~ ZHPDiag v2015.9.24.145 Par Nicolas Coolman (2015/09/24) ~ Démarré par Andy (Administrator) (2015/09/26 16:22:37) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Andy\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Andy\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (3) - 1s GCIE: Google Chrome v45.0.2454.101 OPIE: Opera 32.0.1948.25 v32.0.1948.25 MSIE: Internet Explorer v11.0.9600.18015 ---\\ Informations sur les produits Windows (10) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 7QJB7 Windows License : OK ~ Windows Remaining Initializations Number : 2 Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (3) - 13s Avast Free Antivirus v10.4.2233 Emsisoft Anti-Malware Windows Defender W7 (Activate) ---\\ Logiciels d'optimisation (1) - 18s CCleaner v4.10 ---\\ Surveillance de Logiciels (2) - 19s Adobe Flash Player 18 NPAPI Adobe Reader X ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4026.736 MB (41% free) ~ System Restore: Activé (Enable) ~ System drive C: has 80 GB free of 287 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: AMANDINE-PC ~ User Name: Andy ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 0s ~ Drive C: has 80 GB free of 287 GB (System) ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 2s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\Windows\Explorer.exe [2871808] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\Windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\Windows\System32\Wininit.exe [129024] © [MD5.A55305B1CACD38EAC176CC532B2053AC] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\Windows\System32\wininet.dll [2427392] © [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\Windows\System32\Winlogon.exe [455168] © [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\Windows\System32\sppcomapi.dll [232448] © [MD5.492D07D79E7024CA310867B526D9636D] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\System32\dnsapi.dll [357888] © [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\Windows\Syswow64\dnsapi.dll [270336] © [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\Windows\System32\drivers\AFD.sys [497152] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\Windows\System32\drivers\atapi.sys [24128] © [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\Windows\System32\drivers\Cdfs.sys [92160] © [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\Windows\System32\drivers\Cdrom.sys [147456] © [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\Windows\System32\drivers\DfsC.sys [102400] © [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\Windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\Windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\Windows\System32\drivers\IpNat.sys [116224] © [MD5.43E1F4B0EFDC244D2A83995CCD7846F7] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\Windows\System32\drivers\MRxSmb.sys [159232] © [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\Windows\System32\drivers\netBT.sys [261632] © [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\Windows\System32\drivers\ntfs.sys [1684928] © [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\Windows\System32\drivers\Parport.sys [97280] © [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\Windows\System32\drivers\smb.sys [93184] © [MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\Windows\System32\drivers\tdx.sys [119296] © [MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\Windows\System32\drivers\volsnap.sys [296320] © ---\\ Processus lancés (40) - 4s [MD5.DACBEBE491EB6029FD72F600AB2E7171] - (.Tencent - 电脑管家-实时防护服务.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe [297608] [PID.756] =>PUP.Optional.TencentAddressBar [MD5.56BD9B36526D8E4A1AD642E44B0B4031] - (.Emsisoft Ltd - Emsisoft Protection Service.) -- C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [5531008] [PID.1504] © [MD5.11120878E5276B367E1A10FF8C9B595B] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600] [PID.1872] © [MD5.ADDA5E1951B90D3D23C56D3CF0622ADC] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640] [PID.2152] © [MD5.DD1257979C6D4627872455267A09FFD2] - (.Copyright (C) 2008 - s.) -- C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [138272] [PID.2356] [MD5.963CC1755FDA21878EB599DE93392C6E] - (.Copyright (C) 2008 - DCSHOST.) -- C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [219680] [PID.2460] [MD5.9B79741F1B6FE2CD92E65B78467F1B26] - (.Copyright 2015. All rights reserved. - Service.) -- C:\Program Files (x86)\RayDld\ihpmServer.exe [268520] [PID.2664] =>PUP.Optional.CrossRider [MD5.144CF3238E59F210646BDC6DD2BA631F] - (.MDL Forum, mod by Ratiborus - KMS Server Emulator Service (XP).) -- C:\ProgramData\KMSAuto\bin\KMSSS.exe [303616] [PID.2772] [MD5.6BB516A31DE232DAB436FF3A117E1E80] - (.Acer Incorporated - Updater Service.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376] [PID.2832] © [MD5.5179331910B68F41F70E8CB481349D4A] - (. - Printer Communication System.) -- C:\Windows\System32\lxbccoms.exe [566704] [PID.2908] [MD5.CDAD7034AF9562835F29FB50A5F54832] - (.TuneUp Software - TuneUp Utilities Service.) -- C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096] [PID.2064] © [MD5.FA7EA1918CC1C6984968099FB3232FCC] - (.TuneUp Software - TuneUp Utilities.) -- C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe [2034488] [PID.3596] © [MD5.082330935A1B2B3FD364FAD107E4604C] - (.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe [355296] [PID.3760] =>PUP.Optional.TencentAddressBar [MD5.2D99C7B675082946A30E90BA3A77AA31] - (...) -- C:\Users\Andy\AppData\Local\mbot_fr_014010096\upmbot_fr_014010096.exe [3302832] [PID.2736] =>PUP.Optional.CrossRider [MD5.8D31239FA4FBB0B9EF057E46F8DECBA6] - (.Tencent - 电脑管家-网络流量监控.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\plugins\QMNetMon\QQPCNetFlow.exe [1186144] [PID.4796] =>PUP.Optional.TencentAddressBar [MD5.606FC6D56B7E84EBD6B197D005DFD067] - (.Tencent - 电脑管家-小火箭.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRealTimeSpeedup.exe [604640] [PID.3828] =>PUP.Optional.TencentAddressBar [MD5.2A5459EB1D04D25EC44B6FB1E1F262F2] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [398616] [PID.3524] © [MD5.160B5E0566713EB5CAB2EC12C36ACF52] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12446824] [PID.4664] © [MD5.11C5C9A517E571DD4409FDB9C2AD20B6] - (...) -- C:\Users\Andy\AppData\Roaming\ACEStream\updater\ace_update.exe [22824] [PID.3552] [MD5.40B9C7F4459B37673ACDBDFBC0C6D184] - (...) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\ace_engine.exe [27000] [PID.4408] [MD5.4D1DA8CE5E364D22B4FF00F163194514] - (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608] [PID.972] © [MD5.123CE08362EE48BBA7F9F1D7EB50F24F] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544] [PID.5300] © [MD5.3BD79A1F6D2EA0FDDEA3F8914B2A6A0C] - (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984] [PID.5308] © [MD5.559106BB81E332552690D1FE4E4AADD1] - (.Boxore OU - Boxore.) -- C:\Program Files (x86)\Boxore\Boxore\boxore.exe [1042944] [PID.5324] =>PUP.Optional.Boxore [MD5.559106BB81E332552690D1FE4E4AADD1] - (.Boxore OU - Boxore.) -- C:\Program Files (x86)\Boxore\Boxore\boxore.exe [1042944] [PID.5364] =>PUP.Optional.Boxore [MD5.D8123F41836030CA9D18EE1149977DFA] - (...) -- C:\Program Files (x86)\mbot_fr_014010096\mbot_fr_014010096.exe [3976112] [PID.5372] =>PUP.Optional.CrossRider [MD5.6D5DBA957D94E902F5A2C649A361D4CE] - (.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\Program Files (x86)\Boxore\Boxore\node.exe [5529472] [PID.5664] =>PUP.Optional.Boxore [MD5.D3090576412EC63E0C6271D8B0974D73] - (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2425960] [PID.5808] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [PID.5816] © [MD5.4DB287E706F20BD7249C35A701BBA5DB] - (.Tencent - 电脑管家-下载中心.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMDL.exe [207200] [PID.4420] =>PUP.Optional.TencentAddressBar [MD5.16E27465FC02E6974704FD2187E92144] - (.Tencent - 腾讯高速下载引擎.) -- C:\program files (x86)\common files\Tencent\qqdownload\130\tencentdl.exe [1097272] [PID.4776] =>PUP.Optional.TencentAddressBar [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.7032] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.5124] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.7388] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.8152] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.7896] © [MD5.ADE3D7AD36CA238C6D58E5E93392D2F8] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3903056] [PID.8128] © [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [269848] [PID.5596] © [MD5.71DCFA65CC4349CF08BFFF7A14D8BAE4] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [815944] [PID.7772] © [MD5.260B29F5BCC07C91CBA92910484BE023] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Andy\Downloads\Programs\ZHPDiag3.exe [1938944] [PID.2940] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (5) - 1s G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ooebklgpfnbcnpokahmdidgbmlcdepkm] 电脑管家上网防护 ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 2s P2 - EXT FILE: (...) -- C:\Users\Andy\AppData\Roaming\Mozilla\Firefox\Profiles\dwrddv9f.default\searchplugins\bingcom.xml P2 - EXT FILE: (...) -- C:\Users\Andy\AppData\Roaming\Mozilla\Firefox\Profiles\dwrddv9f.default\searchplugins\Google.xml P2 - EXT: (.Ace Stream - AS Magic Player.) -- C:\Users\Andy\AppData\Roaming\Mozilla\Firefox\Profiles\dwrddv9f.default\extensions\magicplayer@acestream.org P2 - FPN: [HKCU] [@acestream.net/acestreamplugin,version=3.0.12] - (.Innovative Digital Technologies.) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\npace_plugin.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll © P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=3] - (.The Software Group.) -- C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore P2 - FPN: [HKLM] [@tools.Software.com/Software Update;version=9] - (.The Software Group.) -- C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.hao123.com/ =>PUP.Optional.Browser R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.oursurfing.com/ =>PUP.Optional.OurSurfing R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (8) - 1s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll © O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll © O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\ssv.dll © O2 - BHO: TSWebMon [64Bits] - {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} (Orphean) O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll © O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL © O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll © ---\\ Applications lancées au démarrage du système (20) - 0s O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe © O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe © O4 - HKCU\..