~ ZHPDiag v2015.8.20.122 Par Nicolas Coolman (2015/08/20) ~ Démarré par YOUSSEF (Administrator) (2015/08/24 13:57:51) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\YOUSSEF\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\YOUSSEF\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 10240) ---\\ Navigateurs Internet (4) - 0s GCIE: Google Chrome v44.0.2403.157 MFIE: Mozilla Firefox 37.0.2 (x86 fr) v37.0.2 OPIE: Opera 31.0.1889.99 v31.0.1889.99 MSIE: Internet Explorer v11.0.10240.16384 ---\\ Informations sur les produits Windows (9) - 1s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Logiciels de protection (1) - 1s Windows Defender W10 (Deactivate) ---\\ Logiciels d'optimisation (1) - 1s CCleaner v5.05 ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 18 PPAPI Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 16657.252 MB (74% free) ~ System Restore: Activé (Enable) ~ System drive C: has 7 GB free of 109 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: YOUSSEF-PC ~ User Name: YOUSSEF ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 7 GB free of 109 GB (System) ~ Drive D: has 417 GB free of 476 GB ~ Drive E: has 437 GB free of 476 GB ---\\ Etat du Centre de Sécurité Windows (9) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoFolderOptions: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (23) - 0s [MD5.6E756C33B5ECBD96756086A34D9A90DC] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [4532304] [MD5.5DED2A3F11AE916C8F2724947E736261] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [59392] [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [290312] [MD5.FE32B8423711B4B4378C0BA3C3560ED4] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2741760] [MD5.26EFEFD877A84EE9FBDE6DEE630892C9] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [578048] [MD5.ECB1943967424DFB96E03F6A098434EF] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [430592] [MD5.8C795953726C7D2DE72CE4748208C5ED] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] [MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [577888] [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [28512] [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] [MD5.CA160E02F35A61C6F5C681FB4669C519] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] [MD5.25435407D97419627F4B10653433BF2B] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] [MD5.C277A49F8A8295840DEBC9240B75A282] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] [MD5.F0D791348AD254360CC3C3E501CCB745] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [273408] [MD5.466EC5659C02ED53DBD47DC1BC2B8086] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] [MD5.38F1AE32339731F6E5A7281AE8042545] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [96768] [MD5.CA60F6C03611AF1710BC903ED9F566FB] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] [MD5.A32AED8C644734B283A7C9D08D76064D] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] [MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [116576] [MD5.823A237D871CD652C6BFD47BECB6810A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] ---\\ Processus lancés (82) - 3s [MD5.1B44B5244EAF26BEC315AE84B0AFFC66] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) -- C:\WINDOWS\system32\nvvsvc.exe [937616] [PID.1052] [MD5.AC4F72ABB5ED596A0F3D9D1EDDC4B27C] - (.Intel Corporation - igfxCUIService Module.) -- C:\WINDOWS\system32\igfxCUIService.exe [351120] [PID.1176] [MD5.DB1EC96C28212D0EAE597317EEFF6D67] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1253008] [PID.1400] [MD5.1B44B5244EAF26BEC315AE84B0AFFC66] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) -- C:\WINDOWS\system32\nvvsvc.exe [937616] [PID.1420] [MD5.564CB886D1A968B9798C1AB03F4EB54F] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [115512] [PID.1700] [MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1712] [MD5.579FD11E112542A0D5D43838CCA08309] - (.DTools LIMITED - DTools.) -- C:\ProgramData\FWinManProF\ProtectWindowsManager.exe [708264] [PID.1848] [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2128] [MD5.B52F9B2C63DF84B58E59016FE25648C0] - (.Autodesk, Inc. - AutoCAD component.) -- C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160] [PID.2140] [MD5.ADC420616C501B45D26C0FD3EF1E54E4] - (.ArcSoft Inc. - ArcSoft Connect Service.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152] [PID.2152] [MD5.DB5610839DBEBE48AA963DFA96FD7103] - (.ASUS Cloud Corporation - Asus WebStorage Windows Service.) -- C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [71168] [PID.2168] [MD5.92880AD7202BBED3047B89E543D3B178] - (...) -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp [137728] [PID.2176] =>PUP.Optional.CrossRider [MD5.9AD736D2CFB4159930D6FEC2B199B721] - (.Connectify - .) -- C:\Program Files (x86)\Connectify\ConnectifyService.exe [217088] [PID.2184] [MD5.CBDF353624D1744734F2FD13B4786F90] - (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [599944] [PID.2192] [MD5.F07F814FF63E42C2FB1EE9344012A435] - (.ASUSTek Computer Inc. - Driver MFT Service.) -- C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe [9728] [PID.2312] [MD5.C5323F961012E91A9E4BF4FF377655F3] - (...) -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp [209920] [PID.2328] =>PUP.Optional.CrossRider [MD5.CEBCA5532F6470EBAA97F8780FC14E9C] - (.Copyright © Main 2015 - Main.) -- C:\ProgramData\ExtTag\ExtTag.exe [22528] [PID.2336] [MD5.6136907233F1939653BD219A493D0D58] - (...) -- C:\ProgramData\RajxeNerm\rikaofi.exe [124888] [PID.2344] [MD5.FDEBB26E388550F77282B85BE3A14B0A] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Program Files\Elantech\ETDService.exe [147688] [PID.2360] [MD5.42071F6E918FB4B07529B3E68D07028F] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) -- C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121288] [PID.2384] [MD5.FF2B5BD81696966524816D4AEC6D93B9] - (.Copyright © 2015 - .) -- C:\Program Files\igfx32\igfx32.exe [379904] [PID.2412] [MD5.55FC14B287C6FF306C32B42628CE0D8C] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656] [PID.2460] [MD5.6D9901EF86BC869D7D5AF8B2F687106A] - (.XTab system - ProtectSvc.exe.) -- C:\Program Files (x86)\MiniLite\ProtectService.exe [129688] [PID.2536] =>PUP.Optional.MiuiTab [MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.2568] [MD5.DCAA93D28D6FC75A4D80AE410008BA90] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008] [PID.2712] [MD5.22AA54FE5895DC445B95B7951BA9819D] - (.Connectify - Connectify Daemon Service.) -- C:\Program Files (x86)\Connectify\ConnectifyD.exe [3832568] [PID.2748] [MD5.1234BB5F8C7EC1E52F32A3EBF65F52EA] - (.pdfforge GmbH - PDF Architect 3.) -- C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [740568] [PID.2756] [MD5.A9D14EDD8255B3B2E4918440F7B314C3] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.2772] [MD5.EA268FDA5D1E5BA27E269B29F9041CF0] - (. - xrc.) -- C:\Users\YOUSSEF\AppData\Local\Stripin.exe [53760] [PID.2800] [MD5.994981721AAB6A0D30AE0148D5A4AE47] - (...) -- C:\ProgramData\RajxeNerm\rikwofi.exe [124888] [PID.2692] [MD5.9FD4560FC7D25C90B1C208152F1EE8B1] - (...) -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs [760832] [PID.3128] =>PUP.Optional.CrossRider [MD5.D35E5DF5108A945045D7B06FD3A7A944] - (.Copyright © 2015 - .) -- C:\Program Files\igfx32\packages\baaab196-89e0-4f15-ba0e-39fbd596077e\NixHost.exe [855040] [PID.4684] [MD5.6A80F5C61899D79B755BC41E0C48E793] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [303928] [PID.4912] [MD5.950FAF6A5D98D25D96F9FD53B66B79FD] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [3350760] [PID.5792] [MD5.D7C763585907733B9F97E08914AF3F9E] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [58440] [PID.6024] [MD5.7FE8B062831F9280A96199964242619A] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19723888] [PID.6120] [MD5.4F870EF9292559AB9DE6F31527A1DCBF] - (.ASUSTek Computer Inc. - KBFiltr.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe [113312] [PID.6192] [MD5.CFAC0D3B76F75709B03360FDF910CF21] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [406328] [PID.6668] [MD5.A1AAE034B1C463FDC571ADAB950C50D7] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [209720] [PID.6676] [MD5.F1DEA3FB0F1686733B474DDE83954BE3] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2580200] [PID.6788] [MD5.6454CCB70AAA1487F779F31E37C14B13] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\system32\igfxEM.exe [328080] [PID.6856] [MD5.0B1B96CB8A81514B552F214436C89D88] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\system32\igfxHK.exe [249232] [PID.6864] [MD5.D9133D4157664B1E2ACFC2CD56CCB599] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704] [PID.7372] [MD5.08AB0163DA5ACC8E6165A4C0CAA473CD] - (...) -- C:\ProgramData\RajxeNerm\rikdofi.exe [382976] [PID.7968] [MD5.3244E954707B649F16ECB3D94CE56600] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2447688] [PID.8084] [MD5.7A9750497605E6568D540E125679BD69] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [365880] [PID.3156] [MD5.6118F4A23DA74C7B31A53FE3AFC94295] - (...) -- C:\ProgramData\RajxeNerm\rik3ofi.exe [98816] [PID.8520] [MD5.FB3D90662AC791107A6E350F31974BB1] - (.Connectify - Connectify Hotspot.) -- C:\Program Files (x86)\Connectify\Connectify.exe [4160000] [PID.8980] [MD5.2542F5B2419070FC2175888C42850060] - (...) -- C:\ProgramData\RajxeNerm\rik6ofi.exe [118272] [PID.9124] [MD5.AB9990DB80EA3DAC0EAE50C906EF7ECA] - (.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe [1693024] [PID.3068] [MD5.A93081C475071AD9AFD82280B95DE923] - (.WIBU-SYSTEMS AG - WkSvMgr.) -- C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe [6580080] [PID.9524] [MD5.A7810B302294793DE88542AAE177D1B1] - (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424] [PID.9628] [MD5.F400694D7D2785F60133C20F7F2F4F7A] - (.ArcSoft Inc. - ArcSoft Connect Notifier.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac [309824] [PID.9660] [MD5.17DC4F47FA704582F01F822B1FDB2128] - (.Dropbox, Inc. - Dropbox.) -- C:\Users\YOUSSEF\AppData\Roaming\Dropbox\bin\Dropbox.exe [39179912] [PID.9700] [MD5.11CF08D0FDB75A5977CB1668BAABD995] - (...) -- C:\ProgramData\ExtTag\RoundAir.exe [129024] [PID.10236] [MD5.C81F59B7D524FB462F73B27757084618] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8204056] [PID.8484] [MD5.9582680F41C0C4C6E6A2ACCADD7E723E] - (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Users\YOUSSEF\AppData\Local\Autodesk\.AdskAppManager\R1\AdAppMgr.exe [493960] [PID.8424] [MD5.34084D25BE6F48D072AA54DE630438FD] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.6812] [MD5.57739E742ABC085C2A4340D4404B4A8B] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544] [PID.4568] [MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.10092] [MD5.E2952760B05A256FB1412D20A41C89C1] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.8532] [MD5.761986319F4F6EDB33B3F046D254C781] - (.ASUSTeK Computer Inc. - ASUS Live Update.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2998552] [PID.2872] [MD5.9BE6D4C111015110CFDE2470BFE9F90B] - (.ASUS Cloud Corporation - .) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.0.496\AsusWSPanel.exe [5561128] [PID.6512] [MD5.BCBD6EF870818D88F299E9C243C191ED] - (.Oracle Corporation - Java Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [1058352] [PID.4732] [MD5.E1AE184CE83A435B710270A325A6C6F6] - (.InstallMoon - GoHD exe.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-10.exe [1277008] [PID.4920] =>PUP.Optional.CrossRider [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.7112] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.9196] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.1900] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.736] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.6400] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.3920] [MD5.6372E4D2D8903839CF49F5B8BB02E05D] - (.InstallMoon - GoHD exe.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-6.exe [1442384] [PID.1120] =>PUP.Optional.CrossRider [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.9044] [MD5.4B83768DFF3BE39CC5BA9D459C7E2F4C] - (.InstallMoon - GoHD exe.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-1-6.exe [1521232] [PID.6168] =>PUP.Optional.CrossRider [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.3556] [MD5.BCFD8732024541C75D890D7122C16C4F] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.803.16240.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [7168] [PID.7836] [MD5.493BB6A50ECD60399EF4602E0EB45896] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7902864] [PID.6264] [MD5.A9D14EDD8255B3B2E4918440F7B314C3] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376] [PID.9048] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.10940] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.11032] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.10512] [MD5.63E20985B61368A6172D93D0245DC9F8] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\YOUSSEF\ZHPDiag3.exe [1895424] [PID.9804] ---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 0s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.mystartsearch.com/ =>PUP.Optional.StartSearch G2 - GCE: Preference [User Data\Default] [cmedhionkhpnakcndndgjdbohmhepckk] __MSG_extension_name__ G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (27) - 1s M0 - MFSP: prefs.js [YOUSSEF - kz1zjdyy.default] http://www.mystartsearch.com/?type=hp&ts=1440374234&z=b53503f4d182a840bd7aa62g5zez1ebc1maz4g1o5w&from=cmi&uid=SanDiskXSD7SB3Q128G1002_150245402867 =>PUP.Optional.StartSearch P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\firefox@mega.co.nz.xpi P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\{b6a94784-0ffb-4121-88c6-435139067ee2}.xpi =>PUP.Optional.PriceFountain P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\searchplugins\findit.xml =>PUP.Optional.SmartBar P2 - EXT FILE: (...) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\searchplugins\mystartsearch.xml =>PUP.Optional.StartSearch P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\amazon-france.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\bing.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\cnrtl-tlfi-fr.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\ddg.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\eBay-france.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\findit.xml =>PUP.Optional.SmartBar P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\google.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\wikipedia-fr.xml P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\yahoo-france.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} P2 - EXT: (.roc - Default SearchProtected .) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\defsearchp@gmail.com P2 - EXT: (.lightningnewtab.com - deskCut.) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab P2 - EXT: (.InstallMoon - GoHD.) -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\f8783004-c434-4bd0-9f81-9a39dd64baaa@08ad07c4-3f21-451d-9045-9e0d5dc8aa9e.com =>PUP.Optional.CrossRider P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\YOUSSEF\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll P2 - FPN: [HKLM] [@qq.com/QQPCMgr] - (.Tencent.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\npQMExtensionsMozilla.dll =>PUP.Optional.TencentAddressBar P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=10] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate P2 - FPN: [HKLM] [@staging.google.com/globalUpdate Update;version=4] - (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate ---\\ Opera, Démarrage,Recherche,Plugins (3) - 0s B2 - EXT: [GoHD] C:\Users\YOUSSEF\AppData\Roaming\Opera Software\Opera Stable\Extensions\fijhlnmmmgflacagjecncpmpnhjieggk B2 - EXT: [Cinem Plus 2.4cV19.08] C:\Users\YOUSSEF\AppData\Roaming\Opera Software\Opera Stable\Extensions\gegdfeiahlfolhcfioipjlkombmgbakh B2 - EXT: [CinemaPlus-3.2cV19.08] C:\Users\YOUSSEF\AppData\Roaming\Opera Software\Opera Stable\Extensions\papbadoldddalgcjcicnikcfenodpghp ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (24) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%73%6E%61%70%64%6F.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_Bw56VMFZJr47C02zYAChnT3kYPr68gWXIm1yj2MHvNA6N90OPJ68Li2itsdq8FHo6HGAAHPkNi1bFx66MdYWE2RDFIiB86WkjruUxEMVTVqYvMi8GhPO6VBEyzBTWVAttgDiTx_n0qB2SThDQg7dLMXNUtB3c R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_bw56vmfzjr47c02zyachnt3kypr68gwxim1yj2mhvna6n90opj68li2itsdq8fho6hgaahpkni1bfx6iuzvq8tg_8wrjrdfdbjjikadraejtz_0bqy_v7dgvhvxkr8bbbiwvv4kkiaaoyfugje8ptumxpsboa&q={searchterms} R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_bw56vmfzjr47c02zyachnt3kypr68gwxim1yj2mhvna6n90opj68li2itsdq8fho6hgaahpkni1bfx6iuzvq8tg_8wrjrdfdbjjikadraejtz_0bqy_v7dgvhvxkr8bbbiwvv4kkiaaoyfugje8ptumxpsboa&q={searchterms} R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_bw56vmfzjr47c02zyachnt3kypr68gwxim1yj2mhvna6n90opj68li2itsdq8fho6hgaahpkni1bfx6iuzvq8tg_8wrjrdfdbjjikadraejtz_0bqy_v7dgvhvxkr8bbbiwvv4kkiaaoyfugje8ptumxpsboa&q={searchterms} R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbutxkij9_bw56vmfzjr47c02zyachnt3kypr68gwxim1yj2mhvna6n90opj68li2itsdq8fho6hgaahpkni1bfx6iuzvq8tg_8wrjrdfdbjjikadraejtz_0bqy_v7dgvhvxkr8bbbiwvv4kkiaaoyfugje8ptumxpsboa&q={searchterms} R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Applications lancées au démarrage du système (31) - 1s O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe O4 - HKLM\..\Run: [Connectify Hotspot] . (.Connectify - Connectify Hotspot.) -- C:\Program Files (x86)\Connectify\Connectify.exe O4 - HKLM\..\Run: [ETDCtrl] %ProgramFiles%\Elantech\ETDCtrl.exe O4 - HKLM\..\Run: [gpuminer] C:\Users\YOUSSEF\AppData\Roaming\cpuminer\sgminer\sgminer.cmd (.not file.) O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_3EDD7D50BE92A56FF0F51CDACBF4D2E4] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe O4 - HKCU\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\OneDrive.exe O4 - HKCU\..\RunOnce: [Uninstall C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe O4 - HKCU\..\RunOnce: [Uninstall C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe O4 - HKLM\..\Wow6432Node\Run: [WebStorage] . (...) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.0.496\ASUSWSLoader.exe O4 - HKLM\..\Wow6432Node\Run: [ArcSoft Connection Service] . (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe O4 - HKLM\..\Wow6432Node\Run: [ADSKAppManager] . (.Autodesk Inc. - Autodesk Application Manager.) -- C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe O4 - HKLM\..\Wow6432Node\Run: [AdobeCEPServiceManager] . (.Adobe Systems Incorporated - Adobe CEP Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe O4 - HKLM\..\Wow6432Node\Run: [ QQPCTray] C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCTray.exe (.not file.) =>PUP.Optional.TencentAddressBar O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [GoogleChromeAutoLaunch_3EDD7D50BE92A56FF0F51CDACBF4D2E4] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [Dropbox Update] . (.Dropbox, Inc. - Dropbox Update.) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\OneDrive.exe O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\RunOnce: [Uninstall C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe O4 - HKUS\S-1-5-21-1046775397-2545273843-3141654657-1001\..\RunOnce: [Uninstall C:\Users\YOUSSEF\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe ---\\ Modification Domaine/Adresses DNS (8) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 52.18.92.32,8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 169.254.18.38 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 52.18.92.32,8.8.8.8 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 169.254.18.38 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s O20 - AppInit_DLLs: . (...) - C:\ProgramData\ExtTag\Sumtom.dll ---\\ Liste des services NT non Microsoft et non désactivés (34) - 1s O23 - Service: ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc. - ArcSoft Connect Service.) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe O23 - Service: Autodesk Application Manager Service (AdAppMgrSvc) . (.Autodesk Inc. - Autodesk Application Manager.) - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe O23 - Service: Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation - Asus WebStorage Windows Service.) - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe O23 - Service: Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc. - AutoCAD component.) - C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe O23 - Service: File Size Charger (cobomiku) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp =>PUP.Optional.CrossRider O23 - Service: Connectify (Connectify) . (.Connectify - .) - C:\Program Files (x86)\Connectify\ConnectifyService.exe O23 - Service: DriverMFTService (DriverMFTService) . (.ASUSTek Computer Inc. - Driver MFT Service.) - C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe O23 - Service: ExtTag (ExtTag) . (.Copyright © Main 2015 - Main.) - C:\ProgramData\ExtTag\ExtTag.exe O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate - globalUpdate Update.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: hutneosa (hutneosa) . (...) - C:\ProgramData\RajxeNerm\rikaofi.exe O23 - Service: Key In Bold Italic (hyverumu) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp =>PUP.Optional.CrossRider O23 - Service: Intel Bluetooth Service (iBtSiva) . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe O23 - Service: igfx UI Service (igfx32) . (.Copyright © 2015 - .) - C:\Program Files\igfx32\igfx32.exe O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe O23 - Service: IHProtect Service (IHProtect Service) . (.XTab system - ProtectSvc.exe.) - C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.5.) - C:\WINDOWS\system32\nvvsvc.exe O23 - Service: PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH - PDF Architect 3.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe O23 - Service: Home-Fax (produatpzo) . (. - xrc.) - C:\Users\YOUSSEF\AppData\Local\Stripin.exe O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: CamMonitor (uCamMonitor) . (.ArcSoft, Inc. - MgiSvr.) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe O23 - Service: utimcuca (utimcuca) . (...) - C:\ProgramData\RajxeNerm\rikwofi.exe O23 - Service: Forename Tools (zytecuhe) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs =>PUP.Optional.CrossRider ---\\ Tâches planifiées en automatique (95) - 5s [MD5.4B83768DFF3BE39CC5BA9D459C7E2F4C] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-1-6] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-1-6.exe [1521232] =>PUP.Optional.CrossRider [MD5.F9B473EBA1378388294E37599C2DF251] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-1-7] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-1-7.exe [1125456] =>PUP.Optional.CrossRider [MD5.E1AE184CE83A435B710270A325A6C6F6] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-10_user] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-10.exe [1277008] =>PUP.Optional.CrossRider [MD5.D2DA34BBF5007278EB0E22F32C0E6574] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-11] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-11.exe [1313360] =>PUP.Optional.CrossRider [MD5.D2DA34BBF5007278EB0E22F32C0E6574] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-3] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-3.exe [1313360] =>PUP.Optional.CrossRider [MD5.C1171FF940F1A4E53F98B6F92C8CF8F5] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-4] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-4.exe [1470032] =>PUP.Optional.CrossRider [MD5.1FD703DD3BF546A1AE9C626ADFEE5CBA] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-5] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-5.exe [1179216] =>PUP.Optional.CrossRider [MD5.1FD703DD3BF546A1AE9C626ADFEE5CBA] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-5_user] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-5.exe [1179216] =>PUP.Optional.CrossRider [MD5.6372E4D2D8903839CF49F5B8BB02E05D] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-6] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-6.exe [1442384] =>PUP.Optional.CrossRider [MD5.F9B473EBA1378388294E37599C2DF251] [APT] [1643e299-fa91-4995-9aed-6b04c00e7793-7] (.InstallMoon.) -- C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-7.exe [1125456] =>PUP.Optional.CrossRider [MD5.00000000000000000000000000000000] [APT] [483D9590-42DB-4BAD-88FD-9ADA924A951] (...) -- C:\Users\YOUSSEF\AppData\Local\483D9590-42DB-4BAD-88FD-9ADA924A951\483D9590-42DB-4BAD-88FD-9ADA924A951.exe (.not file.) [0] [MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] [MD5.0FBC0E179CA71FAD0832FF479439BFFB] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_232_pepper.exe [1156296] [MD5.BBF37D81780EBB4919636CF7E5C789BE] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] [MD5.00000000000000000000000000000000] [APT] [APSnotifierPP1] (...) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect [MD5.00000000000000000000000000000000] [APT] [APSnotifierPP2] (...) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect [MD5.00000000000000000000000000000000] [APT] [APSnotifierPP3] (...) -- C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe (.not file.) [0] =>PUP.Optional.AnyProtect [MD5.00000000000000000000000000000000] [APT] [ASP] (...) -- C:\Program Files (x86)\RCP\systweakasp.exe (.not file.) [0] =>PUP.Optional.Systweak [MD5.761986319F4F6EDB33B3F046D254C781] [APT] [ASUS Live Update1] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2998552] [MD5.761986319F4F6EDB33B3F046D254C781] [APT] [ASUS Live Update2] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2998552] [MD5.978842E6FD1592812F85391AB44A50F3] [APT] [ASUS Smart Gesture Launcher] (.AsusTek.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [18232] [MD5.D7C763585907733B9F97E08914AF3F9E] [APT] [ASUS Splendid ACMON] (.ASUS.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [58440] [MD5.7FE8B062831F9280A96199964242619A] [APT] [ASUS USB Charger Plus] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19723888] [MD5.140237BA8BD1AAC665893A4A456ABDD9] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3732480] =>HackTool.AutoKMS [MD5.00000000000000000000000000000000] [APT] [Bidaily Synchronize Task[pr]] (...) -- c:\programdata\{76ea22e4-9e8e-2a92-76ea-a22e49e88b92}\xf-adsk2016_x64.exe (.not file.) [0] =>PUP.Optional.BidailySync [MD5.1F014EA12ECB13C909DA9395E9CD3D18] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6278424] [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core] (.Dropbox, Inc..) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512] [MD5.7C6D524C78A1722AD987B9E47AC1FEE2] [APT] [DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA] (.Dropbox, Inc..) -- C:\Users\YOUSSEF\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512] [MD5.3C14AAE26EA06BADAC98520773772CEB] [APT] [globalUpdateUpdateTaskMachineCore] (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608] =>PUP.Optional.GlobalUpdate [MD5.3C14AAE26EA06BADAC98520773772CEB] [APT] [globalUpdateUpdateTaskMachineUA] (.globalUpdate.) -- C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [68608] =>PUP.Optional.GlobalUpdate [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] [MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA1d08f77cb9ea6cd] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] [MD5.D35E5DF5108A945045D7B06FD3A7A944] [APT] [Install] (.Copyright © 2015.) -- C:\Program Files\igfx32\packages\baaab196-89e0-4f15-ba0e-39fbd596077e\NixHost.exe [855040] [MD5.D35E5DF5108A945045D7B06FD3A7A944] [APT] [Update Mozilla Firefox] (.Copyright © 2015.) -- C:\Program Files\igfx32\packages\baaab196-89e0-4f15-ba0e-39fbd596077e\NixHost.exe [855040] [MD5.B5C90CBC7AC91FF982C2C8C71ABBE5EA] [APT] [ASUS\ASUS Product Register Service] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1271424] O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-1-6 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-6.job [3130] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-1-7 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-7.job [3130] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-10_user - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-10_user.job [2104] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-11 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-11.job [4832] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-3 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-3.job [4150] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-4 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-4.job [4486] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-5 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5.job [2438] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-5_user - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5_user.job [2438] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-6 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-6.job [5510] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-7 - (.InstallMoon.) -- C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-7.job [5510] =>PUP.Optional.CrossRider O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job [1064] =>.Adobe Systems Incorporated O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated O39 - APT: APSnotifierPP1 - (...) -- C:\WINDOWS\Tasks\APSnotifierPP1.job [378] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP2 - (...) -- C:\WINDOWS\Tasks\APSnotifierPP2.job [376] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP3 - (...) -- C:\WINDOWS\Tasks\APSnotifierPP3.job [376] =>PUP.Optional.AnyProtect O39 - APT: Bidaily Synchronize Task[pr] - (...) -- C:\WINDOWS\Tasks\Bidaily Synchronize Task[pr].job [370] =>PUP.Optional.BidailySync O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core.job [1174] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA.job [1226] =>.Dropbox, Inc. O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job [960] =>PUP.Optional.GlobalUpdate O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job [964] =>PUP.Optional.GlobalUpdate O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1094] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1098] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA1d08f77cb9ea6cd - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f77cb9ea6cd.job [1098] =>.Google Inc. O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-1-6 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-6 [6250] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-1-7 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-7 [6250] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-10_user - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-10_user [5292] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-11 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-11 [7950] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-3 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-3 [7266] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-4 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-4 [7602] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-5 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5 [5554] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-5_user - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5_user [5624] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-6 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-6 [8626] =>PUP.Optional.CrossRider O39 - APT: 1643e299-fa91-4995-9aed-6b04c00e7793-7 - (.InstallMoon.) -- C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-7 [8626] =>PUP.Optional.CrossRider O39 - APT: 483D9590-42DB-4BAD-88FD-9ADA924A951 - (...) -- C:\WINDOWS\System32\Tasks\483D9590-42DB-4BAD-88FD-9ADA924A951 [4410] O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3996] =>.Adobe Systems Incorporated O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier [4204] =>.Adobe Systems Incorporated O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] =>.Adobe Systems Incorporated O39 - APT: APSnotifierPP1 - (...) -- C:\WINDOWS\System32\Tasks\APSnotifierPP1 [2876] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP2 - (...) -- C:\WINDOWS\System32\Tasks\APSnotifierPP2 [2874] =>PUP.Optional.AnyProtect O39 - APT: APSnotifierPP3 - (...) -- C:\WINDOWS\System32\Tasks\APSnotifierPP3 [2874] =>PUP.Optional.AnyProtect O39 - APT: ASP - (...) -- C:\WINDOWS\System32\Tasks\ASP [3378] =>PUP.Optional.Systweak O39 - APT: ASUS Live Update1 - (.ASUSTeK Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS Live Update1 [3544] =>.ASUSTeK Computer Inc. O39 - APT: ASUS Live Update2 - (.ASUSTeK Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS Live Update2 [3534] =>.ASUSTeK Computer Inc. O39 - APT: ASUS Smart Gesture Launcher - (.AsusTek.) -- C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher [3628] =>.AsusTek O39 - APT: ASUS Splendid ACMON - (.ASUS.) -- C:\WINDOWS\System32\Tasks\ASUS Splendid ACMON [3096] =>.ASUS O39 - APT: ASUS USB Charger Plus - (.ASUSTek Computer Inc..) -- C:\WINDOWS\System32\Tasks\ASUS USB Charger Plus [3026] =>.ASUSTek Computer Inc. O39 - APT: AutoKMS - (.CODYQX4.) -- C:\WINDOWS\System32\Tasks\AutoKMS [3808] =>HackTool.AutoKMS O39 - APT: Bidaily Synchronize Task[pr] - (...) -- C:\WINDOWS\System32\Tasks\Bidaily Synchronize Task[pr] [3372] =>PUP.Optional.BidailySync O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2908] =>.Piriform Ltd O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001Core [3910] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1046775397-2545273843-3141654657-1001UA [4290] =>.Dropbox, Inc. O39 - APT: globalUpdateUpdateTaskMachineCore - (.globalUpdate.) -- C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore [3802] =>PUP.Optional.GlobalUpdate O39 - APT: globalUpdateUpdateTaskMachineUA - (.globalUpdate.) -- C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA [4034] =>PUP.Optional.GlobalUpdate O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3944] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4180] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA1d08f77cb9ea6cd - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d08f77cb9ea6cd [4180] =>.Google Inc. O39 - APT: Install - (.Copyright © 2015.) -- C:\WINDOWS\System32\Tasks\Install [3934] O39 - APT: Orphean - (...) -- C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for YOUSSEF-PC-YOUSSEF YOUSSEF-PC [5226] O39 - APT: Update Mozilla Firefox - (.Copyright © 2015.) -- C:\WINDOWS\System32\Tasks\Update Mozilla Firefox [4028] ---\\ Logiciels installés (142) - 8s O42 - Logiciel: Package de pilotes Windows - ASUS (ATP) Mouse (06/17/2015 1.0.0.262) - (.ASUS.) [HKLM][64Bits] -- 14588A15B66655338DBCC021FFA81E31DC281859 O42 - Logiciel: Windows Driver Package - ASUS (ATP) Mouse (03/17/2014 1.0.0.207) - (.ASUS.) [HKLM][64Bits] -- AA2CC56D4BBEE037DC99871F5F6551133D2A0CC3 O42 - Logiciel: Artlantis Studio 5.1.2.5 (64 bit) - (.Abvent R&D.) [HKLM][64Bits] -- Artlantis Studio 5 (64 bit) O42 - Logiciel: Autodesk AutoCAD 2016 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- AutoCAD 2016 - Français (French) O42 - Logiciel: Autodesk 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk 3ds Max 2015 O42 - Logiciel: Autodesk Content Service - (.Autodesk.) [HKLM][64Bits] -- Autodesk Content Service O42 - Logiciel: Autodesk DirectConnect 2015 64-bit - (.Autodesk.) [HKLM][64Bits] -- Autodesk DirectConnect 2015 64-bit O42 - Logiciel: Autodesk ReCap 2016 - (.Autodesk.) [HKLM][64Bits] -- Autodesk ReCap 2016 O42 - Logiciel: Autodesk Revit Architecture 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk Revit Architecture 2015 O42 - Logiciel: Autodesk Revit Architecture Content Libraries 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk Revit Architecture Content Libraries 2015 O42 - Logiciel: Autodesk Revit Interoperability for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- Autodesk Revit Interoperability for 3ds Max 2015 O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner O42 - Logiciel: Connectify 2015 - (.Connectify.) [HKLM][64Bits] -- Connectify O42 - Logiciel: ELAN Touchpad 15.8.4.3_X64_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech O42 - Logiciel: Lumion 5.0 - (.Act-3D B.V..) [HKLM][64Bits] -- Lumion 5.0_is1 O42 - Logiciel: V-Ray for 3dsmax 2015 for x64 - (.Chaos Software Ltd.) [HKLM][64Bits] -- V-Ray for 3dsmax 2015 for x64 O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} O42 - Logiciel: WibuKey Setup (WibuKey Remove) - (.WIBU-SYSTEMS AG.) [HKLM][64Bits] -- {00060000-0000-1004-8002-0000C06B5161} O42 - Logiciel: Autodesk Revit Interoperability for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {0BB716E0-1500-0610-0000-097DC2F354DF} O42 - Logiciel: Autodesk BIM 360 Revit 2015 Add-in 64 bit - (.Autodesk.) [HKLM][64Bits] -- {37E1C3A1-7DBF-4250-9314-46167B68383D} O42 - Logiciel: ASUS Video DSP - (.ASUS.) [HKLM][64Bits] -- {46E0F6B1-3061-46C0-9184-6D8D5A0A621D} O42 - Logiciel: Autodesk Network License Manager - (.Autodesk.) [HKLM][64Bits] -- {4BE91685-1632-47FC-B563-A8A542C6664C} O42 - Logiciel: Autodesk BIM 360 Glue AutoCAD 2016 Add-in 64 bit - (.Autodesk.) [HKLM][64Bits] -- {4BEE127E-95C4-434D-ABAC-65155192BB24} O42 - Logiciel: Autodesk 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {52B37EC7-D836-0410-0264-3C24BCED2010} O42 - Logiciel: AutoCAD 2016 - Français (French) - (.Autodesk.) [HKLM][64Bits] -- {5783F2D7-F001-040C-2102-0060B0CE6BBA} O42 - Logiciel: Autodesk 3ds Max 2015 Populate Data - (.Autodesk.) [HKLM][64Bits] -- {57E92DED-DC6C-41E5-B9E1-76D83BD2EABE} O42 - Logiciel: Revit Architecture 2015 - (.Autodesk.) [HKLM][64Bits] -- {7346B4A0-1500-0110-0000-705C0D862004} O42 - Logiciel: Revit Architecture 2015 Language Pack - English - (.Autodesk.) [HKLM][64Bits] -- {7346B4A0-1500-0111-0409-705C0D862004} O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} O42 - Logiciel: Microsoft Access MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft Excel MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft PowerPoint MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft Publisher MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft Outlook MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft Word MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft InfoPath MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft DCF MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft OneNote MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft Groove MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0409-1000-0000000FF1CE} O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0117-0409-1000-0000000FF1CE} O42 - Logiciel: Microsoft Lync MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE} O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{40930C8E-A677-414C-A72F-DFDEB10738FB} O42 - Logiciel: Update for Skype for Business 2015 (KB3054946) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{5280698D-EE40-4A94-9E69-ED2E2B1E12A2} O42 - Logiciel: Autodesk Inventor Server Engine for 3ds Max 2015 - (.Autodesk.) [HKLM][64Bits] -- {9167CA34-4E48-49E3-8892-3C439739D2D3} O42 - Logiciel: Revit Architecture Content Libraries 2015 - (.Autodesk.) [HKLM][64Bits] -- {941030D0-1500-0110-0000-818BB38A95FC} O42 - Logiciel: Autodesk Content Service Language Pack - (.Autodesk.) [HKLM][64Bits] -- {A37CDB58-AAE8-0001-8C13-E0F7BACB0D5F} O42 - Logiciel: Autodesk Workflows 2015 - (.Autodesk, Inc..) [HKLM][64Bits] -- {A90DD6F8-60D2-4803-AFF6-796400E73E1B} O42 - Logiciel: NVIDIA Graphics Driver 333.17 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA GeForce Experience 2.4.5.44 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience O42 - Logiciel: NVIDIA PhysX System Software 9.13.1220 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7} O42 - Logiciel: Autodesk 3ds Max 2016 SDK - (.Autodesk.) [HKLM][64Bits] -- {E0820BD5-930B-43EC-A3C1-2634D38A1931} O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI O42 - Logiciel: Adobe Flash Player 18 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI O42 - Logiciel: AMCap - (.Noël Danjou.) [HKLM][64Bits] -- AMCap O42 - Logiciel: Autodesk Application Manager - (.Autodesk.) [HKLM][64Bits] -- Autodesk Application Manager O42 - Logiciel: Free All Office Converter Pro 5.8 - (.Word-Pdf-Convert Software, Inc..) [HKLM][64Bits] -- Free All Office Converter Pro_is1 O42 - Logiciel: GoHD - (.InstallMoon.) [HKLM][64Bits] -- GoHD =>PUP.Optional.CrossRider O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Google Earth Pro 7.1.1.1888 Final - (.Friends in War.) [HKLM][64Bits] -- Google Earth Pro 7.1.1.1888 Final7.1.1.1888 O42 - Logiciel: CyberLink MediaStory - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{55762F9A-FCE3-45d5-817B-051218658423} O42 - Logiciel: Mozilla Firefox 37.