cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.12.11.183 Par Nicolas Coolman (2015/12/11)
~ Démarré par drago300 (Administrator) (2015/12/13 17:22:22)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\drago300\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\drago300\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Pro, 32-bit (Build 10240)

---\\ Navigateurs Internet (4) - 0s
GCIE: Google Chrome v47.0.2526.80
MFIE: Mozilla Firefox 43.0 (x86 fr) v43.0
OPIE: Opera 34.0.2036.25 v34.0.2036.25
MSIE: Internet Explorer v11.0.10240.16603

---\\ Informations sur les produits Windows (9) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, VOLUME_KMSCLIENT channel
Windows ID Activation : OK
~ Windows Partial Key : T83GX
Windows License : OK
Expiration Licence Windows : 240808 minute(s) (168 jour(s))
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 4s
Avast Free Antivirus v11.1.2241
Windows Defender (Deactivate)

---\\ Surveillance de Logiciels (2) - 5s
Adobe Flash Player 20 NPAPI
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3145.076 MB (55% free)
System Restore: Activé (Enable)
System drive C: has 13 GB () free of 65 GB =>Alerte espace disque inférieur à 20 Go

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: DESKTOP-5OFA864
~ User Name: drago300
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 13 GB free of 65 GB (System)
~ Drive D: has 92 GB free of 155 GB
~ Drive E: has 46 GB free of 65 GB

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (24) - 1s
[MD5.4EEB94F7E1ABAB5503EEFEA7F2394370] - 25/11/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4047288] =>.Microsoft Windows®
[MD5.543C8A2961F38C20438A61B9455E914C] - 10/07/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [53760] ©
[MD5.43A465F658A66CF051C443947420B3E8] - 16/08/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [191144] =>.Microsoft Windows Publisher®
[MD5.73FC0143E518D8DB7AFE9675F4AF8063] - 17/09/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2207232] ©
[MD5.56CF30FEABA9BF4886700CF573C12C24] - 05/11/2015 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [491008] ©
[MD5.109CCF5163D6C397CF2E39408431B402] - 16/08/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [419328] ©
[MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [534064] =>.Microsoft Windows®
[MD5.838989124CBEBDC0B1D5405F2A8721F8] - 10/07/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.730F78A43159AD2D59296EA5DAC9F3DC] - 05/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [479072] =>.Microsoft Windows®
[MD5.8A2FA4E32D4949DA60D900BF495D5801] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [23392] =>.Microsoft Windows®
[MD5.45825ED9F218A1601253620BF516171E] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74752] ©
[MD5.F9859843E5ABAB82E63CC3AA0FC50CF0] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [130560] ©
[MD5.FF2FAE24F70AC0501C59C20136A333DD] - 10/07/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [104960] ©
[MD5.2632B86A0767C24067F688D22E7BBA19] - 25/11/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [72704] ©
[MD5.4AFC7F3F691B8259B41712917808F35B] - 10/07/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [90624] ©
[MD5.48B70CFC8132E60A009F500B181EB91A] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [124416] ©
[MD5.0AFDF5734DAF0D1438802CF22238518C] - 10/07/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [343552] ©
[MD5.F60AE46F9B244F3FF02BFE0DF8DBFF86] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [216576] ©
[MD5.5954C0E724A4A5A5DFE08EDA9FDE42DF] - 01/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [1807200] =>.Microsoft Windows®
[MD5.D2377D0CCC9396F37FACCF4AA9E0220A] - 10/07/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [81408] ©
[MD5.DCACCE3F3FF364F228E4197DC435A503] - 10/07/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [81408] ©
[MD5.86D46542F5B4CF19949A9D88F62F03CE] - 10/07/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [132608] ©
[MD5.C66991D1CC1623A72747C76E456C42AD] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [95072] =>.Microsoft Windows®
[MD5.12999D4773D8034431795440A3DF910A] - 10/07/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [342368] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (14) - 2s
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe =>.ABBYY SOLUTIONS LIMITED®
O23 - Service: Advanced SystemCare Service 9 (AdvancedSystemCareService9) . (.IObit - Advanced SystemCare Service.) - C:\Program Files\IObit\Advanced SystemCare\ASCService.exe =>.IObit Information Technology®
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: IMF Service (IMFservice) . (.IObit - IObit Malware Fighter Service.) - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe =>.IObit Information Technology®
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology®
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.9.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: Clear Airline (peqexojy) . (...) - C:\Program Files\03000200-1449674386-0500-0006-000700080009\knsp25A6.tmp =>PUP.Optional.CrossRider
O23 - Service: SSFK (SSFK) . (.TODO: <公司名> - TODO: <文件说明>.) - C:\Program Files\SFK\SSFK.exe {11218830637131DAB48BE3AFFF6BC45350BA} =>PUP.Optional.MyWebSearch
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®
O23 - Service: @oem25.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixe (VIAKaraokeService) . (.VIA Technologies, Inc. - Service binary.) - C:\Windows\System32\viakaraokesrv.exe =>.VIA Technologies Inc.®