\Run: [AceUpdater] . (...) -- C:\Users\Andy\AppData\Roaming\ACEStream\updater\ace_update.exe O4 - HKCU\..\Run: [AceStream] . (...) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\ace_engine.exe O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - Intel(R) USB 3.0 Monitor.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe © O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe © O4 - HKLM\..\Wow6432Node\Run: [VirtualCloneDrive] . (.Elaborate Bytes AG - Virtual CloneDrive Daemon.) -- C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe © O4 - HKLM\..\Wow6432Node\Run: [app] C:\Program Files (x86)\Tencent\app.exe (.not file.) =>PUP.Optional.TencentAddressBar O4 - HKLM\..\Wow6432Node\Run: [ QQPCTray] . (.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe =>PUP.Optional.TencentAddressBar O4 - HKLM\..\Wow6432Node\Run: [Boxore] . (.Boxore OU - Boxore.) -- C:\Program Files (x86)\Boxore\Boxore\boxore.exe =>PUP.Optional.Boxore O4 - HKLM\..\Wow6432Node\Run: [mbot_fr_014010096] . (...) -- C:\Program Files (x86)\mbot_fr_014010096\mbot_fr_014010096.exe =>PUP.Optional.CrossRider O4 - HKLM\..\Wow6432Node\RunOnce: [upmbot_fr_014010096.exe] . (...) -- C:\Users\Andy\AppData\Local\mbot_fr_014010096\upmbot_fr_014010096.exe =>PUP.Optional.CrossRider O4 - HKUS\.DEFAULT\..\Run: [Skype] C:\Program Files (x86)\Skype\Phone\Skype.exe (.not file.) O4 - HKUS\S-1-5-18\..\Run: [Skype] C:\Program Files (x86)\Skype\Phone\Skype.exe (.not file.) O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-1296521943-943836454-2395904297-1003\..\Run: [AceUpdater] . (...) -- C:\Users\Andy\AppData\Roaming\ACEStream\updater\ace_update.exe O4 - HKUS\S-1-5-21-1296521943-943836454-2395904297-1003\..\Run: [AceStream] . (...) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\ace_engine.exe ---\\ Winsock hijacker (Layered Service Provider) (5) - 0s O10 - WLSP:\Catalog_Entries\000000000001\Winsock LSP File . (...) -- C:\Windows\System32\BoxoreService.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000002\Winsock LSP File . (...) -- C:\Windows\System32\BoxoreService.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000003\Winsock LSP File . (...) -- C:\Windows\System32\BoxoreService.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000004\Winsock LSP File . (...) -- C:\Windows\System32\BoxoreService.dll (Not File) =>Hijacker.Winsock O10 - WLSP:\Catalog_Entries\000000000015\Winsock LSP File . (...) -- C:\Windows\System32\BoxoreService.dll (Not File) =>Hijacker.Winsock ---\\ Modification Domaine/Adresses DNS (6) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.42.129 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 ---\\ Protocole additionnel (24) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll © O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL © ---\\ Liste des services NT non Microsoft et non désactivés (14) - 1s O23 - Service: Emsisoft Protection Service (a2AntiMalware) . (.Emsisoft Ltd - Emsisoft Protection Service.) - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe © O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © O23 - Service: HiSuiteOuc64.exe (HiSuiteOuc64.exe) . (.Copyright (C) 2008 - s.) - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe O23 - Service: HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (.Copyright (C) 2008 - DCSHOST.) - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe © O23 - Service: ihpmServer (ihpmServer) . (.Copyright 2015. All rights reserved. - Service.) - C:\Program Files (x86)\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider O23 - Service: KMS-host Service (KMSEmulator) . (.MDL Forum, mod by Ratiborus - KMS Server Emulator Service (XP).) - C:\ProgramData\KMSAuto\bin\KMSSS.exe =>PUP.Optional.Windows O23 - Service: Live Updater Service (Live Updater Service) . (.Acer Incorporated - Updater Service.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe © O23 - Service: lxbc_device (lxbc_device) . (. - Printer Communication System.) - C:\Windows\System32\lxbccoms.exe O23 - Service: QQPCMgr RTP Service (QQPCRTP) . (.Tencent - 电脑管家-实时防护服务.) - C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe =>PUP.Optional.TencentAddressBar O23 - Service: Service Software Update (Software_update) (Software_update) . (.The Software Group - Software Update.) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) . (.TuneUp Software - TuneUp Utilities Service.) - C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe © ---\\ Tâches planifiées en automatique (17) - 4s [MD5.D9E35285D8CCE58241038E5B23507DAB] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1382112] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore1d0f2d7674f8e46] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.3D8297997A1A897FFA0399715639909D] [APT] [KMSAutoNet] (.MSfree Inc..) -- C:\ProgramData\KMSAutoS\KMSAuto Net.exe [5574656] [MD5.8B8BC169CE9D1AE12DC57147371519DB] [APT] [Opera scheduled Autoupdate 1443275217] (.Opera Software.) -- C:\Program Files (x86)\Opera\launcher.exe [955512] © [MD5.E46E43310EDBD1731C4A60249252E920] [APT] [SoftwareUpdateTaskMachineCore] (.The Software Group.) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [113752] =>PUP.Optional.Boxore [MD5.E46E43310EDBD1731C4A60249252E920] [APT] [SoftwareUpdateTaskMachineUA] (.The Software Group.) -- C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe [113752] =>PUP.Optional.Boxore [MD5.A93B9EA5E9AAA2CD3711C948A934EB47] [APT] [UALU notificatin] (.Acer Incorporated.) -- C:\Program Files\Packard Bell\Packard Bell Updater\UALU.exe [22392] © O39 - APT: GoogleUpdateTaskMachineCore1d0f2d7674f8e46 - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0f2d7674f8e46.job [1066] © O39 - APT: SoftwareUpdateTaskMachineCore - (.The Software Group.) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job [910] =>PUP.Optional.Boxore O39 - APT: SoftwareUpdateTaskMachineUA - (.The Software Group.) -- C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job [914] =>PUP.Optional.Boxore O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [4182] © O39 - APT: GoogleUpdateTaskMachineCore1d0f2d7674f8e46 - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore1d0f2d7674f8e46 [3814] © O39 - APT: KMSAutoNet - (.MSfree Inc..) -- C:\Windows\System32\Tasks\KMSAutoNet [3736] O39 - APT: Opera scheduled Autoupdate 1443275217 - (.Opera Software.) -- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1443275217 [3850] © O39 - APT: SoftwareUpdateTaskMachineCore - (.The Software Group.) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineCore [3658] =>PUP.Optional.Boxore O39 - APT: SoftwareUpdateTaskMachineUA - (.The Software Group.) -- C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA [3910] =>PUP.Optional.Boxore O39 - APT: UALU notificatin - (.Acer Incorporated.) -- C:\Windows\System32\Tasks\UALU notificatin [4018] © ---\\ Logiciels installés (74) - 9s O42 - Logiciel: Package de pilotes Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass ( - (.Google, Inc..) [HKLM][64Bits] -- 092555911492C6959D2596D612F52DCA71881CA2 © O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner © O42 - Logiciel: Lexmark Z500-Z600 Series - (.Lexmark International, Inc..) [HKLM][64Bits] -- Lexmark Z500-Z600 Series O42 - Logiciel: Java 7 Update 80 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F06417080FF} © O42 - Logiciel: PESMix 2016 Patch V1.0 Full Bundesliga - (.FTP Patch.) [HKLM][64Bits] -- {44BB9BCE-8855-4FB4-B7E4-96402F76EF41} O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {6199B534-A1B6-46ED-873B-97B0ECF8F81E} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {9A3C5DC9-EEA9-4FB2-855A-26FE6DA733EA} © O42 - Logiciel: Adobe Acrobat 4.0 - (...) [HKLM][64Bits] -- Adobe Acrobat 4.0 O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR © O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX © O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- avast © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: HiSuite - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Hi Suite © O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM][64Bits] -- Identity Card © O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193} © O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager © O42 - Logiciel: MyBestOffersToday 001.014010096 - (.MYBESTOFFERSTODAY.) [HKLM][64Bits] -- mbot_fr_014010096_is1 =>PUP.Optional.MyBestOffersToday O42 - Logiciel: Opera Stable 32.0.1948.25 - (.Opera Software.) [HKLM][64Bits] -- Opera 32.0.1948.25 © O42 - Logiciel: oursurfing - (...) [HKLM][64Bits] -- oursurfing =>PUP.Optional.OurSurfing O42 - Logiciel: Packard Bell Registration - (.Packard Bell.) [HKLM][64Bits] -- Packard Bell Registration © O42 - Logiciel: PhraseProfessor 1.10.0.21 - (.PhraseProfessor.) [HKLM][64Bits] -- PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic O42 - Logiciel: SopCast 4.0.0 - (.www.sopcast.com.) [HKLM][64Bits] -- SopCast © O42 - Logiciel: TuneUp Utilities 2014 - (.TuneUp Software.) [HKLM][64Bits] -- TuneUp Utilities © O42 - Logiciel: Pro Evolution Soccer 2016 - (...) [HKLM][64Bits] -- UHJvRXZvbHV0aW9uU29jY2VyMjAxNg==_is1 O42 - Logiciel: VirtualCloneDrive - (.Elaborate Bytes.) [HKLM][64Bits] -- VirtualCloneDrive © O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: IPTInstaller - (.HTC.) [HKLM][64Bits] -- {08208143-777D-4A06-BB54-71BF0AD1BB70} © O42 - Logiciel: Boxore - (.Boxore OU.) [HKLM][64Bits] -- {1E174B4D-8CBB-4118-B958-58D9EA81BD52} =>PUP.Optional.Boxore O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} © O42 - Logiciel: Java 7 Update 80 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F03217080FF} © O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} © O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {31B9D218-FED2-4C6C-B19F-7294FFC130B0} © O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM][64Bits] -- {3DB0448D-AD82-4923-B305-D001E521A964} © O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} © O42 - Logiciel: Emsisoft Anti-Malware - (.Emsisoft Ltd.) [HKLM][64Bits] -- {5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1 © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} © O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM][64Bits] -- {7F811A54-5A09-4579-90E1-C93498E230D9} © O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {7FF7370F-4C53-11E1-B6FF-F04DA23A5C58} © O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: Security Update for Skype for Business 2015 (KB3085500) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{6A5F1709-91E6-479F-B09F-D7FC9D2404D8} © O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE} © O42 - Logiciel: Security Update for Skype for Business 2015 (KB3085500) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{6A5F1709-91E6-479F-B09F-D7FC9D2404D8} © O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE} © O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE} © O42 - Logiciel: Security Update for Skype for Business 2015 (KB3085500) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUS_{6A5F1709-91E6-479F-B09F-D7FC9D2404D8} © O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.PROPLUS_{AE1BB975-11D1-49A0-82E8-1D26DD62AFE7} © O42 - Logiciel: Conseiller de mise à niveau vers Windows 7 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D10CB57-B085-44c3-B435-2D193BA153F0} © O42 - Logiciel: Video Web Camera - (.CyberLink Corp..) [HKLM][64Bits] -- {A0382E3C-7384-429A-9BFA-AF5888E5A193} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Adobe Reader X (10.1.7) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} © O42 - Logiciel: Adobe Reader X (10.1.0) MUI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-FFFF-7B44-AA0000000001} © O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} © O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: Packard Bell Updater - (.Packard Bell.) [HKLM][64Bits] -- {EE171732-BEB4-4576-887D-CB62727F01CA} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} © O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} © O42 - Logiciel: Ace Stream Media 3.0.12 - (.Ace Stream Media.) [HKCU][64Bits] -- AceStream © ---\\ HKCU & HKLM Software Keys (115) - 10s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\Atheros Communications Inc. HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Bunndle HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Elaborate Bytes HKLM\SOFTWARE\Wow6432Node\Filseclab HKLM\SOFTWARE\Wow6432Node\FTP Patch HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\ihpmserver HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LexmarkInkjet HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\MYBESTOFFERSTODAY =>PUP.Optional.MyBestOffersToday HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OEM HKLM\SOFTWARE\Wow6432Node\Packard Bell HKLM\SOFTWARE\Wow6432Node\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros WiFi Driver Installation HKLM\SOFTWARE\Wow6432Node\RayDld =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Software HKLM\SOFTWARE\Wow6432Node\SOHU HKLM\SOFTWARE\Wow6432Node\Sony Creative Software HKLM\SOFTWARE\Wow6432Node\SopCast HKLM\SOFTWARE\Wow6432Node\SuppHelpDir HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WafCX HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Zemana AntiMalware HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\4kdownload.com HKCU\SOFTWARE\Acer HKCU\SOFTWARE\AceStream HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\Batrarri HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Clubic HKCU\SOFTWARE\Crystal Dynamics HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Elaborate Bytes HKCU\SOFTWARE\Elecard HKCU\SOFTWARE\Filseclab HKCU\SOFTWARE\FreeDownloadManager.ORG HKCU\SOFTWARE\GNU HKCU\SOFTWARE\GoldenGate HKCU\SOFTWARE\Google HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PCTuneUp HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Plex, Inc. HKCU\SOFTWARE\Popcorn Time HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SeriousBit HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Software HKCU\SOFTWARE\SOHU HKCU\SOFTWARE\Solveig Multimedia HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\Ubicod Codec HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Video Download Capture HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\WSVCUPlugin HKCU\SOFTWARE\WTools HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\FDA HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (275) - 10s O43 - CFD: 2015/08/31 13:42:38 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/03/10 14:31:54 - [] D -- C:\Program Files (x86)\Android O43 - CFD: 2015/01/30 20:16:58 - [] D -- C:\Program Files (x86)\Apowersoft O43 - CFD: 2014/09/13 12:46:40 - [] D -- C:\Program Files (x86)\Atheros O43 - CFD: 2015/01/02 15:16:08 - [] D -- C:\Program Files (x86)\Black_Box O43 - CFD: 2015/09/26 15:44:57 - [] D -- C:\Program Files (x86)\Boxore =>PUP.Optional.Boxore O43 - CFD: 2015/09/26 15:33:15 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2014/12/01 23:40:21 - [] D -- C:\Program Files (x86)\Elaborate Bytes O43 - CFD: 2015/09/26 15:59:58 - [] D -- C:\Program Files (x86)\Emsisoft Anti-Malware O43 - CFD: 2014/12/09 19:44:18 - [] D -- C:\Program Files (x86)\Free Download Manager O43 - CFD: 2014/02/04 13:19:22 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2015/06/08 20:39:37 - [] D -- C:\Program Files (x86)\HiSuite O43 - CFD: 2015/08/31 12:40:26 - [] D -- C:\Program Files (x86)\HTC O43 - CFD: 2015/03/10 00:58:02 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2012/06/22 07:17:08 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/06/15 10:05:08 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 2015/09/15 11:07:20 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2015/07/21 16:20:37 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2014/12/25 21:18:45 - [] D -- C:\Program Files (x86)\K1 O43 - CFD: 2012/08/28 16:44:47 - [] D -- C:\Program Files (x86)\Lexmark Z500-Z600 Series O43 - CFD: 2015/09/26 15:49:06 - [] D -- C:\Program Files (x86)\mbot_fr_014010096 =>PUP.Optional.CrossRider O43 - CFD: 2014/11/22 13:34:33 - [] D -- C:\Program Files (x86)\McAfee O43 - CFD: 2014/12/14 14:56:50 - [] D -- C:\Program Files (x86)\Micro Application O43 - CFD: 2012/09/05 20:11:46 - [0] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2015/09/20 19:05:09 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2015/09/20 18:59:19 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/08/15 11:02:04 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2015/09/20 19:09:26 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 2012/04/21 11:50:14 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2015/09/08 12:16:26 - [] D -- C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor O43 - CFD: 2015/09/20 19:09:25 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2015/09/12 11:47:27 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2012/08/29 21:30:12 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 2015/09/26 15:48:14 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 2014/08/06 13:03:44 - [] D -- C:\Program Files (x86)\Packard Bell O43 - CFD: 2012/09/14 18:25:38 - [] D -- C:\Program Files (x86)\PhotoFiltre O43 - CFD: 2015/09/26 15:50:19 - [] D -- C:\Program Files (x86)\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic O43 - CFD: 2014/08/06 13:44:08 - [] D -- C:\Program Files (x86)\PopUp Destroy O43 - CFD: 2015/06/09 14:22:53 - [] D -- C:\Program Files (x86)\Pro Evolution Soccer 2015 O43 - CFD: 2015/09/26 15:15:37 - [] D -- C:\Program Files (x86)\Pro Evolution Soccer 2016 O43 - CFD: 2015/09/26 15:30:01 - [] D -- C:\Program Files (x86)\RayDld =>PUP.Optional.CrossRider O43 - CFD: 2012/06/22 07:10:13 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2014/01/26 17:16:49 - [] D -- C:\Program Files (x86)\SFR O43 - CFD: 2015/09/26 15:40:51 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore O43 - CFD: 2015/08/11 17:30:33 - [0] D -- C:\Program Files (x86)\Solveig Multimedia O43 - CFD: 2015/09/16 20:30:58 - [] D -- C:\Program Files (x86)\SopCast O43 - CFD: 2014/12/29 22:43:33 - [0] D -- C:\Program Files (x86)\Stream What You Hear O43 - CFD: 2012/04/21 12:08:32 - [] D -- C:\Program Files (x86)\SymSilent O43 - CFD: 2012/06/22 07:10:44 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 2015/09/26 15:50:29 - [] D -- C:\Program Files (x86)\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2014/12/18 20:02:09 - [] D -- C:\Program Files (x86)\TubeMaster++ O43 - CFD: 2014/11/14 18:46:57 - [] D -- C:\Program Files (x86)\TuneUp Utilities 2014 O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2014/12/09 15:46:14 - [0] D -- C:\Program Files (x86)\URUSoft O43 - CFD: 2015/08/31 13:35:04 - [0] D -- C:\Program Files (x86)\Veetle O43 - CFD: 2012/06/22 07:31:42 - [] D -- C:\Program Files (x86)\Video Web Camera O43 - CFD: 2013/02/24 04:39:55 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2013/07/11 03:15:06 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2014/02/02 20:44:55 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2012/06/22 16:55:41 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/06/15 22:53:03 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2012/06/22 16:55:41 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2012/06/22 16:55:41 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/07/25 13:15:53 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2015/01/30 20:27:50 - [0] D -- C:\Program Files (x86)\Wondershare O43 - CFD: 2015/09/02 19:57:24 - [] D -- C:\Program Files (x86)\ZHPFix O43 - CFD: 2015/09/13 16:00:18 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2009/07/14 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/26 14:36:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes O43 - CFD: 2015/09/13 16:00:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware O43 - CFD: 2014/11/01 12:43:56 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/09/13 16:00:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/09/13 16:00:18 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite O43 - CFD: 2015/09/13 16:00:19 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lexmark Z500-Z600 Series O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/09/26 09:34:27 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag O43 - CFD: 2015/09/26 15:49:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYBESTOFFERSTODAY =>PUP.Optional.MyBestOffersToday O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell - Security & Support O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre O43 - CFD: 2014/11/01 12:43:56 