cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.7.10.87 Par Nicolas Coolman (2015/07/10)
~ Démarré par nathalie (Administrator) (2015/07/11 10:41:17)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\nathalie\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\nathalie\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 7, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla v39.0
MSIE: Internet Explorer v11.0.9600.17843

---\\ Informations sur les produits Windows (3) - 14s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (3) - 4s
Avast Free Antivirus v10.2.2218
Emsisoft Anti-Malware
Malwarebytes Anti-Malware version 2.1.8.1057

---\\ Logiciels de protection et autres (Superflus) (1) - 5s
Ad-Aware Web Companion v2.0.1025.2130

---\\ Logiciels d'optimisation (1) - 5s
CCleaner v5.05

---\\ Surveillance de Logiciels (2) - 5s
Adobe Flash Player 18 NPAPI
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 16 Model 6 Stepping 3, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
~ Total physical RAM (KB): 3931512
~ System Restore: Activé (Enable)
~ System drive C: has 848 GB free of 939 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: GRANNYE
~ User Name: nathalie
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 848 GB free of 939 GB (System)

---\\ Recherche particulière de fichiers génériques (23) - 1s
[MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808]
[MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024]
[MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2426880]
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480]
[MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160]
[MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456]
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400]
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472]
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224]
[MD5.A5D9106A73DC88564C825D317CAC68AC] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [158208]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632]
[MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184]
[MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296]
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [295808]

---\\ Processus lancés (32) - 3s
[MD5.218BE8301F0F19A60D88D6DED3A738B7] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 309.0.) -- C:\Windows\system32\nvvsvc.exe [878400] [PID.884]
[MD5.BFC9B9FDFDEA8DFA86239ED8F961528E] - (.Emsisoft GmbH - Emsisoft Protection Service.) -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [5020520] [PID.1076]
[MD5.09B22DB1B104FACC1E745498CBB0A8D7] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1125192] [PID.1132]
[MD5.218BE8301F0F19A60D88D6DED3A738B7] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 309.0.) -- C:\Windows\system32\nvvsvc.exe [878400] [PID.1144]
[MD5.54236E79A44F909612391C8A2D70D512] - (.Avast Software s.r.o. - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336] [PID.1704]
[MD5.96922E3892E299FED3F2B82FD5DDB99F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10060320] [PID.1960]
[MD5.94B65E73FC29455191D6F60696D0332E] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448712] [PID.584]
[MD5.12C0BEBC4237167D85E80BB962CCF8AA] - (...) -- C:\Program Files (x86)\Beltedness\Beltedness.exe [281088] [PID.2420]
[MD5.B322A3786812E29EBBF37A2AA267F65A] - (...) -- C:\Windows\SysWOW64\Codecs\TrayMenu.exe [208415] [PID.2452]
[MD5.A759C90854C291446AE9893E5CA2872F] - (...) -- C:\Users\nathalie\CUISINE\L'atelier des Chefs\L'atelier des Chefs.exe [142848] [PID.2524]
[MD5.0540C38069CD5212B241E62AC1990201] - (.(C) All rights reserved - Hotkey Utility.) -- C:\Program Files (x86)\eMachines\Hotkey Utility\HotkeyUtility.exe [611872] [PID.2552]
[MD5.65C6AA484AD2287D20541C7735989437] - (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [5515496] [PID.2624]
[MD5.34084D25BE6F48D072AA54DE630438FD] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.2740]
[MD5.12C0BEBC4237167D85E80BB962CCF8AA] - (...) -- C:\Program Files (x86)\Beltedness\Beltedness.exe [281088] [PID.2808]
[MD5.1E345F2A2D95DA3190596E691CDE9342] - (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE [126464] [PID.3360]
[MD5.52B58A46BEEFB238C580B69FD051CB5B] - (.Copyright (c) 2001-2009 NVIDIA Corporation - app_filter Module.) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [626208] [PID.3044]
[MD5.FF7B65801373BEDD5A1530F6616CBF39] - (.Lavasoft Limited - .) -- C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751792] [PID.3384]
[MD5.0E7C1640605E09523C5B40B35E4283F3] - (.VoiceFive, Inc. - PremierOpinion.) -- C:\Program Files (x86)\PremierOpinion\pmservice.exe [213816] [PID.4748] =>PUP.Optional.PremierOpinion
[MD5.258C050D197D923668B36C8D3F6A2353] - (.TuneUp Software - TuneUp Utilities Service.) -- C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2145080] [PID.4884]
[MD5.F9EC9ACD504D823D9B9CA98A4F8D3CA2] - (.Acer Group - Updater Service.) -- C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [243232] [PID.5004]
[MD5.0B5A14A0ED15F0C369EDAE0A79C0950E] - (...) -- C:\Users\nathalie\AppData\Local\WikiUpdate.exe [364032] [PID.5044] =>PUP.Optional.WikiBrowser
[MD5.452C1A01EE098F4B0B052AB85EAFA61A] - (.WS - WS Client Service.) -- C:\Program Files (x86)\WordShark_1.10.0.19\Service\wssvc.exe [299096] [PID.4640] =>PUP.Optional.WordShark
[MD5.20E179A7FE78B37A02D30C4D34C870E7] - (.Copyright (c) 2001-2009 NVIDIA Corporation - NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [206880] [PID.4548]
[MD5.61E19C82125DFF3A83B445152A048AE6] - (.TuneUp Software - TuneUp Utilities.) -- C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe [2040120] [PID.5232]
[MD5.8F3326E244AF325FED64F2465E03C94D] - (.NVIDIA Corporation - NVIDIA Settings Update Manager.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1258312] [PID.3880]
[MD5.B47266F4B6325D297534E265B1942F7B] - (...) -- C:\Program Files (x86)\EZ Software Updater\EZ Software Updater.exe [221696] [PID.184] =>PUP.Optional.EZSoftwareUpdater
[MD5.6734C3EB20544AE7B55215DAF1C384ED] - (...) -- C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\vnsl77D2.tmp [750520] [PID.6220] =>PUP.Optional.CrossRider
[MD5.0A4E0BFBBC3D0C2ADBDDC2C736AF5C09] - (...) -- C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\knsf89E2.tmpfs [285184] [PID.6004] =>PUP.Optional.CrossRider
[MD5.918C6F7D4C240FF4D9FBCB8937BD11C3] - (...) -- C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\hnsvEF70.tmp [165376] [PID.3996] =>PUP.Optional.CrossRider
[MD5.DC5BEC28CF4A0EA6FD1C1086A01CC039] - (.FlashBeat - Install.) -- C:\ProgramData\FlashBeat\FlashBeat.exe [814592] [PID.376] =>PUP.Optional.FlashBeat
[MD5.DC5BEC28CF4A0EA6FD1C1086A01CC039] - (.FlashBeat - Install.) -- C:\ProgramData\FlashBeat\FlashBeat.exe [814592] [PID.5404] =>PUP.Optional.FlashBeat
[MD5.C60D3F3E2F700F2111B149C3BCC05279] - (...) -- C:\Program Files (x86)\Super Optimizer\SupOptStart.exe [1183792] [PID.5908] =>PUP.Optional.SuperOptimizer

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (1) - 0s
G2 - GCE: Extension [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] (Orphean)

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (17) - 2s
M0 - MFSP: prefs.js [nathalie - lr4s4lyj.default-1401617198158] https://www.google.com/?trackid=sp-006
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystarttb.xml
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
P2 - FPN: [HKCU] [@citrixonline.com/appdetectorplugin] - (.Citrix Online.) -- C:\Users\nathalie\AppData\Local\Citrix\Plugins\104\npappdetector.dll
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_203.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.45.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll
P2 - FPN: [HKLM] [@Skype Technologies S.A..com/Skype Web Plugin] - (.Skype.) -- C:\Program Files (x86)\SkypeWebPlugin\3.2.0.23388\npSkypeWebPlugin.dll
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.0] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.3] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.5] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer, Proxy Management (R5) (7) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride =
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:9880 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (4) - 1s
O2 - BHO: (no name) [64Bits] - {51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F} (Orphean)
O2 - BHO: (no name) [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.Avast Software s.r.o. - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
O2 - BHO: (no name) [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)

---\\ Applications lancées au démarrage du sytème (O4) (37) - 1s
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
O4 - HKLM\..\Run: [EPSON Stylus DX6000 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_FATIBIE.EXE
O4 - HKLM\..\Run: [EvtMgr6] . (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKCU\..\Run: [EPSON Stylus DX8400 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATICEE.EXE
O4 - HKCU\..\Run: [Google+ Auto Backup] . (.Google Inc. - AutoBackup.) -- C:\Users\nathalie\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] . (.Apple Inc. - iCloud Photos.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [WindApp] C:\Users\nathalie\AppData\Roaming\Store\WindApp\WindApp.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKCU\..\Run: [Selection Tools] C:\Users\nathalie\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKCU\..\Run: [Super Optimizer] . (...) -- C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe =>PUP.Optional.SuperOptimizer
O4 - HKLM\..\Wow6432Node\Run: [Hotkey Utility] . (.(C) All rights reserved - Hotkey Utility.) -- C:\Program Files (x86)\eMachines\Hotkey Utility\HotkeyUtility.exe
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.Avast Software s.r.o. - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe
O4 - HKLM\..\Wow6432Node\Run: [Codec Settings UAC Manager] C:\Windows\System32\Codecs\CodecUACManager.exe (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\RunOnce: [Update] . (...) -- C:\Users\nathalie\AppData\Roaming\ASPackage\ASPackage.exe =>PUP.Optional.ASPackage
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [EPSON Stylus DX8400 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATICEE.EXE
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [Google+ Auto Backup] . (.Google Inc. - AutoBackup.) -- C:\Users\nathalie\AppData\Local\Programs\Google\Google+ Auto Backup\Google+ Auto Backup.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [iCloudServices] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [ApplePhotoStreams] . (.Apple Inc. - iCloud Photos.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [WindApp] C:\Users\nathalie\AppData\Roaming\Store\WindApp\WindApp.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [Selection Tools] C:\Users\nathalie\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe (.not file.) =>PUP.Optional.Nosibay
O4 - HKUS\S-1-5-21-3702227803-902299823-3475093759-1000\..\Run: [Super Optimizer] . (...) -- C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe =>PUP.Optional.SuperOptimizer

---\\ Raccourcis Global Startup (O4G) (6) - 4s
O4 - GS\Desktop [Administrateur]: Super Optimizer.lnk . (...) C:\Program Files (x86)\Super Optimizer\SuperOptimizer.exe =>PUP.Optional.SuperOptimizer
O4 - GS\Desktop [Invité]: Super Optimizer.lnk . (...) C:\Program Files (x86)\Super Optimizer\SuperOptimizer.exe =>PUP.Optional.SuperOptimizer
O4 - GS\Desktop [nathalie]: Super Optimizer.lnk . (...) C:\Program Files (x86)\Super Optimizer\SuperOptimizer.exe =>PUP.Optional.SuperOptimizer
O4 - GS\Desktop [UpdatusUser]: Super Optimizer.lnk . (...) C:\Program Files (x86)\Super Optimizer\SuperOptimizer.exe =>PUP.Optional.SuperOptimizer
O4 - GS\CommonDesktop [Public]: Media Downloader.lnk . (...) C:\Program Files (x86)\Media Downloader\MediaDownloader.hta =>PUP.Optional.MediaDownloader
O4 - GS\Startup [Public]: WebBrowserMixVideoPlayer.lnk . (...) C:\Program Files (x86)\MixVideoPlayer\BrowserWeb.exe =>PUP.Optional.MixVideoPlayer