---\\ Tâches planifiées en automatique (35) - 4s
[MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] =>.Adobe Systems, Incorporated®
[MD5.F54564025D2284AE498E51D7C139F971] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated®
[MD5.DC7D54AE67F4D5F065F19011E3D123C2] [APT] [ASC9_PerformanceMonitor] (.IObit.) -- C:\Program Files\IObit\Advanced SystemCare\Monitor.exe [1517344] =>.IObit Information Technology®
[MD5.DC86206A5417525117C417DC1D58D183] [APT] [ASC9_SkipUac_drago300] (.IObit.) -- C:\Program Files\IObit\Advanced SystemCare\ASC.exe [4999968] =>.IObit Information Technology®
[MD5.8A6D1C082176864414E85ACF6696331D] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1510320] =>.AVAST Software a.s.®
[MD5.16369F18244A0CEC509CEDB22E6786BF] [APT] [Driver Booster Scheduler] (.IObit.) -- C:\Program Files\IObit\Driver Booster\Scheduler.exe [1003328] =>.IObit Information Technology®
[MD5.516931D7C5BB3B9AD4CA01DD28E862CE] [APT] [Driver Booster SkipUAC (drago300)] (.IObit.) -- C:\Program Files\IObit\Driver Booster\DriverBooster.exe [4618560] =>.IObit Information Technology®
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.70CB79B525FF3D953AB60030EC32265D] [APT] [Opera scheduled Autoupdate 1448839401] (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [696952] =>.Opera Software ASA®
[MD5.8417AAF8506D753104213C763292977E] [APT] [RegClean Pro] (...) -- C:\Program Files\RCP\RegCleanPro.exe [9693616] =>PUP.Optional.RegistryPowerCleaner
[MD5.8417AAF8506D753104213C763292977E] [APT] [RegClean Pro_DEFAULT] (...) -- C:\Program Files\RCP\RegCleanPro.exe [9693616] =>PUP.Optional.RegistryPowerCleaner
[MD5.8417AAF8506D753104213C763292977E] [APT] [RegClean Pro_UPDATES] (...) -- C:\Program Files\RCP\RegCleanPro.exe [9693616] =>PUP.Optional.RegistryPowerCleaner
[MD5.04EEBCEB512E184553EBB3F3B0C9C4E6] [APT] [Uninstaller_SkipUac_drago300] (.IObit.) -- C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [4864800] =>.IObit Information Technology®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] ©
O39 - APT: ASC9_SkipUac_drago300 - (.IObit.) -- C:\WINDOWS\Tasks\ASC9_SkipUac_drago300.job [264] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1092] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1096] ©
O39 - APT: RegClean Pro_DEFAULT - (...) -- C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job [284] =>PUP.Optional.RegistryPowerCleaner
O39 - APT: RegClean Pro_UPDATES - (...) -- C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job [292] =>PUP.Optional.RegistryPowerCleaner
O39 - APT: Uninstaller_SkipUac_drago300 - (.IObit.) -- C:\WINDOWS\Tasks\Uninstaller_SkipUac_drago300.job [304] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3962] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] ©
O39 - APT: ASC9_PerformanceMonitor - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASC9_PerformanceMonitor [3312] ©
O39 - APT: ASC9_SkipUac_drago300 - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASC9_SkipUac_drago300 [2448] ©
O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\WINDOWS\System32\Tasks\avast! Emergency Update [4280] ©
O39 - APT: Driver Booster Scheduler - (.IObit.) -- C:\WINDOWS\System32\Tasks\Driver Booster Scheduler [3412] ©
O39 - APT: Driver Booster SkipUAC (drago300) - (.IObit.) -- C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (drago300) [3066] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3922] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4154] ©
O39 - APT: Opera scheduled Autoupdate 1448839401 - (.Opera Software.) -- C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1448839401 [3980] ©
O39 - APT: RegClean Pro - (...) -- C:\WINDOWS\System32\Tasks\RegClean Pro [3138] =>PUP.Optional.RegistryPowerCleaner
O39 - APT: RegClean Pro_DEFAULT - (...) -- C:\WINDOWS\System32\Tasks\RegClean Pro_DEFAULT [2954] =>PUP.Optional.RegistryPowerCleaner
O39 - APT: RegClean Pro_UPDATES - (...) -- C:\WINDOWS\System32\Tasks\RegClean Pro_UPDATES [3110] =>PUP.Optional.RegistryPowerCleaner
O39 - APT: Uninstaller_SkipUac_drago300 - (.IObit.) -- C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_drago300 [2502] ©

---\\ Processus lancés (6) - 2s
[MD5.8C25C5F5B98201FE7490EF8868C35290] - (...) -- C:\Program Files\03000200-1449674386-0500-0006-000700080009\knsp25A6.tmp [441344] [PID.2588] =>PUP.Optional.CrossRider
[MD5.B0980DE1C66D2B43643FDE4ECCF473FA] - (.TODO: <公司名> - TODO: <文件说明>.) -- C:\Program Files\SFK\SSFK.exe [261320] [PID.2632] {11218830637131DAB48BE3AFFF6BC45350BA}
[MD5.8417AAF8506D753104213C763292977E] - (...) -- C:\Program Files\RCP\RegCleanPro.exe [9693616] [PID.3432] {2E9BD3DBC5333ACCF13A746389196ACF}
[MD5.ADE3D7AD36CA238C6D58E5E93392D2F8] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3903056] [PID.4764] ©
[MD5.4E4A5A664BB178E8ABEA72A4D9725E51] - (.Mega Limited - MEGAsync.) -- C:\Users\drago300\AppData\Local\MEGAsync\MEGAsync.exe [4387784] [PID.4632] {11212775AC8BD188EC962027044A8529D2BF} ©
[MD5.7D0AB167F1F58F6A5CC88F0A1AC3A1E6] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\drago300\Desktop\ZHPDiag3.exe [2008064] [PID.2616] ©

---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.istartpageing.com/ =>PUP.Optional.IstartPageing
G2 - GCE: Preference [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security
G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (12) - 1s
M0 - MFSP: prefs.js [drago300 - 3ns70pod.default] http://www.google.com/
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\extensions\@F276A4B555C6FCB8FD5D342AA5B7A6E1F276.xpi
P2 - EXT FILE: (...) -- C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\extensions\@F722623F07AE9D23C18B3C9E54A86206F722.xpi
P2 - EXT FILE: (...) -- C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\searchplugins\istartpageing.xml =>PUP.Optional.IstartPageing
P2 - EXT FILE: (...) -- C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\searchplugins\webssearches.xml =>PUP.Optional.WebsSearches
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.lightningnewtab.com - FirefixTab.) -- C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
P2 - EXT: (.roc - YahooToolsProtected .) -- C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\extensions\yahooprotected@gmail.com
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_20_0_0_235.dll ©
P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft.) -- C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (3) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ©

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (9) - 0s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (Orphean)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.®
O2 - BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology Corp. - Epson Easy Photo Print (TBL).) -- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} (Orphean)
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} . (.IObit - Advanced SystemCare ASCPlugin_Protection.) -- C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll =>.IObit Information Technology®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} (Orphean)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: EPTBL - [HKLM]{9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.SEIKO EPSON CORPORATION / CyCom Technology Corp. - Epson Easy Photo Print (TBL).) -- C:\Program Files\Epson Software\Easy Photo Print\EPTBL.dll

---\\ Applications lancées au démarrage du système (9) - 1s
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.®
O4 - HKLM\..\Run: [IObit Malware Fighter] . (.IObit - IObit Malware Fighter.) -- C:\Program Files\IObit\IObit Malware Fighter\IMF.exe =>.IObit Information Technology®
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKCU\..\Run: [Advanced SystemCare 9] . (.IObit - Advanced SystemCare 9.) -- C:\Program Files\IObit\Advanced SystemCare\ASCTray.exe =>.IObit Information Technology®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1943662313-2698380373-10567796-1001\..\Run: [Advanced SystemCare 9] . (.IObit - Advanced SystemCare 9.) -- C:\Program Files\IObit\Advanced SystemCare\ASCTray.exe =>.IObit Information Technology®
O4 - HKUS\S-1-5-21-1943662313-2698380373-10567796-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe ©

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 77.234.40.79
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 77.234.40.79

