cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.12.17.244 Par Nicolas Coolman (2016/12/17)
~ Démarré par METIDJI (Administrator) (2016/12/17 11:51:07)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version:
~ Mode: Scanner
~ Rapport: C:\Users\METIDJI\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\METIDJI\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows Se7en Titan, 32-bit (Build 7600) =>.Microsoft Corporation

---\\ Navigateurs Internet (1) - 0s
~ MSIE: Internet Explorer v8.0.7600.16385

---\\ Informations sur les produits Windows (9) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : PMJBM
~ Windows Remaining Initializations Number : 3
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Logiciels de protection (2) - 0s
360 Total Security v9.0.0.1069 (Protection)
SMADAV version 9.7.1 v9.7.1 (Protection)

---\\ Surveillance de Logiciels (1) - 1s
~ Adobe Reader 9.5.2 - Français (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2056.808 MB (30% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 27 GB (24%) free of 109 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: METIDJI-PC
~ User Name: METIDJI
~ Logged in as Administrator

---\\ Enumération des unités disques (4) - 0s
~ Drive C: has 27 GB free of 109 GB (System)
~ Drive D: has 65 GB free of 117 GB
~ Drive F: has 1 GB free of 10 GB
~ Drive J: has 1 GB free of 7 GB

---\\ Etat du Centre de Sécurité Windows (19) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center] FirewallOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center] UacDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UpdatesDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] UacDisableNotify: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 3s
[MD5.2626FC9755BE22F805D3CFA0CE3EE727] - 20/09/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [324224] =>.Microsoft Corporation
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 20/09/2016 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [324224] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 20/09/2016 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [324224] =>.Microsoft Corporation
[MD5.78B9ADA2BC8946AF7B17678E0D07A773] - 20/09/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [324224] =>.Microsoft Corporation
[MD5.37CDB7E72EB66BA85A87CBE37E7F03FD] - 20/09/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [324224] =>.Microsoft Corporation
[MD5.58C94EAE54BF0C5E2B80B2E5E7744D4C] - 20/09/2016 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [324224] =>.Microsoft Corporation
[MD5.6D5A49D6479EB753C7879F73A4C35E0F] - 20/09/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [324224] =>.Microsoft Corporation
[MD5.D8714A5FB3141F8226D16861F20C5AC4] - 20/09/2016 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [324224] =>.Microsoft Corporation
[MD5.DDC040FDB01EF1712A6B13E52AFB104C] - 20/09/2016 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [324224] =>.Microsoft Corporation
[MD5.338C86357871C167A96AB976519BF59E] - 20/09/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [324224] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 20/09/2016 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [324224] =>.Microsoft Corporation
[MD5.BA6E70AA0E6091BC39DE29477D866A77] - 20/09/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [324224] =>.Microsoft Corporation
[MD5.83D1ECEA8FAAE75604C0FA49AC7AD996] - 20/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [324224] =>.Microsoft Corporation
[MD5.717A2207FD6F13AD3E664C7D5A43C7BF] - 20/09/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [324224] =>.Microsoft Corporation
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 20/09/2016 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [324224] =>.Microsoft Corporation
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 20/09/2016 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [324224] =>.Microsoft Corporation
[MD5.CA7570E42522E24324A12161DB14EC02] - 20/09/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [324224] =>.Microsoft Corporation
[MD5.DD52A733BF4CA5AF84562A5E2F963B91] - 20/09/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [324224] =>.Microsoft Corporation
[MD5.A8F59428E9F361C7AC42A94AC1560BC9] - 20/09/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [324224] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 20/09/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [324224] =>.Microsoft Corporation
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 20/09/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [324224] =>.Microsoft Corporation
[MD5.C5FF95883FFEF704D50C40D21CFB3AB5] - 20/09/2016 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [324224] =>.Microsoft Corporation
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 20/09/2016 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [324224] =>.Microsoft Corporation
[MD5.CB39E896A2A83702D1737BFD402B3542] - 20/09/2016 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [324224] =>.Microsoft Corporation
[MD5.59F06B4968E58BC83DFC56CA4517960E] - 20/09/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [324224] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (10) - 1s
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe =>.IObit Information Technology®
O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: FairyService (FairyService) . (...) - C:\Program Files\Toolbar Fairy\FairyService.exe =>PUP.Optional.Youndoo
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology®
O23 - Service: NLCS Agent (NLCSAgent) . (...) - C:\Program Files\Classroom Spy Pro\bin\csagtprosvc.exe {389E5A14A04DF738F2D8F108F966BAC6}
O23 - Service: 360 Total Security (QHActiveDefense) . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe =>.QIHU 360 SOFTWARE CO. LIMITED®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: UC Browser Service (UCBrowserSvc) . (...) - C:\Program Files\UCBrowser\Application\UCService.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O23 - Service: Stardock WindowBlinds (WindowBlinds) . (.Stardock Corporation - WindowBlinds Service. Part of Stardock Win.) - C:\Program Files\Stardock\WindowBlinds\WBSrv.exe =>.Stardock Corporation®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (13) - 39s
SR - Auto [20/09/2016] [ 324224] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe =>.IObit Information Technology®
SR - Auto [20/09/2016] [ 324224] Apple Mobile Device (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [20/09/2016] [ 324224] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Auto [20/09/2016] [ 324224] FairyService (FairyService) . (...) - C:\Program Files\Toolbar Fairy\FairyService.exe =>PUP.Optional.Youndoo
SS - Demand [20/09/2016] [ 324224] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Acresso Software Inc.®
SS - Demand [20/09/2016] [ 324224] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SS - Demand [20/09/2016] [ 324224] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files\Common Files\LENOVO\easyplussdk\bin\EPHotspot.exe =>.LENOVO®
SS - Auto [20/09/2016] [ 324224] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology®
SR - Auto [20/09/2016] [ 324224] NLCS Agent (NLCSAgent) . (...) - C:\Program Files\Classroom Spy Pro\bin\csagtprosvc.exe {389E5A14A04DF738F2D8F108F966BAC6}
SR - Auto [20/09/2016] [ 324224] 360 Total Security (QHActiveDefense) . (.QIHU 360 SOFTWARE CO. LIMITED.) - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe =>.QIHU 360 SOFTWARE CO. LIMITED®
SS - Auto [20/09/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [20/09/2016] [ 324224] UC Browser Service (UCBrowserSvc) . (...) - C:\Program Files\UCBrowser\Application\UCService.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
SR - Auto [20/09/2016] [ 324224] Stardock WindowBlinds (WindowBlinds) . (.Stardock Corporation.) - C:\Program Files\Stardock\WindowBlinds\WBSrv.exe =>.Stardock Corporation®

---\\ Tâches planifiées en automatique (14) - 4s
O39 - APT: Unknown - (...) -- C:\Windows\Tasks\UCBrowserUpdater.job [324224] =>PUP.Optional.CertifiedToolbar
O39 - APT: Unknown - (...) -- C:\Windows\Tasks\UCBrowserUpdaterCore.job [324224] =>PUP.Optional.CertifiedToolbar
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\ASC8_PerformanceMonitor [324224]
O39 - APT: Unknown - (.IObit.) -- C:\Windows\System32\Tasks\ASC8_SkipUac_METIDJI [324224] =>.IObit
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\Camera Image [324224]
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\Fairy Task [324224]
O39 - APT: Unknown - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [324224] =>.Google Inc.
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\smadav [324224]
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\UCBrowserUpdater [324224] =>PUP.Optional.CertifiedToolbar
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\UCBrowserUpdaterCore [324224] =>PUP.Optional.CertifiedToolbar
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\Yahoo! Search Updater [324224]
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{7325580F-B20B-4F24-BA27-30C3F8063033} [324224]
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{99DF63CC-60E3-40F9-91C9-0336C5ED727F} [324224]
O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{D4BF7980-D152-471E-9000-674F0B86118F} [324224]

---\\ Applications lancées au démarrage du système (19) - 9s
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe =>.Alps Electric Co., LTD.®
O4 - HKLM\..\Run: [QHSafeTray] . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHSafeTray.exe =>.QIHU 360 SOFTWARE CO. LIMITED®
O4 - HKCU\..\Run: [{3B6BA5AC-FCE1-4CAC-A591-0315761D6DF8}] . (.Microsoft Corporation - Windows PowerShell.) -- C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe =>.Microsoft Corporation
O4 - HKCU\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe =>.IObit Information Technology®
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\.DEFAULT\..\Run: [Welcome Center] . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll =>.Microsoft Corporation
O4 - HKUS\.DEFAULT\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\Run: [Welcome Center] . (.Microsoft Corporation - Mise en route.) -- C:\Windows\System32\OobeFldr.dll =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3166968088-3685872357-362861919-1000\..\Run: [{3B6BA5AC-FCE1-4CAC-A591-0315761D6DF8}] . (.Microsoft Corporation - Windows PowerShell.) -- C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3166968088-3685872357-362861919-1000\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe =>.IObit Information Technology®
O4 - HKUS\S-1-5-21-3166968088-3685872357-362861919-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.

