~ ZHPDiag v2015.8.23.124 Par Nicolas Coolman (2015/08/23) ~ Démarré par REP (Administrator) (2015/12/23 21:34:34) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\REP\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\REP\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v47.0.2526.106 MSIE: Internet Explorer v11.0.9600.18124 ---\\ Informations sur les produits Windows (4) - 23s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Logiciels de protection (2) - 10s Kaspersky Internet Security v16.0.0.614 Windows Defender W7 (Activate) ---\\ Surveillance de Logiciels (2) - 14s Adobe Flash Player 11 ActiveX 64-bit Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3909.532 MB (32% free) ~ System Restore: Activé (Enable) ~ System drive has 195 GB free of 276 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: REP-PC ~ User Name: REP ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 195 GB free of 276 GB ~ Drive E: has 9 GB free of 15 GB ---\\ Etat du Centre de Sécurité Windows (11) - 1s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 3s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] [MD5.E2C385B0D816AD37616BD4C4204D0633] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2487808] [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497664] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] [MD5.73ADDCC406B86E7DA4416691E8E74BDA] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] [MD5.AA77EB517D2F07A947294F260E3ACA83] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [118272] [MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808] ---\\ Processus lancés (39) - 13s [MD5.514089CB4A7DF38DC4DD936ADE4114D3] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [204288] [PID.460] [MD5.15AB7C82C9B5D276815CBD3BC25C5648] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [485376] [PID.1236] [MD5.FC5B75CA6A1DA31EDD4F8D53F5540B98] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [81088] [PID.1668] [MD5.50C3C62FFE6337E6E4F2F01CB07DF63C] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000] [PID.1704] [MD5.9DD3A22F804697606C2B7FF9E912FF6B] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe [353360] [PID.1824] [MD5.21ACFD2B4BF6C0F4D9080A437E400E88] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe [418896] [PID.1916] [MD5.48425C93B6F36529707206E4FA680CF3] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [872552] [PID.1924] [MD5.C9B2D1D3F86FD3673EF847DEF73B6F9E] - (.Acer Incorporated - Global Registration Service.) -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [36456] [PID.1948] [MD5.B705C7097F9A0EC941D02DCE7C7D426C] - (.Acer Incorporated - Updater Service.) -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe [244624] [PID.1988] [MD5.5839A8027D6D324A7CD494051A96628C] - (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568] [PID.2032] [MD5.1873214666F6F0A883742DF91FBC48C9] - (.NTI Corporation - Backup Manager Module.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832] [PID.1152] [MD5.2F87D4F79BBB79DE26BDC1AC1F23EA46] - (.深圳拍家科技有限公司 - 如意搜本地服务程序.) -- C:\Users\REP\AppData\Local\ruyiso\ruyisoapp\RYSService.exe [152952] [PID.1964] [MD5.9DA3B55B17B54789AFB8C657D4ACE4D7] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688] [PID.2348] [MD5.14B1D2A3A4B5F74541292DE251244F66] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [796672] [PID.132] =>PUP.Optional.CrossBrowse [MD5.29157E7FCBE92662DA8CC389C5FAF8EE] - (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe [4242064] [PID.2500] [MD5.92A218008C7235E229175E1D79DD293F] - (.Cinema PlusV25.10 - CinemaP-1.9cV25.10 exe.) -- C:\Program Files (x86)\CinemaP-1.9cV25.10\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-6.exe [1381456] [PID.2996] =>PUP.Optional.CrossRider [MD5.932A21CF0DA4E951C7C4A62D27E6D8FB] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe [211712] [PID.3180] [MD5.14B1D2A3A4B5F74541292DE251244F66] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [796672] [PID.1256] =>PUP.Optional.CrossBrowse [MD5.0D360F06B168A6F37ACA9D9F958245DA] - (.NTI Corporation - Acer Backup Manager.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280] [PID.2196] [MD5.9ABC4E3B00CFA3A47D5569F5B49FE42F] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1103440] [PID.4140] [MD5.D474767D4805CEF801AF6D4AEED1F9E3] - (.CyberLink Corp. - clear.fi Movie Resident Program.) -- C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448] [PID.4188] [MD5.A7D638F45317CB04FC6D718714050F50] - (.Dritek System Inc. - MMDx64Fx Application.) -- C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe [240208] [PID.4300] [MD5.14B1D2A3A4B5F74541292DE251244F66] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [796672] [PID.4476] =>PUP.Optional.CrossBrowse [MD5.A824317EA303679481EF1039A5D66212] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files (x86)\Launch Manager\LMworker.exe [343632] [PID.4488] [MD5.14B1D2A3A4B5F74541292DE251244F66] - (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [796672] [PID.4496] =>PUP.Optional.CrossBrowse [MD5.2EA68E33DFF41A10F1BAB15FC3A28076] - (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311616] [PID.4988] [MD5.793D7221E5EC69EA615349A13B702B8C] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528] [PID.4876] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.4344] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.2200] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.5288] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.5572] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.5832] [MD5.4EBC914DF87A7818EFA236BFC9A0805F] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [50385536] [PID.3740] [MD5.2BACD71123F42CEA603F4E205E1AE337] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096] [PID.4636] [MD5.2A46FFE841EC43001D5A293A54DB34DE] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223104] [PID.3912] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.3588] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.5444] [MD5.BC49C6D6DC13F0AEEDC12264B7C9D4BE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [799560] [PID.3920] [MD5.84867350CFF4C8551E5F5A3D355D8CB3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Invité\Downloads\ZHPDiag3.exe [1901056] [PID.1188] ---\\ Google Chrome, Démarrage,Recherche,Extensions (18) - 4s G0 - GCSP: Preferences [User Data\Default][HomePage] http://hao.ylmf.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://s4.cnzz.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.ylmf.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://su.bdimg.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://w.cnzz.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.114la.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://chrome.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.googleusercontent.com/ G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com/ G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [eahebamiopdhefndnmappcihfajigkka] __MSG_ExtensionName__ G2 - GCE: Preference [User Data\Default] [fahdkacgpocedihpehmmhbcadaaacdmf] SmarterPassword G2 - GCE: Preference [User Data\Default] [ffdcfjdljhbehggjdkdioajnknjcpbjb] Download Accelerator Plus (DAP) G2 - GCE: Preference [User Data\Default] [kkkbokfmaliecdpbkfmomjlckkjecpej] __MSG_extTitle__ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (14) - 10s P2 - FPN: [HKCU] [@iqiyi.com/npWebPlayer] - (.爱奇艺公司.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\REP\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll P2 - FPN: [HKCU] [B5MSoft.com/Bang5TaoPlugin] - (...) -- C:\Users\REP\AppData\Local\B5T\Plugin\npB5TPlugin.dll P2 - FPN: [HKCU] [ruyiso.com/RYSPlugin] - (.杭州如杰网络科技有限公司.) -- C:\Users\REP\AppData\Local\ruyiso\ruyisoapp\npRYSPlugin.dll P2 - FPN: [HKLM] [@iqiyi.com/npclient] - (.iQiyi.com.) -- C:\IQIYI Video\LStyle\npclient.dll =>PUP.Optional.IQIYIVideo P2 - FPN: [HKLM] [@iqiyi.com/npWebPlayer] - (.爱奇艺公司.) -- C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc..) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 10s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWr8UeuffMWh7dVpqrhxWvTeptNwxFJquDV6HwwATF_XbuTe3rwl-xRzd1eNuw9303iT7c9fScb5e43P0klIOe_ys7NdkOTW7E8G5nEckhtMFOoDQFYs8HeGLqe0JzOx8E_ORHXrDVh4p9AqYKv_DlJ3Gg4Q,, R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgijvkxlyip4nye17avlwr8ueuffmwh7dvpqrhxwvteptnwxfjqudv6hwwatf_xbute3rwl-xrzd1enuw9303it7c9fscb5e43phmfpv7vdevoedsx9dfru6uzfsj-rthxijjiq2ypli-tx_xlw6bzmfmob436rvp5k8y0vnhclwoqg,,&q={searchterms} R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgijvkxlyip4nye17avlwr8ueuffmwh7dvpqrhxwvteptnwxfjqudv6hwwatf_xbute3rwl-xrzd1enuw9303it7c9fscb5e43phmfpv7vdevoedsx9dfru6uzfsj-rthxijjiq2ypli-tx_xlw6bzmfmob436rvp5k8y0vnhclwoqg,,&q={searchterms} R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgijvkxlyip4nye17avlwr8ueuffmwh7dvpqrhxwvteptnwxfjqudv6hwwatf_xbute3rwl-xrzd1enuw9303it7c9fscb5e43phmfpv7vdevoedsx9dfru6uzfsj-rthxijjiq2ypli-tx_xlw6bzmfmob436rvp5k8y0vnhclwoqg,,&q={searchterms} R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgijvkxlyip4nye17avlwr8ueuffmwh7dvpqrhxwvteptnwxfjqudv6hwwatf_xbute3rwl-xrzd1enuw9303it7c9fscb5e43phmfpv7vdevoedsx9dfru6uzfsj-rthxijjiq2ypli-tx_xlw6bzmfmob436rvp5k8y0vnhclwoqg,,&q={searchterms} R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (6) - 3s O2 - BHO: B5T Shopping Assistant [64Bits] - {260669B1-FC2C-41C0-BAA2-6EF3BB188660} (Orphean) O2 - BHO: بçزâثرسéہضضتض [64Bits] - {2F6515A7-52C5-49C0-AA41-9EF816AFD4B2} . (.深圳拍家科技有限公司 - 如意搜娱乐助手.) -- C:\Users\REP\AppData\Local\ruyiso\ruyisoapp\RYSIEHelper64.dll O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {C66D064F-82FE-4E1A-B06A-B2490BA48B18} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll ---\\ Internet Explorer, Barre d'outil (2) - 1s O3 - Toolbar: Bing - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll O3 - Toolbar: (no name) - [HKLM]{3507FA00-ADA2-4A02-99B9-51AD26CA9120} (Orphean) ---\\ Applications lancées au démarrage du système (26) - 8s O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_5A8CAB31D948F51833AA43E49A3DF793] . (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - HKCU\..\Run: [DownloadAccelerator] . (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\REP\AppData\Local\Google\Update\GoogleUpdate.exe O4 - HKLM\..\Wow6432Node\Run: [SuiteTray] . (.Egis Technology Inc. - SuiteTray.) -- C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe O4 - HKLM\..\Wow6432Node\Run: [Norton Online Backup] . (.Symantec Corporation - Norton Online Backup Service.) -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe O4 - HKLM\..\Wow6432Node\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe O4 - HKLM\..\Wow6432Node\Run: [BackupManagerTray] . (.NTI Corporation - Acer Backup Manager.) -- C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe O4 - HKLM\..\Wow6432Node\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKLM\..\Wow6432Node\Run: [ArcadeMovieService] . (.CyberLink Corp. - clear.fi Movie Resident Program.) -- C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe O4 - HKLM\..\Wow6432Node\Run: [znqun] . (...) -- C:\Users\REP\AppData\Roaming\afght\fsrrgu\kmqxh.exe O4 - HKLM\..\Wow6432Node\Run: [KiesTrayAgent] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\.DEFAULT\..\RunOnce: [IsMyWinLockerReboot] . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe O4 - HKUS\S-1-5-18\..\RunOnce: [IsMyWinLockerReboot] . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-19\..\RunOnce: [IsMyWinLockerReboot] . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [IsMyWinLockerReboot] . (.Microsoft Corporation - Installateur Windows®.) -- C:\Windows\System32\msiexec.exe O4 - HKUS\S-1-5-21-32229243-3003955713-1867011151-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-32229243-3003955713-1867011151-1000\..\Run: [GoogleChromeAutoLaunch_5A8CAB31D948F51833AA43E49A3DF793] . (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - HKUS\S-1-5-21-32229243-3003955713-1867011151-1000\..\Run: [DownloadAccelerator] . (.Speedbit Ltd. - Download Accelerator Plus (DAP).) -- C:\Program Files (x86)\DAP\DAP.exe O4 - HKUS\S-1-5-21-32229243-3003955713-1867011151-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\REP\AppData\Local\Google\Update\GoogleUpdate.exe ---\\ Raccourcis Global Startup (7) - 22s O4 - GS\Quicklaunch [Administrateur]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\TaskBar [Administrateur]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Quicklaunch [Invité]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\TaskBar [Invité]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Quicklaunch [REP]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\TaskBar [REP]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\CommonDesktop [Public]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse ---\\ Modification Domaine/Adresses DNS (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.8.1 192.168.8.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.8.1 192.168.8.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.8.1 192.168.8.1 ---\\ Protocole additionnel (20) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ---\\ Liste des services NT non Microsoft et non désactivés (14) - 3s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe O23 - Service: Kaspersky Anti-Virus Service 16.0.0 (AVP16.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe O23 - Service: ePower Service (ePowerSvc) . (.Acer Incorporated - ePowerSvc.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe O23 - Service: خدمة Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe O23 - Service: Norton Online Backup (NOBU) . (.Symantec Corporation - Norton Online Backup Service.) - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe O23 - Service: NTI IScheduleSvc (NTI IScheduleSvc) . (.NTI Corporation - Backup Manager Module.) - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe O23 - Service: RYSService (RYSService) . (.深圳拍家科技有限公司 - 如意搜本地服务程序.) - C:\Users\REP\AppData\Local\ruyiso\ruyisoapp\RYSService.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe ---\\ Tâches planifiées en automatique (33) - 9s O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-6.job [3128] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-7.job [3128] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-10_user.job [2102] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5.job [2436] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5_user.job [2436] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\Tasks\Crossbrowse.job [1052] =>PUP.Optional.CrossBrowse O39 - APT: Orphean - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job [966] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job [970] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [840] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [844] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-32229243-3003955713-1867011151-1000Core.job [792] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-32229243-3003955713-1867011151-1000UA.job [844] O39 - APT: Orphean - (...) -- C:\Windows\Tasks\jjk Files Update Ver 20151029.job [464] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-6 [6156] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-7 [6158] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-10_user [5118] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5 [5466] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5_user [5454] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\clear.fi [3418] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\clear.fiAgent [3348] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\Crossbrowse [4070] =>PUP.Optional.CrossBrowse O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\DMREngine [3366] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\EgisUpdate [3340] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore [3714] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA [3968] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3588] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3840] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-32229243-3003955713-1867011151-1000Core [3414] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-32229243-3003955713-1867011151-1000UA [3810] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\jjk Files Update Ver 20151029 [3532] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\PMMUpdate [3272] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\psv_Blackron [3258] O39 - APT: Orphean - (...) -- C:\Windows\System32\Tasks\{DA5A6786-BCB9-4785-9FFA-0A3F50AA3208} [3138] ---\\ Logiciels installés (112) - 63s O42 - Logiciel: Package de pilotes Windows - libusbK AVRISP mkII (04/27/2014 3.0.7.0) - (.libusbK.) [HKLM][64Bits] -- 053CDDAAECC24EBC2DB6F865540D8056F5FE3FCA O42 - Logiciel: Windows Driver Package - ATMEL, Inc. (usbser) Ports (01/08/2013 6.0.0.0) - (.ATMEL, Inc..) [HKLM][64Bits] -- 0ED695C81FAE1F3FF0020BB04E14E01EC7AFA041 