---\\ Modification Domaine/Adresses DNS (O17) (9) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 31.168.228.251,82.166.96.251
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 31.168.228.251,82.166.96.251
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 31.168.228.251,82.166.96.251
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 172.20.10.1

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s
O20 - AppInit_DLLs: . (.Auteurs - .) - C:\Windows\System32\

---\\ Liste des services NT non Microsoft et non désactivés (O23) (23) - 2s
O23 - Service: Emsisoft Protection Service (a2AntiMalware) . (.Emsisoft GmbH - Emsisoft Protection Service.) - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o. - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Beltedness (Beltedness) . (...) - C:\Program Files (x86)\Beltedness\Beltedness.exe
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE
O23 - Service: EZ Software Updater (EZ Software Updater) . (...) - C:\Program Files (x86)\EZ Software Updater\EZ Software Updater.exe =>PUP.Optional.EZSoftwareUpdater
O23 - Service: ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright (c) 2001-2009 NVIDIA Corporation - app_filter Module.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate
O23 - Service: GREGService (GREGService) . (.Acer Incorporated - Global Registration Service.) - C:\Program Files (x86)\eMachines\Registration\GREGsvc.exe
O23 - Service: Home Page Media (hofudefi) . (...) - C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\knsf89E2.tmpfs =>PUP.Optional.CrossRider
O23 - Service: LavasoftTcpService (LavasoftTcpService) . (.Lavasoft Limited - .) - C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe =>PUA.Loadshop
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: ForceWare IP service (nSvcIp) . (.Copyright (c) 2001-2009 NVIDIA Corporation - NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 309.0.) - C:\Windows\system32\nvvsvc.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation - NVIDIA Settings Update Manager.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: PremierOpinion (PremierOpinion) . (.VoiceFive, Inc. - PremierOpinion.) - C:\Program Files (x86)\PremierOpinion\pmservice.exe =>PUP.Optional.PremierOpinion
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) . (.TuneUp Software - TuneUp Utilities Service.) - C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
O23 - Service: Updater Service (Updater Service) . (.Acer Group - Updater Service.) - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
O23 - Service: Encyclopaedia Enter (vicoqudu) . (...) - C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\hnsvEF70.tmp =>PUP.Optional.CrossRider
O23 - Service: WikiBrowserUpdateService (WikiBrowserUpdateService) . (...) - C:\Users\nathalie\AppData\Local\WikiUpdate.exe =>PUP.Optional.WikiBrowser
O23 - Service: WS 1.10.0.19 Client Service (wssvc_1.10.0.19) . (.WS - WS Client Service.) - C:\Program Files (x86)\WordShark_1.10.0.19\Service\wssvc.exe =>PUP.Optional.WordShark

---\\ Tâches planifiées en automatique (O39) (68) - 5s
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-6.job [3130] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-7.job [3130] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-10_user.job [2104] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-4.job [4486] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5.job [2438] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5_user.job [2438] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\AmiUpdXp.job [374] =>PUP.Optional.SoftwareUpdater
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job [346] =>PUP.Optional.BidailySync
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\CEUXENLBJEIRQCRC.job [348]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Chromium.job [340]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\FLOXXPD1.job [336]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job [964] =>PUP.Optional.GlobalUpdate
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job [968] =>PUP.Optional.GlobalUpdate
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\j2Gi4UQTQ2PoASxuGe4l.job [1024]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\Tasks\Superclean.job [346]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-6 [6158] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-7 [6160] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-10_user [5132] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-4 [7516] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5 [5468] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5_user [5468] =>PUP.Optional.CrossRider
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2778]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\CEUXENLBJEIRQCRC [3388]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\CreateChoiceProcessTask [3548]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\DNSPALENVILLE PostInstall [10906]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\FLOXXPD1 [2858]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\FrequencyCheck [3274]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore [3712] =>PUP.Optional.GlobalUpdate
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA [3966] =>PUP.Optional.GlobalUpdate
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\j2Gi4UQTQ2PoASxuGe4l [4054]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\LaunchPreSignup [3988]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\MixVideoPlayer Update [3072] =>PUP.Optional.MixVideoPlayer
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Optimizer Pro Schedule [3264] =>PUP.Optional.OptimizerPro
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Programme de mise à jour en ligne de Adobe [3694]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Programme de mise à jour en ligne de DivX [3738]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\Superclean [3264]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 [2770]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\WindApp Update [3726] =>PUP.Optional.Nosibay
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Core [4166] =>PUP.Optional.WordShark
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Pending Update [4176] =>PUP.Optional.WordShark
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{0EA8F6C8-9182-4BA1-9C54-9E93AE598802} [3032]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{1112C344-3834-41F4-B798-EE7890412D14} [3164]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{142184DC-B19B-4766-AE7C-C2F9D0FCFFBD} [2958]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{2575053B-1AF8-42A2-A95E-57807410A609} [3052]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{2AFF8595-DE2E-47C6-910E-B3CDF6E78517} [3252]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{4C27650F-2873-4D5E-AC71-80211433A859} [3164]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{4C697139-319D-4064-9D1D-C8517C289903} [3094]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{6885EAA2-32AF-494D-8047-D4312332F436} [3074]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{6E531C91-5E95-447C-A916-B15F3ABBA72D} [3052]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{71C7E5EB-170A-49B6-95C1-408EDAF68E62} [3304]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{7D21B146-566D-4767-9F85-E12ACCAF2664} [2982]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{7FEF96BD-D271-4C59-A468-E6C1FDD5E49B} [2988]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{8074BB36-7301-4EE1-8567-493D084428D9} [2988]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{828FC49D-FC08-4D32-942A-D396BCD7313D} [2970]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{85E94FDA-ADD7-418A-BB45-101AE06C2C68} [3048]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{AAF2D983-0157-4464-A3AC-D6BDC6C2797E} [2988]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{C03D834B-2C67-42A4-A010-D865D80DF339} [2992]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{C452CFF4-BCED-487B-B996-0A7D9BF0A6C2} [3152]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{C4EF059E-A5CB-4AD2-BE85-64F74B5B6F5F} [3072]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{CA217847-A4F8-439B-A611-C9AE9B71D7B3} [3160]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{CD23AAAA-1640-486B-A6CD-33B91FA6230C} [3260]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{D86C4D5B-6150-4786-97E7-354A896FCC5F} [3192]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{E01FB8C8-8939-4BF9-89CB-0EA4C29EDCBD} [2974]
O39 - APT:Automatic Planified Task - (...) -- C:\Windows\System32\Tasks\{ED0698E1-FF39-4353-B13D-DFE4C1F1F6CB} [2982]

