cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.8.3.109 Par Nicolas Coolman (2015/08/3)
~ Démarré par utilisateur (Administrator) (2015/08/04 14:36:33)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\utilisateur\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
~ Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v44.0.2403.125
MFIE: Mozilla Thunderbird 31.7.0 (x86 fr) v31.7.0
MSIE: Internet Explorer v11.0.9600.17905

---\\ Informations sur les produits Windows (4) - 2s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK (Auto)
Windows Activation Technologies : OK

---\\ Surveillance de Logiciels (1) - 11s
Adobe Flash Player 18 NPAPI

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4005.144 MB (54% free)
~ System Restore: Activé (Enable)
~ System drive C: has 39 GB free of 175 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PACKARD-BELL
~ User Name: utilisateur
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 39 GB free of 175 GB (System)
~ Drive D: has GB free of 0 GB
~ Drive F: has 299 GB free of 300 GB

---\\ Etat du Centre de Sécurité Windows (13) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (23) - 2s
[MD5.C10A66189DC8C090E7C84873EDCEBC88] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [2501368]
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [54784]
[MD5.A570A64292214C43E0BA50E6A72A6380] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [145920]
[MD5.98C6A46E9E2822BF83196C2EAE43DBD4] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2427392]
[MD5.EC498BAE1F0D3E0E401C963F8D76C437] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [572416]
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [447488]
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456]
[MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [563200]
[MD5.74B14192CF79A72F7536B27CB8814FBD] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [26464]
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576]
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352]
[MD5.A03F362C5557E238CBFA914689C77248] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [134144]
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800]
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544]
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [142848]
[MD5.6FBDF2B1B025A8E6E069234362FFFFB7] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408]
[MD5.0217532E19A748F0E5D569307363D5FD] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [282624]
[MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792]
[MD5.764B1121867B2D9B31C491668AC72B2B] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [94208]
[MD5.1BD3022FD6E450B00DE560265638FD2A] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640]
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584]
[MD5.FFF28F9F6823EB1756C60F1649560BBF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [107520]
[MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [310080]

---\\ Processus lancés (20) - 8s
[MD5.0FD99BAF91AD54ED70E64DE5BBA03559] - (...) -- C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8\hnsyE941.tmp [161792] [PID.1308] =>PUP.Optional.CrossRider
[MD5.812400977140134B25074657B0C4F06A] - (...) -- C:\Users\utilisateur\AppData\Local\F7AB4293-1438133228-E211-864B-B888E3AC1ED8\snsv2D6F.tmp [120832] [PID.1968] =>PUP.Optional.CrossRider
[MD5.C5323F961012E91A9E4BF4FF377655F3] - (...) -- C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8\jnsuD401.tmp [209920] [PID.1272] =>PUP.Optional.CrossRider
[MD5.44C4F45CD2D5D1062384451489B9EB06] - (.XTab system - ProtectSvc.exe.) -- C:\Program Files (x86)\MiuiTab\ProtectService.exe [125112] [PID.1788] =>PUP.Optional.MiuiTab
[MD5.58DEC0CB5A0D1D44A6FAC843903DCCC0] - (.SearchProtect - CmdShell.exe.) -- C:\Program Files (x86)\MiuiTab\CmdShell.exe [31928] [PID.2216] =>PUP.Optional.MiuiTab
[MD5.FDA3A80C2592F9CF056C0E76C2273BC3] - (...) -- C:\Program Files (x86)\F7AB4293-1437519370-E211-864B-B888E3AC1ED8\knsiD7C1.tmp [286720] [PID.2228] =>PUP.Optional.CrossRider
[MD5.972F2F2341E899052C9ECA70766167A9] - (.XTab system - SupHPNot.exe.) -- C:\Program Files (x86)\MiuiTab\HPNotify.exe [674488] [PID.2248] =>PUP.Optional.MiuiTab
[MD5.A50CD1BC1CFFEC65E0D176DBEC70682A] - (...) -- c:\Windows\mpzb.exe [408576] [PID.2272]
[MD5.5F3EB37D66E31D9273DB75153EC4D5BB] - (.Nitro PDF Software - Solid Spool Service.) -- C:\Program Files\Common Files\Nitro PDF\Professional\6.0\NitroPDFDriverServicex64.exe [341312] [PID.2312]
[MD5.CF3E485E3D3D7CCAB27B139D73B63E20] - (...) -- c:\Windows\pzb.exe [417792] [PID.2352]
[MD5.8CFCA7E2FD4B57C2BEF929C1C1A4C56E] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [271760] [PID.2396]
[MD5.0A62A2153A8D8C6EB00AB969764A90D6] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [93040] [PID.2528]
[MD5.4D164FB3F81C90105B119678371D5416] - (.Useful Technology - BreakingNewsAlert Service.) -- C:\ProgramData\QRmpUrJJHD\xarIqfKtceY.exe [2731488] [PID.2872]
[MD5.B8B1A3F5EFA0DBE88EAB41A7110B9A31] - (.NewSoft Technology Corporation - NsWrtMon Microsoft Base Class Application.) -- C:\Windows\System32\spool\drivers\x64\3\WrtMon.exe [26448] [PID.3936]
[MD5.197A4DEE4D4043065EF8F2E9A749F916] - (.NewSoft Technology Corporation - NsWrtProc Microsoft Base Clase Application.) -- C:\Windows\System32\spool\drivers\x64\3\WrtProc.exe [54616] [PID.1728]
[MD5.4CA73089668275456CE78A1B714C7CCF] - (.TomTom - TomTom MyDrive Connect.) -- C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe [1917832] [PID.3148]
[MD5.44D6FD66E87CE5918B549EF84867B452] - (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248176] [PID.4044]
[MD5.75440878EB196899ADF91DB2B62B899D] - (.Nico Mak Computing - File Association Helper.) -- C:\Program Files\WinZip\FAH\FAHWindow64.exe [186544] [PID.3952]
[MD5.4114DA3BE19C5C591A750D35CC2A520E] - (.WinZip Computing, S.L. - WinZip Preloader.) -- C:\Program Files\WinZip\WzPreloader.exe [126176] [PID.4024]
[MD5.12DDA5DE47461555B28954C6711399B4] - (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2086240] [PID.4364]

---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (3) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.istartsurf.com/ =>PUP.Optional.IsStart
G2 - GCE: Preference [User Data\Default] [depodjmgamlkfeokfapjnkbmjlkdhjhm] Classic Scrollbar Buttons

---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (2) - 1s
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (20) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.istartsurf.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (R5) (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.)
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.)
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.)

---\\ Hosts file redirection (O1) (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (O2) (3) - 0s
O2 - BHO: (no name) [64Bits] - {1F91A9A1-01BA-4c81-863D-3BA0751E1419} (Orphean)
O2 - BHO: Its Results Hub [64Bits] - {2a361efd-fb26-4d2c-82ef-2535d46b8c07} (Orphean) =>PUP.Optional.ItsResultsHub
O2 - BHO: Gravity Space [64Bits] - {8788dd2d-bed5-4071-8439-c822cef57bc8} (Orphean) =>PUP.Optional.GravitySpace

---\\ Applications lancées au démarrage du sytème (O4) (30) - 4s
O4 - HKLM\..\Run: [WrtMon.exe] . (.NewSoft Technology Corporation - NsWrtMon Microsoft Base Class Application.) -- C:\WINDOWS\system32\spool\drivers\x64\3\WrtMon.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKCU\..\Run: [Scan Buttons] C:\Program Files (x86)\NewSoft\Presto! PageManager 9.03\PMSB.EXE (.not file.)
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIWE.EXE
O4 - HKCU\..\Run: [MyDriveConnect.exe] . (.TomTom - TomTom MyDrive Connect.) -- C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe
O4 - HKCU\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
O4 - HKLM\..\Wow6432Node\Run: [PMSpeed] C:\Program Files (x86)\NewSoft\Presto! PageManager 9.03\PMSpeed.EXE (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [UpdateLBPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [CLMLServer] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
O4 - HKLM\..\Wow6432Node\Run: [UpdateP2GoShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl8] . (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [PDVD8LanguageShortcut] . (.CyberLink Corp. - PowerDVD Language Application.) -- C:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe
O4 - HKLM\..\Wow6432Node\Run: [UpdatePPShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [UCam_Menu] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [LGODDFU] . (.Bitleader - .) -- C:\Program Files (x86)\lg_fwupdate\lgfw.exe
O4 - HKLM\..\Wow6432Node\Run: [UpdatePSTShortCut] . (.CyberLink Corp. - StartMen Application.) -- C:\Program Files (x86)\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe
O4 - HKLM\..\Wow6432Node\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010048] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [gmsd_fr_005010050] (Orphean) =>PUP.Optional.CrossRider
O4 - HKUS\S-1-5-21-663334040-1326401136-3596495595-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe
O4 - HKUS\S-1-5-21-663334040-1326401136-3596495595-1001\..\Run: [Scan Buttons] C:\Program Files (x86)\NewSoft\Presto! PageManager 9.03\PMSB.EXE (.not file.)
O4 - HKUS\S-1-5-21-663334040-1326401136-3596495595-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe
O4 - HKUS\S-1-5-21-663334040-1326401136-3596495595-1001\..\Run: [EPLTarget\P0000000000000000] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIWE.EXE
O4 - HKUS\S-1-5-21-663334040-1326401136-3596495595-1001\..\Run: [MyDriveConnect.exe] . (.TomTom - TomTom MyDrive Connect.) -- C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe
O4 - HKUS\S-1-5-21-663334040-1326401136-3596495595-1001\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe

