:\Program Files\Google\Chrome\Application\chrome.exe (.not file.) ---\\ Raccourcis Global Startup (1) - 3s O4 - GS\CommonDesktop [Public]: Reimage Express.lnk . (.Reimage® - Reimage Express Downloader.) C:\Program Files\Reimage\Reimage Express\ReimageExpress.exe =>PUP.Optional.ReImageRepair ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (22) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll © O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll © O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll © O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (17) - 0s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (32-bit).) - C:\Program Files\IDT\WDM\AESTSrv.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: Avast Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe © O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe © O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files\BlueStacks\HD-UpdaterService.exe © O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate O23 - Service: CD Feature (gyvixodu) . (...) - C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\hnswC311.tmp =>PUP.Optional.CrossRider O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\Program Files\Hi-Rez Studios\HiPatchService.exe © O23 - Service: HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\Windows\System32\Hpservice.exe © O23 - Service: Trial Version Operate (hyzegypu) . (...) - C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\knsi8223.tmp =>PUP.Optional.CrossRider O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © O23 - Service: ihpmServer (ihpmServer) . (.Copyright 2015. All rights reserved. - Service.) - C:\Program Files\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider O23 - Service: Reimage Real Time Protector (ReimageRealTimeProtector) . (...) - C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe (.not file.) =>PUP.Optional.ReImageRepair O23 - Service: SSFK (SSFK) . (.TODO: <公司名> - TODO: <文件说明>.) - C:\Program Files\SFK\SSFK.exe =>PUP.Optional.MyWebSearch O23 - Service: @C:\Windows\system32\stlang.dll,-10101 (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv.exe © O23 - Service: WdsManPro Service (WdsManPro) . (.DTools LIMITED - DTools.) - C:\ProgramData\cWdsManProc\WdsManPro.exe =>PUP.Optional.WpManager ---\\ Tâches planifiées en automatique (47) - 4s [MD5.FCCEA7BC58701E4437878F2FA85331C1] [APT] [4181c76b-5ae2-4578-9f53-012a58eadba2-1-6] (.Cinema PlusV24.09.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-1-6.exe [1665104] =>PUP.Optional.CrossRider [MD5.25D0ACD089D369D1F86F3D581A731BAF] [APT] [4181c76b-5ae2-4578-9f53-012a58eadba2-1-7] (.Cinema PlusV24.09.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-1-7.exe [1214032] =>PUP.Optional.CrossRider [MD5.D9643E7C2774991F67EE7DA04085179F] [APT] [4181c76b-5ae2-4578-9f53-012a58eadba2-3] (.Cinema PlusV24.09.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-3.exe [1403472] =>PUP.Optional.CrossRider [MD5.CC0D0A7A7F10576FC881BF8DF2298D4A] [APT] [4181c76b-5ae2-4578-9f53-012a58eadba2-5] (.Cinema PlusV24.09.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-5.exe [1283664] =>PUP.Optional.CrossRider [MD5.CC0D0A7A7F10576FC881BF8DF2298D4A] [APT] [4181c76b-5ae2-4578-9f53-012a58eadba2-5_user] (.Cinema PlusV24.09.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-5.exe [1283664] =>PUP.Optional.CrossRider [MD5.1A5385C7378950DF0E2C2A2B2098C8F8] [APT] [4181c76b-5ae2-4578-9f53-012a58eadba2-6] (.Cinema PlusV24.09.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-6.exe [1596496] =>PUP.Optional.CrossRider [MD5.25D0ACD089D369D1F86F3D581A731BAF] [APT] [4181c76b-5ae2-4578-9f53-012a58eadba2-7] (.Cinema PlusV24.09.) -- C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-7.exe [1214032] =>PUP.Optional.CrossRider [MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] © [MD5.C6D147C12C424373B016C0AB0A6C61EB] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.00000000000000000000000000000000] [APT] [APSnotifierPP1] (...) -- C:\Program Files\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect [MD5.00000000000000000000000000000000] [APT] [APSnotifierPP2] (...) -- C:\Program Files\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect [MD5.00000000000000000000000000000000] [APT] [APSnotifierPP3] (...) -- C:\Program Files\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect [MD5.D9E35285D8CCE58241038E5B23507DAB] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1382112] © [MD5.3C14AAE26EA06BADAC98520773772CEB] [APT] [globalUpdateUpdateTaskMachineCore] (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\globalupdate.exe [68608] =>PUP.Optional.GlobalUpdate [MD5.3C14AAE26EA06BADAC98520773772CEB] [APT] [globalUpdateUpdateTaskMachineUA] (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\globalupdate.exe [68608] =>PUP.Optional.GlobalUpdate [MD5.2A5C656B0A364580E578B26EAE2EE889] [APT] [klcp_update] (...) -- C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1173504] [MD5.00000000000000000000000000000000] [APT] [ReimageUpdater] (...) -- C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe (.not file.) [0] =>PUP.Optional.ReImageRepair O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-1-6 - (.Cinema PlusV24.09.) -- C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-6.job [3130] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-1-7 - (.Cinema PlusV24.09.) -- C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-7.job [3130] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-3 - (.Cinema PlusV24.09.) -- C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-3.job [4150] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-5 - (.Cinema PlusV24.09.) -- C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5.job [2438] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-5_user - (.Cinema PlusV24.09.) -- C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5_user.job [2438] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-6 - (.Cinema PlusV24.09.) -- C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-6.job [5510] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-7 - (.Cinema PlusV24.09.) -- C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-7.job [5510] =>PUP.Optional.CrossRider O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: APSnotifierPP1 - (...) -- C:\Windows\Tasks\APSnotifierPP1.job [366] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP2 - (...) -- C:\Windows\Tasks\APSnotifierPP2.job [364] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP3 - (...) -- C:\Windows\Tasks\APSnotifierPP3.job [364] =>PUP.Optional.AnyProtect O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job [962] =>PUP.Optional.GlobalUpdate O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job [966] =>PUP.Optional.GlobalUpdate O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-1-6 - (.Cinema PlusV24.09.) -- C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-6 [6158] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-1-7 - (.Cinema PlusV24.09.) -- C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-7 [6160] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-3 - (.Cinema PlusV24.09.) -- C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-3 [7180] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-5 - (.Cinema PlusV24.09.) -- C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5 [5468] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-5_user - (.Cinema PlusV24.09.) -- C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5_user [5472] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-6 - (.Cinema PlusV24.09.) -- C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-6 [8538] =>PUP.Optional.CrossRider O39 - APT: 4181c76b-5ae2-4578-9f53-012a58eadba2-7 - (.Cinema PlusV24.09.) -- C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-7 [8540] =>PUP.Optional.CrossRider O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3874] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] © O39 - APT: APSnotifierPP1 - (...) -- C:\Windows\System32\Tasks\APSnotifierPP1 [2820] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP2 - (...) -- C:\Windows\System32\Tasks\APSnotifierPP2 [2818] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP3 - (...) -- C:\Windows\System32\Tasks\APSnotifierPP3 [2818] =>PUP.Optional.AnyProtect O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] © O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore [3710] =>PUP.Optional.GlobalUpdate O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA [3964] =>PUP.Optional.GlobalUpdate O39 - APT: klcp_update - (...) -- C:\Windows\System32\Tasks\klcp_update [3794] O39 - APT: ReimageUpdater - (...) -- C:\Windows\System32\Tasks\ReimageUpdater [4282] =>PUP.Optional.ReImageRepair ---\\ Logiciels installés (30) - 5s O42 - Logiciel: Adobe Flash Player 19 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI © O42 - Logiciel: Avast Internet Security - (.AVAST Software.) [HKLM] -- Avast © O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM] -- BlueStacks App Player © O42 - Logiciel: CinemaPlus-3.2cV24.09 - (.Cinema PlusV24.09.) [HKLM] -- CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider O42 - Logiciel: Dictionnaire Le Littré 1.0 - (...) [HKLM] -- Dictionnaire Le Littré_is1 O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager © O42 - Logiciel: K-Lite Mega Codec Pack 11.2.0 - (...) [HKLM] -- KLiteCodecPack_is1 O42 - Logiciel: LeConjugueur - (...) [HKLM] -- LeConjugueur O42 - Logiciel: Mozilla Firefox 41.0.1 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 41.0.1 (x86 fr) © O42 - Logiciel: Raptr - (...) [HKLM] -- Raptr O42 - Logiciel: Reimage Express - (.Reimage.) [HKLM] -- Reimage Express =>PUP.Optional.ReImageRepair O42 - Logiciel: WinRAR 4.20 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver © O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM] -- {11087D24-567D-7D88-69C6-D7A08B5F4C47} © O42 - Logiciel: DriversCloud.com - (.Cybelsoft.) [HKLM] -- {1DF6A7A5-B5E8-4D06-A349-9192AC2CE5E3} © O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM] -- {3792811C-832F-4392-B44A-24092901EDDC} © O42 - Logiciel: Hi-Rez Studios Authenticate and Update Service - (.Hi-Rez Studios.) [HKLM] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} © O42 - Logiciel: Conjugaison - (...) [HKLM] -- {5F82B545-AE13-45ED-A8A2-67E56F3165BC} O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM] -- {61BF50A2-7DE1-16AD-A14E-43596553A878} © O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM] -- {71CA8315-A725-6A7E-A691-C859431E238C} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {87431666-90C2-40FE-A662-4D8C65CDA695} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824147215} © O42 - Logiciel: Adobe Reader X (10.1.15) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} © O42 - Logiciel: AMD Drag and Drop Transcoding - (.Advanced Micro Devices, Inc..) [HKLM] -- {B24C6201-8BA5-DA92-B4F8-2B1C844198FF} © O42 - Logiciel: IDT Audio - (.IDT.) [HKLM] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Virtual Mart - (.Pool Browser corp.) [HKCU] -- {9563BC59-9556-4805-8CD4-886781779D8D} ---\\ HKCU & HKLM Software Keys (106) - 5s HKLM\SOFTWARE\4d654686-a08e-4d0f-a7cf-690fc154f7f8 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\AMD HKLM\SOFTWARE\AppDataLow HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\ATI HKLM\SOFTWARE\ATI Technologies HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\BlueStacks HKLM\SOFTWARE\CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaPlus-3.2cV24.09-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaPlus-3.2cV24.09-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\cybelsoft HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\GNU HKLM\SOFTWARE\Google HKLM\SOFTWARE\HaaliMkx HKLM\SOFTWARE\Hi-Rez Studios HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\HiRez Studios HKLM\SOFTWARE\Icaros HKLM\SOFTWARE\IDT HKLM\SOFTWARE\ihpmserver HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Intel HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\KLCodecPack HKLM\SOFTWARE\LAV HKLM\SOFTWARE\LeConjugueur HKLM\SOFTWARE\LogMeInRescueCallingCard HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\McAfee.com HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\mozilla.org HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\MyBrowser =>PUP.Optional.MyBrowser HKLM\SOFTWARE\MyBrowser 1.0.2V29.09 =>PUP.Optional.MyBrowser HKLM\SOFTWARE\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Opera Software HKLM\SOFTWARE\oursurfingSoftware =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Raptr HKLM\SOFTWARE\RayDld =>PUP.Optional.CrossRider HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Reg HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\RTLSetup HKLM\SOFTWARE\Sonic HKLM\SOFTWARE\Systweak =>PUP.Optional.Systweak HKLM\SOFTWARE\Volatile HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\ATI HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CinemaP-1.9cV24.09-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV24.09-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV24.09-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CoinisRevShare HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\Intel HKCU\SOFTWARE\LeConjugueur HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\LogMeInRescueCallingCard HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MPC-HC HKCU\SOFTWARE\MyBrowser =>PUP.Optional.MyBrowser HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Raptr HKCU\SOFTWARE\Reg HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\reimagerepair =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\SFX TEAM HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider ---\\ Contenu des dossiers Programmes (164) - 6s O43 - CFD: 2015/09/28 17:54:38 - [] D -- C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A =>PUP.Optional.CrossRider O43 - CFD: 2015/09/30 15:44:49 - [0] D -- C:\Program Files\866d0873-6818-484f-b21a-8e27e7eb6cce =>PUP.Optional.CrossRider O43 - CFD: 2015/09/24 21:33:37 - [] D -- C:\Program Files\963c382f-8ddd-4cf1-9fa0-d87507a907e9 =>PUP.Optional.CrossRider O43 - CFD: 2015/09/29 12:21:17 - [] D -- C:\Program Files\Adobe O43 - CFD: 2015/09/24 16:04:54 - [] D -- C:\Program Files\AMD O43 - CFD: 2015/09/24 16:07:00 - [] D -- C:\Program Files\AVAST Software O43 - CFD: 2015/09/24 14:52:35 - [] D -- C:\Program Files\BlueStacks O43 - CFD: 2015/09/24 22:23:17 - [] D -- C:\Program Files\CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider O43 - CFD: 2015/09/24 21:34:35 - [] D -- C:\Program Files\Common Files O43 - CFD: 2015/09/26 10:05:00 - [] D -- C:\Program Files\Conjugaison O43 - CFD: 2015/09/26 10:13:13 - [] D -- C:\Program Files\Dictionnaire Le Littré O43 - CFD: 2015/09/22 14:47:08 - [] D -- C:\Program Files\DriversCloud.com O43 - CFD: 2015/09/22 23:10:51 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 2015/10/01 14:40:55 - [0] D -- C:\Program Files\Feed Notifier O43 - CFD: 2015/09/22 12:41:52 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 2015/09/24 14:40:39 - [] D -- C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/09/30 17:19:22 - [] D -- C:\Program Files\Google O43 - CFD: 2015/09/23 08:14:08 - [] D -- C:\Program Files\Hi-Rez Studios O43 - CFD: 2015/09/22 15:17:14 - [] D -- C:\Program Files\IDT O43 - CFD: 2015/09/23 08:13:39 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2015/09/24 15:26:29 - [] D -- C:\Program Files\Intel O43 - CFD: 2015/09/22 14:09:11 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 2015/09/26 09:02:52 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2015/09/22 22:41:45 - [] D -- C:\Program Files\K-Lite Codec Pack O43 - CFD: 2015/09/26 10:17:51 - [] D -- C:\Program Files\LeConjugueur O43 - CFD: 2015/09/22 14:47:03 - [] D -- C:\Program Files\ma-config.com O43 - CFD: 2015/09/23 12:02:10 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/09/23 12:02:09 - [] D -- C:\Program Files\Microsoft Visual Studio O43 - CFD: 2015/09/23 11:59:32 - [] D -- C:\Program Files\Microsoft Visual Studio 8 O43 - CFD: 2015/09/23 12:02:29 - [] D -- C:\Program Files\Microsoft Works O43 - CFD: 2015/09/23 12:01:23 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2015/10/02 10:47:16 - [] D -- C:\Program Files\Mozilla Firefox O43 - CFD: 2015/09/23 12:02:17 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2015/09/30 15:44:49 - [] D -- C:\Program Files\MyBrowser 1.0.2V29.09 =>PUP.Optional.CrossRider O43 - CFD: 2015/09/22 19:15:08 - [] D -- C:\Program Files\Raptr O43 - CFD: 2015/09/24 14:37:36 - [] D -- C:\Program Files\RayDld =>PUP.Optional.CrossRider O43 - CFD: 2015/09/22 15:12:35 - [] D -- C:\Program Files\Realtek O43 - CFD: 2009/07/14 04:52:30 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2015/09/29 13:22:44 - [] D -- C:\Program Files\Reimage =>PUP.Optional.ReImageRepair O43 - CFD: 2015/10/02 22:34:57 - [] D -- C:\Program Files\SFK =>PUP.Optional.MyWebSearch O43 - CFD: 2009/07/14 04:53:23 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2015/09/25 13:22:17 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 2015/09/26 09:03:00 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 2015/09/22 23:10:52 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 2015/09/25 13:22:27 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2015/09/22 12:41:52 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2015/09/22 23:10:51 - [] D -- C:\Program Files\Windows Photo Viewer O43 - CFD: 2015/09/22 23:10:51 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 2015/09/22 23:10:51 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 2015/09/22 14:06:26 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2015/09/22 12:33:44 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/09/22 12:33:50 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/22 19:12:29 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center O43 - CFD: 2015/09/22 19:15:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved O43 - CFD: 2015/09/24 16:09:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 2015/09/23 22:17:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks O43 - CFD: 2015/09/26 10:13:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dictionnaire Le Littré O43 - CFD: 2015/09/22 14:47:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com O43 - CFD: 2009/07/14 09:02:05 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/09/23 08:14:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios O43 - CFD: 2015/09/22 15:01:02 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/09/22 14:07:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/09/22 22:41:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2009/07/14 04:42:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/09/23 12:03:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 2015/09/29 13:22:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Express =>PUP.Optional.ReImageRepair O43 - CFD: 2015/09/26 16:15:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2009/07/14 09:00:41 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/09/22 14:06:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/09/24 14:57:53 - [] D -- C:\ProgramData\4WdsManPro4 =>PUP.Optional.WdsManPro O43 - CFD: 2015/09/29 12:21:19 