---\\ Processus lancés (30) - 3s
[MD5.33D7E76F7DE0A73504742765105F178F] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [821024] [PID.844] =>.IObit Information Technology®
[MD5.DC539760645FBE7EB9CE23F30B8CB0AC] - (.Stardock Corporation - WindowBlinds Service. Part of Stardock Win.) -- C:\Program Files\Stardock\WindowBlinds\WBSrv.exe [84592] [PID.1336] =>.Stardock Corporation®
[MD5.7001D55695428B95065F1ADEEEF3E54A] - (.Stardock Software, Inc - Stardock WindowBlinds 8.) -- C:\Program Files\Stardock\WindowBlinds\WBCore.exe [45680] [PID.1348] =>.Stardock Corporation®
[MD5.EEBDDBB9ADC46BE1BFE295EB0A501FC6] - (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [928168] [PID.1408] =>.QIHU 360 SOFTWARE CO. LIMITED®
[MD5.221564CC7BE37611FE15EACF443E1BF6] - (.Apple Inc. - YSLoader.exe.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [43336] [PID.304] =>.Apple Inc.®
[MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.1372] =>.Apple Inc.®
[MD5.E40036D9AF0299AD9F6D0842BFC058B1] - (...) -- C:\Program Files\Toolbar Fairy\FairyService.exe [198144] [PID.1500] =>PUP.Optional.Youndoo
[MD5.A3997C87D3AEDF8B6EF5E3F6B9681EE1] - (...) -- C:\Program Files\Classroom Spy Pro\bin\csagtprosvc.exe [1355728] [PID.520] {389E5A14A04DF738F2D8F108F966BAC6}
[MD5.6C0B4983E44435636E5871A952A3A9C3] - (...) -- C:\Program Files\UCBrowser\Application\UCService.exe [629648] [PID.2232] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.03943291FFF56DFDCADAFDCA15608460] - (...) -- C:\Program Files\Toolbar Fairy\FairyScanner.exe [320000] [PID.2468]
[MD5.79391331D6F021AF2F1105785C15F648] - (.IObit - Performance Monitor.) -- C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe [3051296] [PID.2476] =>.IObit Information Technology®
[MD5.E78FD29BBC505CA93151AED2C7ECFF4E] - (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) -- C:\Program Files\SMADAV\SMΔRTP.exe [1613824] [PID.2484] =>.SmadSoft
[MD5.E98D3E8DB50BDD746EA32328583A3F6F] - (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) -- C:\Program Files\360\Total Security\safemon\QHWatchdog.exe [124536] [PID.2716] =>.QIHU 360 SOFTWARE CO. LIMITED®
[MD5.393D4B7724B5435F370C95C409CA5893] - (...) -- C:\Program Files\Classroom Spy Pro\bin\csagtpro.exe [1597904] [PID.3580] {389E5A14A04DF738F2D8F108F966BAC6}
[MD5.E2F72592A92CBF333AC1F76E9FF3271A] - (...) -- C:\Program Files\UCBrowser\Application\5.7.16817.1002\UCAgent.exe [2104208] [PID.2060] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.1524] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.3124] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.2244] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.2836] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.516C1D4897BB2AE1B4B45374E2498EE3] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3941584] [PID.1128] =>.Tonec Inc.
[MD5.B26B610E68F862777C491227B9616271] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files\Internet Download Manager\IEMonitor.exe [275608] [PID.4152] =>.Tonec Inc.®
[MD5.B63E5C7807334A3A8F731062F15462CC] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008] [PID.2904] =>.Adobe Systems, Incorporated®
[MD5.113F96E19E91672862E8DA99A1944C1E] - (.Autodesk, Inc. - Autodesk component.) -- C:\Users\METIDJI\AppData\Local\Temp\_AI3A23.tmp\setup.exe [451944] [PID.5040] =>.Autodesk, Inc.®
[MD5.BDB072B0E8C2B80B1AFD0D7319584A70] - (.M & M Syndicate Limited - FairyHandle.) -- C:\Program Files\Toolbar Fairy\FairyHandle.exe [3826176] [PID.4424]
[MD5.748E6D87DE491FC0EE6CB0FF46FF8C5B] - (.Internet Download Manager, Tonec Inc. - Broker for reading of IDM settings.) -- C:\Program Files\Internet Download Manager\idmBroker.exe [74904] [PID.2700] =>.Tonec Inc.®
[MD5.C0199E9E29173CA75F6878868DED7D3B] - (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMGrHlp.exe [519320] [PID.5316] =>.Tonec Inc.®
[MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.5648] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.3908] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
[MD5.B1119682F28A84E23803467863464BA9] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\METIDJI\Desktop\ZHPDiag3.exe [2594304] [PID.4120] =>.Nicolas Coolman
[MD5.974DB844F522FA70913E327848C48899] - (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe [1154448] [PID.5548] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®

---\\ Google Chrome, Démarrage,Recherche,Extensions (14) - 1s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [gklhnpfkcfpkjcihhjbgmhgkcajamlmd] Download Ninja
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o
G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc.
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (27) - 7s
M0 - MFSP: prefs.js [METIDJI - lwayqg8e.default] http://www.google.dz/ =>.Google Inc.
P2 - EXT: (.mozilla.org - Default Plug-in.) -- C:\Program Files\Mozilla Firefox\Plugins\npnul32.dll =>.Mozilla Corporation®
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT: (.Adobe Inc. - Acrobate Reader.) -- C:\Program Files\Mozilla Firefox\Plugins\nppdf32.FRA =>.Adobe Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin2.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin3.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin4.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin5.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin6.dll =>.Apple Inc.
P2 - EXT: (.Apple Inc. - The QuickTime Plugin allows you to view a w.) -- C:\Program Files\Mozilla Firefox\Plugins\npqtplugin7.dll =>.Apple Inc.
P2 - EXT: (...) -- C:\Program Files\Mozilla Firefox\Plugins\QuickTimePlugin.class
P2 - EXT FILE: (.Adanak 1.0.1 - .) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{3c433beb-079f-4f3d-a7d8-3be3076f2fbe}.xpi =>PUP.Optional.Adanak
P2 - EXT FILE: (.Bing - Bing. Search by Microsoft..) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\bingp.xml =>.Bing
P2 - EXT FILE: (.Yahoo! Search - .) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\dsrlte1.xml =>PUP.Optional.PaybyAds
P2 - EXT FILE: (.Only Search - My Online Search.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\MyOnlineSearch.xml
P2 - EXT FILE: (.Search The Web (Only-Search) - .) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\onlysearchkms.xml =>PUP.Optional.OnlySearch
P2 - EXT: (...) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam
P2 - EXT: (.iWebar - Ge-Forces.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\45633fba7e7d40fea9c29@9dc18447eea04021a325caf3.com =>PUP.Optional.CrossRider
P2 - EXT: (.Cinema Plus - CinPlus-2.5c.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\BGKGT66124770@ZYFBNPM50498512.com =>PUP.Optional.CrossRider
P2 - EXT: (.lightningnewtab.com - Fast Start.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\faststartff@gmail.com =>PUP.Optional.LightningNewTab
P2 - EXT: (.OB - SavePass 1.2.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\VJKPXI46039420@JMZUIOB85844870.com
P2 - EXT: (.Object Browser - Sense1.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\warnerroberts@hotmail.com
P2 - EXT: (.Goobzo - Shopper-Pro.) -- C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} =>.Superfluous.Goobzo
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc.
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate
P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll =>PUP.Optional.GlobalUpdate

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://searchsimple-a.akamaihd.net/ =>.Superfluous.AkamaiHD
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://istart.webssearches.com/ =>PUP.Optional.IsStart
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://searchsimple-a.akamaihd.net/ =>.Superfluous.AkamaiHD
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (2) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (9) - 1s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} . (...) -- C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer32.dll (.not file.)
O2 - BHO: MiniGetHelper - {10E1725C-7237-41A9-954A-04DCCB1FD16C} . (.MiniSoft - MiniGetHelper.) -- C:\Program Files\MiniGet\MiniGetHelper1.11.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll =>.Adobe Systems, Incorporated®
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_102\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: Advanced SystemCare Surfing Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} . (.IObit - Advanced SystemCare 8 ASCPlugin_Protection.) -- C:\Program Files\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll =>.IObit Information Technology®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_102\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: (no name) - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (.Orphan.) (.not file.)