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 37.0.2 (x86 fr) O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService O42 - Logiciel: mystartsearch uninstall - (.mystartsearch.) [HKLM][64Bits] -- mystartsearch uninstall =>PUP.Optional.StartSearch O42 - Logiciel: Opera Stable 31.0.1889.99 - (.Opera Software.) [HKLM][64Bits] -- Opera 31.0.1889.99 O42 - Logiciel: PDF Architect 3 - (.pdfforge GmbH.) [HKLM][64Bits] -- PDF Architect 3 O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player O42 - Logiciel: WebStorage - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- WebStorage O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Wondershare DVD Slideshow Builder Deluxe(Build 6.2.0.0) - (.Wondershare Software Co.,Ltd..) [HKLM][64Bits] -- Wondershare DVD Slideshow Builder Deluxe_is1 O42 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPDiag_is1 O42 - Logiciel: PDF Architect 3 Convert Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {030F33BF-22CB-4668-85B3-C61AB025A68E} O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {04B34E21-5BEE-3D2B-8D3D-E3E80D253F64}.KB958357 O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} O42 - Logiciel: adblocker - (.adblocker.) [HKLM][64Bits] -- {0BD2877D-739C-474F-88AC-E83884C3089C} O42 - Logiciel: ASUS Screen Saver - (.ASUS.) [HKLM][64Bits] -- {0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2} O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {14866AAD-1F23-39AC-A62B-7091ED1ADE64}.KB958357 O42 - Logiciel: Device Setup - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {1F07F2C7-596F-4F34-B805-2C61A3E50E5A} O42 - Logiciel: PDF Settings CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1FBAE18D-4DE4-47AA-83EC-D1B046F262DC} O42 - Logiciel: Skype™ 7.6 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Java 8 Update 45 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218045F0} O42 - Logiciel: Autodesk Material Library 2016 - (.Autodesk.) [HKLM][64Bits] -- {29A7D6EC-63C2-42FD-8143-5812ABD2923F} O42 - Logiciel: PDF Architect 3 Create Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {38BA288B-C4F4-4C62-9237-4BFAB374F966} O42 - Logiciel: Autodesk Material Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {427F733F-4D6C-45BC-9324-EB743104C321} O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B90093A-5D9C-3956-8ABB-95848BE6EFAD}.KB958357 O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D} O42 - Logiciel: Autodesk AutoCAD Performance Feedback Tool 1.2.4 - (.Autodesk.) [HKLM][64Bits] -- {4E20873D-BC20-495C-AFD9-B18877B7F9BB} O42 - Logiciel: Autodesk App Manager 2016 - (.Autodesk.) [HKLM][64Bits] -- {4ECF9E00-2978-46AF-BD80-455EFEAB7A93} O42 - Logiciel: Autodesk Material Library Low Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {4FBC9635-AC56-4378-8FDE-C4D3ED072681} O42 - Logiciel: PDF Architect 3 Edit Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {5183F03D-90FA-493B-A074-F0F78B8486AD} O42 - Logiciel: CyberLink MediaStory - (.CyberLink Corp..) [HKLM][64Bits] -- {55762F9A-FCE3-45d5-817B-051218658423} O42 - Logiciel: PDF Architect 3 OCR Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {59DD82EB-8F92-42FF-B55E-E14C62911CF6} O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: FARO LS 1.1.502.0 (64bit) - (.FARO Scanner Production.) [HKLM][64Bits] -- {66D83FE0-D798-4B38-86FE-FB48151E5AEF} O42 - Logiciel: PDF Architect 3 Secure Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {6B47603A-B271-423C-B811-A2D4BE49E965} O42 - Logiciel: Autodesk Material Library Base Resolution Image Library 2016 - (.Autodesk.) [HKLM][64Bits] -- {6B4CFC6E-ECB0-47FE-95D3-65C680ED0687} O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DA2B636-698A-3294-BF4A-B5E11B238CDD}.KB958357 O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65} O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: ArcSoft Magic-i Visual Effects 2 - (.ArcSoft.) [HKLM][64Bits] -- {8866BCB3-3818-4C66-83BC-92006B5EFE50} O42 - Logiciel: FARO LS 1.1.501.0 (64bit) - (.FARO Scanner Production.) [HKLM][64Bits] -- {8A470330-70B2-49AD-86AF-79885EF9898A} O42 - Logiciel: Autodesk Backburner 2015 - (.Autodesk.) [HKLM][64Bits] -- {8C5F38D2-8EFE-49A4-B3F5-BF3210FED168} O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8CCEA24C-51AE-3B71-9092-7D0C44DDA2DF}.KB958357 O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} O42 - Logiciel: Autodesk Advanced Material Library Image Library 2016 - (.Autodesk.) [HKLM][64Bits] -- {94AD53E7-493B-4291-8714-7A3B761D2783} O42 - Logiciel: Microsoft PowerPoint Viewer - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-0409-0000-0000000FF1CE} O42 - Logiciel: PDF Split And Merge Basic - (.Andrea Vacondio.) [HKLM][64Bits] -- {9A40D2F8-9458-458B-95E3-B57797C574E1} O42 - Logiciel: Autodesk Material Library Medium Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {9F6466D9-6EFC-4A10-B931-C72D1A3F1763} O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF} O42 - Logiciel: globalupdate Helper - (.globalupdate Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} O42 - Logiciel: Autodesk Material Library Base Resolution Image Library 2015 - (.Autodesk.) [HKLM][64Bits] -- {ABE2F70B-8D94-44E9-AA04-F0DB35063D62} O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} O42 - Logiciel: PDF Architect 3 Review Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {AE15160F-9383-4268-8849-B7D98FD9ABE8} O42 - Logiciel: Visual C++ 2008 - x86 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B42E259C-E4D4-37F1-A1B2-EB9C4FC5A04D}.KB958357 O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C3A57BB3-9AA6-3F6F-9395-6C062BDD5FC4}.KB958357 O42 - Logiciel: Asus FaceID - (.ASUS.) [HKLM][64Bits] -- {C4071085-DDF0-403F-90F9-27582FC22C9B} O42 - Logiciel: PDF Architect 3 Forms Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {C48CBC40-678B-4A4D-96B7-3011B6859B4C} O42 - Logiciel: Importation de SketchUp 2016 - (.Autodesk.) [HKLM][64Bits] -- {C769FB7C-1F55-4B31-9A2A-21CEC50F4F92} O42 - Logiciel: Applications recommandées Autodesk 2016 - (.Autodesk.) [HKLM][64Bits] -- {D42F37CD-9AF9-4435-A474-B387C5BB6B47} O42 - Logiciel: PDF Architect 3 Insert Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {E18844B2-D8B0-4AE4-8BE5-6245DD65068B} O42 - Logiciel: Final Draft - (.Final Draft, Inc..) [HKLM][64Bits] -- {E8FDC52C-83F4-4A0F-AA65-D0E8C0F3302F} O42 - Logiciel: PDF Architect 3 View Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {EB24E9E7-4BC1-4FD7-BF86-BDE07A7A03D7} O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} O42 - Logiciel: Adobe Illustrator CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {F2321021-08A2-44D6-B1DF-BDB415F23EC3} O42 - Logiciel: Visual C++ 2008 - x64 (KB958357) - v9.0.30729.177 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F6F09DD8-F39B-3A16-ADB9-C9E6B56903F9}.KB958357 O42 - Logiciel: PDF Architect 3 Asian Fonts Pack - (.pdfforge GmbH.) [HKLM][64Bits] -- {F7D1786D-908C-4CE8-A870-0CB29F3C1C43} O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM][64Bits] -- {FC76E6BB-7CBB-4CD6-8178-3BCADC0526C3} O42 - Logiciel: Akamai NetSession Interface - (.Akamai Technologies, Inc.) [HKCU][64Bits] -- Akamai O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox O42 - Logiciel: GameRanger - (.GameRanger Technologies.) [HKCU][64Bits] -- GameRanger O42 - Logiciel: StartIsBack+ - (.startisback.com.) [HKCU][64Bits] -- StartIsBack O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent ---\\ HKCU & HKLM Software Keys (171) - 8s HKLM\SOFTWARE\Wow6432Node\121_31 HKLM\SOFTWARE\Wow6432Node\86875c0f-706f-4e16-9339-67a2b5eb3adf =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdsFix HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AIM Toolbar HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\ArcSoft HKLM\SOFTWARE\Wow6432Node\ASIO HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar HKLM\SOFTWARE\Wow6432Node\AsLdr HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\Autodesk HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\downchecker =>PUP.Optional.DownChecker HKLM\SOFTWARE\Wow6432Node\ECAREME HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\Wow6432Node\Foxit Software HKLM\SOFTWARE\Wow6432Node\g3n-h@ckm@n HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\GoHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\GoHD-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\GoHD-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\McAfee HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\mtExtTag HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\PDF Architect 3 HKLM\SOFTWARE\Wow6432Node\PDF Split And Merge Basic HKLM\SOFTWARE\Wow6432Node\Piriform HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Reg HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Software HKLM\SOFTWARE\Wow6432Node\SpeedBit HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\Wow6432Node\sysinternals HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Abvent HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AdsFix HKCU\SOFTWARE\Akamai HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\AOL HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AR28Bjeu HKCU\SOFTWARE\ArcSoft HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\Autodesk HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Clubic HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\ECAREME HKCU\SOFTWARE\Elantech HKCU\SOFTWARE\Final Draft HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\g3n-h@ckm@n HKCU\SOFTWARE\GameRanger HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GoHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\GoHD-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\GoHD-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\Google HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\InstallPath HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Kromtech HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\LogMeInRescueCallingCard HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mootools HKCU\SOFTWARE\Motion Analysis HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\mtExtTag HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\OB HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PDF Architect 3 HKCU\SOFTWARE\PDF Split And Merge Basic HKCU\SOFTWARE\PDF Tools AG HKCU\SOFTWARE\PDFCreator.net HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Reg HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\StartIsBack HKCU\SOFTWARE\SYNCJM HKCU\SOFTWARE\sysinternals HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TZHGKjrcyRl24U HKCU\SOFTWARE\Unity HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WebApp HKCU\SOFTWARE\WIBU-SYSTEMS HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\sialcicotam HKCU\SOFTWARE\AppDataLow\Software\Unity ---\\ Contenu des dossiers Programmes (265) - 5s O43 - CFD: 2015/04/21 14:08:30 - [] D -- C:\Program Files (x86)\1-click run O43 - CFD: 2015/08/24 13:15:21 - [] D -- C:\Program Files (x86)\3e658ce7-ac10-4c4b-912a-611ea0097a82 =>PUP.Optional.CrossRider O43 - CFD: 2015/08/24 13:15:21 - [] D -- C:\Program Files (x86)\3f84c6e3-c7d1-442c-84b1-d2ef288f4060 =>PUP.Optional.CrossRider O43 - CFD: 2015/08/19 19:41:06 - [] D -- C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42 =>PUP.Optional.CrossRider O43 - CFD: 2015/05/17 17:14:16 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/01/19 21:53:46 - [0] D -- C:\Program Files (x86)\AGEIA Technologies O43 - CFD: 2015/04/19 14:15:19 - [] D -- C:\Program Files (x86)\ArcSoft O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 2015/04/24 17:05:42 - [] D -- C:\Program Files (x86)\Autodesk O43 - CFD: 2015/08/22 05:16:57 - [] D -- C:\Program Files (x86)\baidu O43 - CFD: 2015/08/19 17:43:03 - [] D -- C:\Program Files (x86)\cc3757cf-d009-47a8-ab94-dc4e1cfb3fe7 =>PUP.Optional.CrossRider O43 - CFD: 2015/08/19 20:27:02 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2015/05/19 18:24:31 - [] D -- C:\Program Files (x86)\Connectify O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Cyberlink O43 - CFD: 2015/05/08 19:18:30 - [] D -- C:\Program Files (x86)\Facebook Full size Profile Pictures