---\\ Modification Domaine/Adresses DNS (O17) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20) (1) - 0s
O20 - AppInit_DLLs: . (.Auteurs - .) - C:\WINDOWS\System32\

---\\ Liste des services NT non Microsoft et non désactivés (O23) (18) - 2s
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc. - BlueStacks Updater Service.) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Wire Professional Version (comyninu) . (...) - C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8\hnsyE941.tmp =>PUP.Optional.CrossRider
O23 - Service: Kerning Down (gopibeko) . (...) - C:\Users\utilisateur\AppData\Local\F7AB4293-1438133228-E211-864B-B888E3AC1ED8\snsv2D6F.tmp =>PUP.Optional.CrossRider
O23 - Service: Service Google Update (gupdate) (gupdate) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.)
O23 - Service: Key In Bold Italic (hyverumu) . (...) - C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8\jnsuD401.tmp =>PUP.Optional.CrossRider
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe
O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files (x86)\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR
O23 - Service: Obsolete GB (jymuvexu) . (...) - C:\Program Files (x86)\F7AB4293-1437519370-E211-864B-B888E3AC1ED8\knsiD7C1.tmp =>PUP.Optional.CrossRider
O23 - Service: mpzb (mpzb) . (...) - c:\Windows\mpzb.exe
O23 - Service: NitroPDFDriverCreatorReadSpool (NitroDriverReadSpool) . (.Nitro PDF Software - Solid Spool Service.) - C:\Program Files\Common Files\Nitro PDF\Professional\6.0\NitroPDFDriverServicex64.exe
O23 - Service: pzb (pzb) . (...) - c:\Windows\pzb.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
O23 - Service: xarIqfKtceY (xarIqfKtceY) . (.Useful Technology - BreakingNewsAlert Service.) - C:\ProgramData\QRmpUrJJHD\xarIqfKtceY.exe

---\\ Tâches planifiées en automatique (O39) (21) - 20s
[MD5.9B3355B29942AF67F014EA90CE1EA960] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268976]
[MD5.00000000000000000000000000000000] [APT] [DataFlash] (...) -- c:\programdata\{caafa006-03ab-552e-caaf-fa00603a8018}\3341217278837036409b.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-663334040-1326401136-3596495595-1001Core] (...) -- C:\Users\utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0]
[MD5.2A5C656B0A364580E578B26EAE2EE889] [APT] [klcp_update] (...) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1173504]
[MD5.B5F16BC27F03F3516FA7E9D1E2361279] [APT] [SmartArrange] (...) -- c:\programdata\{6d6eaf18-54ce-a16b-6d6e-eaf1854cbc61}\nsy5a74.tmp.exe [392192]
[MD5.00000000000000000000000000000000] [APT] [WeightWitch] (...) -- c:\programdata\{325c0f66-0f31-8fd1-325c-c0f660f33d98}\9134457617057089064b.exe (.not file.) [0]
[MD5.8148E859A8C771ACFC8C13881A657C75] [APT] [{3873140B-0BD3-4360-93CD-177F4B317D10}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [813896]
[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002]
O39 - APT: DataFlash - (...) -- C:\WINDOWS\Tasks\DataFlash.job [392]
O39 - APT: SmartArrange - (...) -- C:\WINDOWS\Tasks\SmartArrange.job [374]
O39 - APT: WeightWitch - (...) -- C:\WINDOWS\Tasks\WeightWitch.job [392]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3890]
O39 - APT: DataFlash - (...) -- C:\WINDOWS\System32\Tasks\DataFlash [3290]
O39 - APT: GoogleUpdateTaskUserS-1-5-21-663334040-1326401136-3596495595-1001Core - (...) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-663334040-1326401136-3596495595-1001Core [3706]
O39 - APT: klcp_update - (...) -- C:\WINDOWS\System32\Tasks\klcp_update [3710]
O39 - APT: SmartArrange - (...) -- C:\WINDOWS\System32\Tasks\SmartArrange [3272]
O39 - APT: WeightWitch - (...) -- C:\WINDOWS\System32\Tasks\WeightWitch [3290]
O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\{29E0B51B-AE89-4D57-A318-74B643945245} [3180]
O39 - APT: {3873140B-0BD3-4360-93CD-177F4B317D10} - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\{3873140B-0BD3-4360-93CD-177F4B317D10} [3160]
O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\{AB645707-C098-4901-85EE-226FB0BC5CDB} [3178]

---\\ Logiciels installés (O42) (108) - 36s
O42 - Logiciel: EPSON WF-2520 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON WF-2520 Series
O42 - Logiciel: FlashBoot 2.2e - (.Mikhail Kupchik.) [HKLM][64Bits] -- FlashBoot_is1
O42 - Logiciel: Speccy - (.Piriform.) [HKLM][64Bits] -- Speccy
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker
O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000}
O42 - Logiciel: Java 8 Update 45 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418045F0}
O42 - Logiciel: InfraRecorder 0.53 (x64 edition) - (.Christian Kindahl.) [HKLM][64Bits] -- {2C22EA92-CB30-4932-0053-000001000000}
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {5D61F006-168C-4B8B-B7FD-F113C10AE0E4}
O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM][64Bits] -- {67AA948F-8D83-4566-B84A-7CAABCF64E3F}
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {6CF1A7E2-8001-4870-9F18-3C6CDD6FE9E3}
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {709A2D23-C25E-47B5-9268-CB6FEE648504}
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {B255D495-4734-4E9B-B4F5-96702FD4A7B9}
O42 - Logiciel: Nitro PDF Professional - (.Nitro PDF Software.) [HKLM][64Bits] -- {C3B5AE68-1634-4694-9D2C-4079B6928898}
O42 - Logiciel: WinZip 19.5 - (.WinZip Computing, S.L. .) [HKLM][64Bits] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240E9}
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI
O42 - Logiciel: All Office Converter Platinum 6.4 - (.OfficeConvert Software, Inc..) [HKLM][64Bits] -- All Office Converter Platinum_is1
O42 - Logiciel: Anti-Pub 2003.03 - (.SCATLAWS.) [HKLM][64Bits] -- Anti-Pub_is1
O42 - Logiciel: Corel Applications - (...) [HKLM][64Bits] -- Corel Applications
O42 - Logiciel: Free PDF to Word Converter 2.0 - (.Free-PDF-to-Word.com.) [HKLM][64Bits] -- Free PDF to Word Converter_is1
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome
O42 - Logiciel: GPL Ghostscript 8.71 - (...) [HKLM][64Bits] -- GPL Ghostscript 8.71
O42 - Logiciel: LG CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: LG Power Tools - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: LG CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}
O42 - Logiciel: LG CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: LG CyberLink PowerProducer - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}
O42 - Logiciel: LG CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: istartsurf uninstall - (.istartsurf.) [HKLM][64Bits] -- istartsurf uninstall =>PUP.Optional.IsStart
O42 - Logiciel: K-Lite Codec Pack 10.9.5 Full - (...) [HKLM][64Bits] -- KLiteCodecPack_is1
O42 - Logiciel: L&H TTS3000 Français - (...) [HKLM][64Bits] -- LHTTSFRF
O42 - Logiciel: L&H TTS3000 Deutsch - (...) [HKLM][64Bits] -- LHTTSGED
O42 - Logiciel: Micro Application - 3000 Courriers Types - (...) [HKLM][64Bits] -- Micro Application - 3000 Courriers Types
O42 - Logiciel: Mozilla Thunderbird 31.7.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 31.7.0 (x86 fr)
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService
O42 - Logiciel: Microsoft Text-to-Speech Engine 4.0 (English) - (...) [HKLM][64Bits] -- MSTTS
O42 - Logiciel: MyDriveConnect 4.0.3.2180 - (.TomTom.) [HKLM][64Bits] -- MyDriveConnect
O42 - Logiciel: mystartsearch uninstall - (.mystartsearch.) [HKLM][64Bits] -- mystartsearch uninstall =>PUP.Optional.StartSearch
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL
O42 - Logiciel: pdf2cad v8 - (.Visual Integrity.) [HKLM][64Bits] -- pdf2cad v8
O42 - Logiciel: Killing Floor - (.Tripwire Interactive.) [HKLM][64Bits] -- Steam App 1250
O42 - Logiciel: America's Army: Proving Grounds Dedicated Server - (...) [HKLM][64Bits] -- Steam App 203300
O42 - Logiciel: Resident Evil Revelations / Biohazard Revelations UE - (.Capcom.) [HKLM][64Bits] -- Steam App 222480
O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM][64Bits] -- Steam App 440
O42 - Logiciel: The Darkness II - (.Digital Extremes.) [HKLM][64Bits] -- Steam App 67370
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player
O42 - Logiciel: Xilisoft Apple TV Video Converter - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft Apple TV Video Converter
O42 - Logiciel: Xilisoft DVD Audio Ripper 5 - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft DVD Audio Ripper 5
O42 - Logiciel: Xilisoft DVD to iPhone Converter 5 - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft DVD to iPhone Converter 5
O42 - Logiciel: Xilisoft Créateur Sonnerie iPhone - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft iPhone Ringtone Maker
O42 - Logiciel: Xilisoft iPhone Video Converter - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft iPhone Video Converter
O42 - Logiciel: Xilisoft Mobile Video Converter - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft Mobile Video Converter
O42 - Logiciel: Xilisoft PowerPoint en Vidéo Convertisseur Pro - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft PowerPoint to Video Converter Pro
O42 - Logiciel: Xilisoft Windows Mobile Ringtone Maker - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft Windows Mobile Ringtone Maker
O42 - Logiciel: Xilisoft YouTube Vidéo Convertisseur - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft YouTube Video Converter
O42 - Logiciel: yWriter5 - (.Spacejock Software.) [HKLM][64Bits] -- yWriter5_is1
O42 - Logiciel: LG CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D}
O42 - Logiciel: 7-Data Recovery Suite version 3.2.0 - (.SharpNight Co,Ltd.) [HKLM][64Bits] -- {02386A56-080B-485c-941D-AF96B29140DD}_is1
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3}
O42 - Logiciel: Presto! PageManager 9.03 SE - (.Newsoft Technology Corporation.) [HKLM][64Bits] -- {04AF7536-446D-4F5A-8920-B4E885E4581B}
O42 - Logiciel: Ciel Compta 13.0 - (.Ciel.) [HKLM][64Bits] -- {053E4C51-9876-4F8E-874C-D77F559DAD5A}
O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {0E09BE17-EDEA-42CA-8974-42A587F51510}
O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {121727D5-FDF3-4723-BA57-EB383440ED72}
O42 - Logiciel: Ciel Immobilisations 13.0 - (.Ciel.) [HKLM][64Bits] -- {14E10810-FC26-4707-AEBA-0CA5F6E6EE87}
O42 - Logiciel: LG Power Tools - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
O42 - Logiciel: Wondershare SafeEraser ( Version 3.4.1 ) - (.Wondershare.) [HKLM][64Bits] -- {1FD4D6F6-5A95-44EF-855F-02746470397C}_is1
O42 - Logiciel: Ciel Paye 13.00 - (.Ciel.) [HKLM][64Bits] -- {1FDFE55F-D052-4CCF-9B03-3AC687B44DFA}
O42 - Logiciel: Skype™ 7.1 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0}
O42 - Logiciel: LG CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {2BF2E31F-B8BB-40A7-B650-98D28E0F7D47}
O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM][64Bits] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768}
O42 - Logiciel: LG CyberLink Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658}
O42 - Logiciel: Ciel Gestion Commerciale 13.0 - (.Ciel.) [HKLM][64Bits] -- {414C215E-F8E2-4235-BE08-B3932F50246D}
O42 - Logiciel: Visual Studio C++ 10.0 Runtime - (.TomTom International B.V..) [HKLM][64Bits] -- {4412F224-3849-4461-A3E9-DEEF8D252790}
O42 - Logiciel: Intel(R) Driver Update Utility 2.0 - (.Intel.) [HKLM][64Bits] -- {59DB38EB-F864-4E10-841D-38CFBCF864B0}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {627FFC10-CE0A-497F-BA2B-208CAC638010}
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701}
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FE25256-B7C1-480D-B736-10A67A833AEA}
O42 - Logiciel: Intel® Driver Update Utility - (.Intel.) [HKLM][64Bits] -- {8409c4f7-2340-4933-a304-5d37db4fb48b}
O42 - Logiciel: Gmail Favicon Customizer - (...) [HKLM][64Bits] -- {88E96402-3BBD-02D9-0A36-6FB806AEE04E}
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29}
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{9BBF212C-5BD8-4C8A-B65F-91342D904ED8}
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE}
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{9BBF212C-5BD8-4C8A-B65F-91342D904ED8}
O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{AE1BB975-11D1-49A0-82E8-1D26DD62AFE7}
O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{9BBF212C-5BD8-4C8A-B65F-91342D904ED8}
O42 - Logiciel: Microsoft Works 6-9 Converter - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-0137-040C-0000-0000000FF1CE}
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
O42 - Logiciel: LG CyberLink PowerBackup - (.CyberLink Corp..) [HKLM][64Bits] -- {ADD5DB49-72CF-11D8-9D75-000129760D75}
O42 - Logiciel: LG CyberLink PowerProducer - (.CyberLink Corp..) [HKLM][64Bits] -- {B7A0CE06-068E-11D6-97FD-0050BACBF861}
O42 - Logiciel: LG CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243}
O42 - Logiciel: BlueStacks Notification Center - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {CF297F45-BB2C-4454-AEDA-EFAB01AFDCE3}
O42 - Logiciel: SHARP PixLab Media Browser Ver. 4.7 LE - (...) [HKLM][64Bits] -- {E27C4F55-3F32-4C2A-A83F-4B056E4DB215}
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}