O42 - Logiciel: Windows Driver Package - Arduino LLC (www.arduino.cc) Arduino USB Driver (0 - (.Arduino LLC (www.arduino.cc).) [HKLM][64Bits] -- 1E3EA5624DD04BEFECF3FFF6D3A21CCE9CD70A91 O42 - Logiciel: Windows Driver Package - FTDI CDM Driver Package - Bus/D2XX Driver (07/12/2 - (.FTDI.) [HKLM][64Bits] -- 22CCD58B53472BE3FCAFF05631111C4062959A43 O42 - Logiciel: Adobe Flash Player 11 ActiveX 64-bit - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: Windows Driver Package - SparkFun Electronics (usbser) Ports (10/27/2014 5 - (.SparkFun Electronics.) [HKLM][64Bits] -- AF341C2811B6988C95D1BE33E4541B80FBEEC07E O42 - Logiciel: Android Studio - (.Google Inc..) [HKLM][64Bits] -- Android Studio O42 - Logiciel: Windows Driver Package - FTDI CDM Driver Package - VCP Driver (07/12/2013 2 - (.FTDI.) [HKLM][64Bits] -- BD00013670D26C16E19F284BF8E15DAF813497C7 O42 - Logiciel: Package de pilotes Windows - BirdBrain Technologies LLC (www.birdbraintechn - (.BirdBrain Technologies LLC (www.birdbraintechnologies.com).) [HKLM][64Bits] -- D3CF67D79398A460216FE982E95D3F3ED9D00969 O42 - Logiciel: Windows Driver Package - Adafruit Industries LLC (usbser) Ports (05/06/201 - (.Adafruit Industries LLC.) [HKLM][64Bits] -- DCB075664682927C9BBCC4197B223FD46536AC11 O42 - Logiciel: Package de pilotes Windows - libusbK USBTinyISP (04/27/2014 3.0.7.0) - (.libusbK.) [HKLM][64Bits] -- DE72E36F3DC9C272561882EBE57C16AD6CA1A9CE O42 - Logiciel: Windows Driver Package - wch.cn (CH341SER_A64) Ports (08/08/2014 3.4.2014. - (.wch.cn.) [HKLM][64Bits] -- E46668F0267651C248944766291791B0DEF36F1D O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey O42 - Logiciel: MyWinLocker - (.Egis Technology Inc..) [HKLM][64Bits] -- {0B78ECB0-1A6B-4E6D-89D7-0E7CE77F0427} O42 - Logiciel: Java 8 Update 66 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418066F0} O42 - Logiciel: AMD Media Foundation Decoders - (.ATI Technologies Inc..) [HKLM][64Bits] -- {2E12FEB9-11CD-5B44-D51B-0837225A6594} O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {3605D89A-BD66-F5C5-779B-BE9110B41077} O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} O42 - Logiciel: Java SE Development Kit 8 Update 65 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180650} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Samsung USB Driver for Mobile Phones - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: 7-Zip 9.38 beta - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: Acer Registration - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Registration O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Screensaver O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM][64Bits] -- Acer Welcome Center O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR O42 - Logiciel: Arduino - (.Arduino LLC.) [HKLM][64Bits] -- Arduino O42 - Logiciel: CinemaP-1.9cV25.10 - (.Cinema PlusV25.10.) [HKLM][64Bits] -- CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider O42 - Logiciel: Crossbrowse - (.The Crossbrowse Authors.) [HKLM][64Bits] -- Crossbrowse =>PUP.Optional.CrossBrowse O42 - Logiciel: Download Accelerator Plus (DAP) - (.Speedbit Ltd..) [HKLM][64Bits] -- Download Accelerator Plus (DAP) O42 - Logiciel: Fooz Kids - (.FUHU, Inc..) [HKLM][64Bits] -- FoozKids O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM][64Bits] -- Identity Card O42 - Logiciel: Acer Crystal Eye Webcam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: Acer Backup Manager - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270} O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM][64Bits] -- InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE} O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761} O42 - Logiciel: newsXpresso - (.esobi Inc..) [HKLM][64Bits] -- InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: NTI Media Maker 9 - (.NTI Corporation.) [HKLM][64Bits] -- InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44} O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26} O42 - Logiciel: 爱奇艺影音 - (.爱奇艺.) [HKLM][64Bits] -- IQIYI Video =>PUP.Optional.IQIYIVideo O42 - Logiciel: LenovoUsbDriver 1.0.14 - (.Lenovo.) [HKLM][64Bits] -- LenovoUsbDriver O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM][64Bits] -- LManager O42 - Logiciel: mikroC (remove only) - (...) [HKLM][64Bits] -- mikroC O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: Acer Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent acer Master Uninstall =>.WildTangent O42 - Logiciel: WinRAR archiver - (...) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-04cc0299-c521-4a70-b692-da48ac1bfe15 =>.WildTangent O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WTA-14032b2a-4ec6-4b42-9edc-2ea5b6d29591 =>.WildTangent O42 - Logiciel: Crazy Chicken Kart 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-19085419-ee90-4a85-8a43-4f231ce6008a =>.WildTangent O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-3501c97f-4977-48c3-a6d9-84bfcb7cc45a =>.WildTangent O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-36b932dd-2ec5-40de-ad34-63e7994383d0 =>.WildTangent O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WTA-4a9d6cb8-2b0c-4b0f-9cb6-85d87a24d650 =>.WildTangent O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-4ad01330-c50e-44d3-8a09-3096088cdaa1 =>.WildTangent O42 - Logiciel: Torchlight - (.WildTangent.) [HKLM][64Bits] -- WTA-4ee40cae-f95b-49ba-ab76-def4f62d03d1 =>.WildTangent O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-5e8040a9-0ce0-4e35-a763-e5129984c734 =>.WildTangent O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM][64Bits] -- WTA-5fa7b2b0-1129-49aa-a133-01c9075814e7 =>.WildTangent O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-619426bb-f28f-4aa8-b5c8-e2b996242f38 =>.WildTangent O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-667d0150-e9c0-412a-a87a-b40fad1d2fe2 =>.WildTangent O42 - Logiciel: Virtual Villagers 4 - The Tree of Life - (.WildTangent.) [HKLM][64Bits] -- WTA-7ba42e71-4252-48c3-b060-b8506154e65e =>.WildTangent O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-8dbbaa8a-b5f6-489f-b72e-75b469450407 =>.WildTangent O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WTA-96af83b9-a3c9-420c-979e-971e713e4934 =>.WildTangent O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WTA-aca3afdd-dc5e-45c8-a0d4-d3cd30c15515 =>.WildTangent O42 - Logiciel: Final Drive: Nitro - (.WildTangent.) [HKLM][64Bits] -- WTA-c674660b-5bab-47cb-82bd-e3d936886816 =>.WildTangent O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-ca230472-7ff5-4f77-859d-0b948f0050ac =>.WildTangent O42 - Logiciel: Mystery of Mortlake Mansion - (.WildTangent.) [HKLM][64Bits] -- WTA-fa688555-598d-4d4e-a831-fb5cb272e38e =>.WildTangent O42 - Logiciel: Acer Crystal Eye Webcam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} O42 - Logiciel: Backup Manager V3 - (.NTI Corporation.) [HKLM][64Bits] -- {0B61BBD5-DA3C-409A-8730-0C3DC3B0F270} O42 - Logiciel: Proteus 7 Professional - (.Labcenter Electronics.) [HKLM][64Bits] -- {13C4E8F0-B747-4C7C-9090-884832F9F90A} O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- {14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C} O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM][64Bits] -- {17DF9714-60C9-43C9-A9C2-32BCAED44CBE} O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {1895E5C2-A9F8-4757-AD7B-0E9EA8BA1C46} O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- {2637C347-9DAD-11D6-9EA2-00055D0CA761} O42 - Logiciel: Evernote v. 4.5.1 - (.Evernote Corp..) [HKLM][64Bits] -- {28921580-E4BB-11E0-9FD7-1CC1DEF07CBE} O42 - Logiciel: LG United Mobile Driver - (.LG Electronics.) [HKLM][64Bits] -- {2A3A4BD6-6CE0-4E2A-80D2-1D0FF6ACBFBA} O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} O42 - Logiciel: MyWinLocker 4 - (.Egis Technology Inc..) [HKLM][64Bits] -- {39F15B50-A977-4CA6-B1C3-6A8724CDA025} O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964} O42 - Logiciel: Norton Online Backup - (.Symantec Corporation.) [HKLM][64Bits] -- {40A66DF6-22D3-44B5-A7D3-83B118A2C0DC} O42 - Logiciel: clear.fi Client - (.Acer Incorporated.) [HKLM][64Bits] -- {43AAE145-83CF-4C96-9A5E-756CEFCE879F} O42 - Logiciel: Fooz Kids - (.FUHU, Inc..) [HKLM][64Bits] -- {4C774C35-E0AF-72E1-136A-2BF666702268} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: newsXpresso - (.esobi Inc..) [HKLM][64Bits] -- {613C0AC5-3A67-4B94-8B13-9176AD83F5BF} O42 - Logiciel: WildTangent Games App (Acer