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X O43 - CFD: 2015/09/16 20:30:58 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast O43 - CFD: 2014/12/09 18:07:47 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2010/11/21 09:16:41 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 O43 - CFD: 2014/09/23 17:36:11 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\URUSoft O43 - CFD: 2015/09/13 16:00:19 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Web Camera O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/09/13 16:00:19 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2013/05/11 20:18:50 - [] D -- C:\ProgramData\Acer O43 - CFD: 2015/08/31 13:44:05 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2012/06/22 07:12:54 - [] D -- C:\ProgramData\Atheros O43 - CFD: 2014/09/13 12:32:00 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 2015/09/26 15:45:09 - [] D -- C:\ProgramData\Boxore =>PUP.Optional.Boxore O43 - CFD: 2012/08/27 20:53:38 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2012/06/22 07:20:02 - [] D -- C:\ProgramData\CLSK O43 - CFD: 2015/09/08 14:46:47 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 2012/08/27 22:45:24 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2014/09/13 13:24:50 - [] D -- C:\ProgramData\Emsisoft O43 - CFD: 2012/04/21 11:40:47 - [0] D -- C:\ProgramData\Evernote O43 - CFD: 2012/08/27 20:53:38 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2015/06/08 20:39:38 - [] D -- C:\ProgramData\HandSetService O43 - CFD: 2015/06/08 20:39:32 - [] D -- C:\ProgramData\HiSuiteDataSvc O43 - CFD: 2015/06/08 20:39:37 - [] D -- C:\ProgramData\HiSuiteOuc O43 - CFD: 2015/09/26 09:57:12 - [] D -- C:\ProgramData\HitmanPro O43 - CFD: 2015/08/31 12:40:26 - [0] D -- C:\ProgramData\HTC O43 - CFD: 2014/03/12 18:49:09 - [0] D -- C:\ProgramData\IDM O43 - CFD: 2014/12/06 15:19:40 - [0] D -- C:\ProgramData\install_clap O43 - CFD: 2012/06/22 07:14:47 - [] D -- C:\ProgramData\Intel O43 - CFD: 2014/12/25 21:18:51 - [] D -- C:\ProgramData\K1 O43 - CFD: 2015/09/20 19:00:54 - [] D -- C:\ProgramData\KMSAuto =>PUP.Optional.Windows O43 - CFD: 2015/09/17 21:10:02 - [] D -- C:\ProgramData\KMSAutoS =>PUP.Optional.Windows O43 - CFD: 2015/09/26 15:17:46 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 2014/09/13 12:09:46 - [] D -- C:\ProgramData\ma-config.com O43 - CFD: 2014/12/09 15:45:21 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2012/08/27 20:53:38 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/09/20 19:03:21 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/09/26 09:32:52 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2012/08/27 20:53:38 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2013/09/20 17:36:22 - [] D -- C:\ProgramData\Motorola O43 - CFD: 2013/09/01 17:05:44 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2012/12/02 19:02:07 - [] D -- C:\ProgramData\Nero O43 - CFD: 2012/11/02 12:57:06 - [] D -- C:\ProgramData\Norton O43 - CFD: 2012/04/21 12:07:52 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 2012/08/28 13:11:40 - [] D -- C:\ProgramData\oem O43 - CFD: 2014/02/04 14:22:52 - [0] D -- C:\ProgramData\Oracle O43 - CFD: 2012/04/21 11:41:41 - [] D -- C:\ProgramData\Packard Bell O43 - CFD: 2014/09/13 12:46:21 - [] D -- C:\ProgramData\Qualcomm Atheros O43 - CFD: 2015/01/11 19:45:59 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 2015/09/20 19:09:16 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2015/09/14 17:25:12 - [] D -- C:\ProgramData\Skype O43 - CFD: 2014/12/14 15:02:05 - [] D -- C:\ProgramData\Solidshield O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2014/12/19 23:22:55 - [] D -- C:\ProgramData\Steam O43 - CFD: 2013/05/12 00:56:57 - [] D -- C:\ProgramData\Sun O43 - CFD: 2012/06/22 07:31:07 - [] D -- C:\ProgramData\Temp O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2015/09/26 16:02:52 - [] D -- C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2014/11/09 15:38:42 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 2015/09/26 15:52:11 - [0] D -- C:\ProgramData\TXQMPC O43 - CFD: 2015/09/17 18:34:16 - [] D -- C:\ProgramData\Virtualized Applications O43 - CFD: 2012/08/28 13:27:37 - [] D -- C:\ProgramData\VirtualizedApplications O43 - CFD: 2014/07/07 23:26:43 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 2015/01/30 20:27:41 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 2015/01/30 20:27:17 - [] D -- C:\ProgramData\Wondershare Video Converter Ultimate O43 - CFD: 2015/09/26 09:46:38 - [0] D -- C:\ProgramData\Zemana AntiMalware O43 - CFD: 2014/11/09 21:57:05 - [0] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 2015/08/31 20:03:10 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2015/07/21 16:07:00 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 2015/09/20 18:59:16 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2012/06/22 07:10:09 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2012/06/22 07:03:09 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2012/04/21 11:38:37 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 2015/07/21 16:23:18 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2014/09/23 17:36:11 - [] D -- C:\Program Files (x86)\Common Files\McAfee O43 - CFD: 2015/09/20 19:09:53 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2012/06/22 07:13:55 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2012/11/01 21:45:25 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 2015/09/20 19:06:06 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/09/26 15:33:15 - [] D -- C:\Program Files (x86)\Common Files\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2012/04/21 11:42:51 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2014/02/26 18:15:00 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 2015/01/30 20:26:03 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 2015/09/26 14:31:53 - [] D -- C:\Users\Andy\AppData\Roaming\.ACEStream O43 - CFD: 2015/09/12 14:08:56 - [] D -- C:\Users\Andy\AppData\Roaming\ACEStream O43 - CFD: 2015/03/01 18:00:32 - [] D -- C:\Users\Andy\AppData\Roaming\AceWebExtension O43 - CFD: 2015/03/07 19:15:38 - [] D -- C:\Users\Andy\AppData\Roaming\AdbDriverInstaller O43 - CFD: 2015/08/31 13:43:13 - [] D -- C:\Users\Andy\AppData\Roaming\Adobe O43 - CFD: 2015/01/30 20:16:58 - [] D -- C:\Users\Andy\AppData\Roaming\Apowersoft O43 - CFD: 2014/06/17 18:59:33 - [] D -- C:\Users\Andy\AppData\Roaming\Apple Computer O43 - CFD: 2014/09/13 13:52:11 - [] D -- C:\Users\Andy\AppData\Roaming\AVAST Software O43 - CFD: 2015/05/05 15:57:40 - [] D -- C:\Users\Andy\AppData\Roaming\CrystalIdea Software O43 - CFD: 2015/09/26 15:56:39 - [] D -- C:\Users\Andy\AppData\Roaming\DMCache O43 - CFD: 2014/12/11 19:42:12 - [] HD -- C:\Users\Andy\AppData\Roaming\GoldenGate O43 - CFD: 2015/08/31 12:40:26 - [] D -- C:\Users\Andy\AppData\Roaming\HTC O43 - CFD: 2014/06/17 13:36:56 - [] D -- C:\Users\Andy\AppData\Roaming\Identities O43 - CFD: 2015/09/26 13:05:50 - [] D -- C:\Users\Andy\AppData\Roaming\IDM O43 - CFD: 2014/12/27 19:32:11 - [] D -- C:\Users\Andy\AppData\Roaming\Kodi O43 - CFD: 2015/02/25 17:13:19 - [] D -- C:\Users\Andy\AppData\Roaming\LiveCAD3 O43 - CFD: 2014/07/31 07:36:04 - [] D -- C:\Users\Andy\AppData\Roaming\Macromedia O43 - CFD: 2010/11/21 09:16:41 - [0] D -- C:\Users\Andy\AppData\Roaming\Media Center Programs O43 - CFD: 2015/09/26 15:30:11 - [] SD -- C:\Users\Andy\AppData\Roaming\Microsoft O43 - CFD: 2014/09/13 18:34:25 - [] D -- C:\Users\Andy\AppData\Roaming\Mozilla O43 - CFD: 2015/09/17 18:27:40 - [] D -- C:\Users\Andy\AppData\Roaming\OpenOffice O43 - CFD: 2015/09/26 15:47:37 - [] D -- C:\Users\Andy\AppData\Roaming\Opera Software O43 - CFD: 2014/06/17 13:37:33 - [] D -- C:\Users\Andy\AppData\Roaming\Screensaver O43 - CFD: 2014/08/06 13:05:19 - [] D -- C:\Users\Andy\AppData\Roaming\SFR O43 - CFD: 2015/09/08 14:51:16 - [] D -- C:\Users\Andy\AppData\Roaming\Skype O43 - CFD: 2015/09/20 18:58:25 - [] D -- C:\Users\Andy\AppData\Roaming\SoftGrid Client O43 - CFD: 2015/08/11 17:16:06 - [] D -- C:\Users\Andy\AppData\Roaming\Solveig Multimedia O43 - CFD: 2015/08/31 20:23:27 - [] D -- C:\Users\Andy\AppData\Roaming\Sony O43 - CFD: 2015/03/03 20:33:48 - [] D -- C:\Users\Andy\AppData\Roaming\Steam O43 - CFD: 2015/09/26 15:36:03 - [0] D -- C:\Users\Andy\AppData\Roaming\Store =>PUP.Optional.Nosibay O43 - CFD: 2015/09/26 15:34:12 - [] D -- C:\Users\Andy\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar O43 - CFD: 2015/09/17 18:33:58 - [0] D -- C:\Users\Andy\AppData\Roaming\TP O43 - CFD: 2014/11/08 20:51:10 - [] D -- C:\Users\Andy\AppData\Roaming\TuneUp Software O43 - CFD: 2015/09/17 19:01:22 - [] D -- C:\Users\Andy\AppData\Roaming\vlc O43 - CFD: 2014/06/17 13:47:47 - [] D -- C:\Users\Andy\AppData\Roaming\WinRAR O43 - CFD: 2015/01/30 20:26:19 - [0] D -- C:\Users\Andy\AppData\Roaming\Wondershare Video Converter Ultimate O43 - CFD: 2015/09/26 16:23:08 - [] D -- C:\Users\Andy\AppData\Roaming\ZHP O43 - CFD: 2015/01/30 20:26:25 - [0] D -- C:\Users\Andy\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A} O43 - CFD: 2015/01/30 20:12:26 - [] D -- C:\Users\Andy\AppData\Local\4kdownload.com O43 - CFD: 2015/07/21 16:06:21 - [] D -- C:\Users\Andy\AppData\Local\Adobe O43 - CFD: 2014/06/17 18:59:33 - [] D -- C:\Users\Andy\AppData\Local\Apple Computer O43 - CFD: 2014/06/17 13:36:36 - [0] SHD -- C:\Users\Andy\AppData\Local\Application Data O43 - CFD: 2014/11/10 16:17:38 - [] D -- C:\Users\Andy\AppData\Local\Avg2014 O43 - CFD: 2015/03/03 20:33:48 - [] D -- C:\Users\Andy\AppData\Local\BANDAI NAMCO Games O43 - CFD: 2015/09/26 15:45:59 - [] D -- C:\Users\Andy\AppData\Local\Boxore =>PUP.Optional.Boxore O43 - CFD: 2014/12/02 00:04:12 - [] D -- C:\Users\Andy\AppData\Local\Chromium O43 - CFD: 2015/09/26 15:47:24 - [] D -- C:\Users\Andy\AppData\Local\CrashDumps O43 - CFD: 2015/03/02 21:22:06 - [] D -- C:\Users\Andy\AppData\Local\Diagnostics O43 - CFD: 2015/03/12 18:08:09 - [0] D -- C:\Users\Andy\AppData\Local\Downloaded Installations O43 - CFD: 2015/09/02 20:07:43 - [0] D -- C:\Users\Andy\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/09/02 18:00:13 - [0] SHD -- C:\Users\Andy\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/09/02 18:00:12 - [0] SHD -- C:\Users\Andy\AppData\Local\EmieSiteList O43 - CFD: 2015/09/02 18:00:13 - [0] SHD -- C:\Users\Andy\AppData\Local\EmieUserList O43 - CFD: 2015/03/25 21:13:07 - [] D -- C:\Users\Andy\AppData\Local\Flixtor O43 - CFD: 2015/09/13 20:21:02 - [] D -- C:\Users\Andy\AppData\Local\Google O43 - CFD: 2014/06/17 13:36:36 - [0] SHD -- C:\Users\Andy\AppData\Local\Historique O43 - CFD: 2015/06/08 20:39:40 - [] D -- C:\Users\Andy\AppData\Local\HiSuite O43 - CFD: 2015/08/31 12:40:30 - [] D -- C:\Users\Andy\AppData\Local\HTC MediaHub O43 - CFD: 2014/09/13 20:09:28 - [] D -- C:\Users\Andy\AppData\Local\Macromedia O43 - CFD: 2015/09/26 16:03:14 - [] D -- C:\Users\Andy\AppData\Local\mbot_fr_014010096 =>PUP.Optional.CrossRider O43 - CFD: 2015/09/13 16:00:40 - [] D -- C:\Users\Andy\AppData\Local\Microsoft O43 - CFD: 2015/09/08 12:20:41 - [] D -- C:\Users\Andy\AppData\Local\Microsoft Corporation O43 - CFD: 2015/09/13 15:41:04 - [0] D -- C:\Users\Andy\AppData\Local\Microsoft Help O43 - CFD: 2015/09/17 18:26:02 - [] D -- C:\Users\Andy\AppData\Local\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 2014/09/13 18:34:29 - [] D -- C:\Users\Andy\AppData\Local\Mozilla O43 - CFD: 2015/09/20 19:00:58 - [] D -- C:\Users\Andy\AppData\Local\MSfree Inc O43 - CFD: 2015/03/25 20:33:53 - [] D -- C:\Users\Andy\AppData\Local\node-webkit O43 - CFD: 2015/09/26 15:47:59 - [] D -- C:\Users\Andy\AppData\Local\Opera Software O43 - CFD: 2014/12/27 19:59:43 - [] D -- C:\Users\Andy\AppData\Local\Plex Media Server O43 - CFD: 2015/05/05 14:17:18 - [] D -- C:\Users\Andy\AppData\Local\Popcorn Time fleex O43 - CFD: 2015/05/05 14:30:20 - [] D -- C:\Users\Andy\AppData\Local\Popcorn-Time-fleex O43 - CFD: 2015/03/24 14:34:12 - [] D -- C:\Users\Andy\AppData\Local\PopcornTimeDesktop O43 - CFD: 2014/08/08 17:40:01 - [] D -- C:\Users\Andy\AppData\Local\Programs O43 - CFD: 2015/02/19 15:50:04 - [] D -- C:\Users\Andy\AppData\Local\Skype O43 - CFD: 2015/09/17 18:34:28 - [] D -- C:\Users\Andy\AppData\Local\SoftGrid Client O43 - CFD: 2015/09/26 15:40:48 - [] D -- C:\Users\Andy\AppData\Local\Software =>PUP.Optional.Boxore O43 - CFD: 2015/08/31 13:36:10 - [] D -- C:\Users\Andy\AppData\Local\Sony O43 - CFD: 2014/12/02 00:01:26 - [] D -- C:\Users\Andy\AppData\Local\Sports Interactive O43 - CFD: 2014/11/23 12:56:10 - [] D -- C:\Users\Andy\AppData\Local\Stéphane_Mitermite O43 - CFD: 2015/09/26 16:23:28 - [] D -- C:\Users\Andy\AppData\Local\Temp O43 - CFD: 2014/06/17 13:36:36 - [0] SHD -- C:\Users\Andy\AppData\Local\Temporary Internet Files O43 - CFD: 2015/09/26 15:31:05 - [] D -- C:\Users\Andy\AppData\Local\Temp尰 O43 - CFD: 2014/12/06 16:04:23 - [] D -- C:\Users\Andy\AppData\Local\VirtualStore O43 - CFD: 2015/09/02 19:57:47 - [] D -- C:\Users\Andy\AppData\Local\Windows Live O43 - CFD: 2015/01/30 20:26:05 - [] D -- C:\Users\Andy\AppData\Local\Wondershare O43 - CFD: 2015/09/13 16:00:39 - [] RD -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/09/15 19:30:30 - [] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Stream Media O43 - CFD: 2015/09/26 16:01:08 - [] RD -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/09/13 16:00:02 - [] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome O43 - CFD: 2014/11/15 12:40:48 - [0] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/09/13 16:00:02 - [] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/09/13 16:00:02 - [] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time fleex O43 - CFD: 2015/09/16 20:30:52 - [0] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast O43 - CFD: 2015/09/26 16:01:08 - [] RD -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/09/13 16:00:02 - [] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 2015/09/26 15:33:14 - [] D -- C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件 ---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 5s O45 - LFCP:[MD5.C6A0301E8EEF2966414A08F221AA24DF] 2015/09/26 09:35:06 A -- C:\Windows\Prefetch\PERFORMANCEOPTIMIZER.EXE-DB215C0B.pf =>PUP.Optional.BProtector ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 1s O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL © O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll © ---\\ Enumération des clés StartupReg (1) - 0s O53 - SMSR:HKLM\...\startupreg\AceStream [Key] . (...) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\ace_engine.exe ---\\ Liste des pilotes du système (92) - 1s O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] © O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] © O58 - SDL:2011/07/14 07:35:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] © O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] © O58 - SDL:2011/07/14 07:35:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] © O58 - SDL:2009/11/02 18:16:50 A . (.HTC, Corporation - ADB Interface.) -- C:\Windows\System32\drivers\ANDROIDUSB.sys [33736] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] © O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] © O58 - SDL:2015/09/17 17:48:00 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [28656] © O58 - SDL:2015/09/17 17:48:00 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [90968] © O58 - SDL:2015/09/17 17:47:58 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [93528] © O58 - SDL:2015/09/17 17:48:00 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [65224] © O58 - SDL:2015/09/17 17:47:27 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1049880] © O58 - SDL:2015/09/17 17:48:00 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [448968] © O58 - SDL:2015/09/17 17:48:01 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [153744] © O58 - SDL:2015/09/17 17:48:01 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [274808] © O58 - SDL:2013/11/20 19:24:04 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [4028928] © O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2009/10/20 03:00:00 A . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [10224] © O58 - SDL:2009/10/20 03:00:00 A . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [10224] © O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] © O58 - SDL:2014/12/21 00:31:04 A . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) -- C:\Windows\System32\drivers\ElbyCDIO.sys [40344] © O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] © O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2012/07/17 18:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [62784] © O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] © O58 - SDL:2012/12/07 18:27:50 A . (.Windows (R) Win 7 DDK provider - RawPacket NDIS Protocol Driver.) -- C:\Windows\System32\drivers\htcnprot.sys [36928] © O58 - SDL:2010/03/09 04:08:36 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\HtcVComV64.sys [121800] © O58 - SDL:2014/07/29 10:16:44 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\hw_quusbmdm.sys [223232] © O58 - SDL:2014/07/29 10:16:44 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\hw_quusbnet.sys [287232] © O58 - SDL:2014/07/29 10:16:46 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\hw_usbdev.sys [116864] © O58 - SDL:2011/11/30 04:40:32 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStor.sys [568600] © O58 - SDL:2011/07/14 07:35:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] © O58 - SDL:2015/05/20 14:55:54 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [197616] © O58 - SDL:2012/02/14 04:47:36 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [14692224] © O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] © O58 - SDL:2011/12/05 21:23:08 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [331264] © O58 - SDL:2012/02/26 21:01:00 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [16152] © O58 - SDL:2012/02/26 21:01:00 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [356120] © O58 - SDL:2012/02/26 21:01:00 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [788760] © O58 - SDL:2011/10/14 07:49:22 A . (.Atheros Communications, Inc. - Atheros Ar81xx series PCI-E Gigabit Etherne.) -- C:\Windows\System32\drivers\L1C62x64.sys [108656] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] © O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] © O58 - SDL:2013/11/25 10:28:34 A . (.SeriousBit - nbdrv helper driver.) -- C:\Windows\System32\drivers\nbdrv.sys [41392] © O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] © O58 - SDL:2011/07/14 07:35:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] © O58 - SDL:2011/07/14 07:35:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] © O58 - SDL:2015/09/26 15:54:18 A . (...) -- C:\Windows\System32\drivers\ppfd_vt_1_10_0_21.sys [0] =>PUP.Optional.Generic O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] © O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] © O58 - SDL:2012/02/11 03:48:10 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4740456] © O58 - SDL:2011/09/02 05:46:28 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [339048] © O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] © O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] © O58 - SDL:2011/05/13 03:21:02 A . (.MCCI Corporation - SAMSUNG Android USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssadbus.sys [157672] © O58 - SDL:2011/05/13 03:21:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [13288] © O58 - SDL:2011/05/13 03:21:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcmnt.sys [13288] © O58 - SDL:2011/05/13 03:21:02 A . (.MCCI Corporation - SAMSUNG Android USB Modem Filter Driver.) -- C:\Windows\System32\drivers\ssadmdfl.sys [16872] © O58 - SDL:2011/05/13 03:21:04 A . (.MCCI Corporation - SAMSUNG Android USB Modem.) -- C:\Windows\System32\drivers\ssadmdm.sys [177640] © O58 - SDL:2011/05/13 03:21:04 A . (.MCCI Corporation - SAMSUNG Android USB Diagnostic Serial Port.) -- C:\Windows\System32\drivers\ssadserd.sys [146920] © O58 - SDL:2011/05/13 03:21:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [13800] © O58 - SDL:2011/05/13 03:21:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwhnt.sys [13800] © O58 - SDL:2009/09/19 06:30:14 A . (.MCCI - SAMSUNG USB Mobile Device.) -- C:\Windows\System32\drivers\ss_bbus.sys [127488] © O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcm.sys [15360] © O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ss_bcmnt.sys [15360] © O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Modem Filter.) -- C:\Windows\System32\drivers\ss_bmdfl.sys [18944] © O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Modem.) -- C:\Windows\System32\drivers\ss_bmdm.sys [161280] © O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwh.sys [15872] © O58 - SDL:2009/09/19 06:30:14 A . (.MCCI Corporation - SAMSUNG USB Mobile Device (Windows 2000/XP.) -- C:\Windows\System32\drivers\ss_bwhnt.sys [15872] © O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] © O58 - SDL:2015/09/23 12:10:08 A . (.Tencent - 电脑管家-TAO游戏启动加速驱动.) -- C:\Windows\System32\drivers\TAOAccelerator64.sys [88504] =>PUP.Optional.TencentAddressBar O58 - SDL:2015/09/26 15:32:31 A . (.Tencent Technology(Shenzhen) Company Limited - TAOKernel.) -- C:\Windows\System32\drivers\TAOKernel64.sys [174392] O58 - SDL:2015/09/26 15:32:31 A . (.