---\\ Raccourcis Global Startup (104) - 13s
O4 - GS\Desktop [Administrateur]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A95000000001}\SC_Reader.ico =>.Adobe Inc.
O4 - GS\Desktop [Administrateur]: Foxit Reader.lnk . (...) C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{6EF953B4-DB16-4E59-87CF-B61783DE6988}\_EB0289AFF01ECC5FB19ABF.exe
O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrateur]: LMTOOLS Utility.lnk . (.Macrovision Corporation - LMTOOLS Utility.) C:\Program Files\Autodesk Network License Manager\lmtools.exe =>.Macrovision Corporation
O4 - GS\Desktop [Administrateur]: Microsoft PowerPoint 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Desktop [Administrateur]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch
O4 - GS\Desktop [Administrateur]: WinRAR.lnk . (...) C:\Program Files\WinRAR\WinRAR.exe
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\METIDJI\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD Starter.exe =>.Graphisoft SE
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\Quicklaunch [Administrateur]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Quicklaunch [Administrateur]: SPlayer.lnk . (...) C:\Program Files\SPlayer\splayer.exe {6C587715EE87072E7EB8816807E4BD39}
O4 - GS\Quicklaunch [Administrateur]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: avast! Antivirus Installer.lnk . (.AVAST Software - avast! Antivirus Installer.) C:\Program Files\AVAST Software\Avast\Setup\instup.exe =>.AVAST Software a.s.®
O4 - GS\TaskBar [Administrateur]: Internet Download Manager module (2).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.®
O4 - GS\TaskBar [Administrateur]: Internet Download Manager module (3).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.®
O4 - GS\TaskBar [Administrateur]: Internet Download Manager module (4).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.®
O4 - GS\TaskBar [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\TaskBar [Administrateur]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibilité au Clavier visuel.) C:\Windows\system32\osk.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch
O4 - GS\TaskBar [Administrateur]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\Desktop [METIDJI]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A95000000001}\SC_Reader.ico =>.Adobe Inc.
O4 - GS\Desktop [METIDJI]: Foxit Reader.lnk . (...) C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{6EF953B4-DB16-4E59-87CF-B61783DE6988}\_EB0289AFF01ECC5FB19ABF.exe
O4 - GS\Desktop [METIDJI]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [METIDJI]: LMTOOLS Utility.lnk . (.Macrovision Corporation - LMTOOLS Utility.) C:\Program Files\Autodesk Network License Manager\lmtools.exe =>.Macrovision Corporation
O4 - GS\Desktop [METIDJI]: Microsoft PowerPoint 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation®
O4 - GS\Desktop [METIDJI]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Desktop [METIDJI]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Desktop [METIDJI]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch
O4 - GS\Desktop [METIDJI]: WinRAR.lnk . (...) C:\Program Files\WinRAR\WinRAR.exe
O4 - GS\Desktop [METIDJI]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\METIDJI\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [METIDJI]: ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD Starter.exe =>.Graphisoft SE
O4 - GS\Quicklaunch [METIDJI]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\Quicklaunch [METIDJI]: QQPlayer.lnk . (.Tencent Technology Company limited - QQ Player.) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Quicklaunch [METIDJI]: SPlayer.lnk . (...) C:\Program Files\SPlayer\splayer.exe {6C587715EE87072E7EB8816807E4BD39}
O4 - GS\Quicklaunch [METIDJI]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O4 - GS\sendTo [METIDJI]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [METIDJI]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [METIDJI]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [METIDJI]: avast! Antivirus Installer.lnk . (.AVAST Software - avast! Antivirus Installer.) C:\Program Files\AVAST Software\Avast\Setup\instup.exe =>.AVAST Software a.s.®
O4 - GS\TaskBar [METIDJI]: Internet Download Manager module (2).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.®
O4 - GS\TaskBar [METIDJI]: Internet Download Manager module (3).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.®
O4 - GS\TaskBar [METIDJI]: Internet Download Manager module (4).lnk . (.Tonec Inc. - Internet Download Manager module.) C:\Program Files\Internet Download Manager\IDMGrHlp.exe =>.Tonec Inc.®
O4 - GS\TaskBar [METIDJI]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\TaskBar [METIDJI]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibilité au Clavier visuel.) C:\Windows\system32\osk.exe =>.Microsoft Corporation
O4 - GS\TaskBar [METIDJI]: Search.lnk . (...) C:\ProgramData\DSearchLink\DSearchLink.exe -url http://www.only-search.com/ =>PUP.Optional.OnlySearch
O4 - GS\TaskBar [METIDJI]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O4 - GS\TaskBar [METIDJI]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [METIDJI]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [METIDJI]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\CommonDesktop [Public]: 360 Total Security.lnk . (.QIHU 360 SOFTWARE CO. LIMITED - 360 Total Security.) C:\Program Files\360\Total Security\QHSafeMain.exe =>.QIHU 360 SOFTWARE CO. LIMITED®
O4 - GS\CommonDesktop [Public]: Adobe Reader 9.lnk . (.Adobe Systems Incorporated - Adobe Reader 9.5.) C:\Program Files\Adobe\Reader 9.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\ArchiCAD Starter.exe =>.Graphisoft SE
O4 - GS\CommonDesktop [Public]: BIMx pour ArchiCAD 16.lnk . (.Graphisoft SE - ArchiCAD 16.0.0 Component.) C:\Program Files\GRAPHISOFT\ArchiCAD 16\Extensions\BIMx\BIMx.exe =>.Graphisoft SE
O4 - GS\CommonDesktop [Public]: Java Web Start.lnk . (...) C:\Program Files\Java\j2re1.4.2_04\javaws\javaws.exe
O4 - GS\CommonDesktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) C:\Program Files\QuickTime\QuickTimePlayer.exe =>.Apple Inc.®
O4 - GS\CommonDesktop [Public]: SHAREit.lnk . (.Lenovo - SHAREit.) C:\Program Files\Lenovo\SHAREit\Shareit.exe =>.LENOVO®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: SMADΔV.lnk . (.Smadsoft - Smadav USB Antivirus & Additional Protectio.) C:\Program Files\SMADAV\SMΔRTP.exe =>.SmadSoft
O4 - GS\CommonDesktop [Public]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://istart.webssearches.com/ =>PUP.Optional.IsStart
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.8.1 192.168.8.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{54BD7A77-9CDB-4E35-AD4B-C1030FDA7C7F}: DhcpNameServer = 192.168.8.1 192.168.8.1 =>.Local IP Adress

---\\ Protocole additionnel (24) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (72) - 25s
O42 - Logiciel: 360 Total Security - (.360 Security Center.) [HKLM] -- 360TotalSecurity =>.QIHU 360 SOFTWARE CO. LIMITED®
O42 - Logiciel: Adanak - (.Adanak.) [HKLM] -- Adanak =>PUP.Optional.Adanak
O42 - Logiciel: Adobe Reader 9.5.2 - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-A95000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Advanced SystemCare 8 - (.IObit.) [HKLM] -- Advanced SystemCare 8_is1 =>.IObit Information Technology®
O42 - Logiciel: AGEIA PhysX v7.11.13 - (.AGEIA Technologies, Inc..) [HKLM] -- {95FC26FB-19FD-4A96-BBB1-B1062E8648F5} =>.AGEIA Technologies, Inc.
O42 - Logiciel: Allgemeine Runtime Files (x86) - (.Sereby Corporation.) [HKLM] -- {1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1 =>.Sereby Corporation
O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM] -- {D9DAD0FF-495A-472B-9F10-BAE430A26682} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {18D47FA1-0440-48D3-A7E0-DA09537FF471} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc.
O42 - Logiciel: ArchiCAD 16 FRA - (.GRAPHISOFT.) [HKLM] -- 001FFF1FFF16FF00FF0501F01F02F000-R1 =>.Graphisoft
O42 - Logiciel: Autodesk AutoCAD Performance Feedback Tool Version 1.2.2 - (.Autodesk.) [HKLM] -- {85735431-6CD3-4B16-BEC8-95332034E53B} =>.Autodesk
O42 - Logiciel: Autodesk CAD Manager Tools - (.Autodesk.) [HKLM] -- {5783F2D7-0111-0409-0010-0060B0CE6BBA} =>.Autodesk
O42 - Logiciel: Autodesk Material Library 2011 - (.Autodesk.) [HKLM] -- {9DEABCB6-B759-4D52-92F8-51B34A2B4D40} =>.Autodesk
O42 - Logiciel: Autodesk Material Library 2011 Base Image library - (.Autodesk.) [HKLM] -- {CD1E078C-A6B9-47DA-B035-6365C85C7832} =>.Autodesk
O42 - Logiciel: Autodesk Material Library 2015 - (.Autodesk.) [HKLM] -- {427F733F-4D6C-45BC-9324-EB743104C321} =>.Autodesk
O42 - Logiciel: Autodesk Network License Manager - (.Autodesk.) [HKLM] -- {EAB8A41D-FABA-4569-A0A1-60A8B358D6F1} =>.Autodesk
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B} =>.Apple Inc.
O42 - Logiciel: Camera Image - (.Form Cooking corp.) [HKCU] -- {9563BC59-9556-4805-8CD4-886781779D8D}
O42 - Logiciel: Dell Touchpad - (.ALPS ELECTRIC CO., LTD..) [HKLM] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.®
O42 - Logiciel: DirectX 9.0c Extra Files (x86, x64) - (.Sereby Corporation.) [HKLM] -- {8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1 =>.Sereby Corporation
O42 - Logiciel: FARO LS 1.1.406.58 - (.FARO Scanner Production.) [HKLM] -- {951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C} =>.FARO Scanner Production
O42 - Logiciel: FL Studio 12 - (.Image-Line.) [HKLM] -- FL Studio 12 =>.Image Line®
O42 - Logiciel: FL Studio ASIO - (.Image-Line.) [HKLM] -- FL Studio ASIO =>.Image Line®
O42 - Logiciel: Foxit Reader - (.Foxit Software.) [HKLM] -- {6EF953B4-DB16-4E59-87CF-B61783DE6988} =>.Foxit Software
O42 - Logiciel: Ge-Force - (.iWebar.) [HKLM] -- Ge-Force =>PUP.Optional.CrossRider
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {1E04F83B-2AB9-4301-9EF7-E86307F79C72} =>.Google
O42 - Logiciel: HashCheck Shell Extension (x86-32) - (.Kai Liu.) [HKLM] -- HashCheck Shell Extension =>.Kai Liu
O42 - Logiciel: HD-V2.1 - (.InfoHD-V2.1.) [HKLM] -- HD-V2.1
O42 - Logiciel: HSPA USB Modem - (..) [HKLM] -- {06ADE2A0-E46A-4A84-A211-64CF50520185}
O42 - Logiciel: HSPA USB Modem - (..) [HKLM] -- InstallShield_{06ADE2A0-E46A-4A84-A211-64CF50520185}
O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM] -- IL Download Manager =>.Image Line®
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: istartsurf uninstall - (.istartsurf.) [HKLM] -- istartsurf uninstall =>PUP.Optional.IsStart
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {0718A90E-93AA-49AF-A4FE-0165ACD91DF0} =>.Apple Inc.
O42 - Logiciel: Java 2 Runtime Environment, SE v1.4.2_04 - (.Sun Microsystems, Inc..) [HKLM] -- {7148F0A8-6813-11D6-A77B-00B0D0142040} =>.Sun Microsystems, Inc.
O42 - Logiciel: Java 8 Update 102 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180102F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Java(TM) 6 Update 32 - (.Oracle.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216032FF} =>.Oracle
O42 - Logiciel: K-Lite Mega Codec Pack 11.3.6 - (.KLite Inc.) [HKLM] -- KLiteCodecPack_is1 =>.KLite Inc
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: MiniGet 1.0.8.2504 - (.MiniGet.) [HKLM] -- MiniGet
O42 - Logiciel: Module linguistique d'AutoCAD Architecture 2011 - Français - (.Autodesk.) [HKLM] -- {5783F2D7-9004-040C-1002-0060B0CE6BBA} =>.Autodesk
O42 - Logiciel: OffersWizard Network System Driver - (..) [HKLM] -- inethnfd
O42 - Logiciel: Only-search - (.onlysearch.) [HKCU] -- onlysearch =>PUP.Optional.OnlySearch
O42 - Logiciel: Petit Larousse 2009 - (.Larousse.) [HKLM] -- {422FADA9-FED2-41D7-B5FA-472BB98B7784} =>.Larousse
O42 - Logiciel: QQ??3.7 - (.????(??)????.) [HKCU] -- QQPlayer
O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM] -- {7BE15435-2D3E-4B58-867F-9C75BED0208C} =>Riskware.QuickTime
O42 - Logiciel: SavePass 1.1 - (.OB.) [HKLM] -- SavePass 1.1
O42 - Logiciel: Sense - (.Object Browser.) [HKLM] -- Sense
O42 - Logiciel: SHAREit - (.Lenovo Group Limited.) [HKLM] -- SHAREit_is1 =>.LENOVO®
O42 - Logiciel: Shopper-Pro - (..) [HKLM] -- ShopperPro =>PUP.Optional.ShopperPro
O42 - Logiciel: Skype™ 7.30 - (.Skype Technologies S.A..) [HKLM] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: SMADAV version 9.7.1 - (.SmadSoft.) [HKLM] -- {8B9FA5FF-3E61-4658-B0DA-E6DDB46D6BAD}_is1 =>.SmadSoft
O42 - Logiciel: snipsmart - (.snipsmart.) [HKLM] -- snipsmart =>PUP.Optional.SnipSmart
O42 - Logiciel: Software Version Updater - (..) [HKLM] -- {99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} =>PUP.Optional.SoftwareUpdater
O42 - Logiciel: SPlayer - (..) [HKLM] -- SPlayer
O42 - Logiciel: Stardock WindowBlinds - (.Stardock Software, Inc..) [HKLM] -- Stardock WindowBlinds =>.Stardock Corporation®
O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM] -- IObit Surfing Protection_is1 =>.IObit Information Technology®
O42 - Logiciel: Toolbar Fairy - (.M & M Syndicate Limited.) [HKLM] -- {4B2B17A4-BC01-4FF6-8616-F775C0F2A7AB}
O42 - Logiciel: UC Browser - (.UCWeb Inc..) [HKLM] -- UCBrowser =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O42 - Logiciel: Update Service YourFileDownloader - (.http://yourfiledownloader.org.) [HKCU] -- Update Service YourFileDownloader =>PUP.Optional.YourFileDownloader
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: webssearches uninstall - (.webssearches.) [HKLM] -- webssearches uninstall =>PUP.Optional.WebsSearches
O42 - Logiciel: WibuKey Setup (WibuKey Remove) - (.WIBU-SYSTEMS AG.) [HKLM] -- {00060000-0000-1004-8002-0000C06B5161} =>.WIBU-SYSTEMS AG
O42 - Logiciel: WindowsMangerProtect20.0.0.722 - (.WindowsProtect LIMITED.) [HKLM] -- WindowsMangerProtect =>PUP.Optional.WpManager
O42 - Logiciel: WinRAR archiver - (.RarLab.) [HKLM] -- WinRAR archiver =>.RarLab
O42 - Logiciel: Yahoo! Search - (.Pay-By-Ads.) [HKCU] -- Yahoo! Search
O42 - Logiciel: YourFileDownloader - (.http://yourfiledownloader.org.) [HKCU] -- YourFileDownloader =>PUP.Optional.YourFileDownloader
O42 - Logiciel: YTDownloader - (.YTDownloader.) [HKLM] -- YTDownloader =>PUP.Optional.YTDownloader