---\\ HKCU & HKLM Software Keys (147) - 36s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AIM Toolbar
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\BlueStacks
HKLM\SOFTWARE\Wow6432Node\capcom
HKLM\SOFTWARE\Wow6432Node\COREL
HKLM\SOFTWARE\Wow6432Node\coupoon =>PUP.Optional.Multiplug
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\DATA BECKER
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\FastSearch =>PUP.Optional.FastSearch
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\GPL Ghostscript
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Icaros
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KLCodecPack
HKLM\SOFTWARE\Wow6432Node\Kodak
HKLM\SOFTWARE\Wow6432Node\L&H
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\LAV
HKLM\SOFTWARE\Wow6432Node\LG Electronics
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\MaxPower
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\mcafeeupdater
HKLM\SOFTWARE\Wow6432Node\Micro Application
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\NewSoft
HKLM\SOFTWARE\Wow6432Node\Nico Mak Computing
HKLM\SOFTWARE\Wow6432Node\Nitro PDF
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenAL
HKLM\SOFTWARE\Wow6432Node\OpenOffice
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Piriform
HKLM\SOFTWARE\Wow6432Node\Sage
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Gen
HKLM\SOFTWARE\Wow6432Node\SHARP
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SpeedBit
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Wow6432Node\TomTom
HKLM\SOFTWARE\Wow6432Node\trex
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visual Integrity
HKLM\SOFTWARE\Wow6432Node\Voice
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKLM\SOFTWARE\Wow6432Node\Wondershare
HKLM\SOFTWARE\Wow6432Node\Xilisoft
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AOL
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\BHvsFxu8SPbzi3l9k8
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\Browser =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Corel
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\fbinstTool
HKCU\SOFTWARE\FlashBoot
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GPL Ghostscript
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Icaros
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\IMDownloader
HKCU\SOFTWARE\InfraRecorder
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\JeSQ0LLfKpp0xiP
HKCU\SOFTWARE\Kromtech
HKCU\SOFTWARE\Kungsoft
HKCU\SOFTWARE\Lake
HKCU\SOFTWARE\Local AppWizard-Generated Applications
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\malavida
HKCU\SOFTWARE\MarineCat
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\MediaInfo
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Newsoft
HKCU\SOFTWARE\ngjij3txdz7sxmfcbvCpRuzrCt
HKCU\SOFTWARE\Nico Mak Computing
HKCU\SOFTWARE\Nitro PDF
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OpenOffice
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Sage
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\SHARP
HKCU\SOFTWARE\SharpNight
HKCU\SOFTWARE\Skyhook Wireless
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SolidDocuments
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\TomTom
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\tutoriales
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visual Integrity
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\Winamp
HKCU\SOFTWARE\WinZip Computing
HKCU\SOFTWARE\Wondershare
HKCU\SOFTWARE\WSSE
HKCU\SOFTWARE\Xilisoft
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\Zero Point Software
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (298) - 27s
O43 - CFD: 2015/07/22 01:14:28 - [] D -- C:\Program Files (x86)\7-Data Recovery Suite
O43 - CFD: 2015/06/24 12:42:50 - [] D -- C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint
O43 - CFD: 2015/07/22 01:17:38 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 2015/03/12 00:03:09 - [] D -- C:\Program Files (x86)\adslTV
O43 - CFD: 2015/03/17 18:06:13 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 2015/03/23 12:42:13 - [] D -- C:\Program Files (x86)\All Office Converter Platinum
O43 - CFD: 2015/04/19 09:57:43 - [] D -- C:\Program Files (x86)\Antipub
O43 - CFD: 2015/06/24 12:42:50 - [] D -- C:\Program Files (x86)\appfast
O43 - CFD: 2015/05/21 22:37:29 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 2015/08/02 12:16:38 - [] D -- C:\Program Files (x86)\BeestSuaveForYou =>PUP.Optional.Multiplug
O43 - CFD: 2015/08/02 12:18:35 - [] D -- C:\Program Files (x86)\BlueStacks
O43 - CFD: 2015/05/21 22:37:09 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 2015/06/17 11:10:56 - [] D -- C:\Program Files (x86)\Boxoft Free PDF To JPG Converter (freeware)
O43 - CFD: 2015/03/28 22:51:47 - [] D -- C:\Program Files (x86)\Ciel
O43 - CFD: 2015/08/02 12:17:49 - [] D -- C:\Program Files (x86)\Classic Scrollbar Buttons
O43 - CFD: 2015/07/30 09:12:52 - [] D -- C:\Program Files (x86)\ColorZilla
O43 - CFD: 2015/08/04 13:58:07 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 2015/03/24 16:07:27 - [] D -- C:\Program Files (x86)\Corel
O43 - CFD: 2015/03/28 22:28:41 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 2015/06/24 12:05:48 - [] D -- C:\Program Files (x86)\Emsisoft Anti-Malware
O43 - CFD: 2015/08/02 02:59:25 - [] D -- C:\Program Files (x86)\EngineRunner
O43 - CFD: 2015/06/12 18:27:12 - [] D -- C:\Program Files (x86)\epson
O43 - CFD: 2015/06/12 18:08:36 - [] D -- C:\Program Files (x86)\Epson Software
O43 - CFD: 2015/08/04 11:34:01 - [] D -- C:\Program Files (x86)\F7AB4293-1437519370-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/22 01:00:02 - [] D -- C:\Program Files (x86)\F7AB4293-1437519601-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/22 18:17:01 - [] D -- C:\Program Files (x86)\F7AB4293-1437581821-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/28 21:05:56 - [] D -- C:\Program Files (x86)\F7AB4293-1438110355-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
O43 - CFD: 2015/07/29 01:40:28 - [] D -- C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
O43 - CFD: 2015/03/06 01:34:30 - [] D -- C:\Program Files (x86)\Free PDF to Word Converter
O43 - CFD: 2015/07/28 00:39:12 - [] D -- C:\Program Files (x86)\Gmail Favicon Customizer
O43 - CFD: 2015/07/29 10:58:35 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 2015/03/23 12:41:01 - [] D -- C:\Program Files (x86)\gs
O43 - CFD: 2015/03/28 22:35:55 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 2015/02/06 11:13:42 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 2015/02/21 21:41:41 - [] D -- C:\Program Files (x86)\Intel Driver Update Utility
O43 - CFD: 2015/07/22 01:17:29 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 2015/07/19 15:23:58 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 2015/05/21 21:53:11 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 2015/02/06 13:32:57 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack
O43 - CFD: 2015/03/28 22:29:20 - [] D -- C:\Program Files (x86)\lg_fwupdate
O43 - CFD: 2015/06/24 12:42:39 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 2015/03/24 16:19:11 - [] D -- C:\Program Files (x86)\Micro Application
O43 - CFD: 2015/03/24 12:18:49 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 2015/06/24 12:28:20 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 2015/05/15 18:31:03 - [] D -- C:\Program Files (x86)\Microsoft Silverlight
O43 - CFD: 2015/03/24 12:28:36 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 2015/03/28 12:48:42 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 2015/08/04 13:20:29 - [] D -- C:\Program Files (x86)\MiuiTab =>PUP.Optional.MiuiTab
O43 - CFD: 2015/04/17 18:04:31 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 2015/05/21 21:43:47 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service
O43 - CFD: 2015/05/21 10:54:44 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 2015/03/28 21:55:58 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 2015/04/10 21:20:15 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 2015/07/07 23:07:40 - [] D -- C:\Program Files (x86)\MyDrive Connect
O43 - CFD: 2015/07/23 18:43:46 - [] D -- C:\Program Files (x86)\NewGen
O43 - CFD: 2015/03/23 12:36:15 - [] D -- C:\Program Files (x86)\Nitro PDF
O43 - CFD: 2015/03/17 18:06:13 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 2015/03/17 18:06:09 - [] D -- C:\Program Files (x86)\OpenAL
O43 - CFD: 2015/02/06 13:42:52 - [] D -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 2015/05/10 22:13:40 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 2015/08/04 13:35:26 - [] D -- C:\Program Files (x86)\Proxy SwitchySharp
O43 - CFD: 2015/07/07 15:23:10 - [] D -- C:\Program Files (x86)\QuickTime
O43 - CFD: 2015/02/09 17:26:53 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 2015/03/28 22:35:55 - [] D -- C:\Program Files (x86)\SHARP
O43 - CFD: 2015/05/25 15:44:29 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 2015/08/04 11:44:28 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 2015/07/07 23:14:26 - [] D -- C:\Program Files (x86)\TomTom HOME 2
O43 - CFD: 2015/07/07 23:13:24 - [] D -- C:\Program Files (x86)\TomTom International B.V
O43 - CFD: 2015/06/24 12:43:05 - [] D -- C:\Program Files (x86)\Video Resumer
O43 - CFD: 2015/02/06 13:32:22 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 2015/03/23 12:39:40 - [] D -- C:\Program Files (x86)\Visual Integrity
O43 - CFD: 2015/03/13 18:28:46 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 2015/02/06 13:12:16 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 2014/11/21 07:55:33 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 2015/02/06 13:12:16 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 2013/08/22 17:36:30 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 2015/06/06 21:11:11 - [] D -- C:\Program Files (x86)\Wondershare
O43 - CFD: 2015/03/23 12:33:37 - [] D -- C:\Program Files (x86)\Xilisoft
O43 - CFD: 2015/02/09 17:19:46 - [] D -- C:\Program Files (x86)\yWriter5
O43 - CFD: 2015/03/24 14:12:57 - [] D -- C:\Program Files (x86)\ÇáÞÇãæÓ ÇáÌÇãÚ ãÊÚÏÏ ÇááÛÇÊ
O43 - CFD: 2015/04/27 11:50:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Data Recovery Suite
O43 - CFD: 2015/02/06 13:32:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2015/03/13 18:28:48 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/02/06 14:12:17 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/03/23 12:42:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\All Office Converter Platinum
O43 - CFD: 2015/04/19 09:57:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antipub
O43 - CFD: 2015/05/14 12:01:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks
O43 - CFD: 2015/06/17 11:10:56 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Boxoft Free PDF To JPG Converter (freeware)
O43 - CFD: 2015/03/28 22:50:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ciel
O43 - CFD: 2015/03/24 16:10:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW 9
O43 - CFD: 2015/03/04 12:21:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 2015/03/26 21:09:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlashBoot
O43 - CFD: 2015/03/06 01:34:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Converter
O43 - CFD: 2015/03/23 12:41:01 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghostscript
O43 - CFD: 2015/08/04 14:12:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 2015/05/22 00:47:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
O43 - CFD: 2015/02/06 13:32:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InfraRecorder
O43 - CFD: 2015/02/21 21:41:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
O43 - CFD: 2015/07/19 15:25:27 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 2015/02/06 13:30:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 2015/02/06 13:33:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
O43 - CFD: 2015/03/28 22:19:47 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG Power Tools
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/03/24 16:19:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application
O43 - CFD: 2015/07/16 20:26:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 2015/05/13 19:57:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 2015/02/06 13:44:07 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1
O43 - CFD: 2015/03/28 22:27:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils LG
O43 - CFD: 2015/03/28 22:36:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PixLab Media Browser Ver4
O43 - CFD: 2015/02/08 12:16:00 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Presto! PageManager 9.03 Standard
O43 - CFD: 2015/07/07 15:23:03 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 2015/06/24 12:32:34 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReviverSoft
O43 - CFD: 2015/02/08 01:32:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 2015/04/13 17:29:31 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
O43 - CFD: 2015/07/30 10:35:14 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 2015/02/10 11:51:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2014/11/21 00:27:29 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 2015/07/07 23:14:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
O43 - CFD: 2015/02/06 13:32:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 2015/03/23 12:39:42 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Integrity
O43 - CFD: 2015/05/26 23:17:52 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
O43 - CFD: 2015/06/06 21:11:51 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
O43 - CFD: 2015/03/23 12:31:43 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft
O43 - CFD: 2015/03/24 14:12:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ÇáÒåÑí ááÈÑãÌíÇÊ
O43 - CFD: 2015/06/06 21:54:58 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 2015/08/02 12:17:16 - [] D -- C:\ProgramData\5399656150056164834
O43 - CFD: 2015/08/02 03:31:15 - [] D -- C:\ProgramData\8WinManPro8
O43 - CFD: 2015/06/12 18:14:37 - [] D -- C:\ProgramData\ABBYY
O43 - CFD: 2015/07/22 01:17:34 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 2015/05/21 22:06:41 - [] D -- C:\ProgramData\Apple
O43 - CFD: 2015/06/30 14:33:18 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 2015/07/29 02:16:37 - [] D -- C:\ProgramData\aWinManProa
O43 - CFD: 2015/05/14 12:01:33 - [] D -- C:\ProgramData\BlueStacks
O43 - CFD: 2015/08/02 12:24:26 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 2015/02/05 15:10:17 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 2015/03/28 22:45:38 - [] D -- C:\ProgramData\Ciel
O43 - CFD: 2015/07/23 18:38:20 - [] D -- C:\ProgramData\clbjahilljkhcnecaobjfhjieohppkbf
O43 - CFD: 2015/07/29 01:49:26 - [] D -- C:\ProgramData\cWinManProc
O43 - CFD: 2015/03/28 22:20:50 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 2015/07/07 15:30:52 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 2015/05/23 21:43:03 - [] D -- C:\ProgramData\Emsisoft
O43 - CFD: 2015/03/11 18:48:46 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 2015/08/02 03:34:49 - [] D -- C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
O43 - CFD: 2015/08/02 02:55:32 - [] D -- C:\ProgramData\jcdaoefjdgehifocccchmolmmdapgpbp
O43 - CFD: 2015/06/23 21:01:26 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 2015/06/01 15:25:06 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 2015/02/05 15:10:17 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 2015/06/24 12:32:29 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 2015/07/19 00:55:00 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 2015/02/05 15:10:17 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 2015/02/08 00:59:32 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 2015/03/23 12:36:18 - [] D -- C:\ProgramData\Nitro PDF
O43 - CFD: 2015/05/10 22:07:17 - [] D -- C:\ProgramData\Norton
O43 - CFD: 2015/04/02 14:00:07 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 2015/05/21 21:53:31 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 2015/07/24 13:27:34 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 2015/02/06 13:12:17 - [] D -- C:\ProgramData\PRICache
O43 - CFD: 2015/07/22 19:37:19 - [] HD -- C:\ProgramData\pzb
O43 - CFD: 2015/06/24 12:43:06 - [] D -- C:\ProgramData\QRmpUrJJHD
O43 - CFD: 2015/07/29 10:17:42 - [] D -- C:\ProgramData\Radio
O43 - CFD: 2015/03/24 12:28:15 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 2015/02/08 01:32:18 - [] D -- C:\ProgramData\Skype
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 2015/02/06 13:30:57 - [] D -- C:\ProgramData\Sun
O43 - CFD: 2015/03/28 22:28:05 - [] D -- C:\ProgramData\Temp
O43 - CFD: 2013/08/22 16:45:52 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 2015/06/12 18:12:21 - [] D -- C:\ProgramData\UDL
O43 - CFD: 2015/07/29 10:17:56 - [] D -- C:\ProgramData\Umgikrie
O43 - CFD: 2015/05/26 23:16:13 - [] D -- C:\ProgramData\UniqueId
O43 - CFD: 2015/05/21 21:33:53 - [] D -- C:\ProgramData\WindSolutions
O43 - CFD: 2015/05/26 23:18:14 - [] D -- C:\ProgramData\WinZip
O43 - CFD: 2015/06/06 21:12:31 - [] D -- C:\ProgramData\Wondershare
O43 - CFD: 2015/08/02 03:35:26 - [] D -- C:\ProgramData\ZWinManProZ
O43 - CFD: 2015/08/02 03:13:09 - [] D -- C:\ProgramData\{30b97c17-0de5-63d7-30b9-97c170def05c}
O43 - CFD: 2015/07/28 21:14:07 - [] D -- C:\ProgramData\{325c0f66-0f31-8fd1-325c-c0f660f33d98}
O43 - CFD: 2015/08/02 03:13:05 - [] D -- C:\ProgramData\{597fa6ce-5905-b3db-597f-fa6ce5909b39}
O43 - CFD: 2015/08/02 02:54:49 - [] D -- C:\ProgramData\{6d6eaf18-54ce-a16b-6d6e-eaf1854cbc61}
O43 - CFD: 2015/06/24 12:43:06 - [] D -- C:\ProgramData\{7AC59206-2A47-4380-9BC1-33024B43E08C}
O43 - CFD: 2015/06/09 15:36:06 - [] D -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
O43 - CFD: 2015/07/28 21:14:07 - [] D -- C:\ProgramData\{caafa006-03ab-552e-caaf-fa00603a8018}
O43 - CFD: 2015/06/12 18:14:37 - [] D -- C:\Program Files (x86)\Common Files\ABBYY
O43 - CFD: 2015/07/22 01:17:38 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 2015/05/22 00:47:06 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 2015/03/28 22:50:10 - [] D -- C:\Program Files (x86)\Common Files\Ciel
O43 - CFD: 2015/03/28 22:20:56 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 2015/03/28 21:35:19 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 2015/03/28 22:43:25 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 2015/02/06 13:04:23 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 2015/05/21 21:52:45 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 2015/04/10 21:20:59 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 2015/03/28 22:45:34 - [] D -- C:\Program Files (x86)\Common Files\MSSoap
O43 - CFD: 2015/02/08 12:13:34 - [] D -- C:\Program Files (x86)\Common Files\NewSoft
O43 - CFD: 2015/03/23 12:36:15 - [] D -- C:\Program Files (x86)\Common Files\Nitro PDF
O43 - CFD: 2015/03/28 22:45:22 - [] D -- C:\Program Files (x86)\Common Files\Sage
O43 - CFD: 2013/08/22 17:36:33 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 2015/02/08 01:32:13 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 2015/07/27 03:21:01 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 2015/05/10 22:05:59 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared
O43 - CFD: 2015/03/28 12:43:31 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 2015/06/06 21:12:06 - [] D -- C:\Program Files (x86)\Common Files\Wondershare
O43 - CFD: 2015/07/24 12:13:06 - [] D -- C:\Users\utilisateur\AppData\Roaming\.oit
O43 - CFD: 2015/02/10 01:00:51 - [] D -- C:\Users\utilisateur\AppData\Roaming\Adobe
O43 - CFD: 2015/05/24 03:09:07 - [] D -- C:\Users\utilisateur\AppData\Roaming\Apple Computer
O43 - CFD: 2015/04/30 12:05:29 - [] D -- C:\Users\utilisateur\AppData\Roaming\Corel
O43 - CFD: 2015/03/28 22:31:21 - [] D -- C:\Users\utilisateur\AppData\Roaming\CyberLink
O43 - CFD: 2015/04/20 20:08:21 - [] D -- C:\Users\utilisateur\AppData\Roaming\DarknessII
O43 - CFD: 2015/03/23 12:35:37 - [] D -- C:\Users\utilisateur\AppData\Roaming\Downloaded Installations
O43 - CFD: 2015/03/06 01:34:32 - [] D -- C:\Users\utilisateur\AppData\Roaming\Free-PDF-to-Word.com
O43 - CFD: 2015/06/06 21:12:24 - [] D -- C:\Users\utilisateur\AppData\Roaming\HYXDevPsnList
O43 - CFD: 2015/02/06 13:18:47 - [] D -- C:\Users\utilisateur\AppData\Roaming\Identities
O43 - CFD: 2015/02/07 17:58:33 - [] D -- C:\Users\utilisateur\AppData\Roaming\InfraRecorder
O43 - CFD: 2015/02/08 12:12:21 - [] D -- C:\Users\utilisateur\AppData\Roaming\InstallShield
O43 - CFD: 2015/08/02 03:36:56 - [] D -- C:\Users\utilisateur\AppData\Roaming\istartsurf =>PUP.Optional.IsStart
O43 - CFD: 2015/02/06 11:09:25 - [] D -- C:\Users\utilisateur\AppData\Roaming\Macromedia
O43 - CFD: 2015/07/30 10:20:30 - [] SD -- C:\Users\utilisateur\AppData\Roaming\Microsoft
O43 - CFD: 2015/02/08 00:59:44 - [] D -- C:\Users\utilisateur\AppData\Roaming\Mozilla
O43 - CFD: 2015/02/08 21:58:07 - [] D -- C:\Users\utilisateur\AppData\Roaming\MPC-HC
O43 - CFD: 2015/08/04 13:19:09 - [] D -- C:\Users\utilisateur\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch
O43 - CFD: 2015/07/29 01:18:34 - [] D -- C:\Users\utilisateur\AppData\Roaming\NewSoft
O43 - CFD: 2015/08/01 11:11:42 - [] D -- C:\Users\utilisateur\AppData\Roaming\Nitro PDF
O43 - CFD: 2015/02/07 18:00:26 - [] D -- C:\Users\utilisateur\AppData\Roaming\OpenOffice
O43 - CFD: 2015/05/10 22:13:37 - [0] D -- C:\Users\utilisateur\AppData\Roaming\Opera Software
O43 - CFD: 2015/05/10 20:48:00 - [0] D -- C:\Users\utilisateur\AppData\Roaming\QuickScan
O43 - CFD: 2015/03/28 22:36:20 - [] D -- C:\Users\utilisateur\AppData\Roaming\SHARP
O43 - CFD: 2015/02/08 20:48:01 - [] D -- C:\Users\utilisateur\AppData\Roaming\Skype
O43 - CFD: 2015/02/09 17:32:40 - [] D -- C:\Users\utilisateur\AppData\Roaming\Spacejock Software
O43 - CFD: 2015/02/08 00:59:43 - [] D -- C:\Users\utilisateur\AppData\Roaming\Thunderbird
O43 - CFD: 2015/07/07 23:14:44 - [] D -- C:\Users\utilisateur\AppData\Roaming\TomTom
O43 - CFD: 2015/07/19 13:57:04 - [] D -- C:\Users\utilisateur\AppData\Roaming\vlc
O43 - CFD: 2015/05/21 21:37:43 - [] D -- C:\Users\utilisateur\AppData\Roaming\WindSolutions
O43 - CFD: 2015/06/06 21:11:46 - [] D -- C:\Users\utilisateur\AppData\Roaming\Wondershare
O43 - CFD: 2015/03/23 12:31:47 - [] D -- C:\Users\utilisateur\AppData\Roaming\Xilisoft
O43 - CFD: 2015/03/23 12:29:35 - [] D -- C:\Users\utilisateur\AppData\Roaming\Xilisoft Corporation
O43 - CFD: 2015/08/04 14:36:59 - [] D -- C:\Users\utilisateur\AppData\Roaming\ZHP
O43 - CFD: 2015/06/12 18:16:14 - [] D -- C:\Users\utilisateur\AppData\Local\ABBYY
O43 - CFD: 2015/06/01 15:25:14 - [] D -- C:\Users\utilisateur\AppData\Local\Adobe
O43 - CFD: 2015/03/29 22:04:12 - [] D -- C:\Users\utilisateur\AppData\Local\adslTV
O43 - CFD: 2015/02/09 20:09:27 - [] D -- C:\Users\utilisateur\AppData\Local\Apple
O43 - CFD: 2015/05/22 00:55:57 - [] D -- C:\Users\utilisateur\AppData\Local\Apple Computer
O43 - CFD: 2015/02/06 13:11:02 - [0] SHD -- C:\Users\utilisateur\AppData\Local\Application Data
O43 - CFD: 2015/06/27 10:57:51 - [] D -- C:\Users\utilisateur\AppData\Local\assembly
O43 - CFD: 2015/02/09 19:43:30 - [] D -- C:\Users\utilisateur\AppData\Local\Bluestacks
O43 - CFD: 2015/08/04 14:37:52 - [] D -- C:\Users\utilisateur\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
O43 - CFD: 2015/02/10 21:31:31 - [] D -- C:\Users\utilisateur\AppData\Local\CAPCOM
O43 - CFD: 2015/07/22 19:40:51 - [] D -- C:\Users\utilisateur\AppData\Local\CEF
O43 - CFD: 2015/08/04 13:55:25 - [] D -- C:\Users\utilisateur\AppData\Local\CrashDumps
O43 - CFD: 2015/07/29 11:21:19 - [0] D -- C:\Users\utilisateur\AppData\Local\Diagnostics
O43 - CFD: 2015/07/07 23:12:51 - [] D -- C:\Users\utilisateur\AppData\Local\Downloaded Installations
O43 - CFD: 2015/04/20 20:14:32 - [0] D -- C:\Users\utilisateur\AppData\Local\ElevatedDiagnostics
O43 - CFD: 2015/06/28 11:14:20 - [0] SHD -- C:\Users\utilisateur\AppData\Local\EmieBrowserModeList
O43 - CFD: 2015/06/28 11:14:19 - [0] SHD -- C:\Users\utilisateur\AppData\Local\EmieSiteList
O43 - CFD: 2015/06/28 11:14:19 - [0] SHD -- C:\Users\utilisateur\AppData\Local\EmieUserList
O43 - CFD: 2015/08/04 14:18:24 - [] D -- C:\Users\utilisateur\AppData\Local\F7AB4293-1438133228-E211-864B-B888E3AC1ED8
O43 - CFD: 2015/07/24 12:54:07 - [] D -- C:\Users\utilisateur\AppData\Local\Google
O43 - CFD: 2015/08/01 18:48:09 - [] D -- C:\Users\utilisateur\AppData\Local\GWX
O43 - CFD: 2015/02/06 13:11:02 - [0] SHD -- C:\Users\utilisateur\AppData\Local\Historique
O43 - CFD: 2015/02/21 21:42:50 - [] D -- C:\Users\utilisateur\AppData\Local\Intel
O43 - CFD: 2015/07/24 13:05:44 - [] D -- C:\Users\utilisateur\AppData\Local\Microsoft
O43 - CFD: 2015/03/23 12:06:25 - [0] D -- C:\Users\utilisateur\AppData\Local\Microsoft Help
O43 - CFD: 2015/05/10 20:57:58 - [] D -- C:\Users\utilisateur\AppData\Local\misa
O43 - CFD: 2015/07/23 17:43:33 - [] D -- C:\Users\utilisateur\AppData\Local\openvr
O43 - CFD: 2015/05/10 22:13:37 - [0] D -- C:\Users\utilisateur\AppData\Local\Opera Software
O43 - CFD: 2015/08/03 17:31:42 - [] D -- C:\Users\utilisateur\AppData\Local\Packages
O43 - CFD: 2015/03/30 12:37:29 - [] D -- C:\Users\utilisateur\AppData\Local\Power2Go
O43 - CFD: 2015/03/16 17:51:09 - [] D -- C:\Users\utilisateur\AppData\Local\Programs
O43 - CFD: 2015/02/08 01:32:25 - [] D -- C:\Users\utilisateur\AppData\Local\Skype
O43 - CFD: 2015/08/04 13:58:22 - [] D -- C:\Users\utilisateur\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
O43 - CFD: 2015/02/19 11:18:31 - [] D -- C:\Users\utilisateur\AppData\Local\Steam
O43 - CFD: 2015/08/04 14:38:14 - [] D -- C:\Users\utilisateur\AppData\Local\Temp
O43 - CFD: 2015/02/06 13:11:02 - [0] SHD -- C:\Users\utilisateur\AppData\Local\Temporary Internet Files
O43 - CFD: 2015/02/08 00:59:44 - [] D -- C:\Users\utilisateur\AppData\Local\Thunderbird
O43 - CFD: 2015/07/07 23:14:44 - [] D -- C:\Users\utilisateur\AppData\Local\TomTom
O43 - CFD: 2015/03/30 19:25:47 - [] D -- C:\Users\utilisateur\AppData\Local\VirtualStore
O43 - CFD: 2015/05/26 23:20:03 - [] D -- C:\Users\utilisateur\AppData\Local\WinZip
O43 - CFD: 2015/06/06 21:12:11 - [] D -- C:\Users\utilisateur\AppData\Local\Wondershare
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 2014/11/21 07:56:04 - [] RD -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 2015/08/04 14:13:22 - [] RD -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 2015/03/12 00:02:22 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV
O43 - CFD: 2015/03/28 22:51:51 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ciel
O43 - CFD: 2015/08/04 14:14:03 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LG Power Tools
O43 - CFD: 2013/08/22 17:36:32 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 2015/02/09 17:19:46 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spacejock Software
O43 - CFD: 2015/08/04 14:13:22 - [] RD -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 2015/07/23 14:55:48 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 2015/02/06 13:11:36 - [] RD -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 2015/05/12 12:52:36 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
O43 - CFD: 2015/03/23 12:33:49 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xilisoft
O43 - CFD: 2015/03/24 14:12:10 - [0] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ÇáÒåÑí ááÈÑãÌíÇÊ

