~ ZHPDiag v2015.7.29.105 Par Nicolas Coolman (2015/07/29) ~ Démarré par yassine (Administrator) (2015/07/30 13:55:00) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Documents and Settings\yassine\Bureau\ZHPDiag.txt ~ Rapport: C:\Documents and Settings\yassine\Application Data\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) ~ Windows XP, 32-bit Service Pack 3 (Build 2600) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v44.0.2403.125 OPIE: Opera 30.0.1835.125 v30.0.1835.125 MSIE: Internet Explorer v6.0.2900.5512 ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 10 ActiveX Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 6 Model 15 Stepping 13, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 1038.696 MB (66% free) ~ System Restore: Activé (Enable) ~ System drive C: has 50 GB free of 99 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: YASSIINNE ~ User Name: yassine ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 50 GB free of 99 GB (System) ~ Drive D: has 39 GB free of 99 GB ~ Drive E: has 29 GB free of 38 GB ---\\ Etat du Centre de Sécurité Windows (8) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (22) - 0s [MD5.F2317622D29F9FF0F88AEECD5F60F0DD] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [1037824] [MD5.93AD0B78C7357A05F50E594EC7C22300] - (.Microsoft Corporation - Exécuter une DLL en tant qu'application.) () -- C:\WINDOWS\System32\rundll32.exe [33792] [MD5.4A6E04EA20F48D750D9BFED8600D516B] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [670208] [MD5.DD73D6B9F6B4CB630CF35B438B540174] - (.Microsoft Corporation - Application d'ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [512000] [MD5.322D0E36693D6E24A2398BEE62A268CD] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [138112] [MD5.9F3A2F5AA6875C72BF062C712CFA2674] - (.Microsoft Corporation - IDE/ATAPI Port Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [96512] [MD5.C885B02847F5D2FD45A24E219ED93B32] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [63744] [MD5.1F4260CC5B42272D71F79E570A27A4FE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [62976] [MD5.31F923EB2170FC172C81ABDA0045D18C] - (.Microsoft Corporation - Pilote de cryptographie FIPS.) () -- C:\WINDOWS\System32\drivers\Fips.sys [44672] [MD5.573C7D0A32852B48F3058CFD8026F511] - (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [144384] [MD5.A09BDC4ED10E3B2E0EC27BB94AF32516] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [54144] [MD5.083A052659F5310DD8B6A6CB05EDCF8E] - (.Microsoft Corporation - IMAPI Kernel Driver.) () -- C:\WINDOWS\System32\drivers\Imapi.sys [42112] [MD5.CC748EA12C6EFFDE940EE98098BF96BB] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [152832] [MD5.23C74D75E36E7158768DD63D92789A91] - (.Microsoft Corporation - IPSec Driver.) () -- C:\WINDOWS\System32\drivers\IPSec.sys [75264] [MD5.68755F0FF16070178B54674FE5B847B0] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [456576] [MD5.74B2B2F5BEA5E9A3DC021D685551BD3D] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [162816] [MD5.78A08DD6A8D65E697C18E1DB01C5CDCA] - (.Microsoft Corporation - NT File System Driver.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [574976] [MD5.8FD0BDBEA875D06CCF6C945CA9ABAF75] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [80384] [MD5.11B4A627BC9614B885C4969BFA5FF8A6] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [51328] [MD5.15CABD0F7C00C47C70124907916AF3F1] - (.Microsoft Corporation - Microsoft RDP Device redirector.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [196224] [MD5.D8EB2A7904DB6C916EB5361878DDCBAE] - (.Microsoft Corporation - Pilote de filtre audio Livre rouge.) () -- C:\WINDOWS\System32\drivers\redbook.sys [58752] [MD5.46DE1126684369BACE4849E4FC8C43CA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [53376] ---\\ Processus lancés (18) - 3s [MD5.AE28BA1361D8040D8850F21CACFCCCE9] - (.ALWIL Software - avast! Service.) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe [40384] [PID.2024] [MD5.932C7510FA3F20EEF0268ADB5A181779] - (.Taiwan Shui Mu Chih Ching Technology Limited. - dsk service.) -- C:\Program Files\WinZipper\winzipersvc.exe [426128] [PID.744] [MD5.5EF3427AE503B5C03A48F7C9FF458B69] - (.Copyright (C) 2008 - DCSHOST.) -- C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe [271712] [PID.900] [MD5.F14317082B49575B64365028D88230D7] - (...) -- C:\Program Files\My Connection\BackgroundService\ServiceManager.exe [53312] [PID.108] [MD5.0FA647429D00FDBEEBB1CFB1CDB63B19] - (...) -- C:\Program Files\Web Connection\IAM\BackgroundService\ServiceManager.exe [58192] [PID.1336] =>PUP.Optional.WebConnect [MD5.9EA47AA97D15BCC50A0F0B78CBD8E768] - (...) -- C:\Documents and Settings\All Users\Application Data\Internet Mobile\OnlineUpdate\ouc.exe [655712] [PID.1560] [MD5.3C6C546F303C1B956C6F5C436C97CB8F] - (.ALWIL Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe [2815192] [PID.2740] [MD5.DEA4AC5B44F5A7E4E3DA071D0CDB0740] - (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.exe [15691264] [PID.2880] [MD5.1963AE70F52B908388CFAF8116AF4F28] - (...) -- C:\Program Files\Web Connection\IAM\BackgroundService\ModemListener.exe [159056] [PID.3008] =>PUP.Optional.WebConnect [MD5.5178A245B4C35A7C12AC4142AC5E8DC0] - (...) -- C:\Program Files\My Connection\BackgroundService\ModemListener.exe [126056] [PID.3072] [MD5.59069C831AB78064EBAA5270AB5EA7A8] - (. - AutoDect.) -- C:\Program Files\Internet Haut Débit Mobile\AutoDect.exe [129872] [PID.3104] [MD5.75BDD11C3EA1CF584C8B9A5BF7C7190C] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe [3898960] [PID.3164] [MD5.91C9F6FB02169142EB4F514E87756EC1] - (.Copyright (C) 2000 - ADIMON MFC Application.) -- C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe [1205840] [PID.3432] [MD5.1D96AE722D1D050C5E0025496BE16C19] - (.Cinema PlusV30.07 - CinemaP-1.9cV30.07 exe.) -- C:\Program Files\CinemaP-1.9cV30.07\f9221a1b-50a0-4665-8fd4-beeedf88b79c-10.exe [1457232] [PID.3776] =>PUP.Optional.CrossRider [MD5.F20583E38B578758F0DD39F661202D1D] - (.Cinema PlusV30.07 - CinemaP-1.9cV30.07 exe.) -- C:\Program Files\CinemaP-1.9cV30.07\f9221a1b-50a0-4665-8fd4-beeedf88b79c-6.exe [1250384] [PID.3460] =>PUP.Optional.CrossRider [MD5.DE13E2345A50066E763E3888195F0342] - (.Cinema PlusV30.07 - CinemaP-1.9cV30.07 exe.) -- C:\Program Files\CinemaP-1.9cV30.07\f9221a1b-50a0-4665-8fd4-beeedf88b79c-1-6.exe [1497680] [PID.1084] =>PUP.Optional.CrossRider [MD5.3C14AAE26EA06BADAC98520773772CEB] - (.globalUpdate - globalUpdate Update.) -- C:\Program Files\globalUpdate\Update\globalupdate.exe [68608] [PID.1892] =>PUP.Optional.GlobalUpdate [MD5.3C14AAE26EA06BADAC98520773772CEB] - (.globalUpdate - globalUpdate Update.) -- C:\Program Files\globalUpdate\Update\globalupdate.exe [68608] [PID.2648] =>PUP.Optional.GlobalUpdate ---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2) (11) - 0s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [lkadffjmnaiokkdncgdlecdegajoiemi] CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [nopklnbohpbdfjglajojkeoelbbnfenn] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3) (5) - 1s P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.0.8] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.5] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll ---\\ Opera, Démarrage,Recherche,Plugins (B0,B1,B2) (1) - 0s B2 - EXT: [CinemaP-1.9cV30.07] C:\Documents and Settings\yassine\Application Data\Opera Software\Opera Stable\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi ---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4) (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/ =>PUP.Optional.Qvo6 R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://search.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.delta-homes.com/ =>PUP.Optional.Qvo6 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://istart.webssearches.com/ =>PUP.Optional.IsStart R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 ---\\ Internet Explorer, Proxy Management (R5) (3) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\explorer.exe (.Microsoft Corporation.) ---\\ Hosts file redirection (O1) (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ Browser Helper Object de navigateur (BHO) (O2) (1) - 1s O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll ---\\ Internet Explorer Toolbars (O3) (1) - 0s O3 - Toolbar: 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{1E796980-9CC5-11D1-A83F-00C04FC99D61} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du sytème (O4) (14) - 0s O4 - HKLM\..