---\\ HKCU & HKLM Software Keys (171) - 25s
HKLM\SOFTWARE\360Safe =>.Qihu 360 Software Co., LTD
HKLM\SOFTWARE\360softmgr =>.Qihu 360 Software Co., LTD
HKLM\SOFTWARE\360TotalSecurity =>.Qihu 360 Software Co., LTD
HKLM\SOFTWARE\Adanak =>PUP.Optional.Adanak
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Alps =>.ALPS
HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Ashampoo =>.Ashampoo
HKLM\SOFTWARE\ASIO =>.Steinberg Media Technologies
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Autodesk =>.Autodesk
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\Baidu =>.Baidu
HKLM\SOFTWARE\Classroom Spy Professional
HKLM\SOFTWARE\Client
HKLM\SOFTWARE\CloudOPTInfo
HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\Earth Resource Mapping =>.Earth Resource Mapping Inc
HKLM\SOFTWARE\ErrorLists-crcodedownloader =>PUP.Optional.SoftwareEngine
HKLM\SOFTWARE\Gabest =>.Gabest
HKLM\SOFTWARE\Ge-Force =>PUP.Optional.CrossRider
HKLM\SOFTWARE\GEAR Software =>.GEAR Software
HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\GNU =>.GNU
HKLM\SOFTWARE\GoForFiles
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\GRETECH =>.Gretech
HKLM\SOFTWARE\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\Havas Interactive =>.Havas Interactive
HKLM\SOFTWARE\HD-V2.1
HKLM\SOFTWARE\HitsBlender
HKLM\SOFTWARE\HSPA =>.HSPA
HKLM\SOFTWARE\Huawei technologies =>.Huawei Technologies
HKLM\SOFTWARE\Icaros =>.Icaros
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\Image-Line =>.Image-Line
HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\InterVideo =>.InterVideo
HKLM\SOFTWARE\IObit =>.IObit
HKLM\SOFTWARE\istartsurfSoftware =>PUP.Optional.IsStart
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Kaydara =>.Kaydara
HKLM\SOFTWARE\KLCodecPack =>.KLite Inc
HKLM\SOFTWARE\Larousse =>.Larousse
HKLM\SOFTWARE\LAV =>.LAV Inc
HKLM\SOFTWARE\Lenovo =>.Lenovo
HKLM\SOFTWARE\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\LiveUpdate360 =>.Qihu 360 Software Co., LTD
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Macrovision =>.Macrovision
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Propellerhead Software =>.Propellerhead Software
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\SavePass 1.1
HKLM\SOFTWARE\Sense
HKLM\SOFTWARE\ShopperPro =>PUP.Optional.ShopperPro
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\snipsmart =>PUP.Optional.SnipSmart
HKLM\SOFTWARE\SoftVoice =>.SoftVoice
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\SPlayer
HKLM\SOFTWARE\Stardock =>.Stardock
HKLM\SOFTWARE\SupDp =>PUP.Optional.SupTab
HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab
HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\supWPM =>PUP.Optional.WpManager
HKLM\SOFTWARE\Tencent =>.Superfluous.Tencent
HKLM\SOFTWARE\Thunder Network
HKLM\SOFTWARE\UCBrowser =>.UCWeb Inc.
HKLM\SOFTWARE\UCBrowserPID =>.UCWeb Inc.
HKLM\SOFTWARE\updat
HKLM\SOFTWARE\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\vLite
HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches
HKLM\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\YourFileDownloader =>PUP.Optional.YourFileDownloader
HKLM\SOFTWARE\YTDownloader =>PUP.Optional.YTDownloader
HKCU\SOFTWARE\360 =>.Qihu 360 Software Co., LTD
HKCU\SOFTWARE\360Safe =>.Qihu 360 Software Co., LTD
HKCU\SOFTWARE\360TotalSecurity =>.Qihu 360 Software Co., LTD
HKCU\SOFTWARE\851dfa9567ceee2bf1964b62c6ebc2d0 =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Adanak =>PUP.Optional.Adanak
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Alps =>.ALPS
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Atstwun
HKCU\SOFTWARE\Autodesk =>.Autodesk
HKCU\SOFTWARE\Avast Software =>.AVAST Software
HKCU\SOFTWARE\BabSolution =>PUP.Optional.BabSolution
HKCU\SOFTWARE\Baidu =>.Baidu
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\CoreAAC =>.Core Codec
HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\drpsu =>.Driver PackSolution
HKCU\SOFTWARE\DSP-worx =>.Microsoft Corporation
HKCU\SOFTWARE\Earth Resource Mapping =>.Earth Resource Mapping Inc
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\GetData
HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\GRAPHISOFT =>.Graphisoft
HKCU\SOFTWARE\GRETECH =>.Gretech
HKCU\SOFTWARE\Haali =>.Haali Media
HKCU\SOFTWARE\Icaros =>.Icaros
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Image-Line =>.Image-Line
HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\kde.org =>.kde.org
HKCU\SOFTWARE\Lenovo =>.Lenovo
HKCU\SOFTWARE\LiveUpdate360 =>.Qihu 360 Software Co., LTD
HKCU\SOFTWARE\LULUPFLE
HKCU\SOFTWARE\M & M Syndicate Limite
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\madshi =>.madshi.net
HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\OXXOgames =>.Intenium GmbH
HKCU\SOFTWARE\Project07
HKCU\SOFTWARE\Psiphon3
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\RocketDock =>.Punk Software
HKCU\SOFTWARE\ShieldBt
HKCU\SOFTWARE\ShopperPro =>PUP.Optional.ShopperPro
HKCU\SOFTWARE\Sierra Imaging
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\SMADΔV
HKCU\SOFTWARE\snipsmart =>PUP.Optional.SnipSmart
HKCU\SOFTWARE\SoftVoice =>.SoftVoice
HKCU\SOFTWARE\SPlayer
HKCU\SOFTWARE\Stardock =>.Stardock
HKCU\SOFTWARE\SupHpUISoft =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\UCBrowser =>.UCWeb Inc.
HKCU\SOFTWARE\UCBrowserPID =>.UCWeb Inc.
HKCU\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\YTDownloader =>PUP.Optional.YTDownloader
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\ZWMG
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\Ge-Force =>PUP.Optional.CrossRider
HKCU\SOFTWARE\AppDataLow\Software\HD-V2.1
HKCU\SOFTWARE\AppDataLow\Software\SavePass 1.1
HKCU\SOFTWARE\AppDataLow\Software\Sense