---\\ Protocole additionnel (23) - 0s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll ©
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll ©
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll ©
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll ©
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll ©
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll ©
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll ©
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (62) - 6s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU] -- uTorrent
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- {F9000000-0018-0000-0000-074957833700} ©
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM] -- ABBYY FineReader 9.0 Sprint ©
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} ©
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824161310} ©
O42 - Logiciel: Advanced SystemCare 9 - (.IObit.) [HKLM] -- Advanced SystemCare_is1 ©
O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} ©
O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM] -- Avast ©
O42 - Logiciel: Compatible Web Directory - (.Compatible Web Directory.) [HKLM] -- PopupProduct =>PUP.Optional.CompatibleWebDir
O42 - Logiciel: Driver Booster 3.1 - (.IObit.) [HKLM] -- Driver Booster_is1 ©
O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM] -- {39F58DDB-B2B8-4B86-AF20-4706A80EB30D} ©
O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) - (.SEIKO EPSON CORPORATION.) [HKLM] -- {B2D55EB8-32C5-4B43-9006-9E97DECBA178} ©
O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM] -- {03B8AA32-F23C-4178-B8E6-09ECD07EAA47} ©
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM] -- EPSON Scanner ©
O42 - Logiciel: EPSON SX125 Series Manuel - (...) [HKLM] -- EPSON SX125 Series Manual
O42 - Logiciel: EPSON SX125 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM] -- EPSON SX125 Series ©
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome ©
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager ©
O42 - Logiciel: IObit Malware Fighter 3 - (.IObit.) [HKLM] -- IObit Malware Fighter_is1 ©
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM] -- IObitUninstall ©
O42 - Logiciel: iRoot - (.Shenzhen Xinyi Network Co.,Ltd..) [HKLM] -- {1295E43F-382A-4CB2-9E0F-079C0D7401BB}_is1
O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} ©
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} ©
O42 - Logiciel: Java SE Development Kit 7 Update 13 - (.Oracle.) [HKLM] -- {32A3A4F4-B792-11D6-A78A-00B0D0170130} ©
O42 - Logiciel: Media Player Codec Pack 4.4.0 - (.Media Player Codec Pack.) [HKLM] -- Media Player - Codec Pack
O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM] -- MEGAsync ©
O42 - Logiciel: Mises à jour NVIDIA 17.12.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update ©
O42 - Logiciel: Mozilla Firefox 43.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 43.0 (x86 fr) ©
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService ©
O42 - Logiciel: NVIDIA GeForce Experience 2.2.2 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService ©
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer ©
O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer ©
O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service ©
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {80407BA7-7763-4395-AB98-5233F1B34E65} ©
O42 - Logiciel: NVIDIA PhysX System Software 9.15.0428 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX ©
O42 - Logiciel: NVIDIA Pilote 3D Vision 341.92 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision ©
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver ©
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 340.50 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB ©
O42 - Logiciel: NVIDIA Pilote graphique 341.92 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA ShadowPlay 17.12.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay ©
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM] -- NVIDIAStereo ©
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core ©
O42 - Logiciel: NVIDIA Virtual Audio 1.2.27 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver ©
O42 - Logiciel: Opera Stable 34.0.2036.25 - (.Opera Software.) [HKLM] -- Opera 34.0.2036.25 ©
O42 - Logiciel: Panneau de configuration NVIDIA 341.92 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel ©
O42 - Logiciel: Pool Download - (.Video Pool corp.) [HKCU] -- {1A671512-595D-D488-3CD8-B41CD1FDE950}
O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM] -- PowerISO ©
O42 - Logiciel: RegClean Pro - (.systweak.com.) [HKLM] -- RegClean Pro_is1 =>PUP.Optional.RegistryPowerCleaner
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} ©
O42 - Logiciel: Setup - (...) [HKLM] -- {7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv ©
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController ©
O42 - Logiciel: Smart Defrag 4 - (.IObit.) [HKLM] -- Smart Defrag 4_is1 ©
O42 - Logiciel: SoftPerfect WiFi Guard version 1.0.6 - (.SoftPerfect.) [HKLM] -- {38AFD787-4D2E-4442-92D2-7739F5F92CF4}_is1 ©
O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM] -- IObit Surfing Protection_is1 ©
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKCU] -- {e577cb09-2068-44fb-8eed-cfcc1617b010}
O42 - Logiciel: Viber - (.Viber Media Inc..) [HKLM] -- {703E9CCF-0578-4AF0-B1F7-90368CFDC8DD}
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver ©