---\\ Logiciels installés (O42) (117) - 36s
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner
O42 - Logiciel: EPSON Logiciel imprimante - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON Printer and Utilities
O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Display Control Panel
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIA Drivers
O42 - Logiciel: Logitech SetPoint 6.61 - (.Logitech.) [HKLM][64Bits] -- sp6
O42 - Logiciel: PVSonyDll - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3D3E663D-4E7E-4577-A560-7ECDDD45548A}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {4046F74A-28F8-48C6-A5D3-2AFC472574C1}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {5D61F006-168C-4B8B-B7FD-F113C10AE0E4}
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {709A2D23-C25E-47B5-9268-CB6FEE648504}
O42 - Logiciel: NVIDIA ForceWare Network Access Manager - (.NVIDIA Corporation.) [HKLM][64Bits] -- {7CFA46E3-CC2F-4355-82AE-6012DC3633FD}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {B255D495-4734-4E9B-B4F5-96702FD4A7B9}
O42 - Logiciel: NVIDIA Pilote graphique 309.08 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
O42 - Logiciel: L'atelier des Chefs - (.UNKNOWN.) [HKLM][64Bits] -- ADC-v1
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: AnySend - (.CMI Limited.) [HKLM][64Bits] -- ASPackage =>PUP.Optional.ASPackage
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- Avast
O42 - Logiciel: Awakening: Le Château Céleste - (...) [HKLM][64Bits] -- BFG-Awakening - Le Chateau Celeste
O42 - Logiciel: Mahjong: L'Héritage des Toltèques - (...) [HKLM][64Bits] -- BFG-Mahjong - L'Heritage des Tolteques
O42 - Logiciel: Mahjongg: Ancient Egypt - (...) [HKLM][64Bits] -- BFG-Mahjongg - Ancient Egypt
O42 - Logiciel: Big Fish: Game Manager - (...) [HKLM][64Bits] -- BFGC
O42 - Logiciel: eMachines Registration - (.Acer Incorporated.) [HKLM][64Bits] -- eMachines Registration
O42 - Logiciel: eMachines ScreenSaver - (.Acer Incorporated.) [HKLM][64Bits] -- eMachines Screensaver
O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM][64Bits] -- eMachines Welcome Center
O42 - Logiciel: EPSON Scan - (...) [HKLM][64Bits] -- EPSON Scanner
O42 - Logiciel: EPSON Stylus CX7300_CX8300_DX7400_DX8400 Manuel - (...) [HKLM][64Bits] -- EPSON Stylus CX7300_CX8300_DX7400_DX8400 Guide d'utilisation
O42 - Logiciel: EZ Software Updater version 1.2.0.4 - (.www.ezupdater.com.) [HKLM][64Bits] -- EZ Software Updater_is1 =>PUP.Optional.EZSoftwareUpdater
O42 - Logiciel: FlashBeat - (...) [HKLM][64Bits] -- FlashBeat =>PUP.Optional.FlashBeat
O42 - Logiciel: GamesDesktop 001.004010024 - (.GAMESDESKTOP.) [HKLM][64Bits] -- gmsd_fr_004010024_is1 =>PUP.Optional.GamesDesktop
O42 - Logiciel: Hotkey Utility - (.Acer Incorporated.) [HKLM][64Bits] -- Hotkey Utility
O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM][64Bits] -- Identity Card
O42 - Logiciel: NVIDIA ForceWare Network Access Manager - (.NVIDIA Corporation.) [HKLM][64Bits] -- InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}
O42 - Logiciel: La Marmite du Chef 6.6 - (...) [HKLM][64Bits] -- La Marmite du Chef_is1
O42 - Logiciel: Malwarebytes Anti-Malware version 2.1.8.1057 - (.Malwarebytes Corporation.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1
O42 - Logiciel: Media Downloader version 1.5 - (.Media Downloader.) [HKLM][64Bits] -- Media Downloader_is1 =>PUP.Optional.MediaDownloader
O42 - Logiciel: Media Player Codec Pack 4.3.8 - (.Media Player Codec Pack.) [HKLM][64Bits] -- Media Player - Codec Pack
O42 - Logiciel: MixVideoPlayer - (.SoftForce LLC.) [HKLM][64Bits] -- MixVideoPlayer =>PUP.Optional.MixVideoPlayer
O42 - Logiciel: Mozilla Firefox 39.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0 (x86 fr)
O42 - Logiciel: Mozilla Thunderbird 24.2.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 24.2.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3
O42 - Logiciel: RegSeeker - (.HoverDesk.) [HKLM][64Bits] -- RegSeeker
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller
O42 - Logiciel: SmartSaver+ 21 - (.smart-saverplus.) [HKLM][64Bits] -- SmartSaver+ 21 =>PUP.Optional.CrossRider
O42 - Logiciel: Super Optimizer v3.2 - (.Super PC Tools ltd.) [HKLM][64Bits] -- Super Optimizer_is1 =>PUP.Optional.SuperOptimizer
O42 - Logiciel: TuneUp Utilities 2014 - (.TuneUp Software.) [HKLM][64Bits] -- TuneUp Utilities
O42 - Logiciel: VLC media player 2.0.0 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: eMachines Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent emachines Master Uninstall =>.WildTangent
O42 - Logiciel: WordShark 1.10.0.19 - (.WordShark.) [HKLM][64Bits] -- WordShark_1.10.0.19 =>PUP.Optional.WordShark
O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WT088147 =>.WildTangent
O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT088155 =>.WildTangent
O42 - Logiciel: Jewel Quest Solitaire 2 - (.WildTangent.) [HKLM][64Bits] -- WT088194 =>.WildTangent
O42 - Logiciel: Nero 9 Essentials - (.Nero AG.) [HKLM][64Bits] -- {0f1918fa-66f8-444f-ae9d-105092368159}
O42 - Logiciel: Skype Web Plugin - (.Skype Technologies S.A..) [HKLM][64Bits] -- {15AF46DB-9EBA-4662-AA52-29EF23585035}
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}
O42 - Logiciel: Nero InfoTool Help - (.Nero AG.) [HKLM][64Bits] -- {20400DBD-E6DB-45B8-9B6B-1DD7033818EC}
O42 - Logiciel: Nero StartSmart Help - (.Nero AG.) [HKLM][64Bits] -- {2348B586-C9AE-46CE-936C-A68E9426E214}
O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 25 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218025F0}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40}
O42 - Logiciel: EPSON Scan Assistant - (...) [HKLM][64Bits] -- {2A88F1BF-7041-4E42-84B1-6B4ACB83AC64}
O42 - Logiciel: EPSON File Manager - (...) [HKLM][64Bits] -- {2EB81825-E9EE-44F4-8F51-1240C3898DC6}
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {31B9D218-FED2-4C6C-B19F-7294FFC130B0}
O42 - Logiciel: Nero DriveSpeed - (.Nero AG.) [HKLM][64Bits] -- {33CF58F5-48D8-4575-83D6-96F574E4D83A}
O42 - Logiciel: EPSON Easy Photo Print - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {3D78F2A2-C893-4ABD-B5FE-AD7011837755}
O42 - Logiciel: eReg - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}
O42 - Logiciel: Nero StartSmart OEM - (.Nero AG.) [HKLM][64Bits] -- {4D43D635-6FDA-4FA5-AA9B-23CF73D058EA}
O42 - Logiciel: Emsisoft Anti-Malware - (.Emsisoft Ltd..) [HKLM][64Bits] -- {5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B}
O42 - Logiciel: NeroExpress - (.Nero AG.) [HKLM][64Bits] -- {595A3116-40BB-4E0F-A2E8-D7951DA56270}
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {627FFC10-CE0A-497F-BA2B-208CAC638010}
O42 - Logiciel: L'atelier des Chefs - (.UNKNOWN.) [HKLM][64Bits] -- {6698DC5C-A36E-ABEC-72D0-42FADEE8020E}
O42 - Logiciel: EPSON Copy Utility 3 - (...) [HKLM][64Bits] -- {67EDD823-135A-4D59-87BD-950616D6E857}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: SAGEM Wi-Fi 11g USB adapter (pilote) - (...) [HKLM][64Bits] -- {7421E270-0140-4F62-AE39-ECB9F1C81B35}
O42 - Logiciel: Nero StartSmart - (.Nero AG.) [HKLM][64Bits] -- {7748AC8C-18E3-43BB-959B-088FAEA16FB2}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: eMachines Recovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9}
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FE25256-B7C1-480D-B736-10A67A833AEA}
O42 - Logiciel: Nero Express Help - (.Nero AG.) [HKLM][64Bits] -- {83202942-84B3-4C50-8622-B8C0AA2D2885}
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
O42 - Logiciel: Nero DiscSpeed - (.Nero AG.) [HKLM][64Bits] -- {869200DB-287A-4DC0-B02B-2B6787FBCD4C}
O42 - Logiciel: Ad-Aware Web Companion - (.Lavasoft.) [HKLM][64Bits] -- {88B10E3E-8911-4FAC-8663-CCF6E33C58B3}
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E}
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
O42 - Logiciel: LibreOffice 4.3.7.2 - (.The Document Foundation.) [HKLM][64Bits] -- {8ED4A1FC-56CF-414C-A9AB-A37714AA9EA7}
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM][64Bits] -- {933B4015-4618-4716-A828-5289FC03165F}
O42 - Logiciel: Camera RAW Plug-In for EPSON Creativity Suite - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {93EA9C3E-BDFD-4309-A605-9B5BBC0CCEFD}
O42 - Logiciel: Software Version Updater - (...) [HKLM][64Bits] -- {99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
O42 - Logiciel: erLT - (.Logitech, Inc..) [HKLM][64Bits] -- {A498D9EB-927B-459B-85D6-DD6EF8C2C564}
O42 - Logiciel: Google+ Auto Backup - (.Google.) [HKLM][64Bits] -- {A50DE037-B5C0-4C8A-8049-B0C576B313D1}
O42 - Logiciel: AVG Driver Updater - (.AVG Netherlands B.V.) [HKLM][64Bits] -- {A7ED5FBF-BED0-4AAE-98AE-BFD634122F36}
O42 - Logiciel: LavasoftTcpService - (.Lavasoft.) [HKLM][64Bits] -- {A923CF0A-44D9-4357-B2E8-0A2352151A3C}
O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824144531}
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100}
O42 - Logiciel: Advertising Center - (.Nero AG.) [HKLM][64Bits] -- {B2EC4A38-B545-4A00-8214-13FE0E915E6D}
O42 - Logiciel: OpenOffice 4.1.0 - (.Apache Software Foundation.) [HKLM][64Bits] -- {B3B009FC-6909-4E00-9F43-FFB5CA93D606}
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {BD5CA0DA-71AD-43DA-B19E-6EEE0C9ADC9A}
O42 - Logiciel: Nero Online Upgrade - (.Nero AG.) [HKLM][64Bits] -- {C81A2FE0-3574-00A9-CED4-BDAA334CBE8E}
O42 - Logiciel: Nero DiscSpeed Help - (.Nero AG.) [HKLM][64Bits] -- {CC019E3F-59D2-4486-8D4B-878105B62A71}
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9}
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF}
O42 - Logiciel: DNS Unlocker version 1.3 - (.www.vidcreek.tv.) [HKLM][64Bits] -- {E1527582-8509-4011-B922-29E3FB548882}_is1 =>PUP.Optional.DNSUnlocker
O42 - Logiciel: Nero DriveSpeed Help - (.Nero AG.) [HKLM][64Bits] -- {E5C7D048-F9B4-4219-B323-8BDB01A2563D}
O42 - Logiciel: Nero Installer - (.Nero AG.) [HKLM][64Bits] -- {E8A80433-302B-4FF1-815D-FCC8EAC482FF}
O42 - Logiciel: PremierOpinion - (.VoiceFive, Inc..) [HKLM][64Bits] -- {eeb86aef-4a5d-4b75-9d74-f16d438fc286} =>PUP.Optional.PremierOpinion
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {F4041DCE-3FE1-4E18-8A9E-9DE65231EE36}
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
O42 - Logiciel: Nero InfoTool - (.Nero AG.) [HKLM][64Bits] -- {FBCDFD61-7DCF-4E71-9226-873BA0053139}
O42 - Logiciel: Bubble Dock - (.Nosibay.) [HKCU][64Bits] -- Bubble Dock =>PUP.Optional.BubbleDock
O42 - Logiciel: GUPlayer (remove only) - (...) [HKCU][64Bits] -- GUPlayer =>PUP.Optional.GUPlayer
O42 - Logiciel: WindApp - (.Store.) [HKCU][64Bits] -- WindApp =>PUP.Optional.Nosibay