---\\ Contenu des dossiers Programmes (287) - 50s
O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\360 =>.Qihu 360 Software
O43 - CFD: 04/12/2015 - [] D -- C:\Program Files\Adanak =>PUP.Optional.Adanak
O43 - CFD: 03/09/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 01/03/2013 - [0] D -- C:\Program Files\Adobe Flash Player 10
O43 - CFD: 05/07/2014 - [] D -- C:\Program Files\AGEIA Technologies =>.AGEIA Technologies
O43 - CFD: 01/03/2013 - [] D -- C:\Program Files\Apple Software Update =>.Apple Inc.
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Autodesk =>.Autodesk
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Autodesk Network License Manager
O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.®
O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\baidu =>.Baidu
O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 19/09/2015 - [0] D -- C:\Program Files\CDROM
O43 - CFD: 03/09/2016 - [] D -- C:\Program Files\Classroom Spy Pro {389E5A14A04DF738F2D8F108F966BAC6}
O43 - CFD: 17/10/2016 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 26/07/2014 - [] D -- C:\Program Files\DellTPad =>.Alps Electric Co., LTD.®
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\directx =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 31/08/2012 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 02/11/2012 - [] D -- C:\Program Files\Foxit Software =>.Foxit Software
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\Ge-Force =>PUP.Optional.CrossRider
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\GRAPHISOFT =>.Graphisoft
O43 - CFD: 31/08/2016 - [0] D -- C:\Program Files\GRETECH =>.Gretech
O43 - CFD: 27/04/2014 - [] D -- C:\Program Files\GUMA507.tmp =>.Google Inc®
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\HD-V2.1
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\HitsBlender {3A064626CE173599127D78C730697B78}
O43 - CFD: 04/12/2014 - [] D -- C:\Program Files\HitsBlenderUpdater
O43 - CFD: 14/03/2014 - [] D -- C:\Program Files\HSPA USB Modem
O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\Image-Line =>.Image-Line
O43 - CFD: 14/03/2014 - [] D -- C:\Program Files\InstallShield Installation Information =>.InstallShield Software
O43 - CFD: 26/07/2014 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 05/05/2016 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc
O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\IObit =>.IObit
O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\iTunes =>.Apple Inc.
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 30/03/2016 - [] D -- C:\Program Files\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Larousse =>.Larousse
O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\Last.fm =>.Last.fm
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Lenovo =>.Lenovo
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Microsoft Visual Studio 8 =>.Microsoft Corporation
O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 12/09/2014 - [] D -- C:\Program Files\MiniGet =>.MiniSoft
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 09/01/2016 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 09/11/2016 - [0] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation
O43 - CFD: 15/07/2016 - [] D -- C:\Program Files\Ninja Download Manager
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\Pay-By-Ads =>PUP.Optional.PaybyAds
O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\QuickTime =>Riskware.QuickTime
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 01/03/2013 - [] D -- C:\Program Files\RocketDock =>.Punk Software
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\SavePass 1.1
O43 - CFD: 23/11/2016 - [] RD -- C:\Program Files\Skype =>.Skype
O43 - CFD: 29/09/2016 - [] D -- C:\Program Files\SMADAV =>.SmadAV
O43 - CFD: 26/05/2016 - [] D -- C:\Program Files\SPlayer {6C587715EE87072E7EB8816807E4BD39}
O43 - CFD: 26/07/2014 - [] D -- C:\Program Files\Stardock =>.Stardock Corporation®
O43 - CFD: 08/04/2014 - [] D -- C:\Program Files\Tencent =>.Superfluous.Tencent
O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\Toolbar Fairy
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\UCBrowser =>.UCWeb Inc
O43 - CFD: 14/07/2009 - [0] D -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 09/12/2012 - [] D -- C:\Program Files\VideoLAN =>.VideoLAN
O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\VstPlugins =>.VTS
O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\WIBU-SYSTEMS =>.Wibu-Systems
O43 - CFD: 24/12/2012 - [] D -- C:\Program Files\WIBUKEY =>.Wibu Systems
O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/01/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 31/08/2012 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\WinRAR =>.WinRAR
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\YourFileDownloader =>PUP.Optional.YourFileDownloader
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\YourFileDownloaderUpdater =>PUP.Optional.YourFileDownloader
O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\YTDownloader =>PUP.Optional.YTDownloader
O43 - CFD: 05/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center =>.360 Security Center
O43 - CFD: 05/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 31/08/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
O43 - CFD: 05/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AGEIA =>.AGEIA Technilogies
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk =>.Autodesk
O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classroom Spy Pro
O43 - CFD: 31/08/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth
O43 - CFD: 24/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRAPHISOFT =>.Graphisoft
O43 - CFD: 14/03/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSPA USB Modem
O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line =>.Image-Line
O43 - CFD: 30/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Web Start
O43 - CFD: 30/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Larousse =>.Larousse
O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo
O43 - CFD: 14/07/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 09/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox =>.Mozilla
O43 - CFD: 24/12/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime
O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock =>.Punk Software
O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint =>.Microsoft Corporation
O43 - CFD: 15/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 19/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMADAV Antivirus =>.SmadAV
O43 - CFD: 19/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPlayer
O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock =>.Stardock
O43 - CFD: 13/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
O43 - CFD: 28/10/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Titan-Se7en™ =>HackTool.WinActivator
O43 - CFD: 23/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toolbar Fairy
O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UC Browser =>.UCWeb Inc.
O43 - CFD: 03/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLAN
O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey =>.Wibu Systems
O43 - CFD: 03/11/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
O43 - CFD: 08/11/2016 - [] SHD -- C:\ProgramData\360Quarant =>.Qihu 360 Software Co., LTD
O43 - CFD: 15/05/2016 - [] D -- C:\ProgramData\360safe =>.Qihu 360 Software
O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\360TotalSecurity =>.Qihu 360 Software Co., LTD
O43 - CFD: 09/12/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\ProgramData\Autodesk =>.Autodesk
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\Baidu =>.Baidu
O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\DatacardService =>.Entriq, Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 23/09/2014 - [] D -- C:\ProgramData\DSearchLink =>.Superfluous.DeltaSearch
O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 07/09/2012 - [] D -- C:\ProgramData\FLEXnet =>.Flexera Software
O43 - CFD: 12/09/2014 - [] D -- C:\ProgramData\HitsBlender
O43 - CFD: 07/04/2014 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\IePluginServices =>PUP.Optional.SProtector
O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 15/01/2014 - [] D -- C:\ProgramData\Local Settings
O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 09/11/2016 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 18/01/2016 - [] D -- C:\ProgramData\MobiConnect
O43 - CFD: 31/08/2012 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 03/09/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\ShopperPro =>PUP.Optional.ShopperPro
O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 26/07/2014 - [] D -- C:\ProgramData\Stardock =>.Stardock
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 18/11/2014 - [] D -- C:\ProgramData\Sun =>.Oracle
O43 - CFD: 19/09/2015 - [0] D -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 13/05/2015 - [] D -- C:\ProgramData\Tencent =>.Superfluous.Tencent
O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network
O43 - CFD: 05/07/2014 - [] D -- C:\ProgramData\Trymedia =>PUP.Optional.Trymedia
O43 - CFD: 19/09/2015 - [] D -- C:\ProgramData\Video Accelerator
O43 - CFD: 12/09/2014 - [] D -- C:\ProgramData\WindowsMangerProtect =>PUP.Optional.WpManager
O43 - CFD: 28/12/2015 - [0] D -- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic
O43 - CFD: 09/12/2012 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 02/07/2014 - [] D -- C:\Program Files\Common Files\Apple =>.Apple Inc.
O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\Common Files\Autodesk Shared =>.Autodesk
O43 - CFD: 18/04/2016 - [] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 12/09/2014 - [] D -- C:\Program Files\Common Files\Config
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer
O43 - CFD: 03/11/2012 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files\Common Files\IObit =>.IObit
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\Common Files\Java =>.Oracle
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files\Common Files\LENOVO =>.Lenovo
O43 - CFD: 07/09/2012 - [] D -- C:\Program Files\Common Files\Macrovision Shared =>.Macrovision
O43 - CFD: 09/12/2012 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\Common Files\Propellerhead Software =>.Propellerhead Software AB
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 17/10/2016 - [] D -- C:\Program Files\Common Files\Skype =>.Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 24/11/2016 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 05/07/2014 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard =>.Seagate
O43 - CFD: 27/12/2015 - [0] D -- C:\Users\METIDJI\AppData\Roaming\337Games
O43 - CFD: 09/11/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\360safe =>.Qihu 360 Software
O43 - CFD: 18/04/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\360TotalSecurity =>.Qihu 360 Software Co., LTD
O43 - CFD: 15/02/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 28/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 08/12/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Autodesk =>.Autodesk
O43 - CFD: 27/04/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 25/07/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Baidu =>.Baidu
O43 - CFD: 31/08/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\DivX =>.DivX
O43 - CFD: 13/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 04/05/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\DownloadNinja
O43 - CFD: 27/09/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\dvdcss =>.VideoLAN
O43 - CFD: 03/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Google =>.Google
O43 - CFD: 30/05/2013 - [] D -- C:\Users\METIDJI\AppData\Roaming\Graphisoft =>.Graphisoft
O43 - CFD: 31/08/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\IDM =>.IDM
O43 - CFD: 21/08/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Image-Line =>.Image-Line
O43 - CFD: 24/12/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Install.GS
O43 - CFD: 28/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\IObit =>.IObit
O43 - CFD: 04/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\istartsurf =>PUP.Optional.IsStart
O43 - CFD: 11/09/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\METIDJI\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 10/09/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Media Player Classic =>.Microsoft Corporation
O43 - CFD: 14/04/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\MiniGet =>.MiniSoft
O43 - CFD: 05/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/09/2016 - [0] D -- C:\Users\METIDJI\AppData\Roaming\MPC-HC =>.MPC-HC Team
O43 - CFD: 28/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\ProductData =>.Microsoft Corporation
O43 - CFD: 22/05/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Psiphon3
O43 - CFD: 23/11/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Skype =>.Skype
O43 - CFD: 26/05/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\SPlayer
O43 - CFD: 03/09/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 05/07/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Switchball
O43 - CFD: 13/05/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Tencent =>.Superfluous.Tencent
O43 - CFD: 26/05/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\vlc =>.VideoLAN
O43 - CFD: 18/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 19/09/2015 - [] D -- C:\Users\METIDJI\AppData\Local\3397
O43 - CFD: 09/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Adobe =>.Adobe
O43 - CFD: 24/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 02/07/2014 - [] D -- C:\Users\METIDJI\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\METIDJI\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 16/06/2014 - [] D -- C:\Users\METIDJI\AppData\Local\ArchiCAD_0919182931
O43 - CFD: 25/11/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Autodesk =>.Autodesk
O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\cache =>.Legitimate
O43 - CFD: 19/09/2015 - [] D -- C:\Users\METIDJI\AppData\Local\Camera Image
O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 16/12/2016 - [0] D -- C:\Users\METIDJI\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
O43 - CFD: 27/10/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Google =>.Google
O43 - CFD: 24/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\Graphisoft =>.Graphisoft
O43 - CFD: 30/12/2012 - [] D -- C:\Users\METIDJI\AppData\Local\GS-LW-Temp
O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\METIDJI\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 13/11/2015 - [] D -- C:\Users\METIDJI\AppData\Local\HitsBlender
O43 - CFD: 14/01/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Lenovo =>.Lenovo
O43 - CFD: 20/09/2015 - [] D -- C:\Users\METIDJI\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 16/09/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 19/12/2014 - [] D -- C:\Users\METIDJI\AppData\Local\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 03/11/2012 - [0] D -- C:\Users\METIDJI\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 24/11/2015 - [] D -- C:\Users\METIDJI\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 23/09/2014 - [] D -- C:\Users\METIDJI\AppData\Local\onlysearch =>PUP.Optional.OnlySearch
O43 - CFD: 19/07/2014 - [] D -- C:\Users\METIDJI\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 04/10/2016 - [] D -- C:\Users\METIDJI\AppData\Local\ShdUpdate
O43 - CFD: 15/06/2016 - [0] D -- C:\Users\METIDJI\AppData\Local\Skype =>.Skype
O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\METIDJI\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 09/01/2016 - [] D -- C:\Users\METIDJI\AppData\Local\UCBrowser =>.UCWeb Inc
O43 - CFD: 01/05/2016 - [] D -- C:\Users\METIDJI\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 19/07/2014 - [0] D -- C:\Users\METIDJI\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 10/01/2016 - [] RD -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 17/12/2016 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk =>.Autodesk
O43 - CFD: 02/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Foxit Reader =>.Foxit Corporation
O43 - CFD: 21/08/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line =>.Image-Line
O43 - CFD: 30/12/2015 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/07/2009 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 12/09/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MiniGet =>.MiniSoft
O43 - CFD: 14/09/2016 - [] RD -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 08/04/2014 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>.Superfluous.Tencent
O43 - CFD: 03/11/2012 - [] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 09/01/2016 - [0] D -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader =>PUP.Optional.YTDownloader
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 31/08/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/01/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 04/04/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\UCBrowser =>.UCWeb Inc
O43 - CFD: 15/05/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\360safe =>.Qihu 360 Software
O43 - CFD: 02/07/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 30/12/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit
O43 - CFD: 11/09/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (9) - 0s
O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (15) - 2s
O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\AdopeFlash [Key] . (.AutoIt Team - AutoIt v3 Script.) -- C:\Google\AutoIt3.exe =>.AutoIt Team
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.
O53 - SMSR:HKLM\...\startupreg\BCSSync [Key] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\download.ninja [Key] . (...) -- C:\Program Files\Ninja Download Manager\download.ninja.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HitsBlender [Key] . (...) -- C:\Program Files\HitsBlender\hitsblender.exe
O53 - SMSR:HKLM\...\startupreg\HSPALauncher [Key] . (.Copyright (C) 2010 - HSDPALauncher MFC Application.) -- C:\Program Files\HSPA USB Modem\HSPALauncher.exe
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.
O53 - SMSR:HKLM\...\startupreg\JavaUpdate [Key] . (...) -- C:\Google\GoogleUpdate.lnk (.not file.)
O53 - SMSR:HKLM\...\startupreg\NewJavaInstall [Key] . (.AutoIt Team - AutoIt v3 Script.) -- C:\Google\AutoIt3.exe =>.AutoIt Team
O53 - SMSR:HKLM\...\startupreg\Only-search [Key] . (...) -- C:\Users\METIDJI\AppData\Local\onlysearch\onlysearch\1.3.12.9\onlysearch.exe (.not file.) =>PUP.Optional.OnlySearch
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe =>.Apple Inc.
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O53 - SMSR:HKLM\...\startupreg\SPDriver [Key] . (...) -- C:\Program Files\ShopperPro\JSDriver\1.37.0.871\jsdrv.exe (.not file.) =>PUP.Optional.ShopperPro
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation

---\\ Liste des pilotes du système (79) - 34s
O58 - SDL:2016/06/21 05:02:53 A . (.360.cn - 360安全卫士 网络防黑模块.) -- C:\Windows\System32\drivers\360AntiHacker.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2016/11/25 13:35:55 A . (.360.cn - 360杀毒 文件监控驱动.) -- C:\Windows\System32\drivers\360AvFlt.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2016/11/25 13:35:55 A . (.360.cn - 360Box.) -- C:\Windows\System32\drivers\360Box.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2016/03/10 10:57:55 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\Windows\System32\drivers\360Camera.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2016/08/08 07:04:57 A . (.360安全中心 - 360安全卫士 - SelfProtection.) -- C:\Windows\System32\drivers\360SelfProtection.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/05/25 20:50:30 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [324224] =>.Alps Electric Co., LTD.®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/03/14 15:53:42 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60x.sys [324224] =>.Broadcom Corporation®
O58 - SDL:2016/09/15 02:30:46 A . (.360.cn - BAPIDRV.) -- C:\Windows\System32\drivers\BAPIDRV.SYS [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2010/10/28 10:16:24 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [324224] =>.Broadcom Corporation®
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [324224] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [324224] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [324224] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [324224] =>.Microsoft Windows®
O58 - SDL:2008/08/29 17:54:40 A . (.Mobile Connector - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmusbser.sys [324224] =>.Mobile Connector
O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [324224] =>.Microsoft Windows®
O58 - SDL:2016/03/10 10:57:55 A . (.360.cn - 360Efimon Driver.) -- C:\Windows\System32\drivers\efimon.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [324224] =>.Broadcom Corporation
O58 - SDL:2012/08/21 12:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [324224] =>.GEAR Software Inc.®
O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [324224] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2016/08/08 07:04:57 A . (.360安全中心 - 360安全卫士 - HookPort.) -- C:\Windows\System32\drivers\hookport.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2007/06/18 13:12:04 A . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\System32\drivers\HpqKbFiltr.sys [324224] =>.Hewlett-Packard Development Company, L.P.
O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/05/20 09:43:02 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [324224] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [324224] =>.Microsoft Windows®
O58 - SDL:2016/01/28 11:20:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [324224] =>.Tonec Inc.®
O58 - SDL:2011/10/13 20:01:25 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [324224] =>.Intel Corporation
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:44 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [324224] =>.Microsoft Windows®
O58 - SDL:2016/08/08 07:04:57 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\Windows\System32\drivers\qutmdrv.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2016/08/08 07:04:57 A . (.360.cn - 360安全卫士 木马防火墙模块.) -- C:\Windows\System32\drivers\qutmipc.sys [324224] =>.Qihoo 360 Software (Beijing) Company Limited®
O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [324224] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [324224] =>.Microsoft Windows®
O58 - SDL:2012/08/31 15:51:46 A . (...) -- C:\Windows\System32\drivers\sptd.sys [324224]
O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [324224] =>.Microsoft Windows®
O58 - SDL:2007/05/01 20:21:47 A . (.VMware, Inc. - VMware Pointing Device Driver.) -- C:\Windows\System32\drivers\vmmouse.sys [324224] =>.VMware, Inc.®
O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/09/22 05:00:04 A . (.WIBU-SYSTEMS AG - WibuKey Windows NT Kernel Driver.) -- C:\Windows\System32\drivers\WibuKey.sys [324224] =>.WIBU-SYSTEMS AG
O58 - SDL:2009/09/08 12:48:44 A . (.WIBU-SYSTEMS AG - WIBU-KEY Plug&Play Driver for Windows.) -- C:\Windows\System32\drivers\Wibukey2.sys [324224] =>.WIBU-SYSTEMS AG
O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [324224] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [324224] =>.Microsoft Corporation

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 68s
O61 - LFC: 2016/12/13 13:33:38 A . (.Autodesk Inc..) -- C:\Users\METIDJI\Downloads\Programs\autocad_2016_fr_128826.exe [337744]
O61 - LFC: 2016/12/17 11:12:12 RA . (..) -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{EAB8A41D-FABA-4569-A0A1-60A8B358D6F1}\_09DB3D0C1C9F64C35BEE22.exe [10134]
O61 - LFC: 2016/12/17 11:12:12 RA . (..) -- C:\Users\METIDJI\AppData\Roaming\Microsoft\Installer\{EAB8A41D-FABA-4569-A0A1-60A8B358D6F1}\_13237EEAE27660A8BE98B7.exe [10134]

---\\ Associations Shell Spawning (11) - 8s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O67 - Shell Spawning: <.scr> [HKCU\..\open\Command] (.Microsoft Corporation - Bloc-notes.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation

---\\ Menu de démarrage Internet (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Internet Explorer\iexplore.ex http://www.istartsurf.com/ =>PUP.Optional.IsStart
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\METIDJI\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc.