电脑管家 - 电脑管家-驱动模块.) -- C:\Windows\System32\drivers\TFsFltX64.sys [87864] O58 - SDL:2015/09/26 15:32:33 A . (.电脑管家 - 电脑管家-TSSK Driver.) -- C:\Windows\System32\drivers\TSSKX64.sys [38200] O58 - SDL:2014/05/03 18:53:40 A . (.Elaborate Bytes AG - Virtual CloneDrive storage miniport.) -- C:\Windows\System32\drivers\VClone.sys [34816] © O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] © O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (63) - 29s O61 - LFC: 2015/09/26 14:36:32 A . (..) -- C:\Users\Andy\Downloads\SetupVirtualCloneDrive5480.exe [1645496] O61 - LFC: 2015/09/26 15:28:47 A . (..) -- C:\Users\Andy\Downloads\Compressed\16ResolutionChangerbyBlackRider1993.zip__15047_i1677262759_il2341202.exe [707264] O61 - LFC: 2015/09/26 15:34:12 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AdbCmdServer.dll [201784] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.Google, inc.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AdbWinApi.dll [43064] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.Google, inc.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AdbWinUsbApi.dll [24632] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidDaemon.exe [29240] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidDevice.dll [367672] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidServer.exe [229432] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidServerUp.exe [212024] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkFS.dll [76344] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkGraphic.dll [355384] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkImage.dll [56888] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkIOStub.dll [16440] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AsyncTask.dll [86072] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:12 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\bugreport.exe [270392] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\Common.dll [1948728] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\ConnectManager.dll [442936] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\ConnectUI.dll [382008] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\Daemon.dll [102456] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\DaemonProxy.dll [36408] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\DriverTools.exe [114744] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\DriverToolsX64.exe [134200] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\GF.dll [2334776] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libexpatw.dll [129592] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:13 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libimagequant.dll [52792] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:14 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libjpegturbo.dll [279608] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:15 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libpng.dll [128568] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:15 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libtcmalloc.dll [177720] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:15 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\Log4cplus.dll [295992] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:15 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\lua.dll [157752] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:15 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\mdb.exe [20024] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:15 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\NetHub.dll [311352] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:15 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\QQPMIpc.dll [80952] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (.TODO: <公司名>.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\RubikEngine.dll [1038392] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\SdkClient.dll [608312] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\sqlite.dll [448568] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\tadb.exe [621624] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (.腾讯公司.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\TADInstaller.dll [207928] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\tinyxml.dll [93752] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (.Tencent.) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\xGraphic32.dll [132152] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/26 15:34:16 A . (..) -- C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\zlib.dll [75320] =>PUP.Optional.TencentAddressBar O61 - LFC: 2015/09/23 21:23:02 A . (..) -- C:\Users\Andy\AppData\Roaming\Microsoft\UProof\CMAdj.12.bin [628] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\libtsplayer.dll [164216] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\libtsplayercore.dll [1968504] O61 - LFC: 2015/09/24 14:55:10 A . (.Innovative Digital Technologies.) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\npace_plugin.dll [965496] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\plugins\video_output\libdirect2d_plugin.dll [62840] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\plugins\video_output\libdirect3d_plugin.dll [77688] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\plugins\video_output\libdirectx_plugin.dll [77688] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\plugins\video_output\libglwin32_plugin.dll [75640] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\plugins\p2p_access\libp2p_access_plugin.dll [1553784] O61 - LFC: 2015/09/24 14:55:10 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\player\plugins\gui\libqt4_plugin.dll [31030648] O61 - LFC: 2015/09/24 14:53:52 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\ace_console.exe [26488] O61 - LFC: 2015/09/24 14:53:52 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\ace_engine.exe [27000] O61 - LFC: 2015/09/24 14:53:52 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\ace_stream.exe [27000] O61 - LFC: 2015/09/24 14:53:52 A . (.FFmpeg Project.) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\lib\avcodec-56.dll [20468224] O61 - LFC: 2015/09/24 14:53:50 A . (.FFmpeg Project.) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\lib\avformat-56.dll [5897216] O61 - LFC: 2015/09/24 14:53:50 A . (.FFmpeg Project.) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\lib\avutil-54.dll [481280] O61 - LFC: 2015/09/24 14:53:52 A . (..) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\lib\libgcc_s_dw2-1.dll [112142] O61 - LFC: 2015/09/24 14:53:50 A . (.FFmpeg Project.) -- C:\Users\Andy\AppData\Roaming\ACEStream\engine\lib\swresample-1.dll [279552] O61 - LFC: 2015/09/21 15:59:36 A . (..) -- C:\Users\Andy\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [333410] O61 - LFC: 2015/09/24 18:11:20 A . (..) -- C:\Users\Andy\AppData\Local\mbot_fr_014010096\upmbot_fr_014010096.exe [3302832] =>PUP.Optional.CrossRider O61 - LFC: 2015/09/26 15:52:18 A . (..) -- C:\Users\Andy\AppData\Local\mbot_fr_014010096\Download\myoffergroup_fr.exe [5066984] =>PUP.Optional.CrossRider O61 - LFC: 2015/09/26 16:19:49 A . (..) -- C:\Users\Andy\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Launcher.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe © ---\\ Recherche d'infection sur les navigateurs (3) - 3s O69 - SBI: SearchScopes [HKCU] {0191A6B0-1154-4C22-9182-23A95BBE92D9} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {46398618-6C05-4202-A09F-4348BD8D5ED3} [DefaultScope] - (Bing.com) - http://www.trovi.com/ =>PUP.Optional.Trovigo ---\\ Enumère les services démarrés par Svchost (33) - 3s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [777728] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] © O83 - Search Svchost Services: UxTuneUp (UxTuneUp) . (.TuneUp Software - TuneUp Theme Extension.) -- C:\Windows\System32\uxtuneup.dll [43320] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2606080] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] © ---\\ Liste des exceptions du parefeu Windows (48) - 4s O87 - FAEL: "{E1E1AE4C-A791-4E50-9026-1B316F4FA95B}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\lxbccoms.exe O87 - FAEL: "{8091EDA3-C416-40E4-942A-B20637488002}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\lxbccoms.exe O87 - FAEL: "{61E83966-6C7D-4A6B-9830-278D7D8134E6}" [In-None-P6-TRUE] .(...) -- C:\Windows\System32\lxbccoms.exe O87 - FAEL: "{97523D61-D0D5-46BC-879F-A43272618E39}" [In-None-P17-TRUE] .(...) -- C:\Windows\System32\lxbccoms.exe O87 - FAEL: "{C26FCCE0-02F2-4E1C-BFDE-D22F5FCA4935}" [In-None-P6-TRUE] .(.Lexmark International Inc. - Print Status Window Interface.) -- C:\Windows\System32\spool\drivers\x64\3\lxbcpswx.exe O87 - FAEL: "{C159EF35-808C-4A34-BE6E-2906B49F7E75}" [In-None-P17-TRUE] .(.Lexmark International Inc. - Print Status Window Interface.) -- C:\Windows\System32\spool\drivers\x64\3\lxbcpswx.exe O87 - FAEL: "TCP Query User{8CEC16C9-F7B3-4E71-BAD2-7DAC9A107B4E}C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P6-TRUE] .(...) -- C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "UDP Query User{C46306C8-DD02-4FF7-829B-2B83AFC850B2}C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P17-TRUE] .(...) -- C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "TCP Query User{B5E939D3-3C2E-456D-85DB-9662BD3B8E9B}C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P6-TRUE] .(...) -- C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "UDP Query User{41B4591A-36B2-4145-A750-B7D1B75B4FDD}C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P17-TRUE] .(...) -- C:\users\amandine\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "TCP Query User{7C1A4318-B108-40EA-9393-5A6DFA65FB32}C:\users\andy\appdata\local\popcorn time fleex\node-webkit\popcorn time fleex.exe" [In-None-P6-TRUE] .