\Run: [avast5] . (.ALWIL Software - avast! Antivirus.) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe O4 - HKLM\..\Run: [ACU] . (.Atheros Communications, Inc. - Atheros Client Utility.) -- C:\Program Files\Qualcomm Atheros\ACU.exe O4 - HKLM\..\Run: [RTHDCPL] . (.Realtek Semiconductor Corp. - Realtek HD Audio Control Panel.) -- C:\WINDOWS\RTHDCPL.EXE O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe O4 - HKLM\..\Run: [IAM_Web Flame ModemListener] . (...) -- C:\Program Files\Web Connection\IAM\BackgroundService\ModemListener.exe =>PUP.Optional.WebConnect O4 - HKLM\..\Run: [IAM Aegean ModemListener] . (...) -- C:\Program Files\My Connection\BackgroundService\ModemListener.exe O4 - HKLM\..\Run: [autodetect] . (. - AutoDect.) -- C:\Program Files\Internet Haut Débit Mobile\AutoDect.exe O4 - HKCU\..\Run: [Free Hide IP] C:\Program Files\FreeHideIP\FreeHideIP.exe (.not file.) O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe O4 - HKCU\..\Run: [AVG-Secure-Search-Update_0615avt] . (.Copyright (C) 2015 . All rights reserved. - .) -- C:\Documents and Settings\All Users\Application Data\Avg_Update_0615avt\AVG-Secure-Search-Update_0615avt.exe O4 - HKUS\S-1-5-21-1659004503-1801674531-1394661305-1003\..\Run: [Free Hide IP] C:\Program Files\FreeHideIP\FreeHideIP.exe (.not file.) O4 - HKUS\S-1-5-21-1659004503-1801674531-1394661305-1003\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files\Internet Download Manager\IDMan.exe O4 - HKUS\S-1-5-21-1659004503-1801674531-1394661305-1003\..\Run: [AVG-Secure-Search-Update_0615avt] . (.Copyright (C) 2015 . All rights reserved. - .) -- C:\Documents and Settings\All Users\Application Data\Avg_Update_0615avt\AVG-Secure-Search-Update_0615avt.exe ---\\ Raccourcis Global Startup (O4G) (12) - 2s O4 - GS\Quicklaunch [Administrateur]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [Administrateur]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Quicklaunch [ASPNET]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [ASPNET]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Quicklaunch [HelpAssistant]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [HelpAssistant]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Quicklaunch [Invité]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [Invité]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Quicklaunch [SUPPORT_388945a0]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [SUPPORT_388945a0]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Quicklaunch [yassine]: Crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O4 - GS\Startup [yassine]: crossbrowse.lnk . (.Crossbrowse - Crossbrowse.) C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse ---\\ Modification Domaine/Adresses DNS (O17) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Liste des services NT non Microsoft et non désactivés (O23) (9) - 1s O23 - Service: Service de configuration Qualcomm Atheros (ACS) . (.Atheros - ACS.) - C:\WINDOWS\system32\acs.exe O23 - Service: avast! Antivirus (avast! Antivirus) . (.ALWIL Software - avast! Service.) - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: HWDeviceService.exe (HWDeviceService.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\Documents and Settings\All Users\Application Data\DatacardService\HWDeviceService.exe O23 - Service: IAM Aegean Modem Device Helper (IAM Aegean Modem Device Helper) . (...) - C:\Program Files\My Connection\BackgroundService\ServiceManager.exe O23 - Service: IAM_Web Flame Modem Device Helper (IAM_Web Flame Modem Device Helper) . (...) - C:\Program Files\Web Connection\IAM\BackgroundService\ServiceManager.exe =>PUP.Optional.WebConnect O23 - Service: Internet Mobile. OUC (Internet Mobile. RunOuc) . (...) - C:\Program Files\Internet Mobile\UpdateDog\ouc.exe O23 - Service: WinZiper service (winzipersvc) . (.Taiwan Shui Mu Chih Ching Technology Limited. - dsk service.) - C:\Program Files\WinZipper\winzipersvc.exe ---\\ Tâches planifiées en automatique (O39) (21) - 3s O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\amiupdaterExd.job [566] =>PUP.Optional.Dealply O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\amiupdaterExi.job [404] =>PUP.Optional.Dealply O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\avast! Emergency Update.job [366] O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\AVG_SYS_TASK_0215pit.job [648] O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\AVG_SYS_TASK_0615avt.job [602] O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\AVG_SYS_TASK_0615avt_DELETE.job [488] O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\Crossbrowse.job [1048] =>PUP.Optional.CrossBrowse O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\cSnAZmbAqojN.job [1040] O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-1-6.job [3124] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-1-7.job [3460] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-10_user.job [2098] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-11.job [5170] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-3.job [4144] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-5.job [2432] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-6.job [5504] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-7.job [5504] =>PUP.Optional.CrossRider O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job [962] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job [966] =>PUP.Optional.GlobalUpdate O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1052] O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1056] O39 - APT: Orphean - (...) -- C:\WINDOWS\Tasks\Opera scheduled Autoupdate 1438130387.job [416] ---\\ Logiciels installés (O42) (41) - 9s O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX O42 - Logiciel: CinemaP-1.9cV30.07 - (.Cinema PlusV30.07.) [HKLM] -- CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider O42 - Logiciel: Crossbrowse - (.The Crossbrowse Authors.) [HKLM] -- Crossbrowse =>PUP.Optional.CrossBrowse O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI O42 - Logiciel: Hierophant - (...) [HKLM] -- Hierophant O42 - Logiciel: My Connection - (.IAM.) [HKLM] -- IAM Aegean My Connection_is1 O42 - Logiciel: Web Connection - (.IAM.) [HKLM] -- IAM_Web Flame Web Connection_is1 =>PUP.Optional.WebConnect O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager O42 - Logiciel: Hotfix for Windows XP (KB958655-v2) - (.Microsoft Corporation.) [HKLM] -- KB958655-v2 O42 - Logiciel: Marvell Miniport Driver - (.Marvell.) [HKLM] -- Marvell Miniport Driver O42 - Logiciel: Microsoft Text-to-Speech Engine 4.0 (English) - (...) [HKLM] -- MSTTS O42 - Logiciel: Opera Stable 30.0.1835.125 - (.Opera Software.) [HKLM] -- Opera 30.0.1835.125 O42 - Logiciel: TextMaker Viewer - (.SoftMaker Software GmbH.) [HKLM] -- TextMaker Viewer O42 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM] -- Usbfix O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player O42 - Logiciel: Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 - (.Microsoft Corporation.) [HKLM] -- Wdf01007 O42 - Logiciel: Windows Media Format 11 runtime - (...) [HKLM] -- Windows Media Format Runtime O42 - Logiciel: WinRAR 5.10 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver O42 - Logiciel: WinZipper - (.Taiwan Shui Mu Chih Ching Technology Limited..) [HKLM] -- WinZipper O42 - Logiciel: Windows Media Format 11 runtime - (.Microsoft Corporation.) [HKLM] -- WMFDist11 O42 - Logiciel: Microsoft User-Mode Driver Framework Feature Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- Wudf01000 O42 - Logiciel: XML Paper Specification Shared Components Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XpsEPSC O42 - Logiciel: XML Paper Specification Shared Components Language Pack 1.0 - (.Microsoft Corporation.) [HKLM] -- XPSEPSCLP