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2009/07/14 04:53:55 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/09/23 08:09:59 - [] D -- C:\ProgramData\ATI O43 - CFD: 2015/09/24 16:06:07 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2015/09/23 22:17:22 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 2015/09/24 14:58:04 - [] D -- C:\ProgramData\BlueStacksSetup O43 - CFD: 2015/09/22 12:41:52 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/10/02 11:20:54 - [] D -- C:\ProgramData\cWdsManProc =>PUP.Optional.WdsManPro O43 - CFD: 2009/07/14 04:53:55 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 04:53:55 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/09/22 14:47:07 - [] D -- C:\ProgramData\DriversCloud.com O43 - CFD: 2015/09/26 19:09:05 - [] D -- C:\ProgramData\DWdsManProD =>PUP.Optional.WdsManPro O43 - CFD: 2015/09/22 12:41:52 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 04:53:55 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/09/30 15:43:39 - [0] D -- C:\ProgramData\gWdsManProg =>PUP.Optional.WdsManPro O43 - CFD: 2015/09/23 08:13:59 - [] D -- C:\ProgramData\Hi-Rez Studios O43 - CFD: 2015/09/22 14:07:54 - [0] D -- C:\ProgramData\IDM O43 - CFD: 2015/09/22 15:01:02 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/09/22 14:47:03 - [] D -- C:\ProgramData\ma-config.com O43 - CFD: 2015/09/23 12:00:29 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2015/09/22 12:41:52 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/09/26 12:42:15 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/09/23 12:03:53 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/09/22 12:41:52 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/09/22 19:08:11 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/09/29 13:23:40 - [] D -- C:\ProgramData\Reimage Express =>PUP.Optional.ReImageRepair O43 - CFD: 2015/09/29 13:23:25 - [] D -- C:\ProgramData\Reimage Protector =>PUP.Optional.ReImageRepair O43 - CFD: 2009/07/14 04:53:55 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2009/07/14 04:53:55 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/09/24 22:26:28 - [] D -- C:\ProgramData\tWdsManProt =>PUP.Optional.WdsManPro O43 - CFD: 2015/09/26 08:38:07 - [] D -- C:\ProgramData\WWdsManProW =>PUP.Optional.WdsManPro O43 - CFD: 2015/09/25 14:22:28 - [] D -- C:\ProgramData\XWdsManProX =>PUP.Optional.WdsManPro O43 - CFD: 2015/09/29 12:21:18 - [] D -- C:\Program Files\Common Files\Adobe O43 - CFD: 2015/09/22 19:10:45 - [] D -- C:\Program Files\Common Files\ATI Technologies O43 - CFD: 2015/09/23 12:02:09 - [] D -- C:\Program Files\Common Files\DESIGNER O43 - CFD: 2015/09/22 14:56:57 - [] D -- C:\Program Files\Common Files\Intel O43 - CFD: 2015/09/22 15:01:58 - [] D -- C:\Program Files\Common Files\Intel Corporation O43 - CFD: 2015/09/23 12:02:24 - [] D -- C:\Program Files\Common Files\microsoft shared O43 - CFD: 2015/09/22 15:18:57 - [] D -- C:\Program Files\Common Files\postureAgent O43 - CFD: 2009/07/14 02:37:05 - [] D -- C:\Program Files\Common Files\Services O43 - CFD: 2009/07/14 02:37:05 - [] D -- C:\Program Files\Common Files\SpeechEngines O43 - CFD: 2015/09/26 09:02:58 - [] D -- C:\Program Files\Common Files\System O43 - CFD: 2015/09/23 12:09:18 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Adobe O43 - CFD: 2015/09/24 14:59:32 - [] SHD -- C:\Users\CHTIOUI\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect O43 - CFD: 2015/09/23 08:09:59 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\ATI O43 - CFD: 2015/09/24 16:10:32 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\AVAST Software O43 - CFD: 2015/10/02 23:52:53 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\DMCache O43 - CFD: 2015/09/22 12:42:18 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Identities O43 - CFD: 2015/09/30 17:30:15 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\IDM O43 - CFD: 2015/09/22 15:01:15 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Intel Corporation O43 - CFD: 2015/09/26 10:17:56 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Le Conjugueur O43 - CFD: 2015/09/22 19:14:59 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\library_dir O43 - CFD: 2015/09/22 19:17:49 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Macromedia O43 - CFD: 2009/07/14 09:00:41 - [0] D -- C:\Users\CHTIOUI\AppData\Roaming\Media Center Programs O43 - CFD: 2015/09/26 10:05:00 - [] SD -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft O43 - CFD: 2015/09/25 13:27:15 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Mozilla O43 - CFD: 2015/09/26 15:25:04 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\MPC-HC O43 - CFD: 2015/09/24 14:56:44 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch O43 - CFD: 2015/09/24 14:39:43 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Opera Software O43 - CFD: 2015/10/03 07:52:03 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Raptr O43 - CFD: 2015/09/28 20:44:46 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\SimpleTV V03 O43 - CFD: 2015/09/26 16:15:30 - [0] D -- C:\Users\CHTIOUI\AppData\Roaming\systweak =>PUP.Optional.Systweak O43 - CFD: 2015/09/22 14:07:37 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\WinRAR O43 - CFD: 2015/10/03 08:20:51 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\ZHP O43 - CFD: 2015/09/26 08:41:29 - [] D -- C:\Users\CHTIOUI\AppData\Local\Adobe O43 - CFD: 2015/09/22 12:42:01 - [0] SHD -- C:\Users\CHTIOUI\AppData\Local\Application Data O43 - CFD: 2015/09/22 14:14:17 - [] D -- C:\Users\CHTIOUI\AppData\Local\Apps O43 - CFD: 2015/09/23 08:09:59 - [] D -- C:\Users\CHTIOUI\AppData\Local\ATI O43 - CFD: 2015/09/23 22:16:30 - [] D -- C:\Users\CHTIOUI\AppData\Local\Bluestacks O43 - CFD: 2015/09/30 17:03:14 - [0] D -- C:\Users\CHTIOUI\AppData\Local\Deployment O43 - CFD: 2015/09/26 11:54:20 - [] D -- C:\Users\CHTIOUI\AppData\Local\Diagnostics O43 - CFD: 2015/09/24 14:40:39 - [] D -- C:\Users\CHTIOUI\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/09/30 17:19:12 - [] D -- C:\Users\CHTIOUI\AppData\Local\Google O43 - CFD: 2015/10/01 14:18:59 - [] D -- C:\Users\CHTIOUI\AppData\Local\GWX O43 - CFD: 2015/09/22 12:42:01 - [0] SHD -- C:\Users\CHTIOUI\AppData\Local\Historique O43 - CFD: 2015/09/25 13:53:37 - [] D -- C:\Users\CHTIOUI\AppData\Local\Macromedia O43 - CFD: 2015/09/26 11:54:04 - [] D -- C:\Users\CHTIOUI\AppData\Local\Microsoft O43 - CFD: 2015/09/23 11:59:00 - [0] D -- C:\Users\CHTIOUI\AppData\Local\Microsoft