---\\ HKCU & HKLM Software Keys (188) - 37s
HKLM\SOFTWARE\Wow6432Node\5da059a482fd494db3f252126fbc3d5b =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\ABBYY
HKLM\SOFTWARE\Wow6432Node\Acer Incorporated
HKLM\SOFTWARE\Wow6432Node\Activeris =>PUP.Optional.Activeris
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\Ahead
HKLM\SOFTWARE\Wow6432Node\AIM Toolbar
HKLM\SOFTWARE\Wow6432Node\anset
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\AssistPoint =>PUP.Optional.AssistPoint
HKLM\SOFTWARE\Wow6432Node\Audible
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\AVG Netherlands B.V
HKLM\SOFTWARE\Wow6432Node\AVG Netherlands BV
HKLM\SOFTWARE\Wow6432Node\Big Fish Games
HKLM\SOFTWARE\Wow6432Node\Citrix
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\DivX
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\eb008ed3-d1a4-508a-b96b-b4535f78a345 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\Eset
HKLM\SOFTWARE\Wow6432Node\EZ Software Updater =>PUP.Optional.EZSoftwareUpdater
HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\Wow6432Node\Filseclab
HKLM\SOFTWARE\Wow6432Node\Flashbeat =>PUP.Optional.FlashBeat
HKLM\SOFTWARE\Wow6432Node\Gabest
HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Icaros
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\LAV
HKLM\SOFTWARE\Wow6432Node\Lavasoft
HKLM\SOFTWARE\Wow6432Node\LibreOffice
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\LOGITECH
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\MaxPower
HKLM\SOFTWARE\Wow6432Node\Media Player - Codec Pack
HKLM\SOFTWARE\Wow6432Node\MixVideoPlayer =>PUP.Optional.MixVideoPlayer
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nero
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OEM
HKLM\SOFTWARE\Wow6432Node\OpenOffice
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Sagem
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional
HKLM\SOFTWARE\Wow6432Node\SECURITOO
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SkypeWebPlugin
HKLM\SOFTWARE\Wow6432Node\SlimWare Utilities Inc
HKLM\SOFTWARE\Wow6432Node\SmartSaver+ 21 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\SmartSaver+ 21-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\SpeedBit
HKLM\SOFTWARE\Wow6432Node\StormWatchApp =>PUP.Optional.StormWatch
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\The Document Foundation
HKLM\SOFTWARE\Wow6432Node\TuneUp
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Uniblue =>PUP.Optional.UniblueSystem
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\webtogo
HKLM\SOFTWARE\Wow6432Node\WEDL =>PUP.Optional.weDownloadManager
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\WombatUpdater
HKLM\SOFTWARE\Wow6432Node\Wondershare
HKLM\SOFTWARE\Wow6432Node\WordAnchor_1.10.0.19 =>PUP.Optional.WordAnchor
HKLM\SOFTWARE\Wow6432Node\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\ABBYY
HKCU\SOFTWARE\Acer
HKCU\SOFTWARE\Activeris =>PUP.Optional.Activeris
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Big Fish Games
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\Citrix
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\Cronosoft
HKCU\SOFTWARE\DSP-worx
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\ezmz
HKCU\SOFTWARE\Flash Player Pro
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\gamesdesktop =>PUP.Optional.GamesDesktop
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\kde.org
HKCU\SOFTWARE\Kromtech
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Leadertech
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\malavida
HKCU\SOFTWARE\Media Player - Codec Pack
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Nero
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\OEM
HKCU\SOFTWARE\OMUPH
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Optimizer Pro =>PUP.Optional.OptimizerPro
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\Plus Video HD 1.8cV18.04-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Screentime Media
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SEIKO EPSON
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\Skyhook Wireless
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SlimWare Utilities Inc
HKCU\SOFTWARE\SmartSaver+ 21-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Store =>PUP.Optional
HKCU\SOFTWARE\StormWatchApp =>PUP.Optional.StormWatch
HKCU\SOFTWARE\Super Optimizer =>PUP.Optional.SuperOptimizer
HKCU\SOFTWARE\TeleCharger
HKCU\SOFTWARE\telecharger-gratuit
HKCU\SOFTWARE\TeleCharger_v2
HKCU\SOFTWARE\The Document Foundation
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TuneUp
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\undefined
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Multiplug
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WildTangent
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wondershare
HKCU\SOFTWARE\WTools
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (320) - 27s
O43 - CFD: 2015/06/27 10:50:16 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/06/27 10:50:16 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2015/06/27 10:50:17 - [] D -- C:\Program Files (x86)\AVG
O43 - CFD: 2015/06/27 11:03:24 - [] D -- C:\Program Files (x86)\AVG Driver Updater
O43 - CFD: 2013/11/18 18:53:58 - [] D -- C:\Program Files (x86)\Awakening - Le Chateau Celeste
O43 - CFD: 2015/07/08 08:57:33 - [] SHD -- C:\Program Files (x86)\Beltedness
O43 - CFD: 2015/06/27 10:50:17 - [] D -- C:\Program Files (x86)\bfgclient
O43 - CFD: 2011/03/23 19:04:33 - [] D -- C:\Program Files (x86)\Bing Bar Installer
O43 - CFD: 2015/06/27 10:50:17 - [] D -- C:\Program Files (x86)\Brave Sheriff Mahjong Trial
O43 - CFD: 2015/06/27 10:50:17 - [] D -- C:\Program Files (x86)\Citrix
O43 - CFD: 2015/07/09 10:11:12 - [0] D -- C:\Program Files (x86)\Com NotificationV25.03 =>PUP.Optional.ComNotification
O43 - CFD: 2015/07/09 08:30:23 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/06/26 11:50:44 - [] D -- C:\Program Files (x86)\CPlus.3cV25.06
O43 - CFD: 2015/06/27 10:50:26 - [] D -- C:\Program Files (x86)\DivX
O43 - CFD: 2015/07/11 10:34:34 - [] D -- C:\Program Files (x86)\DNS Unlocker =>PUP.Optional.DNSUnlocker
O43 - CFD: 2014/02/01 16:58:14 - [] HD -- C:\Program Files (x86)\Dr.Fone_Temp
O43 - CFD: 2015/04/18 18:33:24 - [0] D -- C:\Program Files (x86)\DSP-worx
O43 - CFD: 2015/06/27 10:50:26 - [] D -- C:\Program Files (x86)\El Juky
O43 - CFD: 2015/06/27 10:50:27 - [] D -- C:\Program Files (x86)\eMachines
O43 - CFD: 2015/06/27 10:50:27 - [] D -- C:\Program Files (x86)\eMachines Games
O43 - CFD: 2015/07/11 08:19:27 - [] D -- C:\Program Files (x86)\Emsisoft Anti-Malware
O43 - CFD: 2015/06/27 10:50:29 - [] D -- C:\Program Files (x86)\epson
O43 - CFD: 2015/07/11 10:34:36 - [] D -- C:\Program Files (x86)\EZ Software Updater =>PUP.Optional.EZSoftwareUpdater
O43 - CFD: 2013/10/27 13:22:23 - [] D -- C:\Program Files (x86)\ffdshow
O43 - CFD: 2015/07/11 10:40:02 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/07/09 10:23:52 - [] D -- C:\Program Files (x86)\gmsd_fr_004010024 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/04 14:20:06 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/07/08 08:57:01 - [] D -- C:\Program Files (x86)\GUPlayer =>PUP.Optional.GUPlayer
O43 - CFD: 2015/06/22 11:14:31 - [] D -- C:\Program Files (x86)\HQ Video Pro 3.1cV18.06
O43 - CFD: 2015/06/27 10:50:30 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/06/27 11:07:52 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2013/10/01 19:25:05 - [] D -- C:\Program Files (x86)\Island Secret Mahjong
O43 - CFD: 2015/06/27 10:50:30 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2015/07/09 09:31:13 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/06/27 16:22:41 - [] D -- C:\Program Files (x86)\Kaspersky Lab
O43 - CFD: 2015/06/27 17:04:00 - [] D -- C:\Program Files (x86)\Lavasoft
O43 - CFD: 2013/08/11 12:20:38 - [0] D -- C:\Program Files (x86)\LeechGet 2009
O43 - CFD: 2015/06/27 10:52:42 - [] D -- C:\Program Files (x86)\LibreOffice 4
O43 - CFD: 2013/11/18 19:22:06 - [] D -- C:\Program Files (x86)\Mahjong - L'Heritage des Tolteques
O43 - CFD: 2013/10/01 19:25:53 - [] D -- C:\Program Files (x86)\Mahjongg - Ancient Egypt
O43 - CFD: 2015/07/08 06:32:04 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2015/07/11 10:34:37 - [] D -- C:\Program Files (x86)\Media Downloader =>PUP.Optional.MediaDownloader
O43 - CFD: 2011/03/23 19:03:56 - [0] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 2015/06/27 10:52:42 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/06/27 10:52:42 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2015/06/27 10:52:42 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 2011/03/23 20:49:12 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/07/08 11:58:02 - [] D -- C:\Program Files (x86)\MixVideoPlayer =>PUP.Optional.MixVideoPlayer
O43 - CFD: 2015/07/04 09:24:21 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/07/04 09:24:21 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/06/27 10:52:46 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 2015/06/27 10:52:46 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/06/27 10:52:46 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 2013/08/11 19:45:11 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 2014/02/25 10:32:18 - [] D -- C:\Program Files (x86)\Naver
O43 - CFD: 2015/06/27 10:52:46 - [] D -- C:\Program Files (x86)\Nero
O43 - CFD: 2015/06/27 10:52:46 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/06/27 10:52:47 - [] D -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 2015/04/18 16:29:53 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2015/07/09 10:14:49 - [] D -- C:\Program Files (x86)\PremierOpinion =>PUP.Optional.PremierOpinion
O43 - CFD: 2015/07/04 08:08:39 - [] D -- C:\Program Files (x86)\QuickTime
O43 - CFD: 2015/06/27 10:52:47 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 2015/06/27 10:52:47 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/06/27 10:52:47 - [] D -- C:\Program Files (x86)\RegSeeker
O43 - CFD: 2015/06/27 10:52:47 - [] D -- C:\Program Files (x86)\Securitoo
O43 - CFD: 2015/06/27 16:55:53 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/06/27 10:52:48 - [] D -- C:\Program Files (x86)\SkypeWebPlugin
O43 - CFD: 2015/07/11 10:40:24 - [] D -- C:\Program Files (x86)\SmartSaver+ 21 =>PUP.Optional.CrossRider
O43 - CFD: 2015/06/26 13:06:42 - [] D -- C:\Program Files (x86)\Software
O43 - CFD: 2015/07/08 08:59:05 - [0] D -- C:\Program Files (x86)\StormWatch =>PUP.Optional.StormWatch
O43 - CFD: 2015/07/11 10:40:32 - [] D -- C:\Program Files (x86)\Super Optimizer =>PUP.Optional.SuperOptimizer
O43 - CFD: 2015/07/08 08:58:38 - [] D -- C:\Program Files (x86)\TeamViewer
O43 - CFD: 2010/12/10 19:46:47 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 2015/06/27 11:03:59 - [] D -- C:\Program Files (x86)\TuneUp Utilities 2014
O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 2011/03/26 10:41:26 - [] D -- C:\Program Files (x86)\Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter
O43 - CFD: 2015/06/27 10:52:49 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/06/27 10:52:49 - [] D -- C:\Program Files (x86)\VS Revo Group
O43 - CFD: 2015/06/27 10:52:49 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2015/06/27 10:52:49 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 2015/06/27 10:52:49 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/06/27 10:52:49 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2015/06/27 10:52:49 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2011/03/23 19:52:03 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/06/27 10:52:50 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2015/07/08 10:28:10 - [] D -- C:\Program Files (x86)\WordShark_1.10.0.19 =>PUP.Optional.WordShark
O43 - CFD: 2013/08/11 11:57:13 - [] D -- C:\Program Files (x86)\Xvid
O43 - CFD: 2015/06/27 10:53:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2009/07/14 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/06/27 16:42:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 2015/06/27 11:04:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Driver Updater
O43 - CFD: 2015/06/17 18:49:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015
O43 - CFD: 2013/11/18 18:53:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Awakening - Le Chateau Celeste
O43 - CFD: 2014/01/24 22:20:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave Sheriff Mahjong Trial
O43 - CFD: 2014/12/02 12:11:54 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 2015/06/27 10:53:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\El Juky
O43 - CFD: 2010/08/27 17:51:19 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines
O43 - CFD: 2010/12/10 19:50:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines Documentation
O43 - CFD: 2015/07/04 12:19:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware
O43 - CFD: 2014/05/13 15:06:23 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 2015/06/27 10:53:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Creativity Suite
O43 - CFD: 2013/08/14 14:53:12 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Scan
O43 - CFD: 2013/10/27 13:22:21 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow
O43 - CFD: 2015/04/29 09:27:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 2015/07/08 08:15:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP =>PUP.Optional.GamesDesktop
O43 - CFD: 2015/05/04 09:53:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
O43 - CFD: 2013/10/01 19:25:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Island Secret Mahjong
O43 - CFD: 2015/07/04 08:20:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2015/07/08 10:36:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2015/06/27 17:04:02 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
O43 - CFD: 2015/06/02 10:36:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.3
O43 - CFD: 2015/06/27 10:53:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
O43 - CFD: 2013/11/18 19:22:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mahjong - L'Heritage des Tolteques
O43 - CFD: 2013/10/01 19:25:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mahjongg - Ancient Egypt
O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/07/08 06:32:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 2015/07/11 10:34:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Downloader =>PUP.Optional.MediaDownloader
O43 - CFD: 2015/06/29 10:39:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Player - Codec Pack
O43 - CFD: 2015/05/13 19:45:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/07/08 11:57:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer =>PUP.Optional.MixVideoPlayer
O43 - CFD: 2015/06/27 10:53:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
O43 - CFD: 2015/06/27 10:53:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 2014/05/26 08:20:25 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0
O43 - CFD: 2015/07/08 10:18:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 =>PUP.Optional.OptimizerPro
O43 - CFD: 2013/08/12 20:45:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 2015/07/08 09:59:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PremierOpinion =>PUP.Optional.PremierOpinion
O43 - CFD: 2015/07/04 08:08:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 2015/02/03 17:36:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegSeeker
O43 - CFD: 2014/10/15 17:56:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/07/08 11:57:52 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/07/11 10:40:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Optimizer =>PUP.Optional.SuperOptimizer
O43 - CFD: 2009/07/14 09:44:38 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/08 10:20:24 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2010/12/10 20:00:36 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 2015/06/27 10:53:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid
O43 - CFD: 2015/07/11 10:39:30 - [] D -- C:\ProgramData\28341ff220e0446c9fff27c4493d622e
O43 - CFD: 2015/07/09 10:29:22 - [] D -- C:\ProgramData\2988696b-294c-4054-b34f-e97ca58a10e8
O43 - CFD: 2015/06/27 10:52:58 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2010/08/27 17:40:08 - [] D -- C:\ProgramData\Acer
O43 - CFD: 2015/06/27 10:52:58 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2014/10/02 04:53:26 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2015/06/27 10:52:58 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/06/27 16:35:32 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 2015/06/17 18:07:23 - [] D -- C:\ProgramData\AVG
O43 - CFD: 2015/06/27 11:12:06 - [] D -- C:\ProgramData\AVG2015
O43 - CFD: 2015/06/27 10:52:58 - [] D -- C:\ProgramData\Big Fish
O43 - CFD: 2011/03/23 18:59:44 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2013/08/11 16:08:29 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 2015/06/18 10:11:26 - [] D -- C:\ProgramData\dcg
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2015/04/18 18:36:10 - [] D -- C:\ProgramData\DivX
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/07/04 08:18:09 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 2015/06/11 18:05:08 - [] D -- C:\ProgramData\ekd
O43 - CFD: 2015/06/27 10:52:58 - [] D -- C:\ProgramData\eMachines
O43 - CFD: 2015/04/30 10:04:03 - [] D -- C:\ProgramData\Emsisoft
O43 - CFD: 2015/06/27 10:52:59 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 2011/03/23 18:59:44 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 2015/07/11 10:40:32 - [] D -- C:\ProgramData\FlashBeat =>PUP.Optional.FlashBeat
O43 - CFD: 2013/10/14 11:57:09 - [] D -- C:\ProgramData\FloodLightGames
O43 - CFD: 2015/07/08 08:17:16 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
O43 - CFD: 2015/06/27 10:52:59 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 2015/06/27 11:04:13 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 2015/07/08 07:28:22 - [0] D -- C:\ProgramData\Lavasoft
O43 - CFD: 2015/06/27 10:53:00 - [] D -- C:\ProgramData\Logishrd
O43 - CFD: 2015/06/27 10:53:00 - [] D -- C:\ProgramData\Logitech
O43 - CFD: 2015/06/27 10:53:00 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2011/03/23 18:59:44 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/06/27 11:03:03 - [] D -- C:\ProgramData\MFAData
O43 - CFD: 2015/06/27 10:53:04 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2011/03/23 18:59:44 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2013/08/11 09:53:40 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/06/27 10:53:05 - [] D -- C:\ProgramData\Nero
O43 - CFD: 2015/06/27 10:53:05 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2010/08/27 17:48:46 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2015/07/04 09:13:44 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 2011/03/23 20:39:49 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 2015/06/27 10:53:05 - [] D -- C:\ProgramData\oem
O43 - CFD: 2015/07/09 09:32:04 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/07/11 10:39:34 - [] D -- C:\ProgramData\Service1291
O43 - CFD: 2015/07/03 08:07:05 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/07/08 10:38:02 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/06/11 17:30:33 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/06/27 10:53:05 - [] D -- C:\ProgramData\TuneUp Software
O43 - CFD: 2013/08/14 15:01:55 - [] D -- C:\ProgramData\UDL
O43 - CFD: 2015/07/09 07:30:40 - [] D -- C:\ProgramData\Uniblue =>PUP.Optional.UniblueSystem
O43 - CFD: 2013/09/30 14:22:26 - [] D -- C:\ProgramData\Wild Tangent
O43 - CFD: 2015/06/27 10:53:05 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 2014/02/01 16:58:12 - [] D -- C:\ProgramData\Wondershare
O43 - CFD: 2015/07/11 10:39:56 - [] D -- C:\ProgramData\{93dd5880-b87d-666f-93dd-d5880b876202}
O43 - CFD: 2015/07/09 10:33:30 - [] D -- C:\ProgramData\{bda6a037-c6f9-7e77-bda6-6a037c6f80df}
O43 - CFD: 2015/07/09 10:36:07 - [] D -- C:\ProgramData\{c1435036-5877-486d-c143-3503658740d9}
O43 - CFD: 2015/06/27 10:50:21 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/07/04 08:35:11 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 2015/06/27 10:50:23 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2015/06/27 10:50:23 - [] D -- C:\Program Files (x86)\Common Files\Bitdefender
O43 - CFD: 2015/04/18 18:36:03 - [] D -- C:\Program Files (x86)\Common Files\DivX Shared
O43 - CFD: 2015/06/27 10:50:24 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/07/09 08:30:23 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/06/27 10:50:24 - [] D -- C:\Program Files (x86)\Common Files\LogiShrd
O43 - CFD: 2015/06/27 11:03:27 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 2015/06/27 10:50:24 - [] D -- C:\Program Files (x86)\Common Files\Nero
O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2014/10/15 17:56:13 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/06/27 10:50:24 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 2015/06/27 10:50:25 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/06/27 10:50:25 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 2014/04/26 10:36:58 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 2015/06/27 10:50:26 - [] D -- C:\Program Files (x86)\Common Files\Wondershare
O43 - CFD: 2015/06/24 23:28:28 - [0] D -- C:\Users\nathalie\AppData\Roaming\01410FF8-1434009076-1020-1210-171250000000
O43 - CFD: 2015/07/11 10:36:23 - [] D -- C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000
O43 - CFD: 2015/03/13 17:13:20 - [] D -- C:\Users\nathalie\AppData\Roaming\ADC-v1
O43 - CFD: 2015/06/27 10:53:16 - [] D -- C:\Users\nathalie\AppData\Roaming\Adobe
O43 - CFD: 2014/11/08 11:56:10 - [] D -- C:\Users\nathalie\AppData\Roaming\Apple Computer
O43 - CFD: 2015/07/11 10:35:48 - [] D -- C:\Users\nathalie\AppData\Roaming\ASPackage =>PUP.Optional.ASPackage
O43 - CFD: 2015/06/27 16:42:59 - [] D -- C:\Users\nathalie\AppData\Roaming\AVAST Software
O43 - CFD: 2015/06/17 18:04:07 - [] D -- C:\Users\nathalie\AppData\Roaming\AVG
O43 - CFD: 2015/06/26 11:22:36 - [] D -- C:\Users\nathalie\AppData\Roaming\AVG2015
O43 - CFD: 2013/11/18 18:56:40 - [] D -- C:\Users\nathalie\AppData\Roaming\Boomzap
O43 - CFD: 2013/08/11 11:57:06 - [] D -- C:\Users\nathalie\AppData\Roaming\CDXReader
O43 - CFD: 2013/11/19 20:15:15 - [0] D -- C:\Users\nathalie\AppData\Roaming\Common
O43 - CFD: 2015/06/27 10:53:16 - [] D -- C:\Users\nathalie\AppData\Roaming\DivX
O43 - CFD: 2015/06/27 10:53:16 - [] D -- C:\Users\nathalie\AppData\Roaming\EPSON
O43 - CFD: 2013/10/14 11:57:09 - [] D -- C:\Users\nathalie\AppData\Roaming\FloodLightGames
O43 - CFD: 2011/03/23 19:01:30 - [] D -- C:\Users\nathalie\AppData\Roaming\Identities
O43 - CFD: 2013/07/03 09:48:08 - [] D -- C:\Users\nathalie\AppData\Roaming\InstallShield
O43 - CFD: 2015/07/08 07:28:31 - [0] D -- C:\Users\nathalie\AppData\Roaming\Lavasoft
O43 - CFD: 2013/08/11 11:57:09 - [] D -- C:\Users\nathalie\AppData\Roaming\LavFilters
O43 - CFD: 2013/08/19 19:54:20 - [] D -- C:\Users\nathalie\AppData\Roaming\Leadertech
O43 - CFD: 2015/06/27 10:53:16 - [] D -- C:\Users\nathalie\AppData\Roaming\LibreOffice
O43 - CFD: 2013/08/19 20:06:30 - [] D -- C:\Users\nathalie\AppData\Roaming\Logishrd
O43 - CFD: 2013/08/19 20:06:18 - [] D -- C:\Users\nathalie\AppData\Roaming\Logitech
O43 - CFD: 2015/06/27 10:53:16 - [] D -- C:\Users\nathalie\AppData\Roaming\Macromedia
O43 - CFD: 2014/11/19 12:18:37 - [] D -- C:\Users\nathalie\AppData\Roaming\Mahjong LoT
O43 - CFD: 2009/07/14 09:44:38 - [0] D -- C:\Users\nathalie\AppData\Roaming\Media Center Programs
O43 - CFD: 2015/06/27 10:53:16 - [] D -- C:\Users\nathalie\AppData\Roaming\meilleurcoupon-setup_1119815 =>PUP.Optional.RewardsArcade
O43 - CFD: 2015/06/27 10:53:18 - [] SD -- C:\Users\nathalie\AppData\Roaming\Microsoft
O43 - CFD: 2015/07/08 10:43:11 - [] D -- C:\Users\nathalie\AppData\Roaming\Mozilla
O43 - CFD: 2015/06/27 10:33:57 - [] D -- C:\Users\nathalie\AppData\Roaming\MPC-HC
O43 - CFD: 2011/03/23 19:10:07 - [] D -- C:\Users\nathalie\AppData\Roaming\Nero
O43 - CFD: 2015/07/09 07:52:37 - [0] D -- C:\Users\nathalie\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock
O43 - CFD: 2011/03/23 19:01:51 - [] D -- C:\Users\nathalie\AppData\Roaming\OEM
O43 - CFD: 2015/07/08 15:20:34 - [] D -- C:\Users\nathalie\AppData\Roaming\One System Care =>PUP.Optional.OneSystemCare
O43 - CFD: 2015/06/27 10:53:21 - [] D -- C:\Users\nathalie\AppData\Roaming\OpenOffice
O43 - CFD: 2015/04/18 16:29:48 - [0] D -- C:\Users\nathalie\AppData\Roaming\Opera Software
O43 - CFD: 2015/07/08 10:24:19 - [] D -- C:\Users\nathalie\AppData\Roaming\Optimizer Pro =>PUP.Optional.OptimizerPro
O43 - CFD: 2015/06/27 16:30:02 - [0] D -- C:\Users\nathalie\AppData\Roaming\QuickScan
O43 - CFD: 2014/03/25 09:51:17 - [] D -- C:\Users\nathalie\AppData\Roaming\Shortcut
O43 - CFD: 2015/07/11 10:40:18 - [] D -- C:\Users\nathalie\AppData\Roaming\Skype
O43 - CFD: 2015/07/08 10:08:21 - [] D -- C:\Users\nathalie\AppData\Roaming\Store
O43 - CFD: 2015/06/27 10:53:22 - [] D -- C:\Users\nathalie\AppData\Roaming\Thunderbird
O43 - CFD: 2015/06/27 10:53:22 - [] D -- C:\Users\nathalie\AppData\Roaming\TuneUp Software
O43 - CFD: 2015/07/08 10:20:01 - [] D -- C:\Users\nathalie\AppData\Roaming\vlc
O43 - CFD: 2014/03/28 17:30:07 - [] D -- C:\Users\nathalie\AppData\Roaming\WildTangent
O43 - CFD: 2013/10/31 17:47:18 - [] D -- C:\Users\nathalie\AppData\Roaming\Windows Live Writer
O43 - CFD: 2015/07/09 08:00:13 - [0] D -- C:\Users\nathalie\AppData\Roaming\WTools
O43 - CFD: 2013/12/27 19:18:03 - [] D -- C:\Users\nathalie\AppData\Roaming\Youtube Downloader HD
O43 - CFD: 2015/07/11 10:41:51 - [] D -- C:\Users\nathalie\AppData\Roaming\ZHP
O43 - CFD: 2015/07/09 11:34:48 - [] D -- C:\Users\nathalie\AppData\Local\25556
O43 - CFD: 2015/07/08 10:22:21 - [] D -- C:\Users\nathalie\AppData\Local\Adobe
O43 - CFD: 2014/09/27 12:56:01 - [] D -- C:\Users\nathalie\AppData\Local\Apple
O43 - CFD: 2015/07/04 18:49:18 - [] D -- C:\Users\nathalie\AppData\Local\Apple Computer
O43 - CFD: 2015/06/27 10:53:08 - [] D -- C:\Users\nathalie\AppData\Local\Apple Inc
O43 - CFD: 2011/03/23 18:59:55 - [0] SHD -- C:\Users\nathalie\AppData\Local\Application Data
O43 - CFD: 2015/06/17 18:01:59 - [] D -- C:\Users\nathalie\AppData\Local\Avg
O43 - CFD: 2015/06/27 10:53:08 - [] D -- C:\Users\nathalie\AppData\Local\AVG Netherlands BV
O43 - CFD: 2015/06/26 11:26:15 - [] D -- C:\Users\nathalie\AppData\Local\Avg2015
O43 - CFD: 2013/09/28 14:27:38 - [] D -- C:\Users\nathalie\AppData\Local\Big Fish
O43 - CFD: 2015/07/08 11:57:52 - [0] D -- C:\Users\nathalie\AppData\Local\BrowserWeb
O43 - CFD: 2014/04/07 12:05:47 - [] D -- C:\Users\nathalie\AppData\Local\cache
O43 - CFD: 2015/07/04 12:17:17 - [] D -- C:\Users\nathalie\AppData\Local\Chromium
O43 - CFD: 2015/07/04 14:13:17 - [] D -- C:\Users\nathalie\AppData\Local\Citrix
O43 - CFD: 2015/07/08 12:45:29 - [] D -- C:\Users\nathalie\AppData\Local\com
O43 - CFD: 2015/07/04 08:49:17 - [] D -- C:\Users\nathalie\AppData\Local\Diagnostics
O43 - CFD: 2015/06/24 10:03:21 - [] D -- C:\Users\nathalie\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/06/11 09:35:07 - [0] SHD -- C:\Users\nathalie\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/11 09:35:07 - [0] SHD -- C:\Users\nathalie\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/11 09:35:07 - [0] SHD -- C:\Users\nathalie\AppData\Local\EmieUserList
O43 - CFD: 2015/07/11 10:40:01 - [] D -- C:\Users\nathalie\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 2015/07/09 12:03:07 - [] D -- C:\Users\nathalie\AppData\Local\gmsd_fr_004010024 =>PUP.Optional.CrossRider
O43 - CFD: 2014/04/26 10:28:31 - [] D -- C:\Users\nathalie\AppData\Local\Google
O43 - CFD: 2011/03/23 18:59:55 - [0] SHD -- C:\Users\nathalie\AppData\Local\Historique
O43 - CFD: 2015/06/27 17:06:16 - [] D -- C:\Users\nathalie\AppData\Local\Lavasoft
O43 - CFD: 2013/08/19 20:12:12 - [] D -- C:\Users\nathalie\AppData\Local\Logishrd
O43 - CFD: 2013/08/11 10:04:55 - [] D -- C:\Users\nathalie\AppData\Local\Macromedia
O43 - CFD: 2015/06/26 11:15:34 - [] D -- C:\Users\nathalie\AppData\Local\MFAData
O43 - CFD: 2015/06/27 10:53:12 - [] D -- C:\Users\nathalie\AppData\Local\Microsoft
O43 - CFD: 2015/06/27 10:53:11 - [] D -- C:\Users\nathalie\AppData\Local\Microsoft Games
O43 - CFD: 2015/07/08 11:58:11 - [] D -- C:\Users\nathalie\AppData\Local\mixvideoplayer =>PUP.Optional.MixVideoPlayer
O43 - CFD: 2014/09/23 11:31:13 - [] D -- C:\Users\nathalie\AppData\Local\Mozilla
O43 - CFD: 2015/04/18 16:29:48 - [0] D -- C:\Users\nathalie\AppData\Local\Opera Software
O43 - CFD: 2015/06/27 10:53:12 - [] D -- C:\Users\nathalie\AppData\Local\Programs
O43 - CFD: 2015/06/27 10:53:12 - [] D -- C:\Users\nathalie\AppData\Local\Skype
O43 - CFD: 2015/06/27 10:53:13 - [] D -- C:\Users\nathalie\AppData\Local\SkypeWebPlugin
O43 - CFD: 2015/07/11 10:42:02 - [] D -- C:\Users\nathalie\AppData\Local\Temp
O43 - CFD: 2011/03/23 18:59:55 - [0] SHD -- C:\Users\nathalie\AppData\Local\Temporary Internet Files
O43 - CFD: 2014/12/19 13:29:36 - [] D -- C:\Users\nathalie\AppData\Local\Thunderbird
O43 - CFD: 2014/03/26 10:41:59 - [] D -- C:\Users\nathalie\AppData\Local\TuneUp Software
O43 - CFD: 2015/06/27 10:53:15 - [] D -- C:\Users\nathalie\AppData\Local\VirtualStore
O43 - CFD: 2015/07/08 08:57:37 - [] D -- C:\Users\nathalie\AppData\Local\WikiBrowser =>PUP.Optional.WikiBrowser
O43 - CFD: 2014/03/20 13:32:45 - [] D -- C:\Users\nathalie\AppData\Local\Windows Live
O43 - CFD: 2013/10/31 17:49:27 - [] D -- C:\Users\nathalie\AppData\Local\Windows Live Writer
O43 - CFD: 2014/02/01 16:58:21 - [] D -- C:\Users\nathalie\AppData\Local\Wondershare
O43 - CFD: 2015/06/27 10:53:18 - [] RD -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/07/08 08:45:07 - [] RD -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/07/11 10:35:48 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage =>PUP.Optional.ASPackage
O43 - CFD: 2013/11/18 18:53:13 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Awakening - Le Chateau Celeste
O43 - CFD: 2015/07/08 10:08:10 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock =>PUP.Optional.BubbleDock
O43 - CFD: 2014/01/18 10:41:25 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
O43 - CFD: 2015/07/08 08:57:01 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer =>PUP.Optional.GUPlayer
O43 - CFD: 2013/11/18 19:22:05 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mahjong - L'Heritage des Tolteques
O43 - CFD: 2013/10/01 19:25:47 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mahjongg - Ancient Egypt
O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/02/03 17:36:16 - [0] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RegSeeker
O43 - CFD: 2015/06/25 19:09:46 - [] D -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 2015/07/09 07:56:49 - [] RD -- C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