O43 - CFD: 2015/08/19 17:30:40 - [] D -- C:\Program Files (x86)\Final Draft 9 O43 - CFD: 2015/07/31 21:33:42 - [] D -- C:\Program Files (x86)\Foxit PhantomPDF O43 - CFD: 2015/08/24 13:15:13 - [] D -- C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/08/24 13:15:44 - [] D -- C:\Program Files (x86)\GoHD =>PUP.Optional.CrossRider O43 - CFD: 2015/04/18 20:22:44 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/07/31 21:33:44 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2015/07/31 21:33:45 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/08/10 02:04:28 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/06/01 01:27:33 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2015/05/21 08:32:56 - [] D -- C:\Program Files (x86)\McAfee O43 - CFD: 2015/01/19 22:03:49 - [] D -- C:\Program Files (x86)\mcafee.com O43 - CFD: 2015/04/21 14:25:13 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2015/04/21 23:33:44 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET O43 - CFD: 2015/06/14 17:52:30 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/04/21 14:28:25 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 2015/07/31 21:33:46 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/08/24 01:57:47 - [] D -- C:\Program Files (x86)\MiniLite O43 - CFD: 2015/04/30 16:24:53 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/04/25 10:29:10 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2015/07/31 22:24:00 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2015/06/14 17:52:26 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 2015/04/18 21:26:31 - [] D -- C:\Program Files (x86)\Noël Danjou O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2015/08/09 13:10:15 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 2015/06/29 11:22:56 - [] D -- C:\Program Files (x86)\PDF Architect 3 O43 - CFD: 2015/06/01 01:20:26 - [] D -- C:\Program Files (x86)\PDF Split And Merge Basic O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2015/07/31 22:24:00 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2015/07/23 01:02:26 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2015/01/19 21:55:33 - [0] D -- C:\Program Files (x86)\Temp O43 - CFD: 2015/04/19 12:38:59 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2015/05/14 15:15:43 - [] D -- C:\Program Files (x86)\WIBU-SYSTEMS O43 - CFD: 2015/05/14 15:15:43 - [] D -- C:\Program Files (x86)\WIBUKEY O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2015/07/10 13:04:22 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2015/07/10 13:04:22 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/07/10 13:04:22 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2015/04/18 21:27:44 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2015/05/17 21:58:34 - [] D -- C:\Program Files (x86)\Wondershare O43 - CFD: 2015/05/12 21:35:19 - [] D -- C:\Program Files (x86)\ZHPDiag O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/07/10 18:28:37 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Magic-i Visual Effects 2 O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Artlantis Studio 5 (64 bit) O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk 3ds Max 2015 O43 - CFD: 2015/07/31 21:33:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk Backburner 2015 O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk ReCap 2016 O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Group O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Connectify 2015 O43 - CFD: 2015/07/31 21:38:40 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink MediaStory O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF O43 - CFD: 2015/07/31 21:33:50 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/05/19 02:12:07 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lumion 5.0 O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 3 O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Split And Merge Basic O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revit Architecture 2015 O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/07/31 21:38:40 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/07/10 18:28:36 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP O43 - CFD: 2015/05/19 01:43:23 - [] D -- C:\ProgramData\10089127066734900838 O43 - CFD: 2015/08/21 14:43:41 - [0] D -- C:\ProgramData\2WinManPro2 O43 - CFD: 2015/04/21 14:18:42 - [] D -- C:\ProgramData\Abvent O43 - CFD: 2015/05/17 17:14:19 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/05/04 13:26:26 - [0] D -- C:\ProgramData\ALM O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/04/19 14:19:28 - [] D -- C:\ProgramData\ArcSoft O43 - CFD: 2015/08/24 12:42:55 - [] D -- C:\ProgramData\ASUS Smart Gesture O43 - CFD: 2014/10/29 08:25:41 - [] D -- C:\ProgramData\ASUS WebStorage O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\ASUSLogos O43 - CFD: 2015/05/22 13:05:46 - [] D -- C:\ProgramData\Autodesk O43 - CFD: 2015/06/22 23:51:24 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 2015/07/31 21:42:18 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\Comms O43 - CFD: 2015/04/19 12:16:00 - [] D -- C:\ProgramData\Connectify O43 - CFD: 2015/08/19 21:03:15 - [] D -- C:\ProgramData\cWinManProc O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/06/17 13:34:51 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 2015/08/22 16:12:21 - [] D -- C:\ProgramData\ExtTag =>PUP.Optional.ExtTag O43 - CFD: 2015/08/22 16:10:26 - [] D -- C:\ProgramData\ExtTags =>PUP.Optional.ExtTag O43 - CFD: 2015/04/20 12:37:23 - [] D -- C:\ProgramData\FARO O43 - CFD: 2015/08/19 17:31:06 - [] D -- C:\ProgramData\Final Draft O43 - CFD: 2015/08/19 17:31:07 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 2015/08/24 01:57:34 - [] D -- C:\ProgramData\FWinManProF O43 - CFD: 2015/08/24 13:13:51 - [] D -- C:\ProgramData\HWinManProH O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\install_clap O43 - CFD: 2015/05/19 09:11:51 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\Intel.sav O43 - CFD: 2015/05/10 15:43:37 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2015/07/31 21:33:48 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2015/07/31 21:42:18 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/07/31 21:33:50 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/08/13 03:52:41 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/08/01 03:22:30 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2015/04/21 14:26:46 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 2015/07/31 21:42:18 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2015/04/18 20:46:03 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/08/21 14:43:24 - [] D -- C:\ProgramData\MWinManProM O43 - CFD: 2015/07/31 21:29:53 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/06/01 01:27:34 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/04/24 16:35:38 - [] D -- C:\ProgramData\PDF Architect 3 O43 - CFD: 2015/08/19 20:31:39 - [] D -- C:\ProgramData\RajxeNerm O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2015/05/19 09:11:50 - [0] D -- C:\ProgramData\Roaming O43 - CFD: 2015/08/19 20:25:34 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 2015/08/20 03:13:17 - [] D -- C:\ProgramData\rWinManPror O43 - CFD: 2015/07/31 21:30:43 - [] D -- C:\ProgramData\SetupTPDriver O43 - CFD: 2015/07/31 21:33:50 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/07/10 13:04:22 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2015/06/01 01:27:46 - [] D -- C:\ProgramData\Sun O43 - CFD: 2015/07/31 21:33:51 - [] D -- C:\ProgramData\Temp O43 - CFD: 2015/07/10 14:21:38 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/08/24 12:44:39 - [] D -- C:\ProgramData\update O43 - CFD: 2015/04/18 22:51:04 - [] D -- C:\ProgramData\USBChargerPlus O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 2015/07/10 14:22:45 - [] D -- C:\ProgramData\USOShared O43 - CFD: 2014/10/29 08:25:41 - [] D -- C:\ProgramData\WebStorage O43 - CFD: 2015/07/31 21:33:51 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 2015/05/17 21:58:34 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 2015/08/19 17:43:25 - [] D -- C:\ProgramData\ZWinManProZ O43 - CFD: 2015/05/17 17:14:10 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/04/19 14:15:20 - [] D -- C:\Program Files (x86)\Common Files\ArcSoft O43 - CFD: 2015/04/24 17:09:31 - [] D -- C:\Program Files (x86)\Common Files\Autodesk Shared O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\AWS O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/07/31 21:29:59 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2015/06/01 01:27:46 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/08/19 17:30:45 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 2015/05/21 19:47:50 - [] D -- C:\Program Files (x86)\Common Files\mcafee O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2015/07/31 21:33:28 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2015/04/19 11:41:31 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2015/07/10 18:23:55 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/08/19 17:30:30 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 2015/05/17 21:58:58 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 2015/07/03 01:27:32 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Abvent_Artlantis5 O43 - CFD: 2015/07/03 10:08:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Adobe O43 - CFD: 2015/08/24 01:59:21 - [] SHD -- C:\Users\YOUSSEF\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect O43 - CFD: 2015/04/19 14:07:13 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ArcSoft O43 - CFD: 2015/05/29 11:46:19 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ASUS WebStorage O43 - CFD: 2015/07/11 19:25:04 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Autodesk O43 - CFD: 2015/04/22 00:06:38 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\awsRun O43 - CFD: 2015/08/24 12:43:19 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Dropbox O43 - CFD: 2015/06/16 14:37:33 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\dvdcss O43 - CFD: 2015/08/19 17:33:53 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Final Draft O43 - CFD: 2015/06/27 00:44:28 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Foxit Software O43 - CFD: 2015/05/21 21:14:36 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\GameRanger O43 - CFD: 2015/04/27 11:14:33 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Identities O43 - CFD: 2015/05/19 09:11:50 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\Intel O43 - CFD: 2015/04/18 20:22:47 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Macromedia O43 - CFD: 2015/07/31 21:40:19 - [] SD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft O43 - CFD: 2015/04/18 20:46:20 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Mozilla O43 - CFD: 2015/08/24 01:57:27 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch O43 - CFD: 2015/04/24 22:59:41 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\NVIDIA O43 - CFD: 2015/04/18 21:49:14 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Opera Software O43 - CFD: 2015/04/24 16:43:22 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\PDF Architect 3 O43 - CFD: 2015/05/04 00:39:27 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\PDF Producer O43 - CFD: 2015/08/19 17:44:48 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ppslog O43 - CFD: 2015/05/16 17:15:57 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Quest3D O43 - CFD: 2015/07/28 11:17:02 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Skype O43 - CFD: 2015/06/18 16:26:15 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 2015/08/24 13:52:53 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\systweak =>PUP.Optional.Systweak O43 - CFD: 2015/08/24 13:56:44 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent O43 - CFD: 2015/08/23 03:18:55 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\vlc O43 - CFD: 2015/06/01 10:09:30 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\WebStorage O43 - CFD: 2015/05/19 13:17:11 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\WildTangent O43 - CFD: 2015/04/21 14:11:27 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\WinRAR O43 - CFD: 2015/08/24 13:58:00 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\ZHP O43 - CFD: 2015/08/19 20:05:00 - [0] D -- C:\Users\YOUSSEF\AppData\Local\483D9590-42DB-4BAD-88FD-9ADA924A951 O43 - CFD: 2015/07/22 22:03:35 - [] D -- C:\Users\YOUSSEF\AppData\Local\Adobe O43 - CFD: 2015/04/18 21:30:24 - [] D -- C:\Users\YOUSSEF\AppData\Local\Akamai O43 - CFD: 2015/07/31 21:32:03 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\Application Data O43 - CFD: 2015/04/19 13:56:32 - [] D -- C:\Users\YOUSSEF\AppData\Local\ArcSoft O43 - CFD: 2015/07/11 19:25:04 - [] D -- C:\Users\YOUSSEF\AppData\Local\Autodesk O43 - CFD: 2015/07/18 15:06:03 - [] D -- C:\Users\YOUSSEF\AppData\Local\CEF O43 - CFD: 2015/08/01 03:23:00 - [] D -- C:\Users\YOUSSEF\AppData\Local\Comms O43 - CFD: 2015/08/24 02:25:22 - [] D -- C:\Users\YOUSSEF\AppData\Local\CrashDumps O43 - CFD: 2015/06/17 13:34:52 - [] D -- C:\Users\YOUSSEF\AppData\Local\Dropbox O43 - CFD: 2015/08/01 12:03:12 - [] D -- C:\Users\YOUSSEF\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/06/10 18:02:36 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/06/10 18:02:36 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\EmieSiteList O43 - CFD: 2015/06/10 18:02:36 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\EmieUserList O43 - CFD: 2015/08/24 13:15:13 - [] D -- C:\Users\YOUSSEF\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate O43 - CFD: 2015/08/01 03:22:32 - [] D -- C:\Users\YOUSSEF\AppData\Local\Google O43 - CFD: 2015/06/03 12:18:47 - [] D -- C:\Users\YOUSSEF\AppData\Local\GWX O43 - CFD: 2015/07/31 21:32:03 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\Historique O43 - CFD: 2015/04/19 14:47:08 - [] D -- C:\Users\YOUSSEF\AppData\Local\Macromedia O43 - CFD: 2015/08/01 11:35:31 - [] D -- C:\Users\YOUSSEF\AppData\Local\Microsoft O43 - CFD: 2015/04/21 14:25:07 - [0] D -- C:\Users\YOUSSEF\AppData\Local\Microsoft Help O43 - CFD: 2015/08/01 03:24:47 - [] D -- C:\Users\YOUSSEF\AppData\Local\MicrosoftEdge O43 - CFD: 2015/04/18 20:46:20 - [] D -- C:\Users\YOUSSEF\AppData\Local\Mozilla O43 - CFD: 2015/08/01 03:23:01 - [0] D -- C:\Users\YOUSSEF\AppData\Local\NetworkTiles O43 - CFD: 2015/04/18 21:26:34 - [] D -- C:\Users\YOUSSEF\AppData\Local\Noël Danjou O43 - CFD: 2015/04/20 10:15:16 - [] D -- C:\Users\YOUSSEF\AppData\Local\NVIDIA O43 - CFD: 2015/04/20 10:15:35 - [] D -- C:\Users\YOUSSEF\AppData\Local\NVIDIA Corporation O43 - CFD: 2015/04/18 21:49:14 - [] D -- C:\Users\YOUSSEF\AppData\Local\Opera Software O43 - CFD: 2015/08/03 15:01:40 - [] D -- C:\Users\YOUSSEF\AppData\Local\Packages O43 - CFD: 2015/06/01 01:25:23 - [] D -- C:\Users\YOUSSEF\AppData\Local\PDFCreator O43 - CFD: 2015/05/03 22:35:47 - [] D -- C:\Users\YOUSSEF\AppData\Local\Programs O43 - CFD: 2015/08/01 03:21:05 - [] D -- C:\Users\YOUSSEF\AppData\Local\Publishers O43 - CFD: 2015/04/18 20:36:19 - [] D -- C:\Users\YOUSSEF\AppData\Local\Skype O43 - CFD: 2015/04/18 21:22:50 - [] D -- C:\Users\YOUSSEF\AppData\Local\StartIsBack O43 - CFD: 2015/08/24 13:58:14 - [] D -- C:\Users\YOUSSEF\AppData\Local\Temp O43 - CFD: 2015/07/31 21:32:03 - [0] SHD -- C:\Users\YOUSSEF\AppData\Local\Temporary Internet Files O43 - CFD: 2015/08/01 03:20:58 - [] D -- C:\Users\YOUSSEF\AppData\Local\TileDataLayer O43 - CFD: 2015/08/19 17:44:46 - [] D -- C:\Users\YOUSSEF\AppData\Local\Unity O43 - CFD: 2015/05/09 01:22:35 - [] D -- C:\Users\YOUSSEF\AppData\Local\VirtualRouterPlus O43 - CFD: 2015/08/19 18:18:11 - [] D -- C:\Users\YOUSSEF\AppData\Local\VirtualStore O43 - CFD: 2015/05/17 21:58:59 - [] D -- C:\Users\YOUSSEF\AppData\Local\Wondershare O43 - CFD: 2015/07/31 21:32:14 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/08/22 16:10:22 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/08/16 03:14:25 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMCap O43 - CFD: 2015/04/21 19:40:48 - [0] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk O43 - CFD: 2015/08/11 11:00:48 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 2015/07/10 13:04:26 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs O43 - CFD: 2015/08/19 18:13:42 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/07/10 13:04:26 - [] RD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/07/10 13:04:45 - [] RSD -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 2015/07/31 21:38:40 - [] D -- C:\Users\YOUSSEF\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (5) - 3s O45 - LFCP:[MD5.71F6E49B8585C3833CDAF8817B329A98] 2015/08/24 13:36:03 A -- C:\WINDOWS\Prefetch\ANYPROTECT.EXE-3685BDD1.pf =>PUP.Optional.AnyProtect O45 - LFCP:[MD5.EE562FE88C9AD8BC7E2499AD5C04E82F] 2015/08/19 17:33:41 A -- C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-A6D433B3.pf =>PUP.Optional.GlobalUpdate O45 - LFCP:[MD5.1FDB413ACA4408531415AC0A64C740B7] 2015/08/21 14:44:59 A -- C:\WINDOWS\Prefetch\SPEEDUPMYPC-STANDALONE-SETUP.-E2EA72C3.pf =>PUP.Optional.SpeedUpMyPC O45 - LFCP:[MD5.84C11C9AF7EEF784A454ECD897446DCB] 2015/08/22 15:00:10 A -- C:\WINDOWS\Prefetch\SPEEDUPMYPC.EXE-B3192A3C.pf =>PUP.Optional.SpeedUpMyPC O45 - LFCP:[MD5.8D5954B7BDDB40DB931D2B2E8A8CD101] 2015/08/24 13:14:55 A -- C:\WINDOWS\Prefetch\SYSTWEAKASP.TMP-473340BA.pf =>PUP.Optional.Systweak ---\\ Liste des pilotes du système (60) - 2s O58 - SDL:2015/07/10 12:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] O58 - SDL:2014/03/27 15:00:12 A . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\WINDOWS\System32\drivers\AiCharger.sys [17152] O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] O58 - SDL:2015/07/10 12:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] O58 - SDL:2015/07/10 12:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] O58 - SDL:2015/07/10 12:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] O58 - SDL:2008/04/04 10:10:12 A . (.ArcSoft, Inc. - For X64.) -- C:\WINDOWS\System32\drivers\ArcSoftKsUFilter.sys [19968] O58 - SDL:2015/05/13 05:44:24 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [19976] O58 - SDL:2015/06/30 17:14:30 A . (.ASUS Corporation - Asus TP Filter Driver(X64).) -- C:\WINDOWS\System32\drivers\AsusTP.sys [100776] O58 - SDL:2015/07/10 12:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] O58 - SDL:2015/07/10 12:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] O58 - SDL:2015/04/30 10:22:51 A . (.Connectify - NDISRD helper driver.) -- C:\WINDOWS\System32\drivers\cnnctfy3.sys [42152] O58 - SDL:2015/08/03 13:11:19 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\WINDOWS\System32\drivers\ETD.sys [477784] O58 - SDL:2015/07/10 12:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] O58 - SDL:2015/07/10 12:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] O58 - SDL:2014/06/26 04:56:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [670056] O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] O58 - SDL:2015/07/10 12:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] O58 - SDL:2015/03/20 00:41:08 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) USB Driver.) -- C:\WINDOWS\System32\drivers\ibtusb.sys [253680] O58 - SDL:2015/07/18 00:36:32 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [6389688] O58 - SDL:2014/06/16 05:27:10 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [450520] O58 - SDL:2014/05/07 00:39:17 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296] O58 - SDL:2014/05/07 00:39:17 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] O58 - SDL:2012/08/06 05:17:18 A . (. - Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbfiltr.sys [17280] O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] O58 - SDL:2015/07/10 12:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] O58 - SDL:2015/07/10 12:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] O58 - SDL:2015/07/10 12:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] O58 - SDL:2015/07/10 12:59:36 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwbw02.sys [3496216] O58 - SDL:2015/07/13 20:45:08 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11139216] O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] O58 - SDL:2015/07/10 12:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] O58 - SDL:2015/04/03 15:21:00 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [38032] O58 - SDL:2015/07/10 12:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] O58 - SDL:2015/07/10 12:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] O58 - SDL:2015/07/07 23:25:38 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [895256] O58 - SDL:2015/06/24 22:57:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4504320] O58 - SDL:2015/05/14 11:44:38 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [751632] O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] O58 - SDL:2015/07/10 12:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] O58 - SDL:2015/07/10 12:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] O58 - SDL:2013/12/09 17:26:24 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [100312] O58 - SDL:2015/08/22 15:50:56 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [35064] O58 - SDL:2015/07/10 12:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2015/07/10 12:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] O58 - SDL:2015/07/10 12:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] O58 - SDL:2015/05/14 15:15:36 A . (.WIBU-SYSTEMS AG - WIBU-KEY Plug&Play Driver for Windows.) -- C:\WINDOWS\System32\drivers\Wibukey2_64.sys [21376] O58 - SDL:2015/05/14 15:15:36 A . (.WIBU-SYSTEMS AG - WibuKey Windows NT Kernel Driver.) -- C:\WINDOWS\System32\drivers\WibuKey64.sys [106760] O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] O58 - SDL:2015/07/10 12:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (65) - 11s O61 - LFC: 2015/08/19 17:30:30 A . (..) -- C:\Users\YOUSSEF\Downloads\finaldraft907Win\Final Draft.exe [41240872] O61 - LFC: 2015/08/19 17:32:45 A . (.WOXGY.) -- C:\Users\YOUSSEF\Downloads\final draft 9 activation code\final draft 9 activation code.exe [734888] O61 - LFC: 2015/08/19 19:41:47 A . (..) -- C:\Users\YOUSSEF\Desktop\RogueKiller.exe [18758216] O61 - LFC: 2015/08/24 12:42:55 A . (..) -- C:\Users\YOUSSEF\AppData\Roaming\sp_data.sys [93] O61 - LFC: 2015/08/19 17:33:23 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Stripin.exe [53760] O61 - LFC: 2015/08/19 17:44:46 A . (.Unity Technologies ApS.) -- C:\Users\YOUSSEF\AppData\Local\Unity\WebPlayer\Uninstall.exe [644549] O61 - LFC: 2015/08/19 16:00:20 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Data.bin [3231460] O61 - LFC: 2015/08/19 04:26:34 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_150_0_Data.bin [3224560] O61 - LFC: 2015/08/19 04:26:34 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_150_0_Header.bin [9640] O61 - LFC: 2015/08/24 03:01:22 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2015/08/24 13:14:10 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635760021992598997.bin [97201] O61 - LFC: 2015/08/21 16:30:06 A . (..) -- C:\Users\YOUSSEF\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5165952] O61 - LFC: 2015/08/22 04:42:47 A . (..) -- C:\Users\YOUSSEF\AppData\Local\NVIDIA\NvBackend\Packages\00007cf0\CoProc update.19885687.exe [518256] O61 - LFC: 2015/08/22 04:42:48 A . (..) -- C:\Users\YOUSSEF\AppData\Local\NVIDIA\NvBackend\Packages\00007cee\DAO.19885646.exe [6107912] O61 - LFC: 2015/08/19 17:42:38 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvdrssel.bin [1] O61 - LFC: 2015/08/19 17:41:56 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\36e0f22eacad857de2cd3b76aedc24a7[1].exe [53784] O61 - LFC: 2015/08/24 13:15:50 A . (.CMI Limited.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\AnyProtectSetup[1].exe [613255] =>PUP.Optional.AnyProtect O61 - LFC: 2015/08/24 13:13:11 A . (.7th.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\cmi_mystartsearch[1].exe [311296] =>PUP.Optional.StartSearch O61 - LFC: 2015/08/24 13:13:07 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\fRvQ4[1].exe [158251] O61 - LFC: 2015/08/24 13:14:40 A . (.systweak.com.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\rcpsetup_17970[1].exe [4445480] O61 - LFC: 2015/08/19 17:33:04 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\setup[1].exe [74052] O61 - LFC: 2015/08/24 13:13:14 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\setup_362[1].exe [254464] O61 - LFC: 2015/08/19 17:42:44 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\smt[1].exe [211114] O61 - LFC: 2015/08/24 13:13:06 A . (.Copyright 2013.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\Validate[1].exe [61981] O61 - LFC: 2015/08/20 03:54:13 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\VuuPC_VO2_8907[1].exe [229220] =>PUP.Optional.VuuPC O61 - LFC: 2015/08/19 17:33:49 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\1pyTi7[1].exe [137728] O61 - LFC: 2015/08/19 17:42:45 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\BiTool[1].dll [59904] O61 - LFC: 2015/08/19 17:41:56 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\Bundle_CPUminer[1].exe [100529] O61 - LFC: 2015/08/24 13:13:07 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\cmmdWriter[1].exe [42796] O61 - LFC: 2015/08/19 17:33:36 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\runasu[1].exe [93696] O61 - LFC: 2015/08/19 17:34:12 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\runasu[2].exe [93696] O61 - LFC: 2015/08/24 13:13:09 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\SearchUpdater[1].exe [121216] O61 - LFC: 2015/08/19 17:41:55 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\setup[1].exe [1964104] O61 - LFC: 2015/08/19 17:42:50 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\setup[2].exe [430296] O61 - LFC: 2015/08/19 20:26:51 A . (.PSOPT.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\setup[4].exe [689504] O61 - LFC: 2015/08/19 17:33:57 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\SFSetup[1].exe [359945] O61 - LFC: 2015/08/24 13:13:49 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\VuuPC_VO2_8907[1].exe [229999] =>PUP.Optional.VuuPC O61 - LFC: 2015/08/19 17:32:51 A . (.XPVisChecker.