(...) -- C:\users\andy\appdata\local\popcorn time fleex\node-webkit\popcorn time fleex.exe O87 - FAEL: "UDP Query User{6FB946F7-AB55-4831-9A73-799A05BB07A0}C:\users\andy\appdata\local\popcorn time fleex\node-webkit\popcorn time fleex.exe" [In-None-P17-TRUE] .(...) -- C:\users\andy\appdata\local\popcorn time fleex\node-webkit\popcorn time fleex.exe O87 - FAEL: "TCP Query User{B04B424A-1AC0-4798-9C41-331D19A70863}C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P6-TRUE] .(...) -- C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "UDP Query User{3E169E45-AC35-4E79-955A-E0F699DE9011}C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P17-TRUE] .(...) -- C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "TCP Query User{31EB72AD-7792-4228-ABFB-FC19F3FFD03C}C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P6-TRUE] .(...) -- C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "UDP Query User{9149ABAC-BE11-4239-B541-431CA5F7D2D7}C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P17-TRUE] .(...) -- C:\users\andy\appdata\roaming\acestream\engine\ace_engine.exe O87 - FAEL: "TCP Query User{884E2806-3B1A-45B0-933B-DC21619A910B}C:\program files (x86)\搜狐影音\sohuva.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\搜狐影音\sohuva.exe (.not file.) O87 - FAEL: "UDP Query User{1D29F84D-6DC4-48EB-B17F-C4936CFFC8B6}C:\program files (x86)\搜狐影音\sohuva.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\搜狐影音\sohuva.exe (.not file.) O87 - FAEL: "TCP Query User{66EC7784-4A6E-4E8E-9C19-691B0C19FDCF}C:\program files (x86)\搜狐影音\shplayer.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\搜狐影音\shplayer.exe (.not file.) O87 - FAEL: "UDP Query User{787F642E-BEBC-4EBD-B5A8-1C4F96D6D4FE}C:\program files (x86)\搜狐影音\shplayer.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\搜狐影音\shplayer.exe (.not file.) O87 - FAEL: "{032BC4E7-AEA5-485A-80E0-6350DC0EF03D}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-安装引导.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCmgrInstallGuide.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{B6C3F832-0F8F-481C-A17F-58F94C9C829E}" [In-None-P17-TRUE] .(.Tencent - 腾讯高速下载引擎.) -- C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{8CB87759-C527-4286-BC97-36B7445734F4}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{8649E208-ACB4-432A-8EC7-83035C18AD69}" [In-None-P17-TRUE] .(.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{75172424-18DE-4E24-AA20-9ED4C739D3E3}" [In-None-P17-TRUE] .(.Tencent - 电脑管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCMgr.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{04FDE4ED-E5A9-4678-BF9D-8987CB84309F}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-实时防护服务.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{6ADB5791-998D-44D6-B5D8-34A5FC88F56E}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-下载中心.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMDL.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{60B81961-7404-402C-86DA-AE271248BA07}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-crash上报.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\bugreport.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{CAD2D9B7-CA35-43B1-A0AE-6B6CF2C1F313}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-未知文件打开.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCFileOpen.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{B5F029C0-207F-48E6-BE88-EE24E5E24A8C}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-漏洞扫描.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLeakScan.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{0BD314E7-3158-4A79-830B-3752BADF95CD}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-设置中心.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPConfig.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{8C4C42C7-A3DB-4BA1-81A8-813E1FDF78B3}" [In-None-P17-TRUE] .(.Tencent - 软件管理.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftMgr.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{5382D9CC-BEE5-445D-AD76-CD3D49B7C887}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-网络流量监控.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\plugins\QMNetMon\QQPCNetFlow.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{88DE5EEE-77C0-4FBC-BB8A-962B0494BD15}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-日志上传.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCBTU.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{9B4D40D8-DC45-4994-90E2-15DEC8F8B125}" [In-None-P17-TRUE] .(.Tencent - 电脑诊所.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCClinic.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{64DE7C60-B33E-4951-8EB6-DFFF5A511ACF}" [In-None-P17-TRUE] .(.Copyright (C) 2012 - 电脑管家-引导启动.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLaunch.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{B8B25FAD-0D5E-4B5D-8D5D-6E62341E4435}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-自升级程序.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUpdate\QQPCMgrUpdate.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{5B40701E-E523-4B85-BA58-513247594644}" [In-None-P17-TRUE] .(.Copyright (C) 2012 - 电脑管家-游戏专区.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftGame.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{D27FE776-207F-4859-BDC8-ECE2CA8727CF}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-系统优化.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSysOptimize.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{C3CA11BF-CC07-4D23-A05A-B170A657CB80}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-杀毒.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCUpdateAVLib.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{1F2D6C81-9D7B-40AC-8BE8-256C879DAF9C}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-修复器.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQRepair.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{918E26EE-1578-486B-806C-3688D4BECBA9}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-卸载程序.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\Uninst.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{22CB82D4-911B-48B1-A93A-4ED48B0A424B}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-模块升级.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCPatch.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{F317CC0E-7897-4264-84DD-1D84F0585926}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-反病毒引擎升级程序.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TpkUpdate.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{3A6EEC5E-7A9A-4AA2-9A49-B607F85A37B3}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-路由器管家.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMRouterMgr.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{37EEB412-D475-4107-9A98-C01300E85BC3}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-帐号宝.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAccountProtection.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{0E6909E3-1898-4B12-B25F-BF9AA15ADB10}" [In-None-P17-TRUE] .(.Tencent - 电脑管家-弹窗拦截.) -- C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAdBlock.exe =>PUP.Optional.TencentAddressBar O87 - FAEL: "{5C835D9C-784A-4AC1-851D-F922E4886E28}" [In-None-P17-TRUE] .(.Joyent, Inc - Evented I/O for V8 JavaScript.) -- C:\Program Files (x86)\Boxore\Boxore\Node.exe =>PUP.Optional.Boxore ---\\ Enumère les codes produits des logiciels (1) - 3s O90 - PUC: "D4B471E1BBC881149B85859DAE18DB25" . (.Boxore.) -- C:\Windows\Installer\{1E174B4D-8CBB-4118-B958-58D9EA81BD52}\Boxore.ico =>PUP.Optional.Boxore ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (29) - 57s SR - Auto [2015/08/31 12:13:00] [ 5531008] Emsisoft Protection Service (a2AntiMalware) . (.Emsisoft Ltd.) - C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe © SR - Auto [2013/05/10 09:57:22] [ 65640] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Demand [2015/08/14 14:31:39] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2015/09/17 17:47:37] [ 146600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe © SS - Demand [2012/02/19 14:18:18] [ 276248] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe © SS - Disabled [2012/02/07 17:53:48] [ 871296] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe © SS - Disabled [2012/02/29 15:49:06] [ 28264] GREGService (GREGService) . (.Acer Incorporated.) - C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe © SS - Auto [2015/08/31 12:19:16] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Demand [2015/08/31 12:19:16] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SR - Auto [2014/09/05 09:40:18] [ 138272] HiSuiteOuc64.exe (HiSuiteOuc64.exe) . (.Copyright (C) 2008.) - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe SR - Auto [2014/09/05 09:40:12] [ 219680] HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (.Copyright (C) 2008.) - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe SS - Disabled [2011/11/30 05:04:56] [ 13592] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe © SR - Auto [2011/08/31 15:11:40] [ 2425960] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe © SR - Auto [2015/09/25 09:32:20] [ 268520] ihpmServer (ihpmServer) . (.Copyright 2015. All rights reserved..) - C:\Program Files (x86)\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider SS - Disabled [2011/12/08 16:38:24] [ 607456] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe © SS - Disabled [2011/12/16 06:38:24] [ 161560] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SR - Auto [2014/02/01 23:23:43] [ 303616] KMS-host Service (KMSEmulator) . (.MDL Forum, mod by Ratiborus.) - C:\ProgramData\KMSAuto\bin\KMSSS.exe =>PUP.Optional.Windows SR - Auto [2012/02/07 02:54:04] [ 255376] Live Updater Service (Live Updater Service) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe © SS - Disabled [2011/12/16 06:38:46] [ 277784] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SR - Auto [2007/03/16 01:24:02] [ 566704] lxbc_device (lxbc_device) . (...) - C:\Windows\System32\lxbccoms.exe SS - Disabled [2014/06/24 17:07:12] [ 2820424] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe © SS - Disabled [2013/10/17 16:27:02] [ 166912] Internet Pass-Through Service (PassThru Service) . (.Copyright (C) 2012.) - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe SR - Auto [2015/09/26 15:32:09] [ 297608] QQPCMgr RTP Service (QQPCRTP) . (.Tencent.) - C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe =>PUP.Optional.TencentAddressBar SS - Auto [2015/09/26 15:40:46] [ 113752] Service Software Update (Software_update) (Software_update) . (.The Software Group.) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore SS - Demand [2015/09/26 15:40:46] [ 113752] Service Software Update (Software_update_m) (Software_update_m) . (.The Software Group.) - C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore SS - Demand [2015/09/26 15:32:10] [ 293856] TAOFrame (TAOFrame) . (.Tencent.) - C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TAOFrame.exe =>PUP.Optional.TencentAddressBar SR - Auto [2013/12/18 11:01:06] [ 2103096] TuneUp Utilities Service (TuneUp.UtilitiesSvc) . (.TuneUp Software.) - C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe © SS - Disabled [2011/12/16 06:38:48] [ 363800] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe © ---\\ Recherche de clés de registre Tracing (2) - 0s HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASAPI32 =>PUP.Optional.BProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASMANCS =>PUP.Optional.BProtector ---\\ Scan Additionnel (128) - 0s C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRTP.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\RayDld\ihpmServer.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCTray.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Local\mbot_fr_014010096\upmbot_fr_014010096.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\plugins\QMNetMon\QQPCNetFlow.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCRealTimeSpeedup.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Boxore\Boxore\boxore.exe =>PUP.Optional.Boxore C:\Program Files (x86)\mbot_fr_014010096\mbot_fr_014010096.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\Boxore\Boxore\node.exe =>PUP.Optional.Boxore C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMDL.exe =>PUP.Optional.TencentAddressBar C:\program files (x86)\common files\Tencent\qqdownload\130\tencentdl.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Software\Update\1.3.25.0\npSoftwareUpdate3.dll =>PUP.Optional.Boxore HKLM\SYSTEM\CurrentControlSet\Services\ihpmServer =>PUP.Optional.CrossRider HKLM\SYSTEM\CurrentControlSet\Services\KMSEmulator =>PUP.Optional.Windows C:\ProgramData\KMSAuto\bin\KMSSS.exe =>PUP.Optional.Windows HKLM\SYSTEM\CurrentControlSet\Services\QQPCRTP =>PUP.Optional.TencentAddressBar HKLM\SYSTEM\CurrentControlSet\Services\Software_update =>PUP.Optional.Boxore C:\Program Files (x86)\Software\Update\SoftwareUpdate.exe =>PUP.Optional.Boxore C:\Windows\Tasks\SoftwareUpdateTaskMachineCore.job =>PUP.Optional.Boxore C:\Windows\Tasks\SoftwareUpdateTaskMachineUA.job =>PUP.Optional.Boxore C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineCore =>PUP.Optional.Boxore C:\Windows\System32\Tasks\SoftwareUpdateTaskMachineUA =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mbot_fr_014010096_is1 =>PUP.Optional.MyBestOffersToday HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\oursurfing =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1E174B4D-8CBB-4118-B958-58D9EA81BD52} =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\Boxore =>PUP.Optional.Boxore HKLM\SOFTWARE\Wow6432Node\MYBESTOFFERSTODAY =>PUP.Optional.MyBestOffersToday HKLM\SOFTWARE\Wow6432Node\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic HKLM\SOFTWARE\Wow6432Node\RayDld =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Tencent =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\Boxore =>PUP.Optional.Boxore HKCU\SOFTWARE\Store =>PUP.Optional.Generic HKCU\SOFTWARE\Tencent =>PUP.Optional.TencentAddressBar HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive C:\Program Files (x86)\Boxore =>PUP.Optional.Boxore C:\Program Files (x86)\mbot_fr_014010096 =>PUP.Optional.CrossRider C:\Program Files (x86)\PhraseProfessor_1.10.0.21 =>PUP.Optional.Generic C:\Program Files (x86)\RayDld =>PUP.Optional.CrossRider C:\Program Files (x86)\Software =>PUP.Optional.Boxore C:\Program Files (x86)\Tencent =>PUP.Optional.TencentAddressBar C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYBESTOFFERSTODAY =>PUP.Optional.MyBestOffersToday C:\ProgramData\Boxore =>PUP.Optional.Boxore C:\ProgramData\KMSAuto =>PUP.Optional.Windows C:\ProgramData\KMSAutoS =>PUP.Optional.Windows C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Common Files\Tencent =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Store =>PUP.Optional.Nosibay C:\Users\Andy\AppData\Roaming\Tencent =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Local\Boxore =>PUP.Optional.Boxore C:\Users\Andy\AppData\Local\mbot_fr_014010096 =>PUP.Optional.CrossRider C:\Users\Andy\AppData\Local\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\Andy\AppData\Local\Software =>PUP.Optional.Boxore C:\Windows\Prefetch\PERFORMANCEOPTIMIZER.EXE-DB215C0B.pf =>PUP.Optional.BProtector C:\Windows\System32\drivers\ppfd_vt_1_10_0_21.sys =>PUP.Optional.Generic C:\Windows\System32\drivers\TAOAccelerator64.sys =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AdbCmdServer.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AdbWinApi.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AdbWinUsbApi.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidDaemon.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidDevice.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidServer.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AndroidServerUp.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkFS.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkGraphic.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkImage.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\arkIOStub.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\AsyncTask.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\bugreport.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\Common.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\ConnectManager.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\ConnectUI.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\Daemon.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\DaemonProxy.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\DriverTools.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\DriverToolsX64.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\GF.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libexpatw.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libimagequant.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libjpegturbo.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libpng.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\libtcmalloc.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\Log4cplus.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\lua.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\mdb.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\NetHub.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\QQPMIpc.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\RubikEngine.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\SdkClient.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\sqlite.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\tadb.exe =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\TADInstaller.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\tinyxml.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\xGraphic32.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Roaming\Tencent\AndroidServer\1.0.0.485\zlib.dll =>PUP.Optional.TencentAddressBar C:\Users\Andy\AppData\Local\mbot_fr_014010096\Download\myoffergroup_fr.exe =>PUP.Optional.CrossRider C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCmgrInstallGuide.exe =>PUP.Optional.TencentAddressBar C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCMgr.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\bugreport.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCFileOpen.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLeakScan.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPConfig.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftMgr.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCBTU.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCClinic.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCLaunch.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMUpdate\QQPCMgrUpdate.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSoftGame.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCSysOptimize.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCUpdateAVLib.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQRepair.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\Uninst.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QQPCPatch.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TpkUpdate.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMRouterMgr.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAccountProtection.exe =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\QMAdBlock.exe =>PUP.Optional.TencentAddressBar C:\Windows\Installer\{1E174B4D-8CBB-4118-B958-58D9EA81BD52}\Boxore.ico =>PUP.Optional.Boxore HKLM\Software\Classes\Installer\Products\D4B471E1BBC881149B85859DAE18DB25 =>PUP.Optional.Boxore HKLM\Software\Classes\Installer\Features\D4B471E1BBC881149B85859DAE18DB25 =>PUP.Optional.Boxore HKLM\SYSTEM\CurrentControlSet\Services\Software_update_m =>PUP.Optional.Boxore HKLM\SYSTEM\CurrentControlSet\Services\TAOFrame =>PUP.Optional.TencentAddressBar C:\Program Files (x86)\Tencent\QQPCMgr\10.10.16434.218\TAOFrame.exe =>PUP.Optional.TencentAddressBar HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASAPI32 =>PUP.Optional.BProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\PerformanceOptimizer_RASMANCS =>PUP.Optional.BProtector ---\\ Récapitulatif des éléments trouvées sur votre station (13) - 0s http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore http://www.nicolascoolman.fr/hijacker-browsers/ =>PUP.Optional.Browser http://www.nicolascoolman.fr/blog =>PUP.Optional.OurSurfing http://www.nicolascoolman.fr/blog =>PUP.Optional.Windows http://www.nicolascoolman.fr/blog =>PUP.Optional.MyBestOffersToday http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic http://www.nicolascoolman.fr/spyware-agenceexclusive/ =>PUP.Optional.AgenceExclusive http://www.nicolascoolman.fr/blog =>PUP.Optional.Nosibay http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/pup-bprotector/ =>PUP.Optional.BProtector http://www.nicolascoolman.fr/hijacker-trovigo/ =>PUP.Optional.Trovigo ~ End of the scan, 49612 items in 198 seconds (1185)(0)()