Help O43 - CFD: 2015/09/25 13:58:41 - [] D -- C:\Users\CHTIOUI\AppData\Local\Mozilla O43 - CFD: 2015/09/24 14:39:57 - [] D -- C:\Users\CHTIOUI\AppData\Local\Opera Software O43 - CFD: 2015/09/22 15:28:24 - [] D -- C:\Users\CHTIOUI\AppData\Local\Programs O43 - CFD: 2015/09/24 14:59:49 - [] D -- C:\Users\CHTIOUI\AppData\Local\Systweak =>PUP.Optional.Systweak O43 - CFD: 2015/10/03 08:21:05 - [] D -- C:\Users\CHTIOUI\AppData\Local\Temp O43 - CFD: 2015/09/22 12:42:01 - [0] SHD -- C:\Users\CHTIOUI\AppData\Local\Temporary Internet Files O43 - CFD: 2015/09/24 14:58:46 - [] D -- C:\Users\CHTIOUI\AppData\Local\Virtual Mart O43 - CFD: 2015/09/28 16:27:49 - [] D -- C:\Users\CHTIOUI\AppData\Local\VirtualStore O43 - CFD: 2009/07/14 04:42:04 - [] RD -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/09/22 23:15:10 - [] RD -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/22 14:07:50 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/09/26 10:17:51 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LeConjugueur O43 - CFD: 2009/07/14 04:37:42 - [] RD -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/09/30 16:56:37 - [] RD -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/09/24 14:47:47 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage =>PUP.Optional.Downware O43 - CFD: 2015/09/22 14:06:26 - [] D -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (5) - 7s O45 - LFCP:[MD5.D757A704F373F1A9770EF090038A8ECC] 2015/10/02 23:15:18 A -- C:\Windows\Prefetch\ANYPROTECT.EXE-A6F01169.pf =>PUP.Optional.AnyProtect O45 - LFCP:[MD5.D7826A9A26FC4F5855BD8AB5EFF20250] 2015/10/03 07:53:05 A -- C:\Windows\Prefetch\GLOBALUPDATE.EXE-B66D5BF9.pf =>PUP.Optional.GlobalUpdate O45 - LFCP:[MD5.71238B24A8511EB47C77BD9CAFCAA591] 2015/10/03 07:53:05 A -- C:\Windows\Prefetch\GLOBALUPDATECRASHHANDLER.EXE-C9210A99.pf =>PUP.Optional.GlobalUpdate O45 - LFCP:[MD5.606D44FC7084EDD8779600C5533CC350] 2015/10/02 11:20:03 A -- C:\Windows\Prefetch\WDSMANPRO.EXE-CF53D30D.pf =>PUP.Optional.WdsManPro O45 - LFCP:[MD5.4B2961EA3F67982C8FF9C044657BFD85] 2015/10/02 11:19:52 A -- C:\Windows\Prefetch\WPM_V20.0.0.2302.EXE-BBF6E602.pf =>PUP.Optional.WpManager ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll © O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll © O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © ---\\ Liste des pilotes du système (81) - 6s O58 - SDL:2011/05/13 16:57:20 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [35896] © O58 - SDL:2009/07/14 01:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] © O58 - SDL:2009/07/14 01:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] © O58 - SDL:2009/07/14 01:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] © O58 - SDL:2009/07/14 01:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] © O58 - SDL:2011/03/11 05:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] © O58 - SDL:2009/07/14 01:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] © O58 - SDL:2011/03/11 05:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] © O58 - SDL:2009/07/14 01:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] © O58 - SDL:2009/07/14 01:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] © O58 - SDL:2015/09/24 16:08:41 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [24016] © O58 - SDL:2015/09/24 16:08:18 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [26096] © O58 - SDL:2015/09/24 16:08:41 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [76000] © O58 - SDL:2015/09/24 16:07:52 A . (.AVAST Software - avast! Filtering NDIS driver.) -- C:\Windows\System32\drivers\aswNdisFlt.sys [275856] © O58 - SDL:2015/09/24 16:08:41 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [81728] © O58 - SDL:2015/09/24 16:08:41 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [49776] © O58 - SDL:2015/09/24 16:08:18 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [789296] © O58 - SDL:2015/09/24 16:08:41 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [434184] © O58 - SDL:2015/09/24 16:08:41 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [115640] © O58 - SDL:2015/09/24 16:08:41 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [208664] © O58 - SDL:2009/07/13 22:02:46 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athr.sys [1096704] © O58 - SDL:2015/08/19 06:10:12 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW73.sys [87576] © O58 - SDL:2009/07/13 22:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] © O58 - SDL:2009/07/13 22:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] © O58 - SDL:2009/07/13 22:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] © O58 - SDL:2009/07/14 00:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] © O58 - SDL:2009/07/13 22:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] © O58 - SDL:2009/07/13 22:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] © O58 - SDL:2009/07/13 22:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] © O58 - SDL:2009/07/13 22:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] © O58 - SDL:2009/07/14 01:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] © O58 - SDL:2009/07/14 01:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] © O58 - SDL:2009/07/14 01:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] © O58 - SDL:2009/07/13 22:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] © O58 - SDL:2009/07/13 22:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] © O58 - SDL:2009/09/18 01:54:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [41088] © O58 - SDL:2011/05/13 16:57:42 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\drivers\hpdskflt.sys [25656] © O58 - SDL:2009/07/14 01:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] © O58 - SDL:2013/11/21 06:31:26 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStorA.sys [489832] © O58 - SDL:2013/11/21 06:31:26 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [24424] © O58 - SDL:2011/03/11 05:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] © O58 - SDL:2015/06/12 02:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [123968] © O58 - SDL:2013/02/19 11:43:42 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [10861056] © O58 - SDL:2009/07/14 01:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] © O58 - SDL:2010/02/26 13:31:24 A . (.Intel Corporation - Intel(R) Turbo Boost Technology Driver.) -- C:\Windows\System32\drivers\Impcd.sys [132480] © O58 - SDL:2009/07/14 01:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] © O58 - SDL:2009/07/14 01:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] © O58 - SDL:2009/07/14 01:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] © O58 - SDL:2009/07/14 01:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] © O58 - SDL:2009/07/14 01:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] © O58 - SDL:2009/07/14 01:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] © O58 - SDL:2009/07/14 01:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] © O58 - SDL:2015/09/24 16:07:57 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\Windows\System32\drivers\ngvss.sys [107984] © O58 - SDL:2011/03/11 05:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] © O58 - SDL:2011/03/11 05:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] © O58 - SDL:2009/07/14 01:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] © O58 - SDL:2009/07/14 01:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] © O58 - SDL:2012/12/26 17:26:12 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.20 32-bit Dr.) -- C:\Windows\System32\drivers\Rt86win7.sys [614624] © O58 - SDL:2009/07/13 20:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] © O58 - SDL:2009/07/13 23:45:33 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [83456] © O58 - SDL:2009/07/14 01:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] © O58 - SDL:2009/07/14 01:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] © O58 - SDL:2009/07/14 01:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] © O58 - SDL:2013/12/04 23:32:36 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt.sys [459264] © O58 - SDL:2009/07/14 01:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] © O58 - SDL:2009/07/14 01:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] © O58 - SDL:2009/07/13 21:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] O58 - SDL:2009/07/13 21:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] O58 - SDL:2009/07/13 21:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] O58 - SDL:2009/07/13 21:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] O58 - SDL:2009/07/13 21:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] O58 - SDL:2009/07/13 21:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] O58 - SDL:2009/07/13 21:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] O58 - SDL:2009/07/13 21:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] O58 - SDL:2009/07/13 21:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] O58 - SDL:2009/07/13 21:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] O58 - SDL:2009/07/13 21:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] O58 - SDL:2009/07/13 21:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] O58 - SDL:2009/07/13 21:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] O58 - SDL:2009/07/13 21:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] O58 - SDL:2009/07/13 21:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (21) - 5s O61 - LFC: 2015/09/25 12:08:32 A . (..) -- C:\Users\CHTIOUI\Downloads\Firefox Setup Stub 41.0.exe [243896] O61 - LFC: 2015/09/30 17:30:16 A . (..) -- C:\Users\CHTIOUI\Downloads\Programs\Firefox Setup Stub 41.0.exe [243896] O61 - LFC: 2015/09/26 10:17:19 A . (..) -- C:\Users\CHTIOUI\Downloads\Programs\LeConjugueur.exe [2062789] O61 - LFC: 2015/09/26 10:12:38 A . (..) -- C:\Users\CHTIOUI\Downloads\Programs\Littre-windows-1.0.exe [27999061] O61 - LFC: 2015/09/26 19:24:54 A . (.Reimage®.) -- C:\Users\CHTIOUI\Downloads\Programs\reimagerepair.exe [772016] =>PUP.Optional.ReImageRepair O61 - LFC: 2015/09/27 12:39:48 A . (.Reimage®.) -- C:\Users\CHTIOUI\Downloads\Programs\reimagerepair_2.exe [772016] =>PUP.Optional.ReImageRepair O61 - LFC: 2015/09/27 12:41:09 A . (.Reimage®.) -- C:\Users\CHTIOUI\Downloads\Programs\reimagerepair_3.exe [772016] =>PUP.Optional.ReImageRepair O61 - LFC: 2015/09/28 16:18:17 A . (.SergeyVS.) -- C:\Users\CHTIOUI\Downloads\Programs\SimpleTV 0.4.7 b2 setup (VLC 2.0.2).exe [36566480] O61 - LFC: 2015/10/02 22:36:45 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\raptr-4.5.0-r103535-release.exe [61015144] O61 - LFC: 2015/09/30 14:00:55 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\data\gghhoo\config\certificates\x509\tls_peers\xmpp-server2.raptr.com [1217] O61 - LFC: 2015/10/01 06:28:51 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\data\gghhoo\config\certificates\x509\tls_peers\xmpp-server3.raptr.com [1217] O61 - LFC: 2015/10/02 22:37:10 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\data\gghhoo\config\certificates\x509\tls_peers\xmpp-server4.raptr.com [1217] O61 - LFC: 2015/10/02 10:48:28 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\data\gghhoo\config\certificates\x509\tls_peers\xmpp-server5.raptr.com [1217] O61 - LFC: 2015/10/01 14:09:50 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\data\gghhoo\config\certificates\x509\tls_peers\xmpp-server6.raptr.com [1217] O61 - LFC: 2015/10/02 16:48:09 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\data\gghhoo\config\certificates\x509\tls_peers\xmpp-server7.raptr.com [1217] O61 - LFC: 2015/10/03 07:52:02 A . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Raptr\data\gghhoo\config\certificates\x509\tls_peers\xmpp-server8.raptr.com [1217] O61 - LFC: 2015/09/26 10:05:00 RA . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Installer\{5F82B545-AE13-45ED-A8A2-67E56F3165BC}\_100e4822.exe [3774] O61 - LFC: 2015/09/26 10:05:00 RA . (..) -- C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Installer\{5F82B545-AE13-45ED-A8A2-67E56F3165BC}\_687dba.exe [3774] O61 - LFC: 2015/09/25 14:16:51 A . (..) -- C:\Users\CHTIOUI\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [333284] O61 - LFC: 2015/10/02 22:37:12 A . (..) -- C:\Users\CHTIOUI\AppData\Local\ATI\ACE\Manifest.Bin [30042] O61 - LFC: 2015/10/02 11:49:52 A . (..) -- C:\Users\CHTIOUI\AppData\Local\Adobe\Acrobat\10.0\UserCache.bin [90440] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe © ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe http://www.mystartsearch.com/ © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (20) - 5s O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.defaultenginename", "mystartsearch"); =>PUP.Optional.StartSearch O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.searchengine.alias", "mystartsearch"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/favicon.ico"); =>PUP.Optional.StartSearch