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\XPVistaChecker[1].exe [50076] O61 - LFC: 2015/08/24 01:57:06 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\4bbda52393b575e64d530bd478a6717b[2].exe [60457] O61 - LFC: 2015/08/24 13:16:04 A . (.AnyProtect.com.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\AnyProtect[1].exe [6434816] =>PUP.Optional.AnyProtect O61 - LFC: 2015/08/22 05:16:54 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\fdf809e7420bc26691f9efeb51b17a73[1].exe [56980] O61 - LFC: 2015/08/19 18:12:13 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\FinalInstaller_dotnet4[1].exe [3001344] O61 - LFC: 2015/08/19 17:33:43 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\JOSrv[1].exe [209920] O61 - LFC: 2015/08/19 17:42:42 A . (.Cinema PlusV19.08.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\setup[1].exe [13922832] O61 - LFC: 2015/08/22 16:12:04 A . (.ZIMIU.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\setup[3].exe [723272] O61 - LFC: 2015/08/19 17:34:15 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\Update_Notifier[1].exe [514560] O61 - LFC: 2015/08/19 17:33:07 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\VOPackage[1].exe [944041] =>PUP.Optional.Downware O61 - LFC: 2015/08/19 17:33:11 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\10100016[1].exe [1542880] O61 - LFC: 2015/08/19 17:33:04 A . (.Copyright (C) 2015.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\CM20150622[1].exe [172032] O61 - LFC: 2015/08/24 13:13:21 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\FinalInstaller_dotnet4[1].exe [3030016] O61 - LFC: 2015/08/19 21:01:31 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\FriendlyError_s3[1].exe [177664] =>PUP.Optional.FriendlyError O61 - LFC: 2015/08/20 03:53:32 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\FriendlyError_s4[1].exe [177664] =>PUP.Optional.FriendlyError O61 - LFC: 2015/08/19 17:33:05 A . (.© 2015.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\install[1].exe [372789] O61 - LFC: 2015/08/24 13:13:44 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\policyname[1].exe [55963] O61 - LFC: 2015/08/19 17:33:23 A . (.Cinema Plus ProV19.08.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\setup[1].exe [14060192] O61 - LFC: 2015/08/20 19:45:27 A . (.TCMGP.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\setup[2].exe [723296] O61 - LFC: 2015/08/20 16:45:17 A . (.IRHBX.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\setup[3].exe [689544] O61 - LFC: 2015/08/24 13:15:05 A . (.InstallMoon.) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\setup[4].exe [11895152] =>PUP.Optional.CrossRider O61 - LFC: 2015/08/19 17:34:16 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\SU_Srv[1].exe [120832] O61 - LFC: 2015/08/22 05:17:21 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\VuuPC_VO2_8907[1].exe [230007] =>PUP.Optional.VuuPC O61 - LFC: 2015/08/24 13:16:24 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635760021992598997.bin [97201] O61 - LFC: 2015/08/19 15:51:06 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Microsoft\GameDVR\KnownGameList.bin [48528] O61 - LFC: 2015/08/24 13:15:16 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] O61 - LFC: 2015/08/20 03:51:20 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Google\Chrome\User Data\nacl_validation_cache.bin [380] O61 - LFC: 2015/08/21 14:24:48 A . (..) -- C:\Users\YOUSSEF\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [97910] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (16) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\Launcher.exe http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\launcher.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\launcher.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Launcher.) -- C:\Program Files (x86)\Opera\launcher.exe ---\\ Recherche d'infection sur les navigateurs (15) - 3s O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.newtab.url", "http://www.mystartsearch.com/newtab/?type=nt&ts=1440414815&z=9474ea88ae1739f87847dfdgfzdz5e2z7g7z[...] =>PUP.Optional.StartSearch O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.alias", "mystartsearch"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.iconURL", "http://www.mystartsearch.com/favicon.ico"); =>PUP.Optional.StartSearch O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.name", "mystartsearch"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.ptid", "cmi"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.uid", "SanDiskXSD7SB3Q128G1002_150245402867"); =>PUP.Optional.SearchEngine O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.search.searchengine.url", "http://www.mystartsearch.com/web/?type=ds&ts=1440414815&z=9474ea88ae1739f87847dfdgfz[...] =>PUP.Optional.StartSearch O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("browser.startup.homepage", "http://www.mystartsearch.com/?type=hp&ts=1440374234&z=b53503f4d182a840bd7aa62g5zez1ebc1maz4[...] =>PUP.Optional.StartSearch O69 - SBI: prefs.js [YOUSSEF - kz1zjdyy.default] user_pref("extensions.enabledAddons", "deskCutv2%40gmail.com:0.0.10,defsearchp%40gmail.com:1.0.0.1039,pdf_architect_3_conv%40pdfar[...] =>PUP.Optional.DeskCut O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {33BB0A4E-99AF-4226-BDF6-49120163DE86} - (mystartsearch) - http://www.mystartsearch.com/ =>PUP.Optional.StartSearch O69 - SBI: SearchScopes [HKCU] {ielnksrch} [DefaultScope] - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_Bw56VMFZJr47C02zYAChnT3kYPr68gWXIm1yj2MHvNA6N90OPJ68Li2itsdq8FHo6HGAAHPkNi1bFx6IuZVQ8Tg_8WrJrdFDBJjikadRAejtZ_0bqy_V7DGVHVxKr8bBBIWvV4KKIAaOYFUgjE8PTumXpsboa&q={searchTerms} O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (41) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324608] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [186368] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2235904] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040] O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [717312] O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [988672] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] ---\\ Liste des exceptions du parefeu Windows (19) - 1s O87 - FAEL: "UDP Query User{1C41E10C-3756-4EB7-B727-8C927479A185}E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe" [In-None-P17-TRUE] .(...) -- E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe O87 - FAEL: "TCP Query User{6F126225-296F-4ECF-AFB2-F49524EE9F62}E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe" [In-None-P6-TRUE] .(...) -- E:\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5) (direct play)\delta force black hawk down + team sabre (v1.5.0.5)\dfbhd.exe O87 - FAEL: "{C3D7814F-6002-41F0-B5D1-E23945E6BFCC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (.not file.) =>PUP.Optional.CrossBrowse O87 - FAEL: "{5FD827C9-3560-4939-BA6F-5C2B62D1074B}" [In-None-P17-TRUE] .(...) -- D:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe O87 - FAEL: "{91ABCEB9-7A7B-495B-829B-6275DD17667F}" [In-None-P6-TRUE] .(...) -- D:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe O87 - FAEL: "{62FB954A-7222-45B2-8A26-87B1C2EF6C20}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe O87 - FAEL: "{102803E2-DBE0-4B7D-904A-4E28C65BB177}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe O87 - FAEL: "{830CA0CC-57DE-4DA7-858F-C37740C1E4CE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe O87 - FAEL: "{136D4C5E-0CBF-48B7-BC51-A038E0F7C483}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe O87 - FAEL: "{1606CE0D-D42E-4087-9E60-FB5ADE138192}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Connectify\ConnectifyNetServices.exe O87 - FAEL: "{D819E449-AFE9-4A6B-8AEE-1E2886C3B08C}" [In-None-P6-TRUE] .(.Connectify - Connectify Hotspot.) -- C:\Program Files (x86)\Connectify\Connectify.exe O87 - FAEL: "{599885E7-2E6F-4D4B-80E1-2C40153FD0E3}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{F4BE3EE2-76BC-4814-898F-8DD25C841299}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\YOUSSEF\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{71F11E72-BAA2-4D42-91EF-9B7B140A6F4D}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{133CB0B8-44DF-4E17-8669-24DB37901830}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\RajxeNerm\rikaofi.exe O87 - FAEL: "{59F0BCE4-AA06-4CB0-A295-2001B06B8F2F}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\RajxeNerm\rikaofi.exe O87 - FAEL: "{88CABD3C-8B82-46F2-8E84-C7F40BA69DEE}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\RajxeNerm\rikaofi.exe O87 - FAEL: "{F459082A-0F21-4995-9342-78D20BBAF64E}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\RajxeNerm\rikaofi.exe O87 - FAEL: "{13D3D87F-2467-4ED4-A394-7D71368FCE67}" [In-None-P17-TRUE] .(...) -- C:\ProgramData\RajxeNerm\rikaofi.exe ---\\ Enumère les codes produits des logiciels (1) - 1s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>PUP.Optional.GlobalUpdate ---\\ Recherche des packages WindowsInstaller (1) - 2s [MD5.] [WIS][2015/08/19 17:33:38] (.globalupdate - Windows Installer XML Toolset (3.9.1208.0).) -- C:\WINDOWS\Installer\60a26f.msi [32768] =>PUP.Optional.GlobalUpdate ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (47) - 12s SR - Auto [2010/03/18 11:19:26] [ 113152] ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe SR - Auto [2014/12/05 04:27:44] [ 599944] Autodesk Application Manager Service (AdAppMgrSvc) . (.Autodesk Inc..) - C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe SR - Auto [2015/07/07 20:12:28] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe SS - Demand [2015/08/14 03:53:27] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe SR - Auto [2014/03/26 17:24:44] [ 115512] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe SR - Auto [2014/08/20 07:14:40] [ 71168] Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation.) - C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe SR - Auto [2011/11/21 16:19:50] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe SR - Auto [2015/02/05 20:47:50] [ 31160] Autodesk Content Service (Autodesk Content Service) . (.Autodesk, Inc..) - C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe SR - Auto [2015/08/19 17:33:49] [ 137728] File Size Charger (cobomiku) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp =>PUP.Optional.CrossRider SR - Auto [2015/04/09 17:29:44] [ 217088] Connectify (Connectify) . (.Connectify.) - C:\Program Files (x86)\Connectify\ConnectifyService.exe SS - Demand [2015/07/18 00:36:00] [ 283024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe SR - Auto [2014/01/09 17:34:30] [ 9728] DriverMFTService (DriverMFTService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe SR - Auto [2015/08/03 13:11:20] [ 147688] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe SR - Auto [2015/08/20 14:23:58] [ 22528] ExtTag (ExtTag) . (.Copyright © Main 2015.) - C:\ProgramData\ExtTag\ExtTag.exe SS - Demand [2015/08/19 17:30:45] [ 1045840] FlexNet Licensing Service (FlexNet Licensing Service) . (.Flexera Software LLC..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe SS - Demand [2015/04/20 12:26:48] [ 1369856] FlexNet Licensing Service 64 (FlexNet Licensing Service 64) . (.Flexera Software LLC.) - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe SR - Auto [2015/06/03 23:06:06] [ 1152656] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe SS - Auto [2015/08/24 13:15:13] [ 68608] globalUpdate Update Service (globalUpdate) (globalUpdate) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SS - Demand [2015/08/24 13:15:13] [ 68608] globalUpdate Update Service (globalUpdatem) (globalUpdatem) . (.globalUpdate.) - C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate SS - Auto [2015/04/18 20:22:12] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - Demand [2015/04/18 20:22:12] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - Auto [2015/08/19 14:06:50] [ 124888] hutneosa (hutneosa) . (...) - C:\ProgramData\RajxeNerm\rikaofi.exe SR - Auto [2015/08/19 17:33:43] [ 209920] Key In Bold Italic (hyverumu) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp =>PUP.Optional.CrossRider SR - Auto [2014/05/09 09:27:16] [ 121288] Intel Bluetooth Service (iBtSiva) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe SR - Auto [2015/08/19 16:25:48] [ 379904] igfx UI Service (igfx32) . (.Copyright © 2015.) - C:\Program Files\igfx32\igfx32.exe SR - Auto [2015/07/18 00:35:40] [ 351120] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\system32\igfxCUIService.exe SR - Auto [2015/08/20 03:51:36] [ 129688] IHProtect Service (IHProtect Service) . (.XTab system.) - C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR SR - Auto [2013/08/27 16:32:14] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe SS - Demand [2013/08/27 16:32:30] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe SR - Auto [2013/12/09 17:26:24] [ 131544] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe SR - Auto [2013/12/09 17:26:24] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe SR - Auto [2013/12/09 17:27:02] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe SS - Demand [2011/09/15 06:19:54] [ 86016] mental ray Satellite for Autodesk 3ds Max 2015 64-bit (mi-raysat_3dsmax2015_64) . (...) - D:\Program Files\Autodesk\3ds Max 2015\NVIDIA\Satellite\raysat_3dsmax2015_64server.exe SS - Demand [2015/04/24 