---\\ Liste des pilotes du système (SDL) (O58) (71) - 9s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864]
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904]
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128]
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632]
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856]
O58 - SDL:2015/06/27 16:37:54 A . (...) -- C:\Windows\System32\drivers\aswHwid.sys [29168]
O58 - SDL:2015/06/27 16:37:54 A . (.Avast Software s.r.o. - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [89944]
O58 - SDL:2015/06/27 16:37:54 A . (.Avast Software s.r.o. - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528]
O58 - SDL:2015/06/27 16:37:54 A . (...) -- C:\Windows\System32\drivers\aswRvrt.sys [65736]
O58 - SDL:2015/06/27 16:37:00 A . (.Avast Software s.r.o. - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1047320]
O58 - SDL:2015/06/27 16:41:58 A . (.Avast Software s.r.o. - avast! self protection module.) -- C:\Windows\System32\drivers\aswsp.sys [442264]
O58 - SDL:2015/06/27 16:37:54 A . (.Avast Software s.r.o. - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [137288]
O58 - SDL:2015/06/27 16:37:54 A . (...) -- C:\Windows\System32\drivers\aswVmm.sys [272248]
O58 - SDL:2006/12/22 21:05:52 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrxusb.sys [559104]
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432]
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704]
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976]
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720]
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480]
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488]
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496]
O58 - SDL:2015/03/24 00:17:08 A . (.Emsisoft GmbH - Emsisoft Anti-Malware Platform Protection.) -- C:\Windows\System32\drivers\epp64.sys [135800]
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016]
O58 - SDL:2012/10/03 17:14:56 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232]
O58 - SDL:2010/11/20 06:33:36 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720]
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496]
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112]
O58 - SDL:2013/05/23 08:12:42 A . (.Logitech, Inc. - Logitech PS/2 Mouse Filter Driver..) -- C:\Windows\System32\drivers\L8042mou.Sys [89368]
O58 - SDL:2013/05/23 08:12:48 A . (.Logitech, Inc. - Logitech Equad USB Driver..) -- C:\Windows\System32\drivers\LEqdUsb.sys [77592]
O58 - SDL:2013/05/23 08:12:48 A . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\Windows\System32\drivers\LHidEqd.sys [13080]
O58 - SDL:2013/05/23 08:12:50 A . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\Windows\System32\drivers\LHidFilt.Sys [76568]
O58 - SDL:2013/05/23 08:12:52 A . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\Windows\System32\drivers\LMouFilt.Sys [59160]
O58 - SDL:2013/05/23 08:12:56 A . (.Logitech, Inc. - Logitech Filter Driver for Mouse Class..) -- C:\Windows\System32\drivers\LMouKE.Sys [111896]
O58 - SDL:2013/08/20 11:44:58 A . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\Windows\System32\drivers\LNonPnP.sys [18960]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776]
O58 - SDL:2015/06/18 08:41:40 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816]
O58 - SDL:2015/06/18 08:41:44 A . (.Malwarebytes Corporation - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272]
O58 - SDL:2015/07/08 06:56:09 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [113880]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392]
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736]
O58 - SDL:2015/06/18 08:41:56 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [63704]
O58 - SDL:2013/07/25 17:53:46 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\Windows\System32\drivers\netaapl64.sys [23040]
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264]
O58 - SDL:2015/02/18 10:55:54 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [13585736]
O58 - SDL:2009/06/10 22:35:35 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvm62x64.sys [408960]
O58 - SDL:2010/08/12 13:07:50 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvmf6264.sys [350952]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352]
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272]
O58 - SDL:2009/08/04 11:45:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor64.sys [241696]
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816]
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592]
O58 - SDL:2010/02/09 17:28:22 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2269600]
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040]
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584]
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464]
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656]
O58 - SDL:2015/06/10 23:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488]
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872]
O58 - SDL:2015/06/16 00:27:22 A . (.WS - WS TDI Driver x64.) -- C:\Windows\System32\drivers\wsfd_1_10_0_19.sys [61312] =>PUP.Optional.WordShark