---\\ HKCU & HKLM Software Keys (97) - 6s
HKLM\SOFTWARE\ABBYY
HKLM\SOFTWARE\Adobe
HKLM\SOFTWARE\AGEIA Technologies
HKLM\SOFTWARE\Apple Computer, Inc.
HKLM\SOFTWARE\Atheros Communications Inc.
HKLM\SOFTWARE\AVAST Software
HKLM\SOFTWARE\EPSON
HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\Gabest
HKLM\SOFTWARE\GNU
HKLM\SOFTWARE\Google
HKLM\SOFTWARE\Icaros
HKLM\SOFTWARE\IM Providers
HKLM\SOFTWARE\InstallShield
HKLM\SOFTWARE\Intel
HKLM\SOFTWARE\Internet Download Manager
HKLM\SOFTWARE\IObit
HKLM\SOFTWARE\istartpageingSoftware =>PUP.Optional.IstartPageing
HKLM\SOFTWARE\JavaSoft
HKLM\SOFTWARE\JreMetrics
HKLM\SOFTWARE\Khronos
HKLM\SOFTWARE\lameme
HKLM\SOFTWARE\LAV
HKLM\SOFTWARE\Macromedia
HKLM\SOFTWARE\Media Player - Codec Pack
HKLM\SOFTWARE\Mozilla
HKLM\SOFTWARE\mozilla.org
HKLM\SOFTWARE\MozillaPlugins
HKLM\SOFTWARE\ND
HKLM\SOFTWARE\NSIS.Library.RegTool.v3
HKLM\SOFTWARE\NVIDIA Corporation
HKLM\SOFTWARE\ODBC
HKLM\SOFTWARE\OEM
HKLM\SOFTWARE\Opera Software
HKLM\SOFTWARE\Partner
HKLM\SOFTWARE\PowerISO
HKLM\SOFTWARE\Reg
HKLM\SOFTWARE\RegisteredApplications
HKLM\SOFTWARE\SAMSUNG
HKLM\SOFTWARE\SEIKO EPSON CORPORATION
HKLM\SOFTWARE\Sony Corporation
HKLM\SOFTWARE\Systweak =>PUP.Optional.Systweak
HKLM\SOFTWARE\VIA Technologies, Inc
HKLM\SOFTWARE\WinRAR
HKLM\SOFTWARE\WNetEnhancer =>PUP.Optional.Wajam
HKLM\SOFTWARE\XinYi Network
HKLM\SOFTWARE\yoursearchingSoftware =>PUP.Optional.YourSearching
HKCU\SOFTWARE\ABBYY
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Akeo Consulting
HKCU\SOFTWARE\AntiCrash
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\DownloadManager
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Integrator
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Media Player - Codec Pack
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MPC-HC
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\OperaOB
HKCU\SOFTWARE\PowerISO
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\SyncEngines
HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\Viber
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\WNetEnhancer =>PUP.Optional.Wajam
HKCU\SOFTWARE\XinYi Network
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contenu des dossiers Programmes (195) - 7s
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\03000200-1449674386-0500-0006-000700080009 =>PUP.Optional.CrossRider
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\ABBYY FineReader 9.0 Sprint
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Adobe
O43 - CFD: 30/11/2015 - [0] D -- C:\Program Files\AGEIA Technologies
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\AVAST Software
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Common Files
O43 - CFD: 01/12/2015 - [0] D -- C:\Program Files\Dachshund Software
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\epson
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Epson Software
O43 - CFD: 29/11/2015 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\Google
O43 - CFD: 01/12/2015 - [] HD -- C:\Program Files\InstallShield Installation Information
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files\Intel
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Internet Download Manager
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\IObit
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\iRoot
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Java
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Messenger for Desktop
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Microsoft Analysis Services
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\Microsoft Office
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Microsoft SQL Server
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Microsoft Visual Studio
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Microsoft Visual Studio 8
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Microsoft Works
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Mozilla Firefox
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Mozilla Maintenance Service
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\NVIDIA Corporation
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\Opera
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\PowerISO
O43 - CFD: 13/12/2015 - [] D -- C:\Program Files\RCP
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\SAMSUNG
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files\SFK =>PUP.Optional.MyWebSearch
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\SoftPerfect WiFi Guard
O43 - CFD: 11/12/2015 - [0] D -- C:\Program Files\temp
O43 - CFD: 29/11/2015 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files\VIA
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Windows Photo Viewer
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 29/11/2015 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 11/12/2015 - [] HD -- C:\Program Files\WindowsApps
O43 - CFD: 29/11/2015 - [] SD -- C:\Program Files\WindowsPowerShell
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\WinRAR
O43 - CFD: 09/12/2015 - [] D -- C:\Program Files\WNetEnhancer =>PUP.Optional.Wajam
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 9.0 Sprint
O43 - CFD: 30/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 29/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 29/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools
O43 - CFD: 08/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software
O43 - CFD: 02/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iRoot
O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 29/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Player - Codec Pack
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
O43 - CFD: 13/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro =>PUP.Optional.RegistryPowerCleaner
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 4
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftPerfect WiFi Guard
O43 - CFD: 09/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 29/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 29/11/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WNetEnhancer =>PUP.Optional.Wajam
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\ABBYY
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 29/11/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 29/11/2015 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 29/11/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 29/11/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 30/11/2015 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\IObit
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 29/11/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 01/12/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 29/11/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 29/11/2015 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 13/12/2015 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\ProductData
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 10/12/2015 - [] D -- C:\ProgramData\Sun
O43 - CFD: 09/12/2015 - [] D -- C:\ProgramData\Tmp0x0x
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\UDL
O43 - CFD: 29/11/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 29/11/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 01/12/2015 - [0] D -- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Common Files\ABBYY
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Common Files\Adobe
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files\Common Files\DESIGNER
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Common Files\EPSON