Games) - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer =>.WildTangent O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {77E7AE5C-181C-4CAF-ADBF-946F11C1CE26} O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9} O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {84A88532-36E8-4C7E-99D0-FA25D3BCD5D9} O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} O42 - Logiciel: Fooz Kids Platform - (.FUHU, Inc..) [HKLM][64Bits] -- {8D68CE08-9A14-4B7B-9857-3C646A2F34C7} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate O42 - Logiciel: Adobe Reader X (10.1.16) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001} O42 - Logiciel: clear.fi - (.CyberLink Corp..) [HKLM][64Bits] -- {B906C11A-D193-4143-9FA7-E2EE8A5A8F21} O42 - Logiciel: Shredder - (.Egis Technology Inc..) [HKLM][64Bits] -- {C2695E83-CF1D-43D1-84FE-B3BEC561012A} O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {C28D96C0-6A90-459E-A077-A6706F4EC0FC} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM][64Bits] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} O42 - Logiciel: Acer Updater - (.Acer Incorporated.) [HKLM][64Bits] -- {EE171732-BEB4-4576-887D-CB62727F01CA} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: KingRoot °و±¾ 2.4.0 - (.KingRoot.) [HKLM][64Bits] -- {FA3B7324-9EB4-4ADC-84D0-5461BE113832}_is1 O42 - Logiciel: Skype™ 7.17 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FDB3B167-F4FA-461D-976F-286304A57B2A} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKCU][64Bits] -- Google Chrome O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer O42 - Logiciel: Touch Browser - (.Balance Form corp.) [HKCU][64Bits] -- {9563BC59-9556-4805-8CD4-886781779D8D} O42 - Logiciel: 帮5淘 - (.载信软件(上海)有限公司.) [HKCU][64Bits] -- 帮5淘 ---\\ HKCU & HKLM Software Keys (123) - 63s HKLM\SOFTWARE\Wow6432Node\7-Zip HKLM\SOFTWARE\Wow6432Node\Acer Incorporated HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AMD HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Arduino HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Atheros Communications Inc. HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\B5TService HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV25.10-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Dritek HKLM\SOFTWARE\Wow6432Node\EgisTec IPS HKLM\SOFTWARE\Wow6432Node\EgisTec MyWinLocker HKLM\SOFTWARE\Wow6432Node\EgisTec MyWinLockerSuite HKLM\SOFTWARE\Wow6432Node\EgisTec Shredder HKLM\SOFTWARE\Wow6432Node\ELTIMA Software HKLM\SOFTWARE\Wow6432Node\Evernote HKLM\SOFTWARE\Wow6432Node\FUHU, Inc. HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Labcenter Electronics HKLM\SOFTWARE\Wow6432Node\LG Electronics HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\McAfee HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\mtMedlight HKLM\SOFTWARE\Wow6432Node\NewTech Infosystems HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OEM HKLM\SOFTWARE\Wow6432Node\Prolific Technology INC HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SpeedBit HKLM\SOFTWARE\Wow6432Node\SysProgs HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\VirualDiskRedist HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\2345Chrome HKCU\SOFTWARE\2345Explorer HKCU\SOFTWARE\360 HKCU\SOFTWARE\360Chrome HKCU\SOFTWARE\3rd Eye Solutions HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Acer HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AppID HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\ATI HKCU\SOFTWARE\B5MSoft HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV25.10-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser HKCU\SOFTWARE\Cyberlink HKCU\SOFTWARE\Dritek HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\Google HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\JollyBear HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\Labcenter Electronics HKCU\SOFTWARE\Lingoe HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\mikroElektronika HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MTK HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewTech Infosystems HKCU\SOFTWARE\OEM HKCU\SOFTWARE\PPStream HKCU\SOFTWARE\QyGameClient =>PUP.Optional.IQIYIVideo HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Rtp HKCU\SOFTWARE\ryssoft HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypePlugin HKCU\SOFTWARE\SpeedBit HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\TheWorld Chrome HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\undefined HKCU\SOFTWARE\Unity HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (228) - 109s O43 - CFD: 2015/10/29 20:16:26 - [] D -- C:\Program Files (x86)\7-Zip O43 - CFD: 2015/10/28 20:26:27 - [] D -- C:\Program Files (x86)\Acer O43 - CFD: 2011/11/03 13:15:45 - [] D -- C:\Program Files (x86)\Acer Games O43 - CFD: 2011/11/03 14:13:42 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/10/28 19:58:01 - [] D -- C:\Program Files (x86)\AMD APP O43 - CFD: 2015/11/30 18:02:22 - [] D -- C:\Program Files (x86)\Arduino O43 - CFD: 2015/10/28 19:57:34 - [] D -- C:\Program Files (x86)\ATI Technologies O43 - CFD: 2015/12/07 10:45:12 - [] D -- C:\Program Files (x86)\baidu O43 - CFD: 2015/12/17 20:36:16 - [] D -- C:\Program Files (x86)\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider O43 - CFD: 2015/12/21 19:55:54 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2015/10/31 20:08:28 - [] D -- C:\Program Files (x86)\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2015/10/28 20:16:55 - [] D -- C:\Program Files (x86)\Cyberlink O43 - CFD: 2015/12/06 04:35:16 - [] D -- C:\Program Files (x86)\DAP O43 - CFD: 2015/12/07 00:42:20 - [] D -- C:\Program Files (x86)\EasyPHP-Webserver-14.1b2 O43 - CFD: 2011/11/03 14:01:57 - [] D -- C:\Program Files (x86)\EgisTec IPS O43 - CFD: 2011/11/03 14:02:16 - [] D -- C:\Program Files (x86)\EgisTec MyWinLocker O43 - CFD: 2011/11/03 14:00:39 - [] D -- C:\Program Files (x86)\EgisTec MyWinLockerSuite O43 - CFD: 2011/11/03 14:03:00 - [] D -- C:\Program Files (x86)\EgisTec Shredder O43 - CFD: 2011/11/03 13:17:12 - [] D -- C:\Program Files (x86)\Evernote O43 - CFD: 2011/11/03 14:13:44 - [] D -- C:\Program Files (x86)\Fooz Kids O43 - CFD: 2015/10/29 20:15:10 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/11/30 21:20:55 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/12/17 04:02:26 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/12/10 10:30:39 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/12/06 04:39:00 - [] D -- C:\Program Files (x86)\Kaspersky Lab O43 - CFD: 2015/12/22 00:14:50 - [] D -- C:\Program Files (x86)\KingRoot O43 - CFD: 2015/11/15 15:15:07 - [] D -- C:\Program Files (x86)\Labcenter Electronics O43 - CFD: 2015/10/28 19:53:21 - [] D -- C:\Program Files (x86)\Launch Manager O43 - CFD: 2015/12/16 15:08:49 - [] D -- C:\Program Files (x86)\LenovoUsbDriver O43 - CFD: 2015/12/17 04:02:28 - [] D -- C:\Program Files (x86)\LG Electronics O43 - CFD: 2015/10/28 20:04:00 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2015/11/03 13:16:12 - [] D -- C:\Program Files (x86)\Microsoft Application Virtualization Client O43 - CFD: 2015/10/28 21:36:42 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/12/10 02:22:49 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2011/11/03 13:46:07 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2015/11/30 00:31:44 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/11/16 18:45:42 - [] D -- C:\Program Files (x86)\Mikroelektronika O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2011/11/03 14:15:13 - [] D -- C:\Program Files (x86)\newsXpresso O43 - CFD: 2015/10/28 20:08:59 - [] D -- C:\Program Files (x86)\NTI O43 - CFD: 2015/10/28 20:00:22 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/12/21 20:37:08 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 2015/12/12 00:51:46 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2011/11/03 14:03:55 - [] D -- C:\Program Files (x86)\Symantec O43 - CFD: 2015/10/28 20:01:11 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2009/07/14 05:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2015/11/25 19:14:17 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2015/12/21 09:42:35 - [] D -- C:\Program Files (x86)\WildTangent Games O43 - CFD: 2015/11/27 19:36:49 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2011/11/03 13:53:58 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2015/10/29 04:36:07 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/11/28 10:35:51 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 06:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2015/10/29 04:36:07 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 04:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2015/10/29 04:36:07 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/10/30 18:31:14 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2015/10/29 20:16:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 2011/11/03 12:34:16 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2011/11/03 14:03:30 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer O43 - CFD: 2011/11/03 14:09:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Backup Manager O43 - CFD: 2015/10/28 20:23:14 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye Webcam O43 - CFD: 2015/10/28 19:51:01 - [] AD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem O43 - CFD: 2009/07/14 05:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/10/28 19:57:41 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center O43 - CFD: 2015/11/02 19:51:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio O43 - CFD: 2015/10/28 20:17:52 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\clear.fi O43 - CFD: 2015/10/31 20:09:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2015/12/06 04:35:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Accelerator Plus (DAP) O43 - CFD: 2011/11/03 14:03:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec O43 - CFD: 2011/11/03 13:17:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote O43 - CFD: 2015/12/21 09:40:03 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/11/30 21:21:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/11/20 09:36:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/11/20 09:36:56 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit O43 - CFD: 2015/12/06 04:40:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security O43 - CFD: 2015/12/17 03:21:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KingRoot O43 - CFD: 2009/07/14 05:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/10/28 21:01:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Family Protection O43 - CFD: 2015/10/28 21:37:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Français) O43 - CFD: 2015/12/10 02:30:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/11/16 18:46:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mikroelektronika O43 - CFD: 2011/11/03 14:15:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\newsXpresso O43 - CFD: 2015/12/05 04:03:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Online Backup O43 - CFD: 2015/10/28 20:10:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 9 O43 - CFD: 2015/11/15 15:17:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proteus 7 Professional O43 - CFD: 2015/11/09 17:59:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 2015/12/12 00:51:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2009/07/14 05:54:24 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2010/11/21 08:16:41 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/11/25 19:15:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2011/11/03 13:54:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 2015/10/30 18:31:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2011/11/03 13:23:15 - [] D -- C:\ProgramData\Acer O43 - CFD: 2015/12/17 03:10:16 - [] D -- C:\ProgramData\adb O43 - CFD: 2015/11/01 19:17:14 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/12/17 03:08:54 - [] D -- C:\ProgramData\apk O43 - CFD: 2015/10/28 20:59:22 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/12/06 17:55:50 - [] D -- C:\ProgramData\ApplicationHosting O43 - CFD: 2015/10/28 21:45:45 - [] D -- C:\ProgramData\ATI O43 - CFD: 2015/10/29 20:40:32 - [0] D -- C:\ProgramData\B5TTmp O43 - CFD: 2011/11/03 14:10:26 - [] D -- C:\ProgramData\BackupManager O43 - CFD: 2015/12/21 09:43:21 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 2015/10/28 20:59:22 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/12/21 22:38:52 - [] D -- C:\ProgramData\clear.fi O43 - CFD: 2015/10/28 20:20:42 - [] D -- C:\ProgramData\CLSK O43 - CFD: 2015/12/10 20:28:49 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2015/10/28 20:59:22 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/10/28 19:50:54 - [] D -- C:\ProgramData\EgisTec O43 - CFD: 2015/10/28 20:13:26 - [] D -- C:\ProgramData\EgisTec IPS O43 - CFD: 2011/11/03 13:16:54 - [0] D -- C:\ProgramData\Evernote O43 - CFD: 2015/10/28 20:59:22 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2015/10/28 20:07:41 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 2015/12/21 14:18:19 - [] D -- C:\ProgramData\FloodLightGames O43 - CFD: 2011/11/03 14:13:46 - [] D -- C:\ProgramData\Fooz Kids O43 - CFD: 2015/11/02 15:05:44 - [0] D -- C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo O43 - CFD: 2015/11/11 19:01:54 - [] D -- C:\ProgramData\JollyBear O43 - CFD: 2015/12/23 21:01:46 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 2015/12/08 12:10:11 - [] D -- C:\ProgramData\LocalStorage O43 - CFD: 2015/12/06 03:39:41 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2015/10/29 19:57:44 - [] D -- C:\ProgramData\Medlights O43 - CFD: 2015/10/28 20:59:22 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/12/19 00:51:06 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/10/28 20:59:22 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/10/28 21:43:01 - [] D -- C:\ProgramData\newsXpresso O43 - CFD: 2015/10/28 20:10:33 - [] D -- C:\ProgramData\NTI Launcher O43 - CFD: 2015/10/28 21:05:04 - [] D -- C:\ProgramData\oem O43 - CFD: 2015/11/20 09:37:17 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/12/21 14:43:32 - [] D -- C:\ProgramData\PlayFirst O43 - CFD: 2015/11/20 09:33:24 - [] D -- C:\ProgramData\rystmp O43 - CFD: 2015/11/09 18:01:04 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2015/12/23 21:01:20 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/12/06 04:35:13 - [] D -- C:\ProgramData\SpeedBit O43 - CFD: 2015/12/17 02:15:46 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 2011/11/03 14:03:55 - [] D -- C:\ProgramData\Symantec O43 - CFD: 2015/12/23 20:11:07 - [] AD -- C:\ProgramData\Temp O43 - CFD: 2015/12/21 19:56:09 - [] D -- C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2015/11/20 09:36:08 - [] D -- C:\ProgramData\VirtualizedApplications O43 - CFD: 2015/12/21 15:01:13 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 2011/11/03 14:05:21 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2011/11/03 14:13:42 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 2015/10/28 19:57:56 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies O43 - CFD: 2015/11/27 18:25:01 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2011/11/03 14:01:52 - [] D -- C:\Program Files (x86)\Common Files\EgisTec O43 - CFD: 2015/11/11 17:15:27 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/11/20 09:36:20 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/11/15 15:17:14 - [] D -- C:\Program Files (x86)\Common Files\Labcenter Electronics O43 - CFD: 2015/10/28 20:07:38 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 2015/12/06 03:39:40 - [] D -- C:\Program Files (x86)\Common Files\mcafee O43 - CFD: 2015/10/28 21:36:42 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/12/12 00:51:45 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2009/07/14 04:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2015/11/28 10:35:50 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/12/21 19:55:54 - [] D -- C:\Program Files (x86)\Common Files\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2011/11/03 13:24:13 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2015/12/16 14:57:06 - [] D -- C:\Users\REP\AppData\Roaming\AdbDriverInstaller O43 - CFD: 2015/10/30 18:11:55 - [] D -- C:\Users\REP\AppData\Roaming\Adobe O43 - CFD: 2015/10/29 20:16:42 - [] D -- C:\Users\REP\AppData\Roaming\afght O43 - CFD: 2015/10/28 21:45:45 - [] D -- C:\Users\REP\AppData\Roaming\ATI O43 - CFD: 2015/10/28 21:01:35 - [] D -- C:\Users\REP\AppData\Roaming\CyberLink O43 - CFD: 2015/10/28 21:32:48 - [] D -- C:\Users\REP\AppData\Roaming\FoozKids O43 - CFD: 2015/10/28 21:04:17 - [] D -- C:\Users\REP\AppData\Roaming\Identities O43 - CFD: 2015/11/15 15:12:17 - [] D -- C:\Users\REP\AppData\Roaming\InstallShield O43 - CFD: 2015/10/29 20:08:43 - [] D -- C:\Users\REP\AppData\Roaming\IQIYI Video =>PUP.Optional.IQIYIVideo