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (19) - 612s
O61 - LFC: 2015/07/08 08:13:27 A . (..) -- C:\Users\nathalie\Searches\Setup(1).exe [697648]
O61 - LFC: 2015/07/08 07:16:09 A . (.AVAST Software.) -- C:\Users\nathalie\Downloads\avast-browser-cleanup.exe [2953520]
O61 - LFC: 2015/07/04 12:15:09 A . (.Igor Pavlov.) -- C:\Users\nathalie\Downloads\Realtek HD Drivers.exe [206040047]
O61 - LFC: 2015/07/08 10:41:54 A . (..) -- C:\Users\nathalie\Downloads\Setup(3).exe [697592]
O61 - LFC: 2015/07/08 11:53:56 A . (..) -- C:\Users\nathalie\Downloads\Setup(4).exe [697592]
O61 - LFC: 2015/07/09 09:29:33 A . (..) -- C:\Users\nathalie\Downloads\Setup(5).exe [291840]
O61 - LFC: 2015/07/08 10:34:16 A . (.Oracle Corporation.) -- C:\Users\nathalie\Downloads\setup.exe [29727656]
O61 - LFC: 2015/07/11 08:16:31 A . (.Enigma Software Group USA, LLC..) -- C:\Users\nathalie\Downloads\sh-remover.exe [3237248]
O61 - LFC: 2015/07/08 10:16:58 A . (..) -- C:\Users\nathalie\Downloads\vlc-2.2.1-win32(2).exe [28849904]
O61 - LFC: 2015/07/08 09:56:07 A . (.Tomorrow Software Installer.) -- C:\Users\nathalie\Downloads\vlcmediaplayer-setup.exe [898456]
O61 - LFC: 2015/07/09 14:08:25 A . (.Nosibay.) -- C:\Users\nathalie\AppData\Roaming\Store\WindApp\tmp\updates\AddonsUI.exe [430640] =>PUP.Optional.Nosibay
O61 - LFC: 2015/07/11 10:34:27 A . (..) -- C:\Users\nathalie\AppData\Roaming\ASPackage\ASPackage.exe [750520] =>PUP.Optional.ASPackage
O61 - LFC: 2015/07/11 10:35:48 A . (..) -- C:\Users\nathalie\AppData\Roaming\ASPackage\Uninstall.exe [66796] =>PUP.Optional.ASPackage
O61 - LFC: 2015/07/11 10:36:01 A . (..) -- C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\rnsl9E20.exe [205312]
O61 - LFC: 2015/07/11 10:35:48 A . (..) -- C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\Uninstall.exe [66796]
O61 - LFC: 2015/07/08 08:56:35 A . (..) -- C:\Users\nathalie\AppData\Local\WikiBrowser\ExternalUninstaller.exe [643184] =>PUP.Optional.WikiBrowser
O61 - LFC: 2015/07/04 12:16:52 A . (.The Chromium Authors.) -- C:\Users\nathalie\AppData\Local\Chromium\Application\45.0.2423.0\Installer\setup.exe [932352]
O61 - LFC: 2015/07/04 12:16:32 A . (..) -- C:\Users\nathalie\AppData\Local\Chromium\Application\45.0.2423.0\Installer\uninstall.exe [902144]
O61 - LFC: 2015/07/08 06:55:03 A . (.SlimWare Utilities, Inc..) -- C:\Users\nathalie\AppData\Local\AVG Netherlands BV\AVG Driver Updater\SWDUMon.sys [25608]