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files\Common Files\InstallShield
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files\Common Files\IObit
O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Common Files\Java
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files\Common Files\Microsoft Shared
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files\Common Files\Services
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files\Common Files\System
O43 - CFD: 29/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Adobe
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Apple Computer
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\AVAST Software
O43 - CFD: 13/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\DMCache
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Epson
O43 - CFD: 12/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\IDM
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\InstallShield
O43 - CFD: 12/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\IObit
O43 - CFD: 12/12/2015 - [0] D -- C:\Users\drago300\AppData\Roaming\istartpageing =>PUP.Optional.IstartPageing
O43 - CFD: 12/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\KingRoot
O43 - CFD: 29/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Macromedia
O43 - CFD: 11/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\mgyun
O43 - CFD: 30/11/2015 - [] SD -- C:\Users\drago300\AppData\Roaming\Microsoft
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Mozilla
O43 - CFD: 11/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\MPC-HC
O43 - CFD: 02/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\NVIDIA
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Opera Software
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\PowerISO
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\ProductData
O43 - CFD: 11/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Sun
O43 - CFD: 13/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\systweak =>PUP.Optional.Systweak
O43 - CFD: 12/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 09/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\uTorrent
O43 - CFD: 09/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\ViberPC
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\WinRAR
O43 - CFD: 13/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\ZHP
O43 - CFD: 12/12/2015 - [] D -- C:\Users\drago300\AppData\Local\03000200-1449800131-0500-0006-000700080009
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\ABBYY
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Adobe
O43 - CFD: 29/11/2015 - [0] SHD -- C:\Users\drago300\AppData\Local\Application Data
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\CEF
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Comms
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Diagnostics
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\ElevatedDiagnostics
O43 - CFD: 09/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Follow Plugin
O43 - CFD: 05/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Google
O43 - CFD: 29/11/2015 - [0] SHD -- C:\Users\drago300\AppData\Local\Historique
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Macromedia
O43 - CFD: 09/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Mega Limited
O43 - CFD: 12/12/2015 - [] D -- C:\Users\drago300\AppData\Local\MEGAsync
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\Messenger
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Microsoft
O43 - CFD: 30/11/2015 - [0] D -- C:\Users\drago300\AppData\Local\Microsoft Help
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\MicrosoftEdge
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\Mozilla
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\MSfree Inc
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\NVIDIA
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\NVIDIA Corporation
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\Opera Software
O43 - CFD: 02/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Package Cache
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Packages
O43 - CFD: 30/11/2015 - [0] D -- C:\Users\drago300\AppData\Local\PeerDistRepub
O43 - CFD: 11/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Pool Download
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\Programs
O43 - CFD: 29/11/2015 - [] D -- C:\Users\drago300\AppData\Local\Publishers
O43 - CFD: 13/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Temp
O43 - CFD: 29/11/2015 - [0] SHD -- C:\Users\drago300\AppData\Local\Temporary Internet Files
O43 - CFD: 29/11/2015 - [] D -- C:\Users\drago300\AppData\Local\TileDataLayer
O43 - CFD: 03/12/2015 - [] D -- C:\Users\drago300\AppData\Local\Viber
O43 - CFD: 01/12/2015 - [] D -- C:\Users\drago300\AppData\Local\VirtualStore
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Local\WiFi Guard
O43 - CFD: 29/11/2015 - [] RD -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 29/11/2015 - [] RD -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 09/12/2015 - [] RD -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 29/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 09/12/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
O43 - CFD: 12/12/2015 - [] RD -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 29/11/2015 - [] RD -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 29/11/2015 - [] RSD -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 30/11/2015 - [] D -- C:\Users\drago300\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ Derniers fichiers créés dans Windows Prefetcher (14) - 45s
O45 - LFCP:[MD5.08ACA577FF2550D4D388639E3ABED57C] 10/12/2015 A -- C:\WINDOWS\Prefetch\MOBOGENIE.EXE-BD9AF242.pf =>PUP.Optional.Mobogenie
O45 - LFCP:[MD5.1388A2D913C4343A5F2A2BC8207245F9] 09/12/2015 A -- C:\WINDOWS\Prefetch\MOBOGENIE.EXE-FFE4322B.pf =>PUP.Optional.Mobogenie
O45 - LFCP:[MD5.12416572B5D40525184EA8CC9B4463B9] 10/12/2015 A -- C:\WINDOWS\Prefetch\MOBOGENIEHELPER.EXE-B35041BA.pf =>PUP.Optional.Mobogenie
O45 - LFCP:[MD5.B4A5D9C3F07EAB80FFDE858F08CF01F6] 10/12/2015 A -- C:\WINDOWS\Prefetch\MOBOGENIEP2SP.EXE-917E70C3.pf =>PUP.Optional.Mobogenie
O45 - LFCP:[MD5.9EC557CB2F00B67506E75E795155FEA4] 10/12/2015 A -- C:\WINDOWS\Prefetch\MOBOGENIESERVICE.EXE-25277E97.pf =>PUP.Optional.Mobogenie
O45 - LFCP:[MD5.CAA58B0A4762412EC0B18729C6C9B652] 09/12/2015 A -- C:\WINDOWS\Prefetch\MOBOGENIE_SETUP_3.3.7_10002.E-807CB202.pf =>PUP.Optional.Mobogenie
O45 - LFCP:[MD5.142F6729C099EA3C4FA4C7EF7D9A8C90] 09/12/2015 A -- C:\WINDOWS\Prefetch\MOBOROBO-MOBOROBO_EN_SOFTONIC-A2D0085C.pf =>PUP.Optional.Softonic
O45 - LFCP:[MD5.25E2A69466B200B9A0EFB4E8EE670A13] 09/12/2015 A -- C:\WINDOWS\Prefetch\MOBOROBO-MOBOROBO_EN_SOFTONIC-CCA02828.pf =>PUP.Optional.Softonic
O45 - LFCP:[MD5.D3A9B1187CA33EA7D97F5E4B56ADB6EA] 09/12/2015 A -- C:\WINDOWS\Prefetch\MOBOROBO-MOBOROBO_EN_SOFTONIC-E26276AA.pf =>PUP.Optional.Softonic
O45 - LFCP:[MD5.886653DEF1D252F2603FB048F9BEE6D0] 10/12/2015 A -- C:\WINDOWS\Prefetch\UPOSPD_US_013010171.EXE-E681EA0B.pf =>PUP.OneSoftPerDay
O45 - LFCP:[MD5.A63F90FBB078B828BBFA17A60DE697D8] 09/12/2015 A -- C:\WINDOWS\Prefetch\VOPACKAGE.EXE-1930E0D2.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.A56491318B3C9E4FB56B0151092CD4BC] 09/12/2015 A -- C:\WINDOWS\Prefetch\WPM_V20.0.0.2508.EXE-6BBF9D8E.pf =>PUP.Optional.WpManager
O45 - LFCP:[MD5.1F5CCD26A3AA40028B6A7F59078533C5] 12/12/2015 A -- C:\WINDOWS\Prefetch\WPM_V20.0.0.2508.EXE-73415D59.pf =>PUP.Optional.WpManager
O45 - LFCP:[MD5.477EE68D4BB8B048B5D6F47E879CEB06] 11/12/2015 A -- C:\WINDOWS\Prefetch\WPM_V20.0.0.2508.EXE-AF811E89.pf =>PUP.Optional.WpManager