---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (18) - 41s
O45 - LFCP:[MD5.988D40D00179A01131D6878E8218AD8A] 2015/08/04 13:59:51 A -- C:\WINDOWS\Prefetch\AIRWEBBAR.EXE-377C3CBB.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.2D7E00C4C0411B517C948F13A149B476] 2015/08/04 13:59:51 A -- C:\WINDOWS\Prefetch\AIRWEBBAR.TMP-65C6751A.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.9B47777380F0B197A79F35DA20EB0C51] 2015/08/04 13:59:49 A -- C:\WINDOWS\Prefetch\AIRWEBBAR_SOFT_PARTNER.EXE-58F5D142.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.A1BCF14F90EF3E9B79D0A92AE2DC6A76] 2015/08/04 13:59:49 A -- C:\WINDOWS\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-A211F3D9.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.87ECE0C988F4803A36DC4CA2EBF00B7F] 2015/08/04 14:09:33 A -- C:\WINDOWS\Prefetch\ANYPROTECT.EXE-53752276.pf =>PUP.Optional.AnyProtect
O45 - LFCP:[MD5.D8CF6082339668296F02170C38F98632] 2015/08/02 03:36:39 A -- C:\WINDOWS\Prefetch\GMSD_FR_005010048.EXE-E075BE31.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.D3B912406F1F9B54107E1DED38552ED9] 2015/08/04 13:21:27 A -- C:\WINDOWS\Prefetch\GMSD_FR_005010050.EXE-6AA4C58B.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.3D191FD89DBD36C906D85A60010EC607] 2015/08/04 13:59:44 A -- C:\WINDOWS\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-2F2E7C6E.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.1506E11E91E0A8DF568EC74011E00018] 2015/08/04 13:59:43 A -- C:\WINDOWS\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-3F513EAB.pf =>PUP.Optional.WebBar
O45 - LFCP:[MD5.5440567E52DC3924FE4FFC5F998286CB] 2015/08/02 03:47:54 A -- C:\WINDOWS\Prefetch\PREDM.EXE-550DA69A.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.1DD8A202E7DAB3AF414A2E12D857C5BE] 2015/08/04 13:59:12 A -- C:\WINDOWS\Prefetch\PREDM.EXE-D6F485BF.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.42AD6AD7339680DD89EEBC5AFC9CFE2E] 2015/08/04 13:59:12 A -- C:\WINDOWS\Prefetch\PREDM.TMP-20C74F4E.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.3EAB8DBFC3595357A30BAEE43E2091FB] 2015/08/02 03:47:54 A -- C:\WINDOWS\Prefetch\PREDM.TMP-C4A9B6F8.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.0665A993073C54C7F20D831B9A8D0F05] 2015/08/02 03:35:10 A -- C:\WINDOWS\Prefetch\SMARTWEBAPP.EXE-F4AF7BE3.pf =>PUP.Optional.SmartWebSearch
O45 - LFCP:[MD5.7CC50586608DBF8411996A2B2F632F1B] 2015/08/02 03:35:10 A -- C:\WINDOWS\Prefetch\SMARTWEBHELPER.EXE-920DE116.pf =>PUP.Optional.SmartWebSearch
O45 - LFCP:[MD5.90D6C57E0F685444056D9125CA136C2A] 2015/08/02 03:39:51 A -- C:\WINDOWS\Prefetch\UPGMSD_FR_005010048.EXE-3143C28B.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.0B02DB09E42502336F938F2346A29827] 2015/08/04 13:24:36 A -- C:\WINDOWS\Prefetch\UPGMSD_FR_005010050.EXE-FDDB6295.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.170D7213881A353578B65AFADE3A02A1] 2015/08/04 13:20:21 A -- C:\WINDOWS\Prefetch\WPM_V20.0.0.2294.EXE-D6169A13.pf =>PUP.Optional.WpManager