O42 - Logiciel: Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU - (.Microsoft Corporation.) [HKLM] -- {112C23F2-C036-4D40-BED4-0CB47BF5555C} O42 - Logiciel: Java 8 Update 25 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218025F0} O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} O42 - Logiciel: Complément Office 2007 - Microsoft Enregistrer en tant que PDF ou XPS (Beta - (.Microsoft Corporation.) [HKLM] -- {30120000-00B2-040C-0000-0000000FF1CE} O42 - Logiciel: SAGEM F@st 800-840 - (.SAGEM.) [HKLM] -- {4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 O42 - Logiciel: Compatibility Pack for the 2007 Office system - (.Microsoft Corporation.) [HKLM] -- {90120000-0020-0409-0000-0000000FF1CE} O42 - Logiciel: Internet Haut Débit Mobile - (...) [HKLM] -- {93D34EE3-99B3-4DB1-8B0A-0A657466F90D} O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM] -- {95140000-00AF-040C-0000-0000000FF1CE} O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Reader XI (11.0.08) - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1033-7B44-AB0000000001} O42 - Logiciel: Batch DOCX to DOC Converter 2014 - (.Batchwork Software.) [HKLM] -- {C233D370-4B1A-4F6F-BD55-16B0C131335B}_is1 O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: PhotoFiltre Studio X - (...) [HKCU] -- PhotoFiltre Studio X ---\\ HKCU & HKLM Software Keys (142) - 9s HKLM\SOFTWARE\Adobe HKLM\SOFTWARE\Adobe-BackupByPhotoshopCS6Portable HKLM\SOFTWARE\Aegean HKLM\SOFTWARE\ALWIL Software HKLM\SOFTWARE\Analog Devices HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\AthAppsCount HKLM\SOFTWARE\Atheros HKLM\SOFTWARE\AVAST Software HKLM\SOFTWARE\Avg Secure Update HKLM\SOFTWARE\C07ft5Y HKLM\SOFTWARE\CDDB HKLM\SOFTWARE\CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV30.07-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV30.07-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Crossrider =>PUP.Optional.CrossRider HKLM\SOFTWARE\delta-homesSoftware =>PUP.Optional.DeltaHomes HKLM\SOFTWARE\EA Games HKLM\SOFTWARE\ed55dca3-ad2d-4fa2-acee-033dac095a23 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Flame HKLM\SOFTWARE\FreeDownloadManager.ORG HKLM\SOFTWARE\Freemake HKLM\SOFTWARE\Gemplus HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Google HKLM\SOFTWARE\GRETECH HKLM\SOFTWARE\Grimmersoft HKLM\SOFTWARE\hdcode HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\Huawei technologies HKLM\SOFTWARE\IAM Aegean Modem Service HKLM\SOFTWARE\IAM_Web Flame Modem Service HKLM\SOFTWARE\IMDrv HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\INTEL HKLM\SOFTWARE\Internet Download Manager HKLM\SOFTWARE\Internet Haut Débit Mobile HKLM\SOFTWARE\JavaSoft HKLM\SOFTWARE\JreMetrics HKLM\SOFTWARE\L&H HKLM\SOFTWARE\listes_stages (5) HKLM\SOFTWARE\LuckyTab =>PUP.Optional.LuckyTab HKLM\SOFTWARE\Macromedia HKLM\SOFTWARE\Marvell HKLM\SOFTWARE\Mozilla HKLM\SOFTWARE\MozillaPlugins HKLM\SOFTWARE\Nero HKLM\SOFTWARE\NSIS HKLM\SOFTWARE\ODBC HKLM\SOFTWARE\Opera Software HKLM\SOFTWARE\Program Groups HKLM\SOFTWARE\Qualcomm Atheros HKLM\SOFTWARE\RAINBOW TECHNOLOGIES HKLM\SOFTWARE\Realtek HKLM\SOFTWARE\Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications HKLM\SOFTWARE\SAGEM HKLM\SOFTWARE\Schlumberger HKLM\SOFTWARE\Secure HKLM\SOFTWARE\Skype HKLM\SOFTWARE\SoftVTU HKLM\SOFTWARE\Sony Creative Software HKLM\SOFTWARE\Sony Media Software HKLM\SOFTWARE\SOSVirus HKLM\SOFTWARE\StreamTransport HKLM\SOFTWARE\SuppHelpDir HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\Swearware HKLM\SOFTWARE\Tensons HKLM\SOFTWARE\V9 =>PUP.Optional.V9Software HKLM\SOFTWARE\VerbAce Research HKLM\SOFTWARE\VideoLAN HKLM\SOFTWARE\Voice HKLM\SOFTWARE\VSO HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches HKLM\SOFTWARE\Windows 3.1 Migration Status HKLM\SOFTWARE\WinRAR HKLM\SOFTWARE\winzipersvc HKLM\SOFTWARE\WNR HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKLM\SOFTWARE\YourFileDownloader =>PUP.Optional.YourFileDownloader HKLM\SOFTWARE\ZTEUSBDriverFlag HKLM\SOFTWARE\_CrossriderRegNamePlaceHolder_ =>PUP.Optional.CrossRider HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Adobe-BackupByPhotoshopCS6Portable HKCU\SOFTWARE\AHA! Software HKCU\SOFTWARE\ALWIL Software HKCU\SOFTWARE\AppleWin HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\Avg Secure Update HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\Canneverbe Limited HKCU\SOFTWARE\CDDB HKCU\SOFTWARE\CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV30.07-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV30.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser HKCU\SOFTWARE\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\DirectShow HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\DRPSu Updater HKCU\SOFTWARE\DXTransform HKCU\SOFTWARE\FreeDownloadManager.ORG HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\Google HKCU\SOFTWARE\GRETECH HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PhotoFiltre Studio X HKCU\SOFTWARE\ProgSense =>PUP.Optional.ProgSense HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\SFX TEAM HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Tensons HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\UsbFix HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VerbAce Research HKCU\SOFTWARE\VSO HKCU\SOFTWARE\Wget HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\WNR HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\_CrossriderRegNamePlaceHolder_ =>PUP.Optional.CrossRider ---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43) (205) - 9s O43 - CFD: 2014/09/05 15:24:21 - [0] D -- C:\Program Files\360 O43 - CFD: 2015/07/30 13:51:27 - [] D -- C:\Program Files\45c10cf9-21f1-4e2e-b4ae-3df41586658b =>PUP.Optional.CrossRider O43 - CFD: 2014/10/08 08:17:46 - [] D -- C:\Program Files\Adobe O43 - CFD: 2014/11/01 22:38:26 - [] D -- C:\Program Files\Alwil Software O43 - CFD: 2015/04/06 18:31:27 - [] D -- C:\Program Files\Amine Sadoun O43 - CFD: 2015/05/29 17:34:09 - [] D -- C:\Program Files\AVG O43 - CFD: 2015/07/29 00:38:13 - [] D -- C:\Program Files\CDBurnerXP O43 - CFD: 2015/07/30 13:52:00 - [] D -- C:\Program Files\CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider O43 - CFD: 2014/09/01 18:33:32 - [0] D -- C:\Program Files\ComPlus Applications O43 - CFD: 2015/07/30 13:53:49 - [] D -- C:\Program Files\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2014/10/04 09:04:11 - [0] D -- C:\Program Files\DriverPack Solution Installer 13 O43 - CFD: 2015/05/25 11:19:50 - [] D -- C:\Program Files\Family Games O43 - CFD: 2015/07/30 13:52:11 - [] D -- C:\Program Files\Fichiers communs O43 - CFD: 2014/10/04 08:39:58 - [] D -- C:\Program Files\Free Download Manager O43 - CFD: 2014/11/01 21:59:28 - [0] D -- C:\Program Files\Freemake O43 - CFD: 2015/06/14 19:56:39 - [0] D -- C:\Program Files\frndic O43 - CFD: 2015/07/30 13:50:22 - [] D -- C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2014/09/03 12:00:31 - [] D -- C:\Program Files\Google O43 - CFD: 2015/06/03 08:22:02 - [0] D -- C:\Program Files\GRETECH O43 - CFD: 2015/04/26 23:24:17 - [] HD -- C:\Program Files\InstallShield Installation Information O43 - CFD: 2015/06/23 12:55:53 - [] D -- C:\Program Files\Internet Download Manager O43 - CFD: 2015/01/06 08:04:44 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 2015/04/26 23:55:10 - [] D -- C:\Program Files\Internet Haut Débit Mobile O43 - CFD: 2015/06/14 19:56:40 - [] D -- C:\Program Files\Internet Mobile O43 - CFD: 2015/01/25 12:21:40 - [] D -- C:\Program Files\Java O43 - CFD: 2015/05/02 17:18:03 - [] D -- C:\Program Files\Kingo ROOT O43 - CFD: 2015/05/30 07:50:33 - [0] D -- C:\Program Files\LuckyTab =>PUP.Optional.LuckyTab O43 - CFD: 2014/11/05 15:35:27 - [] D -- C:\Program Files\Marvell O43 - CFD: 2014/12/07 10:32:45 - [] D -- C:\Program Files\Messenger O43 - CFD: 2014/09/01 18:37:33 - [] D -- C:\Program Files\microsoft frontpage O43 - CFD: 2015/04/22 20:47:51 - [] D -- C:\Program Files\Microsoft Help Viewer O43 - CFD: 2014/11/09 12:23:04 - [] D -- C:\Program Files\Microsoft Office O43 - CFD: 2015/04/22 20:47:51 - [] D -- C:\Program Files\Microsoft SDKs O43 - CFD: 2015/04/22 20:50:33 - [] D -- C:\Program Files\Microsoft