---\\ Associations Shell Spawning (O67) (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (21) - 17s
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.defaultenginename", "mystartsearch"); =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.searchengine.alias", "mystartsearch"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/favicon.ico"); =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.searchengine.name", "mystartsearch"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.searchengine.ptid", "cmi"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.searchengine.uid", "395049983_1052515_DC687514"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=ds&ts=1436604398&z=31ecf0569e7d3bdf92ed9abg6z[...] =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.search.selectedEngine", "mystartsearch"); =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("browser.startup.homepage", "http://www.mystartsearch.com/?type=hp&ts=1436604398&z=31ecf0569e7d3bdf92ed9abg6zac2qcqde9z8[...] =>PUP.Optional.StartSearch
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("extensions.AssistPoint.cg", "77f4986e-5cce-497b-a378-394078caa852"); =>PUP.Optional.AssistPoint
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [nathalie - lr4s4lyj.default-1401617198158] user_pref("extensions.sweetsearch@gmail.com.install-event-fired", true); =>PUP.Optional.SweetSearch
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (mystartsearch) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} - (Search The Web) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} - (Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] - (Conduit Search) - http://search.conduit.com/ =>PUP.Optional.Conduit

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (33) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648]
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928]
O83 - Search Svchost Services: UxTuneUp (UxTuneUp) . (.TuneUp Software - TuneUp Theme Extension.) -- C:\Windows\System32\uxtuneup.dll [43320]
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2603008]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (2) - 2s
O87 - FAEL: "{63EE3C82-7B40-46BA-9EF0-D65293C3CEF4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\PremierOpinion\pmropn.exe =>PUP.Optional.PremierOpinion
O87 - FAEL: "{7D54A920-5EBB-40C6-B90E-FAF1366F70A9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\PremierOpinion\pmropn.exe =>PUP.Optional.PremierOpinion

---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS) (2) - 10s
[MD5.] [WIS][2015/06/18 10:08:24] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\4b0bfc.msi [32768] =>PUP.Optional.GlobalUpdate
[MD5.] [WIS][2015/07/11 10:39:58] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\Windows\Installer\818e41.msi [32768] =>PUP.Optional.GlobalUpdate

---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped) (32) - 70s
SR - Auto [2015/03/24 00:17:06] [ 5020520] Emsisoft Protection Service (a2AntiMalware) . (.Emsisoft GmbH.) - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
SR - Auto [2015/06/12 09:25:00] [ 82112] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SS - Demand [2015/07/08 10:22:12] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SR - Auto [2015/05/29 18:51:26] [ 77128] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - Auto [2015/06/27 16:37:09] [ 343336] Avast Antivirus (avast! Antivirus) . (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - Auto [2015/06/16 08:50:36] [ 281088] Beltedness (Beltedness) . (...) - C:\Program Files (x86)\Beltedness\Beltedness.exe
SR - Auto [2007/01/11 06:02:00] [ 126464] EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE
SR - Auto [2015/02/17 17:02:00] [ 221696] EZ Software Updater (EZ Software Updater) . (...) - C:\Program Files (x86)\EZ Software Updater\EZ Software Updater.exe
SR - Auto [2009/08/10 17:01:04] [ 626208] ForceWare Intelligent Application Manager (IAM) (ForceWare Intelligent Application Manager (IAM)) . (.Copyright (c) 2001-2009 NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
SS - Auto [2015/07/11 10:39:58] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe
SS - Demand [2015/07/11 10:39:58] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe
SR - Auto [2010/01/08 15:21:22] [ 23584] GREGService (GREGService) . (.Acer Incorporated.) - C:\Program Files (x86)\eMachines\Registration\GREGsvc.exe
SS - Demand [2011/05/10 00:46:34] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
SR - Auto [2015/07/11 10:11:26] [ 285184] Home Page Media (hofudefi) . (...) - C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\knsf89E2.tmpfs
SR - Auto [2015/06/24 04:08:12] [ 125112] IHProtect Service (IHProtect Service) . (.XTab system.) - C:\Program Files (x86)\MiuiTab\ProtectService.exe
SR - Demand [2015/06/29 17:13:36] [ 644904] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - Auto [2015/06/08 13:58:00] [ 2751792] LavasoftTcpService (LavasoftTcpService) . (.Lavasoft Limited.) - C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe
SS - Demand [2013/06/13 21:31:10] [ 357144] Logitech Bluetooth Service (LBTServ) . (.Logitech, Inc..) - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
SS - Auto [2015/06/18 08:39:50] [ 1133880] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
SS - Demand [2015/07/03 21:09:10] [ 148136] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
SS - Disabled [2010/01/15 23:08:38] [ 935208] Nero BackItUp Scheduler 4.0 (Nero BackItUp Scheduler 4.0) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
SR - Auto [2009/08/10 17:01:06] [ 206880] ForceWare IP service (nSvcIp) . (.Copyright (c) 2001-2009 NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
SR - Auto [// ::] [ 878400] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe
SR - Auto [2015/02/18 10:55:22] [ 1258312] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
SR - Auto [2014/08/18 21:51:22] [ 213816] PremierOpinion (PremierOpinion) . (.VoiceFive, Inc..) - C:\Program Files (x86)\PremierOpinion\pmservice.exe
SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
SR - Auto [2014/07/16 10:24:32] [ 2145080] TuneUp Utilities Service (TuneUp.UtilitiesSvc) . (.TuneUp Software.) - C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
SR - Auto [2010/01/29 01:27:36] [ 243232] Updater Service (Updater Service) . (.Acer Group.) - C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
SR - Auto [2015/07/11 10:36:24] [ 165376] Encyclopaedia Enter (vicoqudu) . (...) - C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\hnsvEF70.tmp
SR - Auto [2015/06/30 14:23:48] [ 364032] WikiBrowserUpdateService (WikiBrowserUpdateService) . (...) - C:\Users\nathalie\AppData\Local\WikiUpdate.exe
SR - Auto [2015/07/11 10:48:20] [ 707240] WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED.) - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
SR - Auto [2015/06/16 00:27:24] [ 299096] WS 1.10.0.19 Client Service (wssvc_1.10.0.19) . (.WS.) - C:\Program Files (x86)\WordShark_1.10.0.19\Service\wssvc.exe

---\\ Recherche de clés de registre Tracing (O100) (6) - 1s
HKLM\SOFTWARE\Microsoft\Tracing\StormWatch_RASAPI32 =>PUP.Optional.StormWatch
HKLM\SOFTWARE\Microsoft\Tracing\StormWatch_RASMANCS =>PUP.Optional.StormWatch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASAPI32 =>PUP.Optional.MixVideoPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASMANCS =>PUP.Optional.MixVideoPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSharkAutoUpdateClient_RASAPI32 =>PUP.Optional.WordShark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSharkAutoUpdateClient_RASMANCS =>PUP.Optional.WordShark