O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.searchengine.name", "mystartsearch"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.searchengine.ptid", "cmi"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.searchengine.uid", "TOSHIBAXMK5061GSYN_Y18ET2MUTXXY18ET2MUT"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=ds&ts=1443784773&z=d7a6b2b52c46257d3b63308g9z[...] =>PUP.Optional.StartSearch O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("browser.search.selectedEngine", "mystartsearch"); =>PUP.Optional.StartSearch O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.LVD-SAE.newTabSearchURL", "\"http://dts.search.ask.com/sr?gct=hp&o=APN10644A&sysid=533&qrsc=2871&l=dis&sver=[...] =>PUP.Optional.Bandoo O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.LVD-SAE.searchURL", "\"http://dts.search.ask.com/sr?gct=ds&o=APN10644&sysid=533&qrsc=2871&l=dis&sver=3&t_typ[...] =>PUP.Optional.Bandoo O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.LVD-SAE.uninstallUrl", "http://lp.ilividnewtab.com/uninstall.php?extid=LVD-SAE@iacsearchandmedia.com&extver=[...] =>PUP.Optional.Bandoo O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.defsearchp@gmail.com.install-event-fired", true); =>PUP.Optional.PriceFountain O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.deskCutv2@gmail.com.install-event-fired", true); =>PUP.Optional.DeskCut O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.saeListDS", "[\"mystartsearch\"]"); =>PUP.Optional.StartSearch O69 - SBI: prefs.js [CHTIOUI - deo075pi.default] user_pref("extensions.xpiState", "{\"app-profile\":{\"defsearchp@gmail.com\":{\"d\":\"C:\\\\Users\\\\CHTIOUI\\\\AppData\\\\Roaming[...] =>PUP.Optional.PriceFountain O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (oursurfing) - http://www.oursurfing.com/ =>PUP.Optional.OurSurfing ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2061824] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [751104] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [71168] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] © ---\\ Liste des exceptions du parefeu Windows (2) - 1s O87 - FAEL: "{19B5C65C-5762-49BD-90A4-1A452478C94E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\ma-config.com\maconfservice.exe (.not file.) O87 - FAEL: "{9896466F-3C2F-4073-BC41-F8FAFBE44A71}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ma-config.com\maconfservice.exe (.not file.) ---\\ Enumère les codes produits des logiciels (1) - 0s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (21) - 21s SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2015/09/26 08:43:41] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2009/03/03 00:43:08] [ 81920] Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\IDT\WDM\AESTSrv.exe © SR - Auto [2015/09/24 16:08:21] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © SR - Auto [2015/09/24 16:07:52] [ 109008] Avast Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe © SR - Demand [2015/09/24 16:07:53] [ 3219136] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe © SS - Demand [2015/06/16 22:33:14] [ 433784] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-Service.exe © SR - Auto [2015/06/16 22:33:36] [ 413304] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe © SR - Auto [2015/07/21 20:23:32] [ 831096] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-UpdaterService.exe © SS - Auto [2015/09/24 21:33:11] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SS - Demand [2015/09/24 21:33:11] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SR - Auto [2015/09/24 14:48:24] [ 203776] CD Feature (gyvixodu) . (...) - C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\hnswC311.tmp =>PUP.Optional.CrossRider SR - Auto [2014/02/28 15:23:54] [ 9216] Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios.) - C:\Program Files\Hi-Rez Studios\HiPatchService.exe © SR - Auto [2011/05/13 16:57:36] [ 26168] HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\Windows\System32\Hpservice.exe © SR - Auto [2015/09/28 14:01:00] [ 370176] Trial Version Operate (hyzegypu) . (...) - C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\knsi8223.tmp =>PUP.Optional.CrossRider SR - Auto [2013/11/21 06:31:44] [ 15720] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © SR - Auto [2015/09/09 10:20:12] [ 268520] ihpmServer (ihpmServer) . (.Copyright 2015. All rights reserved..) - C:\Program Files\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider SR - Auto [2015/10/02 11:19:43] [ 458400] SSFK (SSFK) . (.TODO: <公司名>.) - C:\Program Files\SFK\SSFK.exe =>PUP.Optional.MyWebSearch SR - Auto [2013/12/04 23:32:36] [ 319570] @C:\Windows\system32\stlang.dll,-10101 (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv.exe © SR - Auto [2015/10/02 11:19:41] [ 442504] WdsManPro Service (WdsManPro) . (.DTools LIMITED.) - C:\ProgramData\cWdsManProc\WdsManPro.exe =>PUP.Optional.WpManager ---\\ Recherche de clés de registre Tracing (2) - 3s HKLM\SOFTWARE\Microsoft\Tracing\amt_oursurfing_RASAPI32 =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Microsoft\Tracing\amt_oursurfing_RASMANCS =>PUP.Optional.OurSurfing ---\\ Scan Additionnel (125) - 0s C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-1-6.exe =>PUP.Optional.CrossRider C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-6.exe =>PUP.Optional.CrossRider C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\hnswC311.tmp =>PUP.Optional.CrossRider C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A\knsi8223.tmp =>PUP.Optional.CrossRider C:\Program Files\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider C:\ProgramData\cWdsManProc\WdsManPro.exe =>PUP.Optional.WdsManPro C:\Program Files\Reimage\Reimage Express\ReiExpressContainer.exe =>PUP.Optional.ReImageRepair C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\extensions\LVD-SAE@iacsearchandmedia.com.xpi =>PUP.Optional.IACSearchAndMedia C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\searchplugins\mystartsearch.xml =>PUP.Optional.StartSearch C:\Users\CHTIOUI\AppData\Roaming\Mozilla\Firefox\Profiles\deo075pi.