SQL Server O43 - CFD: 2015/04/22 20:50:11 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition O43 - CFD: 2015/04/22 20:50:12 - [] D -- C:\Program Files\Microsoft Synchronization Services O43 - CFD: 2015/04/22 20:51:13 - [] D -- C:\Program Files\Microsoft Visual Studio 10.0 O43 - CFD: 2014/11/09 11:53:00 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 2014/09/01 18:35:03 - [] D -- C:\Program Files\Movie Maker O43 - CFD: 2014/09/04 16:20:51 - [] D -- C:\Program Files\MSBuild O43 - CFD: 2015/06/16 09:27:03 - [] D -- C:\Program Files\MSECache O43 - CFD: 2014/09/01 18:32:20 - [] D -- C:\Program Files\MSN O43 - CFD: 2014/09/01 18:33:06 - [] D -- C:\Program Files\MSN Gaming Zone O43 - CFD: 2014/12/25 18:01:46 - [] D -- C:\Program Files\My Connection O43 - CFD: 2014/11/01 23:03:44 - [] D -- C:\Program Files\NetMeeting O43 - CFD: 2014/09/01 18:33:18 - [] D -- C:\Program Files\Online Services O43 - CFD: 2015/07/29 00:40:38 - [] D -- C:\Program Files\Opera O43 - CFD: 2014/09/01 18:35:18 - [] D -- C:\Program Files\Outlook Express O43 - CFD: 2015/06/08 21:28:25 - [] D -- C:\Program Files\PhotoFiltre Studio X O43 - CFD: 2015/06/14 19:53:53 - [] D -- C:\Program Files\PhotoshopPortable O43 - CFD: 2015/06/03 08:37:28 - [] D -- C:\Program Files\Prezi O43 - CFD: 2014/11/05 15:49:01 - [] D -- C:\Program Files\Qualcomm Atheros O43 - CFD: 2014/09/03 11:58:45 - [] D -- C:\Program Files\Realtek O43 - CFD: 2014/09/04 16:20:44 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 2014/09/03 11:36:12 - [] D -- C:\Program Files\SAGEM O43 - CFD: 2014/09/01 18:36:02 - [] D -- C:\Program Files\Services en ligne O43 - CFD: 2014/12/07 10:32:46 - [] D -- C:\Program Files\SoftMaker Viewer O43 - CFD: 2014/10/22 16:12:16 - [] D -- C:\Program Files\Sony O43 - CFD: 2015/01/31 20:08:47 - [] D -- C:\Program Files\StatBox 6 O43 - CFD: 2014/11/01 22:16:04 - [] D -- C:\Program Files\SuperCopier O43 - CFD: 2015/04/12 20:31:40 - [0] D -- C:\Program Files\Tensons O43 - CFD: 2014/09/01 18:46:44 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 2015/06/03 20:18:15 - [0] D -- C:\Program Files\uyuywxje O43 - CFD: 2014/11/08 16:28:36 - [] D -- C:\Program Files\VerbAce Research O43 - CFD: 2014/09/03 11:38:47 - [] D -- C:\Program Files\VideoLAN O43 - CFD: 2014/09/04 16:16:28 - [] D -- C:\Program Files\VSO O43 - CFD: 2014/09/24 08:50:26 - [] D -- C:\Program Files\Web Connection =>PUP.Optional.WebConnect O43 - CFD: 2014/10/22 16:10:51 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 2014/09/01 18:32:54 - [] D -- C:\Program Files\Windows NT O43 - CFD: 2014/09/01 18:36:06 - [0] HD -- C:\Program Files\WindowsUpdate O43 - CFD: 2014/11/01 23:03:47 - [] D -- C:\Program Files\WinRAR O43 - CFD: 2015/07/30 13:39:14 - [] D -- C:\Program Files\WinZipper O43 - CFD: 2015/04/16 19:23:10 - [] D -- C:\Program Files\Word to Pdf Converter 3000 O43 - CFD: 2014/09/01 18:37:33 - [] D -- C:\Program Files\xerox O43 - CFD: 2015/02/05 21:28:31 - [] D -- C:\Program Files\ZHPDiag O43 - CFD: 2014/09/18 17:05:59 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2014/11/01 22:39:04 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\avast! Free Antivirus O43 - CFD: 2014/11/09 12:17:23 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Batchwork O43 - CFD: 2015/07/30 13:54:04 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2015/02/01 21:50:08 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage O43 - CFD: 2014/09/03 12:00:43 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Google Chrome O43 - CFD: 2015/04/10 20:00:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Download Manager O43 - CFD: 2015/04/26 23:24:34 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Haut Débit Mobile O43 - CFD: 2015/02/06 09:11:48 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Internet Mobile O43 - CFD: 2014/11/05 22:20:38 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Java O43 - CFD: 2014/09/01 18:33:43 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Jeux O43 - CFD: 2015/05/02 17:18:07 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Kingo ROOT O43 - CFD: 2014/11/09 11:54:28 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Office O43 - CFD: 2015/04/22 20:49:08 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Microsoft Visual Studio 2010 Express O43 - CFD: 2014/12/25 18:01:49 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\My Connection O43 - CFD: 2014/09/01 18:37:20 - [] RD -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 2014/11/05 15:46:56 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Qualcomm Atheros O43 - CFD: 2014/09/03 11:52:42 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\SAGEM F@st 800-840 O43 - CFD: 2014/11/08 16:28:37 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VerbAce-Pro O43 - CFD: 2015/01/28 01:46:48 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\VideoLAN O43 - CFD: 2014/11/13 13:06:00 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Web Connection =>PUP.Optional.WebConnect O43 - CFD: 2014/09/03 11:38:36 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinRAR O43 - CFD: 2015/05/29 16:04:58 - [] D -- C:\Documents and Settings\All Users\Menu Démarrer\Programmes\WinZipper O43 - CFD: 2014/09/04 16:42:13 - [] SHD -- C:\Documents and Settings\All Users\Application Data\360Quarant O43 - CFD: 2014/12/04 13:49:39 - [] D -- C:\Documents and Settings\All Users\Application Data\Adobe O43 - CFD: 2014/11/01 22:38:26 - [] D -- C:\Documents and Settings\All Users\Application Data\Alwil Software O43 - CFD: 2014/11/01 22:03:47 - [] D -- C:\Documents and Settings\All Users\Application Data\Apple O43 - CFD: 2014/11/05 15:49:05 - [0] RHD -- C:\Documents and Settings\All Users\Application Data\Atheros O43 - CFD: 2015/05/30 11:42:41 - [] D -- C:\Documents and Settings\All Users\Application Data\Avg_Update_0215pit O43 - CFD: 2015/06/14 16:22:42 - [] D -- C:\Documents and Settings\All Users\Application Data\Avg_Update_0615avt O43 - CFD: 2015/07/29 00:38:54 - [] D -- C:\Documents and Settings\All Users\Application Data\Canneverbe Limited O43 - CFD: 2015/05/29 13:39:36 - [] HD -- C:\Documents and Settings\All Users\Application Data\Common Files O43 - CFD: 2015/02/06 09:15:57 - [] D -- C:\Documents and Settings\All Users\Application Data\DataCardService O43 - CFD: 2015/04/09 01:20:27 - [] D -- C:\Documents and Settings\All Users\Application Data\FreeHideIP O43 - CFD: 2014/11/01 21:59:46 - [0] D -- C:\Documents and Settings\All Users\Application Data\Freemake O43 - CFD: 2014/09/03 11:39:19 - [0] D -- C:\Documents and Settings\All Users\Application Data\IDM O43 - CFD: 2015/02/06 09:08:44 - [] D -- C:\Documents and Settings\All Users\Application Data\Internet Mobile O43 - CFD: 2015/07/21 19:54:23 - [] D -- C:\Documents and Settings\All Users\Application Data\MFAData O43 - CFD: 2015/06/25 01:00:25 - [] SD -- C:\Documents and Settings\All Users\Application Data\Microsoft O43 - CFD: 2014/11/05 22:17:42 - [] D -- C:\Documents and Settings\All Users\Application Data\Oracle O43 - CFD: 2015/07/29 08:03:44 - [] D -- C:\Documents and Settings\All Users\Application Data\Package Cache O43 - CFD: 2014/11/05 15:46:46 - [] D -- C:\Documents and Settings\All Users\Application Data\Qualcomm Atheros O43 - CFD: 2015/04/16 19:26:44 - [] D -- C:\Documents and Settings\All Users\Application Data\Skype O43 - CFD: 2014/10/22 16:12:47 - [] D -- C:\Documents and Settings\All Users\Application Data\Sony O43 - CFD: 2015/04/16 18:10:03 - [] D -- C:\Documents and Settings\All Users\Application Data\Sophos O43 - CFD: 2014/11/05 22:21:18 - [] D -- C:\Documents and Settings\All Users\Application Data\Sun O43 - CFD: 2014/09/04 16:16:28 - [] D -- C:\Documents and Settings\All Users\Application Data\VSO O43 - CFD: 2015/05/30 12:23:18 - [] D -- C:\Documents and Settings\All Users\Application Data\WindowsMangerProtect =>PUP.Optional.Fuyu O43 - CFD: 2014/09/03 16:34:45 - [] D -- C:\Documents and Settings\All Users\Application Data\WNR O43 - CFD: 2014/12/04 13:49:39 - [] D -- C:\Program Files\Fichiers communs\Adobe O43 - CFD: 2014/11/09 14:13:41 - [] D -- C:\Program Files\Fichiers communs\Adobe-BackupByPhotoshopCS6Portable O43 - CFD: 