14:23:54] [ 148080] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe SR - Auto [2015/06/03 23:06:06] [ 1893008] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe SR - Auto [2015/06/03 23:06:03] [23007376] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe SR - Auto [2015/07/13 19:37:03] [ 937616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe SS - Demand [2015/04/24 12:21:22] [ 2244312] PDF Architect 3 (PDF Architect 3) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\ws.exe SS - Demand [2015/04/24 12:21:06] [ 901336] PDF Architect 3 CrashHandler (PDF Architect 3 CrashHandler) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe SR - Auto [2015/04/24 12:21:12] [ 740568] PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe SR - Auto [2015/08/19 17:33:23] [ 53760] Home-Fax (produatpzo) . (...) - C:\Users\YOUSSEF\AppData\Local\Stripin.exe SS - Auto [2015/06/03 16:42:38] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe SS - Demand [2010/02/19 13:37:14] [ 517096] SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe SS - Auto [2009/03/12 16:50:12] [ 117248] CamMonitor (uCamMonitor) . (.ArcSoft, Inc..) - C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe SR - Auto [2015/08/19 14:06:42] [ 124888] utimcuca (utimcuca) . (...) - C:\ProgramData\RajxeNerm\rikwofi.exe SR - Disabled [2015/08/24 01:57:33] [ 708264] WindowsMangerProtect Service (WindowsMangerProtect) . (.DTools LIMITED.) - C:\ProgramData\FWinManProF\ProtectWindowsManager.exe =>PUP.Optional.Fuyu SR - Auto [2015/08/19 16:42:44] [ 760832] Forename Tools (zytecuhe) . (...) - C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs =>PUP.Optional.CrossRider ---\\ Scan Additionnel (148) - 0s C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\hnsj77C0.tmp =>PUP.Optional.CrossRider C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\jnsf6196.tmp =>PUP.Optional.CrossRider C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.MiuiTab C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42\knsd42AE.tmpfs =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-10.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-6.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-1-6.exe =>PUP.Optional.CrossRider C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\{b6a94784-0ffb-4121-88c6-435139067ee2}.xpi =>PUP.Optional.PriceFountain C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\searchplugins\findit.xml =>PUP.Optional.SmartBar C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\searchplugins\mystartsearch.xml =>PUP.Optional.StartSearch C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\findit.xml =>PUP.Optional.SmartBar C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\deskCutv2@gmail.com =>PUP.Optional.LightningNewTab C:\Users\YOUSSEF\AppData\Roaming\Mozilla\Firefox\Profiles\kz1zjdyy.default\extensions\f8783004-c434-4bd0-9f81-9a39dd64baaa@08ad07c4-3f21-451d-9045-9e0d5dc8aa9e.com =>PUP.Optional.CrossRider C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\cobomiku =>PUP.Optional.CrossRider HKLM\SYSTEM\CurrentControlSet\Services\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\hyverumu =>PUP.Optional.CrossRider HKLM\SYSTEM\CurrentControlSet\Services\IHProtect Service =>PUP.Optional.AgentODR C:\Program Files (x86)\MiniLite\ProtectService.exe =>PUP.Optional.AgentODR HKLM\SYSTEM\CurrentControlSet\Services\zytecuhe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-1-7.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-11.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-3.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-4.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-5.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\GoHD\1643e299-fa91-4995-9aed-6b04c00e7793-7.exe =>PUP.Optional.CrossRider C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-6.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-7.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-10_user.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-11.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-3.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-4.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5_user.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-6.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-7.job =>PUP.Optional.CrossRider C:\WINDOWS\Tasks\APSnotifierPP1.job =>PUP.Optional.AnyProtect C:\WINDOWS\Tasks\APSnotifierPP2.job =>PUP.Optional.AnyProtect C:\WINDOWS\Tasks\APSnotifierPP3.job =>PUP.Optional.AnyProtect C:\WINDOWS\Tasks\Bidaily Synchronize Task[pr].job =>PUP.Optional.BidailySync C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job =>PUP.Optional.GlobalUpdate C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job =>PUP.Optional.GlobalUpdate C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-6 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-1-7 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-10_user =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-11 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-3 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-4 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-5_user =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-6 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\1643e299-fa91-4995-9aed-6b04c00e7793-7 =>PUP.Optional.CrossRider C:\WINDOWS\System32\Tasks\APSnotifierPP1 =>PUP.Optional.AnyProtect C:\WINDOWS\System32\Tasks\APSnotifierPP2 =>PUP.Optional.AnyProtect C:\WINDOWS\System32\Tasks\APSnotifierPP3 =>PUP.Optional.AnyProtect C:\WINDOWS\System32\Tasks\ASP =>PUP.Optional.Systweak C:\WINDOWS\System32\Tasks\AutoKMS =>HackTool.AutoKMS C:\WINDOWS\System32\Tasks\Bidaily Synchronize Task[pr] =>PUP.Optional.BidailySync C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore =>PUP.Optional.GlobalUpdate C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\GoHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall =>PUP.Optional.StartSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\86875c0f-706f-4e16-9339-67a2b5eb3adf =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\AskPartnerNetwork =>Toolbar.AskBar HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Conduit =>PUP.Optional.Conduit HKLM\SOFTWARE\Wow6432Node\downchecker =>PUP.Optional.DownChecker HKLM\SOFTWARE\Wow6432Node\FFPluginHp =>PUP.Optional.SweetSearch HKLM\SOFTWARE\Wow6432Node\GlobalUpdate =>PUP.Optional.GlobalUpdate HKLM\SOFTWARE\Wow6432Node\GoHD =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\GoHD-nv =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\GoHD-nv-ie =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\IHProtect =>PUP.Optional.AgentODR HKLM\SOFTWARE\Wow6432Node\Iminent =>PUP.Optional.IMBooster HKLM\SOFTWARE\Wow6432Node\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKLM\SOFTWARE\Wow6432Node\mystartsearchSoftware =>PUP.Optional.StartSearch HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\searchult =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\SuperClick_1.10.0.16 =>PUP.Optional.SuperClick HKLM\SOFTWARE\Wow6432Node\supWindowsMangerProtect =>PUP.Optional.Fuyu HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\AnyProtect =>PUP.Optional.AnyProtect HKCU\SOFTWARE\APN PIP =>PUP.Optional.Conduit HKCU\SOFTWARE\AskPartnerNetwork =>Toolbar.AskBar HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-edge =>PUP.Optional.CrossRider HKCU\SOFTWARE\Cinem Plus 2.4cV19.08-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\CinemaPlus-3.2cV19.08-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\globalUpdate =>PUP.Optional.GlobalUpdate HKCU\SOFTWARE\GoHD =>PUP.Optional.CrossRider HKCU\SOFTWARE\GoHD-nv =>PUP.Optional.CrossRider HKCU\SOFTWARE\GoHD-nv-ie =>PUP.Optional.CrossRider HKCU\SOFTWARE\HomeTab =>PUP.Optional.CertifiedToolbar HKCU\SOFTWARE\InstalledBrowserExtensions =>PUP.Optional.BrowserExtensions HKCU\SOFTWARE\Linkey =>PUP.Optional.LinkeySearch HKCU\SOFTWARE\SearchProtectWS =>PUP.Optional.SearchProtect HKCU\SOFTWARE\SimplyTech =>PUP.Optional.SimplyTech HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\TNT2 =>PUP.Optional.TidyNetwork HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\WajIntEnhance =>PUP.Optional.Wajam HKCU\SOFTWARE\AppDataLow\Software\Crossrider =>PUP.Optional.CrossRider C:\Program Files (x86)\3e658ce7-ac10-4c4b-912a-611ea0097a82 =>PUP.Optional.CrossRider C:\Program Files (x86)\3f84c6e3-c7d1-442c-84b1-d2ef288f4060 =>PUP.Optional.CrossRider C:\Program Files (x86)\ADACEBF9-1439998404-3C40-857E-54A0508CAE42 =>PUP.Optional.CrossRider C:\Program Files (x86)\cc3757cf-d009-47a8-ab94-dc4e1cfb3fe7 =>PUP.Optional.CrossRider C:\Program Files (x86)\globalUpdate =>PUP.Optional.GlobalUpdate C:\Program Files (x86)\GoHD =>PUP.Optional.CrossRider C:\ProgramData\ExtTag =>PUP.Optional.ExtTag C:\ProgramData\ExtTags =>PUP.Optional.ExtTag C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\YOUSSEF\AppData\Roaming\AnyProtectEx =>PUP.Optional.AnyProtect C:\Users\YOUSSEF\AppData\Roaming\mystartsearch =>PUP.Optional.StartSearch C:\Users\YOUSSEF\AppData\Roaming\systweak =>PUP.Optional.Systweak C:\Users\YOUSSEF\AppData\Local\globalUpdate =>PUP.Optional.GlobalUpdate C:\WINDOWS\Prefetch\ANYPROTECT.EXE-3685BDD1.pf =>PUP.Optional.AnyProtect C:\WINDOWS\Prefetch\GLOBALUPDATE.EXE-A6D433B3.pf =>PUP.Optional.GlobalUpdate C:\WINDOWS\Prefetch\SPEEDUPMYPC-STANDALONE-SETUP.-E2EA72C3.pf =>PUP.Optional.SpeedUpMyPC C:\WINDOWS\Prefetch\SPEEDUPMYPC.EXE-B3192A3C.pf =>PUP.Optional.SpeedUpMyPC C:\WINDOWS\Prefetch\SYSTWEAKASP.TMP-473340BA.pf =>PUP.Optional.Systweak C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\AnyProtectSetup[1].exe =>PUP.Optional.AnyProtect C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\cmi_mystartsearch[1].exe =>PUP.Optional.StartSearch C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\Q2JVJAQ7\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\OHC6EMMF\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\AnyProtect[1].exe =>PUP.Optional.AnyProtect C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\GFS9ZTRI\VOPackage[1].exe =>PUP.Optional.Downware C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\FriendlyError_s3[1].exe =>PUP.Optional.FriendlyError C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\FriendlyError_s4[1].exe =>PUP.Optional.FriendlyError C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\setup[4].exe =>PUP.Optional.CrossRider C:\Users\YOUSSEF\AppData\Local\Microsoft\Windows\INetCache\IE\A1ZKHTMG\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.GlobalUpdate C:\WINDOWS\Installer\60a26f.msi =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\globalUpdatem =>PUP.Optional.GlobalUpdate HKLM\SYSTEM\CurrentControlSet\Services\WindowsMangerProtect =>PUP.Optional.Fuyu C:\ProgramData\FWinManProF\ProtectWindowsManager.exe =>PUP.Optional.Fuyu ---\\ Récapitulatif des éléments trouvées sur votre station (37) - 0s http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/blog =>PUP.Optional.MiuiTab http://www.nicolascoolman.fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch http://www.nicolascoolman.fr/blog =>PUP.Optional.PriceFountain http://www.nicolascoolman.fr/hijacker-smartbar/ =>PUP.Optional.SmartBar http://www.nicolascoolman.fr/blog =>PUP.Optional.LightningNewTab http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/pup-globalupdate/ =>PUP.Optional.GlobalUpdate http://www.nicolascoolman.fr/blog =>PUP.Optional.AgentODR http://www.nicolascoolman.fr/pup-anyprotect/ =>PUP.Optional.AnyProtect http://www.nicolascoolman.fr/pup-systweak/ =>PUP.Optional.Systweak http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/blog =>PUP.Optional.BidailySync http://www.nicolascoolman.fr/blog =>Toolbar.AskBar http://www.nicolascoolman.fr/toolbar-conduit/ =>PUP.Optional.Conduit http://www.nicolascoolman.fr/blog =>PUP.Optional.DownChecker http://www.nicolascoolman.fr/blog =>PUP.Optional.SweetSearch http://www.nicolascoolman.fr/adware-imbooster/ =>PUP.Optional.IMBooster http://www.nicolascoolman.fr/blog =>PUP.Optional.BrowserExtensions http://www.nicolascoolman.fr/pup-searchprotect/ =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic http://www.nicolascoolman.fr/pup-suptab/ =>PUP.Optional.SupTab http://www.nicolascoolman.fr/pup-superClick/ =>PUP.Optional.SuperClick http://www.nicolascoolman.fr/trojan-fuyu/ =>PUP.Optional.Fuyu http://www.nicolascoolman.fr/pup-wajam/ =>PUP.Optional.Wajam http://www.nicolascoolman.fr/pup-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar http://www.nicolascoolman.fr/pup-linkeysearch/ =>PUP.Optional.LinkeySearch http://www.nicolascoolman.fr/blog =>PUP.Optional.SimplyTech http://www.nicolascoolman.fr/adware-tidynetwork/ =>PUP.Optional.TidyNetwork http://www.nicolascoolman.fr/blog =>PUP.Optional.ExtTag http://www.nicolascoolman.fr/blog =>PUP.Optional.SpeedUpMyPC http://www.nicolascoolman.fr/pup-vuupc/ =>PUP.Optional.VuuPC http://www.nicolascoolman.fr/adware-downware/ =>PUP.Optional.Downware http://www.nicolascoolman.fr/blog =>PUP.Optional.FriendlyError http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine http://www.nicolascoolman.fr/blog =>PUP.Optional.DeskCut http://www.nicolascoolman.fr/blog =>PUP.Optional.CrossBrowse ~ End of the scan, 55351 items in 78 seconds (1462)(0)()