---\\ Recherche d'infection sur les navigateurs (55) - 74s
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.asul", "1452356035053"); =>PUP.Optional.Adanak
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.aul", "1452356055957"); =>PUP.Optional.Adanak
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.irl", true); =>PUP.Optional.Adanak
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.is", "EF23DDDZ"); =>PUP.Optional.Adanak
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.Adanak.ug", "464343f0-c437-e626-6bf6-18dd4a5cbedc"); =>PUP.Optional.Adanak
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.description", "Ge-Force"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_bundledUrls.expi[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_bundledUrls.valu[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_bundledWithHash.[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_notBundledArr_.e[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_notBundledArr_.v[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.internaldb.monetization_plugin_regBundledWithSo[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.name", "Ge-Forces"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.a45633fba7e7d40fea9c299dc18447eea04021a325caf3com61911.61911.publisher", "iWebar"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.cookie.previous_page.value", "%22http%3A//www.reimageplus.com/lp[...] =>.Superfluous.ReimageRepair
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealpl[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri [...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_regBundledWithSoftware.expiration[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.internaldb.monetization_plugin_regBundledWithSoftware.value", "%[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.name", "CinPlus-2.5c"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aBGKGT66124770ZYFBNPM50498512com64141.64141.publisher", "Cinema Plus"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Fe[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealp[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledWithHash.expiration", "Fr[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D")[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_regBundledWithSoftware.expiratio[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.aVJKPXI46039420JMZUIOB85844870com63429.63429.internaldb.monetization_plugin_regBundledWithSoftware.value", "[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledUrls.expiration", "Fri Feb 01 2030[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledWithHash.expiration", "Fri Feb 01 [...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_bundledWithHash.value", "null"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_notBundledArr_.expiration", "Fri Feb 01 2[...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_notBundledArr_.value", "%5B%5D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_regBundledWithSoftware.expiration", "Fri [...] =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.internaldb.monetization_plugin_regBundledWithSoftware.value", "%7B%7D"); =>PUP.Optional.Monetization
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.awarnerrobertshotmailcom61915.61915.publisher", "Object Browser"); =>PUP.Optional.ObjectBrowser
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.crossrider.bic", "1513adf3564d32d21b83ed269402c294"); =>PUP.Optional.CrossRider
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.enabledAddons", "faststartff%40gmail.com:4.3.0,%7B746505DC-0E21-4667-97F8-72EA6BCF5EEF%7D:1.0.0.4,%7B3c433be[...] =>PUP.Optional.FastStart
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.faststartff@gmail.com.install-event-fired", true); =>PUP.Optional.FastStart
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.quick_start.enable_search1", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false); =>PUP.Optional.QuickStart
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("extensions.{746505DC-0E21-4667-97F8-72EA6BCF5EEF}.install-event-fired", true); =>PUP.Optional.ShopperPro
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("keyword.URL", "http://searchsimple-a.akamaihd.net/?q="); =>.Superfluous.AkamaiHD
O69 - SBI: prefs.js [METIDJI - lwayqg8e.default] user_pref("network.http.request.max-start-delay", 0); =>.Superfluous.MaxStart
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} [DefaultScope] - (Only Search) - http://www.only-search.com/ =>PUP.Optional.OnlySearch
O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (webssearches) - http://istart.webssearches.com/ =>PUP.Optional.IsStart
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] {33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (webssearches) - http://istart.webssearches.com/ =>PUP.Optional.IsStart

---\\ Enumère les services démarrés par Svchost (33) - 4s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [324224] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (19) - 39s
O87 - FAEL: "TCP Query User{B3B177CC-B6C7-4231-9858-97AE117431CA}G:\recycler\40109cb.exe" [In-None-P6-TRUE] .(...) -- G:\recycler\40109cb.exe (.not file.)
O87 - FAEL: "UDP Query User{3EB6C10A-9CB6-44D8-92EB-38D148E809E2}G:\recycler\40109cb.exe" [In-None-P17-TRUE] .(...) -- G:\recycler\40109cb.exe (.not file.)
O87 - FAEL: "TCP Query User{EFEF0D05-9375-46AD-AE29-FFA2C7246651}C:\users\metidji\appdata\roaming\vptatv.exe" [In-None-P6-TRUE] .(...) -- C:\users\metidji\appdata\roaming\vptatv.exe (.not file.)
O87 - FAEL: "UDP Query User{04EBAF42-A303-4B5C-9905-995EF2EF99E4}C:\users\metidji\appdata\roaming\vptatv.exe" [In-None-P17-TRUE] .(...) -- C:\users\metidji\appdata\roaming\vptatv.exe (.not file.)
O87 - FAEL: "TCP Query User{3A1ADC94-B32D-4303-AC3E-A0AAE03D358D}C:\program files\rocketdock\rocketdock.exe" [In-None-P6-TRUE] .(...) -- C:\program files\rocketdock\rocketdock.exe (.not file.)
O87 - FAEL: "UDP Query User{A7CDC151-7075-4319-A471-FBEE3513CF74}C:\program files\rocketdock\rocketdock.exe" [In-None-P17-TRUE] .(...) -- C:\program files\rocketdock\rocketdock.exe (.not file.)
O87 - FAEL: "{F4DE76C3-D553-4ECA-B01E-C1FFE0FCBA9E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.)
O87 - FAEL: "{47CDA783-8DE8-4D9E-A4D4-0CDD2403AE05}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Spark\Spark.exe (.not file.)
O87 - FAEL: "{FBA75430-89B0-4FAE-A736-F3475A391C61}" [In-None-P6-TRUE] .(...) -- C:\Program Files\baidu\Spark\bdtray.exe (.not file.)
O87 - FAEL: "{3A8B074A-0E4E-4F55-9D73-C59F55DC3B2F}" [In-None-P17-TRUE] .(...) -- C:\Program Files\baidu\Spark\bdtray.exe (.not file.)
O87 - FAEL: "{0AA91323-AD8E-4B72-9E46-353DB3DB1B45}" [In-None-P6-TRUE] .(...) -- C:\Program Files\YourFileDownloader\YourFileDownloader.exe (.not file.) =>PUP.Optional.YourFileDownloader
O87 - FAEL: "{643078F2-05A9-41A2-8C97-5C73AEA9A7C4}" [In-None-P17-TRUE] .(...) -- C:\Program Files\YourFileDownloader\YourFileDownloader.exe (.not file.) =>PUP.Optional.YourFileDownloader
O87 - FAEL: "{E2360E07-4C10-426B-93D1-F668D02CB42C}" [In-None-P6-TRUE] .(...) -- C:\Program Files\YourFileDownloader\Downloader.exe (.not file.) =>PUP.Optional.YourFileDownloader
O87 - FAEL: "{9C9847F2-18B6-4B93-AC82-8B4E16A6E046}" [In-None-P17-TRUE] .(...) -- C:\Program Files\YourFileDownloader\Downloader.exe (.not file.) =>PUP.Optional.YourFileDownloader
O87 - FAEL: "{A5AD0C0D-0E39-45D9-B8CC-9E7C1A152149}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.)
O87 - FAEL: "{2E85A65B-88C0-4254-A17F-B95B5CE95757}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.)
O87 - FAEL: "{5B8C9BC9-15A7-4C64-AA0B-B09EC41D36F1}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.)
O87 - FAEL: "{2A42B728-CB94-4D64-8ED2-050570E098A0}" [In-None-P6-TRUE] .(...) -- C:\Program Files\360\Total Security\softmgr\InstantSetup.exe (.not file.)
O87 - FAEL: "{CAD6848B-B54A-4A89-A8AB-DAB1C83BDAAE}" [In-None-P17-TRUE] .(...) -- C:\Program Files\360\Total Security\softmgr\InstantSetup.exe (.not file.)