---\\ Liste des pilotes du système (SDL) (O58) (45) - 9s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176]
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200]
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424]
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952]
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016]
O58 - SDL:2013/06/18 16:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256]
O58 - SDL:2012/08/13 11:59:42 A . (.Broadcom Corporation - Broadcom xD Picture Card Bus Driver.) -- C:\WINDOWS\System32\drivers\b57xdbd.sys [72280]
O58 - SDL:2012/08/13 11:59:42 A . (.Broadcom Corporation - Broadcom xD Picture Card Miniport Driver.) -- C:\WINDOWS\System32\drivers\b57xdmp.sys [21080]
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624]
O58 - SDL:2012/06/18 17:20:52 A . (.Broadcom Corporation - Broadcom Memory Stick Driver.) -- C:\WINDOWS\System32\drivers\bScsiMSa.sys [55384]
O58 - SDL:2013/04/10 17:00:54 A . (.Broadcom Corporation - Broadcom SD 3.0 Driver.) -- C:\WINDOWS\System32\drivers\bScsiSDa.sys [84688]
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296]
O58 - SDL:2015/05/22 01:40:26 A . (.Emsisoft GmbH - Emsisoft Anti-Malware Platform Protection.) -- C:\WINDOWS\System32\drivers\epp64.sys [135800]
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024]
O58 - SDL:2012/10/03 17:14:56 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240]
O58 - SDL:2012/07/17 19:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784]
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352]
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568]
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320]
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248]
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000]
O58 - SDL:2014/10/01 20:54:16 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3828152]
O58 - SDL:2014/08/01 22:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296]
O58 - SDL:2014/08/01 22:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032]
O58 - SDL:2013/06/18 16:45:14 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\WINDOWS\System32\drivers\k57nd60a.sys [425984]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536]
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672]
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840]
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840]
O58 - SDL:2014/08/15 23:13:34 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\WINDOWS\System32\drivers\netaapl64.sys [23040]
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368]
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288]
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040]
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896]
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760]
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072]
O58 - SDL:2015/03/28 22:07:11 RA . (.Symantec Corporation - NDIS 6.0 Filter Driver for Windows Vista.) -- C:\WINDOWS\System32\drivers\SymIMV.sys [31280]
O58 - SDL:2015/06/10 23:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800]
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504]