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\gyvixodu =>PUP.Optional.CrossRider HKLM\SYSTEM\CurrentControlSet\Services\hyzegypu =>PUP.Optional.CrossRider HKLM\SYSTEM\CurrentControlSet\Services\ihpmServer =>PUP.Optional.CrossRider HKLM\SYSTEM\CurrentControlSet\Services\ReimageRealTimeProtector =>PUP.Optional.ReImageRepair HKLM\SYSTEM\CurrentControlSet\Services\SSFK =>PUP.Optional.MyWebSearch C:\Program Files\SFK\SSFK.exe =>PUP.Optional.MyWebSearch HKLM\SYSTEM\CurrentControlSet\Services\WdsManPro =>PUP.Optional.WpManager C:\ProgramData\cWdsManProc\WdsManPro.exe =>PUP.Optional.WpManager C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-1-7.exe =>PUP.Optional.CrossRider C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-3.exe =>PUP.Optional.CrossRider C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-5.exe =>PUP.Optional.CrossRider C:\Program Files\CinemaPlus-3.2cV24.09\4181c76b-5ae2-4578-9f53-012a58eadba2-7.exe =>PUP.Optional.CrossRider C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-3.job =>PUP.Optional.CrossRider C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5.job =>PUP.Optional.CrossRider C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\APSnotifierPP1.job =>PUP.Optional.AnyProtect C:\Windows\Tasks\APSnotifierPP2.job =>PUP.Optional.AnyProtect C:\Windows\Tasks\APSnotifierPP3.job =>PUP.Optional.AnyProtect C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-6 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-1-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-3 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-5_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-6 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\4181c76b-5ae2-4578-9f53-012a58eadba2-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\APSnotifierPP1 =>PUP.Optional.AnyProtect C:\Windows\System32\Tasks\APSnotifierPP2 =>PUP.Optional.AnyProtect C:\Windows\System32\Tasks\APSnotifierPP3 =>PUP.Optional.AnyProtect C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\ReimageUpdater =>PUP.Optional.ReImageRepair HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Express =>PUP.Optional.ReImageRepair HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\4d654686-a08e-4d0f-a7cf-690fc154f7f8 =>PUP.Optional.CrossRider HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaPlus-3.2cV24.09-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaPlus-3.2cV24.09-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\MyBrowser =>PUP.Optional.MyBrowser HKLM\SOFTWARE\MyBrowser 1.0.2V29.09 =>PUP.Optional.MyBrowser HKLM\SOFTWARE\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\oursurfingSoftware =>PUP.Optional.OurSurfing HKLM\SOFTWARE\RayDld =>PUP.Optional.CrossRider HKLM\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKLM\SOFTWARE\Systweak =>PUP.Optional.Systweak HKLM\SOFTWARE\WdsManPro =>PUP.Optional.WdsManPro HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV24.09-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV24.09-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV24.09-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\MyBrowser =>PUP.Optional.MyBrowser HKCU\SOFTWARE\Reimage =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\reimagerepair =>PUP.Optional.ReImageRepair HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider C:\Program Files\30464E43-1443106066-4437-4339-2C27D7D1AE0A =>PUP.Optional.CrossRider C:\Program Files\866d0873-6818-484f-b21a-8e27e7eb6cce =>PUP.Optional.CrossRider C:\Program Files\963c382f-8ddd-4cf1-9fa0-d87507a907e9 =>PUP.Optional.CrossRider C:\Program Files\CinemaPlus-3.2cV24.09 =>PUP.Optional.CrossRider C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files\MyBrowser 1.0.2V29.09 =>PUP.Optional.CrossRider C:\Program Files\RayDld =>PUP.Optional.CrossRider C:\Program Files\Reimage =>PUP.Optional.ReImageRepair C:\Program Files\SFK =>PUP.Optional.MyWebSearch C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Express =>PUP.Optional.ReImageRepair C:\ProgramData\4WdsManPro4 =>PUP.Optional.WdsManPro C:\ProgramData\cWdsManProc =>PUP.Optional.WdsManPro C:\ProgramData\DWdsManProD =>PUP.Optional.WdsManPro C:\ProgramData\gWdsManProg =>PUP.Optional.WdsManPro C:\ProgramData\Reimage Express =>PUP.Optional.ReImageRepair C:\ProgramData\Reimage Protector =>PUP.Optional.ReImageRepair C:\ProgramData\tWdsManProt =>PUP.Optional.WdsManPro C:\ProgramData\WWdsManProW =>PUP.Optional.WdsManPro C:\ProgramData\XWdsManProX =>PUP.Optional.WdsManPro C:\Users\CHTIOUI\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect C:\Users\CHTIOUI\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch C:\Users\CHTIOUI\AppData\Roaming\systweak =>PUP.Optional.Systweak C:\Users\CHTIOUI\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\CHTIOUI\AppData\Local\Systweak =>PUP.Optional.Systweak C:\Users\CHTIOUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage =>PUP.Optional.Downware C:\Windows\Prefetch\ANYPROTECT.EXE-A6F01169.pf =>PUP.Optional.AnyProtect C:\Windows\Prefetch\GLOBALUPDATE.EXE-B66D5BF9.pf =>PUP.Optional.GlobalUpdate C:\Windows\Prefetch\GLOBALUPDATECRASHHANDLER.EXE-C9210A99.pf =>PUP.Optional.GlobalUpdate C:\Windows\Prefetch\WDSMANPRO.EXE-CF53D30D.pf =>PUP.Optional.WdsManPro C:\Windows\Prefetch\WPM_V20.0.0.2302.EXE-BBF6E602.pf =>PUP.Optional.WpManager C:\Users\CHTIOUI\Downloads\Programs\reimagerepair.exe =>PUP.Optional.ReImageRepair C:\Users\CHTIOUI\Downloads\Programs\reimagerepair_2.exe =>PUP.Optional.ReImageRepair C:\Users\CHTIOUI\Downloads\Programs\reimagerepair_3.exe =>PUP.Optional.ReImageRepair HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Microsoft\Tracing\amt_oursurfing_RASAPI32 =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Microsoft\Tracing\amt_oursurfing_RASMANCS =>PUP.Optional.OurSurfing ---\\ Récapitulatif des éléments trouvées sur votre station (22) - 0s http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.WdsManPro http://www.nicolascoolman.fr/rogue-reimagerepair/ =>PUP.Optional.ReImageRepair http://www.nicolascoolman.fr/blog =>PUP.Optional.IACSearchAndMedia http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/blog =>PUP.Optional.OurSurfing http://www.nicolascoolman.fr/adware-mywebsearch/ =>PUP.Optional.MyWebSearch http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions http://www.nicolascoolman.fr/blog =>PUP.Optional.MyBrowser http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Optional.Systweak http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine http://www.nicolascoolman.fr/adware-bandoo/ =>PUP.Optional.Bandoo http://www.nicolascoolman.fr/blog =>PUP.Optional.PriceFountain http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart ~ End of the scan, 20302 items in 89 seconds (927)(0)()