---\\ ShellIconOverlayIdentifiers (SIOI) (12) - 1s
O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\drago300\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\drago300\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\drago300\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\drago300\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\drago300\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: ###MegaShellExtPending [###MegaShellExtPending] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\Users\drago300\AppData\Local\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSynced [###MegaShellExtSynced] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\Users\drago300\AppData\Local\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSyncing [###MegaShellExtSyncing] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\Users\drago300\AppData\Local\MEGAsync\ShellExtX32.dll
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll ©
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll ©

---\\ Liste des pilotes du système (55) - 10s
O58 - SDL:2015/07/10 09:24:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [85856] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1038176] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [75104] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [215392] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [22880] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [116576] =>.Microsoft Windows®
O58 - SDL:2015/11/30 00:13:37 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [24016] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:13:37 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [81168] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:13:37 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [81728] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:13:37 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [49776] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:12:42 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [794952] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:13:38 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [435464] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:13:39 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [117200] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:12:41 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\aswTap.sys [38984] =>.AVAST Software a.s.®
O58 - SDL:2015/11/30 00:13:38 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [209432] =>.AVAST Software a.s.®
O58 - SDL:2015/07/10 09:24:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [16088] =>.Broadcom Corporation®
O58 - SDL:2015/07/10 09:24:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [56672] =>.Microsoft Windows®
O58 - SDL:2015/12/01 11:13:18 A . (.REALiX(tm) - HWiNFO x86 Kernel Driver.) -- C:\WINDOWS\System32\drivers\HWiNFO32.SYS [23840] {11217744F4734203086E7A2B2312FE1225D5}
O58 - SDL:2015/07/10 09:24:22 A . (.Intel Corporation - Intel(R) Atom(TM) Processor GPIO Controller.) -- C:\WINDOWS\System32\drivers\iaiogpio.sys [22016] ©
O58 - SDL:2015/07/10 09:24:22 A . (.Intel Corporation - Intel(R) Atom(TM) Processor I2C Controller.) -- C:\WINDOWS\System32\drivers\iaioi2c.sys [61936] ©
O58 - SDL:2015/07/10 09:24:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [524640] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [333664] =>.Microsoft Windows®
O58 - SDL:2015/06/12 05:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [123968] =>.Tonec Inc.®
O58 - SDL:2015/12/01 11:24:46 A . (.Atheros Communications, Inc. - Atheros Ar81xx series PCI-E Gigabit Etherne.) -- C:\WINDOWS\System32\drivers\L1C60x86.sys [86640] =>.Atheros Communications Inc.®
O58 - SDL:2010/10/21 14:57:18 A . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controll.) -- C:\WINDOWS\System32\drivers\L1C62x86.sys [68208] =>.Atheros Communications Inc.®
O58 - SDL:2015/07/10 09:24:23 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x86.sys [110792] =>.Qualcomm Atheros®
O58 - SDL:2015/07/10 09:24:22 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [94048] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [88928] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [83296] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:22 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [69472] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [52064] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [464736] =>.Microsoft Windows®
O58 - SDL:2014/01/14 15:13:28 A . (...) -- C:\WINDOWS\System32\drivers\MoborobAssDriver.sys [12072] {0231D10DAC1BCB58D969F8A97E97D99C}
O58 - SDL:2015/07/10 09:24:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/10/13 20:01:51 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda32v.sys [162592] =>.NVIDIA Corporation®
O58 - SDL:2015/10/13 20:01:51 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [10707120] =>.NVIDIA Corporation®
O58 - SDL:2015/07/10 09:24:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [119136] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [142176] =>.Microsoft Windows®
O58 - SDL:2015/11/27 00:08:32 A . (.NVIDIA Corporation - Stereoscopic 3D USB controller driver.) -- C:\WINDOWS\System32\drivers\nvstusb.sys [444128] =>.NVIDIA Corporation®
O58 - SDL:2015/10/13 20:01:51 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad32v.sys [32912] =>.NVIDIA Corporation®
O58 - SDL:2015/11/25 20:53:38 A . (.Windows (R) Codename Longhorn DDK provider - Serial Device Driver.) -- C:\WINDOWS\System32\drivers\PciIsaSerial.sys [65536] ©
O58 - SDL:2015/11/25 20:53:38 A . (. - Parallel driver for PCI Parallel Port..) -- C:\WINDOWS\System32\drivers\PciPPorts.sys [82944]
O58 - SDL:2015/11/25 20:53:38 A . (. - Serial driver for PCI Serial Port..) -- C:\WINDOWS\System32\drivers\PciSPorts.sys [115200]
O58 - SDL:2015/07/10 09:24:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [51040] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [51552] =>.Microsoft Windows®
O58 - SDL:2015/10/08 08:00:30 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\WINDOWS\System32\drivers\scdemu.sys [114368] {227EFDF22825BA270530FB09D52B32F8} ©
O58 - SDL:2015/07/10 09:24:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [41312] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [79200] =>.Microsoft Windows®
O58 - SDL:2014/06/04 15:17:30 A . (.IObit - SmartDefrag Driver.) -- C:\WINDOWS\System32\drivers\SmartDefragDriver.sys [18624] =>.IObit Information Technology®
O58 - SDL:2015/07/10 09:24:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:28 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [31744]
O58 - SDL:2015/12/01 11:23:24 A . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\viahduaa.sys [576704] {48B232AC601840B7ECE54FBCBEB5A947} ©
O58 - SDL:2015/12/01 11:23:24 A . (.Creative Technology Ltd. - Creative Audio Driver.) -- C:\WINDOWS\System32\drivers\VMfilt32.sys [36032] {48B232AC601840B7ECE54FBCBEB5A947} ©
O58 - SDL:2015/07/10 09:24:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [149856] =>.Microsoft Windows®
O58 - SDL:2015/07/10 09:24:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [276832] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (34) - 19s
O61 - LFC: 2015/12/12 19:01:35 A . (..) -- C:\Users\drago300\Documents\MEGAsync Downloads\Adobe Photoshop CC 2015.0.0 R.88 X64 Portable by algeriamine\Adobe Photoshop CC 2015.0.0 R.88 X64 Portable by algeriamine\Photoshop.exe [821755538]
O61 - LFC: 2015/12/12 19:07:22 A . (.KingRoot.) -- C:\Users\drago300\Desktop\KingRootSetup_v3.1.0.1122_105002.exe [23373632]
O61 - LFC: 2015/12/09 21:19:24 A . (.Installer application.) -- C:\Users\drago300\Desktop\mobogenie.exe [929808] {1121B7D54FAD61F171E2DE67A2070558F9A3} =>PUP.Optional.Mobogenie
O61 - LFC: 2015/12/12 19:15:25 A . (.Tencent.) -- C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\dlcore.dll [2031160] {7170BD93CF3F189AE6452B514C49340E} =>PUP.Optional.TencentAddressBar
O61 - LFC: 2015/12/12 19:15:25 A . (.Tencent.) -- C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\DownloadProxyPS.dll [69176] {7170BD93CF3F189AE6452B514C49340E} =>PUP.Optional.TencentAddressBar
O61 - LFC: 2015/12/12 19:15:25 A . (.Tencent.) -- C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\extract.dll [367480] {5D0688F9040AD52287FC32ADECEB85B0} =>PUP.Optional.TencentAddressBar
O61 - LFC: 2015/12/12 19:15:25 A . (.Tencent.) -- C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\Tencentdl.exe [904760] {7170BD93CF3F189AE6452B514C49340E} =>PUP.Optional.TencentAddressBar
O61 - LFC: 2015/12/12 19:15:25 A . (.Tencent Technology(Shenzhen) Company Limited.) -- C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\tnproxy.dll [724536] {7170BD93CF3F189AE6452B514C49340E} =>PUP.Optional.TencentAddressBar
O61 - LFC: 2015/12/13 16:10:02 A . (..) -- C:\Users\drago300\AppData\Roaming\systweak\regclean pro\Version 6.1\backup3.bin [723] =>PUP.Optional.RegistryPowerCleaner
O61 - LFC: 2015/12/13 16:10:02 A . (..) -- C:\Users\drago300\AppData\Roaming\systweak\regclean pro\Version 6.1\backup4.bin [712] =>PUP.Optional.RegistryPowerCleaner
O61 - LFC: 2015/12/13 16:10:02 A . (..) -- C:\Users\drago300\AppData\Roaming\systweak\regclean pro\Version 6.1\backup6.bin [530] =>PUP.Optional.RegistryPowerCleaner
O61 - LFC: 2015/12/09 16:13:13 A . (..) -- C:\Users\drago300\AppData\Roaming\NVIDIA\GLCache\4c3de65299f49c5ddd70d461728b7ed4\d7845583ac2fd3d0\f74fb3f7bc1466f1.bin [49811]
O61 - LFC: 2015/12/12 15:14:43 A . (..) -- C:\Users\drago300\AppData\Roaming\mgyun\cache3.bin [8404]
O61 - LFC: 2015/12/11 02:14:04 A . (..) -- C:\Users\drago300\AppData\Local\Pool Download\{43F5476F-0FF0-79CC-EB42-A8A589347D4A}\hkg.dll [12800]
O61 - LFC: 2015/12/11 02:14:04 A . (..) -- C:\Users\drago300\AppData\Local\Pool Download\{43F5476F-0FF0-79CC-EB42-A8A589347D4A}\PoolDownload.dll [26624]
O61 - LFC: 2015/12/11 02:14:04 A . (..) -- C:\Users\drago300\AppData\Local\Pool Download\{43F5476F-0FF0-79CC-EB42-A8A589347D4A}\{81CE9F4A-4F98-0D46-FAFF-A70C06B8A336}.dll [30720]
O61 - LFC: 2015/12/09 15:36:30 A . (..) -- C:\Users\drago300\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [17128]
O61 - LFC: 2015/12/13 12:36:43 A . (..) -- C:\Users\drago300\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2015/12/13 16:44:14 A . (..) -- C:\Users\drago300\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635856136772181725.bin [66140]
O61 - LFC: 2015/12/11 00:28:43 A . (..) -- C:\Users\drago300\AppData\Local\Packages\Microsoft.Getstarted_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8394c8fd8a807_67e18daed35a1146_0_0.bin [16384]
O61 - LFC: 2015/12/09 10:31:52 A . (..) -- C:\Users\drago300\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [6078319]
O61 - LFC: 2015/12/12 11:37:31 A . (..) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\U74SQF6P\cmi_istartpageing[1].exe [225456] {1121AF2280E6D4410FC903E7E5EB6D4F5C9D} =>PUP.Optional.IstartPageing
O61 - LFC: 2015/12/13 17:09:51 A . (.Copyright 2013.) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\U74SQF6P\Validate[2].exe [61981]
O61 - LFC: 2015/12/11 02:14:23 A . (..) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\8DMFT947\4bbda52393b575e64d530bd478a6717b[1].exe [55635]
O61 - LFC: 2015/12/13 10:47:12 A . (..) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\8DMFT947\FinalInstaller_dotnet4[1].exe [3030016]
O61 - LFC: 2015/12/13 10:49:50 A . (.systweak.com.) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\8DMFT947\rcpsetup_17970[1].exe [4614360] {2E9BD3DBC5333ACCF13A746389196ACF}
O61 - LFC: 2015/12/13 17:08:38 A . (..) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\8DMFT947\setup_362[1].exe [254464]
O61 - LFC: 2015/12/13 17:09:26 A . (..) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\8DMFT947\VuuPC_VO2_8907[1].exe [233181] =>PUP.Optional.VuuPC
O61 - LFC: 2015/12/13 17:08:50 A . (..) -- C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\7CZ5NVKU\policyname[1].exe [57598]
O61 - LFC: 2015/12/11 02:17:46 A . (..) -- C:\Users\drago300\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635853868771258434.bin [67032]
O61 - LFC: 2015/12/09 16:19:07 A . (..) -- C:\Users\drago300\AppData\Local\Follow Plugin\{43F5476F-0FF0-79CC-EB42-A8A589347D4A}\FollowPlugin.dll [26624]
O61 - LFC: 2015/12/09 16:19:07 A . (..) -- C:\Users\drago300\AppData\Local\Follow Plugin\{43F5476F-0FF0-79CC-EB42-A8A589347D4A}\wsonyb.dll [12800]
O61 - LFC: 2015/12/09 16:19:07 A . (..) -- C:\Users\drago300\AppData\Local\Follow Plugin\{43F5476F-0FF0-79CC-EB42-A8A589347D4A}\{81CE9F4A-4F98-0D46-FAFF-A70C06B8A336}.dll [30720]
O61 - LFC: 2015/12/11 02:15:42 A . (..) -- C:\Users\drago300\AppData\Local\03000200-1449800131-0500-0006-000700080009\Uninstall.exe [51069]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (16) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe http://www.istartpageing.com/ =>PUP.Optional.IstartPageing
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.istartpageing.com/ =>PUP.Optional.IstartPageing
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ©