2014/11/09 11:53:47 - [] D -- C:\Program Files\Fichiers communs\DESIGNER O43 - CFD: 2014/09/03 11:58:36 - [] D -- C:\Program Files\Fichiers communs\InstallShield O43 - CFD: 2015/01/25 12:28:27 - [] D -- C:\Program Files\Fichiers communs\Java O43 - CFD: 2015/04/22 20:47:51 - [] D -- C:\Program Files\Fichiers communs\Microsoft Shared O43 - CFD: 2014/09/01 18:35:16 - [] D -- C:\Program Files\Fichiers communs\MSSoap O43 - CFD: 2015/07/29 00:35:45 - [] D -- C:\Program Files\Fichiers communs\Nero O43 - CFD: 2014/09/01 18:27:20 - [] D -- C:\Program Files\Fichiers communs\ODBC O43 - CFD: 2014/09/01 18:35:21 - [] D -- C:\Program Files\Fichiers communs\Services O43 - CFD: 2014/09/01 18:27:16 - [] D -- C:\Program Files\Fichiers communs\SpeechEngines O43 - CFD: 2014/09/01 18:34:24 - [] D -- C:\Program Files\Fichiers communs\System O43 - CFD: 2014/12/04 13:49:50 - [] D -- C:\Documents and Settings\yassine\Application Data\Adobe O43 - CFD: 2014/11/13 13:18:32 - [] D -- C:\Documents and Settings\yassine\Application Data\Adobe-BackupByPhotoshopCS6Portable O43 - CFD: 2015/01/18 20:07:11 - [] D -- C:\Documents and Settings\yassine\Application Data\Buddi O43 - CFD: 2015/07/29 00:38:13 - [] D -- C:\Documents and Settings\yassine\Application Data\Canneverbe Limited O43 - CFD: 2015/04/17 09:36:58 - [] D -- C:\Documents and Settings\yassine\Application Data\com.prezi.PreziDesktop O43 - CFD: 2015/07/30 13:14:43 - [] D -- C:\Documents and Settings\yassine\Application Data\DMCache O43 - CFD: 2015/07/29 09:45:27 - [] D -- C:\Documents and Settings\yassine\Application Data\DRPSu O43 - CFD: 2014/11/04 08:43:07 - [] D -- C:\Documents and Settings\yassine\Application Data\Ectaco O43 - CFD: 2015/06/27 17:05:36 - [0] D -- C:\Documents and Settings\yassine\Application Data\eCyber =>PUP.Optional.Elex O43 - CFD: 2014/11/01 21:59:03 - [] D -- C:\Documents and Settings\yassine\Application Data\EssentialPIM O43 - CFD: 2015/04/09 01:20:27 - [] D -- C:\Documents and Settings\yassine\Application Data\FreeHideIP O43 - CFD: 2014/09/04 16:13:58 - [0] D -- C:\Documents and Settings\yassine\Application Data\GrabPro O43 - CFD: 2015/05/19 21:43:59 - [0] D -- C:\Documents and Settings\yassine\Application Data\Help O43 - CFD: 2014/09/03 11:46:11 - [] D -- C:\Documents and Settings\yassine\Application Data\Identities O43 - CFD: 2015/04/10 20:00:53 - [] D -- C:\Documents and Settings\yassine\Application Data\IDM O43 - CFD: 2014/09/03 11:36:27 - [] D -- C:\Documents and Settings\yassine\Application Data\InstallShield O43 - CFD: 2015/01/11 19:34:00 - [] D -- C:\Documents and Settings\yassine\Application Data\Macromedia O43 - CFD: 2015/07/21 22:09:29 - [] SD -- C:\Documents and Settings\yassine\Application Data\Microsoft O43 - CFD: 2015/05/13 22:38:53 - [] D -- C:\Documents and Settings\yassine\Application Data\Microsoft Corporation O43 - CFD: 2014/11/10 10:03:55 - [] D -- C:\Documents and Settings\yassine\Application Data\Mozilla O43 - CFD: 2015/07/29 00:38:10 - [] D -- C:\Documents and Settings\yassine\Application Data\OpenCandy =>PUP.Optional.OpenCandy O43 - CFD: 2015/07/29 00:40:10 - [] D -- C:\Documents and Settings\yassine\Application Data\Opera Software O43 - CFD: 2014/11/01 22:01:27 - [] D -- C:\Documents and Settings\yassine\Application Data\Orbit O43 - CFD: 2014/09/03 11:46:10 - [] D -- C:\Documents and Settings\yassine\Application Data\PhotoFiltre Studio X O43 - CFD: 2015/07/12 22:50:06 - [0] D -- C:\Documents and Settings\yassine\Application Data\picpick O43 - CFD: 2014/09/04 16:14:12 - [] D -- C:\Documents and Settings\yassine\Application Data\ProgSense =>PUP.Optional.ProgSense O43 - CFD: 2014/10/22 16:24:03 - [0] D -- C:\Documents and Settings\yassine\Application Data\Publish Providers O43 - CFD: 2014/11/05 15:29:13 - [] D -- C:\Documents and Settings\yassine\Application Data\RHEng =>PUP.Optional.Conduit O43 - CFD: 2015/01/25 23:42:50 - [] D -- C:\Documents and Settings\yassine\Application Data\Skype O43 - CFD: 2014/10/04 16:22:15 - [0] D -- C:\Documents and Settings\yassine\Application Data\SoftMaker O43 - CFD: 2014/10/22 16:23:56 - [] D -- C:\Documents and Settings\yassine\Application Data\Sony O43 - CFD: 2014/11/05 22:09:12 - [] D -- C:\Documents and Settings\yassine\Application Data\Sun O43 - CFD: 2015/05/29 17:36:55 - [] D -- C:\Documents and Settings\yassine\Application Data\TuneUp Software O43 - CFD: 2015/07/30 13:49:08 - [] D -- C:\Documents and Settings\yassine\Application Data\vlc O43 - CFD: 2015/01/31 16:22:21 - [] D -- C:\Documents and Settings\yassine\Application Data\webssearches =>PUP.Optional.WebsSearches O43 - CFD: 2014/09/03 11:58:26 - [] D -- C:\Documents and Settings\yassine\Application Data\WinRAR O43 - CFD: 2015/06/15 22:34:55 - [] D -- C:\Documents and Settings\yassine\Application Data\WinZipper O43 - CFD: 2014/09/03 16:34:31 - [] D -- C:\Documents and Settings\yassine\Application Data\WNR O43 - CFD: 2014/11/10 10:03:54 - [] D -- C:\Documents and Settings\yassine\Application Data\www.kiwix.org O43 - CFD: 2015/07/30 13:55:05 - [] D -- C:\Documents and Settings\yassine\Application Data\ZHP O43 - CFD: 2014/12/04 13:49:49 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Adobe O43 - CFD: 2014/11/13 13:18:32 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Adobe-BackupByPhotoshopCS6Portable O43 - CFD: 2014/09/07 12:40:56 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Apple O43 - CFD: 2015/06/22 11:05:11 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Avg O43 - CFD: 2014/11/09 12:17:20 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Batchwork O43 - CFD: 2015/07/30 13:54:19 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Crossbrowse =>PUP.Optional.CrossBrowse O43 - CFD: 2014/10/04 11:37:22 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\FreemakeVideoConverter O43 - CFD: 2015/07/30 13:50:21 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/06/28 16:32:30 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Google O43 - CFD: 2015/05/19 21:43:58 - [0] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Help O43 - CFD: 2015/05/02 17:18:12 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Kingosoft O43 - CFD: 2015/05/29 13:39:34 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\MFAData O43 - CFD: 2015/07/29 01:21:32 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Microsoft O43 - CFD: 2015/07/29 00:40:11 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Opera Software O43 - CFD: 2014/09/04 16:18:07 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Skype O43 - CFD: 2014/10/22 16:23:03 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Sony O43 - CFD: 2014/11/05 22:21:00 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Sun O43 - CFD: 2015/07/11 19:28:43 - [0] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\Temporary Projects O43 - CFD: 2014/11/10 10:03:54 - [] D -- C:\Documents and Settings\yassine\Local Settings\Application Data\www.kiwix.org O43 - CFD: 2014/09/01 18:46:48 - [] RD -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\Accessoires O43 - CFD: 2015/07/29 14:25:23 - [] D -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\Chrome Apps O43 - CFD: 2015/07/30 13:54:21 - [] RD -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\Démarrage O43 - CFD: 2015/05/25 11:19:50 - [] D -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\Family Games O43 - CFD: 2015/07/29 14:25:13 - [] D -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\Google Chrome O43 - CFD: 2015/04/10 20:00:34 - [] D -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\Internet Download Manager O43 - CFD: 2014/11/08 14:20:02 - [] RD -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\Outils d'administration O43 - CFD: 2014/09/03 11:39:07 - [] D -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\PhotoFiltre Studio X O43 - CFD: 2014/10/04 15:25:56 - [] D -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\SoftMaker Viewer O43 - CFD: 2014/09/03 11:38:36 - [] D -- C:\Documents and Settings\yassine\Menu Démarrer\Programmes\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (O45) (3) - 5s O45 - LFCP:[MD5.0D81C555F39807104DE2D47124339BF3] 2015/07/30 13:55:10 A -- C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-0477F13F.pf =>PUP.Optional.GlobalUpdate O45 - LFCP:[MD5.137FCF25FF832F7B4A12C2F6D8CDCD63] 2015/07/30 13:50:31 A -- C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-29E7DBE5.pf =>PUP.Optional.GlobalUpdate O45 - LFCP:[MD5.B44CCE9D96931F2853299C796C7C7F13] 2015/07/30 13:55:00 A -- C:\WINDOWS\Prefetch\GLOBALUPDATECRASHHANDLER.EXE-1996FABA.pf =>PUP.Optional.GlobalUpdate ---\\ Enumération des clés de registre StartupReg (SMSR) (O53) (3) - 0s O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (...) -- C:\Program Files\Skype\Phone\Skype.