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (34) - 192s
O61 - LFC: 2015/08/04 14:04:24 A . (..) -- C:\Users\utilisateur\Desktop\Unlocker\uninst.exe [98302]
O61 - LFC: 2015/08/02 12:22:10 A . (..) -- C:\Users\utilisateur\AppData\Roaming\appdataFr25.bin [24]
O61 - LFC: 2015/08/04 13:19:49 A . (.SoftBrain Technologies Ltd..) -- C:\Users\utilisateur\AppData\Local\SmartWeb\__u.exe [172673] =>PUP.Optional.SmartWebSearch
O61 - LFC: 2015/07/27 17:08:08 A . (..) -- C:\Users\utilisateur\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\SqliteWrapper\96822d539020b7a0e101cdd30d7af2ce\SqliteWrapper.ni.dll [117248]
O61 - LFC: 2015/07/27 17:07:49 A . (..) -- C:\Users\utilisateur\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.PerfTrack\d836a4a5e3d685af38b5eab4dabb9514\Microsoft.PerfTrack.ni.dll [28160]
O61 - LFC: 2015/07/27 17:08:06 A . (.Copyright © 2013.) -- C:\Users\utilisateur\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.B2e1870ee#\9b9d9cd4c3c33a418758c5d0150c20e7\Microsoft.Bing.AppEx.Telemetry.ni.dll [2207232]
O61 - LFC: 2015/07/27 17:09:09 A . (..) -- C:\Users\utilisateur\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.Ad256fa43#\332dedbeb8f856cc75ec9a9296be5a18\Microsoft.AppEx.Sports.SportsEnums.ni.dll [60416]
O61 - LFC: 2015/07/27 17:09:07 A . (.Copyright © 2013.) -- C:\Users\utilisateur\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.Ab11fe181#\53ede0bfbe0c4cbb7d7fe169104eeae4\Microsoft.AppEx.Sports.TransformEngine.BaseSchemas.ni.dll [181248]
O61 - LFC: 2015/07/27 17:08:48 A . (..) -- C:\Users\utilisateur\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.A615ea4af#\316022c0046417f31ffd2399f283146a\Microsoft.AppEx.Sports.BaseEnums.ni.dll [79872]
O61 - LFC: 2015/07/27 17:09:03 A . (.Copyright © 2013.) -- C:\Users\utilisateur\AppData\Local\Packages\Microsoft.BingSports_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0\NativeImages\Microsoft.A46d31238#\afa8c2a12c40d2f6ab2bd2b7ebc0b143\Microsoft.AppEx.Sports.Schemas.ni.dll [4854272]
O61 - LFC: 2015/08/04 13:21:52 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\I1GSSTKN\setup_362[1].exe [254464]
O61 - LFC: 2015/08/04 13:19:10 A . (.SoftBrain Technologies Ltd..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\I1GSSTKN\SmartWebInstaller[1].exe [759544] =>PUP.Optional.SmartWebSearch
O61 - LFC: 2015/08/04 12:46:18 A . (.SQLite Development Team.) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\I1GSSTKN\SQLite3_300700200[1].dll [536576]
O61 - LFC: 2015/08/04 13:52:34 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\I1GSSTKN\VuuPC_VO2_8907[1].exe [229121] =>PUP.Optional.VuuPC
O61 - LFC: 2015/08/04 13:19:50 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\62K0ZBDH\FriendlyError_s3[1].exe [177664]
O61 - LFC: 2015/08/04 13:18:43 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\62K0ZBDH\SearchUpdater[1].exe [121216]
O61 - LFC: 2015/08/04 14:03:52 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\62K0ZBDH\Unlocker1.9.2.exe [1078600]
O61 - LFC: 2015/08/04 13:18:37 A . (.Copyright 2013.) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\62K0ZBDH\Validate[1].exe [61981]
O61 - LFC: 2015/08/04 13:18:46 A . (.HTabp.com.) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\5L9OIQWC\cmi_mystartsearch[1].exe [670176] =>PUP.Optional.StartSearch
O61 - LFC: 2015/08/04 13:18:37 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\5L9OIQWC\cmmdWriter[1].exe [41440]
O61 - LFC: 2015/08/04 13:21:56 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\5L9OIQWC\FinalInstaller_dotnet4[1].exe [3001344]
O61 - LFC: 2015/08/04 13:52:32 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\5L9OIQWC\policyname[1].exe [57665]
O61 - LFC: 2015/08/04 13:52:51 A . (.CMI Limited.) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\AnyProtectSetup[1].exe [613255] =>PUP.Optional.AnyProtect
O61 - LFC: 2015/08/04 14:00:27 A . (.AnyProtect.com.) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\AnyProtect[1].exe [6434816] =>PUP.Optional.AnyProtect
O61 - LFC: 2015/08/04 14:35:07 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\Setup[1].exe [588486]
O61 - LFC: 2015/08/04 13:20:30 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\setup_gmsd_fr[1].exe [4743744]
O61 - LFC: 2015/08/04 14:12:07 A . (.SQLite Development Team.) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\SQLite3_300700200[1].dll [536576]
O61 - LFC: 2015/08/04 13:19:40 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\urlblockindex[1].bin [16]
O61 - LFC: 2015/08/02 03:52:17 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\urlblocklist[1].bin [0]
O61 - LFC: 2015/08/04 13:18:38 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\X6pxj8JYf[1].exe [205140]
O61 - LFC: 2015/08/02 03:52:17 A . (..) -- C:\Users\utilisateur\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin [0]
O61 - LFC: 2015/08/04 14:32:06 A . (..) -- C:\Users\utilisateur\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849]
O61 - LFC: 2015/07/29 01:27:21 A . (..) -- C:\Users\utilisateur\AppData\Local\F7AB4293-1438133228-E211-864B-B888E3AC1ED8\rnsv2D70.exe [377344]
O61 - LFC: 2015/07/29 01:27:50 A . (..) -- C:\Users\utilisateur\AppData\Local\F7AB4293-1438133228-E211-864B-B888E3AC1ED8\Uninstall.exe [51000]