---\\ Recherche d'infection sur les navigateurs (15) - 7s
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.defaultenginename", "istartpageing"); =>PUP.Optional.IstartPageing
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.alias", "istartpageing"); =>PUP.Optional.IstartPageing
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.iconURL", "http://www.istartpageing.com/favicon.ico"); =>PUP.Optional.IstartPageing
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.name", "istartpageing"); =>PUP.Optional.IstartPageing
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.ptid", "cmi"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.searchengine.uid", "[xpconnect wrapped nsIUUIDGenerator]"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.uid", "MaxtorX6L300S0_L6200000"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.searchengine.url", "http://www.istartpageing.com/web/?type=ds&ts=1449916706&z=38801ca5e3a89b4b5043a55g4z[...] =>PUP.Optional.IstartPageing
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("browser.search.selectedEngine", "istartpageing"); =>PUP.Optional.IstartPageing
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("extensions.enabledAddons", "mozilla_cc2%40internetdownloadmanager.com:6.25.3,deskCutv2%40gmail.com:0.1.13,yahooprotecte[...] =>PUP.Optional.DeskCut
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [drago300 - 3ns70pod.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {fcd9f10e-0daa-405f-bca0-0dd3f37c59d9} - (Search Provided by Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (42) - 1s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [161792] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [161792] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [218112] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1195520] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [737792] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [165376] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [838656] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [25088] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [75776] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [116224] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [87040] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [822272] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [183808] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [105984] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [243712] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [312320] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [68096] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1543680] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [143360] ©
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [152064] ©
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [129024] ©
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [53760] ©
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [738304] ©
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [807936] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [307200] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] ©
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [193024] ©
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [520192] ©
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [733696] ©
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [546816] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [185344] ©
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [236032] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [22528] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [93184] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [587264] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [410112] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [57344] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [392704] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [254976] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1829376] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [802816] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [544768] ©

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 36s

SR - Auto [14/05/2009] [ 759048] ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe =>.ABBYY SOLUTIONS LIMITED®
SS - Demand [28/10/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [09/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [04/11/2015] [ 827680] Advanced SystemCare Service 9 (AdvancedSystemCareService9) . (.IObit.) - C:\Program Files\IObit\Advanced SystemCare\ASCService.exe =>.IObit Information Technology®
SR - Auto [30/11/2015] [ 174416] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
SR - Auto [13/10/2015] [ 915600] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
SS - Auto [02/12/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [02/12/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [17/07/2015] [ 882464] IMF Service (IMFservice) . (.IObit.) - C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe =>.IObit Information Technology®
SR - Auto [09/10/2015] [ 2934048] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology®
SS - Demand [10/12/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [13/10/2015] [ 1706128] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
SR - Auto [13/10/2015] [19775632] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation®
SR - Auto [13/10/2015] [ 670512] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
SR - Auto [10/12/2015] [ 441344] Clear Airline (peqexojy) . (...) - C:\Program Files\03000200-1449674386-0500-0006-000700080009\knsp25A6.tmp =>PUP.Optional.CrossRider
SR - Auto [12/12/2015] [ 261320] SSFK (SSFK) . (.TODO: <公司名>.) - C:\Program Files\SFK\SSFK.exe {11218830637131DAB48BE3AFFF6BC45350BA} =>PUP.Optional.MyWebSearch
SS - Demand [03/12/2014] [ 743688] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe =>.DEVGURU CO LTD®
SR - Auto [13/10/2015] [ 416432] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®
SR - Auto [01/12/2015] [ 48256] @oem25.inf,%ViaKaraokeSrv.SvcDesc%;VIA Karaoke digital mixe (VIAKaraokeService) . (.VIA Technologies, Inc..) - C:\Windows\System32\viakaraokesrv.exe =>.VIA Technologies Inc.®
SS - Demand [09/12/2015] [ 344232] WindowsMangerProtect Service (WindowsMangerProtect) . (.Sysinternals process Explorer.) - C:\ProgramData\Tmp0x0x\ProtectWindowsManager.exe {11215BD52CE822E39F61AAE0642B2F566ABD} ©
SS - Demand [04/12/2015] [ 1586688] WNetEnhancer Service (WNetEnhancer Service) . (...) - C:\Program Files\WNetEnhancer\WNetEnhancer Internet Enhancer\969e88b129d3e84258ecab0c8f9e2923.exe =>PUP.Optional.Wajam