O43 - CFD: 2015/11/02 19:56:19 - [] D -- C:\Users\REP\AppData\Roaming\JetBrains O43 - CFD: 2015/12/16 15:48:10 - [] D -- C:\Users\REP\AppData\Roaming\KingRoot O43 - CFD: 2011/11/03 14:13:42 - [] D -- C:\Users\REP\AppData\Roaming\Macromedia O43 - CFD: 2015/11/05 09:34:28 - [] D -- C:\Users\REP\AppData\Roaming\Maxthon3 O43 - CFD: 2010/11/21 08:16:41 - [0] D -- C:\Users\REP\AppData\Roaming\Media Center Programs O43 - CFD: 2015/11/22 22:02:13 - [] SD -- C:\Users\REP\AppData\Roaming\Microsoft O43 - CFD: 2015/10/29 19:58:26 - [] D -- C:\Users\REP\AppData\Roaming\Mozilla O43 - CFD: 2015/10/28 21:42:08 - [] D -- C:\Users\REP\AppData\Roaming\newsXpresso O43 - CFD: 2015/10/28 21:10:42 - [] D -- C:\Users\REP\AppData\Roaming\PowerCinema O43 - CFD: 2015/11/25 23:28:09 - [] D -- C:\Users\REP\AppData\Roaming\Skype O43 - CFD: 2015/11/17 00:10:32 - [] D -- C:\Users\REP\AppData\Roaming\SoftGrid Client O43 - CFD: 2015/12/06 04:35:13 - [] D -- C:\Users\REP\AppData\Roaming\SpeedBit O43 - CFD: 2015/11/02 16:14:24 - [] D -- C:\Users\REP\AppData\Roaming\Sun O43 - CFD: 2015/12/21 19:56:09 - [] D -- C:\Users\REP\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2015/10/28 21:38:08 - [0] D -- C:\Users\REP\AppData\Roaming\TP O43 - CFD: 2015/11/25 19:16:27 - [] D -- C:\Users\REP\AppData\Roaming\vlc O43 - CFD: 2015/10/14 20:21:34 - [] D -- C:\Users\REP\AppData\Roaming\WB_CFG O43 - CFD: 2015/10/30 18:31:37 - [0] D -- C:\Users\REP\AppData\Roaming\WinRAR O43 - CFD: 2015/12/23 21:36:33 - [] D -- C:\Users\REP\AppData\Roaming\ZHP O43 - CFD: 2015/10/28 21:01:34 - [] D -- C:\Users\REP\AppData\Local\Acer O43 - CFD: 2015/10/30 18:11:55 - [] D -- C:\Users\REP\AppData\Local\Adobe O43 - CFD: 2015/11/02 19:24:13 - [] D -- C:\Users\REP\AppData\Local\Android O43 - CFD: 2015/10/28 21:00:54 - [0] SHD -- C:\Users\REP\AppData\Local\Application Data O43 - CFD: 2015/10/28 21:45:45 - [] D -- C:\Users\REP\AppData\Local\ATI O43 - CFD: 2015/12/17 20:35:18 - [] D -- C:\Users\REP\AppData\Local\B5T O43 - CFD: 2015/10/31 20:10:20 - [] D -- C:\Users\REP\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2015/10/28 21:10:41 - [] D -- C:\Users\REP\AppData\Local\Cyberlink O43 - CFD: 2015/11/09 17:53:31 - [] D -- C:\Users\REP\AppData\Local\Downloaded Installations O43 - CFD: 2015/11/12 00:30:08 - [] D -- C:\Users\REP\AppData\Local\Eclipse O43 - CFD: 2015/10/28 21:11:01 - [] D -- C:\Users\REP\AppData\Local\EgisTec IPS O43 - CFD: 2015/12/08 23:00:27 - [] D -- C:\Users\REP\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/10/29 20:15:09 - [] D -- C:\Users\REP\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/11/22 22:52:20 - [] D -- C:\Users\REP\AppData\Local\Google O43 - CFD: 2015/12/17 03:09:39 - [] D -- C:\Users\REP\AppData\Local\GWX O43 - CFD: 2015/10/28 21:00:54 - [0] SHD -- C:\Users\REP\AppData\Local\Historique O43 - CFD: 2015/11/11 19:01:54 - [] D -- C:\Users\REP\AppData\Local\JollyBear O43 - CFD: 2015/11/15 15:21:00 - [] D -- C:\Users\REP\AppData\Local\Labcenter Electronics O43 - CFD: 2015/12/17 02:15:45 - [0] D -- C:\Users\REP\AppData\Local\Mediatek O43 - CFD: 2015/12/17 02:57:59 - [] D -- C:\Users\REP\AppData\Local\Microsoft O43 - CFD: 2015/10/28 21:10:27 - [] D -- C:\Users\REP\AppData\Local\PowerCinema O43 - CFD: 2015/10/29 19:56:17 - [] D -- C:\Users\REP\AppData\Local\Programs O43 - CFD: 2015/11/05 09:34:13 - [] D -- C:\Users\REP\AppData\Local\ruyiso O43 - CFD: 2015/12/23 21:00:43 - [0] D -- C:\Users\REP\AppData\Local\Skype O43 - CFD: 2015/11/22 22:02:19 - [] D -- C:\Users\REP\AppData\Local\SkypePlugin O43 - CFD: 2015/10/28 21:37:56 - [] D -- C:\Users\REP\AppData\Local\SoftGrid Client O43 - CFD: 2015/10/29 20:11:41 - [] D -- C:\Users\REP\AppData\Local\SysassistByHotWheel =>PUP.Optional.Generic O43 - CFD: 2015/12/23 21:33:57 - [] D -- C:\Users\REP\AppData\Local\Temp O43 - CFD: 2015/10/28 21:00:54 - [0] SHD -- C:\Users\REP\AppData\Local\Temporary Internet Files O43 - CFD: 2015/11/19 20:20:52 - [] D -- C:\Users\REP\AppData\Local\Touch Browser O43 - CFD: 2015/10/29 20:10:07 - [] D -- C:\Users\REP\AppData\Local\Unity O43 - CFD: 2015/11/16 18:48:26 - [] D -- C:\Users\REP\AppData\Local\VirtualStore O43 - CFD: 2015/11/17 22:34:19 - [0] D -- C:\Users\REP\AppData\Local\{2C038E2A-F6EE-4E2B-B988-90BB264433A1} O43 - CFD: 2015/11/15 16:02:09 - [0] D -- C:\Users\REP\AppData\Local\{6F4ABD8F-D187-4A9E-A18B-DBFC95F30A93} O43 - CFD: 2015/11/15 16:02:09 - [0] D -- C:\Users\REP\AppData\Local\{F9D6020E-6988-4B46-82B0-29C4C2AE5762} O43 - CFD: 2009/07/14 05:54:32 - [] RD -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/12/17 02:58:26 - [] RD -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/10/31 18:12:19 - [] D -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2009/07/14 05:49:38 - [] RD -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/12/17 02:58:26 - [] RD -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/10/30 18:31:14 - [] D -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/11/05 09:34:23 - [] D -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\如意搜 O43 - CFD: 2015/10/14 20:21:53 - [] D -- C:\Users\REP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\帮5淘 ---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 69s O45 - LFCP:[MD5.6691F12FB60EB870EE7E1B0D64A59F98] 2015/12/23 21:11:21 A -- C:\Windows\Prefetch\CROSSBROWSE.EXE-9D619136.pf =>PUP.Optional.CrossBrowse O45 - LFCP:[MD5.8A4A9168A794FE0774D37554262C013C] 2015/12/23 20:20:00 A -- C:\Windows\Prefetch\GLOBALUPDATE.EXE-AFA6DA21.pf =>PUP.Optional.GlobalUpdate ---\\ Liste des pilotes du système (76) - 27s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] O58 - SDL:2011/07/14 06:35:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] O58 - SDL:2011/07/14 06:35:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] O58 - SDL:2011/06/02 04:37:32 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2750464] O58 - SDL:2011/03/30 07:46:46 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW76.sys [114704] O58 - SDL:2011/05/24 17:26:58 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [9359872] O58 - SDL:2011/05/24 15:25:44 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [309760] O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] O58 - SDL:2013/06/29 17:10:58 A . (.Mobile Connector - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmusbser.sys [118144] O58 - SDL:2015/07/06 00:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x64 (Weak).) -- C:\Windows\System32\drivers\cm_km.sys [389816] O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] O58 - SDL:2009/10/22 08:09:12 A . (.FTDI Ltd. - FTDIBUS Serial Device Driver.) -- C:\Windows\System32\drivers\ftser2k.sys [84808] O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] O58 - SDL:2011/07/14 06:35:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] O58 - SDL:2015/06/22 20:40:04 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [478392] O58 - SDL:2015/06/06 08:48:24 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x64].) -- C:\Windows\System32\drivers\klbackupdisk.sys [53432] O58 - SDL:2015/06/27 01:30:00 A . (.Kaspersky Lab ZAO - Backup File Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klbackupflt.sys [70000] O58 - SDL:2015/06/06 08:51:00 A . (.Kaspersky Lab ZAO - Virtual Disk [fre_wnet_x64].) -- C:\Windows\System32\drivers\kldisk.sys [68280] O58 - SDL:2015/12/06 04:57:16 A . (.AO Kaspersky Lab - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\drivers\klflt.sys [181640] O58 - SDL:2015/12/06 04:53:45 A . (.AO Kaspersky Lab - klhk [fre_wlh_x64].) -- C:\Windows\System32\drivers\klhk.sys [227000] O58 - SDL:2015/12/06 04:57:16 A . (.AO Kaspersky Lab - Core System Interceptors [fre_wlh_x64].) -- C:\Windows\System32\drivers\klif.sys [940928] O58 - SDL:2015/06/11 19:32:42 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\Windows\System32\drivers\klim6.sys [39096] O58 - SDL:2015/06/06 08:31:42 A . (.Kaspersky Lab ZAO - Keyboard Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klkbdflt.sys [41144] O58 - SDL:2015/06/07 01:50:04 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [41648] O58 - SDL:2015/12/06 04:57:17 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [41352] O58 - SDL:2015/06/11 15:56:56 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wnet_amd64.) -- C:\Windows\System32\drivers\kltdi.sys [65208] O58 - SDL:2015/06/16 21:56:32 A . (.Kaspersky Lab ZAO - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [103096] O58 - SDL:2015/06/23 18:30:50 A . (.Kaspersky Lab ZAO - Network Processor [fre_wnet_x64].) -- C:\Windows\System32\drivers\kneps.sys [187056] O58 - SDL:2011/03/23 03:20:58 A . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controll.) -- C:\Windows\System32\drivers\L1C62x64.sys [77936] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] O58 - SDL:2011/11/03 14:02:13 A . (.Egis Technology Inc. - PSD Mini Filter Driver.) -- C:\Windows\System32\drivers\mwlPSDFilter.sys [22648] O58 - SDL:2011/11/03 14:02:13 A . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\mwlPSDNserv.sys [20520] O58 - SDL:2011/11/03 14:02:13 A . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\mwlPSDVDisk.sys [62776] O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] O58 - SDL:2011/09/20 11:02:55 A . (.NTI Corporation - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\NTIDrvr.sys [18432] O58 - SDL:2011/07/14 06:35:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] O58 - SDL:2011/07/14 06:35:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] O58 - SDL:2011/06/14 12:38:12 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2899176] O58 - SDL:2010/12/01 09:12:06 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\RtsUStor.sys [250984] O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2015/10/07 10:01:56 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\Windows\System32\drivers\ser2pl64.sys [191504] O58 - SDL:2009/07/14 01:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] O58 - SDL:2015/04/14 19:51:38 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [110336] O58 - SDL:2015/04/14 19:51:38 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] O58 - SDL:2011/03/28 04:44:46 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [1417776] O58 - SDL:2011/09/20 11:02:55 A . (.NTI Corporation - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\drivers\UBHelper.sys [17408] O58 - SDL:2010/11/28 21:50:38 A . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\Windows\System32\drivers\usbfilter.sys [44672] O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (77) - 359s O61 - LFC: 2015/12/17 03:24:33 A . (.Tencent.) -- C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\dlcore.dll [2031160] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/12/17 03:24:33 A . (.Tencent.) -- C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\DownloadProxyPS.dll [69176] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/12/17 03:24:33 A . (.Tencent.) -- C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\extract.dll [367480] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/12/17 03:24:33 A . (.Tencent.) -- C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\Tencentdl.exe [904760] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/12/17 03:24:33 A . (.Tencent Technology(Shenzhen) Company Limited.) -- C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\tnproxy.dll [724536] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/12/16 14:59:10 A . (.AdbDriver.com.) -- C:\Users\REP\AppData\Roaming\AdbDriverInstaller\usb_driver\AdbDriverInstallerX64.exe [228352] O61 - LFC: 2015/12/17 03:03:47 A . (..) -- C:\Users\REP\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [332282] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler.exe [245576] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\GoogleCrashHandler64.exe [307016] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\GoogleUpdate.exe [144200] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\GoogleUpdateBroker.exe [88392] O61 - LFC: 2015/12/17 04:20:02 AT . (..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\GoogleUpdateComRegisterShell64.exe [130888] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\GoogleUpdateOnDemand.exe [88392] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\GoogleUpdateWebPlugin.exe [88392] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdate.dll [1681224] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_am.dll [38216] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ar.dll [37192] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_bg.dll [40264] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_bn.dll [40264] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ca.dll [40264] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_cs.dll [39240] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_da.dll [39240] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_de.dll [41288] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_el.dll [40776] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_en-GB.dll [38216] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_en.dll [38216] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_es-419.dll [39752] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_es.dll [41288] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_et.dll [38728] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_fa.dll [38216] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_fi.dll [39240] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_fil.dll [40264] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_fr.dll [40776] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_gu.dll [40776] O61 - LFC: 2015/12/17 04:20:03 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_hi.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_hr.dll [39752] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_hu.dll [39752] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_id.dll [38728] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_is.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_it.dll [40776] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_iw.dll [36680] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ja.dll [35656] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_kn.dll [40776] O61 - LFC: 2015/12/17 04:20:04 AT . (.„Google Inc.“.) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_lt.dll [38728] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_lv.dll [39752] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ml.dll [42312] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_mr.dll [40264] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ms.dll [38728] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_nl.dll [40264] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_no.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_pl.dll [39752] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_pt-BR.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_pt-PT.dll [39752] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ro.dll [39752] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ru.dll [38728] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_sk.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_sl.dll [39752] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_sr.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_sv.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_sw.dll [40776] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ta.dll [41288] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_te.dll [40776] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_th.dll [38216] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_tr.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_uk.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_ur.dll [39240] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_vi.dll [38728] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_zh-CN.dll [33096] O61 - LFC: 2015/12/17 04:20:04 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\goopdateres_zh-TW.dll [33096] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll [591176] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\psmachine.dll [185160] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\psmachine_64.dll [215368] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\psuser.dll [185160] O61 - LFC: 2015/12/17 04:20:02 AT . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll [215368] O61 - LFC: 2015/12/17 05:08:21 A . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Chrome\Application\47.0.2526.80\Installer\setup.exe [1000264] O61 - LFC: 2015/12/21 00:18:31 A . (.Google Inc..) -- C:\Users\REP\AppData\Local\Google\Chrome\Application\47.0.2526.106\Installer\setup.exe [1000264] O61 - LFC: 2015/12/21 22:38:54 A . (..) -- C:\Users\REP\AppData\Local\ATI\ACE\Manifest.Bin [27473] ---\\ Associations Shell Spawning (10) - 2s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 3s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs (1) - 2s O69 - SBI: SearchScopes [HKCU] {ielnksrch} - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWr8UeuffMWh7dVpqrhxWvTeptNwxFJquDV6HwwATF_XbuTe3rwl-xRzd1eNuw9303iT7c9fScb5e43PHMfPV7VdevOeDSx9dfRU6uzFsj-rTHxIJjiQ2ypLi-Tx_XLw6bzMFMoB436rvp5K8Y0vNhcLWoQg,,&q={searchTerms} ---\\ Enumère les services démarrés par Svchost (32) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2609152] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] ---\\ Liste des exceptions du parefeu Windows (14) - 11s O87 - FAEL: "{15E3F4EF-4D9A-4A8C-AB03-8CD6E11FC899}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovie.exe (.not file.) O87 - FAEL: "{EE29C9A3-6FE1-47AC-ACFF-0B42F4070D01}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovieService.exe (.not file.) O87 - FAEL: "{FCA36F6D-42F9-4DB9-8AF0-69E553C34D3C}" [In-None-P6-TRUE] .(.爱奇艺 - 爱奇艺万能播放器.) -- C:\IQIYI Video\GeePlayer\GeePlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{C834A7B4-2A1E-48C5-B869-B25978830893}" [In-None-P6-TRUE] .(.爱奇艺 - 爱奇艺升级模块.) -- C:\Users\REP\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{EF3382D9-D5FF-4799-B005-5C02D8A697DB}" [In-None-P6-TRUE] .(.爱奇艺 - 爱奇艺PPS影音.) -- C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{1376BA4B-ED86-4E89-B4B0-745D62453F96}" [In-None-P6-TRUE] .(.爱奇艺公司 - 爱奇艺PPS影音 网页播放组件.) -- C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{EB978097-C193-439B-8CC3-9AF354748239}" [In-None-P6-TRUE] .(.iQIYI.COM - 爱奇艺HCDN网络数据传输组件.) -- C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{B4427EA1-133E-48A7-8100-FCCEA43CAA89}" [In-None-P6-TRUE] .(.爱奇艺 - 爱奇艺视频播放器.) -- C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo O87 - FAEL: "{C6BD6944-A25F-4FD0-B4A9-7BAA6AEF85DD}" [In-None-P17-TRUE] .(.Crossbrowse - Crossbrowse.) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O87 - FAEL: "{5813AEDB-F67B-4E47-95D9-634DB16AD88D}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O87 - FAEL: "{09CEC0B9-D362-4A75-842A-6444D9255BC7}" [In-None-P6-TRUE] .(.Tencent - 腾讯高速下载引擎.) -- C:\program files (x86)\common files\tencent\qqdownload\125\tencentdl.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{5A7F7AE4-3BDC-468B-9BEA-10F5D6A3891F}" [In-None-P6-TRUE] .(.Tencent - 腾讯高速下载引擎.) -- C:\program files (x86)\common files\tencent\qqdownload\125\tencentdl.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{6BFAE9E6-98C1-4DD5-97B4-F61888876E36}" [In-None-P6-TRUE] .(.Tencent - 腾讯高速下载引擎.) -- C:\program files (x86)\common files\tencent\qqdownload\125\tencentdl.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{B85949BC-2D32-457A-86D7-E762CD490F33}" [In-None-P6-TRUE] .(.Tencent - 腾讯高速下载引擎.) -- C:\program files (x86)\common files\tencent\qqdownload\125\tencentdl.exe =>PUP.Optional.TencentAddressBar ---\\ Enumère les codes produits des logiciels (1) - 45s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate ---\\ Recherche des packages WindowsInstaller (1) - 78s [MD5.] [WIS][2015/10/29 20:15:07] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\4a1168.msi [32768] =>PUP.Optional.GlobalUpdate ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (8) - 104s SR - Auto [2011/07/01 03:51:10] [ 353360] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe SS - Demand [2015/10/28 20:07:38] [ 655624] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - Auto [2015/10/29 20:15:06] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SS - Demand [2015/10/29 20:15:06] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SS - Auto [2015/11/30 20:59:03] [ 144200] خدمة Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - Demand [2015/11/30 20:59:03] [ 144200] خدمة Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - Auto [2015/09/21 09:25:06] [ 152952] RYSService (RYSService) . (.深圳拍家科技有限公司.) - C:\Users\REP\AppData\Local\ruyiso\ruyisoapp\RYSService.exe SS - Demand [2015/07/09 00:02:50] [ 144640] vssbrigde64 (vssbrigde64) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe ---\\ Recherche de clés de registre Tracing (4) - 26s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\crossbrowse_RASAPI32 =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\crossbrowse_RASMANCS =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASMANCS =>PUP.Optional.TencentAddressBar ---\\ Scan Additionnel (82) - 0s C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse C:\Program Files (x86)\CinemaP-1.9cV25.10\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-6.exe =>PUP.Optional.CrossRider C:\IQIYI Video\LStyle\npWebPlayer.dll =>PUP.Optional.IQIYIVideo C:\IQIYI Video\LStyle\npclient.dll =>PUP.Optional.IQIYIVideo C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-6.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-7.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-10_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5.job =>PUP.Optional.CrossRider C:\Windows\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5_user.job =>PUP.Optional.CrossRider C:\Windows\Tasks\Crossbrowse.job =>PUP.Optional.CrossBrowse C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-6 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-1-7 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-10_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5 =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\c358ec45-af48-4b35-a153-f7a10b3b7c98-5_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\Crossbrowse =>PUP.Optional.CrossBrowse C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\IQIYI Video =>PUP.Optional.IQIYIVideo HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaP-1.9cV25.10-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV25.10-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\QyGameClient =>PUP.Optional.IQIYIVideo HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider C:\Program Files (x86)\CinemaP-1.9cV25.10 =>PUP.Optional.CrossRider C:\Program Files (x86)\Crossbrowse =>PUP.Optional.CrossBrowse C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse =>PUP.Optional.CrossBrowse C:\ProgramData\IQIYI Video =>PUP.Optional.IQIYIVideo C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Common Files\Tencent =>PUP.Optional.TencentAddressBar C:\Users\REP\AppData\Roaming\IQIYI Video =>PUP.Optional.IQIYIVideo C:\Users\REP\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar C:\Users\REP\AppData\Local\Crossbrowse =>PUP.Optional.CrossBrowse C:\Users\REP\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\Users\REP\AppData\Local\SysassistByHotWheel =>PUP.Optional.Generic C:\Windows\Prefetch\CROSSBROWSE.EXE-9D619136.pf =>PUP.Optional.CrossBrowse C:\Windows\Prefetch\GLOBALUPDATE.EXE-AFA6DA21.pf =>PUP.Optional.GlobalUpdate C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\dlcore.dll =>PUP.Optional.TencentAddressBar C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\DownloadProxyPS.dll =>PUP.Optional.TencentAddressBar C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\extract.dll =>PUP.Optional.TencentAddressBar C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\Tencentdl.exe =>PUP.Optional.TencentAddressBar C:\Users\REP\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\tnproxy.dll =>PUP.Optional.TencentAddressBar HKLM64\SOFTWARE\Classes\CRSBRWSHTML =>PUP.Optional.CrossBrowse C:\IQIYI Video\GeePlayer\GeePlayer.exe =>PUP.Optional.IQIYIVideo C:\Users\REP\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe =>PUP.Optional.IQIYIVideo C:\IQIYI Video\LStyle\QyClient.exe =>PUP.Optional.IQIYIVideo C:\IQIYI Video\LStyle\QyWebPlayer.exe =>PUP.Optional.IQIYIVideo C:\IQIYI Video\Common\QyKernel.exe =>PUP.Optional.IQIYIVideo C:\IQIYI Video\LStyle\QyPlayer.exe =>PUP.Optional.IQIYIVideo C:\program files (x86)\common files\tencent\qqdownload\125\tencentdl.exe =>PUP.Optional.TencentAddressBar HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate C:\Windows\Installer\4a1168.msi =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\crossbrowse_RASAPI32 =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\crossbrowse_RASMANCS =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASMANCS =>PUP.Optional.TencentAddressBar ---\\ Récapitulatif des éléments trouvées sur votre station (8) - 0s http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.IQIYIVideo http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowser http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic ~ End of the scan, 63861 items in 1265 seconds (1099)(0)()