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe ---\\ Liste des pilotes du système (SDL) (O58) (78) - 7s O58 - SDL:2010/05/06 20:33:29 A . (.ALWIL Software - avast! Base Kernel-Mode Device Driver for W.) -- C:\WINDOWS\System32\drivers\aavmker4.sys [28880] O58 - SDL:2007/02/07 16:50:14 A . (.Analog Deivces - USB Firmware loader.) -- C:\WINDOWS\System32\drivers\adildr.sys [56088] O58 - SDL:2007/02/07 16:50:58 A . (.Analog Deivces - USB Firmware loader.) -- C:\WINDOWS\System32\drivers\adildrx64.sys [58264] O58 - SDL:2007/02/07 16:50:32 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\drivers\adiusbaw.sys [118552] O58 - SDL:2007/02/07 16:51:18 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\drivers\adiusbawx64.sys [169496] O58 - SDL:2011/06/20 09:00:50 A . (.TCT International Mobile Ltd - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\AlcatelOTUsbnet.sys [118272] O58 - SDL:2013/06/18 11:30:26 A . (.Windows (R) Codename Longhorn DDK provider - Alcatelusb Driver.) -- C:\WINDOWS\System32\drivers\AlcatelUsb.sys [18816] O58 - SDL:2007/12/13 11:21:56 A . (.Atheros Communications, Inc. - Driver for Atheros AR5001 Wireless Network.) -- C:\WINDOWS\System32\drivers\ar5211.sys [547904] O58 - SDL:2010/05/06 20:33:47 A . (.ALWIL Software - avast! File System Access Blocking Driver.) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [19024] O58 - SDL:2010/05/06 20:33:55 A . (.ALWIL Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\System32\drivers\aswmon.sys [94800] O58 - SDL:2010/05/06 20:33:59 A . (.ALWIL Software - avast! File System Filter Driver for Window.) -- C:\WINDOWS\System32\drivers\aswmon2.sys [100432] O58 - SDL:2010/05/06 20:34:27 A . (.ALWIL Software - avast! TDI RDR Driver.) -- C:\WINDOWS\System32\drivers\aswRdr.sys [23376] O58 - SDL:2014/12/08 19:19:22 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [770784] O58 - SDL:2010/05/06 20:39:00 A . (.ALWIL Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [164048] O58 - SDL:2010/05/06 20:39:23 A . (.ALWIL Software - avast! TDI Filter Driver.) -- C:\WINDOWS\System32\drivers\aswTdi.sys [46672] O58 - SDL:2013/11/26 23:42:02 A . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\drivers\athw.sys [2158848] O58 - SDL:2012/10/24 05:00:00 A . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\drivers\athwx.sys [3022016] O58 - SDL:2002/09/07 01:00:00 A . (.RAVISENT Technologies Inc. - Pilote principal CineMaster C 1.2 WDM.) -- C:\WINDOWS\System32\drivers\cinemst2.sys [262528] O58 - SDL:2002/09/07 01:00:00 A . (.Compaq Computer Corporation - Compaq PA-1 Player Driver.) -- C:\WINDOWS\System32\drivers\cpqdap01.sys [11776] O58 - SDL:2008/04/13 19:05:08 A . (.Microsoft Corp., Veritas Software - Pilote de démarrage du gestionnaire de disq.) -- C:\WINDOWS\System32\drivers\dmboot.sys [800256] O58 - SDL:2008/04/13 19:05:14 A . (.Microsoft Corp., Veritas Software - Pilote E/S du Gestionnaire de disques NT.) -- C:\WINDOWS\System32\drivers\dmio.sys [154496] O58 - SDL:2002/09/07 01:00:00 A . (.Microsoft Corp., Veritas Software. - NT Disk Manager Startup Driver.) -- C:\WINDOWS\System32\drivers\dmload.sys [5888] O58 - SDL:2007/01/04 13:47:48 A . (.Analog Deivces - USB Firmware loader.) -- C:\WINDOWS\System32\drivers\e4ldr.sys [69656] O58 - SDL:2007/01/04 13:47:10 A . (.Analog Deivces - USB Firmware loader.) -- C:\WINDOWS\System32\drivers\e4ldrx64.sys [71832] O58 - SDL:2007/01/04 13:48:04 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\drivers\e4usbaw.sys [104344] O58 - SDL:2007/01/04 13:46:30 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\drivers\e4usbawx64.sys [146968] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\WINDOWS\System32\drivers\ewdcsc.sys [25856] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ewusbmdm.sys [199168] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\ewusbnet.sys [245376] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\WINDOWS\System32\drivers\ew_hwupgrade.sys [19200] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\ew_hwusbdev.sys [102784] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\WINDOWS\System32\drivers\ew_jubusenum.sys [76544] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\WINDOWS\System32\drivers\ew_jucdcacm.sys [95616] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\WINDOWS\System32\drivers\ew_jucdcecm.sys [67584] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\WINDOWS\System32\drivers\ew_juextctrl.sys [27520] O58 - SDL:2015/02/06 09:10:15 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\WINDOWS\System32\drivers\ew_usbenumfilter.sys [11136] O58 - SDL:2001/08/01 20:00:22 A . (.FUJITSU LIMITED - WDM driver for FUJ02B1 PnP device.) -- C:\WINDOWS\System32\drivers\fuj02b1.sys [5248] O58 - SDL:2004/01/16 23:00:00 A . (.FUJITSU LIMITED - WDM driver for FUJ02E3 PnP device.) -- C:\WINDOWS\System32\drivers\fuj02e3.sys [4864] O58 - SDL:2008/04/13 09:36:06 A . (.Windows (R) Server 2003 DDK provider - High Definition Audio Bus Driver v1.0a.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [144384] O58 - SDL:2015/03/27 00:10:50 A . (.Tonec Inc. - Internet Download Manager TDI Driver.) -- C:\WINDOWS\System32\drivers\idmtdi.sys [126968] O58 - SDL:2008/12/12 09:33:58 A . (.Intel Corporation - Intel Graphics Miniport Driver.) -- C:\WINDOWS\System32\drivers\igxpmp32.sys [6048768] O58 - SDL:2011/06/20 09:00:50 A . (.TCT International Mobile Ltd - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\jrdusbser.sys [106112] O58 - SDL:2002/09/25 13:58:38 A . (.EUTRON - Smartkey parallel port driver for Windows N.) -- C:\WINDOWS\System32\drivers\KeyP.sys [10286] O58 - SDL:2011/08/29 11:42:56 A . (.MBB Incorporated - CDROM Filter.) -- C:\WINDOWS\System32\drivers\massfilter.sys [9216] O58 - SDL:2015/02/06 09:10:15 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\WINDOWS\System32\drivers\mod7700.sys [861696] O58 - SDL:2002/09/07 01:00:00 A . (.S3/Diamond Multimedia Systems - NikeDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\nikedrv.sys [12032] O58 - SDL:2002/09/07 01:00:00 A . (.Parallel Technologies, Inc. - Parallel Technologies DirectParallel IO Lib.) -- C:\WINDOWS\System32\drivers\ptilink.sys [17792] O58 - SDL:2002/09/07 01:00:00 A . (.S3/Diamond Multimedia Systems - Rio8Drv.sys Usb Driver.) -- C:\WINDOWS\System32\drivers\rio8drv.sys [12032] O58 - SDL:2002/09/07 01:00:00 A . (.S3/Diamond Multimedia Systems - RioDrv Usb Driver.) -- C:\WINDOWS\System32\drivers\riodrv.sys [12032] O58 - SDL:2005/12/08 07:48:40 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RtkHDAud.Sys [4123136] O58 - SDL:2008/04/13 09:39:16 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [20480] O58 - SDL:2002/12/16 16:57:42 A . (.EUTRON - SmartKey Token for Windows 98/Me/2000/XP.) -- C:\WINDOWS\System32\drivers\skeyusb.sys [33437] O58 - SDL:2013/08/25 11:30:48 A . (...) -- C:\WINDOWS\System32\drivers\StarOpen.sys [13120] O58 - SDL:2002/09/07 01:00:00 A . (.Toshiba Corporation - WDM Toshiba Tecra Video Capture Driver.) -- C:\WINDOWS\System32\drivers\tsbvcap.sys [21376] O58 - SDL:2002/09/07 01:00:00 A . (.RAVISENT Technologies Inc. - CineMaster C WDM DVD Minidriver.) -- C:\WINDOWS\System32\drivers\vdmindvd.sys [58112] O58 - SDL:2009/03/16 22:19:44 N . (.Atheros Communications, Inc. - Wireless Intermediate Miniport Driver.) -- C:\WINDOWS\System32\drivers\wsimd.sys [58208] O58 - SDL:2012/03/27 14:48:00 A . (.Marvell - NDIS5.1 Miniport Driver for Marvell Yukon E.) -- C:\WINDOWS\System32\drivers\yk51x86.sys [299424] O58 - SDL:2011/08/29 11:42:56 A . (.ZTE Incorporated - ZTE Incorporated.) -- C:\WINDOWS\System32\drivers\ZTEusbmdm6k.sys [107520] O58 - SDL:2011/08/29 11:42:56 A . (.ZTE Incorporated - ZTE Incorporated.) -- C:\WINDOWS\System32\drivers\ZTEusbnmea.sys [107520] O58 - SDL:2011/08/29 11:42:56 A . (.ZTE Incorporated - ZTE Incorporated.) -- C:\WINDOWS\System32\drivers\ZTEusbser6k.sys [107520] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\ansi.sys [9037] O58 - SDL:2013/11/26 23:42:02 N . (.Atheros Communications, Inc. - Driver for Atheros Wireless Network Adapter.) -- C:\WINDOWS\System32\athw.sys [2158848] O58 - SDL:2014/06/05 19:20:42 N . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\athwb.sys [2942976] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\country.sys [27097] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\himem.sys [4912] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\key01.sys [42809] O58 - SDL:2008/04/13 09:50:56 A . (...) -- C:\WINDOWS\System32\keyboard.sys [42537] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\ntdos.sys [27916] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\ntdos404.sys [29146] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\ntdos411.sys [29370] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\ntdos412.sys [29274] O58 - SDL:2002/09/07 01:00:00 A . (...) -- C:\WINDOWS\System32\ntdos804.sys [29146] O58 - SDL:2008/04/13 09:49:52 A . (...) -- C:\WINDOWS\System32\ntio.sys [34000] O58 - SDL:2008/04/13 09:49:44 A . (...) -- C:\WINDOWS\System32\ntio404.sys [34560] O58 - SDL:2008/04/13 09:49:40 A . (...) -- C:\WINDOWS\System32\ntio411.sys [35648] O58 - SDL:2008/04/13 09:49:44 A . (...) -- C:\WINDOWS\System32\ntio412.sys [35424] O58 - SDL:2008/04/13 09:49:42 A . (...) -- C:\WINDOWS\System32\ntio804.sys [34560] O58 - SDL:2009/03/16 22:19:44 N . (.Atheros Communications, Inc. - Wireless Intermediate Miniport Driver.) -- C:\WINDOWS\System32\wsimd.sys [58208] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61) (13) - 40s O61 - LFC: 2015/07/30 13:44:09 A . (..) -- C:\Documents and Settings\yassine\Mes documents\Downloads\Programs\E8310,E8410_AUDIO-HD_REALTEK_V5.10.0.5377_XP.EXE [29645404] O61 - LFC: 2015/07/30 13:45:09 A . (..) -- C:\Documents and Settings\yassine\Mes documents\Downloads\Programs\E8310,E8410_VIDEO_INTEL_965_V6.14.10.4785_XP.EXE [17036886] O61 - LFC: 2015/07/30 13:44:04 A . (..) -- C:\Documents and Settings\yassine\Mes documents\Downloads\Programs\E8310_LAN_MARVELL_V8.61.2.3_XP.EXE [2344697] O61 - LFC: 2015/07/30 13:45:43 A . (..) -- C:\Documents and Settings\yassine\Mes documents\Downloads\Programs\WLAN_ATHEROS_V7.7.0.509_XP_FPC46-1754-01.EXE [30356012] O61 - LFC: 2015/07/30 13:49:15 A . (..) -- C:\Documents and Settings\yassine\Mes documents\Downloads\Programs\WLAN_INTEL_V12.4.0.21_XP_FPC46-1614-01.EXE [93975078] O61 - LFC: 2015/07/30 13:50:43 A . (..) -- C:\Documents and Settings\yassine\Local Settings\Application Data\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] O61 - LFC: 2015/07/30 13:30:42 A . (.Tonec Inc..) -- C:\Documents and Settings\yassine\Application Data\IDM\idmmzcc5\components2\idmcchandler2.dll [332824] O61 - LFC: 2015/07/30 13:30:42 A . (.Tonec Inc..) -- C:\Documents and Settings\yassine\Application Data\IDM\idmmzcc5\components2\idmcchandler2_64.dll [460824] O61 - LFC: 2015/07/30 13:30:42 A . (.Tonec Inc..) -- C:\Documents and Settings\yassine\Application Data\IDM\idmmzcc5\components2\idmmzcc.dll [34216] O61 - LFC: 2015/07/30 13:30:42 A . (.Tonec Inc..) -- C:\Documents and Settings\yassine\Application Data\IDM\idmmzcc5\components2\idmmzcc64.dll [28512] O61 - LFC: 2015/07/30 13:30:41 A . (.Tonec Inc..) -- C:\Documents and Settings\yassine\Application Data\IDM\idmmzcc5\components12\idmmzcc.dll [26648] O61 - LFC: 2015/07/30 13:30:41 A . (.Tonec Inc..) -- C:\Documents and Settings\yassine\Application Data\IDM\idmmzcc5\components12\idmmzcc64.dll [31768] O61 - LFC: 2015/07/30 13:30:41 A . (.Tonec Inc..) -- C:\Documents and Settings\yassine\Application Data\IDM\idmmzcc5\components\idmmzcc.dll [34216] ---\\ Menu de démarrage Internet (SMI) (O68) (19) - 0s O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe http://www.delta-homes.com/ =>PUP.Optional.DeltaHomes O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe http://www.delta-homes.com/ =>PUP.Optional.DeltaHomes O68 - StartMenuInternet: <>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Crossbrowse - Crossbrowse.) -- C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Windows NT User Data Migration Tool.) -- C:\WINDOWS\system32\shmgrate.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe ---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69) (1) - 1s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://do-search.com/ =>PUP.Optional.DoSearches ---\\ Enumère les services démarrés par Svchost (SSS) (O83) (41) - 2s O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\system32\appmgmts.dll [176640] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\WINDOWS\system32\audiosrv.dll [42496] O83 - Search Svchost Services: Browser (Browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\WINDOWS\system32\browser.dll [77824] O83 - Search Svchost Services: CryptSvc (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) -- C:\WINDOWS\system32\cryptsvc.dll [62464] O83 - Search Svchost Services: DMServer (DMServer) . (.Microsoft Corp. - DLL Service gestionnaire de disque logique.) -- C:\WINDOWS\system32\dmserver.dll [24576] O83 - Search Svchost Services: DHCP (DHCP) . (.Microsoft Corporation - Service client DHCP.) -- C:\WINDOWS\system32\dhcpcsvc.dll [127488] O83 - Search Svchost Services: ERSvc (ERSvc) . (.Microsoft Corporation - Windows Error Reporting Service.) -- C:\WINDOWS\system32\ersvc.dll [23040] O83 - Search Svchost Services: EventSystem (EventSystem) . (.Microsoft Corporation - .) -- C:\WINDOWS\system32\es.dll [246272] O83 - Search Svchost Services: FastUserSwitchingCompatibility (FastUserSwitchingCompatibility) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: HidServ (HidServ) . (.Microsoft Corporation - HID Audio Service.) -- C:\WINDOWS\system32\hidserv.dll [21504] O83 - Search Svchost Services: LanmanServer (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) -- C:\WINDOWS\system32\srvsvc.dll [96768] O83 - Search Svchost Services: LanmanWorkstation (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) -- C:\WINDOWS\system32\wkssvc.dll [132096] O83 - Search Svchost Services: Messenger (Messenger) . (.Microsoft Corporation - NT Messenger Service.) -- C:\WINDOWS\system32\msgsvc.dll [33792] O83 - Search Svchost Services: Netman (Netman) . (.Microsoft Corporation - Gestionnaire de connexions réseau.) -- C:\WINDOWS\system32\netman.dll [198144] O83 - Search Svchost Services: Nla (Nla) . (.Microsoft Corporation - Fournisseur de service Sockets 2.0 de Micro.) -- C:\WINDOWS\system32\mswsock.dll [247808] O83 - Search Svchost Services: Ntmssvc (Ntmssvc) . (.Microsoft Corporation - Gestionnaire de stockage amovible.) -- C:\WINDOWS\system32\ntmssvc.dll [438272] O83 - Search Svchost Services: NWCWorkstation (NWCWorkstation) . (.Microsoft Corporation - Client Service for Netware.) -- C:\WINDOWS\system32\nwwks.dll [65536] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\WINDOWS\system32\rasauto.dll [88576] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\WINDOWS\system32\rasmans.dll [186368] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\WINDOWS\system32\mprdim.dll [53248] O83 - Search Svchost Services: Schedule (Schedule) . (.Microsoft Corporation - Moteur du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [194560] O83 - Search Svchost Services: Seclogon (Seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [18944] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\WINDOWS\system32\sens.dll [39424] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\WINDOWS\system32\ipnathlp.dll [332800] O83 - Search Svchost Services: SRService (SRService) . (.Microsoft Corporation - Service de restauration du système.) -- C:\WINDOWS\system32\srsvc.dll [171520] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\system32\tapisrv.dll [249856] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: TrkWks (TrkWks) . (.Microsoft