---\\ Scan Additionnel (65) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\peqexojy =>PUP.Optional.CrossRider
C:\Program Files\03000200-1449674386-0500-0006-000700080009\knsp25A6.tmp =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\SSFK =>PUP.Optional.MyWebSearch
C:\Program Files\SFK\SSFK.exe =>PUP.Optional.MyWebSearch
C:\Program Files\RCP\RegCleanPro.exe =>PUP.Optional.RegistryPowerCleaner
C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job =>PUP.Optional.RegistryPowerCleaner
C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job =>PUP.Optional.RegistryPowerCleaner
C:\WINDOWS\System32\Tasks\RegClean Pro =>PUP.Optional.RegistryPowerCleaner
C:\WINDOWS\System32\Tasks\RegClean Pro_DEFAULT =>PUP.Optional.RegistryPowerCleaner
C:\WINDOWS\System32\Tasks\RegClean Pro_UPDATES =>PUP.Optional.RegistryPowerCleaner
C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\searchplugins\istartpageing.xml =>PUP.Optional.IstartPageing
C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\searchplugins\webssearches.xml =>PUP.Optional.WebsSearches
C:\Users\drago300\AppData\Roaming\Mozilla\Firefox\Profiles\3ns70pod.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PopupProduct =>PUP.Optional.CompatibleWebDir
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegClean Pro_is1 =>PUP.Optional.RegistryPowerCleaner
HKLM\SOFTWARE\FFPluginHp =>PUP.Optional.SweetSearch
HKLM\SOFTWARE\istartpageingSoftware =>PUP.Optional.IstartPageing
HKLM\SOFTWARE\Systweak =>PUP.Optional.Systweak
HKLM\SOFTWARE\WNetEnhancer =>PUP.Optional.Wajam
HKLM\SOFTWARE\yoursearchingSoftware =>PUP.Optional.YourSearching
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\WNetEnhancer =>PUP.Optional.Wajam
C:\Program Files\03000200-1449674386-0500-0006-000700080009 =>PUP.Optional.CrossRider
C:\Program Files\SFK =>PUP.Optional.MyWebSearch
C:\Program Files\WNetEnhancer =>PUP.Optional.Wajam
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro =>PUP.Optional.RegistryPowerCleaner
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WNetEnhancer =>PUP.Optional.Wajam
C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
C:\Users\drago300\AppData\Roaming\istartpageing =>PUP.Optional.IstartPageing
C:\Users\drago300\AppData\Roaming\OpenCandy =>PUP.Optional.OpenCandy
C:\Users\drago300\AppData\Roaming\systweak =>PUP.Optional.Systweak
C:\Users\drago300\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar
C:\WINDOWS\Prefetch\MOBOGENIE.EXE-BD9AF242.pf =>PUP.Optional.Mobogenie
C:\WINDOWS\Prefetch\MOBOGENIE.EXE-FFE4322B.pf =>PUP.Optional.Mobogenie
C:\WINDOWS\Prefetch\MOBOGENIEHELPER.EXE-B35041BA.pf =>PUP.Optional.Mobogenie
C:\WINDOWS\Prefetch\MOBOGENIEP2SP.EXE-917E70C3.pf =>PUP.Optional.Mobogenie
C:\WINDOWS\Prefetch\MOBOGENIESERVICE.EXE-25277E97.pf =>PUP.Optional.Mobogenie
C:\WINDOWS\Prefetch\MOBOGENIE_SETUP_3.3.7_10002.E-807CB202.pf =>PUP.Optional.Mobogenie
C:\WINDOWS\Prefetch\MOBOROBO-MOBOROBO_EN_SOFTONIC-A2D0085C.pf =>PUP.Optional.Softonic
C:\WINDOWS\Prefetch\MOBOROBO-MOBOROBO_EN_SOFTONIC-CCA02828.pf =>PUP.Optional.Softonic
C:\WINDOWS\Prefetch\MOBOROBO-MOBOROBO_EN_SOFTONIC-E26276AA.pf =>PUP.Optional.Softonic
C:\WINDOWS\Prefetch\UPOSPD_US_013010171.EXE-E681EA0B.pf =>PUP.OneSoftPerDay
C:\WINDOWS\Prefetch\VOPACKAGE.EXE-1930E0D2.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\WPM_V20.0.0.2508.EXE-6BBF9D8E.pf =>PUP.Optional.WpManager
C:\WINDOWS\Prefetch\WPM_V20.0.0.2508.EXE-73415D59.pf =>PUP.Optional.WpManager
C:\WINDOWS\Prefetch\WPM_V20.0.0.2508.EXE-AF811E89.pf =>PUP.Optional.WpManager
C:\Users\drago300\Desktop\mobogenie.exe =>PUP.Optional.Mobogenie
C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\dlcore.dll =>PUP.Optional.TencentAddressBar
C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\DownloadProxyPS.dll =>PUP.Optional.TencentAddressBar
C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\extract.dll =>PUP.Optional.TencentAddressBar
C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\Tencentdl.exe =>PUP.Optional.TencentAddressBar
C:\Users\drago300\AppData\Roaming\Tencent\QQPhoneManager\Components\QQDownload\tnproxy.dll =>PUP.Optional.TencentAddressBar
C:\Users\drago300\AppData\Roaming\systweak\regclean pro\Version 6.1\backup3.bin =>PUP.Optional.RegistryPowerCleaner
C:\Users\drago300\AppData\Roaming\systweak\regclean pro\Version 6.1\backup4.bin =>PUP.Optional.RegistryPowerCleaner
C:\Users\drago300\AppData\Roaming\systweak\regclean pro\Version 6.1\backup6.bin =>PUP.Optional.RegistryPowerCleaner
C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\U74SQF6P\cmi_istartpageing[1].exe =>PUP.Optional.IstartPageing
C:\Users\drago300\AppData\Local\Microsoft\Windows\INetCache\IE\8DMFT947\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC
HKLM\SYSTEM\CurrentControlSet\Services\WNetEnhancer Service =>PUP.Optional.Wajam
C:\Program Files\WNetEnhancer\WNetEnhancer Internet Enhancer\969e88b129d3e84258ecab0c8f9e2923.exe =>PUP.Optional.Wajam

---\\ Récapitulatif des éléments trouvés sur votre station (26) - 0s
http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/?p=220 =>PUP.Optional.MyWebSearch
http://www.nicolascoolman.fr/?p=558 =>PUP.Optional.RegistryPowerCleaner
http://www.nicolascoolman.fr/?p=4936 =>PUP.Optional.IstartPageing
http://www.nicolascoolman.fr/?p=248 =>PUP.Optional.WebsSearches
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.LightningNewTab
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.CompatibleWebDir
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SweetSearch
http://www.nicolascoolman.fr/?p=2580 =>PUP.Optional.Systweak
http://www.nicolascoolman.fr/?p=263 =>PUP.Optional.Wajam
http://www.nicolascoolman.fr/?p=5037 =>PUP.Optional.YourSearching
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore
http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=368 =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/?p=122 =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS
http://www.nicolascoolman.fr/?p=197 =>PUP.Optional.OpenCandy
http://www.nicolascoolman.fr/?p=215 =>PUP.Optional.Mobogenie
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Softonic
http://www.nicolascoolman.fr/?p=4127 =>PUP.OneSoftPerDay
http://www.nicolascoolman.fr/?p=401 =>PUP.Optional.Downware
http://www.nicolascoolman.fr/?p=173 =>PUP.Optional.WpManager
http://www.nicolascoolman.fr/?p=1216 =>PUP.Optional.VuuPC
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SearchEngine
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DeskCut
http://www.nicolascoolman.fr/?p=666 =>PUP.Optional.QuickStart

~ End of the scan, 16531 items in 169 seconds (898)(0)

Publicité


Signaler le contenu de ce document

Publicité