---\\ Scan Additionnel (O88) (163) - 0s
C:\Program Files (x86)\PremierOpinion\pmservice.exe =>PUP.Optional.PremierOpinion
C:\Users\nathalie\AppData\Local\WikiUpdate.exe =>PUP.Optional.WikiBrowser
C:\Program Files (x86)\WordShark_1.10.0.19\Service\wssvc.exe =>PUP.Optional.WordShark
C:\Program Files (x86)\EZ Software Updater\EZ Software Updater.exe =>PUP.Optional.EZSoftwareUpdater
C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\vnsl77D2.tmp =>PUP.Optional.CrossRider
C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\knsf89E2.tmpfs =>PUP.Optional.CrossRider
C:\Users\nathalie\AppData\Roaming\01410FF8-1436603748-1020-1210-171250000000\hnsvEF70.tmp =>PUP.Optional.CrossRider
C:\ProgramData\FlashBeat\FlashBeat.exe =>PUP.Optional.FlashBeat
C:\Program Files (x86)\Super Optimizer\SupOptStart.exe =>PUP.Optional.SuperOptimizer
C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe =>PUP.Optional.SuperOptimizer
C:\Users\nathalie\AppData\Roaming\ASPackage\ASPackage.exe =>PUP.Optional.ASPackage
HKLM\SYSTEM\CurrentControlSet\Services\EZ Software Updater =>PUP.Optional.EZSoftwareUpdater
HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate
HKLM\SYSTEM\CurrentControlSet\Services\hofudefi =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\LavasoftTcpService =>PUA.Loadshop
C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe =>PUA.Loadshop
HKLM\SYSTEM\CurrentControlSet\Services\PremierOpinion =>PUP.Optional.PremierOpinion
HKLM\SYSTEM\CurrentControlSet\Services\vicoqudu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\WikiBrowserUpdateService =>PUP.Optional.WikiBrowser
HKLM\SYSTEM\CurrentControlSet\Services\wssvc_1.10.0.19 =>PUP.Optional.WordShark
C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-6.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-7.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-10_user.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-4.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5_user.job =>PUP.Optional.CrossRider
C:\Windows\Tasks\AmiUpdXp.job =>PUP.Optional.SoftwareUpdater
C:\Windows\Tasks\Bidaily Synchronize Task[8da6].job =>PUP.Optional.BidailySync
C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate
C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate
C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-6 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-1-7 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-10_user =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-4 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5 =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\77c2d655-17c8-4674-ba2a-1cda90e82026-5_user =>PUP.Optional.CrossRider
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate
C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate
C:\Windows\System32\Tasks\MixVideoPlayer Update =>PUP.Optional.MixVideoPlayer
C:\Windows\System32\Tasks\Optimizer Pro Schedule =>PUP.Optional.OptimizerPro
C:\Windows\System32\Tasks\WindApp Update =>PUP.Optional.Nosibay
C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Core =>PUP.Optional.WordShark
C:\Windows\System32\Tasks\WordShark Auto Updater 1.10.0.19 Pending Update =>PUP.Optional.WordShark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\ASPackage =>PUP.Optional.ASPackage
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\EZ Software Updater_is1 =>PUP.Optional.EZSoftwareUpdater
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\FlashBeat =>PUP.Optional.FlashBeat
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_fr_004010024_is1 =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Media Downloader_is1 =>PUP.Optional.MediaDownloader
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\MixVideoPlayer =>PUP.Optional.MixVideoPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SmartSaver+ 21 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Super Optimizer_is1 =>PUP.Optional.SuperOptimizer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E1527582-8509-4011-B922-29E3FB548882}_is1 =>PUP.Optional.DNSUnlocker
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{eeb86aef-4a5d-4b75-9d74-f16d438fc286} =>PUP.Optional.PremierOpinion
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bubble Dock =>PUP.Optional.BubbleDock
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\GUPlayer =>PUP.Optional.GUPlayer
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindApp =>PUP.Optional.Nosibay
HKLM\SOFTWARE\Wow6432Node\Activeris =>PUP.Optional.Activeris
HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.Ask
HKLM\SOFTWARE\Wow6432Node\AssistPoint =>PUP.Optional.AssistPoint
HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit
HKLM\SOFTWARE\Wow6432Node\EZ Software Updater =>PUP.Optional.EZSoftwareUpdater
HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\Wow6432Node\Flashbeat =>PUP.Optional.FlashBeat
HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster
HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\MixVideoPlayer =>PUP.Optional.MixVideoPlayer
HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional
HKLM\SOFTWARE\Wow6432Node\SmartSaver+ 21 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\SmartSaver+ 21-nv-ie =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\StormWatchApp =>PUP.Optional.StormWatch
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\Uniblue =>PUP.Optional.UniblueSystem
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\WEDL =>PUP.Optional.weDownloadManager
HKLM\SOFTWARE\Wow6432Node\WordAnchor_1.10.0.19 =>PUP.Optional.WordAnchor
HKLM\SOFTWARE\Wow6432Node\WordShark_1.10.0.19 =>PUP.Optional.WordShark
HKCU\SOFTWARE\Activeris =>PUP.Optional.Activeris
HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit
HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.Ask
HKCU\SOFTWARE\gamesdesktop =>PUP.Optional.GamesDesktop
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch
HKCU\SOFTWARE\Nosibay =>PUP.Optional.SPointer
HKCU\SOFTWARE\Optimizer Pro =>PUP.Optional.OptimizerPro
HKCU\SOFTWARE\Plus Video HD 1.8cV18.04-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech
HKCU\SOFTWARE\SmartSaver+ 21-nv-ie =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Store =>PUP.Optional
HKCU\SOFTWARE\StormWatchApp =>PUP.Optional.StormWatch
HKCU\SOFTWARE\Super Optimizer =>PUP.Optional.SuperOptimizer
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Multiplug
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider =>PUP.Optional.CrossRider
C:\Program Files (x86)\Com NotificationV25.03 =>PUP.Optional.ComNotification
C:\Program Files (x86)\DNS Unlocker =>PUP.Optional.DNSUnlocker
C:\Program Files (x86)\EZ Software Updater =>PUP.Optional.EZSoftwareUpdater
C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Program Files (x86)\gmsd_fr_004010024 =>PUP.Optional.CrossRider
C:\Program Files (x86)\GUPlayer =>PUP.Optional.GUPlayer
C:\Program Files (x86)\Media Downloader =>PUP.Optional.MediaDownloader
C:\Program Files (x86)\MixVideoPlayer =>PUP.Optional.MixVideoPlayer
C:\Program Files (x86)\PremierOpinion =>PUP.Optional.PremierOpinion
C:\Program Files (x86)\SmartSaver+ 21 =>PUP.Optional.CrossRider
C:\Program Files (x86)\StormWatch =>PUP.Optional.StormWatch
C:\Program Files (x86)\Super Optimizer =>PUP.Optional.SuperOptimizer
C:\Program Files (x86)\WordShark_1.10.0.19 =>PUP.Optional.WordShark
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP =>PUP.Optional.GamesDesktop
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Downloader =>PUP.Optional.MediaDownloader
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer =>PUP.Optional.MixVideoPlayer
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2 =>PUP.Optional.OptimizerPro
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PremierOpinion =>PUP.Optional.PremierOpinion
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Optimizer =>PUP.Optional.SuperOptimizer
C:\ProgramData\FlashBeat =>PUP.Optional.FlashBeat
C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
C:\ProgramData\Uniblue =>PUP.Optional.UniblueSystem
C:\Users\nathalie\AppData\Roaming\ASPackage =>PUP.Optional.ASPackage
C:\Users\nathalie\AppData\Roaming\meilleurcoupon-setup_1119815 =>PUP.Optional.RewardsArcade
C:\Users\nathalie\AppData\Roaming\Nosibay =>PUP.Optional.BubbleDock
C:\Users\nathalie\AppData\Roaming\One System Care =>PUP.Optional.OneSystemCare
C:\Users\nathalie\AppData\Roaming\Optimizer Pro =>PUP.Optional.OptimizerPro
C:\Users\nathalie\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\nathalie\AppData\Local\gmsd_fr_004010024 =>PUP.Optional.CrossRider
C:\Users\nathalie\AppData\Local\mixvideoplayer =>PUP.Optional.MixVideoPlayer
C:\Users\nathalie\AppData\Local\WikiBrowser =>PUP.Optional.WikiBrowser
C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage =>PUP.Optional.ASPackage
C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bubble Dock =>PUP.Optional.BubbleDock
C:\Users\nathalie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer =>PUP.Optional.GUPlayer
C:\Windows\System32\drivers\wsfd_1_10_0_19.sys =>PUP.Optional.WordShark
C:\Users\nathalie\AppData\Roaming\Store\WindApp\tmp\updates\AddonsUI.exe =>PUP.Optional.Nosibay
C:\Users\nathalie\AppData\Roaming\ASPackage\Uninstall.exe =>PUP.Optional.ASPackage
C:\Users\nathalie\AppData\Local\WikiBrowser\ExternalUninstaller.exe =>PUP.Optional.WikiBrowser
HKLM\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\Open\command [Bad: C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.mystartsearch.com/] =>PUP.Optional.StartSearch
C:\Windows\Installer\4b0bfc.msi =>PUP.Optional.GlobalUpdate
C:\Windows\Installer\818e41.msi =>PUP.Optional.GlobalUpdate
HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate
HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR
C:\Program Files (x86)\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR
HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu
C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe =>PUP.Optional.Fuyu
HKLM64\SOFTWARE\Microsoft\Tracing\StormWatch_RASAPI32 =>PUP.Optional.StormWatch
HKLM64\SOFTWARE\Microsoft\Tracing\StormWatch_RASMANCS =>PUP.Optional.StormWatch
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASAPI32 =>PUP.Optional.MixVideoPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\MixVideoPlayer_RASMANCS =>PUP.Optional.MixVideoPlayer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSharkAutoUpdateClient_RASAPI32 =>PUP.Optional.WordShark
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\WordSharkAutoUpdateClient_RASMANCS =>PUP.Optional.WordShark

---\\ Récapitulatif des détections trouvées sur votre station (51) - 0s
http://www.nicolascoolman.fr/adware-premieropinion/ =>PUP.Optional.PremierOpinion
http://www.nicolascoolman.fr/blog =>PUP.Optional.WikiBrowser
http://www.nicolascoolman.fr/pup-wordshark/ =>PUP.Optional.WordShark
http://www.nicolascoolman.fr/blog =>PUP.Optional.EZSoftwareUpdater
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.FlashBeat
http://www.nicolascoolman.fr/blog =>PUP.Optional.SuperOptimizer
http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay
http://www.nicolascoolman.fr/blog =>PUP.Optional.ASPackage
http://www.nicolascoolman.fr/blog =>PUP.Optional.MediaDownloader
http://www.nicolascoolman.fr/blog =>PUP.Optional.MixVideoPlayer
http://www.nicolascoolman.fr/blog =>PUA.Loadshop
http://www.nicolascoolman.fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater
http://www.nicolascoolman.fr/blog =>PUP.Optional.BidailySync
http://www.nicolascoolman.fr/pup-optimizerpro/ =>PUP.Optional.OptimizerPro
http://www.nicolascoolman.fr/blog =>PUP.Optional.GamesDesktop
http://www.nicolascoolman.fr/blog =>PUP.Optional.DNSUnlocker
http://www.nicolascoolman.fr/pup-bubbledock/ =>PUP.Optional.BubbleDock
http://www.nicolascoolman.fr/blog =>PUP.Optional.GUPlayer
http://www.nicolascoolman.fr/pup-activeris/ =>PUP.Optional.Activeris
http://www.nicolascoolman.fr/toolbar-ask/ =>Toolbar.Ask
http://www.nicolascoolman.fr/blog =>PUP.Optional.AssistPoint
http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit
http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR
http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBooster
http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/blog =>PUP.Optional
http://www.nicolascoolman.fr/blog =>PUP.Optional.StormWatch
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu
http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/blog =>PUP.Optional.UniblueSystem
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/pup-wedownloadmanager/ =>PUP.Optional.weDownloadManager
http://www.nicolascoolman.fr/pup-wordanchor/ =>PUP.Optional.WordAnchor
http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar
http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch
http://www.nicolascoolman.fr/adware-spointer/ =>PUP.Optional.SPointer
http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech
http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork
http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug
http://www.nicolascoolman.fr/blog =>PUP.Optional.ComNotification
http://www.nicolascoolman.fr/pup-rewardsarcade/ =>PUP.Optional.RewardsArcade
http://www.nicolascoolman.fr/blog =>PUP.Optional.OneSystemCare
http://www.nicolascoolman.fr/pup-startsearch/ =>PUP.Optional.StartSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine
http://www.nicolascoolman.fr/pup-quickstart/ =>PUP.Optional.QuickStart

~ End of the scan, 207263 items in 828 seconds (1352)(0)()

Publicité


Signaler le contenu de ce document

Publicité