---\\ Associations Shell Spawning (O67) (1) - 0s
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe

---\\ Menu de démarrage Internet (SMI) (O68) (8) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe

---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (5) - 4s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} [DefaultScope] - (e) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (istartsurf) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] {E733165D-CBCF-4FDA-883E-ADEF965B476C} - (Google) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch
O69 - SBI: SearchScopes [HKCU] - (Yahoo Search!) - http://fr.search.yahoo.com/

---\\ Enumère les services démarrés par Svchost (SSS) (O83) (34) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528]
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160]
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [156160]
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216]
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896]
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1084416]
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [926208]
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744]
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080]
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040]
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592]
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152]
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400]
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168]
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168]
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [227328]
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968]
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992]
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376]
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672]
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240]
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424]
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392]
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848]
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400]
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912]
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542208]
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816]
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728]
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608]
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344]
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3701760]
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376]
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000]

---\\ Liste des exceptions du parefeu (FirewallRules) (O87) (19) - 10s
O87 - FAEL: "TCP Query User{94649809-9F6B-4B86-8A41-B5EC989653B0}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{A713E732-42AC-4B85-9E56-2E880C7642BB}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "{161A816E-C64F-462A-9AD6-5A19FBC031C2}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\NewSoft\Presto! PageManager 9.03\LicenseCheck.exe (.not file.)
O87 - FAEL: "{9DC324C9-9C63-413C-9FE1-48DA65D445EE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\NewSoft\Presto! PageManager 9.03\LicenseCheck.exe (.not file.)
O87 - FAEL: "{A48C701A-7B42-4824-92AD-038EFB310666}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS\rerev.exe
O87 - FAEL: "{B9F2A00A-47B6-47D0-BF3A-595C59EA88E4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\RESIDENT EVIL REVELATIONS\rerev.exe
O87 - FAEL: "{E71951F7-4B48-4DAA-A4D8-6FADF5620948}" [In-None-P6-TRUE] .(.adsl TV / FM - adsl TV.) -- C:\Program Files (x86)\adslTV\adsltv.exe
O87 - FAEL: "{C531DAD0-3E4A-4CEC-8499-A4812E58E5C0}" [In-None-P17-TRUE] .(.adsl TV / FM - adsl TV.) -- C:\Program Files (x86)\adslTV\adsltv.exe
O87 - FAEL: "{91D57B98-F51B-4FE2-B797-7B1B8724E9B5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe
O87 - FAEL: "{4F43795D-54B0-4956-9618-C33A338132AB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\KillingFloor\System\KillingFloor.exe
O87 - FAEL: "{DC895244-4F42-4A7E-AD4B-3694904E07B4}" [In-None-P6-TRUE] .(.Digital Extremes - The Darkness II.) -- C:\Program Files (x86)\Steam\SteamApps\common\Darkness II\DarknessII.exe
O87 - FAEL: "{C658DDF9-98ED-4323-AC06-29DA4892420A}" [In-None-P17-TRUE] .(.Digital Extremes - The Darkness II.) -- C:\Program Files (x86)\Steam\SteamApps\common\Darkness II\DarknessII.exe
O87 - FAEL: "TCP Query User{B6752D2C-B7AE-4F90-91C1-85A61871312F}C:\users\utilisateur\downloads\cacaoweb (3).exe" [In-None-P6-TRUE] .(...) -- C:\users\utilisateur\downloads\cacaoweb (3).exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{F8A74532-D8EC-4416-88BE-EEB232E952BF}C:\users\utilisateur\downloads\cacaoweb (3).exe" [In-None-P17-TRUE] .(...) -- C:\users\utilisateur\downloads\cacaoweb (3).exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "{7B592D78-AE54-447F-88B9-743C834B706A}" [In-None-P17-TRUE] .(...) -- C:\Users\utilisateur\AppData\Local\BoBrowser\Application\bobrowser.exe (.not file.) =>PUP.Optional.BoBrowser
O87 - FAEL: "TCP Query User{1959D903-4F9F-4049-B8DC-44E284E16D25}C:\users\utilisateur\desktop\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\utilisateur\desktop\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "UDP Query User{7925709B-AFF7-47D8-91D8-BB5AFC61E248}C:\users\utilisateur\desktop\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\utilisateur\desktop\cacaoweb.exe (.not file.) =>PUP.Optional.CacaoWeb
O87 - FAEL: "{E6D78BA0-A4F4-4D5F-9E90-DDD489D91644}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Team Fortress 2\hl2.exe
O87 - FAEL: "{ED771704-CFB8-47D6-83DC-810E0A93B6BB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Team Fortress 2\hl2.exe

---\\ Recherche de clés de registre Tracing (O100) (2) - 2s
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilProductDeals_RASAPI32 =>PUP.Optional.ProductDeals
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilProductDeals_RASMANCS =>PUP.Optional.ProductDeals

---\\ Scan Additionnel (O88) (69) - 0s
C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8\hnsyE941.tmp =>PUP.Optional.CrossRider
C:\Users\utilisateur\AppData\Local\F7AB4293-1438133228-E211-864B-B888E3AC1ED8\snsv2D6F.tmp =>PUP.Optional.CrossRider
C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8\jnsuD401.tmp =>PUP.Optional.CrossRider
C:\Program Files (x86)\MiuiTab\ProtectService.exe =>PUP.Optional.MiuiTab
C:\Program Files (x86)\MiuiTab\CmdShell.exe =>PUP.Optional.MiuiTab
C:\Program Files (x86)\F7AB4293-1437519370-E211-864B-B888E3AC1ED8\knsiD7C1.tmp =>PUP.Optional.CrossRider
C:\Program Files (x86)\MiuiTab\HPNotify.exe =>PUP.Optional.MiuiTab
HKLM\SYSTEM\CurrentControlSet\Services\comyninu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\gopibeko =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\hyverumu =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR
C:\Program Files (x86)\MiuiTab\ProtectService.exe =>PUP.Optional.AgentODR
HKLM\SYSTEM\CurrentControlSet\Services\jymuvexu =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\FastSearch =>PUP.Optional.FastSearch
HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR
HKLM\SOFTWARE\Wow6432Node\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch
HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Gen
HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\Browser =>PUP.Optional.CrossRider
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect
HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam
C:\Program Files (x86)\BeestSuaveForYou =>PUP.Optional.Multiplug
C:\Program Files (x86)\F7AB4293-1437519370-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
C:\Program Files (x86)\F7AB4293-1437519601-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
C:\Program Files (x86)\F7AB4293-1437581821-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
C:\Program Files (x86)\F7AB4293-1438110355-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
C:\Program Files (x86)\F7AB4293-1438125983-E211-864B-B888E3AC1ED8 =>PUP.Optional.CrossRider
C:\Program Files (x86)\MiuiTab =>PUP.Optional.MiuiTab
C:\ProgramData\IHProtectUpDate =>PUP.Optional.AgentODR
C:\Users\utilisateur\AppData\Roaming\istartsurf =>PUP.Optional.IsStart
C:\Users\utilisateur\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch
C:\Users\utilisateur\AppData\Local\BreakingNewsAlert =>PUP.Optional.BreakingNewsAlert
C:\Users\utilisateur\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
C:\WINDOWS\Prefetch\AIRWEBBAR.EXE-377C3CBB.pf =>PUP.Optional.WebBar
C:\WINDOWS\Prefetch\AIRWEBBAR.TMP-65C6751A.pf =>PUP.Optional.WebBar
C:\WINDOWS\Prefetch\AIRWEBBAR_SOFT_PARTNER.EXE-58F5D142.pf =>PUP.Optional.WebBar
C:\WINDOWS\Prefetch\AIRWEBBAR_SOFT_PARTNER.TMP-A211F3D9.pf =>PUP.Optional.WebBar
C:\WINDOWS\Prefetch\ANYPROTECT.EXE-53752276.pf =>PUP.Optional.AnyProtect
C:\WINDOWS\Prefetch\GMSD_FR_005010048.EXE-E075BE31.pf =>PUP.Optional.CrossRider
C:\WINDOWS\Prefetch\GMSD_FR_005010050.EXE-6AA4C58B.pf =>PUP.Optional.CrossRider
C:\WINDOWS\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-2F2E7C6E.pf =>PUP.Optional.WebBar
C:\WINDOWS\Prefetch\PACKAGE_AIRWEBBAR_INSTALLER_M-3F513EAB.pf =>PUP.Optional.WebBar
C:\WINDOWS\Prefetch\PREDM.EXE-550DA69A.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\PREDM.EXE-D6F485BF.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\PREDM.TMP-20C74F4E.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\PREDM.TMP-C4A9B6F8.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\SMARTWEBAPP.EXE-F4AF7BE3.pf =>PUP.Optional.SmartWebSearch
C:\WINDOWS\Prefetch\SMARTWEBHELPER.EXE-920DE116.pf =>PUP.Optional.SmartWebSearch
C:\WINDOWS\Prefetch\UPGMSD_FR_005010048.EXE-3143C28B.pf =>PUP.Optional.CrossRider
C:\WINDOWS\Prefetch\UPGMSD_FR_005010050.EXE-FDDB6295.pf =>PUP.Optional.CrossRider
C:\WINDOWS\Prefetch\WPM_V20.0.0.2294.EXE-D6169A13.pf =>PUP.Optional.WpManager
C:\Users\utilisateur\AppData\Local\SmartWeb\__u.exe =>PUP.Optional.SmartWebSearch
C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\I1GSSTKN\SmartWebInstaller[1].exe =>PUP.Optional.SmartWebSearch
C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\I1GSSTKN\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC
C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\5L9OIQWC\cmi_mystartsearch[1].exe =>PUP.Optional.StartSearch
C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\AnyProtectSetup[1].exe =>PUP.Optional.AnyProtect
C:\Users\utilisateur\AppData\Local\Microsoft\Windows\INetCache\IE\4XRQP74Y\AnyProtect[1].exe =>PUP.Optional.AnyProtect
HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu
C:\ProgramData\XWinManProX\ProtectWindowsManager.exe =>PUP.Optional.Fuyu
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilProductDeals_RASAPI32 =>PUP.Optional.ProductDeals
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\utilProductDeals_RASMANCS =>PUP.Optional.ProductDeals

---\\ Récapitulatif des éléments trouvées sur votre station (26) - 0s
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/blog =>PUP.Optional.MiuiTab
http://www.nicolascoolman.fr/pup-startsearch/ =>PUP.Optional.StartSearch
http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart
http://www.nicolascoolman.fr/blog =>PUP.Optional.ItsResultsHub
http://www.nicolascoolman.fr/blog =>PUP.Optional.GravitySpace
http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR
http://www.nicolascoolman.fr/pup-mutiplug/ =>PUP.Optional.Multiplug
http://www.nicolascoolman.fr/blog =>PUP.Optional.FastSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.Gen
http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab
http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu
http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/pup-optional-dailypcclean/ =>PUP.Optional.DailyPCClean
http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect
http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork
http://www.nicolascoolman.fr/blog =>PUP.Optional.BreakingNewsAlert
http://www.nicolascoolman.fr/pup-smartwebsearch/ =>PUP.Optional.SmartWebSearch
http://www.nicolascoolman.fr/blog =>PUP.Optional.WebBar
http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect
http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware
http://www.nicolascoolman.fr/pup-wpmanager/ =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/pup-vuupc/ =>PUP.Optional.VuuPC
http://www.nicolascoolman.fr/pup-cacaoweb/ =>PUP.Optional.CacaoWeb
http://www.nicolascoolman.fr/blog =>PUP.Optional.BoBrowser
http://www.nicolascoolman.fr/pup-product-deals/ =>PUP.Optional.ProductDeals

~ End of the scan, 37357 items in 1024 seconds (1034)(0)()

Publicité


Signaler le contenu de ce document

Publicité