---\\ Liste des émulateurs de CD/DVD (MBR Hook) (10) - 9s
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASAPI32 =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASMANCS =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASAPI32 =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASMANCS =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASAPI32 =>PUP.Optional.IsStart
HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASMANCS =>PUP.Optional.IsStart
HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution
HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution
HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASAPI32 =>PUP.Optional.SoftwareEngine
HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASMANCS =>PUP.Optional.SoftwareEngine

---\\ Scan Additionnel (88) - 4s
HKLM\SYSTEM\CurrentControlSet\Services\FairyService =>PUP.Optional.Youndoo
C:\Program Files\Toolbar Fairy\FairyService.exe =>PUP.Optional.Youndoo
C:\Windows\Tasks\UCBrowserUpdater.job =>PUP.Optional.CertifiedToolbar
C:\Windows\Tasks\UCBrowserUpdaterCore.job =>PUP.Optional.CertifiedToolbar
C:\Windows\System32\Tasks\UCBrowserUpdater =>PUP.Optional.CertifiedToolbar
C:\Windows\System32\Tasks\UCBrowserUpdaterCore =>PUP.Optional.CertifiedToolbar
C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{3c433beb-079f-4f3d-a7d8-3be3076f2fbe}.xpi =>PUP.Optional.Adanak
C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\dsrlte1.xml =>PUP.Optional.PaybyAds
C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\searchplugins\onlysearchkms.xml =>PUP.Optional.OnlySearch
C:\Users\METIDJI\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam
C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\45633fba7e7d40fea9c29@9dc18447eea04021a325caf3.com =>PUP.Optional.CrossRider
C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\BGKGT66124770@ZYFBNPM50498512.com =>PUP.Optional.CrossRider
C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\faststartff@gmail.com =>PUP.Optional.LightningNewTab
C:\Users\METIDJI\AppData\Roaming\Mozilla\Firefox\Profiles\lwayqg8e.default\extensions\{746505DC-0E21-4667-97F8-72EA6BCF5EEF} =>.Superfluous.Goobzo
HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 =>PUP.Optional.GlobalUpdate
HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 =>PUP.Optional.GlobalUpdate
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adanak =>PUP.Optional.Adanak
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ge-Force =>PUP.Optional.CrossRider
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.Optional.IsStart
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro =>PUP.Optional.ShopperPro
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\snipsmart =>PUP.Optional.SnipSmart
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webssearches uninstall =>PUP.Optional.WebsSearches
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect =>PUP.Optional.WpManager
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader =>PUP.Optional.YTDownloader
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7BE15435-2D3E-4B58-867F-9C75BED0208C} =>Riskware.QuickTime
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} =>PUP.Optional.SoftwareUpdater
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adanak =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Ge-Force =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\istartsurf uninstall =>PUP.Optional.IsStart
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ShopperPro =>PUP.Optional.ShopperPro
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\snipsmart =>PUP.Optional.SnipSmart
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webssearches uninstall =>PUP.Optional.WebsSearches
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WindowsMangerProtect =>PUP.Optional.WpManager
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YTDownloader =>PUP.Optional.YTDownloader
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7BE15435-2D3E-4B58-867F-9C75BED0208C} =>Riskware.QuickTime
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96} =>PUP.Optional.SoftwareUpdater
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\onlysearch =>PUP.Optional.OnlySearch
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Update Service YourFileDownloader =>PUP.Optional.YourFileDownloader
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YourFileDownloader =>PUP.Optional.YourFileDownloader
C:\Program Files\Adanak =>PUP.Optional.Adanak
C:\Program Files\Ge-Force =>PUP.Optional.CrossRider
C:\Program Files\Pay-By-Ads =>PUP.Optional.PaybyAds
C:\Program Files\QuickTime =>Riskware.QuickTime
C:\Program Files\YourFileDownloader =>PUP.Optional.YourFileDownloader
C:\Program Files\YourFileDownloaderUpdater =>PUP.Optional.YourFileDownloader
C:\Program Files\YTDownloader =>PUP.Optional.YTDownloader
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Titan-Se7en™ =>HackTool.WinActivator
C:\ProgramData\DSearchLink =>.Superfluous.DeltaSearch
C:\ProgramData\IePluginServices =>PUP.Optional.SProtector
C:\ProgramData\ShopperPro =>PUP.Optional.ShopperPro
C:\ProgramData\Tencent =>.Superfluous.Tencent
C:\ProgramData\Trymedia =>PUP.Optional.Trymedia
C:\ProgramData\WindowsMangerProtect =>PUP.Optional.WpManager
C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic
C:\Users\METIDJI\AppData\Roaming\istartsurf =>PUP.Optional.IsStart
C:\Users\METIDJI\AppData\Roaming\Tencent =>.Superfluous.Tencent
C:\Users\METIDJI\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\Users\METIDJI\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate
C:\Users\METIDJI\AppData\Local\onlysearch =>PUP.Optional.OnlySearch
C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent =>.Superfluous.Tencent
C:\Users\METIDJI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YTDownloader =>PUP.Optional.YTDownloader
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Only-search =>PUP.Optional.OnlySearch
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\SPDriver =>PUP.Optional.ShopperPro
HKLM\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\Open\command =>PUP.Optional.IsStart
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} =>PUP.Optional.OnlySearch
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} =>PUP.Optional.IsStart
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} =>PUP.Optional.IsStart
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{0AA91323-AD8E-4B72-9E46-353DB3DB1B45} =>PUP.Optional.YourFileDownloader
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{643078F2-05A9-41A2-8C97-5C73AEA9A7C4} =>PUP.Optional.YourFileDownloader
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E2360E07-4C10-426B-93D1-F668D02CB42C} =>PUP.Optional.YourFileDownloader
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{9C9847F2-18B6-4B93-AC82-8B4E16A6E046} =>PUP.Optional.YourFileDownloader
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASAPI32 =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_RASMANCS =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASAPI32 =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\Adanak_Setup_RASMANCS =>PUP.Optional.Adanak
HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASAPI32 =>PUP.Optional.IsStart
HKLM\SOFTWARE\Microsoft\Tracing\amt_istartsurf_RASMANCS =>PUP.Optional.IsStart
HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASAPI32 =>PUP.Optional.BabSolution
HKLM\SOFTWARE\Microsoft\Tracing\BabMaint_RASMANCS =>PUP.Optional.BabSolution
HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASAPI32 =>PUP.Optional.SoftwareEngine
HKLM\SOFTWARE\Microsoft\Tracing\Ge-Force-codedownloader_RASMANCS =>PUP.Optional.SoftwareEngine
C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_api.snipsmart.info_0.localstorage =>PUP.Optional.SnipSmart
C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apiadanaknet-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD
C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_apisnipsmartinfo-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD
C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD
C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_hdapp1008-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD
C:\Users\METIDJI\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage =>PUP.Optional.Chatango

---\\ Récapitulatif des éléments trouvés sur votre station (38) - 1s
https://www.anti-malware.top/2016/06/18/superfluous-youndoo/ =>PUP.Optional.Youndoo
https://www.nicolascoolman.com/fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar
https://www.nicolascoolman.com/fr/pup-adanak/ =>PUP.Optional.Adanak
https://www.nicolascoolman.com/fr/pup-paybyads/ =>PUP.Optional.PaybyAds
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.OnlySearch
https://www.anti-malware.top/2016/05/07/pup-optional-wajam/ =>PUP.Optional.Wajam
https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.LightningNewTab
https://www.anti-malware.top/2016/07/20/superfluous-goobzo/ =>.Superfluous.Goobzo
https://www.nicolascoolman.com/fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.AkamaiHD
https://www.nicolascoolman.com/fr/pup-isstart/ =>PUP.Optional.IsStart
https://www.nicolascoolman.com/fr/pup-shopperpro/ =>PUP.Optional.ShopperPro
https://www.nicolascoolman.com/fr/pup-snipsmart/ =>PUP.Optional.SnipSmart
https://www.nicolascoolman.com/fr/hijacker-webssearches/ =>PUP.Optional.WebsSearches
https://www.anti-malware.top/2016/06/18/superfluous-wpmanager/ =>PUP.Optional.WpManager
https://www.nicolascoolman.com/fr/pup-ytdownloader/ =>PUP.Optional.YTDownloader
https://www.anti-malware.top/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime
https://www.nicolascoolman.com/fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater
https://www.nicolascoolman.com/fr/pup-yourfiledownloader/ =>PUP.Optional.YourFileDownloader
https://www.nicolascoolman.com/fr/hijacker-trovigo/ =>PUP.Optional.SoftwareEngine
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.BrowserExtensions
https://www.nicolascoolman.com/fr/pup-suptab/ =>PUP.Optional.SupTab
https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent
https://www.nicolascoolman.com/fr/hijacker-babsolution/ =>PUP.Optional.BabSolution
https://www.nicolascoolman.com/fr/hijacker-windows/ =>HackTool.WinActivator
https://www.nicolascoolman.com/fr/toolbar-deltasearch/ =>.Superfluous.DeltaSearch
https://www.nicolascoolman.com/fr/pup-browsersprotector/ =>PUP.Optional.SProtector
https://www.nicolascoolman.com/fr/adware-trymedia/ =>PUP.Optional.Trymedia
https://www.anti-malware.top/2016/05/01/definition-dun-logiciel-pup-lpi/ =>PUP.Optional.Generic
https://www.nicolascoolman.com/fr/logiciels-superflus =>.Superfluous.CrashReports
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Monetization
https://www.anti-malware.top/2016/08/06/superfluous-reimagerepair/ =>.Superfluous.ReimageRepair
https://www.nicolascoolman.com/fr/pup-objectbrowser/ =>PUP.Optional.ObjectBrowser
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.FastStart
https://www.nicolascoolman.com/fr/pup-quickstart/ =>PUP.Optional.QuickStart
https://www.anti-malware.top/2016/06/07/superfluous-maxstart/ =>.Superfluous.MaxStart
https://www.nicolascoolman.com/fr/repaquetage-et_infections/ =>PUP.Optional.Chatango

~ End of the scan, 18676 items in 00h10mn01s (1350)

Publicité


Signaler le contenu de ce document

Publicité