Corporation - Distributed Link Tracking Client.) -- C:\WINDOWS\system32\trkwks.dll [90112] O83 - Search Svchost Services: W32Time (W32Time) . (.Microsoft Corporation - Service de temps Windows.) -- C:\WINDOWS\system32\w32time.dll [178176] O83 - Search Svchost Services: WZCSVC (WZCSVC) . (.Microsoft Corporation - Service configuration automatique sans fil.) -- C:\WINDOWS\system32\wzcsvc.dll [483840] O83 - Search Svchost Services: Wmi (Wmi) . (.Microsoft Corporation - API avancées Windows 32.) -- C:\WINDOWS\system32\advapi32.dll [685568] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\wmisvc.dll [145408] O83 - Search Svchost Services: wscsvc (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) -- C:\WINDOWS\system32\wscsvc.dll [80896] O83 - Search Svchost Services: xmlprov (xmlprov) . (.Microsoft Corporation - Network Provisioning Service.) -- C:\WINDOWS\system32\xmlprov.dll [129024] O83 - Search Svchost Services: napagent (napagent) . (.Microsoft Corporation - Exécution du service Agent de quarantaine.) -- C:\WINDOWS\system32\qagentrt.dll [293376] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [61440] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\system32\qmgr.dll [409088] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update AutoUpdate Service.) -- C:\WINDOWS\system32\wuauserv.dll [6656] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\system32\shsvcs.dll [135680] O83 - Search Svchost Services: helpsvc (helpsvc) . (.Microsoft Corporation - Microsoft PCHealth Service Holder.) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll [38400] O83 - Search Svchost Services: WmdmPmSN (WmdmPmSN) . (.Microsoft Corporation - Microsoft Media Device Service Provider.) -- C:\WINDOWS\system32\mspmsnsv.dll [27136] ---\\ Scan Additionnel (O88) (78) - 0s C:\Program Files\Web Connection\IAM\BackgroundService\ServiceManager.exe =>PUP.Optional.WebConnect C:\Program Files\Web Connection\IAM\BackgroundService\ModemListener.exe =>PUP.Optional.WebConnect C:\Program Files\CinemaP-1.9cV30.07\f9221a1b-50a0-4665-8fd4-beeedf88b79c-10.exe =>PUP.Optional.CrossRider C:\Program Files\CinemaP-1.9cV30.07\f9221a1b-50a0-4665-8fd4-beeedf88b79c-6.exe =>PUP.Optional.CrossRider C:\Program Files\CinemaP-1.9cV30.07\f9221a1b-50a0-4665-8fd4-beeedf88b79c-1-6.exe =>PUP.Optional.CrossRider C:\Program Files\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate C:\Documents and Settings\yassine\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\lkadffjmnaiokkdncgdlecdegajoiemi C:\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\IAM_Web Flame Modem Device Helper =>PUP.Optional.WebConnect C:\WINDOWS\Tasks\amiupdaterExd.job =>PUP.Optional.Dealply C:\WINDOWS\Tasks\amiupdaterExi.job =>PUP.Optional.Dealply C:\WINDOWS\Tasks\Crossbrowse.job =>PUP.Optional.CrossBrowse C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-1-6.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-1-7.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-10_user.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-11.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-3.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-5.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-6.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\f9221a1b-50a0-4665-8fd4-beeedf88b79c-7.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Crossbrowse =>PUP.Optional.CrossBrowse HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IAM_Web Flame Web Connection_is1 =>PUP.Optional.WebConnect HKLM\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV30.07-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\CinemaP-1.9cV30.07-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Crossbrowse =>PUP.Optional.CrossBrowse HKLM\SOFTWARE\Crossrider =>PUP.Optional.CrossRider HKLM\SOFTWARE\delta-homesSoftware =>PUP.Optional.DeltaHomes HKLM\SOFTWARE\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKLM\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\LuckyTab =>PUP.Optional.LuckyTab HKLM\SOFTWARE\supTab =>PUP.Optional.SupTab HKLM\SOFTWARE\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\V9 =>PUP.Optional.V9Software HKLM\SOFTWARE\webssearchesSoftware =>PUP.Optional.WebsSearches HKLM\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKLM\SOFTWARE\YourFileDownloader =>PUP.Optional.YourFileDownloader HKLM\SOFTWARE\_CrossriderRegNamePlaceHolder_ =>PUP.Optional.CrossRider HKCU\SOFTWARE\ArenaHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\AVG Web TuneUp =>Toolbar.AVGSafeGuard HKCU\SOFTWARE\CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV30.07-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaP-1.9cV30.07-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CrossBrowser =>PUP.Optional.CrossBrowser HKCU\SOFTWARE\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\HighDefAction =>PUP.Optional.CrossRider HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\ProgSense =>PUP.Optional.ProgSense HKCU\SOFTWARE\YorkNewCin =>PUP.Optional.CrossRider HKCU\SOFTWARE\_CrossriderRegNamePlaceHolder_ =>PUP.Optional.CrossRider C:\Program Files\45c10cf9-21f1-4e2e-b4ae-3df41586658b =>PUP.Optional.CrossRider C:\Program Files\CinemaP-1.9cV30.07 =>PUP.Optional.CrossRider C:\Program Files\Crossbrowse =>PUP.Optional.CrossBrowse C:\Program Files\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files\LuckyTab =>PUP.Optional.LuckyTab C:\Program Files\Web Connection =>PUP.Optional.WebConnect C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Crossbrowse =>PUP.Optional.CrossBrowse C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Web Connection =>PUP.Optional.WebConnect C:\Documents and Settings\All Users\Application Data\WindowsMangerProtect =>PUP.Optional.Fuyu C:\Documents and Settings\yassine\Application Data\eCyber =>PUP.Optional.Elex C:\Documents and Settings\yassine\Application Data\OpenCandy =>PUP.Optional.OpenCandy C:\Documents and Settings\yassine\Application Data\ProgSense =>PUP.Optional.ProgSense C:\Documents and Settings\yassine\Application Data\RHEng =>PUP.Optional.Conduit C:\Documents and Settings\yassine\Application Data\webssearches =>PUP.Optional.WebsSearches C:\Documents and Settings\yassine\Local Settings\Application Data\Crossbrowse =>PUP.Optional.CrossBrowse C:\Documents and Settings\yassine\Local Settings\Application Data\globalUpdate =>PUP.Optional.GlobalUpdate C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-0477F13F.pf =>PUP.Optional.GlobalUpdate C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-29E7DBE5.pf =>PUP.Optional.GlobalUpdate C:\WINDOWS\Prefetch\GLOBALUPDATECRASHHANDLER.EXE-1996FABA.pf =>PUP.Optional.GlobalUpdate C:\Program Files\Crossbrowse\Crossbrowse\Application\crossbrowse.exe =>PUP.Optional.CrossBrowse HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate ---\\ Récapitulatif des éléments trouvées sur votre station (22) - 0s http://www.nicolascoolman.fr/pup-webconnect/ =>PUP.Optional.WebConnect http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/hijacker-qvo6/ =>PUP.Optional.Qvo6 http://www.nicolascoolman.fr/pup-isstart/ =>PUP.Optional.IsStart http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse http://www.nicolascoolman.fr/pup-dealply/ =>PUP.Optional.Dealply http://www.nicolascoolman.fr/blog =>PUP.Optional.DeltaHomes http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions http://www.nicolascoolman.fr/blog =>PUP.Optional.LuckyTab http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu http://www.nicolascoolman.fr/pup-v9software/ =>PUP.Optional.V9Software http://www.nicolascoolman.fr/hijacker-webssearches/ =>PUP.Optional.WebsSearches http://www.nicolascoolman.fr/pup-yourfiledownloader/ =>PUP.Optional.YourFileDownloader http://www.nicolascoolman.fr/blog =>Toolbar.AVGSafeGuard http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowser http://www.nicolascoolman.fr/blog =>PUP.Optional.ProgSense http://www.nicolascoolman.fr/pup-elex/ =>PUP.Optional.Elex http://www.nicolascoolman.fr/adware-opencandy/ =>PUP.Optional.OpenCandy http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/pup-dosearches/ =>PUP.Optional.DoSearches ~ End of the scan, 27440 items in 125 seconds (841)(0)()